Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

nový vir

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Křivák
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 16 črc 2011 05:01

nový vir

#1 Příspěvek od Křivák »

Dobrý den řeknu vám celí svůj příběh
Jsem si jednou takhle na facebooku a najednou m někdo anglicky píse jestli se chci zasmát tak sem odpověděl že jo a on mi poslal odkaz na video od youtube a tam bylo video s nadpisem "moje jmeno"v plné své kráse nebo tak něco bylo to zase anglicky.ale nešlo to spustit a psalo to že mam zastaralí adobe a jestli ho nechci stáhnout(v tu chvíli mě nenapadlo že adobe nema nic společnýho s videama ale to už je pozdě).Tak sem to stáhnul a najednou se mi vipnul celí pc,kdys sem ho zapnul tak jsem kliknul na antivir (avg) ale byl vimazaný tak sem si stáhnul avast a pokaždý kdys mi to najde chybu a chci ji odstranit tak se mi vipne celej počítač.A ješě něco kdys mi to poprví viplo pc tak jsem potom šel ještě na facebook a tam jsem rozesílal ty oskazi na to video asi 20ti lidem ale nepsal jsem to ja ale samo a ted už se tam nedostanu vůbec tak bůh ví co se tam ted děje :(

Prosím pomoc nevím co s tím :(

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nový vir

#2 Příspěvek od vyosek »

Zdravim, pekny den preji a vitam Vas u nas na foru :welcome:

:arrow: Jelikoz nevime o Vasem PC nic a z kristalove koule se spatne vesti i pri tak jasnem pocasi jake ted v okrese Kromeriz panuje, neni nic videt :o

:arrow: Ale dosti legracek, kouknem na to :wink: Kliknete do meho podpisu na RSIT a dejte log z nej - navod Vas povede...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Křivák
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 16 črc 2011 05:01

Re: nový vir

#3 Příspěvek od Křivák »

děkuju za přivítání tdy to je

Logfile of random's system information tool 1.09 (written by random/random)
Run by Adam at 2011-07-16 10:04:44
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 11 GB (2%) free of 477 GB
Total RAM: 2047 MB (57% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:05:09, on 16.7.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Users\Adam\AppData\Roaming\dwm.exe
C:\Windows\system32\taskhost.exe
C:\Users\Adam\AppData\Local\Temp\csrss.exe
C:\Program Files\ioCentre\gTaskBar.exe
C:\Program Files\TO2SSM\McciTrayApp.exe
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files\SmileyCentralIE_1w\bar\1.bin\1wbrmon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Users\Adam\AppData\Roaming\Microsoft\conhost.exe
C:\Windows\update.tray-12-0\svchost.exe
C:\Windows\update.tray-7-0\svchost.exe
C:\Windows\sysdriver32.exe
C:\Program Files\ioCentre\gMouseTask.exe
C:\Program Files\ioCentre\gKbdTask.exe
C:\Program Files\ioCentre\gAutoPan.exe
C:\Program Files\ioCentre\gAutoScroll.exe
C:\Program Files\ioCentre\gZoom.exe
C:\Program Files\ioCentre\gMGlass.exe
C:\Program Files\ioCentre\gSecurity.exe
C:\Program Files\ioCentre\gIMMgm.exe
C:\Program Files\ioCentre\gPreset.exe
C:\Program Files\ioCentre\gKbStatus.exe
C:\Program Files\ioCentre\gDeskMgm.exe
C:\Program Files\ioCentre\gKyeEmail.exe
C:\Program Files\ioCentre\gTaskSwitch.exe
C:\Windows\sysdriver32_.exe
C:\Windows\systemup.exe
C:\Windows\l1rezerv.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Pando Networks\Media Booster\PMB.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Adam\Desktop\RSIT.exe
C:\Program Files\trend micro\Adam.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Ask.com\UpdateTask.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... tbid=60341
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:58505
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
R3 - URLSearchHook: ToolbarURLSearchHook Class - {CA3EB689-8F09-4026-AA10-B9534C691CE0} - C:\Program Files\HyperCam Toolbar\tbhelper.dll
R3 - URLSearchHook: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll
R3 - URLSearchHook: (no name) - {339a0dff-d9af-439b-92bc-636220fb3dae} - C:\Program Files\SmileyCentralIE_1w\bar\1.bin\1wSrcAs.dll
F3 - REG:win.ini: load=C:\Users\Adam\AppData\Local\Temp\csrss.exe
O2 - BHO: GameBox Toolbar - {0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} - C:\Program Files\GameBox\gamebox_toolbar.dll
O2 - BHO: PriceGong - {1631550F-191D-4826-B069-D9439253D926} - C:\Program Files\PriceGong\2.1.0\PriceGongIE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: LinkAirBrowserHelper HistoryTriggerBHO - {21A88CB9-84D2-4020-A2D1-B25A21034884} - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (file missing)
O2 - BHO: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll
O2 - BHO: Toolbar BHO - {55cde9e7-696c-47c4-8e21-7210b8aeb103} - C:\PROGRA~1\SMILEY~2\bar\1.bin\1wbar.dll
O2 - BHO: Search Assistant BHO - {5ed22e89-62fa-47ec-bd8d-374d849d436c} - C:\Program Files\SmileyCentralIE_1w\bar\1.bin\1wSrcAs.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (file missing)
O2 - BHO: GamePlayLabsBHO - {984A9162-8891-4D19-8CFE-17648BB4E1EC} - C:\Users\Adam\AppData\Local\GamePlayLabs Plugin\BHO.dll (file missing)
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Big Fish Games Toolbar - {C7C9FC25-88B0-4682-9C9F-2608E9117647} - C:\Program Files\BfgBar\bfg.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: SMTTB2009 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\HyperCam Toolbar\tbcore3.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O3 - Toolbar: Big Fish Games Toolbar - {C7C9FC25-88B0-4682-9C9F-2608E9117647} - C:\Program Files\BfgBar\bfg.dll
O3 - Toolbar: GameBox Toolbar - {0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} - C:\Program Files\GameBox\gamebox_toolbar.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: HyperCam Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\HyperCam Toolbar\tbcore3.dll
O3 - Toolbar: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O3 - Toolbar: SmileyCentral - {d3ca5551-fc2e-4d09-8ece-263607acf9fc} - C:\Program Files\SmileyCentralIE_1w\bar\1.bin\1wbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (file missing)
O4 - HKLM\..\Run: [ioCentre] C:\Program Files\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [F5D7050v3] C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe
O4 - HKLM\..\Run: [TO2SSM_McciTrayApp] C:\Program Files\TO2SSM\McciTrayApp.exe
O4 - HKLM\..\Run: [SSDMonitor] C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
O4 - HKLM\..\Run: [SmileyCentralIE_1w Browser Plugin Loader] C:\PROGRA~1\SMILEY~2\bar\1.bin\1wbrmon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [conhost] C:\Users\Adam\AppData\Roaming\Microsoft\conhost.exe
O4 - HKLM\..\Run: [wxpdrv] C:\Windows\services32.exe
O4 - HKLM\..\Run: [tray_ico0] C:\Windows\update.tray-12-0\svchost.exe
O4 - HKLM\..\Run: [tray_ico1] C:\Windows\update.tray-7-0\svchost.exe
O4 - HKLM\..\Run: [3693967.exe] "C:\Windows\Temp\3693967.exe"
O4 - HKLM\..\Run: [sysdriver32.exe] "C:\Windows\sysdriver32.exe" rezerv
O4 - HKLM\..\Run: [sysdriver32_.exe] "C:\Windows\sysdriver32_.exe" rezerv
O4 - HKLM\..\Run: [545540.exe] "C:\Users\Adam\AppData\Local\Temp\545540.exe"
O4 - HKLM\..\Run: [10365.exe] "C:\Windows\Temp\10365.exe"
O4 - HKLM\..\Run: [systemup] "C:\Windows\systemup.exe" stand
O4 - HKLM\..\Run: [l1rezerv.exe] "C:\Windows\l1rezerv.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [907943.exe] "C:\Windows\Temp\907943.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [ICQ] ~"C:\Program Files\ICQ6.5\ICQ.exe" silent
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {444785F1-DE89-4295-863A-D46C3A781394} (UnityWebPlayer Control) - http://webplayer.unity3d.com/download_w ... Player.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll (file missing)
O18 - Protocol: gameboxchrome - {494D4E3B-FA53-4487-8AF6-3F50FE1167A9} - C:\Program Files\GameBox\gamebox_toolbar.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe (file missing)
O23 - Service: AVG Firewall (avgfws) - Unknown owner - C:\Program Files\AVG\AVG10\avgfws.exe (file missing)
O23 - Service: AVGIDSAgent - Unknown owner - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - Unknown owner - C:\Program Files\AVG\AVG10\avgwdsvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: PC Tools Startup and Shutdown Monitor service (PCToolsSSDMonitorSvc) - Unknown owner - C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: ScsiAccess - Unknown owner - C:\Program Files\Photodex\ProShow\ScsiAccess.exe
O23 - Service: SmileyCentral Service (SmileyCentralIE_1wService) - SmileyCentral - C:\PROGRA~1\SMILEY~2\bar\1.bin\1wbarsvc.exe
O23 - Service: srvbtcclient - Unknown owner - C:\Windows\update.5.0\svchost.exe
O23 - Service: srviecheck - Unknown owner - C:\Windows\update.2\svchost.exe
O23 - Service: srvsysdriver32 - Unknown owner - C:\Windows\sysdriver32.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: wxpdrivers - Unknown owner - C:\Windows\update.1\svchost.exe

--
End of file - 16029 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\Norton Security Scan for Klára.job
C:\Windows\tasks\RMSchedule.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\os0uce96.default

prefs.js - "keyword.URL" - "http://search.avg.com/route/?d=4e0d7310 ... &lng=cs&q="

"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=C:\Program Files\AVG\AVG10\Firefox4\
"avg@igeared"=C:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\
avg_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\os0uce96.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF}]
GameBox Toolbar - C:\Program Files\GameBox\gamebox_toolbar.dll [2010-09-12 434776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1631550F-191D-4826-B069-D9439253D926}]
PriceGongBHO Class - C:\Program Files\PriceGong\2.1.0\PriceGongIE.dll [2010-08-18 353656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21A88CB9-84D2-4020-A2D1-B25A21034884}]
HistoryTriggerBHO Class - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll [2010-11-18 35688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-10-10 3906656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG10\avgssie.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}]
Softonic-Eng7 Toolbar - C:\Program Files\Softonic-Eng7\tbSoft.dll [2010-10-10 3906656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{55cde9e7-696c-47c4-8e21-7210b8aeb103}]
Toolbar BHO - C:\PROGRA~1\SMILEY~2\bar\1.bin\1wbar.dll [2010-11-22 675840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5ed22e89-62fa-47ec-bd8d-374d849d436c}]
Search Assistant BHO - C:\Program Files\SmileyCentralIE_1w\bar\1.bin\1wSrcAs.dll [2010-11-22 53248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{984A9162-8891-4D19-8CFE-17648BB4E1EC}]
GamePlayLabsBHO Class - C:\Users\Adam\AppData\Local\GamePlayLabs Plugin\BHO.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-07-02 305328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C7C9FC25-88B0-4682-9C9F-2608E9117647}]
Big Fish Games Toolbar - C:\Program Files\BfgBar\bfg.dll [2009-04-28 91608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-05-17 1490312]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-04-14 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetIM Toolbar Helper - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2011-02-01 1499440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}]
SMTTB2009 Class - C:\Program Files\HyperCam Toolbar\tbcore3.dll [2010-02-16 2495488]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-09-06 1048888]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetIM Toolbar for Internet Explorer - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2011-02-01 1499440]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll []
{C7C9FC25-88B0-4682-9C9F-2608E9117647} - Big Fish Games Toolbar - C:\Program Files\BfgBar\bfg.dll [2009-04-28 91608]
{0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} - GameBox Toolbar - C:\Program Files\GameBox\gamebox_toolbar.dll [2010-09-12 434776]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-05-17 1490312]
{338B4DFE-2E2C-4338-9E41-E176D497299E} - HyperCam Toolbar - C:\Program Files\HyperCam Toolbar\tbcore3.dll [2010-02-16 2495488]
{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - Softonic-Eng7 Toolbar - C:\Program Files\Softonic-Eng7\tbSoft.dll [2010-10-10 3906656]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-10-10 3906656]
{d3ca5551-fc2e-4d09-8ece-263607acf9fc} - SmileyCentral - C:\Program Files\SmileyCentralIE_1w\bar\1.bin\1wbar.dll [2010-11-22 675840]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-07-02 305328]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ioCentre"=C:\Program Files\ioCentre\gTaskBar.exe [2006-08-03 241664]
"F5D7050v3"=C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe []
"TO2SSM_McciTrayApp"=C:\Program Files\TO2SSM\McciTrayApp.exe [2008-08-15 1473536]
"SSDMonitor"=C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe [2010-08-05 104408]
"SmileyCentralIE_1w Browser Plugin Loader"=C:\PROGRA~1\SMILEY~2\bar\1.bin\1wbrmon.exe [2010-11-22 20480]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064]
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2011-03-13 114992]
""= []
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2011-05-17 395144]
"AVG_TRAY"=C:\Program Files\AVG\AVG10\avgtray.exe []
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2011-05-25 1951112]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"conhost"=C:\Users\Adam\AppData\Roaming\Microsoft\conhost.exe [2011-07-15 169984]
"wxpdrv"=C:\Windows\services32.exe [2011-07-15 1170432]
"tray_ico"= []
"tray_ico0"=C:\Windows\update.tray-12-0\svchost.exe [2011-07-15 1170432]
"tray_ico1"=C:\Windows\update.tray-7-0\svchost.exe [2011-07-15 1170432]
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
"3693967.exe"=C:\Windows\Temp\3693967.exe [2011-07-15 224768]
"sysdriver32.exe"=C:\Windows\sysdriver32.exe [2011-07-16 232960]
"sysdriver32_.exe"=C:\Windows\sysdriver32_.exe [2011-07-16 232960]
"545540.exe"=C:\Users\Adam\AppData\Local\Temp\545540.exe [2011-07-15 224768]
"10365.exe"=C:\Windows\Temp\10365.exe [2011-07-15 483328]
"systemup"=C:\Windows\systemup.exe [2011-07-15 114176]
"l1rezerv.exe"=C:\Windows\l1rezerv.exe [2011-07-15 110592]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe /nogui []
"907943.exe"=C:\Windows\Temp\907943.exe [2011-07-16 232960]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-05-24 336384]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ICQ"=~C:\Program Files\ICQ6.5\ICQ.exe silent []
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-12-29 39408]
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe []
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2010-12-23 395640]
"PlayNC Launcher"= []
"Pando Media Booster"=C:\Program Files\Pando Networks\Media Booster\PMB.exe [2010-11-25 2975640]
"LG LinkAir"= []
"AdobeBridge"= []

C:\Users\Adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.1.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableSecureUIAPaths"=0
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.IV41"=IR41_32.AX
"vidc.mjpg"=pvmjpg30.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2011-07-16 09:52:22 ----D---- C:\Program Files\trend micro
2011-07-16 09:52:16 ----D---- C:\rsit
2011-07-16 06:56:22 ----D---- C:\Users\Adam\AppData\Roaming\ATI
2011-07-16 06:16:52 ----D---- C:\ProgramData\ATI
2011-07-16 06:16:28 ----D---- C:\Program Files\AMD APP
2011-07-16 06:16:14 ----D---- C:\Program Files\Common Files\ATI Technologies
2011-07-16 06:11:04 ----D---- C:\Program Files\ATI
2011-07-16 06:10:13 ----D---- C:\Program Files\ATI Technologies
2011-07-15 23:38:33 ----HD---- C:\Windows\update.tray-7-0-lnk
2011-07-15 23:38:33 ----HD---- C:\Windows\update.tray-7-0
2011-07-15 23:35:19 ----A---- C:\Windows\system32\drivers\aswSP.sys
2011-07-15 23:35:19 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2011-07-15 23:35:15 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2011-07-15 23:35:14 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2011-07-15 23:35:12 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2011-07-15 23:35:11 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2011-07-15 23:34:33 ----A---- C:\Windows\avastSS.scr
2011-07-15 23:34:32 ----A---- C:\Windows\system32\aswBoot.exe
2011-07-15 23:34:27 ----D---- C:\ATI
2011-07-15 21:51:11 ----D---- C:\Windows\ufa
2011-07-15 21:51:11 ----D---- C:\Windows\rpcminer
2011-07-15 21:51:11 ----D---- C:\Windows\phoenix
2011-07-15 21:51:10 ----A---- C:\Windows\unrar.exe
2011-07-15 21:49:49 ----A---- C:\Windows\l1rezerv.exe
2011-07-15 21:49:18 ----A---- C:\Windows\ddh_iplist.txt
2011-07-15 21:49:10 ----A---- C:\Windows\systemup.exe
2011-07-15 21:48:57 ----A---- C:\Windows\btc_client_iplist.txt
2011-07-15 21:48:36 ----HD---- C:\Windows\update.5.0
2011-07-15 21:48:34 ----A---- C:\Windows\iecheck_iplist.txt
2011-07-15 21:48:18 ----A---- C:\Windows\gbot111.exe
2011-07-15 21:48:08 ----HD---- C:\Windows\update.2
2011-07-15 21:48:01 ----A---- C:\Windows\sysdriver32_.exe
2011-07-15 21:47:54 ----A---- C:\Windows\iplist.txt
2011-07-15 21:47:47 ----A---- C:\Windows\sysdriver32.exe
2011-07-15 21:47:30 ----D---- C:\Windows\av_ico
2011-07-15 21:47:01 ----A---- C:\Windows\front_ip_list.txt
2011-07-15 21:45:50 ----HD---- C:\Windows\update.1
2011-07-15 21:45:15 ----HD---- C:\Windows\update.tray-12-0-lnk
2011-07-15 21:45:15 ----HD---- C:\Windows\update.tray-12-0
2011-07-15 21:34:42 ----A---- C:\Users\Adam\AppData\Roaming\dwm.exe
2011-07-15 21:34:11 ----A---- C:\Windows\winlog-ids.txt
2011-07-15 21:34:11 ----A---- C:\Windows\winlog-dirs.txt
2011-07-15 21:34:01 ----A---- C:\Windows\services32.exe
2011-07-15 17:30:51 ----A---- C:\Windows\system32\NCTAudioVisualization2.dll
2011-07-15 17:30:51 ----A---- C:\Windows\system32\NCTAudioTransform2.dll
2011-07-15 17:30:51 ----A---- C:\Windows\system32\NCTAudioRecord2.dll
2011-07-15 17:30:51 ----A---- C:\Windows\system32\NCTAudioPlayer2.dll
2011-07-15 17:30:51 ----A---- C:\Windows\system32\NCTAudioEditor2.dll
2011-07-15 17:30:51 ----A---- C:\Windows\system32\NCTAudioCDGrabber2.dll
2011-07-15 17:30:50 ----D---- C:\Program Files\All Video Converter
2011-07-15 17:22:39 ----D---- C:\Program Files\Mystik Media
2011-07-13 20:31:20 ----A---- C:\Windows\system32\KernelBase.dll
2011-07-13 20:31:19 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-13 20:31:19 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-13 20:31:19 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-13 20:31:19 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-13 20:31:19 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-07-13 20:31:18 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-07-13 20:31:18 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-13 20:31:18 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-07-13 20:31:18 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-13 20:31:18 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-07-13 20:31:17 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-07-13 20:31:17 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-07-13 20:31:17 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-13 20:31:17 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-07-13 20:31:17 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-07-13 20:31:16 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-07-13 20:31:16 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-13 20:31:16 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-07-13 20:31:16 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-07-13 20:31:16 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-13 20:31:16 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-07-13 20:31:15 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-07-13 20:31:15 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-13 20:31:15 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-13 20:31:15 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-07-13 20:31:15 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-07-13 20:31:15 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-07-13 20:31:14 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-07-13 20:31:09 ----A---- C:\Windows\system32\kernel32.dll
2011-07-13 20:31:08 ----A---- C:\Windows\system32\winsrv.dll
2011-07-13 20:31:08 ----A---- C:\Windows\system32\conhost.exe
2011-07-13 20:30:56 ----A---- C:\Windows\system32\win32k.sys
2011-07-07 21:48:23 ----D---- C:\Program Files\PokerStars
2011-07-06 21:02:41 ----D---- C:\Users\Adam\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2011-07-06 21:02:41 ----D---- C:\Users\Adam\AppData\Roaming\Adobe Mini Bridge CS5
2011-07-06 20:53:23 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2011-07-05 13:44:14 ----D---- C:\Program Files\Adobe Media Player
2011-07-04 19:57:25 ----D---- C:\Program Files\FDRLab
2011-07-03 15:27:21 ----D---- C:\ProgramData\Studio14Trial
2011-07-01 09:11:12 ----D---- C:\ProgramData\AVG Security Toolbar
2011-06-29 13:55:02 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-06-29 13:54:57 ----A---- C:\Windows\system32\mssrch.dll
2011-06-29 13:54:56 ----A---- C:\Windows\system32\tquery.dll
2011-06-29 13:54:56 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-06-29 13:54:56 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-06-29 13:54:56 ----A---- C:\Windows\system32\mssvp.dll
2011-06-29 13:54:56 ----A---- C:\Windows\system32\mssph.dll
2011-06-29 13:54:55 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-06-29 13:54:55 ----A---- C:\Windows\system32\mssphtb.dll
2011-06-29 13:54:55 ----A---- C:\Windows\system32\msscntrs.dll
2011-06-24 15:31:28 ----D---- C:\Windows\system32\SPReview
2011-06-24 15:06:54 ----D---- C:\Windows\system32\EventProviders
2011-06-24 15:06:40 ----D---- C:\58146306bb33f5dec2
2011-06-20 23:02:44 ----D---- C:\Users\Adam\AppData\Roaming\Skype
2011-06-20 23:01:35 ----RD---- C:\Program Files\Skype
2011-06-20 23:01:28 ----D---- C:\ProgramData\Skype

======List of files/folders modified in the last 1 month======

2011-07-16 10:05:08 ----D---- C:\Windows\Temp
2011-07-16 10:03:40 ----D---- C:\Windows\system32\catroot2
2011-07-16 10:03:37 ----D---- C:\Users\Adam\AppData\Roaming\uTorrent
2011-07-16 10:03:15 ----D---- C:\Program Files\Common Files\Akamai
2011-07-16 10:01:18 ----D---- C:\Windows\system32\config
2011-07-16 09:52:22 ----RD---- C:\Program Files
2011-07-16 09:48:57 ----D---- C:\Windows\tracing
2011-07-16 06:56:46 ----D---- C:\Windows
2011-07-16 06:54:16 ----D---- C:\Windows\System32
2011-07-16 06:53:31 ----D---- C:\Windows\system32\catroot
2011-07-16 06:51:53 ----SHD---- C:\System Volume Information
2011-07-16 06:16:52 ----HD---- C:\ProgramData
2011-07-16 06:16:32 ----SHD---- C:\Windows\Installer
2011-07-16 06:16:31 ----SHD---- C:\Config.Msi
2011-07-16 06:16:14 ----D---- C:\Program Files\Common Files
2011-07-16 06:15:07 ----D---- C:\Windows\system32\drivers
2011-07-16 06:15:02 ----D---- C:\Windows\inf
2011-07-16 06:15:01 ----D---- C:\Windows\system32\DriverStore
2011-07-16 05:37:34 ----SD---- C:\ProgramData\Microsoft
2011-07-15 23:22:16 ----D---- C:\Program Files\AVG
2011-07-15 22:40:23 ----D---- C:\Windows\system32\wbem
2011-07-15 22:39:31 ----D---- C:\Windows\winsxs
2011-07-15 22:39:31 ----D---- C:\Windows\Tasks
2011-07-15 22:39:31 ----D---- C:\Windows\system32\wfp
2011-07-15 22:39:31 ----D---- C:\Windows\system32\drivers\etc
2011-07-15 22:39:31 ----D---- C:\Windows\system32\drivers\AVG
2011-07-15 22:39:20 ----SD---- C:\Users\Adam\AppData\Roaming\Microsoft
2011-07-15 22:39:20 ----D---- C:\Users\Adam\AppData\Roaming\AVG10
2011-07-15 22:39:15 ----D---- C:\ProgramData\PMB Files
2011-07-15 22:39:15 ----D---- C:\ProgramData\MFAData
2011-07-15 22:39:15 ----D---- C:\Program Files\Registry Mechanic
2011-07-15 22:39:13 ----D---- C:\ProgramData\avg9
2011-07-15 22:39:13 ----D---- C:\ProgramData\AVG10
2011-07-15 22:39:01 ----D---- C:\Windows\registration
2011-07-15 17:34:02 ----AD---- C:\ProgramData\TEMP
2011-07-15 09:57:11 ----D---- C:\Windows\Prefetch
2011-07-14 20:48:07 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-07-14 10:59:12 ----A---- C:\Windows\system32\MRT.exe
2011-07-13 11:06:30 ----D---- C:\Metin2
2011-07-12 12:46:29 ----D---- C:\Windows\system32\Tasks
2011-07-12 11:29:20 ----D---- C:\Program Files\QuadCoreM2
2011-07-08 16:30:50 ----D---- C:\Windows\system32\Macromed
2011-07-08 13:31:07 ----D---- C:\ProgramData\Adobe
2011-07-06 21:22:28 ----D---- C:\Users\Adam\AppData\Roaming\Adobe
2011-07-05 13:46:34 ----D---- C:\Program Files\Adobe
2011-07-05 13:45:59 ----D---- C:\Program Files\Common Files\Adobe
2011-07-05 13:45:24 ----RSD---- C:\Windows\Fonts
2011-07-03 09:00:22 ----D---- C:\Windows\system32\FxsTmp
2011-06-28 12:56:03 ----D---- C:\Windows\Microsoft.NET
2011-06-28 12:55:22 ----RSD---- C:\Windows\assembly
2011-06-25 12:43:50 ----D---- C:\Windows\rescache
2011-06-25 11:17:35 ----D---- C:\Program Files\Arjaloc
2011-06-25 10:55:36 ----D---- C:\Program Files\Empire XP 5
2011-06-25 10:55:14 ----D---- C:\Program Files\Fracas
2011-06-24 15:40:50 ----D---- C:\Program Files\Windows Sidebar
2011-06-24 15:40:50 ----D---- C:\Program Files\Windows Mail
2011-06-24 15:40:50 ----D---- C:\Program Files\DVD Maker
2011-06-24 15:40:49 ----D---- C:\Program Files\Windows Portable Devices
2011-06-24 15:40:49 ----D---- C:\Program Files\Windows Photo Viewer
2011-06-24 15:40:49 ----D---- C:\Program Files\Windows Media Player
2011-06-24 15:40:49 ----D---- C:\Program Files\Windows Journal
2011-06-24 15:40:49 ----D---- C:\Program Files\Internet Explorer
2011-06-24 15:40:47 ----D---- C:\Windows\servicing
2011-06-24 15:40:47 ----D---- C:\Windows\ehome
2011-06-24 15:40:47 ----D---- C:\Program Files\Windows Defender
2011-06-24 15:40:41 ----D---- C:\Windows\system32\sysprep
2011-06-24 15:40:41 ----D---- C:\Windows\system32\oobe
2011-06-24 15:40:41 ----D---- C:\Windows\system32\migration
2011-06-24 15:40:41 ----D---- C:\Windows\system32\en-US
2011-06-24 15:40:41 ----D---- C:\Windows\system32\da-DK
2011-06-24 15:40:40 ----D---- C:\Windows\system32\Setup
2011-06-24 15:40:40 ----D---- C:\Windows\system32\cs-CZ
2011-06-24 15:40:40 ----D---- C:\Windows\system32\cs
2011-06-24 15:40:40 ----D---- C:\Windows\system32\AdvancedInstallers
2011-06-24 15:40:39 ----D---- C:\Windows\system32\sppui
2011-06-24 15:40:39 ----D---- C:\Windows\system32\migwiz
2011-06-24 15:40:39 ----D---- C:\Windows\system32\manifeststore
2011-06-24 15:40:39 ----D---- C:\Windows\system32\es-ES
2011-06-24 15:40:39 ----D---- C:\Windows\system32\drivers\cs-CZ
2011-06-24 15:40:39 ----D---- C:\Windows\system32\Dism
2011-06-24 15:40:23 ----D---- C:\Windows\AppPatch
2011-06-24 15:40:16 ----D---- C:\Windows\system32\Boot
2011-06-24 15:37:25 ----A---- C:\Windows\system32\msclmd.dll
2011-06-24 14:45:47 ----D---- C:\Windows\SoftwareDistribution
2011-06-20 23:07:12 ----D---- C:\Program Files\Google
2011-06-20 22:42:17 ----D---- C:\Users\Adam\AppData\Roaming\ICQ
2011-06-18 23:21:52 ----D---- C:\Windows\Minidump

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSEH;AVGIDSEH; C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx86.sys [2011-03-16 32592]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\Windows\System32\drivers\sfhlp02.sys [2005-05-16 6656]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-03-18 691696]
R1 Avgldx86;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx86.sys [2011-01-07 248656]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx86.sys [2011-03-01 34896]
R1 Avgtdix;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdix.sys [2011-04-05 297168]
R1 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2006-07-24 5632]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-05-25 7800832]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-05-25 245760]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2011-03-30 100880]
R3 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-04-14 134480]
R3 AVGIDSFilter;AVGIDSFilter; C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 24144]
R3 AVGIDSShim;AVGIDSShim; C:\Windows\system32\DRIVERS\AVGIDSShim.Sys [2011-02-10 21968]
R3 gHidPnp;USB Device Enhanced Function Driver; C:\Windows\System32\Drivers\gHidPnp.Sys [2006-07-14 14848]
R3 gMouUsb;USB Mouse Device Drv; C:\Windows\system32\DRIVERS\gMouUsb.sys [2006-07-14 9984]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2010-02-03 26176]
R3 netr73;Belkin Wireless 54G USB Network Adapter Driver for Vista; C:\Windows\system32\DRIVERS\netr73.sys [2010-02-11 464384]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-03-02 139776]
S0 prohlp02;StarForce Protection Helper Driver v2; C:\Windows\System32\drivers\prohlp02.sys [2004-08-09 114016]
S0 prosync1;StarForce Protection Synchronization Driver v1; C:\Windows\System32\drivers\prosync1.sys [2004-07-19 7040]
S0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\Windows\System32\drivers\sfdrv01.sys [2005-08-10 50688]
S0 sfhlp01;StarForce Protection Helper Driver; C:\Windows\System32\drivers\sfhlp01.sys [2003-12-01 4832]
S0 sfvfs02;StarForce Protection VFS Driver (version 2.x); C:\Windows\System32\drivers\sfvfs02.sys [2005-11-03 63488]
S1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6x.sys [2011-07-01 23832]
S1 prodrv06;StarForce Protection Environment Driver v6; C:\Windows\System32\drivers\prodrv06.sys [2004-08-09 53920]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-05-25 7800832]
S3 Axtmvflt;Axesstel USB Filter Service; C:\Windows\system32\DRIVERS\Axtmvflt.sys [2007-09-20 3456]
S3 Axtmvmdm;Axesstel USB Modem; C:\Windows\system32\DRIVERS\Axtmvmdm.sys [2007-09-20 40064]
S3 Axtmvprt;Axesstel Diagnostic Port; C:\Windows\System32\Drivers\Axtmvprt.sys [2007-09-20 38784]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 cpuz132;cpuz132; \??\C:\Users\Adam\AppData\Local\Temp\cpuz132\cpuz132_x32.sys []
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 gMouPS2;PS2 Scroll Mouse Device; C:\Windows\system32\DRIVERS\gMouPS2.sys [2006-07-12 17408]
S3 lgbusenum;LG Bluetooth Bus Enumerator; C:\Windows\system32\DRIVERS\lgbtbus.sys []
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS [2008-03-29 21248]
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS [2008-03-29 20096]
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2005-08-17 58352]
S3 sscdmdfl;SAMSUNG CDMA Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2005-08-17 8272]
S3 sscdmdm;SAMSUNG CDMA Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2005-08-17 93872]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgusbbus.sys [2010-01-21 13056]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgusbdiag.sys [2010-01-21 20864]
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgusbmodem.sys [2010-01-21 24960]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Akamai;Akamai NetSession Interface; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-05-25 176128]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2011-05-25 1336712]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-09-06 247096]
R2 McciCMService;McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [2007-10-15 303104]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service; C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2010-08-05 583640]
R2 ScsiAccess;ScsiAccess; C:\Program Files\Photodex\ProShow\ScsiAccess.exe [2010-10-15 181312]
R2 SmileyCentralIE_1wService;SmileyCentral Service; C:\PROGRA~1\SMILEY~2\bar\1.bin\1wbarsvc.exe [2010-11-22 28766]
R2 srvbtcclient;srvbtcclient; C:\Windows\update.5.0\svchost.exe [2011-07-15 339968]
R2 srviecheck;srviecheck; C:\Windows\update.2\svchost.exe [2011-07-15 483328]
R2 srvsysdriver32;srvsysdriver32; C:\Windows\sysdriver32.exe [2011-07-16 232960]
S2 avgfws;AVG Firewall; C:\Program Files\AVG\AVG10\avgfws.exe []
S2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe []
S2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG10\avgwdsvc.exe []
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-30 135664]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service; C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe []
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-30 135664]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-29 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 npggsvc;nProtect GameGuard Service; C:\Windows\system32\GameMon.des [2010-08-03 3732680]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-08 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nový vir

#4 Příspěvek od vyosek »

:arrow: Tam toho je, Vy jste se dal na chov konicku trojskych :arcisit: Mate tam celou zoo i s babkou pokladni :boxed:

:arrow: Odinstalujeme AVG pomoci Removemoveru http://download.avg.com/filedir/util/su ... 1_1184.exe Po ukonceni leceni tam dame Avast ci Aviru - jsou to daleko lepsi antiviry

:arrow: Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com :arrow: Aplikujte exeHelper by Raktor :arrow: RKill i eXeHelper by mely udelat logy, vlozte mi je sem - pokud ne, nevadi

PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Křivák
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 16 črc 2011 05:01

Re: nový vir

#5 Příspěvek od Křivák »

Ten exeHelper mi vzdy přestane pracovat a zeptá se mě to jestli to chci ladit nebo ukončit program

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nový vir

#6 Příspěvek od vyosek »

:arrow: Aplikujte jej (jako i nasledne ComboFix) v nouzovem rezimu (restart PC, mackat F8, zvolit STav nouze s praci v siti)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Křivák
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 16 črc 2011 05:01

Re: nový vir

#7 Příspěvek od Křivák »

Ok ale ten rkill jsem v nouzovim režimu nedělal vadí to?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nový vir

#8 Příspěvek od vyosek »

Nevadi, v nouzaku havet nebezi pripadne ji ukonci i exeHelper
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Křivák
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 16 črc 2011 05:01

Re: nový vir

#9 Příspěvek od Křivák »

Do nouzovího rezimu mě to nepustí

přhlásim se a asi za 5 sekund mě to restartuje a hodí na normální režim.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nový vir

#10 Příspěvek od vyosek »

Fajn, spustte tedy v normalnim rezimu ComboFix
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Křivák
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 16 črc 2011 05:01

Re: nový vir

#11 Příspěvek od Křivák »

date odkaz pls?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nový vir

#12 Příspěvek od vyosek »

vyosek píše: PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Křivák
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 16 črc 2011 05:01

Re: nový vir

#13 Příspěvek od Křivák »

aha sorry dík

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nový vir

#14 Příspěvek od vyosek »

V poradku, nic se nedeje :) Od toho tu jsem :wink:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Křivák
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 16 črc 2011 05:01

Re: nový vir

#15 Příspěvek od Křivák »

ok všechno to doběhlo a otevřelo se mi okno s tímto

ComboFix 11-07-15.03 - Adam 16.07.2011 11:49:07.1.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2047.1406 [GMT 2:00]
Spuštěný z: c:\users\Adam\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\progra~1\SMILEY~2\bar\1.bin\1wBAr.dll
c:\program files\HyperCam Toolbar\tbHElper.dll
c:\program files\SmileyCentralIE_1w
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wauxstb.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wbar.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wbarsvc.exe
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wbrmon.exe
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wbrstub.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wdatact.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wdlghk.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wdyn.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wfeedmg.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1whighin.exe
c:\program files\SmileyCentralIE_1w\bar\1.bin\1whtml.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1whtmlmu.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1whttpct.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1widle.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wimpipe.exe
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wmedint.exe
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wmlbtn.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wmsg.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wradio.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wregiet.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wscript.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wskin.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wskplay.exe
c:\program files\SmileyCentralIE_1w\bar\1.bin\1wSRcas.dll
c:\program files\SmileyCentralIE_1w\bar\1.bin\LOGO.BMP
c:\program files\SmileyCentralIE_1w\bar\Message\COMMON.T8S
c:\program files\SmileyCentralIE_1w\bar\Settings\s_pid.dat
c:\program files\Uninstall.exe
c:\program files\update.exe
c:\users\Adam\AppData\Roaming\dwm.exe
c:\users\Adam\AppData\Roaming\Microsoft\conhost.exe
c:\windows\btc_client_iplist.txt
c:\windows\ddh_iplist.txt
c:\windows\front_ip_list.txt
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\l1rezerv.exe
c:\windows\loader2.exe_ok
c:\windows\proc_list1.log
c:\windows\services32.exe
c:\windows\sysdriver32.exe
c:\windows\sysdriver32_.exe
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\system32\FSSTM.EXE
c:\windows\system32\SCLabel.ocx
c:\windows\systemup.exe
c:\windows\Temp\907943.exe
c:\windows\update.1
c:\windows\update.1\svchost.exe
c:\windows\update.2
c:\windows\update.2\svchost.exe
c:\windows\update.5.0
c:\windows\update.5.0\svchost.exe
c:\windows\update.tray-12-0\svchost.exe
c:\windows\update.tray-7-0\svchost.exe
c:\windows\winlog-dirs.txt
c:\windows\winlog-ids.txt
c:\windows\winsetupapi.log
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_srviecheck
-------\Service_srvsysdriver32
-------\Service_wxpdrivers
-------\Service_srvbtcclient
-------\Service_srvbtcclient
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-16 do 2011-07-16 )))))))))))))))))))))))))))))))
.
.
2011-07-16 10:03 . 2011-07-16 10:03 0 ---ha-w- c:\users\Adam\AppData\Local\BIT2B52.tmp
2011-07-16 10:00 . 2011-07-16 10:00 -------- d-----w- c:\users\Klára\AppData\Local\temp
2011-07-16 09:59 . 2011-07-16 09:59 -------- d-----w- c:\users\Guest\AppData\Local\temp
2011-07-16 09:59 . 2011-07-16 10:03 -------- d-----w- c:\users\Adam\AppData\Local\temp
2011-07-16 09:59 . 2011-07-16 09:59 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-16 07:52 . 2011-07-16 08:04 -------- d-----w- c:\program files\trend micro
2011-07-16 07:52 . 2011-07-16 07:53 -------- d-----w- C:\rsit
2011-07-16 04:56 . 2011-07-16 04:56 -------- d-----w- c:\users\Adam\AppData\Roaming\ATI
2011-07-16 04:56 . 2011-07-16 04:56 -------- d-----w- c:\users\Adam\AppData\Local\ATI
2011-07-16 04:16 . 2011-07-16 04:16 -------- d-----w- c:\programdata\ATI
2011-07-16 04:16 . 2011-07-16 04:16 -------- d-----w- c:\program files\AMD APP
2011-07-16 04:16 . 2011-07-16 04:16 -------- d-----w- c:\program files\Common Files\ATI Technologies
2011-07-16 04:11 . 2011-07-16 04:11 -------- d-----w- c:\program files\ATI
2011-07-16 04:10 . 2011-07-16 04:15 -------- d-----w- c:\program files\ATI Technologies
2011-07-16 03:31 . 2011-06-07 15:55 7074640 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{463D321D-4C8D-4856-8597-0FB1AAB307EA}\mpengine.dll
2011-07-15 21:38 . 2011-07-16 09:59 -------- d--h--w- c:\windows\update.tray-7-0
2011-07-15 21:38 . 2011-07-15 21:38 -------- d--h--w- c:\windows\update.tray-7-0-lnk
2011-07-15 21:35 . 2011-02-23 13:56 301528 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-07-15 21:35 . 2011-02-23 13:54 19544 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-07-15 21:35 . 2011-02-23 13:55 25432 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-07-15 21:35 . 2011-02-23 13:55 49240 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-07-15 21:35 . 2011-02-23 13:56 371544 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-07-15 21:35 . 2011-02-23 13:55 53592 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-07-15 21:34 . 2011-02-23 14:04 40648 ----a-w- c:\windows\avastSS.scr
2011-07-15 21:34 . 2011-02-23 14:04 190016 ----a-w- c:\windows\system32\aswBoot.exe
2011-07-15 21:34 . 2011-07-15 21:34 -------- d-----w- C:\ATI
2011-07-15 19:51 . 2011-07-15 20:40 -------- d-----w- c:\windows\rpcminer
2011-07-15 19:51 . 2011-07-15 20:39 -------- d-----w- c:\windows\ufa
2011-07-15 19:51 . 2011-07-15 20:39 -------- d-----w- c:\windows\phoenix
2011-07-15 19:51 . 2011-07-15 19:51 246272 ----a-w- c:\windows\unrar.exe
2011-07-15 19:48 . 2011-07-15 19:48 169472 ----a-w- c:\windows\gbot111.exe
2011-07-15 19:47 . 2011-07-15 21:40 -------- d-----w- c:\windows\av_ico
2011-07-15 19:45 . 2011-07-16 09:59 -------- d--h--w- c:\windows\update.tray-12-0
2011-07-15 19:45 . 2011-07-15 20:39 -------- d--h--w- c:\windows\update.tray-12-0-lnk
2011-07-15 15:30 . 2005-06-01 10:12 467968 ----a-w- c:\windows\system32\NCTAudioRecord2.dll
2011-07-15 15:30 . 2005-06-01 10:11 467456 ----a-w- c:\windows\system32\NCTAudioPlayer2.dll
2011-07-15 15:30 . 2005-06-01 09:54 634880 ----a-w- c:\windows\system32\NCTAudioEditor2.dll
2011-07-15 15:30 . 2005-05-31 14:02 522752 ----a-w- c:\windows\system32\NCTAudioTransform2.dll
2011-07-15 15:30 . 2005-03-28 13:54 478208 ----a-w- c:\windows\system32\NCTAudioVisualization2.dll
2011-07-15 15:30 . 2004-11-04 11:31 479744 ----a-w- c:\windows\system32\NCTAudioCDGrabber2.dll
2011-07-15 15:30 . 2004-01-12 15:57 86016 ----a-w- c:\windows\system32\QuickTime.ax
2011-07-15 15:30 . 2011-07-15 20:39 -------- d-----w- c:\program files\All Video Converter
2011-07-15 15:22 . 2011-07-15 20:35 -------- d-----w- c:\program files\Mystik Media
2011-07-13 18:30 . 2011-06-11 02:29 2334208 ----a-w- c:\windows\system32\win32k.sys
2011-07-07 19:48 . 2011-07-07 19:50 -------- d-----w- c:\users\Adam\AppData\Local\PokerStars
2011-07-07 19:48 . 2011-07-07 19:50 -------- d-----w- c:\program files\PokerStars
2011-07-06 19:02 . 2011-07-06 19:02 -------- d-----w- c:\users\Adam\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2011-07-06 19:02 . 2011-07-06 19:02 -------- d-----w- c:\users\Adam\AppData\Roaming\Adobe Mini Bridge CS5
2011-07-06 18:53 . 2011-07-06 18:53 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2011-07-05 11:44 . 2011-07-05 11:44 -------- d-----w- c:\program files\Adobe Media Player
2011-07-04 17:57 . 2011-07-04 17:57 -------- d-----w- c:\program files\FDRLab
2011-07-03 13:27 . 2011-07-12 09:23 -------- d-----w- c:\programdata\Studio14Trial
2011-07-01 08:32 . 2011-07-01 08:32 -------- d-----w- c:\users\Adam\AppData\Local\AVG Security Toolbar
2011-06-29 11:55 . 2011-05-24 10:44 293376 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-06-29 11:54 . 2011-05-04 04:32 1401344 ----a-w- c:\windows\system32\mssrch.dll
2011-06-29 11:54 . 2011-05-04 04:34 1549312 ----a-w- c:\windows\system32\tquery.dll
2011-06-29 11:54 . 2011-05-04 04:32 666624 ----a-w- c:\windows\system32\mssvp.dll
2011-06-29 11:54 . 2011-05-04 04:32 337408 ----a-w- c:\windows\system32\mssph.dll
2011-06-29 11:54 . 2011-05-04 04:28 427520 ----a-w- c:\windows\system32\SearchIndexer.exe
2011-06-29 11:54 . 2011-05-04 04:28 164352 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2011-06-29 11:54 . 2011-05-04 04:32 197120 ----a-w- c:\windows\system32\mssphtb.dll
2011-06-29 11:54 . 2011-05-04 04:32 59392 ----a-w- c:\windows\system32\msscntrs.dll
2011-06-29 11:54 . 2011-05-04 04:28 86528 ----a-w- c:\windows\system32\SearchFilterHost.exe
2011-06-24 13:31 . 2011-06-24 13:31 -------- d-----w- c:\windows\system32\SPReview
2011-06-24 13:06 . 2011-06-24 13:06 -------- d-----w- c:\windows\system32\EventProviders
2011-06-24 13:06 . 2011-06-24 13:08 -------- d-----w- C:\58146306bb33f5dec2
2011-06-24 12:27 . 2011-06-24 12:27 216 ----a-w- c:\users\Adam\client.bin
2011-06-24 11:52 . 2011-06-24 12:34 -------- d-----w- c:\users\Adam\pack
2011-06-23 18:19 . 2011-06-23 18:19 -------- d-----w- c:\users\Adam\BDA
2011-06-22 20:23 . 2011-06-22 20:29 -------- d-----w- c:\users\Klára\AppData\Roaming\Skype
2011-06-20 21:02 . 2011-07-13 17:47 -------- d-----w- c:\users\Adam\AppData\Roaming\Skype
2011-06-20 21:01 . 2011-06-20 21:02 -------- d-----r- c:\program files\Skype
2011-06-20 21:01 . 2011-06-20 21:01 -------- d-----w- c:\programdata\Skype
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-06-24 13:37 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-06-07 03:13 . 2011-06-07 03:13 74752 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-06-07 03:13 . 2011-06-07 03:13 86528 ----a-w- c:\windows\system32\iesysprep.dll
2011-06-07 03:13 . 2011-06-07 03:13 76800 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-06-07 03:13 . 2011-06-07 03:13 63488 ----a-w- c:\windows\system32\tdc.ocx
2011-06-07 03:13 . 2011-06-07 03:13 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-06-07 03:13 . 2011-06-07 03:13 367104 ----a-w- c:\windows\system32\html.iec
2011-06-07 03:13 . 2011-06-07 03:13 161792 ----a-w- c:\windows\system32\msls31.dll
2011-06-07 03:13 . 2011-06-07 03:13 1126912 ----a-w- c:\windows\system32\wininet.dll
2011-06-07 03:13 . 2011-06-07 03:13 110592 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-06-07 03:12 . 2011-06-07 03:12 74752 ----a-w- c:\windows\system32\iesetup.dll
2011-06-07 03:12 . 2011-06-07 03:12 420864 ----a-w- c:\windows\system32\vbscript.dll
2011-06-07 03:12 . 2011-06-07 03:12 35840 ----a-w- c:\windows\system32\imgutil.dll
2011-06-07 03:12 . 2011-06-07 03:12 23552 ----a-w- c:\windows\system32\licmgr10.dll
2011-06-07 03:12 . 2011-06-07 03:12 152064 ----a-w- c:\windows\system32\wextract.exe
2011-06-07 03:12 . 2011-06-07 03:12 150528 ----a-w- c:\windows\system32\iexpress.exe
2011-06-07 03:12 . 2011-06-07 03:12 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2011-06-07 03:12 . 2011-06-07 03:12 1427456 ----a-w- c:\windows\system32\inetcpl.cpl
2011-06-07 03:12 . 2011-06-07 03:12 11776 ----a-w- c:\windows\system32\mshta.exe
2011-06-07 03:12 . 2011-06-07 03:12 101888 ----a-w- c:\windows\system32\admparse.dll
2011-05-27 17:44 . 2011-05-27 17:44 30520 ----a-w- c:\windows\system32\midiwrap3405.deu
2011-05-25 04:25 . 2011-05-25 04:25 7800832 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2011-05-25 03:31 . 2011-05-25 03:31 17940992 ----a-w- c:\windows\system32\atioglxx.dll
2011-05-25 03:07 . 2011-05-25 03:07 151552 ----a-w- c:\windows\system32\atiapfxx.exe
2011-05-25 03:07 . 2011-05-25 03:07 688128 ----a-w- c:\windows\system32\aticfx32.dll
2011-05-25 03:04 . 2011-05-25 03:04 462848 ----a-w- c:\windows\system32\ATIDEMGX.dll
2011-05-25 03:03 . 2011-05-25 03:03 401408 ----a-w- c:\windows\system32\atieclxx.exe
2011-05-25 03:03 . 2011-05-25 03:03 176128 ----a-w- c:\windows\system32\atiesrxx.exe
2011-05-25 03:02 . 2011-05-25 03:02 159744 ----a-w- c:\windows\system32\atitmmxx.dll
2011-05-25 03:02 . 2011-05-25 03:02 356352 ----a-w- c:\windows\system32\atipdlxx.dll
2011-05-25 03:02 . 2011-05-25 03:02 278528 ----a-w- c:\windows\system32\Oemdspif.dll
2011-05-25 03:01 . 2011-05-25 03:01 15872 ----a-w- c:\windows\system32\atimuixx.dll
2011-05-25 03:01 . 2011-05-25 03:01 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2011-05-25 02:59 . 2011-05-25 02:59 1828864 ----a-w- c:\windows\system32\atiumdmv.dll
2011-05-25 02:58 . 2009-07-13 22:09 4219904 ----a-w- c:\windows\system32\atidxx32.dll
2011-05-25 02:50 . 2011-05-25 02:50 4017152 ----a-w- c:\windows\system32\atiumdva.dll
2011-05-25 02:47 . 2011-05-25 02:47 46080 ----a-w- c:\windows\system32\aticalrt.dll
2011-05-25 02:47 . 2011-05-25 02:47 44032 ----a-w- c:\windows\system32\aticalcl.dll
2011-05-25 02:43 . 2011-05-25 02:43 6847488 ----a-w- c:\windows\system32\aticaldd.dll
2011-05-25 02:39 . 2011-05-25 02:39 4330496 ----a-w- c:\windows\system32\atiumdag.dll
2011-05-25 02:38 . 2011-05-25 02:38 52736 ----a-w- c:\windows\system32\atimpc32.dll
2011-05-25 02:38 . 2011-05-25 02:38 52736 ----a-w- c:\windows\system32\amdpcom32.dll
2011-05-25 02:26 . 2011-05-25 02:26 262144 ----a-w- c:\windows\system32\atiadlxx.dll
2011-05-25 02:26 . 2011-05-25 02:26 12800 ----a-w- c:\windows\system32\atiglpxx.dll
2011-05-25 02:25 . 2011-05-25 02:25 32768 ----a-w- c:\windows\system32\atigktxx.dll
2011-05-25 02:25 . 2011-05-25 02:25 245760 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2011-05-25 02:24 . 2011-05-25 02:24 31744 ----a-w- c:\windows\system32\atiuxpag.dll
2011-05-25 02:24 . 2011-05-25 02:24 29184 ----a-w- c:\windows\system32\atiu9pag.dll
2011-05-25 02:24 . 2011-05-25 02:24 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2011-05-25 02:18 . 2011-05-25 02:18 52736 ----a-w- c:\windows\system32\coinst.dll
2011-05-24 21:44 . 2011-05-24 21:44 59904 ----a-w- c:\windows\system32\OVDecode.dll
2011-05-24 21:44 . 2011-05-24 21:44 51712 ----a-w- c:\windows\system32\OpenCL.dll
2011-05-24 21:43 . 2011-05-24 21:43 12798976 ----a-w- c:\windows\system32\amdocl.dll
2011-05-24 17:14 . 2009-12-02 13:50 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-05-03 04:30 . 2011-06-15 18:54 741376 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-29 02:46 . 2011-06-15 18:54 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-29 02:46 . 2011-06-15 18:54 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-29 02:46 . 2011-06-15 18:54 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-04-27 02:17 . 2011-06-15 18:54 223744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-04-27 02:17 . 2011-06-15 18:54 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-04-27 02:17 . 2011-06-15 18:54 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-04-25 04:31 . 2011-06-15 18:54 1290624 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-04-25 02:18 . 2011-06-15 18:54 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2011-04-22 23:35 . 2011-06-15 21:46 1797632 ----a-w- c:\windows\system32\jscript9.dll
2011-04-22 23:25 . 2011-06-15 21:46 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2011-04-22 19:14 . 2011-05-25 05:36 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2010-10-23 11:53 . 2010-10-23 11:56 1377109 ----a-w- c:\program files\unins000.exe
2010-10-05 10:09 . 2010-10-23 11:56 1377107 ----a-w- c:\program files\unins001.exe
2010-10-05 08:51 . 2010-10-23 11:56 195408 ----a-w- c:\program files\cabal.exe
2010-10-04 13:52 . 2010-10-23 11:56 1881472 ----a-w- c:\program files\cabalmain.exe
2010-03-26 17:34 . 2010-10-23 11:56 77824 ----a-w- c:\program files\libvorbisfile.dll
2010-03-26 17:34 . 2010-10-23 11:56 43520 ----a-w- c:\program files\libogg.dll
2010-03-26 17:34 . 2010-10-23 11:56 1205248 ----a-w- c:\program files\libvorbis.dll
2010-03-26 17:34 . 2010-10-23 11:56 94208 ----a-w- c:\program files\KarasX2.dll
2010-03-26 17:34 . 2010-10-23 11:56 299304 ----a-w- c:\program files\GameGuard.des
2010-03-26 17:34 . 2010-10-23 11:56 369664 ----a-w- c:\program files\fmodexL.dll
2010-03-26 17:34 . 2010-10-23 11:56 325632 ----a-w- c:\program files\fmodex.dll
2010-03-26 17:34 . 2010-10-23 11:56 2613760 ----a-w- c:\program files\Download.dll
2010-03-26 17:18 . 2010-10-23 11:56 2388176 ----a-w- c:\program files\d3dx9_30.dll
2010-03-26 17:18 . 2010-10-23 11:56 106496 ----a-w- c:\program files\atl71.dll
2011-03-18 17:55 . 2011-06-11 08:54 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-05-17 1490312]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll" [2011-02-01 141616]
"{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}"= "c:\program files\Softonic-Eng7\tbSoft.dll" [2010-10-10 3906656]
.
[HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
.
[HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
.
[HKEY_CLASSES_ROOT\clsid\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2010-10-10 14:51 3906656 ----a-w- c:\program files\ConduitEngine\ConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}]
2010-10-10 14:51 3906656 ----a-w- c:\program files\Softonic-Eng7\tbSoft.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2011-05-17 11:29 1490312 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
2011-02-01 13:58 1499440 ----a-r- c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2011-02-01 1499440]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-05-17 1490312]
"{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}"= "c:\program files\Softonic-Eng7\tbSoft.dll" [2010-10-10 3906656]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\ConduitEngine.dll" [2010-10-10 3906656]
.
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CLASSES_ROOT\clsid\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2011-02-01 1499440]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-05-17 1490312]
"{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3}"= "c:\program files\Softonic-Eng7\tbSoft.dll" [2010-10-10 3906656]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\ConduitEngine.dll" [2010-10-10 3906656]
.
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CLASSES_ROOT\clsid\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-12-29 39408]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2010-12-23 395640]
"Pando Media Booster"="c:\program files\Pando Networks\Media Booster\PMB.exe" [2010-11-25 2975640]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ioCentre"="c:\program files\ioCentre\gTaskBar.exe" [2006-08-03 241664]
"TO2SSM_McciTrayApp"="c:\program files\TO2SSM\McciTrayApp.exe" [2008-08-15 1473536]
"SSDMonitor"="c:\program files\Common Files\PC Tools\sMonitor\SSDMonitor.exe" [2010-08-05 104408]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]
"SweetIM"="c:\program files\SweetIM\Messenger\SweetIM.exe" [2011-03-13 114992]
"ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe" [2011-05-17 395144]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2011-05-25 1951112]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-06-08 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" [2010-02-22 406992]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-05-24 336384]
.
c:\users\Adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-5-15 384512]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableSecureUIAPaths"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0aswboot.exe /a:* /l:1029 /kbd:2 /dir:c:\program
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallOverride"=dword:00000001
"DisableThumbnailCache"=dword:00000001
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-01-30 135664]
R2 SmileyCentralIE_1wService;SmileyCentral Service;c:\progra~1\SMILEY~2\bar\1.bin\1wbarsvc.exe [x]
R3 Axtmvflt;Axesstel USB Filter Service;c:\windows\system32\DRIVERS\Axtmvflt.sys [2007-09-20 3456]
R3 Axtmvmdm;Axesstel USB Modem;c:\windows\system32\DRIVERS\Axtmvmdm.sys [2007-09-20 40064]
R3 Axtmvprt;Axesstel Diagnostic Port;c:\windows\system32\Drivers\Axtmvprt.sys [2007-09-20 38784]
R3 gMouPS2;PS2 Scroll Mouse Device;c:\windows\system32\DRIVERS\gMouPS2.sys [2006-07-12 17408]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2010-01-30 135664]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\DRIVERS\lgbtbus.sys [x]
R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des [2010-08-02 3732680]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-06-08 1343400]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-03-18 691696]
S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 20992]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2011-05-25 176128]
S2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [2011-05-25 1336712]
S2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [2010-09-06 247096]
S2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2010-08-05 583640]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2011-05-25 7800832]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2011-05-25 245760]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [2011-03-30 100880]
S3 gHidPnp;USB Device Enhanced Function Driver;c:\windows\system32\Drivers\gHidPnp.Sys [2006-07-14 14848]
S3 gMouUsb;USB Mouse Device Drv;c:\windows\system32\DRIVERS\gMouUsb.sys [2006-07-14 9984]
S3 netr73;Belkin Wireless 54G USB Network Adapter Driver for Vista;c:\windows\system32\DRIVERS\netr73.sys [2010-02-11 464384]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-03-01 139776]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
Akamai REG_MULTI_SZ Akamai
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-16 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-30 21:17]
.
2011-07-16 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-30 21:17]
.
2011-07-14 c:\windows\Tasks\Norton Security Scan for Klára.job
- c:\program files\Norton Security Scan\Engine\2.7.3.34\Nss.exe [2010-03-04 22:04]
.
2011-07-13 c:\windows\Tasks\RMSchedule.job
- c:\program files\Registry Mechanic\RegMech.exe [2010-10-22 06:46]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
mStart Page = hxxp://home.sweetim.com
uInternet Settings,ProxyServer = http=127.0.0.1:54848
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
Handler: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} -
DPF: {444785F1-DE89-4295-863A-D46C3A781394} - hxxp://webplayer.unity3d.com/download_webplayer-2.x/UnityWebPlayer.cab
FF - ProfilePath - c:\users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\os0uce96.default\
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4e0d7310&v=7.005.030.004&i=26&tp=ab&iy=&ychte=us&lng=cs&q=
FF - prefs.js: network.proxy.http - 127.0.0.1
FF - prefs.js: network.proxy.http_port - 54848
FF - prefs.js: network.proxy.type - 1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - c:\program files\AVAST Software\Avast\ashShell.dll
HKCU-Run-ICQ - ~c:\program files\ICQ6.5\ICQ.exe
HKCU-Run-SpywareTerminatorUpdate - c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe
HKCU-Run-PlayNC Launcher - (no file)
HKCU-Run-LG LinkAir - (no file)
HKCU-Run-AdobeBridge - (no file)
HKLM-Run-F5D7050v3 - c:\program files\Belkin\F5D7050v3\Belkinwcui.exe
HKLM-Run-SmileyCentralIE_1w Browser Plugin Loader - c:\progra~1\SMILEY~2\bar\1.bin\1wbrmon.exe
HKLM-Run-wxpdrv - c:\windows\services32.exe
HKLM-Run-tray_ico - (no file)
HKLM-Run-tray_ico0 - c:\windows\update.tray-12-0\svchost.exe
HKLM-Run-tray_ico1 - c:\windows\update.tray-7-0\svchost.exe
HKLM-Run-tray_ico2 - (no file)
HKLM-Run-tray_ico3 - (no file)
HKLM-Run-tray_ico4 - (no file)
HKLM-Run-sysdriver32.exe - c:\windows\sysdriver32.exe
HKLM-Run-sysdriver32_.exe - c:\windows\sysdriver32_.exe
HKLM-Run-systemup - c:\windows\systemup.exe
HKLM-Run-l1rezerv.exe - c:\windows\l1rezerv.exe
HKLM-Run-avast - c:\program files\AVAST Software\Avast\avastUI.exe
AddRemove-avast - c:\program files\AVAST Software\Avast\aswRunDll.exe
AddRemove-Hospital - c:\program files\Bullfrog\Hospital\DeIsL1.isu
AddRemove-LastChaos - c:\aeriagames\LastChaosUSA\Uninst.exe
AddRemove-Snowboard Assassins_is1 - c:\snowboard assassins\unins000.exe
AddRemove-StreetsOfSCDemov1 - c:\DeIsL1.isu
AddRemove-Totalcmd - c:\totalcmd\tcuninst.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\atieclxx.exe
c:\program files\Common Files\Motive\McciCMService.exe
c:\program files\Photodex\ProShow\ScsiAccess.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\conhost.exe
c:\windows\system32\taskhost.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\OpenOffice.org 3\program\soffice.exe
c:\program files\OpenOffice.org 3\program\soffice.bin
c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
c:\windows\system32\sppsvc.exe
.
**************************************************************************
.
Celkový čas: 2011-07-16 12:09:05 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-16 10:09
.
Před spuštěním: Volných bajtů: 11 171 938 304
Po spuštění: Volných bajtů: 167 668 932 608
.
- - End Of File - - 0160BC03EFCCE71B7267F89DD529A6AA

Odpovědět