
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
FB Vir :/
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
FB Vir :/
Logfile of random's system information tool 1.09 (written by random/random)
Run by win at 2011-08-22 02:09:11
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 46 GB (46%) free of 100 GB
Total RAM: 1015 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 2:13:09, on 22.8.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\update.7.1\svchostdriver.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\update.5.0\svchost.exe
C:\Program Files\Google\Update\1.3.21.65\GoogleCrashHandler.exe
C:\WINDOWS\update.2\svchost.exe
C:\WINDOWS\update.5.0\svchost.exe
C:\WINDOWS\sysdriver32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
C:\WINDOWS\system32\UTSCSI.EXE
C:\WINDOWS\update.1\svchost.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\update.2\svchost.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\update.tray-2-0\svchost.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\systemup.exe
C:\WINDOWS\update.tray-9-0\svchost.exe
C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\NTServiceManager.exe
C:\Program Files\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe
C:\WINDOWS\update.7.1\svchostdriver.exe
C:\WINDOWS\System32\svchost.exe
J:\RSIT.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\trend micro\win.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: CSearchBHO Class - {D7BE8ED1-B138-48FD-BB22-9779A39130B1} - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\SearchBHO.dll
O2 - BHO: CashBackAssistant - {00F5B5BA-E3C2-4b70-BF51-42A557914FAD} - C:\Program Files\Nice Prosper\CashBackAssistant\CashBackAssistantIE.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: ShopperReports - {100EB1FD-D03E-47FD-81F3-EE91287F9465} - C:\Program Files\ShopperReports3\bin\3.0.307.0\ShopperReports.dll
O2 - BHO: ShowBarObj Class - {2863E737-DD3F-4280-9AF8-E9E79C16F312} - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\MinBHO.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: NP Helper Class - {35B8D58C-B0CB-46b0-BA64-05B3804E4E86} - C:\Program Files\Internet Saving Optimizer\2.2.0.2880\NPIEAddOn.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O2 - BHO: (no name) - {511131f1-4629-4254-a85f-ed7b6d75dd3c} - (no file)
O2 - BHO: facemoods Helper - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoods.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: DVDVideoSoftTB - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD2.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Trixie.Bho - {B0744341-96E0-4341-9ED2-8BC36CE0CCD0} - mscoree.dll (file missing)
O2 - BHO: HelloWorldBHO - {D7BE8ED1-B138-48FD-BB22-9779A39130B1} - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\SearchBHO.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: Společná komponenta pro aplikace společnosti Seznam.cz - {EA837F47-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.dll
O3 - Toolbar: (no name) - {511131f1-4629-4254-a85f-ed7b6d75dd3c} - (no file)
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: facemoods Toolbar - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoodsTlbr.dll
O3 - Toolbar: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD2.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O3 - Toolbar: Youtube Downloader - {F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\YoutubeDownloader.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: McAfee VirusScan - {ACB1E670-3217-45C4-A021-6B829A8A27CB} - C:\Program Files\McAfee\McAfee VirusScan\VSCShellExtension.dll (file missing)
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [wxpdrv] C:\WINDOWS\services32.exe
O4 - HKLM\..\Run: [6000139.exe] "C:\WINDOWS\TEMP\6000139.exe"
O4 - HKLM\..\Run: [sysdriver32.exe] "C:\WINDOWS\sysdriver32.exe" rezerv
O4 - HKLM\..\Run: [sysdriver32_.exe] "C:\WINDOWS\sysdriver32_.exe" rezerv
O4 - HKLM\..\Run: [5683064-loader2.exe] "C:\WINDOWS\TEMP\5683064-loader2.exe"
O4 - HKLM\..\Run: [3688270.exe] "C:\WINDOWS\TEMP\3688270.exe"
O4 - HKLM\..\Run: [tray_ico0] C:\WINDOWS\update.tray-2-0\svchost.exe
O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [1517081.exe] "C:\WINDOWS\TEMP\1517081.exe"
O4 - HKLM\..\Run: [systemup] "C:\WINDOWS\systemup.exe" stand
O4 - HKLM\..\Run: [McAfee Guardian] "C:\Program Files\McAfee\McAfee Shared Components\Guardian\CMGrdian.exe" /SU
O4 - HKLM\..\Run: [tray_ico1] C:\WINDOWS\update.tray-9-0\svchost.exe
O4 - HKCU\..\Run: [NTServiceManager] C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\NTServiceManager.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [McAfee.InstantUpdate.Monitor] "C:\Program Files\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe" /STARTMONITOR
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredi ... p=ZCfox000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: (no name) - {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: My kikin - {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: (no name) - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - C:\WINDOWS\system32\mscoree.DLL
O9 - Extra 'Tools' menuitem: Tri&xie Options... - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - C:\WINDOWS\system32\mscoree.DLL
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: ShopperReports - Compare product prices - {C5428486-50A0-4a02-9D20-520B59A9F9B2} - C:\Program Files\ShopperReports3\bin\3.0.307.0\ShopperReports.dll
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\Program Files\ShopperReports3\bin\3.0.307.0\ShopperReports.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocach ... .0.1.1.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 8464584319
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{7519E748-2514-43C3-B154-9D54B3DE031E}: NameServer = 212.111.0.10
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - (no file)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVSync Manager (AvSynMgr) - Unknown owner - C:\Program Files\McAfee\McAfee VirusScan\Avsynmgr.exe (file missing)
O23 - Service: ddservice - Unknown owner - C:\WINDOWS\update.7.1\svchostdriver.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - Unknown owner - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe (file missing)
O23 - Service: ESET Service (ekrn) - Unknown owner - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate1ca1a1437e2ff0) (gupdate1ca1a1437e2ff0) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee ScanAndRepair Svc - McAfee, Inc. - C:\Program Files\McAfeeScanAndRepair\McAfeeScanRepairSvc.exe
O23 - Service: McShield - Unknown owner - C:\Program Files\Common Files\Network Associates\McShield\Mcshield.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: srvbtcclient - Unknown owner - C:\WINDOWS\update.5.0\svchost.exe
O23 - Service: srviecheck - Unknown owner - C:\WINDOWS\update.2\svchost.exe
O23 - Service: srvsysdriver32 - Unknown owner - C:\WINDOWS\sysdriver32.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
O23 - Service: CLCV0 (UTSCSI) - Unknown owner - C:\WINDOWS\system32\UTSCSI.EXE
O23 - Service: wxpdrivers - Unknown owner - C:\WINDOWS\update.1\svchost.exe
--
End of file - 15774 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At2.job
C:\WINDOWS\tasks\At3.job
C:\WINDOWS\tasks\At4.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1ca2c9bba0d80fc.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\win\Data aplikací\Mozilla\Firefox\Profiles\l19s6ece.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "extensions.enabledItems" - "{AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}:1.0, {88c7f2aa-f93f-432c-8f0e-b7d85967a527}:3.2.3.3, engine@conduit.com:3.2.3.3, {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1, {872b5b88-9db5-4310-bdd0-ac189557e5f5}:2.7.2.0, ffxtlbr@Facemoods.com:1.0.4, {6236BA26-C117-4007-928C-DE0716C7FA99}:1.0.1, {6236BA26-C117-4007-928C-DE0716C7FA80}:1.0.22, {800b5000-a755-47e1-992b-48a1c1357f07}:2.0.0.4, illimitux@illimitux.net:4.0, {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07, {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, jqs@sun.com:1.0, {AA994882-F391-4d2e-806F-8908DA4814ED}:2.11.9, {20a82645-c095-46ed-80e3-08825760534b}:1.1, {7645f4b1-1f19-13dd-2d6b-0200600c2a56}:1.0, {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.3.3, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=C:\Program Files\AVG\AVG10\Firefox4\
"avg@igeared"=C:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3]
"Description"=Office Live Update v1.3
"Path"=C:\Program Files\Microsoft\Office Live\npOLW.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2303]
"Description"=RealMedia Plugin
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1465]
"Description"=RealPlayer Version Plugin
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
ffxtlbr@Facemoods.com
{800b5000-a755-47e1-992b-48a1c1357f07}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
AskHPRFF.js
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsIBitCometAgent.xpt
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
libdivx.dll
npBitCometAgent.dll
npdeployJava1.dll
npdivx32.dll
npMcAfeeSRPlgn.dll
npnul32.dll
NPOFF12.DLL
npPandoWebInst.dll
npPandoWebInst.xpt
ssldivx.dll
C:\Program Files\Mozilla Firefox\searchplugins\
avg_igeared.xml
bardiscover116.xml
fcmdSrch.xml
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\win\Data aplikací\Mozilla\Firefox\Profiles\l19s6ece.default\extensions\
DTToolbar@toolbarnet(2).com
engine@conduit.com
illimitux@illimitux.net
NG_Classic@snakehole.net
one@h3j4.com
staged-xpis
temp
{1DEAE5AA-E19E-458b-9C8C-73CB651B9A58}
{20a82645-c095-46ed-80e3-08825760534b}
{5c8bfb7c-9a54-11dc-8314-0800200c9a66}
{5c8bfb7c-9a54-11dc-8314-0800200c9a66}(2)
{6236BA26-C117-4007-928C-DE0716C7FA80}
{6236BA26-C117-4007-928C-DE0716C7FA96}(2)
{6236BA26-C117-4007-928C-DE0716C7FA99}
{7336c430-3def-11dd-ae16-0800200c9a66}
{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
{800b5000-a755-47e1-992b-48a1c1357f07}
{872b5b88-9db5-4310-bdd0-ac189557e5f5}
{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
{AA994882-F391-4d2e-806F-8908DA4814ED}
{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
{c1dffba0-628e-11d9-9669-0800200c9a66}
{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}
{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}(2)
C:\Documents and Settings\win\Data aplikací\Mozilla\Firefox\Profiles\l19s6ece.default\searchplugins\
askcom.xml
bing.xml
conduit.xml
GoogleFeed.xml
icqplugin-1.xml
icqplugin-10.xml
icqplugin-11.xml
icqplugin-12.xml
icqplugin-13.xml
icqplugin-14.xml
icqplugin-15.xml
icqplugin-16.xml
icqplugin-17.xml
icqplugin-18.xml
icqplugin-19.xml
icqplugin-2.xml
icqplugin-20.xml
icqplugin-21.xml
icqplugin-22.xml
icqplugin-23.xml
icqplugin-24.xml
icqplugin-25.xml
icqplugin-26.xml
icqplugin-27.xml
icqplugin-28.xml
icqplugin-29.xml
icqplugin-3.xml
icqplugin-30.xml
icqplugin-31.xml
icqplugin-32.xml
icqplugin-33.xml
icqplugin-34.xml
icqplugin-35.xml
icqplugin-36.xml
icqplugin-37.xml
icqplugin-38.xml
icqplugin-39.xml
icqplugin-4.xml
icqplugin-40.xml
icqplugin-41.xml
icqplugin-5.xml
icqplugin-6.xml
icqplugin-7.xml
icqplugin-8.xml
icqplugin-9.xml
icqplugin.xml
kikin-search.xml
mywebsearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00F5B5BA-E3C2-4b70-BF51-42A557914FAD}]
CashBackAssistant - C:\Program Files\Nice Prosper\CashBackAssistant\CashBackAssistantIE.dll [2008-12-22 835584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\PROGRA~1\ICQTOO~1\toolbaru.dll [2006-12-25 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2005-09-24 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465}]
ShopperReports - C:\Program Files\ShopperReports3\bin\3.0.307.0\ShopperReports.dll [2010-01-26 1082368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2863E737-DD3F-4280-9AF8-E9E79C16F312}]
ShowBarObj Class - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\MinBHO.dll [2011-01-05 1918976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-10-18 3908192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35B8D58C-B0CB-46b0-BA64-05B3804E4E86}]
NP Helper Class - C:\Program Files\Internet Saving Optimizer\2.2.0.2880\NPIEAddOn.dll [2009-02-17 176128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4E6D6F90-31CA-4878-A7A3-1CD50F115A69}]
Zvýrazňovač slov Lištičky - C:\Program Files\Seznam.cz\listicka.dll [2009-03-18 686744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{511131f1-4629-4254-a85f-ed7b6d75dd3c}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64182481-4F71-486b-A045-B233BD0DA8FC}]
CescrtHlpr Object - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoods.dll [2010-05-14 225280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14 191792]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVD2.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B0744341-96E0-4341-9ED2-8BC36CE0CCD0}]
Trixie.Bho - C:\WINDOWS\system32\mscoree.dll [2009-11-07 297808]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7BE8ED1-B138-48FD-BB22-9779A39130B1}]
CSearchBHO Class - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\SearchBHO.dll [2011-01-05 111616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-07-21 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-07-21 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F47-5AD1-443E-AE34-FFE03CBF3099}]
Společná komponenta pro aplikace společnosti Seznam.cz - C:\Program Files\Seznam.cz\core.dll [2009-03-18 990872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{511131f1-4629-4254-a85f-ed7b6d75dd3c}
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - facemoods Toolbar - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoodsTlbr.dll [2010-05-14 163840]
{872b5b88-9db5-4310-bdd0-ac189557e5f5} - DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVD2.dll [2011-01-17 175912]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-10-18 3908192]
{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} - Youtube Downloader - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\YoutubeDownloader.dll [2011-04-22 2011136]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{ACB1E670-3217-45C4-A021-6B829A8A27CB} - McAfee VirusScan - C:\Program Files\McAfee\McAfee VirusScan\VSCShellExtension.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"36X Raid Configurer"=C:\WINDOWS\system32\xRaidSetup.exe [2007-08-29 1966080]
""= []
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"wxpdrv"=C:\WINDOWS\services32.exe [2011-08-19 1215488]
"6000139.exe"=C:\WINDOWS\TEMP\6000139.exe [2011-08-19 258048]
"sysdriver32.exe"=C:\WINDOWS\sysdriver32.exe [2011-08-19 258048]
"sysdriver32_.exe"=C:\WINDOWS\sysdriver32_.exe [2011-08-19 258048]
"5683064-loader2.exe"=C:\WINDOWS\TEMP\5683064-loader2.exe [2011-08-19 258048]
"3688270.exe"=C:\WINDOWS\TEMP\3688270.exe [2011-08-19 258048]
"tray_ico0"=C:\WINDOWS\update.tray-2-0\svchost.exe [2011-08-19 1215488]
"Monitor"=C:\WINDOWS\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2010-03-12 49208]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"1517081.exe"=C:\WINDOWS\TEMP\1517081.exe [2011-08-21 634880]
"systemup"=C:\WINDOWS\systemup.exe [2011-08-22 139776]
"McAfee Guardian"=C:\Program Files\McAfee\McAfee Shared Components\Guardian\CMGrdian.exe /SU []
"tray_ico"= []
"tray_ico1"=C:\WINDOWS\update.tray-9-0\svchost.exe [2011-08-19 1215488]
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"NTServiceManager"=C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\NTServiceManager.exe [2011-04-13 409600]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-10-11 14940040]
"McAfee.InstantUpdate.Monitor"=C:\Program Files\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe [2003-06-03 122948]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2009-04-23 691656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFE.EXE [2007-12-13 188928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series (kopie 1)]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFE.EXE [2007-12-13 188928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FocoLink]
C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\Foco.exe [2011-05-10 1817600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fraps]
C:\FRAPS\FRAPS.EXE [2009-11-08 2377648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GEST]
C:\Program Files\GIGABYTE\GEST\RUN.exe [2007-12-14 236040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
C:\WINDOWS\system32\hkcmd.exe [2005-11-28 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
C:\WINDOWS\system32\igfxpers.exe [2005-11-28 118784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
C:\WINDOWS\system32\igfxtray.exe [2005-11-28 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\JMB36X IDE Setup]
C:\WINDOWS\RaidTool\xInsIDE.exe [2007-03-20 36864]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\l1rezerv.exe]
C:\WINDOWS\l1rezerv.exe [2011-08-19 232960]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2007-12-05 8523776]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2007-12-05 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2007-09-19 16844800]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SW20]
C:\WINDOWS\system32\sw20.exe [2006-02-22 208896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SW24]
C:\WINDOWS\system32\sw24.exe [2006-02-22 69632]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WeatherDPA]
C:\Program Files\Hotbar\bin\11.0.120.0\Weather.exe -auto []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Časovač]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE [2005-09-24 29696]
C:\Documents and Settings\win\Nabídka Start\Programy\Po spuštění
hamachi.lnk - C:\Program Files\Hamachi\hamachi.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-11-28 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-04-10 236928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Nová složka\Half-Life\hl.exe"="D:\Nová složka\Half-Life\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Nová složka\Half-Life\czero.exe"="D:\Nová složka\Half-Life\czero.exe:*:Enabled:Condition Zero Launcher"
"C:\Documents and Settings\win\Plocha\Nová složka\CounterStrike2D.exe"="C:\Documents and Settings\win\Plocha\Nová složka\CounterStrike2D.exe:*:Enabled:CounterStrike2D"
"D:\Nová složka\hl2.exe"="D:\Nová složka\hl2.exe:*:Enabled:hl2"
"D:\LocMt2\Locmt2.exe"="D:\LocMt2\Locmt2.exe:*:Enabled:Locmt2"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Documents and Settings\win\temp\TeamViewer\Version5\TeamViewer.exe"="C:\Documents and Settings\win\temp\TeamViewer\Version5\TeamViewer.exe:*:Enabled:TeamViewer"
"D:\WOW\Launcher.exe"="D:\WOW\Launcher.exe:*:Enabled:Blizzard Launcher"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"D:\hl2\Half-Life\czero.exe"="D:\hl2\Half-Life\czero.exe:*:Enabled:Condition Zero Launcher"
"C:\Documents and Settings\win\temp\TeamViewer\Version4\TeamViewer.exe"="C:\Documents and Settings\win\temp\TeamViewer\Version4\TeamViewer.exe:*:Enabled:TeamViewer Remote Control Application"
"C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe"="C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe:LocalSubNet:Enabled:UltiDev Cassini Web Server for ASP.NET 2.0"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Warcraft III\war3.exe"="D:\Warcraft III\war3.exe:*:Enabled:Warcraft III"
"C:\WINDOWS\system32\java.exe"="C:\WINDOWS\system32\java.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\HP\HP Photosmart Plus B210 series\Bin\DeviceSetup.exe"="C:\Program Files\HP\HP Photosmart Plus B210 series\Bin\DeviceSetup.exe:LocalSubNet:Enabled:Instalace zařízení HP"
"C:\Program Files\HP\HP Photosmart Plus B210 series\Bin\HPNetworkCommunicator.exe"="C:\Program Files\HP\HP Photosmart Plus B210 series\Bin\HPNetworkCommunicator.exe:LocalSubNet:Enabled:Síťový komunikátor HP"
"C:\Documents and Settings\win\Dokumenty\Downloads\Flash-Player.exe"="C:\Documents and Settings\win\Dokumenty\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\win\Dokumenty\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"C:\WINDOWS\update.tray-7-0\svchost.exe"="C:\WINDOWS\update.tray-7-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-7-0\svchost.exe"
"C:\WINDOWS\update.tray-7-0-lnk\svchost.exe"="C:\WINDOWS\update.tray-7-0-lnk\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-7-0-lnk\svchost.exe"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"
"C:\WINDOWS\update.tray-2-0-lnk\svchost.exe"="C:\WINDOWS\update.tray-2-0-lnk\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-2-0-lnk\svchost.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\backitup.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cdspeed.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\coverdes.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\drivespeed.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\hamachi.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\hpwucli.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\imagedrive.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\infotool.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nero.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neroburnrights.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerohome.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neromediahome.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neroscoutoptions.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerostartsmart.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerovision.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\photosnap.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\photosnapviewer.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\recode.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\run.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setupx.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\showtime.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\soundtrax.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\uninstall.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\waveedit.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.3iv2"=3ivxVfWCodec.dll
"VIDC.VP60"=vp6vfw.dll
"VIDC.VP61"=vp6vfw.dll
"VIDC.VP62"=vp6vfw.dll
"VIDC.VP70"=vp7vfw.dll
"VIDC.VP31"=vp31vfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3fhg"=mp3fhg.acm
"VIDC.wmv3"=wmv9vcm.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsvid.dll
"msacm.siren"=sirenacm.dll
======List of files/folders created in the last 1 month======
2012-02-11 00:22:07 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2012-02-07 14:40:14 ----C---- C:\WINDOWS\system32\ss2uinst.exe
2012-02-07 14:40:13 ----D---- C:\Program Files\Audio Flash
2012-02-06 21:23:10 ----D---- C:\Documents and Settings\win\Data aplikací\WinRAR
2012-02-06 02:22:32 ----D---- C:\Program Files\Seznam.cz
2012-02-06 02:22:31 ----HD---- C:\WINDOWS\msdownld.tmp
2012-02-06 02:22:15 ----D---- C:\WINDOWS\WBEM
2012-02-02 14:19:46 ----N---- C:\WINDOWS\system32\tsccvid.dll
2012-02-02 14:19:44 ----D---- C:\WINDOWS\system32\QuickTime
2012-02-01 18:22:20 ----D---- C:\Program Files\ScreenMates
2012-01-24 19:35:22 ----D---- C:\Program Files\Steam
2012-01-08 14:07:52 ----C---- C:\WINDOWS\system32\XAudio2_2.dll
2012-01-08 14:07:52 ----C---- C:\WINDOWS\system32\XAPOFX1_1.dll
2012-01-08 14:07:52 ----C---- C:\WINDOWS\system32\xactengine3_2.dll
2012-01-08 14:07:51 ----C---- C:\WINDOWS\system32\D3DX9_39.dll
2012-01-08 14:07:51 ----C---- C:\WINDOWS\system32\d3dx10_39.dll
2012-01-08 14:07:51 ----C---- C:\WINDOWS\system32\D3DCompiler_39.dll
2012-01-08 14:07:50 ----C---- C:\WINDOWS\system32\XAudio2_1.dll
2012-01-08 14:07:50 ----C---- C:\WINDOWS\system32\XAPOFX1_0.dll
2012-01-08 14:07:50 ----C---- C:\WINDOWS\system32\xactengine3_1.dll
2012-01-08 14:07:49 ----C---- C:\WINDOWS\system32\X3DAudio1_4.dll
2012-01-08 14:07:48 ----C---- C:\WINDOWS\system32\D3DX9_38.dll
2012-01-08 14:07:48 ----C---- C:\WINDOWS\system32\d3dx10_38.dll
2012-01-08 14:07:48 ----C---- C:\WINDOWS\system32\D3DCompiler_38.dll
2012-01-08 14:07:47 ----C---- C:\WINDOWS\system32\XAudio2_0.dll
2012-01-08 14:07:47 ----C---- C:\WINDOWS\system32\xactengine3_0.dll
2012-01-08 14:07:47 ----C---- C:\WINDOWS\system32\X3DAudio1_3.dll
2012-01-08 14:07:46 ----C---- C:\WINDOWS\system32\D3DX9_37.dll
2012-01-08 14:07:46 ----C---- C:\WINDOWS\system32\d3dx10_37.dll
2012-01-08 14:07:46 ----C---- C:\WINDOWS\system32\D3DCompiler_37.dll
2012-01-08 14:07:45 ----C---- C:\WINDOWS\system32\xactengine2_10.dll
2012-01-08 14:07:44 ----C---- C:\WINDOWS\system32\d3dx9_36.dll
2012-01-08 14:07:44 ----C---- C:\WINDOWS\system32\d3dx10_36.dll
2012-01-08 14:07:44 ----C---- C:\WINDOWS\system32\D3DCompiler_36.dll
2012-01-08 14:07:43 ----C---- C:\WINDOWS\system32\xactengine2_9.dll
2012-01-08 14:07:41 ----C---- C:\WINDOWS\system32\xactengine2_8.dll
2012-01-08 14:07:41 ----C---- C:\WINDOWS\system32\X3DAudio1_2.dll
2012-01-08 14:07:39 ----C---- C:\WINDOWS\system32\xactengine2_7.dll
2012-01-08 14:07:36 ----C---- C:\WINDOWS\system32\xactengine2_6.dll
2012-01-08 14:07:35 ----C---- C:\WINDOWS\system32\xactengine2_4.dll
2012-01-08 14:07:34 ----C---- C:\WINDOWS\system32\xactengine2_3.dll
2012-01-08 14:07:34 ----C---- C:\WINDOWS\system32\xactengine2_2.dll
2012-01-08 14:07:33 ----C---- C:\WINDOWS\system32\xactengine2_1.dll
2012-01-08 14:07:27 ----C---- C:\WINDOWS\system32\xactengine2_0.dll
2012-01-08 14:07:27 ----C---- C:\WINDOWS\system32\x3daudio1_0.dll
2012-01-08 14:07:25 ----C---- C:\WINDOWS\system32\xinput9_1_0.dll
2012-01-08 14:07:25 ----C---- C:\WINDOWS\system32\d3dx9_27.dll
2012-01-08 14:07:25 ----C---- C:\WINDOWS\system32\d3dx9_26.dll
2012-01-08 14:07:23 ----C---- C:\WINDOWS\system32\d3dx9_24.dll
2012-01-08 14:07:11 ----C---- C:\WINDOWS\system32\wrap_oal.dll
2012-01-08 14:07:11 ----C---- C:\WINDOWS\system32\OpenAL32.dll
2012-01-08 14:05:03 ----D---- C:\Program Files\cdv USA
2012-01-08 13:47:30 ----AC---- C:\WINDOWS\game.ini
2012-01-08 13:39:56 ----D---- C:\Documents and Settings\win\Data aplikací\InstallShield Installation Information
2012-01-08 13:36:22 ----C---- C:\WINDOWS\system32\d3dx10_35.dll
2012-01-08 13:36:22 ----C---- C:\WINDOWS\system32\D3DCompiler_35.dll
2012-01-08 13:36:21 ----C---- C:\WINDOWS\system32\d3dx9_35.dll
2012-01-08 13:36:20 ----C---- C:\WINDOWS\system32\d3dx10_34.dll
2012-01-08 13:36:20 ----C---- C:\WINDOWS\system32\D3DCompiler_34.dll
2012-01-08 13:36:19 ----C---- C:\WINDOWS\system32\xinput1_3.dll
2012-01-08 13:36:19 ----C---- C:\WINDOWS\system32\d3dx9_34.dll
2012-01-08 13:36:18 ----C---- C:\WINDOWS\system32\d3dx10_33.dll
2012-01-08 13:36:17 ----C---- C:\WINDOWS\system32\D3DCompiler_33.dll
2012-01-08 13:36:16 ----C---- C:\WINDOWS\system32\d3dx9_33.dll
2012-01-08 13:36:15 ----C---- C:\WINDOWS\system32\xinput1_2.dll
2012-01-08 13:36:15 ----C---- C:\WINDOWS\system32\xinput1_1.dll
2012-01-08 13:36:15 ----C---- C:\WINDOWS\system32\d3dx9_31.dll
2012-01-08 13:36:14 ----C---- C:\WINDOWS\system32\d3dx9_29.dll
2012-01-08 13:35:50 ----D---- C:\WINDOWS\system32\AGEIA
2012-01-08 13:35:49 ----D---- C:\Program Files\AGEIA Technologies
2012-01-08 13:35:40 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2012-01-08 12:33:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Trymedia
2012-01-07 22:55:58 ----D---- C:\Program Files\Ascaron Entertainment
2012-01-07 21:57:43 ----RHD---- C:\Documents and Settings\win\Data aplikací\SecuROM
2012-01-07 21:56:12 ----C---- C:\WINDOWS\system32\xactengine2_5.dll
2012-01-07 21:56:12 ----C---- C:\WINDOWS\system32\x3daudio1_1.dll
2012-01-07 21:56:09 ----C---- C:\WINDOWS\system32\d3dx9_32.dll
2012-01-07 21:47:18 ----AC---- C:\WINDOWS\level.ini
2012-01-07 17:52:42 ----D---- C:\Program Files\MOBILedit!
2011-12-28 19:49:25 ----D---- C:\Program Files\Gameforge4D
2011-12-24 19:39:53 ----D---- C:\Documents and Settings\win\Data aplikací\Internet Saving Optimizer
2011-12-24 19:39:34 ----D---- C:\Program Files\Nice Prosper
2011-12-24 19:39:20 ----D---- C:\Program Files\Internet Saving Optimizer
2011-12-24 19:39:12 ----D---- C:\Program Files\System Search Dispatcher
2011-12-24 19:39:02 ----D---- C:\Program Files\DoubleD
2011-12-24 19:05:48 ----HDC---- C:\Documents and Settings\All Users\Data aplikací\{A716538F-A52D-4381-B66E-3DFAABA30BCA}
2011-11-30 01:18:03 ----D---- C:\Documents and Settings\win\Data aplikací\uTorrent
2011-11-26 18:22:40 ----D---- C:\WINDOWS\Logs
2011-11-26 18:22:31 ----D---- C:\Program Files\Utherverse Digital Inc
2011-11-14 04:56:58 ----D---- C:\Documents and Settings\win\Data aplikací\AdobeUM
2011-11-10 22:49:02 ----D---- C:\Program Files\Common Files\DirectX
2011-11-10 22:43:53 ----D---- C:\Program Files\Aspyr Media, Inc
2011-11-10 21:58:18 ----D---- C:\Program Files\Globar Star Software
2011-11-10 16:21:56 ----AC---- C:\WINDOWS\MyProg.ini
2011-10-12 00:46:58 ----D---- C:\Program Files\ICQToolbar
2011-10-12 00:46:01 ----D---- C:\Program Files\ICQ6.501_18_14
2011-10-12 00:32:23 ----D---- C:\Documents and Settings\All Users\Data aplikací\SwiftKit
2011-10-12 00:32:22 ----D---- C:\Program Files\SwiftKit
2011-10-09 20:38:34 ----D---- C:\Program Files\ICQ6Toolbar
2011-10-09 20:38:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2011-10-09 20:36:05 ----D---- C:\Program Files\ICQ623_46_00
2011-09-18 01:41:19 ----D---- C:\Documents and Settings\win\Data aplikací\CyberLink
2011-09-16 04:01:02 ----HDC---- C:\WINDOWS\$NtUninstallKB953838$
2011-09-16 04:00:55 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2011-09-16 04:00:44 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2011-09-15 04:01:01 ----HDC---- C:\WINDOWS\$NtUninstallKB953839$
2011-09-15 04:00:49 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2011-08-22 02:09:11 ----D---- C:\rsit
2011-08-22 02:09:11 ----D---- C:\Program Files\trend micro
2011-08-22 01:47:27 ----D---- C:\Program Files\McAfeeScanAndRepair
2011-08-22 01:31:55 ----D---- C:\Program Files\McAfee
2011-08-22 01:05:08 ----HD---- C:\WINDOWS\update.tray-9-0-lnk
2011-08-22 01:05:08 ----HD---- C:\WINDOWS\update.tray-9-0
2011-08-22 00:55:40 ----D---- C:\Program Files\Common Files\Network Associates
2011-08-22 00:54:19 ----D---- C:\Program Files\McAfee VirusScan Home Edition 7.02 Demo 30
2011-08-22 00:44:10 ----A---- C:\WINDOWS\systemup.exe
2011-08-21 22:32:27 ----A---- C:\WINDOWS\ntbtlog.txt
2011-08-21 22:24:01 ----HD---- C:\WINDOWS\update.tray-2-0-lnk
2011-08-21 22:24:01 ----HD---- C:\WINDOWS\update.tray-2-0
2011-08-21 12:28:15 ----D---- C:\Inetpub
2011-08-21 12:26:42 ----A---- C:\WINDOWS\imsins.BAK
2011-08-20 01:10:20 ----HD---- C:\WINDOWS\update.tray-12-0-lnk
2011-08-20 01:10:20 ----HD---- C:\WINDOWS\update.tray-12-0
2011-08-20 01:05:28 ----HD---- C:\Documents and Settings\All Users\Data aplikací\Common Files
2011-08-20 01:05:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVG Security Toolbar
2011-08-20 01:02:05 ----D---- C:\WINDOWS\system32\drivers\AVG
2011-08-20 00:46:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\MFAData
2011-08-20 00:24:45 ----D---- C:\Program Files\AMD APP
2011-08-20 00:24:39 ----D---- C:\Program Files\ATI
2011-08-20 00:14:03 ----D---- C:\ATI
2011-08-20 00:05:26 ----D---- C:\WINDOWS\ufa
2011-08-20 00:05:26 ----D---- C:\WINDOWS\rpcminer
2011-08-20 00:05:26 ----D---- C:\WINDOWS\phoenix
2011-08-19 23:45:21 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2011-08-19 23:45:02 ----A---- C:\WINDOWS\avastSS.scr
2011-08-19 23:00:01 ----A---- C:\WINDOWS\l1rezerv.exe
2011-08-19 22:59:52 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-08-19 22:58:24 ----A---- C:\WINDOWS\unrar.exe
2011-08-19 22:58:23 ----HD---- C:\WINDOWS\update.5.0
2011-08-19 22:57:31 ----A---- C:\WINDOWS\iecheck_iplist.txt
2011-08-19 22:57:03 ----HD---- C:\WINDOWS\update.2
2011-08-19 22:55:59 ----HD---- C:\WINDOWS\update.7.1
2011-08-19 22:54:42 ----A---- C:\WINDOWS\iplist.txt
2011-08-19 22:54:15 ----A---- C:\WINDOWS\sysdriver32_.exe
2011-08-19 22:54:01 ----A---- C:\WINDOWS\sysdriver32.exe
2011-08-19 22:53:44 ----A---- C:\WINDOWS\front_ip_list.txt
2011-08-19 22:34:04 ----D---- C:\WINDOWS\av_ico
2011-08-19 22:31:53 ----HD---- C:\WINDOWS\update.1
2011-08-19 22:31:39 ----HD---- C:\WINDOWS\update.tray-7-0-lnk
2011-08-19 22:31:39 ----HD---- C:\WINDOWS\update.tray-7-0
2011-08-19 22:22:01 ----A---- C:\WINDOWS\winlog-ids.txt
2011-08-19 22:22:01 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-08-19 22:21:54 ----A---- C:\WINDOWS\services32.exe
2011-08-13 15:48:04 ----N---- C:\WINDOWS\system32\uxtuneup.dll
2011-08-13 15:44:16 ----N---- C:\WINDOWS\system32\TURegOpt.exe
2011-08-13 15:43:41 ----D---- C:\Documents and Settings\win\Data aplikací\TuneUp Software
2011-08-13 15:43:27 ----D---- C:\Program Files\TuneUp Utilities 2011
2011-08-13 15:43:07 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2011-08-13 15:42:55 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2011-08-11 03:08:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2567680$
2011-08-11 03:06:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2011-08-11 03:06:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$
2011-08-11 03:02:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2559049$
2011-08-11 03:02:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2011-08-11 03:01:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2562937$
2011-07-28 17:28:55 ----N---- C:\WINDOWS\system32\javaws.exe
2011-07-28 17:28:55 ----N---- C:\WINDOWS\system32\javaw.exe
2011-07-28 17:28:55 ----N---- C:\WINDOWS\system32\java.exe
2011-07-28 17:04:44 ----D---- C:\Documents and Settings\win\Data aplikací\EpicBot
2011-07-28 16:00:03 ----D---- C:\WINDOWS\system32\AI_RecycleBin
2011-07-28 15:59:43 ----D---- C:\Program Files\Fliptoast
2011-07-28 15:59:43 ----D---- C:\Documents and Settings\win\Data aplikací\com.w3i.fliptoast
2011-07-28 15:59:24 ----D---- C:\Documents and Settings\win\Data aplikací\W3i, LLC
2011-07-28 15:57:25 ----D---- C:\Program Files\EpicBot
2011-07-28 15:56:42 ----D---- C:\Program Files\Free Offers from Freeze.com
2011-07-28 15:56:38 ----D---- C:\Program Files\Zrychleni Pocitace
2011-07-28 15:23:06 ----A---- C:\Documents and Settings\win\Data aplikací\RSBot_Accounts.ini
======List of files/folders modified in the last 1 month======
2012-01-10 14:44:52 ----D---- C:\Documents and Settings\win\Data aplikací\Ahead
2012-01-08 14:08:04 ----C---- C:\WINDOWS\system32\CmdLineExt.dll
2011-11-18 18:23:14 ----D---- C:\WINDOWS\.jagex_cache_32
2011-11-07 21:10:50 ----D---- C:\Documents and Settings\win\Data aplikací\ICQ Toolbar
2011-10-12 00:53:42 ----D---- C:\Program Files\GlobFX Technologies
2011-10-12 00:52:48 ----D---- C:\WINDOWS\system32\GlobFX
2011-10-09 20:36:48 ----D---- C:\Program Files\ICQ6
2011-08-22 02:09:11 ----RD---- C:\Program Files
2011-08-22 02:01:09 ----D---- C:\Documents and Settings\win\Data aplikací\Skype
2011-08-22 01:56:50 ----D---- C:\WINDOWS\Temp
2011-08-22 01:54:54 ----D---- C:\WINDOWS\system32\drivers
2011-08-22 01:53:28 ----D---- C:\WINDOWS\system32
2011-08-22 01:37:38 ----SHD---- C:\WINDOWS\Installer
2011-08-22 01:37:37 ----D---- C:\Config.Msi
2011-08-22 01:34:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-08-22 01:14:06 ----D---- C:\Documents and Settings\win\Data aplikací\skypePM
2011-08-22 01:13:37 ----D---- C:\WINDOWS
2011-08-22 01:12:06 ----A---- C:\boot.ini
2011-08-22 00:59:40 ----SHD---- C:\RECYCLER
2011-08-22 00:56:14 ----HD---- C:\WINDOWS\inf
2011-08-22 00:56:09 ----D---- C:\WINDOWS\system32\CatRoot2
2011-08-22 00:56:05 ----D---- C:\WINDOWS\Prefetch
2011-08-22 00:55:40 ----D---- C:\Program Files\Common Files
2011-08-21 22:32:58 ----D---- C:\Documents and Settings
2011-08-21 22:08:11 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-08-21 22:08:08 ----D---- C:\WINDOWS\system32\inetsrv
2011-08-21 20:42:05 ----D---- C:\Program Files\Adobe
2011-08-21 20:40:45 ----D---- C:\Documents and Settings\win\Data aplikací\PriceGong
2011-08-21 20:39:29 ----D---- C:\Documents and Settings\win\Data aplikací\Hamachi
2011-08-21 13:17:04 ----DC---- C:\WINDOWS\system32\dllcache
2011-08-21 12:57:49 ----D---- C:\WINDOWS\system32\usmt
2011-08-21 12:34:35 ----D---- C:\WINDOWS\security
2011-08-21 12:28:20 ----D---- C:\WINDOWS\Help
2011-08-21 12:28:18 ----D---- C:\WINDOWS\system32\wbem
2011-08-21 12:25:37 ----A---- C:\WINDOWS\NeroDigital.ini
2011-08-21 01:23:38 ----D---- C:\Program Files\Opera
2011-08-20 20:09:53 ----D---- C:\Program Files\Zoner
2011-08-20 03:00:29 ----D---- C:\WINDOWS\WinSxS
2011-08-20 00:24:42 ----D---- C:\Program Files\ATI Technologies
2011-08-19 23:53:32 ----D---- C:\Program Files\Automatické vypnutí počítače
2011-08-19 23:50:46 ----A---- C:\WINDOWS\avp.ini
2011-08-19 23:01:51 ----SHD---- C:\System Volume Information
2011-08-19 23:01:51 ----D---- C:\WINDOWS\system32\Restore
2011-08-19 22:57:26 ----D---- C:\WINDOWS\system32\drivers\etc
2011-08-19 22:39:00 ----D---- C:\WINDOWS\system32\Macromed
2011-08-19 22:39:00 ----D---- C:\WINDOWS\system32\Adobe
2011-08-19 22:39:00 ----D---- C:\Documents and Settings\win\Data aplikací\Macromedia
2011-08-19 15:01:57 ----D---- C:\Program Files\Mozilla Firefox
2011-08-15 21:19:51 ----D---- C:\Documents and Settings\win\Data aplikací\ICQ
2011-08-14 13:20:15 ----D---- C:\Documents and Settings\win\Data aplikací\TeamViewer
2011-08-14 13:04:01 ----D---- C:\Documents and Settings\win\Data aplikací\dvdcss
2011-08-13 16:13:41 ----D---- C:\Program Files\Pinnacle
2011-08-13 16:13:40 ----D---- C:\Documents and Settings\All Users\Data aplikací\Pinnacle
2011-08-13 16:07:30 ----D---- C:\UT2004
2011-08-13 16:05:29 ----D---- C:\Program Files\Valve
2011-08-13 16:01:27 ----D---- C:\WINDOWS\Minidump
2011-08-13 16:01:27 ----D---- C:\WINDOWS\Debug
2011-08-13 15:44:18 ----D---- C:\WINDOWS\system32\config
2011-08-11 03:37:30 ----D---- C:\WINDOWS\Microsoft.NET
2011-08-11 03:37:26 ----RSD---- C:\WINDOWS\assembly
2011-08-11 03:07:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-08-11 03:06:18 ----HD---- C:\WINDOWS\$hf_mig$
2011-08-11 03:03:00 ----N---- C:\WINDOWS\system32\mrt.exe
2011-07-28 17:29:15 ----D---- C:\Program Files\Common Files\Java
2011-07-28 17:28:53 ----D---- C:\Program Files\Java
2011-07-28 17:00:20 ----D---- C:\Program Files\Realtek
2011-07-28 16:58:07 ----D---- C:\Program Files\Google
2011-07-28 16:53:35 ----D---- C:\Program Files\Microsoft Office
2011-07-28 16:28:11 ----D---- C:\Documents and Settings\win\Data aplikací\Azureus
2011-07-28 16:22:08 ----D---- C:\Program Files\CCleaner
2011-07-28 15:59:17 ----D---- C:\Documents and Settings\win\Data aplikací\Adobe
2011-07-28 15:59:17 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-07-25 18:28:55 ----D---- C:\Documents and Settings\win\Data aplikací\Opera
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2011-03-16 32592]
R0 iteraid;ITERAID_Service_Install; C:\WINDOWS\system32\DRIVERS\iteraid.sys [2004-10-29 25067]
R0 JRAID;JRAID; C:\WINDOWS\system32\DRIVERS\jraid.sys [2007-09-29 65024]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-03-03 48640]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-02-23 6656]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\WINDOWS\System32\drivers\sfsync02.sys [2004-12-03 20544]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2009-11-14 721904]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2011-01-07 248656]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2011-03-01 34896]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2011-04-05 297168]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-12-21 115008]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2010-12-21 94872]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2010-12-21 141264]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R3 Avgfwdx;Avgfwdx; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2010-07-12 30432]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-11-28 1353820]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-09-19 4617728]
R3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2007-08-07 98944]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys []
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 a5umjynd;a5umjynd; C:\WINDOWS\system32\drivers\a5umjynd.sys []
S3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
S3 Avgfwfd;AVG network filter service; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2010-07-12 30432]
S3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys [2011-04-14 134480]
S3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 24144]
S3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys [2011-02-10 27216]
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2004-12-06 126720]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 ET5Drv;ET5Drv; \??\C:\WINDOWS\system32\Drivers\ET5Drv.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2011-06-02 25280]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\WINDOWS\system32\DRIVERS\k750bus.sys [2008-09-21 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\k750mdfl.sys [2008-09-21 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\k750mdm.sys [2008-09-21 89872]
S3 k750mgmt;Sony Ericsson 750 USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\k750mgmt.sys [2008-09-21 81728]
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\k750obex.sys [2008-09-21 79488]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NaiFiltr;NaiFiltr; C:\WINDOWS\system32\DRIVERS\NaiFiltr.sys [2001-08-17 23296]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2007-12-05 7435392]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 teamviewervpn;TeamViewer VPN Adapter; C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys [2008-01-25 25088]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
Run by win at 2011-08-22 02:09:11
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 46 GB (46%) free of 100 GB
Total RAM: 1015 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 2:13:09, on 22.8.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\update.7.1\svchostdriver.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\update.5.0\svchost.exe
C:\Program Files\Google\Update\1.3.21.65\GoogleCrashHandler.exe
C:\WINDOWS\update.2\svchost.exe
C:\WINDOWS\update.5.0\svchost.exe
C:\WINDOWS\sysdriver32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
C:\WINDOWS\system32\UTSCSI.EXE
C:\WINDOWS\update.1\svchost.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\update.2\svchost.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\update.tray-2-0\svchost.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\systemup.exe
C:\WINDOWS\update.tray-9-0\svchost.exe
C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\NTServiceManager.exe
C:\Program Files\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe
C:\WINDOWS\update.7.1\svchostdriver.exe
C:\WINDOWS\System32\svchost.exe
J:\RSIT.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\trend micro\win.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: CSearchBHO Class - {D7BE8ED1-B138-48FD-BB22-9779A39130B1} - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\SearchBHO.dll
O2 - BHO: CashBackAssistant - {00F5B5BA-E3C2-4b70-BF51-42A557914FAD} - C:\Program Files\Nice Prosper\CashBackAssistant\CashBackAssistantIE.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: ShopperReports - {100EB1FD-D03E-47FD-81F3-EE91287F9465} - C:\Program Files\ShopperReports3\bin\3.0.307.0\ShopperReports.dll
O2 - BHO: ShowBarObj Class - {2863E737-DD3F-4280-9AF8-E9E79C16F312} - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\MinBHO.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: NP Helper Class - {35B8D58C-B0CB-46b0-BA64-05B3804E4E86} - C:\Program Files\Internet Saving Optimizer\2.2.0.2880\NPIEAddOn.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O2 - BHO: (no name) - {511131f1-4629-4254-a85f-ed7b6d75dd3c} - (no file)
O2 - BHO: facemoods Helper - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoods.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: DVDVideoSoftTB - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD2.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Trixie.Bho - {B0744341-96E0-4341-9ED2-8BC36CE0CCD0} - mscoree.dll (file missing)
O2 - BHO: HelloWorldBHO - {D7BE8ED1-B138-48FD-BB22-9779A39130B1} - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\SearchBHO.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: Společná komponenta pro aplikace společnosti Seznam.cz - {EA837F47-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.dll
O3 - Toolbar: (no name) - {511131f1-4629-4254-a85f-ed7b6d75dd3c} - (no file)
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: facemoods Toolbar - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoodsTlbr.dll
O3 - Toolbar: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD2.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O3 - Toolbar: Youtube Downloader - {F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\YoutubeDownloader.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: McAfee VirusScan - {ACB1E670-3217-45C4-A021-6B829A8A27CB} - C:\Program Files\McAfee\McAfee VirusScan\VSCShellExtension.dll (file missing)
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [wxpdrv] C:\WINDOWS\services32.exe
O4 - HKLM\..\Run: [6000139.exe] "C:\WINDOWS\TEMP\6000139.exe"
O4 - HKLM\..\Run: [sysdriver32.exe] "C:\WINDOWS\sysdriver32.exe" rezerv
O4 - HKLM\..\Run: [sysdriver32_.exe] "C:\WINDOWS\sysdriver32_.exe" rezerv
O4 - HKLM\..\Run: [5683064-loader2.exe] "C:\WINDOWS\TEMP\5683064-loader2.exe"
O4 - HKLM\..\Run: [3688270.exe] "C:\WINDOWS\TEMP\3688270.exe"
O4 - HKLM\..\Run: [tray_ico0] C:\WINDOWS\update.tray-2-0\svchost.exe
O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [1517081.exe] "C:\WINDOWS\TEMP\1517081.exe"
O4 - HKLM\..\Run: [systemup] "C:\WINDOWS\systemup.exe" stand
O4 - HKLM\..\Run: [McAfee Guardian] "C:\Program Files\McAfee\McAfee Shared Components\Guardian\CMGrdian.exe" /SU
O4 - HKLM\..\Run: [tray_ico1] C:\WINDOWS\update.tray-9-0\svchost.exe
O4 - HKCU\..\Run: [NTServiceManager] C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\NTServiceManager.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [McAfee.InstantUpdate.Monitor] "C:\Program Files\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe" /STARTMONITOR
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredi ... p=ZCfox000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: (no name) - {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: My kikin - {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: (no name) - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - C:\WINDOWS\system32\mscoree.DLL
O9 - Extra 'Tools' menuitem: Tri&xie Options... - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - C:\WINDOWS\system32\mscoree.DLL
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: ShopperReports - Compare product prices - {C5428486-50A0-4a02-9D20-520B59A9F9B2} - C:\Program Files\ShopperReports3\bin\3.0.307.0\ShopperReports.dll
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\Program Files\ShopperReports3\bin\3.0.307.0\ShopperReports.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocach ... .0.1.1.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 8464584319
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{7519E748-2514-43C3-B154-9D54B3DE031E}: NameServer = 212.111.0.10
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - (no file)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVSync Manager (AvSynMgr) - Unknown owner - C:\Program Files\McAfee\McAfee VirusScan\Avsynmgr.exe (file missing)
O23 - Service: ddservice - Unknown owner - C:\WINDOWS\update.7.1\svchostdriver.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - Unknown owner - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe (file missing)
O23 - Service: ESET Service (ekrn) - Unknown owner - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate1ca1a1437e2ff0) (gupdate1ca1a1437e2ff0) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee ScanAndRepair Svc - McAfee, Inc. - C:\Program Files\McAfeeScanAndRepair\McAfeeScanRepairSvc.exe
O23 - Service: McShield - Unknown owner - C:\Program Files\Common Files\Network Associates\McShield\Mcshield.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: srvbtcclient - Unknown owner - C:\WINDOWS\update.5.0\svchost.exe
O23 - Service: srviecheck - Unknown owner - C:\WINDOWS\update.2\svchost.exe
O23 - Service: srvsysdriver32 - Unknown owner - C:\WINDOWS\sysdriver32.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
O23 - Service: CLCV0 (UTSCSI) - Unknown owner - C:\WINDOWS\system32\UTSCSI.EXE
O23 - Service: wxpdrivers - Unknown owner - C:\WINDOWS\update.1\svchost.exe
--
End of file - 15774 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At2.job
C:\WINDOWS\tasks\At3.job
C:\WINDOWS\tasks\At4.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1ca2c9bba0d80fc.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\win\Data aplikací\Mozilla\Firefox\Profiles\l19s6ece.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "extensions.enabledItems" - "{AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}:1.0, {88c7f2aa-f93f-432c-8f0e-b7d85967a527}:3.2.3.3, engine@conduit.com:3.2.3.3, {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1, {872b5b88-9db5-4310-bdd0-ac189557e5f5}:2.7.2.0, ffxtlbr@Facemoods.com:1.0.4, {6236BA26-C117-4007-928C-DE0716C7FA99}:1.0.1, {6236BA26-C117-4007-928C-DE0716C7FA80}:1.0.22, {800b5000-a755-47e1-992b-48a1c1357f07}:2.0.0.4, illimitux@illimitux.net:4.0, {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07, {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, jqs@sun.com:1.0, {AA994882-F391-4d2e-806F-8908DA4814ED}:2.11.9, {20a82645-c095-46ed-80e3-08825760534b}:1.1, {7645f4b1-1f19-13dd-2d6b-0200600c2a56}:1.0, {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.3.3, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
prefs.js - "keyword.URL" - "http://smartwebsearch.net/results.php?q="
prefs.js - "browser.startup.homepage" - ""
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=C:\Program Files\AVG\AVG10\Firefox4\
"avg@igeared"=C:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3]
"Description"=Office Live Update v1.3
"Path"=C:\Program Files\Microsoft\Office Live\npOLW.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2303]
"Description"=RealMedia Plugin
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1465]
"Description"=RealPlayer Version Plugin
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
ffxtlbr@Facemoods.com
{800b5000-a755-47e1-992b-48a1c1357f07}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
AskHPRFF.js
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsIBitCometAgent.xpt
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
libdivx.dll
npBitCometAgent.dll
npdeployJava1.dll
npdivx32.dll
npMcAfeeSRPlgn.dll
npnul32.dll
NPOFF12.DLL
npPandoWebInst.dll
npPandoWebInst.xpt
ssldivx.dll
C:\Program Files\Mozilla Firefox\searchplugins\
avg_igeared.xml
bardiscover116.xml
fcmdSrch.xml
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\win\Data aplikací\Mozilla\Firefox\Profiles\l19s6ece.default\extensions\
DTToolbar@toolbarnet(2).com
engine@conduit.com
illimitux@illimitux.net
NG_Classic@snakehole.net
one@h3j4.com
staged-xpis
temp
{1DEAE5AA-E19E-458b-9C8C-73CB651B9A58}
{20a82645-c095-46ed-80e3-08825760534b}
{5c8bfb7c-9a54-11dc-8314-0800200c9a66}
{5c8bfb7c-9a54-11dc-8314-0800200c9a66}(2)
{6236BA26-C117-4007-928C-DE0716C7FA80}
{6236BA26-C117-4007-928C-DE0716C7FA96}(2)
{6236BA26-C117-4007-928C-DE0716C7FA99}
{7336c430-3def-11dd-ae16-0800200c9a66}
{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
{800b5000-a755-47e1-992b-48a1c1357f07}
{872b5b88-9db5-4310-bdd0-ac189557e5f5}
{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
{AA994882-F391-4d2e-806F-8908DA4814ED}
{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
{c1dffba0-628e-11d9-9669-0800200c9a66}
{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}
{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}(2)
C:\Documents and Settings\win\Data aplikací\Mozilla\Firefox\Profiles\l19s6ece.default\searchplugins\
askcom.xml
bing.xml
conduit.xml
GoogleFeed.xml
icqplugin-1.xml
icqplugin-10.xml
icqplugin-11.xml
icqplugin-12.xml
icqplugin-13.xml
icqplugin-14.xml
icqplugin-15.xml
icqplugin-16.xml
icqplugin-17.xml
icqplugin-18.xml
icqplugin-19.xml
icqplugin-2.xml
icqplugin-20.xml
icqplugin-21.xml
icqplugin-22.xml
icqplugin-23.xml
icqplugin-24.xml
icqplugin-25.xml
icqplugin-26.xml
icqplugin-27.xml
icqplugin-28.xml
icqplugin-29.xml
icqplugin-3.xml
icqplugin-30.xml
icqplugin-31.xml
icqplugin-32.xml
icqplugin-33.xml
icqplugin-34.xml
icqplugin-35.xml
icqplugin-36.xml
icqplugin-37.xml
icqplugin-38.xml
icqplugin-39.xml
icqplugin-4.xml
icqplugin-40.xml
icqplugin-41.xml
icqplugin-5.xml
icqplugin-6.xml
icqplugin-7.xml
icqplugin-8.xml
icqplugin-9.xml
icqplugin.xml
kikin-search.xml
mywebsearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00F5B5BA-E3C2-4b70-BF51-42A557914FAD}]
CashBackAssistant - C:\Program Files\Nice Prosper\CashBackAssistant\CashBackAssistantIE.dll [2008-12-22 835584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\PROGRA~1\ICQTOO~1\toolbaru.dll [2006-12-25 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2005-09-24 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465}]
ShopperReports - C:\Program Files\ShopperReports3\bin\3.0.307.0\ShopperReports.dll [2010-01-26 1082368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2863E737-DD3F-4280-9AF8-E9E79C16F312}]
ShowBarObj Class - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\MinBHO.dll [2011-01-05 1918976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-10-18 3908192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35B8D58C-B0CB-46b0-BA64-05B3804E4E86}]
NP Helper Class - C:\Program Files\Internet Saving Optimizer\2.2.0.2880\NPIEAddOn.dll [2009-02-17 176128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4E6D6F90-31CA-4878-A7A3-1CD50F115A69}]
Zvýrazňovač slov Lištičky - C:\Program Files\Seznam.cz\listicka.dll [2009-03-18 686744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{511131f1-4629-4254-a85f-ed7b6d75dd3c}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64182481-4F71-486b-A045-B233BD0DA8FC}]
CescrtHlpr Object - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoods.dll [2010-05-14 225280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14 191792]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVD2.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B0744341-96E0-4341-9ED2-8BC36CE0CCD0}]
Trixie.Bho - C:\WINDOWS\system32\mscoree.dll [2009-11-07 297808]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7BE8ED1-B138-48FD-BB22-9779A39130B1}]
CSearchBHO Class - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\SearchBHO.dll [2011-01-05 111616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-07-21 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-07-21 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F47-5AD1-443E-AE34-FFE03CBF3099}]
Společná komponenta pro aplikace společnosti Seznam.cz - C:\Program Files\Seznam.cz\core.dll [2009-03-18 990872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{511131f1-4629-4254-a85f-ed7b6d75dd3c}
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - facemoods Toolbar - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoodsTlbr.dll [2010-05-14 163840]
{872b5b88-9db5-4310-bdd0-ac189557e5f5} - DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVD2.dll [2011-01-17 175912]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-10-18 3908192]
{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} - Youtube Downloader - C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\YoutubeDownloader.dll [2011-04-22 2011136]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{ACB1E670-3217-45C4-A021-6B829A8A27CB} - McAfee VirusScan - C:\Program Files\McAfee\McAfee VirusScan\VSCShellExtension.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"36X Raid Configurer"=C:\WINDOWS\system32\xRaidSetup.exe [2007-08-29 1966080]
""= []
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"wxpdrv"=C:\WINDOWS\services32.exe [2011-08-19 1215488]
"6000139.exe"=C:\WINDOWS\TEMP\6000139.exe [2011-08-19 258048]
"sysdriver32.exe"=C:\WINDOWS\sysdriver32.exe [2011-08-19 258048]
"sysdriver32_.exe"=C:\WINDOWS\sysdriver32_.exe [2011-08-19 258048]
"5683064-loader2.exe"=C:\WINDOWS\TEMP\5683064-loader2.exe [2011-08-19 258048]
"3688270.exe"=C:\WINDOWS\TEMP\3688270.exe [2011-08-19 258048]
"tray_ico0"=C:\WINDOWS\update.tray-2-0\svchost.exe [2011-08-19 1215488]
"Monitor"=C:\WINDOWS\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2010-03-12 49208]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"1517081.exe"=C:\WINDOWS\TEMP\1517081.exe [2011-08-21 634880]
"systemup"=C:\WINDOWS\systemup.exe [2011-08-22 139776]
"McAfee Guardian"=C:\Program Files\McAfee\McAfee Shared Components\Guardian\CMGrdian.exe /SU []
"tray_ico"= []
"tray_ico1"=C:\WINDOWS\update.tray-9-0\svchost.exe [2011-08-19 1215488]
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"NTServiceManager"=C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\NTServiceManager.exe [2011-04-13 409600]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-10-11 14940040]
"McAfee.InstantUpdate.Monitor"=C:\Program Files\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe [2003-06-03 122948]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2009-04-23 691656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFE.EXE [2007-12-13 188928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series (kopie 1)]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFE.EXE [2007-12-13 188928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FocoLink]
C:\Program Files\YoutubeDownloader.org\YoutubeDownloader\Foco.exe [2011-05-10 1817600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fraps]
C:\FRAPS\FRAPS.EXE [2009-11-08 2377648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GEST]
C:\Program Files\GIGABYTE\GEST\RUN.exe [2007-12-14 236040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
C:\WINDOWS\system32\hkcmd.exe [2005-11-28 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
C:\WINDOWS\system32\igfxpers.exe [2005-11-28 118784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
C:\WINDOWS\system32\igfxtray.exe [2005-11-28 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\JMB36X IDE Setup]
C:\WINDOWS\RaidTool\xInsIDE.exe [2007-03-20 36864]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\l1rezerv.exe]
C:\WINDOWS\l1rezerv.exe [2011-08-19 232960]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2007-12-05 8523776]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2007-12-05 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2007-09-19 16844800]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SW20]
C:\WINDOWS\system32\sw20.exe [2006-02-22 208896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SW24]
C:\WINDOWS\system32\sw24.exe [2006-02-22 69632]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WeatherDPA]
C:\Program Files\Hotbar\bin\11.0.120.0\Weather.exe -auto []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Časovač]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE [2005-09-24 29696]
C:\Documents and Settings\win\Nabídka Start\Programy\Po spuštění
hamachi.lnk - C:\Program Files\Hamachi\hamachi.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-11-28 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-04-10 236928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Nová složka\Half-Life\hl.exe"="D:\Nová složka\Half-Life\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Nová složka\Half-Life\czero.exe"="D:\Nová složka\Half-Life\czero.exe:*:Enabled:Condition Zero Launcher"
"C:\Documents and Settings\win\Plocha\Nová složka\CounterStrike2D.exe"="C:\Documents and Settings\win\Plocha\Nová složka\CounterStrike2D.exe:*:Enabled:CounterStrike2D"
"D:\Nová složka\hl2.exe"="D:\Nová složka\hl2.exe:*:Enabled:hl2"
"D:\LocMt2\Locmt2.exe"="D:\LocMt2\Locmt2.exe:*:Enabled:Locmt2"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Documents and Settings\win\temp\TeamViewer\Version5\TeamViewer.exe"="C:\Documents and Settings\win\temp\TeamViewer\Version5\TeamViewer.exe:*:Enabled:TeamViewer"
"D:\WOW\Launcher.exe"="D:\WOW\Launcher.exe:*:Enabled:Blizzard Launcher"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"D:\hl2\Half-Life\czero.exe"="D:\hl2\Half-Life\czero.exe:*:Enabled:Condition Zero Launcher"
"C:\Documents and Settings\win\temp\TeamViewer\Version4\TeamViewer.exe"="C:\Documents and Settings\win\temp\TeamViewer\Version4\TeamViewer.exe:*:Enabled:TeamViewer Remote Control Application"
"C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe"="C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe:LocalSubNet:Enabled:UltiDev Cassini Web Server for ASP.NET 2.0"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Warcraft III\war3.exe"="D:\Warcraft III\war3.exe:*:Enabled:Warcraft III"
"C:\WINDOWS\system32\java.exe"="C:\WINDOWS\system32\java.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\HP\HP Photosmart Plus B210 series\Bin\DeviceSetup.exe"="C:\Program Files\HP\HP Photosmart Plus B210 series\Bin\DeviceSetup.exe:LocalSubNet:Enabled:Instalace zařízení HP"
"C:\Program Files\HP\HP Photosmart Plus B210 series\Bin\HPNetworkCommunicator.exe"="C:\Program Files\HP\HP Photosmart Plus B210 series\Bin\HPNetworkCommunicator.exe:LocalSubNet:Enabled:Síťový komunikátor HP"
"C:\Documents and Settings\win\Dokumenty\Downloads\Flash-Player.exe"="C:\Documents and Settings\win\Dokumenty\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\win\Dokumenty\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"C:\WINDOWS\update.tray-7-0\svchost.exe"="C:\WINDOWS\update.tray-7-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-7-0\svchost.exe"
"C:\WINDOWS\update.tray-7-0-lnk\svchost.exe"="C:\WINDOWS\update.tray-7-0-lnk\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-7-0-lnk\svchost.exe"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"
"C:\WINDOWS\update.tray-2-0-lnk\svchost.exe"="C:\WINDOWS\update.tray-2-0-lnk\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-2-0-lnk\svchost.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\backitup.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cdspeed.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\coverdes.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\drivespeed.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\hamachi.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\hpwucli.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\imagedrive.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\infotool.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nero.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neroburnrights.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerohome.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neromediahome.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neroscoutoptions.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerostartsmart.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerovision.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\photosnap.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\photosnapviewer.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\recode.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\run.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setupx.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\showtime.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\soundtrax.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\uninstall.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\waveedit.exe]
"Debugger=""C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.3iv2"=3ivxVfWCodec.dll
"VIDC.VP60"=vp6vfw.dll
"VIDC.VP61"=vp6vfw.dll
"VIDC.VP62"=vp6vfw.dll
"VIDC.VP70"=vp7vfw.dll
"VIDC.VP31"=vp31vfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3fhg"=mp3fhg.acm
"VIDC.wmv3"=wmv9vcm.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsvid.dll
"msacm.siren"=sirenacm.dll
======List of files/folders created in the last 1 month======
2012-02-11 00:22:07 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2012-02-07 14:40:14 ----C---- C:\WINDOWS\system32\ss2uinst.exe
2012-02-07 14:40:13 ----D---- C:\Program Files\Audio Flash
2012-02-06 21:23:10 ----D---- C:\Documents and Settings\win\Data aplikací\WinRAR
2012-02-06 02:22:32 ----D---- C:\Program Files\Seznam.cz
2012-02-06 02:22:31 ----HD---- C:\WINDOWS\msdownld.tmp
2012-02-06 02:22:15 ----D---- C:\WINDOWS\WBEM
2012-02-02 14:19:46 ----N---- C:\WINDOWS\system32\tsccvid.dll
2012-02-02 14:19:44 ----D---- C:\WINDOWS\system32\QuickTime
2012-02-01 18:22:20 ----D---- C:\Program Files\ScreenMates
2012-01-24 19:35:22 ----D---- C:\Program Files\Steam
2012-01-08 14:07:52 ----C---- C:\WINDOWS\system32\XAudio2_2.dll
2012-01-08 14:07:52 ----C---- C:\WINDOWS\system32\XAPOFX1_1.dll
2012-01-08 14:07:52 ----C---- C:\WINDOWS\system32\xactengine3_2.dll
2012-01-08 14:07:51 ----C---- C:\WINDOWS\system32\D3DX9_39.dll
2012-01-08 14:07:51 ----C---- C:\WINDOWS\system32\d3dx10_39.dll
2012-01-08 14:07:51 ----C---- C:\WINDOWS\system32\D3DCompiler_39.dll
2012-01-08 14:07:50 ----C---- C:\WINDOWS\system32\XAudio2_1.dll
2012-01-08 14:07:50 ----C---- C:\WINDOWS\system32\XAPOFX1_0.dll
2012-01-08 14:07:50 ----C---- C:\WINDOWS\system32\xactengine3_1.dll
2012-01-08 14:07:49 ----C---- C:\WINDOWS\system32\X3DAudio1_4.dll
2012-01-08 14:07:48 ----C---- C:\WINDOWS\system32\D3DX9_38.dll
2012-01-08 14:07:48 ----C---- C:\WINDOWS\system32\d3dx10_38.dll
2012-01-08 14:07:48 ----C---- C:\WINDOWS\system32\D3DCompiler_38.dll
2012-01-08 14:07:47 ----C---- C:\WINDOWS\system32\XAudio2_0.dll
2012-01-08 14:07:47 ----C---- C:\WINDOWS\system32\xactengine3_0.dll
2012-01-08 14:07:47 ----C---- C:\WINDOWS\system32\X3DAudio1_3.dll
2012-01-08 14:07:46 ----C---- C:\WINDOWS\system32\D3DX9_37.dll
2012-01-08 14:07:46 ----C---- C:\WINDOWS\system32\d3dx10_37.dll
2012-01-08 14:07:46 ----C---- C:\WINDOWS\system32\D3DCompiler_37.dll
2012-01-08 14:07:45 ----C---- C:\WINDOWS\system32\xactengine2_10.dll
2012-01-08 14:07:44 ----C---- C:\WINDOWS\system32\d3dx9_36.dll
2012-01-08 14:07:44 ----C---- C:\WINDOWS\system32\d3dx10_36.dll
2012-01-08 14:07:44 ----C---- C:\WINDOWS\system32\D3DCompiler_36.dll
2012-01-08 14:07:43 ----C---- C:\WINDOWS\system32\xactengine2_9.dll
2012-01-08 14:07:41 ----C---- C:\WINDOWS\system32\xactengine2_8.dll
2012-01-08 14:07:41 ----C---- C:\WINDOWS\system32\X3DAudio1_2.dll
2012-01-08 14:07:39 ----C---- C:\WINDOWS\system32\xactengine2_7.dll
2012-01-08 14:07:36 ----C---- C:\WINDOWS\system32\xactengine2_6.dll
2012-01-08 14:07:35 ----C---- C:\WINDOWS\system32\xactengine2_4.dll
2012-01-08 14:07:34 ----C---- C:\WINDOWS\system32\xactengine2_3.dll
2012-01-08 14:07:34 ----C---- C:\WINDOWS\system32\xactengine2_2.dll
2012-01-08 14:07:33 ----C---- C:\WINDOWS\system32\xactengine2_1.dll
2012-01-08 14:07:27 ----C---- C:\WINDOWS\system32\xactengine2_0.dll
2012-01-08 14:07:27 ----C---- C:\WINDOWS\system32\x3daudio1_0.dll
2012-01-08 14:07:25 ----C---- C:\WINDOWS\system32\xinput9_1_0.dll
2012-01-08 14:07:25 ----C---- C:\WINDOWS\system32\d3dx9_27.dll
2012-01-08 14:07:25 ----C---- C:\WINDOWS\system32\d3dx9_26.dll
2012-01-08 14:07:23 ----C---- C:\WINDOWS\system32\d3dx9_24.dll
2012-01-08 14:07:11 ----C---- C:\WINDOWS\system32\wrap_oal.dll
2012-01-08 14:07:11 ----C---- C:\WINDOWS\system32\OpenAL32.dll
2012-01-08 14:05:03 ----D---- C:\Program Files\cdv USA
2012-01-08 13:47:30 ----AC---- C:\WINDOWS\game.ini
2012-01-08 13:39:56 ----D---- C:\Documents and Settings\win\Data aplikací\InstallShield Installation Information
2012-01-08 13:36:22 ----C---- C:\WINDOWS\system32\d3dx10_35.dll
2012-01-08 13:36:22 ----C---- C:\WINDOWS\system32\D3DCompiler_35.dll
2012-01-08 13:36:21 ----C---- C:\WINDOWS\system32\d3dx9_35.dll
2012-01-08 13:36:20 ----C---- C:\WINDOWS\system32\d3dx10_34.dll
2012-01-08 13:36:20 ----C---- C:\WINDOWS\system32\D3DCompiler_34.dll
2012-01-08 13:36:19 ----C---- C:\WINDOWS\system32\xinput1_3.dll
2012-01-08 13:36:19 ----C---- C:\WINDOWS\system32\d3dx9_34.dll
2012-01-08 13:36:18 ----C---- C:\WINDOWS\system32\d3dx10_33.dll
2012-01-08 13:36:17 ----C---- C:\WINDOWS\system32\D3DCompiler_33.dll
2012-01-08 13:36:16 ----C---- C:\WINDOWS\system32\d3dx9_33.dll
2012-01-08 13:36:15 ----C---- C:\WINDOWS\system32\xinput1_2.dll
2012-01-08 13:36:15 ----C---- C:\WINDOWS\system32\xinput1_1.dll
2012-01-08 13:36:15 ----C---- C:\WINDOWS\system32\d3dx9_31.dll
2012-01-08 13:36:14 ----C---- C:\WINDOWS\system32\d3dx9_29.dll
2012-01-08 13:35:50 ----D---- C:\WINDOWS\system32\AGEIA
2012-01-08 13:35:49 ----D---- C:\Program Files\AGEIA Technologies
2012-01-08 13:35:40 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2012-01-08 12:33:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Trymedia
2012-01-07 22:55:58 ----D---- C:\Program Files\Ascaron Entertainment
2012-01-07 21:57:43 ----RHD---- C:\Documents and Settings\win\Data aplikací\SecuROM
2012-01-07 21:56:12 ----C---- C:\WINDOWS\system32\xactengine2_5.dll
2012-01-07 21:56:12 ----C---- C:\WINDOWS\system32\x3daudio1_1.dll
2012-01-07 21:56:09 ----C---- C:\WINDOWS\system32\d3dx9_32.dll
2012-01-07 21:47:18 ----AC---- C:\WINDOWS\level.ini
2012-01-07 17:52:42 ----D---- C:\Program Files\MOBILedit!
2011-12-28 19:49:25 ----D---- C:\Program Files\Gameforge4D
2011-12-24 19:39:53 ----D---- C:\Documents and Settings\win\Data aplikací\Internet Saving Optimizer
2011-12-24 19:39:34 ----D---- C:\Program Files\Nice Prosper
2011-12-24 19:39:20 ----D---- C:\Program Files\Internet Saving Optimizer
2011-12-24 19:39:12 ----D---- C:\Program Files\System Search Dispatcher
2011-12-24 19:39:02 ----D---- C:\Program Files\DoubleD
2011-12-24 19:05:48 ----HDC---- C:\Documents and Settings\All Users\Data aplikací\{A716538F-A52D-4381-B66E-3DFAABA30BCA}
2011-11-30 01:18:03 ----D---- C:\Documents and Settings\win\Data aplikací\uTorrent
2011-11-26 18:22:40 ----D---- C:\WINDOWS\Logs
2011-11-26 18:22:31 ----D---- C:\Program Files\Utherverse Digital Inc
2011-11-14 04:56:58 ----D---- C:\Documents and Settings\win\Data aplikací\AdobeUM
2011-11-10 22:49:02 ----D---- C:\Program Files\Common Files\DirectX
2011-11-10 22:43:53 ----D---- C:\Program Files\Aspyr Media, Inc
2011-11-10 21:58:18 ----D---- C:\Program Files\Globar Star Software
2011-11-10 16:21:56 ----AC---- C:\WINDOWS\MyProg.ini
2011-10-12 00:46:58 ----D---- C:\Program Files\ICQToolbar
2011-10-12 00:46:01 ----D---- C:\Program Files\ICQ6.501_18_14
2011-10-12 00:32:23 ----D---- C:\Documents and Settings\All Users\Data aplikací\SwiftKit
2011-10-12 00:32:22 ----D---- C:\Program Files\SwiftKit
2011-10-09 20:38:34 ----D---- C:\Program Files\ICQ6Toolbar
2011-10-09 20:38:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2011-10-09 20:36:05 ----D---- C:\Program Files\ICQ623_46_00
2011-09-18 01:41:19 ----D---- C:\Documents and Settings\win\Data aplikací\CyberLink
2011-09-16 04:01:02 ----HDC---- C:\WINDOWS\$NtUninstallKB953838$
2011-09-16 04:00:55 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2011-09-16 04:00:44 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2011-09-15 04:01:01 ----HDC---- C:\WINDOWS\$NtUninstallKB953839$
2011-09-15 04:00:49 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2011-08-22 02:09:11 ----D---- C:\rsit
2011-08-22 02:09:11 ----D---- C:\Program Files\trend micro
2011-08-22 01:47:27 ----D---- C:\Program Files\McAfeeScanAndRepair
2011-08-22 01:31:55 ----D---- C:\Program Files\McAfee
2011-08-22 01:05:08 ----HD---- C:\WINDOWS\update.tray-9-0-lnk
2011-08-22 01:05:08 ----HD---- C:\WINDOWS\update.tray-9-0
2011-08-22 00:55:40 ----D---- C:\Program Files\Common Files\Network Associates
2011-08-22 00:54:19 ----D---- C:\Program Files\McAfee VirusScan Home Edition 7.02 Demo 30
2011-08-22 00:44:10 ----A---- C:\WINDOWS\systemup.exe
2011-08-21 22:32:27 ----A---- C:\WINDOWS\ntbtlog.txt
2011-08-21 22:24:01 ----HD---- C:\WINDOWS\update.tray-2-0-lnk
2011-08-21 22:24:01 ----HD---- C:\WINDOWS\update.tray-2-0
2011-08-21 12:28:15 ----D---- C:\Inetpub
2011-08-21 12:26:42 ----A---- C:\WINDOWS\imsins.BAK
2011-08-20 01:10:20 ----HD---- C:\WINDOWS\update.tray-12-0-lnk
2011-08-20 01:10:20 ----HD---- C:\WINDOWS\update.tray-12-0
2011-08-20 01:05:28 ----HD---- C:\Documents and Settings\All Users\Data aplikací\Common Files
2011-08-20 01:05:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVG Security Toolbar
2011-08-20 01:02:05 ----D---- C:\WINDOWS\system32\drivers\AVG
2011-08-20 00:46:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\MFAData
2011-08-20 00:24:45 ----D---- C:\Program Files\AMD APP
2011-08-20 00:24:39 ----D---- C:\Program Files\ATI
2011-08-20 00:14:03 ----D---- C:\ATI
2011-08-20 00:05:26 ----D---- C:\WINDOWS\ufa
2011-08-20 00:05:26 ----D---- C:\WINDOWS\rpcminer
2011-08-20 00:05:26 ----D---- C:\WINDOWS\phoenix
2011-08-19 23:45:21 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2011-08-19 23:45:02 ----A---- C:\WINDOWS\avastSS.scr
2011-08-19 23:00:01 ----A---- C:\WINDOWS\l1rezerv.exe
2011-08-19 22:59:52 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-08-19 22:58:24 ----A---- C:\WINDOWS\unrar.exe
2011-08-19 22:58:23 ----HD---- C:\WINDOWS\update.5.0
2011-08-19 22:57:31 ----A---- C:\WINDOWS\iecheck_iplist.txt
2011-08-19 22:57:03 ----HD---- C:\WINDOWS\update.2
2011-08-19 22:55:59 ----HD---- C:\WINDOWS\update.7.1
2011-08-19 22:54:42 ----A---- C:\WINDOWS\iplist.txt
2011-08-19 22:54:15 ----A---- C:\WINDOWS\sysdriver32_.exe
2011-08-19 22:54:01 ----A---- C:\WINDOWS\sysdriver32.exe
2011-08-19 22:53:44 ----A---- C:\WINDOWS\front_ip_list.txt
2011-08-19 22:34:04 ----D---- C:\WINDOWS\av_ico
2011-08-19 22:31:53 ----HD---- C:\WINDOWS\update.1
2011-08-19 22:31:39 ----HD---- C:\WINDOWS\update.tray-7-0-lnk
2011-08-19 22:31:39 ----HD---- C:\WINDOWS\update.tray-7-0
2011-08-19 22:22:01 ----A---- C:\WINDOWS\winlog-ids.txt
2011-08-19 22:22:01 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-08-19 22:21:54 ----A---- C:\WINDOWS\services32.exe
2011-08-13 15:48:04 ----N---- C:\WINDOWS\system32\uxtuneup.dll
2011-08-13 15:44:16 ----N---- C:\WINDOWS\system32\TURegOpt.exe
2011-08-13 15:43:41 ----D---- C:\Documents and Settings\win\Data aplikací\TuneUp Software
2011-08-13 15:43:27 ----D---- C:\Program Files\TuneUp Utilities 2011
2011-08-13 15:43:07 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2011-08-13 15:42:55 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2011-08-11 03:08:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2567680$
2011-08-11 03:06:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2011-08-11 03:06:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$
2011-08-11 03:02:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2559049$
2011-08-11 03:02:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2011-08-11 03:01:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2562937$
2011-07-28 17:28:55 ----N---- C:\WINDOWS\system32\javaws.exe
2011-07-28 17:28:55 ----N---- C:\WINDOWS\system32\javaw.exe
2011-07-28 17:28:55 ----N---- C:\WINDOWS\system32\java.exe
2011-07-28 17:04:44 ----D---- C:\Documents and Settings\win\Data aplikací\EpicBot
2011-07-28 16:00:03 ----D---- C:\WINDOWS\system32\AI_RecycleBin
2011-07-28 15:59:43 ----D---- C:\Program Files\Fliptoast
2011-07-28 15:59:43 ----D---- C:\Documents and Settings\win\Data aplikací\com.w3i.fliptoast
2011-07-28 15:59:24 ----D---- C:\Documents and Settings\win\Data aplikací\W3i, LLC
2011-07-28 15:57:25 ----D---- C:\Program Files\EpicBot
2011-07-28 15:56:42 ----D---- C:\Program Files\Free Offers from Freeze.com
2011-07-28 15:56:38 ----D---- C:\Program Files\Zrychleni Pocitace
2011-07-28 15:23:06 ----A---- C:\Documents and Settings\win\Data aplikací\RSBot_Accounts.ini
======List of files/folders modified in the last 1 month======
2012-01-10 14:44:52 ----D---- C:\Documents and Settings\win\Data aplikací\Ahead
2012-01-08 14:08:04 ----C---- C:\WINDOWS\system32\CmdLineExt.dll
2011-11-18 18:23:14 ----D---- C:\WINDOWS\.jagex_cache_32
2011-11-07 21:10:50 ----D---- C:\Documents and Settings\win\Data aplikací\ICQ Toolbar
2011-10-12 00:53:42 ----D---- C:\Program Files\GlobFX Technologies
2011-10-12 00:52:48 ----D---- C:\WINDOWS\system32\GlobFX
2011-10-09 20:36:48 ----D---- C:\Program Files\ICQ6
2011-08-22 02:09:11 ----RD---- C:\Program Files
2011-08-22 02:01:09 ----D---- C:\Documents and Settings\win\Data aplikací\Skype
2011-08-22 01:56:50 ----D---- C:\WINDOWS\Temp
2011-08-22 01:54:54 ----D---- C:\WINDOWS\system32\drivers
2011-08-22 01:53:28 ----D---- C:\WINDOWS\system32
2011-08-22 01:37:38 ----SHD---- C:\WINDOWS\Installer
2011-08-22 01:37:37 ----D---- C:\Config.Msi
2011-08-22 01:34:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-08-22 01:14:06 ----D---- C:\Documents and Settings\win\Data aplikací\skypePM
2011-08-22 01:13:37 ----D---- C:\WINDOWS
2011-08-22 01:12:06 ----A---- C:\boot.ini
2011-08-22 00:59:40 ----SHD---- C:\RECYCLER
2011-08-22 00:56:14 ----HD---- C:\WINDOWS\inf
2011-08-22 00:56:09 ----D---- C:\WINDOWS\system32\CatRoot2
2011-08-22 00:56:05 ----D---- C:\WINDOWS\Prefetch
2011-08-22 00:55:40 ----D---- C:\Program Files\Common Files
2011-08-21 22:32:58 ----D---- C:\Documents and Settings
2011-08-21 22:08:11 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-08-21 22:08:08 ----D---- C:\WINDOWS\system32\inetsrv
2011-08-21 20:42:05 ----D---- C:\Program Files\Adobe
2011-08-21 20:40:45 ----D---- C:\Documents and Settings\win\Data aplikací\PriceGong
2011-08-21 20:39:29 ----D---- C:\Documents and Settings\win\Data aplikací\Hamachi
2011-08-21 13:17:04 ----DC---- C:\WINDOWS\system32\dllcache
2011-08-21 12:57:49 ----D---- C:\WINDOWS\system32\usmt
2011-08-21 12:34:35 ----D---- C:\WINDOWS\security
2011-08-21 12:28:20 ----D---- C:\WINDOWS\Help
2011-08-21 12:28:18 ----D---- C:\WINDOWS\system32\wbem
2011-08-21 12:25:37 ----A---- C:\WINDOWS\NeroDigital.ini
2011-08-21 01:23:38 ----D---- C:\Program Files\Opera
2011-08-20 20:09:53 ----D---- C:\Program Files\Zoner
2011-08-20 03:00:29 ----D---- C:\WINDOWS\WinSxS
2011-08-20 00:24:42 ----D---- C:\Program Files\ATI Technologies
2011-08-19 23:53:32 ----D---- C:\Program Files\Automatické vypnutí počítače
2011-08-19 23:50:46 ----A---- C:\WINDOWS\avp.ini
2011-08-19 23:01:51 ----SHD---- C:\System Volume Information
2011-08-19 23:01:51 ----D---- C:\WINDOWS\system32\Restore
2011-08-19 22:57:26 ----D---- C:\WINDOWS\system32\drivers\etc
2011-08-19 22:39:00 ----D---- C:\WINDOWS\system32\Macromed
2011-08-19 22:39:00 ----D---- C:\WINDOWS\system32\Adobe
2011-08-19 22:39:00 ----D---- C:\Documents and Settings\win\Data aplikací\Macromedia
2011-08-19 15:01:57 ----D---- C:\Program Files\Mozilla Firefox
2011-08-15 21:19:51 ----D---- C:\Documents and Settings\win\Data aplikací\ICQ
2011-08-14 13:20:15 ----D---- C:\Documents and Settings\win\Data aplikací\TeamViewer
2011-08-14 13:04:01 ----D---- C:\Documents and Settings\win\Data aplikací\dvdcss
2011-08-13 16:13:41 ----D---- C:\Program Files\Pinnacle
2011-08-13 16:13:40 ----D---- C:\Documents and Settings\All Users\Data aplikací\Pinnacle
2011-08-13 16:07:30 ----D---- C:\UT2004
2011-08-13 16:05:29 ----D---- C:\Program Files\Valve
2011-08-13 16:01:27 ----D---- C:\WINDOWS\Minidump
2011-08-13 16:01:27 ----D---- C:\WINDOWS\Debug
2011-08-13 15:44:18 ----D---- C:\WINDOWS\system32\config
2011-08-11 03:37:30 ----D---- C:\WINDOWS\Microsoft.NET
2011-08-11 03:37:26 ----RSD---- C:\WINDOWS\assembly
2011-08-11 03:07:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-08-11 03:06:18 ----HD---- C:\WINDOWS\$hf_mig$
2011-08-11 03:03:00 ----N---- C:\WINDOWS\system32\mrt.exe
2011-07-28 17:29:15 ----D---- C:\Program Files\Common Files\Java
2011-07-28 17:28:53 ----D---- C:\Program Files\Java
2011-07-28 17:00:20 ----D---- C:\Program Files\Realtek
2011-07-28 16:58:07 ----D---- C:\Program Files\Google
2011-07-28 16:53:35 ----D---- C:\Program Files\Microsoft Office
2011-07-28 16:28:11 ----D---- C:\Documents and Settings\win\Data aplikací\Azureus
2011-07-28 16:22:08 ----D---- C:\Program Files\CCleaner
2011-07-28 15:59:17 ----D---- C:\Documents and Settings\win\Data aplikací\Adobe
2011-07-28 15:59:17 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-07-25 18:28:55 ----D---- C:\Documents and Settings\win\Data aplikací\Opera
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2011-03-16 32592]
R0 iteraid;ITERAID_Service_Install; C:\WINDOWS\system32\DRIVERS\iteraid.sys [2004-10-29 25067]
R0 JRAID;JRAID; C:\WINDOWS\system32\DRIVERS\jraid.sys [2007-09-29 65024]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-03-03 48640]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-02-23 6656]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\WINDOWS\System32\drivers\sfsync02.sys [2004-12-03 20544]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2009-11-14 721904]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2011-01-07 248656]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2011-03-01 34896]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2011-04-05 297168]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-12-21 115008]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2010-12-21 94872]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2010-12-21 141264]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R3 Avgfwdx;Avgfwdx; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2010-07-12 30432]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-11-28 1353820]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-09-19 4617728]
R3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2007-08-07 98944]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys []
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 a5umjynd;a5umjynd; C:\WINDOWS\system32\drivers\a5umjynd.sys []
S3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
S3 Avgfwfd;AVG network filter service; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2010-07-12 30432]
S3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys [2011-04-14 134480]
S3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 24144]
S3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys [2011-02-10 27216]
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2004-12-06 126720]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 ET5Drv;ET5Drv; \??\C:\WINDOWS\system32\Drivers\ET5Drv.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2011-06-02 25280]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\WINDOWS\system32\DRIVERS\k750bus.sys [2008-09-21 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\k750mdfl.sys [2008-09-21 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\k750mdm.sys [2008-09-21 89872]
S3 k750mgmt;Sony Ericsson 750 USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\k750mgmt.sys [2008-09-21 81728]
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\k750obex.sys [2008-09-21 79488]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NaiFiltr;NaiFiltr; C:\WINDOWS\system32\DRIVERS\NaiFiltr.sys [2001-08-17 23296]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2007-12-05 7435392]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 teamviewervpn;TeamViewer VPN Adapter; C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys [2008-01-25 25088]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
Re: FB Vir :/
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ddservice;ddservice; C:\WINDOWS\update.7.1\svchostdriver.exe [2011-08-19 382464]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-05-04 153376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-05-14 249136]
R2 srvbtcclient;srvbtcclient; C:\WINDOWS\update.5.0\svchost.exe [2011-08-21 355840]
R2 srviecheck;srviecheck; C:\WINDOWS\update.2\svchost.exe [2011-08-21 634880]
R2 srvsysdriver32;srvsysdriver32; C:\WINDOWS\sysdriver32.exe [2011-08-19 258048]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe [2011-07-20 1526592]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
R2 UTSCSI;CLCV0; C:\WINDOWS\system32\UTSCSI.EXE [2002-01-13 45056]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 wxpdrivers;wxpdrivers; C:\WINDOWS\update.1\svchost.exe [2011-08-19 1215488]
S2 AvSynMgr;AVSync Manager; C:\Program Files\McAfee\McAfee VirusScan\Avsynmgr.exe []
S2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe []
S2 gupdate1ca1a1437e2ff0;Služba Google Update (gupdate1ca1a1437e2ff0); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-08-11 133104]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2007-12-05 155716]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2010-08-28 72704]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe []
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-01-19 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-08-11 133104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McAfee ScanAndRepair Svc;McAfee ScanAndRepair Svc; C:\Program Files\McAfeeScanAndRepair\McAfeeScanRepairSvc.exe [2011-04-06 694864]
S3 McShield;McShield; C:\Program Files\Common Files\Network Associates\McShield\Mcshield.exe [2003-02-03 237663]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 BarDiscover Service;BarDiscover Service; C:\Documents and Settings\All Users\Data aplikací\BarDiscover\bardiscover145.exe [2010-08-20 57616]
S4 GEST Service;GEST Service for program management.; C:\Program Files\GIGABYTE\GEST\GSvr.exe [2007-12-14 47624]
S4 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-09-12 724992]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 UltiDev Cassini Web Server for ASP.NET 2.0;UltiDev Cassini Web Server for ASP.NET 2.0; C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe [2010-08-09 49152]
S4 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
-----------------EOF-----------------
R2 ddservice;ddservice; C:\WINDOWS\update.7.1\svchostdriver.exe [2011-08-19 382464]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-05-04 153376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-05-14 249136]
R2 srvbtcclient;srvbtcclient; C:\WINDOWS\update.5.0\svchost.exe [2011-08-21 355840]
R2 srviecheck;srviecheck; C:\WINDOWS\update.2\svchost.exe [2011-08-21 634880]
R2 srvsysdriver32;srvsysdriver32; C:\WINDOWS\sysdriver32.exe [2011-08-19 258048]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe [2011-07-20 1526592]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
R2 UTSCSI;CLCV0; C:\WINDOWS\system32\UTSCSI.EXE [2002-01-13 45056]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 wxpdrivers;wxpdrivers; C:\WINDOWS\update.1\svchost.exe [2011-08-19 1215488]
S2 AvSynMgr;AVSync Manager; C:\Program Files\McAfee\McAfee VirusScan\Avsynmgr.exe []
S2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe []
S2 gupdate1ca1a1437e2ff0;Služba Google Update (gupdate1ca1a1437e2ff0); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-08-11 133104]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2007-12-05 155716]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2010-08-28 72704]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe []
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-01-19 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-08-11 133104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McAfee ScanAndRepair Svc;McAfee ScanAndRepair Svc; C:\Program Files\McAfeeScanAndRepair\McAfeeScanRepairSvc.exe [2011-04-06 694864]
S3 McShield;McShield; C:\Program Files\Common Files\Network Associates\McShield\Mcshield.exe [2003-02-03 237663]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 BarDiscover Service;BarDiscover Service; C:\Documents and Settings\All Users\Data aplikací\BarDiscover\bardiscover145.exe [2010-08-20 57616]
S4 GEST Service;GEST Service for program management.; C:\Program Files\GIGABYTE\GEST\GSvr.exe [2007-12-14 47624]
S4 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-09-12 724992]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 UltiDev Cassini Web Server for ASP.NET 2.0;UltiDev Cassini Web Server for ASP.NET 2.0; C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe [2010-08-09 49152]
S4 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
-----------------EOF-----------------
Re: FB Vir :/
Dobré ranko
Stáhněte Roguekiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
-ukončete všechny spuštěné programy
-spusťte program, pro visty/win 7 spustte pravým tlačítkem myši - jako správce
-použijte volbu 2 - enter
-pak použijte postupně i volby 3,4,5
-vložte zde logy
Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.


-ukončete všechny spuštěné programy
-spusťte program, pro visty/win 7 spustte pravým tlačítkem myši - jako správce
-použijte volbu 2 - enter
-pak použijte postupně i volby 3,4,5
-vložte zde logy

-Nainstalujte,dejte úplný sken
NIC NEMAZAT

-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: FB Vir :/
2:
ogueKiller V5.3.3 [08/18/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: win [Admin rights]
Mode: HOSTSFix -- Date : 08/22/2011 13:03:20
Bad processes: 0
HOSTS File:
127.0.0.1 localhost
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
127.0.0.1 et-ee.facebook.com
127.0.0.1 en-gb.facebook.com
127.0.0.1 es-la.facebook.com
127.0.0.1 eo-eo.facebook.com
127.0.0.1 eu-es.facebook.com
127.0.0.1 tl-ph.facebook.com
127.0.0.1 fo-fo.facebook.com
[...]
Resetted HOSTS:
127.0.0.1 localhost
Finished : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt
ogueKiller V5.3.3 [08/18/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: win [Admin rights]
Mode: HOSTSFix -- Date : 08/22/2011 13:03:20
Bad processes: 0
HOSTS File:
127.0.0.1 localhost
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
127.0.0.1 et-ee.facebook.com
127.0.0.1 en-gb.facebook.com
127.0.0.1 es-la.facebook.com
127.0.0.1 eo-eo.facebook.com
127.0.0.1 eu-es.facebook.com
127.0.0.1 tl-ph.facebook.com
127.0.0.1 fo-fo.facebook.com
[...]
Resetted HOSTS:
127.0.0.1 localhost
Finished : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt
Re: FB Vir :/
1:
RogueKiller V5.3.3 [08/18/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: win [Admin rights]
Mode: Remove -- Date : 08/22/2011 13:00:42
Bad processes: 7
[HJ NAME] svchost.exe -- c:\windows\update.5.0\svchost.exe -> KILLED [TermProc]
[HJ NAME] svchost.exe -- c:\windows\update.2\svchost.exe -> KILLED [TermProc]
[SVCHOST] svchost.exe -- c:\windows\update.5.0\svchost.exe -> KILLED [TermProc]
[SUSP PATH] sysdriver32.exe -- c:\windows\sysdriver32.exe -> KILLED [TermProc]
[HJ NAME] svchost.exe -- c:\windows\update.1\svchost.exe -> KILLED [TermProc]
[SVCHOST] svchost.exe -- c:\windows\update.2\svchost.exe -> KILLED [TermProc]
[SUSP PATH] systemup.exe -- c:\windows\systemup.exe -> KILLED [TermProc]
Registry Entries: 51
[SUSP PATH] HKLM\[...]\Run : wxpdrv (C:\WINDOWS\services32.exe) -> DELETED
[SUSP PATH] HKLM\[...]\Run : 6000139.exe ("C:\WINDOWS\TEMP\6000139.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : sysdriver32.exe ("C:\WINDOWS\sysdriver32.exe" rezerv) -> DELETED
[SUSP PATH] HKLM\[...]\Run : sysdriver32_.exe ("C:\WINDOWS\sysdriver32_.exe" rezerv) -> DELETED
[SUSP PATH] HKLM\[...]\Run : 5683064-loader2.exe ("C:\WINDOWS\TEMP\5683064-loader2.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : 3688270.exe ("C:\WINDOWS\TEMP\3688270.exe") -> DELETED
[HJ NAME] HKLM\[...]\Run : tray_ico0 (C:\WINDOWS\update.tray-2-0\svchost.exe) -> DELETED
[SUSP PATH] HKLM\[...]\Run : 1517081.exe ("C:\WINDOWS\TEMP\1517081.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : systemup ("C:\WINDOWS\systemup.exe" stand) -> DELETED
[HJ NAME] HKLM\[...]\Run : tray_ico1 (C:\WINDOWS\update.tray-9-0\svchost.exe) -> DELETED
[BLACKLIST] HKLM\[...]\services : srvbtcclient (C:\WINDOWS\update.5.0\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srviecheck (C:\WINDOWS\update.2\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srvsysdriver32 (C:\WINDOWS\sysdriver32.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : wxpdrivers (C:\WINDOWS\update.1\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srvbtcclient (C:\WINDOWS\update.5.0\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srviecheck (C:\WINDOWS\update.2\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srvsysdriver32 (C:\WINDOWS\sysdriver32.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : wxpdrivers (C:\WINDOWS\update.1\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\Root : LEGACY_SRVBTCCLIENT () -> DELETED
[BLACKLIST] HKLM\[...]\Root : LEGACY_SRVIECHECK () -> DELETED
[BLACKLIST] HKLM\[...]\Root : LEGACY_SRVSYSDRIVER32 () -> DELETED
[BLACKLIST] HKLM\[...]\Root : LEGACY_WXPDRIVERS () -> DELETED
[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (127.0.0.1:8080) -> NOT REMOVED, USE PROXYFIX
[IFEO] HKLM\[...]\Image File Execution Options : backitup.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : cdspeed.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : coverdes.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : drivespeed.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : hamachi.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : hpwucli.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : imagedrive.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : infotool.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : nero.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : neroburnrights.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : nerohome.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : neromediahome.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : neroscoutoptions.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : nerostartsmart.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : nerovision.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : photosnap.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : photosnapviewer.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : recode.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : run.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : setupx.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : showtime.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : soundtrax.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : uninstall.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : waveedit.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[HJ] HKLM\[...]\System : EnableLUA (0) -> REPLACED (1)
[HJ] HKLM\[...]\Security Center : AntiVirusDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\Security Center : FirewallDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\Security Center : UpdatesDisableNotify (1) -> REPLACED (0)
Particular Files / Folders:
HOSTS File:
127.0.0.1 localhost
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
127.0.0.1 et-ee.facebook.com
127.0.0.1 en-gb.facebook.com
127.0.0.1 es-la.facebook.com
127.0.0.1 eo-eo.facebook.com
127.0.0.1 eu-es.facebook.com
127.0.0.1 tl-ph.facebook.com
127.0.0.1 fo-fo.facebook.com
[...]
Finished : << RKreport[1].txt >>
RKreport[1].txt
RogueKiller V5.3.3 [08/18/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: win [Admin rights]
Mode: Remove -- Date : 08/22/2011 13:00:42
Bad processes: 7
[HJ NAME] svchost.exe -- c:\windows\update.5.0\svchost.exe -> KILLED [TermProc]
[HJ NAME] svchost.exe -- c:\windows\update.2\svchost.exe -> KILLED [TermProc]
[SVCHOST] svchost.exe -- c:\windows\update.5.0\svchost.exe -> KILLED [TermProc]
[SUSP PATH] sysdriver32.exe -- c:\windows\sysdriver32.exe -> KILLED [TermProc]
[HJ NAME] svchost.exe -- c:\windows\update.1\svchost.exe -> KILLED [TermProc]
[SVCHOST] svchost.exe -- c:\windows\update.2\svchost.exe -> KILLED [TermProc]
[SUSP PATH] systemup.exe -- c:\windows\systemup.exe -> KILLED [TermProc]
Registry Entries: 51
[SUSP PATH] HKLM\[...]\Run : wxpdrv (C:\WINDOWS\services32.exe) -> DELETED
[SUSP PATH] HKLM\[...]\Run : 6000139.exe ("C:\WINDOWS\TEMP\6000139.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : sysdriver32.exe ("C:\WINDOWS\sysdriver32.exe" rezerv) -> DELETED
[SUSP PATH] HKLM\[...]\Run : sysdriver32_.exe ("C:\WINDOWS\sysdriver32_.exe" rezerv) -> DELETED
[SUSP PATH] HKLM\[...]\Run : 5683064-loader2.exe ("C:\WINDOWS\TEMP\5683064-loader2.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : 3688270.exe ("C:\WINDOWS\TEMP\3688270.exe") -> DELETED
[HJ NAME] HKLM\[...]\Run : tray_ico0 (C:\WINDOWS\update.tray-2-0\svchost.exe) -> DELETED
[SUSP PATH] HKLM\[...]\Run : 1517081.exe ("C:\WINDOWS\TEMP\1517081.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : systemup ("C:\WINDOWS\systemup.exe" stand) -> DELETED
[HJ NAME] HKLM\[...]\Run : tray_ico1 (C:\WINDOWS\update.tray-9-0\svchost.exe) -> DELETED
[BLACKLIST] HKLM\[...]\services : srvbtcclient (C:\WINDOWS\update.5.0\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srviecheck (C:\WINDOWS\update.2\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srvsysdriver32 (C:\WINDOWS\sysdriver32.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : wxpdrivers (C:\WINDOWS\update.1\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srvbtcclient (C:\WINDOWS\update.5.0\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srviecheck (C:\WINDOWS\update.2\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : srvsysdriver32 (C:\WINDOWS\sysdriver32.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\services : wxpdrivers (C:\WINDOWS\update.1\svchost.exe srv) -> DELETED
[BLACKLIST] HKLM\[...]\Root : LEGACY_SRVBTCCLIENT () -> DELETED
[BLACKLIST] HKLM\[...]\Root : LEGACY_SRVIECHECK () -> DELETED
[BLACKLIST] HKLM\[...]\Root : LEGACY_SRVSYSDRIVER32 () -> DELETED
[BLACKLIST] HKLM\[...]\Root : LEGACY_WXPDRIVERS () -> DELETED
[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (127.0.0.1:8080) -> NOT REMOVED, USE PROXYFIX
[IFEO] HKLM\[...]\Image File Execution Options : backitup.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : cdspeed.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : coverdes.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : drivespeed.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : hamachi.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : hpwucli.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : imagedrive.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : infotool.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : nero.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : neroburnrights.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : nerohome.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : neromediahome.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : neroscoutoptions.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : nerostartsmart.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : nerovision.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : photosnap.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : photosnapviewer.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : recode.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : run.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : setupx.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : showtime.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : soundtrax.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : uninstall.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[IFEO] HKLM\[...]\Image File Execution Options : waveedit.exe ("C:\Program Files\TuneUp Utilities 2011\TUAutoReactivator32.exe") -> DELETED
[HJ] HKLM\[...]\System : EnableLUA (0) -> REPLACED (1)
[HJ] HKLM\[...]\Security Center : AntiVirusDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\Security Center : FirewallDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\Security Center : UpdatesDisableNotify (1) -> REPLACED (0)
Particular Files / Folders:
HOSTS File:
127.0.0.1 localhost
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
127.0.0.1 et-ee.facebook.com
127.0.0.1 en-gb.facebook.com
127.0.0.1 es-la.facebook.com
127.0.0.1 eo-eo.facebook.com
127.0.0.1 eu-es.facebook.com
127.0.0.1 tl-ph.facebook.com
127.0.0.1 fo-fo.facebook.com
[...]
Finished : << RKreport[1].txt >>
RKreport[1].txt
Re: FB Vir :/
3:
RogueKiller V5.3.3 [08/18/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: win [Admin rights]
Mode: ProxyFix -- Date : 08/22/2011 13:04:29
Bad processes: 0
Registry Entries: 1
[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (127.0.0.1:8080) -> DELETED
Finished : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt
RogueKiller V5.3.3 [08/18/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: win [Admin rights]
Mode: ProxyFix -- Date : 08/22/2011 13:04:29
Bad processes: 0
Registry Entries: 1
[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (127.0.0.1:8080) -> DELETED
Finished : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt
Re: FB Vir :/
4:
RogueKiller V5.3.3 [08/18/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: win [Admin rights]
Mode: DNSFix -- Date : 08/22/2011 13:05:19
Bad processes: 0
Registry Entries: 0
Finished : << RKreport[4].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt ; RKreport[4].txt
RogueKiller V5.3.3 [08/18/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: win [Admin rights]
Mode: DNSFix -- Date : 08/22/2011 13:05:19
Bad processes: 0
Registry Entries: 0
Finished : << RKreport[4].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt ; RKreport[4].txt
Re: FB Vir :/
omlouvám se jk stom blbnu.. snad to pochopíte.. v tomto se vubec neviznam tkže v tom nemam přehled..
Re: FB Vir :/
V pořádku
. Ještě ten mbam.

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: FB Vir :/
Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org
Verze databáze: 7539
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512
23.8.2011 1:41:35
mbam-log-2011-08-23 (01-41-30).txt
Typ kontroly: Rychlý test
Testované objekty: 179892
Uplynulý čas: 3 minut, 45 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 1
Infikované klíče v registru: 192
Infikované hodnoty v registru: 16
Infikované datové položky v registru: 0
Infikované složky: 55
Infikované soubory: 189
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
c:\program files\youtubedownloader.org\youtubedownloader\MinBHO.dll (Adware.SkyMediaPack) -> No action taken.
Infikované klíče v registru:
HKEY_CLASSES_ROOT\CLSID\{00F5B5BA-E3C2-4b70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{D1AAD553-DC21-471f-88E0-F58BE109038D} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{6998957E-00F9-4DAC-BBB1-C0CA721376C1} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.CashBackAssistant.1 (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.CashBackAssistant (Adware.CashBackAssistant) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Explorer\Bars\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{E343EDFC-1E6C-4CB5-AA29-E9C922641C80} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{D8560AC2-21B5-4C1A-BDD4-BD12BC83B082} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{09325003-167C-483D-A4BA-8B3122ABB432} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{F1A1892C-2A6C-4817-98B4-FF81443CBA20} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{E25DA6D6-C365-46CF-ABAF-DC5893135D7A} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{20EA9658-6BC3-4599-A87D-6371FE9295FC} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbAx.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbAx (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2721A8E5-BFDB-4562-9912-9E0531CA616C} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{5FE0CEAE-CB69-40AF-A323-40F94257DACB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{65A16874-2ED0-460E-A547-5FE2EC3A13A7} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{27BA317E-7BBD-4EBE-A06A-47F076D9D6F7} (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{2574231F-9D6F-4B0E-9041-5DD7484564AD} (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\MinBHO.ShowBarObj.1 (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\MinBHO.ShowBarObj (Adware.SkyMediaPack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{35B8D58C-B0CB-46b0-BA64-05B3804E4E86} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{C28A0312-C403-417B-A425-A915BC0519CD} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{877F3EAB-4462-44DF-8475-6064EAFD7FBF} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.FunExplorer.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.FunExplorer (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{396CFC12-932D-496B-A0A8-5D7201E105E1} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{573F4ABB-A1A2-44ED-9BA9-A8DAD40AAC46} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{71E02280-5212-45C3-B174-4D5A35DA254F} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{60DA826C-B1C6-4358-BDEC-4837CED45470} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{6DD76B7B-6423-4DF0-9A07-84A6CAD973A0} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{74C22317-5B90-471F-9AD2-FEC049870A16} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Scopes.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Scopes (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{7F6CFB6A-9227-4BB8-B941-F2B067E76F51} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{A16AD1E9-F69A-45AF-9462-B1C286708842} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{AB0EE208-DF60-4FA7-A617-C4269760033E} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ReportData.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ReportData (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{C1089F63-7AFC-4538-B0EB-BEA0F4225A57} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ScopeExternal.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ScopeExternal (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{C9CCBB35-D123-4A31-AFFC-9B2933132116} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButton.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButton (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{CC7BD6F1-565C-47CE-A5BB-9C935E77B59D} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{02AED140-2B62-4B49-8B3B-179020CC39B9} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{17BF1E05-C0E8-413C-BD1F-A481EEA3B8E9} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{CFC16189-8A92-4A29-A940-60248385F426} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{A1A1E70D-58C5-4349-83B6-BE9682B9874D} (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{4BF423F5-1689-4003-8A05-829048C7D869} (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\SearchBHO.CSearchBHO.1 (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\SearchBHO.CSearchBHO (Redir.GSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{DEE758B4-C3FB-4A5B-9939-848B9C77A2FB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Stock.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Stock (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{E12AEAB6-7D12-4C07-8E36-5892EFB4DAFB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{E2F2C137-A782-4FB5-81AF-086156F5EB0A} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{F1D06C9F-51F0-4476-BEDE-5DDF91BE304E} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{70EF8B2A-3A34-4913-AAFC-5A2827E0B1B1} (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{AD49CE2B-B922-4E2A-AAD9-C1565855C7BC} (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\KBBar.KBBarBand.1 (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\KBBar.KBBarBand (Adware.SkyLab) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{F3A32DF2-7413-4FB1-B575-1AC920A17B76} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{ACC62306-9A63-4864-BD2F-C8825D2D7EA6} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{21BA420E-161C-413A-B21E-4E42AE1F4226} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} (Trojan.Vundo) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00A6FAF1-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA1-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA9-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA9-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EAB-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF6-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59C7FC09-1C83-4648-B3E6-003D2BBC7481} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68AF847F-6E91-45dd-9B68-D6A12C30E5D7} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170B96C-28D4-4626-8358-27E6CAEEF907} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1A71FA0-FF48-48dd-9B6D-7A13A3E42127} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDB1968E-EAD6-40fd-8DAE-FF14757F60C7} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F138D901-86F0-4383-99B6-9CDD406036DA} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89F88394-3828-4d03-A0CF-8203604C3DA6} (Adware.Hotbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4233F04-1789-483c-A137-731E8F113DD5} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.FunRedirector (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.FunRedirector.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\AppID\BRNstIE.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\CmndFF.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\mozillaps.dll (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\Pltfrm.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CURRENT_USER\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\Software\SkyMedia (Adware.SkyMedia) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\BarDiscover (Adware.BarDiscover) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\DoubleD (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\sysdriver32.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\systeminfog (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BarDiscover (Adware.BarDiscover) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperReportsSA (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1FB52AB3-5987-45a2-85E0-F3EC30DDDC29}}_is1 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C5096216-7703-409E-B85A-8A6EE7395128}}_is1 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\SERVICES32.EXE (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BARDISCOVER_SERVICE (Adware.BarDiscover) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BarDiscover Service (Adware.BarDiscover) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{77D6DDFA-7834-4541-B2B3-A8B0FB0E3924} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00.1 (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00 (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
Infikované hodnoty v registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Value: {D7BE8ED1-B138-48FD-BB22-9779A39130B1} -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Value: {F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Value: {5617ECA9-488D-4BA2-8562-9710B9AB78D2} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B2} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B3} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B3} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B2} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Value: {5617ECA9-488D-4BA2-8562-9710B9AB78D2} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Value: {D7BE8ED1-B138-48FD-BB22-9779A39130B1} -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Value: {F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Search\(default) (Adware.Hotbar) -> Value: (default) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\ShopperReports 3.0.307.0 (Adware.HotBar) -> Value: ShopperReports 3.0.307.0 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\SRS_IT_E8790370B576545B33AD95 (Malware.Trace) -> Value: SRS_IT_E8790370B576545B33AD95 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Services32.exe\close (Trojan.Agent) -> Value: close -> No action taken.
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
c:\WINDOWS\rpcminer (Trojan.BCMiner) -> No action taken.
c:\documents and settings\all users\data aplikací\bardiscover (Adware.BarDiscover) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3 (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3 (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\res2 (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\res1 (Adware.ShopperReports) -> No action taken.
c:\program files\bardiscover (Adware.BarDiscover) -> No action taken.
c:\program files\DoubleD (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660 (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins (Adware.DoubleD) -> No action taken.
c:\program files\funwebproducts (Adware.MyWebSearch) -> No action taken.
c:\program files\funwebproducts\Shared (Adware.MyWebSearch) -> No action taken.
c:\program files\internet saving optimizer (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880 (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\Data (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components (Adware.DoubleD) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7} (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults\preferences (Adware.BarDiscover) -> No action taken.
c:\program files\shopperreports3 (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0 (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components (Adware.ShopperReports) -> No action taken.
c:\program files\system search dispatcher (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750 (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\Data (Adware.DoubleD) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports (Adware.ShopperReports) -> No action taken.
Infikované soubory:
c:\program files\nice prosper\cashbackassistant\cashbackassistantie.dll (Adware.CashBackAssistant) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\shopperreports.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\Pltfrm.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\mozillaps.dll (Adware.ShopperReports) -> No action taken.
c:\program files\youtubedownloader.org\youtubedownloader\MinBHO.dll (Adware.SkyMediaPack) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\npieaddon.dll (Adware.DoubleD) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\CmndFF.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\cntntcntr.dll (Adware.ShopperReports) -> No action taken.
c:\program files\youtubedownloader.org\youtubedownloader\searchbho.dll (Redir.GSearch) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\BRNstIE.dll (Adware.ShopperReports) -> No action taken.
c:\program files\youtubedownloader.org\youtubedownloader\youtubedownloader.dll (Adware.SkyLab) -> No action taken.
c:\WINDOWS\systemup.exe (Trojan.Agent.Gen) -> No action taken.
c:\WINDOWS\Temp\1517081.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\3286515.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\3688270.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\5905476.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\6000139.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\l1rezerv.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\sysdriver32.exe (Trojan.Delf) -> No action taken.
c:\WINDOWS\sysdriver32_.exe (Trojan.Delf) -> No action taken.
c:\WINDOWS\update.2\svchost.exe (Backdoor.Agent) -> No action taken.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> No action taken.
c:\WINDOWS\update.1\svchost.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\services32.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\rpcminer\bitcoinmineropencl.cl (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\bitcoinminercuda_10.cubin (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\bitcoinminercuda_11.cubin (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\bitcoinminercuda_20.cubin (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\cudart32_32_16.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\curllib.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\libeay32.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\libsasl.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\openldap.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\rpcminer-4way.exe (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\rpcminer-cpu.exe (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\rpcminer-cuda.exe (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\rpcminer-opencl.exe (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\ssleay32.dll (Trojan.BCMiner) -> No action taken.
c:\documents and settings\all users\data aplikací\bardiscover\bardiscover145.exe (Adware.BarDiscover) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\Config.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db\Aliases.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db\Sites.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\dwld\whitelist.xip (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\res2\whitelist.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db\Aliases.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db\Sites.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\dwld\whitelist.xip (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\res1\whitelist.dbs (Adware.ShopperReports) -> No action taken.
c:\program files\bardiscover\bardiscover.exe (Adware.BarDiscover) -> No action taken.
c:\program files\bardiscover\uninstall.exe (Adware.BarDiscover) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\aimactivexdll.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\axgifanimator.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\gdiplus.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\hookapint.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\mfc80.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\microsoft.vc80.mfc.manifest (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\MyDll.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\oeactivexdll.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\productinfo.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\riched20smiley.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\skincrafterdll.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stb0.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbAol.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapp.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapp.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapphelper.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbasst.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbdl.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbIE.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbMsn.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbOL.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbOLEX.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbsvc.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbyahoo8.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbyahoo9.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\2154df11395ea0249c4c54961007ff8a.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\362f27667f6d7af7e9d2a6856d6560f6.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\4b6752554c03dd13115a0078de71aa4d.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\default1.dat (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\fb0a3aaf0df9fc6e0a7bc656b80c3973.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading.dat (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading_bg.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading_logo.jpg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_screensaver.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_cursor.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_dailyvideo.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_game.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_glitter.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_logo.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_option.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_recipe.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_ringtone.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_search.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley_config.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley_tellafriend.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_wallpaper.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_web.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\pixel.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\productinfo.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\profile.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\searchenginelist.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\tbcore.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\toolbarlayout.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\updatecentre.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\updatecentrebk.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\urldynamic.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\urlstatic.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_recipe.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\About.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\component_combobox.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_cursor.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_dailyvideo.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_game.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_glitter.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_logo.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_option.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_ringtone.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_screensaver.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_search.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_smiley.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_wallpaper.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_web.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndefault.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin1.skf (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin2.skf (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin3.skf (Adware.DoubleD) -> No action taken.
c:\program files\funwebproducts\Shared\01D367C3.dat (Adware.MyWebSearch) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\NPCommon.dll (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\unins000.dat (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\unins000.exe (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\Data\config.md (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome.manifest (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\install.rdf (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\NPAddOn.jar (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content\NPAddOn.js (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content\NPAddOn.xul (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffaddon.dll (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffaddon.xpt (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffhelpercomponent.js (Adware.DoubleD) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome.manifest (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\install.rdf (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome\bardiscover.jar (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults\preferences\prefs.js (Adware.BarDiscover) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\link.ico (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\shopperreportsuninstaller.exe (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome.manifest (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\install.rdf (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome\firefoxtoolbar.jar (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.xpt (Adware.ShopperReports) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\unins000.dat (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\unins000.exe (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\Data\eacore.mx (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\Data\urldynamic.mx (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\Data\urlstatic.mx (Adware.DoubleD) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\About Us.lnk (Adware.ShopperReports) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\customer support.lnk (Adware.ShopperReports) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\shopperreports uninstall instructions.lnk (Adware.ShopperReports) -> No action taken.
c:\program files\icqtoolbar\toolbaru.dll (Trojan.BHO) -> No action taken.
www.malwarebytes.org
Verze databáze: 7539
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512
23.8.2011 1:41:35
mbam-log-2011-08-23 (01-41-30).txt
Typ kontroly: Rychlý test
Testované objekty: 179892
Uplynulý čas: 3 minut, 45 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 1
Infikované klíče v registru: 192
Infikované hodnoty v registru: 16
Infikované datové položky v registru: 0
Infikované složky: 55
Infikované soubory: 189
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
c:\program files\youtubedownloader.org\youtubedownloader\MinBHO.dll (Adware.SkyMediaPack) -> No action taken.
Infikované klíče v registru:
HKEY_CLASSES_ROOT\CLSID\{00F5B5BA-E3C2-4b70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{D1AAD553-DC21-471f-88E0-F58BE109038D} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{6998957E-00F9-4DAC-BBB1-C0CA721376C1} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.CashBackAssistant.1 (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.CashBackAssistant (Adware.CashBackAssistant) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Explorer\Bars\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{E343EDFC-1E6C-4CB5-AA29-E9C922641C80} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{D8560AC2-21B5-4C1A-BDD4-BD12BC83B082} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{09325003-167C-483D-A4BA-8B3122ABB432} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{F1A1892C-2A6C-4817-98B4-FF81443CBA20} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{E25DA6D6-C365-46CF-ABAF-DC5893135D7A} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{20EA9658-6BC3-4599-A87D-6371FE9295FC} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbAx.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbAx (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2721A8E5-BFDB-4562-9912-9E0531CA616C} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{5FE0CEAE-CB69-40AF-A323-40F94257DACB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{65A16874-2ED0-460E-A547-5FE2EC3A13A7} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{27BA317E-7BBD-4EBE-A06A-47F076D9D6F7} (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{2574231F-9D6F-4B0E-9041-5DD7484564AD} (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\MinBHO.ShowBarObj.1 (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\MinBHO.ShowBarObj (Adware.SkyMediaPack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{35B8D58C-B0CB-46b0-BA64-05B3804E4E86} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{C28A0312-C403-417B-A425-A915BC0519CD} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{877F3EAB-4462-44DF-8475-6064EAFD7FBF} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.FunExplorer.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.FunExplorer (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{396CFC12-932D-496B-A0A8-5D7201E105E1} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{573F4ABB-A1A2-44ED-9BA9-A8DAD40AAC46} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{71E02280-5212-45C3-B174-4D5A35DA254F} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{60DA826C-B1C6-4358-BDEC-4837CED45470} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{6DD76B7B-6423-4DF0-9A07-84A6CAD973A0} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{74C22317-5B90-471F-9AD2-FEC049870A16} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Scopes.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Scopes (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{7F6CFB6A-9227-4BB8-B941-F2B067E76F51} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{A16AD1E9-F69A-45AF-9462-B1C286708842} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{AB0EE208-DF60-4FA7-A617-C4269760033E} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ReportData.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ReportData (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{C1089F63-7AFC-4538-B0EB-BEA0F4225A57} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ScopeExternal.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.ScopeExternal (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{C9CCBB35-D123-4A31-AFFC-9B2933132116} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButton.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.IEButton (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{CC7BD6F1-565C-47CE-A5BB-9C935E77B59D} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{02AED140-2B62-4B49-8B3B-179020CC39B9} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{17BF1E05-C0E8-413C-BD1F-A481EEA3B8E9} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{CFC16189-8A92-4A29-A940-60248385F426} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{A1A1E70D-58C5-4349-83B6-BE9682B9874D} (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{4BF423F5-1689-4003-8A05-829048C7D869} (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\SearchBHO.CSearchBHO.1 (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\SearchBHO.CSearchBHO (Redir.GSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{DEE758B4-C3FB-4A5B-9939-848B9C77A2FB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Stock.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.Stock (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{E12AEAB6-7D12-4C07-8E36-5892EFB4DAFB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{E2F2C137-A782-4FB5-81AF-086156F5EB0A} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{F1D06C9F-51F0-4476-BEDE-5DDF91BE304E} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{70EF8B2A-3A34-4913-AAFC-5A2827E0B1B1} (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{AD49CE2B-B922-4E2A-AAD9-C1565855C7BC} (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\KBBar.KBBarBand.1 (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\KBBar.KBBarBand (Adware.SkyLab) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} (Adware.SkyLab) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{F3A32DF2-7413-4FB1-B575-1AC920A17B76} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay.1 (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{ACC62306-9A63-4864-BD2F-C8825D2D7EA6} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{21BA420E-161C-413A-B21E-4E42AE1F4226} (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} (Trojan.Vundo) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00A6FAF1-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA1-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA9-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA9-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EAB-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF6-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59C7FC09-1C83-4648-B3E6-003D2BBC7481} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68AF847F-6E91-45dd-9B68-D6A12C30E5D7} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170B96C-28D4-4626-8358-27E6CAEEF907} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1A71FA0-FF48-48dd-9B6D-7A13A3E42127} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDB1968E-EAD6-40fd-8DAE-FF14757F60C7} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F138D901-86F0-4383-99B6-9CDD406036DA} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89F88394-3828-4d03-A0CF-8203604C3DA6} (Adware.Hotbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4233F04-1789-483c-A137-731E8F113DD5} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.FunRedirector (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\ExplorerBar.FunRedirector.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\AppID\BRNstIE.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\CmndFF.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\mozillaps.dll (Adware.ClickPotato) -> No action taken.
HKEY_CLASSES_ROOT\AppID\Pltfrm.DLL (Adware.ClickPotato) -> No action taken.
HKEY_CURRENT_USER\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> No action taken.
HKEY_CURRENT_USER\Software\SkyMedia (Adware.SkyMedia) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\BarDiscover (Adware.BarDiscover) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\DoubleD (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\sysdriver32.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\systeminfog (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BarDiscover (Adware.BarDiscover) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperReportsSA (Adware.ShopperReports) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1FB52AB3-5987-45a2-85E0-F3EC30DDDC29}}_is1 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C5096216-7703-409E-B85A-8A6EE7395128}}_is1 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\SERVICES32.EXE (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BARDISCOVER_SERVICE (Adware.BarDiscover) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BarDiscover Service (Adware.BarDiscover) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{77D6DDFA-7834-4541-B2B3-A8B0FB0E3924} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00.1 (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00 (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
Infikované hodnoty v registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Value: {D7BE8ED1-B138-48FD-BB22-9779A39130B1} -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Value: {F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Value: {5617ECA9-488D-4BA2-8562-9710B9AB78D2} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B2} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B3} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B3} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B2} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Value: {5617ECA9-488D-4BA2-8562-9710B9AB78D2} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Value: {D7BE8ED1-B138-48FD-BB22-9779A39130B1} -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Value: {F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Search\(default) (Adware.Hotbar) -> Value: (default) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\ShopperReports 3.0.307.0 (Adware.HotBar) -> Value: ShopperReports 3.0.307.0 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\SRS_IT_E8790370B576545B33AD95 (Malware.Trace) -> Value: SRS_IT_E8790370B576545B33AD95 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Services32.exe\close (Trojan.Agent) -> Value: close -> No action taken.
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
c:\WINDOWS\rpcminer (Trojan.BCMiner) -> No action taken.
c:\documents and settings\all users\data aplikací\bardiscover (Adware.BarDiscover) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3 (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3 (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\res2 (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\res1 (Adware.ShopperReports) -> No action taken.
c:\program files\bardiscover (Adware.BarDiscover) -> No action taken.
c:\program files\DoubleD (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660 (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins (Adware.DoubleD) -> No action taken.
c:\program files\funwebproducts (Adware.MyWebSearch) -> No action taken.
c:\program files\funwebproducts\Shared (Adware.MyWebSearch) -> No action taken.
c:\program files\internet saving optimizer (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880 (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\Data (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components (Adware.DoubleD) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7} (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults\preferences (Adware.BarDiscover) -> No action taken.
c:\program files\shopperreports3 (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0 (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components (Adware.ShopperReports) -> No action taken.
c:\program files\system search dispatcher (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750 (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\Data (Adware.DoubleD) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports (Adware.ShopperReports) -> No action taken.
Infikované soubory:
c:\program files\nice prosper\cashbackassistant\cashbackassistantie.dll (Adware.CashBackAssistant) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\shopperreports.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\Pltfrm.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\mozillaps.dll (Adware.ShopperReports) -> No action taken.
c:\program files\youtubedownloader.org\youtubedownloader\MinBHO.dll (Adware.SkyMediaPack) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\npieaddon.dll (Adware.DoubleD) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\CmndFF.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\cntntcntr.dll (Adware.ShopperReports) -> No action taken.
c:\program files\youtubedownloader.org\youtubedownloader\searchbho.dll (Redir.GSearch) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\BRNstIE.dll (Adware.ShopperReports) -> No action taken.
c:\program files\youtubedownloader.org\youtubedownloader\youtubedownloader.dll (Adware.SkyLab) -> No action taken.
c:\WINDOWS\systemup.exe (Trojan.Agent.Gen) -> No action taken.
c:\WINDOWS\Temp\1517081.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\3286515.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\3688270.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\5905476.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\Temp\6000139.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\l1rezerv.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\sysdriver32.exe (Trojan.Delf) -> No action taken.
c:\WINDOWS\sysdriver32_.exe (Trojan.Delf) -> No action taken.
c:\WINDOWS\update.2\svchost.exe (Backdoor.Agent) -> No action taken.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> No action taken.
c:\WINDOWS\update.1\svchost.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\services32.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\rpcminer\bitcoinmineropencl.cl (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\bitcoinminercuda_10.cubin (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\bitcoinminercuda_11.cubin (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\bitcoinminercuda_20.cubin (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\cudart32_32_16.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\curllib.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\libeay32.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\libsasl.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\openldap.dll (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\rpcminer-4way.exe (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\rpcminer-cpu.exe (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\rpcminer-cuda.exe (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\rpcminer-opencl.exe (Trojan.BCMiner) -> No action taken.
c:\WINDOWS\rpcminer\ssleay32.dll (Trojan.BCMiner) -> No action taken.
c:\documents and settings\all users\data aplikací\bardiscover\bardiscover145.exe (Adware.BarDiscover) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\Config.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db\Aliases.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db\Sites.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\dwld\whitelist.xip (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\res2\whitelist.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db\Aliases.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db\Sites.dbs (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\dwld\whitelist.xip (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\res1\whitelist.dbs (Adware.ShopperReports) -> No action taken.
c:\program files\bardiscover\bardiscover.exe (Adware.BarDiscover) -> No action taken.
c:\program files\bardiscover\uninstall.exe (Adware.BarDiscover) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\aimactivexdll.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\axgifanimator.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\gdiplus.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\hookapint.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\mfc80.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\microsoft.vc80.mfc.manifest (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\MyDll.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\oeactivexdll.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\productinfo.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\riched20smiley.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\skincrafterdll.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stb0.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbAol.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapp.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapp.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapphelper.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbasst.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbdl.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbIE.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbMsn.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbOL.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbOLEX.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbsvc.exe (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbyahoo8.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbyahoo9.dll (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\2154df11395ea0249c4c54961007ff8a.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\362f27667f6d7af7e9d2a6856d6560f6.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\4b6752554c03dd13115a0078de71aa4d.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\default1.dat (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\fb0a3aaf0df9fc6e0a7bc656b80c3973.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading.dat (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading_bg.gif (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading_logo.jpg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_screensaver.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_cursor.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_dailyvideo.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_game.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_glitter.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_logo.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_option.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_recipe.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_ringtone.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_search.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley_config.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley_tellafriend.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_wallpaper.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_web.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\pixel.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\productinfo.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\profile.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\searchenginelist.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\tbcore.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\toolbarlayout.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\updatecentre.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\updatecentrebk.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\urldynamic.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\urlstatic.mx (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_recipe.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\About.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\component_combobox.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_cursor.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_dailyvideo.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_game.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_glitter.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_logo.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_option.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_ringtone.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_screensaver.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_search.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_smiley.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_wallpaper.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_web.mg (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndefault.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink.png (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink18.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink20.bmp (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin1.skf (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin2.skf (Adware.DoubleD) -> No action taken.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin3.skf (Adware.DoubleD) -> No action taken.
c:\program files\funwebproducts\Shared\01D367C3.dat (Adware.MyWebSearch) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\NPCommon.dll (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\unins000.dat (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\unins000.exe (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\Data\config.md (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome.manifest (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\install.rdf (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\NPAddOn.jar (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content\NPAddOn.js (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content\NPAddOn.xul (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffaddon.dll (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffaddon.xpt (Adware.DoubleD) -> No action taken.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffhelpercomponent.js (Adware.DoubleD) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome.manifest (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\install.rdf (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome\bardiscover.jar (Adware.BarDiscover) -> No action taken.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults\preferences\prefs.js (Adware.BarDiscover) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\link.ico (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\shopperreportsuninstaller.exe (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome.manifest (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\install.rdf (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome\firefoxtoolbar.jar (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.dll (Adware.ShopperReports) -> No action taken.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.xpt (Adware.ShopperReports) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\unins000.dat (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\unins000.exe (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\Data\eacore.mx (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\Data\urldynamic.mx (Adware.DoubleD) -> No action taken.
c:\program files\system search dispatcher\1.2.0.750\Data\urlstatic.mx (Adware.DoubleD) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\About Us.lnk (Adware.ShopperReports) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\customer support.lnk (Adware.ShopperReports) -> No action taken.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\shopperreports uninstall instructions.lnk (Adware.ShopperReports) -> No action taken.
c:\program files\icqtoolbar\toolbaru.dll (Trojan.BHO) -> No action taken.
Re: FB Vir :/
V mbamu vše smažte a udělejte uplný sken mbamem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: FB Vir :/
Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org
Verze databáze: 7548
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512
24.8.2011 0:28:49
mbam-log-2011-08-24 (00-28-49).txt
Typ kontroly: Rychlý test
Testované objekty: 180070
Uplynulý čas: 3 minut, 30 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 192
Infikované hodnoty v registru: 16
Infikované datové položky v registru: 0
Infikované složky: 55
Infikované soubory: 189
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
HKEY_CLASSES_ROOT\CLSID\{00F5B5BA-E3C2-4b70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{D1AAD553-DC21-471f-88E0-F58BE109038D} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6998957E-00F9-4DAC-BBB1-C0CA721376C1} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.CashBackAssistant.1 (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.CashBackAssistant (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Explorer\Bars\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{E343EDFC-1E6C-4CB5-AA29-E9C922641C80} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{D8560AC2-21B5-4C1A-BDD4-BD12BC83B082} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{09325003-167C-483D-A4BA-8B3122ABB432} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{F1A1892C-2A6C-4817-98B4-FF81443CBA20} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{E25DA6D6-C365-46CF-ABAF-DC5893135D7A} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{20EA9658-6BC3-4599-A87D-6371FE9295FC} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbAx.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbAx (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2721A8E5-BFDB-4562-9912-9E0531CA616C} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{5FE0CEAE-CB69-40AF-A323-40F94257DACB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{65A16874-2ED0-460E-A547-5FE2EC3A13A7} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{27BA317E-7BBD-4EBE-A06A-47F076D9D6F7} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2574231F-9D6F-4B0E-9041-5DD7484564AD} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\MinBHO.ShowBarObj.1 (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\MinBHO.ShowBarObj (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{35B8D58C-B0CB-46b0-BA64-05B3804E4E86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{C28A0312-C403-417B-A425-A915BC0519CD} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{877F3EAB-4462-44DF-8475-6064EAFD7FBF} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.FunExplorer.1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.FunExplorer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{396CFC12-932D-496B-A0A8-5D7201E105E1} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{573F4ABB-A1A2-44ED-9BA9-A8DAD40AAC46} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{71E02280-5212-45C3-B174-4D5A35DA254F} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{60DA826C-B1C6-4358-BDEC-4837CED45470} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{6DD76B7B-6423-4DF0-9A07-84A6CAD973A0} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{74C22317-5B90-471F-9AD2-FEC049870A16} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Scopes.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Scopes (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7F6CFB6A-9227-4BB8-B941-F2B067E76F51} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A16AD1E9-F69A-45AF-9462-B1C286708842} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{AB0EE208-DF60-4FA7-A617-C4269760033E} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.ReportData.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.ReportData (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{C1089F63-7AFC-4538-B0EB-BEA0F4225A57} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.ScopeExternal.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.ScopeExternal (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{C9CCBB35-D123-4A31-AFFC-9B2933132116} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.IEButton.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.IEButton (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CC7BD6F1-565C-47CE-A5BB-9C935E77B59D} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{02AED140-2B62-4B49-8B3B-179020CC39B9} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{17BF1E05-C0E8-413C-BD1F-A481EEA3B8E9} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CFC16189-8A92-4A29-A940-60248385F426} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{A1A1E70D-58C5-4349-83B6-BE9682B9874D} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{4BF423F5-1689-4003-8A05-829048C7D869} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\SearchBHO.CSearchBHO.1 (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\SearchBHO.CSearchBHO (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{DEE758B4-C3FB-4A5B-9939-848B9C77A2FB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Stock.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Stock (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{E12AEAB6-7D12-4C07-8E36-5892EFB4DAFB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{E2F2C137-A782-4FB5-81AF-086156F5EB0A} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{F1D06C9F-51F0-4476-BEDE-5DDF91BE304E} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{70EF8B2A-3A34-4913-AAFC-5A2827E0B1B1} (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{AD49CE2B-B922-4E2A-AAD9-C1565855C7BC} (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\KBBar.KBBarBand.1 (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\KBBar.KBBarBand (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{F3A32DF2-7413-4FB1-B575-1AC920A17B76} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{ACC62306-9A63-4864-BD2F-C8825D2D7EA6} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{21BA420E-161C-413A-B21E-4E42AE1F4226} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00A6FAF1-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA1-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA9-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA9-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EAB-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF6-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59C7FC09-1C83-4648-B3E6-003D2BBC7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68AF847F-6E91-45dd-9B68-D6A12C30E5D7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170B96C-28D4-4626-8358-27E6CAEEF907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1A71FA0-FF48-48dd-9B6D-7A13A3E42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDB1968E-EAD6-40fd-8DAE-FF14757F60C7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F138D901-86F0-4383-99B6-9CDD406036DA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89F88394-3828-4d03-A0CF-8203604C3DA6} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4233F04-1789-483c-A137-731E8F113DD5} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.FunRedirector (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.FunRedirector.1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\BRNstIE.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\CmndFF.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\mozillaps.dll (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\Pltfrm.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\SkyMedia (Adware.SkyMedia) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\BarDiscover (Adware.BarDiscover) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\sysdriver32.exe (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\systeminfog (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BarDiscover (Adware.BarDiscover) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperReportsSA (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1FB52AB3-5987-45a2-85E0-F3EC30DDDC29}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C5096216-7703-409E-B85A-8A6EE7395128}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\SERVICES32.EXE (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\wxpdrivers (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BARDISCOVER_SERVICE (Adware.BarDiscover) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BarDiscover Service (Adware.BarDiscover) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{77D6DDFA-7834-4541-B2B3-A8B0FB0E3924} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00.1 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> Quarantined and deleted successfully.
Infikované hodnoty v registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Value: {D7BE8ED1-B138-48FD-BB22-9779A39130B1} -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Value: {F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Value: {5617ECA9-488D-4BA2-8562-9710B9AB78D2} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B2} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B3} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B3} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B2} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Value: {5617ECA9-488D-4BA2-8562-9710B9AB78D2} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Value: {D7BE8ED1-B138-48FD-BB22-9779A39130B1} -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Value: {F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Search\(default) (Adware.Hotbar) -> Value: (default) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\ShopperReports 3.0.307.0 (Adware.HotBar) -> Value: ShopperReports 3.0.307.0 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\SRS_IT_E8790370B576545B33AD95 (Malware.Trace) -> Value: SRS_IT_E8790370B576545B33AD95 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Services32.exe\close (Trojan.Agent) -> Value: close -> Quarantined and deleted successfully.
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
c:\WINDOWS\rpcminer (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\documents and settings\all users\data aplikací\bardiscover (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\res2 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\res1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\bardiscover (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\funwebproducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7} (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults\preferences (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\documents and settings\all users\nabídka start\Programy\shopperreports (Adware.ShopperReports) -> Quarantined and deleted successfully.
Infikované soubory:
c:\program files\nice prosper\cashbackassistant\cashbackassistantie.dll (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\shopperreports.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\Pltfrm.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\mozillaps.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\youtubedownloader.org\youtubedownloader\MinBHO.dll (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\npieaddon.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\CmndFF.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\cntntcntr.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\youtubedownloader.org\youtubedownloader\searchbho.dll (Redir.GSearch) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\BRNstIE.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\youtubedownloader.org\youtubedownloader\youtubedownloader.dll (Adware.SkyLab) -> Quarantined and deleted successfully.
c:\WINDOWS\systemup.exe (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\1517081.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\3286515.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\3688270.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\5905476.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\6000139.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\l1rezerv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\sysdriver32.exe (Trojan.Delf) -> Quarantined and deleted successfully.
c:\WINDOWS\sysdriver32_.exe (Trojan.Delf) -> Quarantined and deleted successfully.
c:\WINDOWS\update.2\svchost.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\WINDOWS\update.1\svchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\services32.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\bitcoinmineropencl.cl (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\bitcoinminercuda_10.cubin (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\bitcoinminercuda_11.cubin (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\bitcoinminercuda_20.cubin (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\cudart32_32_16.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\curllib.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\libeay32.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\libsasl.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\openldap.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\rpcminer-4way.exe (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\rpcminer-cpu.exe (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\rpcminer-cuda.exe (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\rpcminer-opencl.exe (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\ssleay32.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\documents and settings\all users\data aplikací\bardiscover\bardiscover145.exe (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\Config.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db\Aliases.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db\Sites.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\dwld\whitelist.xip (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report\aggr_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report\send_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\res2\whitelist.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db\Aliases.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db\Sites.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\dwld\whitelist.xip (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\res1\whitelist.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\bardiscover\bardiscover.exe (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\bardiscover\uninstall.exe (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\aimactivexdll.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\axgifanimator.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\gdiplus.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\hookapint.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\mfc80.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\microsoft.vc80.mfc.manifest (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\MyDll.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\oeactivexdll.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\productinfo.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\riched20smiley.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\skincrafterdll.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stb0.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbAol.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapp.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapp.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapphelper.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbasst.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbdl.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbIE.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbMsn.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbOL.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbOLEX.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbsvc.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbyahoo8.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbyahoo9.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\2154df11395ea0249c4c54961007ff8a.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\362f27667f6d7af7e9d2a6856d6560f6.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\4b6752554c03dd13115a0078de71aa4d.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\default1.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\fb0a3aaf0df9fc6e0a7bc656b80c3973.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading_bg.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading_logo.jpg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_screensaver.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_cursor.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_dailyvideo.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_game.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_glitter.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_logo.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_option.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_recipe.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_ringtone.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_search.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley_config.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley_tellafriend.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_wallpaper.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_web.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\pixel.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\productinfo.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\profile.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\searchenginelist.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\tbcore.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\toolbarlayout.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\updatecentre.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\updatecentrebk.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\urldynamic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\urlstatic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_recipe.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\About.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\component_combobox.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_cursor.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_dailyvideo.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_game.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_glitter.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_logo.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_option.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_ringtone.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_screensaver.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_search.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_smiley.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_wallpaper.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_web.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndefault.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin1.skf (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin2.skf (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin3.skf (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared\01D367C3.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\NPCommon.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\Data\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome.manifest (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\install.rdf (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\NPAddOn.jar (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content\NPAddOn.js (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content\NPAddOn.xul (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffaddon.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffaddon.xpt (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffhelpercomponent.js (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome.manifest (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\install.rdf (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome\bardiscover.jar (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults\preferences\prefs.js (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\link.ico (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\shopperreportsuninstaller.exe (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome.manifest (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\install.rdf (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome\firefoxtoolbar.jar (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.xpt (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\Data\eacore.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\Data\urldynamic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\Data\urlstatic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\About Us.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\customer support.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\shopperreports uninstall instructions.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\icqtoolbar\toolbaru.dll (Trojan.BHO) -> Quarantined and deleted successfully.
www.malwarebytes.org
Verze databáze: 7548
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512
24.8.2011 0:28:49
mbam-log-2011-08-24 (00-28-49).txt
Typ kontroly: Rychlý test
Testované objekty: 180070
Uplynulý čas: 3 minut, 30 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 192
Infikované hodnoty v registru: 16
Infikované datové položky v registru: 0
Infikované složky: 55
Infikované soubory: 189
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
HKEY_CLASSES_ROOT\CLSID\{00F5B5BA-E3C2-4b70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{D1AAD553-DC21-471f-88E0-F58BE109038D} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6998957E-00F9-4DAC-BBB1-C0CA721376C1} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.CashBackAssistant.1 (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.CashBackAssistant (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Explorer\Bars\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00F5B5BA-E3C2-4B70-BF51-42A557914FAD} (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{E343EDFC-1E6C-4CB5-AA29-E9C922641C80} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{D8560AC2-21B5-4C1A-BDD4-BD12BC83B082} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.RprtCtrl (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100EB1FD-D03E-47FD-81F3-EE91287F9465} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{09325003-167C-483D-A4BA-8B3122ABB432} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{F1A1892C-2A6C-4817-98B4-FF81443CBA20} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{E25DA6D6-C365-46CF-ABAF-DC5893135D7A} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbGuru (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{20EA9658-6BC3-4599-A87D-6371FE9295FC} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbAx.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbAx (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2721A8E5-BFDB-4562-9912-9E0531CA616C} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{5FE0CEAE-CB69-40AF-A323-40F94257DACB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{65A16874-2ED0-460E-A547-5FE2EC3A13A7} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.MozillaPSExecuter (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{27BA317E-7BBD-4EBE-A06A-47F076D9D6F7} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2574231F-9D6F-4B0E-9041-5DD7484564AD} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\MinBHO.ShowBarObj.1 (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\MinBHO.ShowBarObj (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2863E737-DD3F-4280-9AF8-E9E79C16F312} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{35B8D58C-B0CB-46b0-BA64-05B3804E4E86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{C28A0312-C403-417B-A425-A915BC0519CD} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{877F3EAB-4462-44DF-8475-6064EAFD7FBF} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.FunExplorer.1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.FunExplorer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{35B8D58C-B0CB-46B0-BA64-05B3804E4E86} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{396CFC12-932D-496B-A0A8-5D7201E105E1} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{573F4ABB-A1A2-44ED-9BA9-A8DAD40AAC46} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{71E02280-5212-45C3-B174-4D5A35DA254F} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.MozillaNvgtnTrpr (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{60DA826C-B1C6-4358-BDEC-4837CED45470} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.KOPFF (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{6DD76B7B-6423-4DF0-9A07-84A6CAD973A0} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Dwnldr (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{74C22317-5B90-471F-9AD2-FEC049870A16} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Scopes.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Scopes (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7F6CFB6A-9227-4BB8-B941-F2B067E76F51} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiateOrRandomTS (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A16AD1E9-F69A-45AF-9462-B1C286708842} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.IEButtonA (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.HbInfoBand (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{AB0EE208-DF60-4FA7-A617-C4269760033E} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.ReportData.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.ReportData (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{C1089F63-7AFC-4538-B0EB-BEA0F4225A57} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.ScopeExternal.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.ScopeExternal (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{C9CCBB35-D123-4A31-AFFC-9B2933132116} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.IEButton.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.IEButton (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CC7BD6F1-565C-47CE-A5BB-9C935E77B59D} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{02AED140-2B62-4B49-8B3B-179020CC39B9} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{17BF1E05-C0E8-413C-BD1F-A481EEA3B8E9} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CDBFB47B-58A8-4111-BF95-06178DCE326D} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CFC16189-8A92-4A29-A940-60248385F426} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{A1A1E70D-58C5-4349-83B6-BE9682B9874D} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{4BF423F5-1689-4003-8A05-829048C7D869} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\SearchBHO.CSearchBHO.1 (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\SearchBHO.CSearchBHO (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{DEE758B4-C3FB-4A5B-9939-848B9C77A2FB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Stock.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Stock (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{E12AEAB6-7D12-4C07-8E36-5892EFB4DAFB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerImmidiate (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{E2F2C137-A782-4FB5-81AF-086156F5EB0A} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.AsyncReporter (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{F1D06C9F-51F0-4476-BEDE-5DDF91BE304E} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{70EF8B2A-3A34-4913-AAFC-5A2827E0B1B1} (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{AD49CE2B-B922-4E2A-AAD9-C1565855C7BC} (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\KBBar.KBBarBand.1 (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\KBBar.KBBarBand (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{F3A32DF2-7413-4FB1-B575-1AC920A17B76} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.TriggerOnceInDay (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{ACC62306-9A63-4864-BD2F-C8825D2D7EA6} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{21BA420E-161C-413A-B21E-4E42AE1F4226} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00A6FAF1-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA1-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA9-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA9-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EAB-A523-4961-B6BB-170DE4475CCA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF6-072E-44CF-8957-5838F569A31D} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59C7FC09-1C83-4648-B3E6-003D2BBC7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68AF847F-6E91-45dd-9B68-D6A12C30E5D7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170B96C-28D4-4626-8358-27E6CAEEF907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D1A71FA0-FF48-48dd-9B6D-7A13A3E42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDB1968E-EAD6-40fd-8DAE-FF14757F60C7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F138D901-86F0-4383-99B6-9CDD406036DA} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89F88394-3828-4d03-A0CF-8203604C3DA6} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4233F04-1789-483c-A137-731E8F113DD5} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.FunRedirector (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ExplorerBar.FunRedirector.1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\BRNstIE.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\CmndFF.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\mozillaps.dll (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\Pltfrm.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\SkyMedia (Adware.SkyMedia) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\BarDiscover (Adware.BarDiscover) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\sysdriver32.exe (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\systeminfog (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BarDiscover (Adware.BarDiscover) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperReportsSA (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1FB52AB3-5987-45a2-85E0-F3EC30DDDC29}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C5096216-7703-409E-B85A-8A6EE7395128}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\SERVICES32.EXE (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\wxpdrivers (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BARDISCOVER_SERVICE (Adware.BarDiscover) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BarDiscover Service (Adware.BarDiscover) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{77D6DDFA-7834-4541-B2B3-A8B0FB0E3924} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00.1 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> Quarantined and deleted successfully.
Infikované hodnoty v registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Value: {D7BE8ED1-B138-48FD-BB22-9779A39130B1} -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Value: {F334C7B0-8774-4D5B-BD7A-4F448D03A1AE} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Value: {5617ECA9-488D-4BA2-8562-9710B9AB78D2} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B2} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4A02-9D20-520B59A9F9B3} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B3} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{C5428486-50A0-4a02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Value: {C5428486-50A0-4a02-9D20-520B59A9F9B2} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Value: {5617ECA9-488D-4BA2-8562-9710B9AB78D2} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Value: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{D7BE8ED1-B138-48FD-BB22-9779A39130B1} (Redir.GSearch) -> Value: {D7BE8ED1-B138-48FD-BB22-9779A39130B1} -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} (Adware.SkyLab) -> Value: {F334C7B0-8774-4d5b-BD7A-4F448D03A1AE} -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Search\(default) (Adware.Hotbar) -> Value: (default) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\ShopperReports 3.0.307.0 (Adware.HotBar) -> Value: ShopperReports 3.0.307.0 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\SRS_IT_E8790370B576545B33AD95 (Malware.Trace) -> Value: SRS_IT_E8790370B576545B33AD95 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Services32.exe\close (Trojan.Agent) -> Value: close -> Quarantined and deleted successfully.
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
c:\WINDOWS\rpcminer (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\documents and settings\all users\data aplikací\bardiscover (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\res2 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\dwld (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\res1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\bardiscover (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\funwebproducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7} (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults\preferences (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750 (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\documents and settings\all users\nabídka start\Programy\shopperreports (Adware.ShopperReports) -> Quarantined and deleted successfully.
Infikované soubory:
c:\program files\nice prosper\cashbackassistant\cashbackassistantie.dll (Adware.CashBackAssistant) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\shopperreports.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\Pltfrm.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\mozillaps.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\youtubedownloader.org\youtubedownloader\MinBHO.dll (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\npieaddon.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\CmndFF.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\cntntcntr.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\youtubedownloader.org\youtubedownloader\searchbho.dll (Redir.GSearch) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\BRNstIE.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\youtubedownloader.org\youtubedownloader\youtubedownloader.dll (Adware.SkyLab) -> Quarantined and deleted successfully.
c:\WINDOWS\systemup.exe (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\1517081.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\3286515.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\3688270.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\5905476.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\Temp\6000139.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\l1rezerv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\sysdriver32.exe (Trojan.Delf) -> Quarantined and deleted successfully.
c:\WINDOWS\sysdriver32_.exe (Trojan.Delf) -> Quarantined and deleted successfully.
c:\WINDOWS\update.2\svchost.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\WINDOWS\update.1\svchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\services32.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\bitcoinmineropencl.cl (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\bitcoinminercuda_10.cubin (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\bitcoinminercuda_11.cubin (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\bitcoinminercuda_20.cubin (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\cudart32_32_16.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\curllib.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\libeay32.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\libsasl.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\openldap.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\rpcminer-4way.exe (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\rpcminer-cpu.exe (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\rpcminer-cuda.exe (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\rpcminer-opencl.exe (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\WINDOWS\rpcminer\ssleay32.dll (Trojan.BCMiner) -> Quarantined and deleted successfully.
c:\documents and settings\all users\data aplikací\bardiscover\bardiscover145.exe (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\localservice\data aplikací\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\Config.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db\Aliases.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\db\Sites.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\dwld\whitelist.xip (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report\aggr_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\report\send_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\Firefox\cs\res2\whitelist.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\Config.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db\Aliases.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\db\Sites.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\dwld\whitelist.xip (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report\aggr_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\report\send_storage.xml (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\win\data aplikací\shopperreports3\IE\cs\res1\whitelist.dbs (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\bardiscover\bardiscover.exe (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\bardiscover\uninstall.exe (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\aimactivexdll.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\axgifanimator.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\gdiplus.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\hookapint.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\mfc80.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\microsoft.vc80.mfc.manifest (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\MyDll.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\oeactivexdll.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\productinfo.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\riched20smiley.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\skincrafterdll.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stb0.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbAol.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapp.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapp.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbapphelper.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbasst.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbdl.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbIE.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbMsn.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbOL.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbOLEX.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbsvc.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbyahoo8.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\stbyahoo9.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\2154df11395ea0249c4c54961007ff8a.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\362f27667f6d7af7e9d2a6856d6560f6.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\4b6752554c03dd13115a0078de71aa4d.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\default1.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\fb0a3aaf0df9fc6e0a7bc656b80c3973.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading_bg.gif (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Cache\loading_logo.jpg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_screensaver.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_cursor.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_dailyvideo.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_game.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_glitter.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_logo.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_option.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_recipe.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_ringtone.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_search.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley_config.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_smiley_tellafriend.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_wallpaper.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\module_web.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\pixel.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\productinfo.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\profile.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\searchenginelist.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\tbcore.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\toolbarlayout.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\updatecentre.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\updatecentrebk.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\urldynamic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Data\urlstatic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_recipe.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\About.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\component_combobox.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_cursor.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_dailyvideo.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_game.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_glitter.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_logo.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_option.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_ringtone.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_screensaver.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_search.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_smiley.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_wallpaper.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\module_web.mg (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndefault.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtndisplay20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnglitters20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnsmiley20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtntellfd20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink.png (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink18.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Icons\tbbtnwink20.bmp (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin1.skf (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin2.skf (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\DoubleD\desktop smiley toolbar\3.9.0.8660\Skins\myskin3.skf (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared\01D367C3.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\NPCommon.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\Data\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome.manifest (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\install.rdf (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\NPAddOn.jar (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content\NPAddOn.js (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\chrome\content\NPAddOn.xul (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffaddon.dll (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffaddon.xpt (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\internet saving optimizer\2.2.0.2880\FF\components\npffhelpercomponent.js (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome.manifest (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\install.rdf (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\chrome\bardiscover.jar (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\extensions\{ac57fcaf-e6fc-4be9-adc0-d00129c4c1e7}\defaults\preferences\prefs.js (Adware.BarDiscover) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\link.ico (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\shopperreportsuninstaller.exe (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome.manifest (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\install.rdf (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\chrome\firefoxtoolbar.jar (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\shopperreports3\bin\3.0.307.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.xpt (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\Data\eacore.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\Data\urldynamic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\program files\system search dispatcher\1.2.0.750\Data\urlstatic.mx (Adware.DoubleD) -> Quarantined and deleted successfully.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\About Us.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\customer support.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\documents and settings\all users\nabídka start\Programy\shopperreports\shopperreports uninstall instructions.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files\icqtoolbar\toolbaru.dll (Trojan.BHO) -> Quarantined and deleted successfully.
Re: FB Vir :/

-souhlaste s instalací konzole pro zotavení
- ComboFix je třeba spustit pod účtem s právy administrátora
- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano
- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna

- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: FB Vir :/
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\win\BrowserStartPage.dll
c:\documents and settings\win\Dokumenty\99wc.avi
c:\documents and settings\win\InstallHelper.exe
c:\documents and settings\win\RegSetup.exe
c:\documents and settings\win\selfupdate.exe
c:\program files\facemoods.com
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoods.crx
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoods.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoods.png
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoodsApp.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoodsEng.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoodssafe.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\faCEmoodstlbr.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\uninstall.exe
c:\program files\INSTALL.LOG
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\components\FFHst.dll
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\components\FFHst.xpt
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\facemoods.css
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\facemoods.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\facemoods.xul
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\fcmdDef.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\facemoods.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\fb.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\help_16.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\home.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\logo.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\moodsIcon.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\pref.jpg
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\privecy_16_hot.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\stripicons.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\tellafriend.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\Thumbs.db
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\vssver.scc
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\instlgc.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\Loader.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\mtrprt.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\newTabLgc.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\preferences\preferences.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\preferences\preferences.xul
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\preferences\vssver.scc
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\prefman.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\script-compiler.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\Thumbs.db
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\utils.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\vssver.scc
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\xmlhttprequester.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\xpiInstallLgc.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\defaults\preferences\instlPref.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\defaults\preferences\vssver.scc
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\chrome.manifest
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\install.rdf
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\vssver.scc
c:\program files\Nice Prosper
c:\program files\Nice Prosper\CashBackAssistant\cfcpxlog.mx
c:\program files\Nice Prosper\CashBackAssistant\MatchingData.zd5
c:\program files\Nice Prosper\CashBackAssistant\unins000.dat
c:\program files\Nice Prosper\CashBackAssistant\unins000.exe
c:\program files\Uninstall.exe
c:\windows\btc_client_iplist.txt
c:\windows\Downloaded Program Files\f3initialsetup1.0.1.1.inf
c:\windows\ehome\medctrro.exe
c:\windows\front_ip_list.txt
c:\windows\geoiplist
c:\windows\geoiplist.rar
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\loader2.exe_ok
c:\windows\phoenix
c:\windows\phoenix.rar
c:\windows\phoenix\kernels\phatk\__init__.py
c:\windows\phoenix\kernels\phatk\__init__.pyc
c:\windows\phoenix\kernels\phatk\462e8334ce7a594f9a23f50439ef75b8.elf
c:\windows\phoenix\kernels\phatk\BFIPatcher.py
c:\windows\phoenix\kernels\phatk\BFIPatcher.pyc
c:\windows\phoenix\kernels\phatk\kernel.cl
c:\windows\phoenix\kernels\poclbm\__init__.py
c:\windows\phoenix\kernels\poclbm\__init__.pyc
c:\windows\phoenix\kernels\poclbm\7487ec600b15cdf0400e7f4a4f7f3f02.elf
c:\windows\phoenix\kernels\poclbm\BFIPatcher.py
c:\windows\phoenix\kernels\poclbm\BFIPatcher.pyc
c:\windows\phoenix\kernels\poclbm\e0a8419077f973ae0d039c34f15031b9.elf
c:\windows\phoenix\kernels\poclbm\kernel.cl
c:\windows\phoenix\phoenix.exe
c:\windows\proc_list1.log
c:\windows\rpcminer.rar
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\system32\Ijl11.dll
c:\windows\system32\SCLabel.ocx
c:\windows\system32\SysInfo.dll
c:\windows\system32\vbpng1.dll
c:\windows\system32\WinSys.exe
c:\windows\ufa.rar
c:\windows\update.1
c:\windows\update.2
c:\windows\update.5.0
c:\windows\update.7.1
c:\windows\update.7.1\svchostdriver.exe
c:\windows\winlog-dirs.txt
c:\windows\winlog-ids.txt
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_DDSERVICE
-------\Legacy_NPF
-------\Service_ddservice
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-07-24 do 2011-08-24 )))))))))))))))))))))))))))))))
.
.
2012-02-09 01:14 . 2012-02-09 01:14 -------- d-s---w- c:\documents and settings\win\IECompatCache
2012-02-07 12:40 . 2012-02-07 12:40 434688 -c----w- c:\windows\system32\ss2uinst.exe
2012-02-07 12:40 . 2010-11-02 21:34 -------- d-----w- c:\program files\Audio Flash
2012-02-06 21:57 . 2012-02-06 21:57 -------- d-s---w- c:\documents and settings\NetworkService\IETldCache
2012-02-06 00:26 . 2012-02-06 00:26 -------- d-s---w- c:\documents and settings\win\PrivacIE
2012-02-06 00:24 . 2012-02-06 00:24 -------- d-s---w- c:\documents and settings\win\IETldCache
2012-02-06 00:22 . 2012-02-06 00:22 -------- d-----w- c:\program files\Seznam.cz
2012-02-06 00:22 . 2009-04-25 22:22 -------- d-----w- c:\windows\msdownld.tmp
2012-02-02 12:26 . 2012-02-02 12:26 -------- d-----w- c:\documents and settings\win\Local Settings\Data aplikací\TechSmith
2012-02-02 12:19 . 2006-09-22 04:00 102400 ------w- c:\windows\system32\tsccvid.dll
2012-02-02 12:19 . 2012-02-02 12:19 -------- d-----w- c:\windows\system32\QuickTime
2012-02-01 16:22 . 2012-02-01 16:22 -------- d-----w- c:\program files\ScreenMates
2012-01-24 17:35 . 2009-10-30 18:24 -------- d-----w- c:\program files\Steam
2012-01-10 12:53 . 2012-01-10 12:53 -------- d-----w- c:\documents and settings\LocalService\Data aplikací\Ahead
2012-01-08 12:08 . 2012-01-08 12:08 -------- d-----w- c:\documents and settings\win\Local Settings\Data aplikací\Ascaron Entertainment
2012-01-08 12:05 . 2012-01-08 12:05 -------- d-----w- c:\program files\cdv USA
2012-01-08 11:39 . 2012-01-08 11:39 -------- d-----w- c:\documents and settings\win\Data aplikací\InstallShield Installation Information
2012-01-08 11:35 . 2012-01-08 11:35 -------- d-----w- c:\windows\system32\AGEIA
2012-01-08 11:35 . 2012-01-08 12:04 -------- d-----w- c:\program files\AGEIA Technologies
2012-01-08 11:35 . 2012-01-08 12:04 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2012-01-08 10:33 . 2012-01-08 10:33 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Trymedia
2012-01-07 20:55 . 2012-01-07 20:55 -------- d-----w- c:\program files\Ascaron Entertainment
2012-01-07 19:57 . 2012-01-07 19:57 -------- d-----r- c:\documents and settings\win\Data aplikací\SecuROM
2012-01-07 19:56 . 2007-03-05 12:42 15128 -c----w- c:\windows\system32\x3daudio1_1.dll
2012-01-07 19:56 . 2006-12-08 12:02 251672 -c----w- c:\windows\system32\xactengine2_5.dll
2012-01-07 19:56 . 2006-11-29 13:06 3426072 -c----w- c:\windows\system32\d3dx9_32.dll
2012-01-07 15:52 . 2010-11-02 21:34 -------- d-----w- c:\program files\MOBILedit!
2011-12-28 17:49 . 2011-12-28 17:49 -------- d-----w- c:\program files\Gameforge4D
2011-12-24 17:39 . 2011-12-24 17:39 -------- d-----w- c:\documents and settings\win\Data aplikací\Internet Saving Optimizer
2011-12-24 17:05 . 2011-12-24 17:39 -------- dc----w- c:\documents and settings\All Users\Data aplikací\{A716538F-A52D-4381-B66E-3DFAABA30BCA}
2011-12-24 17:05 . 2009-09-03 13:43 -------- d-----w- c:\documents and settings\win\Local Settings\Data aplikací\DoubleD
2011-11-29 23:18 . 2011-08-13 14:03 -------- d-----w- c:\documents and settings\win\Data aplikací\uTorrent
2011-11-26 16:22 . 2011-07-28 14:22 -------- d-----w- c:\windows\Logs
2011-11-26 16:22 . 2011-11-26 16:22 -------- d-----w- c:\program files\Utherverse Digital Inc
2011-11-14 02:56 . 2011-11-14 02:56 -------- d-----w- c:\documents and settings\win\Data aplikací\AdobeUM
2011-11-10 20:49 . 2011-11-10 20:49 -------- d-----w- c:\program files\Common Files\DirectX
2011-11-10 20:43 . 2011-11-10 20:43 -------- d-----w- c:\program files\Aspyr Media, Inc
2011-11-10 19:58 . 2011-11-10 19:58 -------- d-----w- c:\program files\Globar Star Software
2011-10-11 22:46 . 2011-11-22 17:16 -------- d-----w- c:\program files\ICQToolbar
2011-10-11 22:46 . 2012-01-12 12:51 -------- d-----w- c:\program files\ICQ6.501_18_14
2011-10-11 22:32 . 2010-04-26 20:50 -------- d-----w- c:\documents and settings\All Users\Data aplikací\SwiftKit
2011-10-11 22:32 . 2011-08-17 07:29 -------- d-----w- c:\program files\SwiftKit
2011-10-09 18:38 . 2010-07-05 19:00 -------- d-----w- c:\program files\ICQ6Toolbar
2011-10-09 18:38 . 2010-07-05 18:59 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ICQ
2011-10-09 18:36 . 2011-10-09 18:40 -------- d-----w- c:\program files\ICQ623_46_00
2011-09-17 23:41 . 2011-09-17 23:41 -------- d-----w- c:\documents and settings\win\Data aplikací\CyberLink
2011-09-15 02:01 . 2010-06-14 07:43 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2011-09-14 12:30 . 2011-07-15 13:29 456320 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2011-08-22 23:36 . 2011-08-22 23:36 -------- d-----w- c:\documents and settings\win\Data aplikací\Malwarebytes
2011-08-22 23:35 . 2010-11-29 15:42 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-08-22 23:35 . 2011-08-22 23:35 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-08-22 23:35 . 2011-08-23 22:18 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-08-22 23:35 . 2010-11-29 15:42 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-08-22 00:09 . 2011-08-22 00:13 -------- d-----w- C:\rsit
2011-08-22 00:09 . 2011-08-22 00:13 -------- d-----w- c:\program files\trend micro
2011-08-21 23:31 . 2011-08-21 23:37 -------- d-----w- c:\program files\McAfee
2011-08-21 23:05 . 2011-08-21 23:05 -------- d-----w- c:\windows\update.tray-9-0
2011-08-21 23:05 . 2011-08-21 23:05 -------- d-----w- c:\windows\update.tray-9-0-lnk
2011-08-21 22:59 . 2011-08-21 22:59 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Data aplikací\DVDVideoSoftTB
2011-08-21 22:59 . 2011-08-21 22:59 -------- d-----w- c:\documents and settings\LocalService\Data aplikací\facemoods.com
2011-08-21 22:59 . 2011-08-21 22:59 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Data aplikací\ConduitEngine
2011-08-21 22:58 . 2011-08-21 22:58 -------- d-----r- c:\documents and settings\LocalService\Oblíbené položky
2011-08-21 22:55 . 2011-08-21 22:55 -------- d-----w- c:\program files\Common Files\Network Associates
2011-08-21 22:54 . 2011-08-21 22:54 -------- d-----w- c:\program files\McAfee VirusScan Home Edition 7.02 Demo 30
2011-08-21 20:32 . 2011-08-21 20:33 -------- d-----w- c:\documents and settings\Administrator
2011-08-21 20:24 . 2011-08-21 20:24 -------- d-----w- c:\windows\update.tray-2-0
2011-08-21 20:24 . 2011-08-21 20:24 -------- d-----w- c:\windows\update.tray-2-0-lnk
2011-08-21 10:28 . 2011-08-21 10:28 -------- d-----w- C:\Inetpub
2011-08-20 13:45 . 2011-08-20 13:45 -------- d-----w- c:\documents and settings\LocalService\Data aplikací\TuneUp Software
2011-08-19 23:10 . 2011-08-19 23:10 -------- d-----w- c:\windows\update.tray-12-0
2011-08-19 23:10 . 2011-08-19 23:10 -------- d-----w- c:\windows\update.tray-12-0-lnk
2011-08-19 23:05 . 2011-08-19 23:05 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Common Files
2011-08-19 23:05 . 2011-08-19 23:05 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVG Security Toolbar
2011-08-19 23:02 . 2011-08-19 23:02 -------- d-----w- c:\windows\system32\drivers\AVG
2011-08-19 22:46 . 2011-08-19 23:43 -------- d-----w- c:\documents and settings\All Users\Data aplikací\MFAData
2011-08-19 22:24 . 2011-08-19 22:24 -------- d-----w- c:\program files\AMD APP
2011-08-19 22:24 . 2011-08-19 22:24 -------- d-----w- c:\program files\ATI
2011-08-19 22:14 . 2011-08-19 22:14 -------- d-----w- C:\ATI
2011-08-19 22:05 . 2011-08-19 22:05 -------- d-----w- c:\windows\ufa
2011-08-19 21:45 . 2011-07-04 11:36 441176 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-08-19 21:45 . 2011-07-04 11:43 40112 ----a-w- c:\windows\avastSS.scr
2011-08-19 21:07 . 2011-08-19 21:07 -------- d-----w- c:\documents and settings\NetworkService\Nabídka Start
2011-08-19 20:58 . 2011-08-19 22:05 246272 ----a-w- c:\windows\unrar.exe
2011-08-19 20:34 . 2011-08-21 20:25 -------- d-----w- c:\windows\av_ico
2011-08-19 20:31 . 2011-08-19 20:31 -------- d-----w- c:\windows\update.tray-7-0
2011-08-19 20:31 . 2011-08-19 20:31 -------- d-----w- c:\windows\update.tray-7-0-lnk
2011-08-19 20:22 . 2011-08-19 20:22 -------- d-----w- c:\documents and settings\LocalService\Nabídka Start
2011-08-19 13:01 . 2011-08-19 13:01 16856 ----a-w- c:\program files\Mozilla Firefox\plugin-container.exe
2011-08-19 13:01 . 2011-08-19 13:01 719832 ----a-w- c:\program files\Mozilla Firefox\mozcpp19.dll
2011-08-13 13:53 . 2011-08-13 13:53 -------- d-----w- c:\documents and settings\LocalService\Plocha
2011-08-13 13:48 . 2011-07-20 08:35 29504 ------w- c:\windows\system32\uxtuneup.dll
2011-08-13 13:44 . 2011-07-20 08:41 31552 ------w- c:\windows\system32\TURegOpt.exe
2011-08-13 13:43 . 2011-08-13 13:43 -------- d-----w- c:\documents and settings\win\Data aplikací\TuneUp Software
2011-08-13 13:43 . 2011-08-13 13:48 -------- d-----w- c:\program files\TuneUp Utilities 2011
2011-08-13 13:43 . 2011-08-13 13:47 -------- d-----w- c:\documents and settings\All Users\Data aplikací\TuneUp Software
2011-08-13 13:42 . 2011-08-13 13:42 -------- d-s---w- c:\documents and settings\All Users\Data aplikací\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2011-08-10 22:59 . 2011-06-24 14:10 139656 -c----w- c:\windows\system32\dllcache\rdpwd.sys
2011-08-10 22:59 . 2011-07-08 14:02 10496 -c----w- c:\windows\system32\dllcache\ndistapi.sys
2011-07-28 15:04 . 2011-07-28 15:16 -------- d-----w- c:\documents and settings\win\Data aplikací\EpicBot
2011-07-28 14:00 . 2011-07-28 14:00 -------- d-----w- c:\windows\system32\AI_RecycleBin
2011-07-28 13:59 . 2011-07-28 14:00 -------- d-----w- c:\documents and settings\win\Data aplikací\com.w3i.fliptoast
2011-07-28 13:59 . 2011-07-28 13:59 -------- d-----w- c:\program files\Fliptoast
2011-07-28 13:59 . 2011-07-28 13:59 -------- d-----w- c:\documents and settings\win\Data aplikací\W3i, LLC
2011-07-28 13:57 . 2011-07-28 13:57 -------- d-----w- c:\program files\EpicBot
2011-07-28 13:56 . 2011-07-28 13:56 -------- d-----w- c:\program files\Free Offers from Freeze.com
2011-07-28 13:56 . 2011-08-20 18:09 -------- d-----w- c:\program files\Zrychleni Pocitace
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-08 12:08 . 2008-10-18 07:55 107888 -c----w- c:\windows\system32\CmdLineExt.dll
2011-07-15 13:29 . 2005-01-19 05:26 456320 ------w- c:\windows\system32\drivers\mrxsmb.sys
2011-07-08 14:02 . 2001-10-25 14:00 10496 ------w- c:\windows\system32\drivers\ndistapi.sys
2011-07-04 11:43 . 2008-10-27 18:06 199304 ----a-w- c:\windows\system32\aswBoot.exe
2011-07-04 11:36 . 2008-10-27 18:06 309848 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-07-04 11:35 . 2008-10-27 18:07 43608 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-07-04 11:35 . 2008-10-27 18:06 102616 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2011-07-04 11:35 . 2008-10-27 18:06 96344 ----a-w- c:\windows\system32\drivers\aswmon.sys
2011-07-04 11:32 . 2008-10-27 18:07 25432 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-07-04 11:32 . 2008-10-27 18:07 30808 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2011-07-04 11:32 . 2008-10-27 18:06 19544 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-06-24 14:10 . 2006-04-14 20:42 139656 ------w- c:\windows\system32\drivers\rdpwd.sys
2011-06-21 18:18 . 2004-09-29 18:49 668160 ------w- c:\windows\system32\wininet.dll
2011-06-21 18:18 . 2004-08-03 20:59 61952 ------w- c:\windows\system32\tdc.ocx
2011-06-21 18:18 . 2009-04-25 22:19 81920 ------w- c:\windows\system32\ieencode.dll
2011-06-21 18:16 . 2004-08-17 13:44 370176 ------w- c:\windows\system32\html.iec
2011-06-20 17:44 . 2005-03-02 19:18 293376 ------w- c:\windows\system32\winsrv.dll
2011-06-06 11:35 . 2005-03-02 19:08 1858944 ------w- c:\windows\system32\win32k.sys
2011-06-02 13:52 . 2009-09-23 09:41 25280 ------w- c:\windows\system32\drivers\hamachi.sys
2008-05-28 08:36 . 2008-09-21 16:54 87400 ----a-w- c:\program files\UnHyCam2.exe
2008-05-28 08:36 . 2008-09-21 16:54 882000 -c--a-w- c:\program files\HyCam2.exe
2007-10-22 14:09 . 2008-09-21 16:54 106496 -c--a-w- c:\program files\CamRes2.dll
2007-08-11 17:15 . 2008-09-21 16:54 57344 -c--a-w- c:\program files\MClick2.dll
2009-05-01 21:02 . 2009-05-01 21:02 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-05-01 21:02 . 2009-05-01 21:02 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2010-10-18 11:26 3908192 ----a-w- c:\program files\ConduitEngine\ConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
2011-01-17 14:54 175912 ----a-w- c:\program files\DVDVideoSoftTB\prxtbDVD2.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD2.dll" [2011-01-17 175912]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\ConduitEngine.dll" [2010-10-18 3908192]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{872B5B88-9DB5-4310-BDD0-AC189557E5F5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD2.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NTServiceManager"="c:\program files\YoutubeDownloader.org\YoutubeDownloader\NTServiceManager.exe" [2011-04-13 409600]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-10-11 14940040]
"McAfee.InstantUpdate.Monitor"="c:\program files\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe" [2003-06-03 122948]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"36X Raid Configurer"="c:\windows\system32\xRaidSetup.exe" [2007-08-29 1966080]
"Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2010-03-12 49208]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"USBToolTip"="c:\progra~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe" [2007-02-20 199752]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\win\Nabˇdka Start\Programy\Po spuçtŘnˇ\
hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2011-6-2 624416]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~1\AVG\AVG10\avgchsvx.exe /sync\0c:\progra~1\AVG\AVG10\avgrsx.exe /sync /restart
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Reader Speed Launch.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
2005-05-03 10:43 69632 ------r- c:\windows\Alcmtr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2009-04-23 13:51 691656 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series]
2007-12-13 06:00 188928 -c----w- c:\windows\system32\spool\drivers\w32x86\3\E_FATIEFE.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series (kopie 1)]
2007-12-13 06:00 188928 -c----w- c:\windows\system32\spool\drivers\w32x86\3\E_FATIEFE.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FocoLink]
2011-05-10 10:42 1817600 ----a-w- c:\program files\YoutubeDownloader.org\YoutubeDownloader\Foco.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fraps]
2009-11-07 22:26 2377648 ----a-w- c:\fraps\fraps.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GEST]
2007-12-14 10:46 236040 ----a-w- c:\program files\GIGABYTE\GEST\run.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
2005-11-28 05:52 77824 ------w- c:\windows\system32\hkcmd.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
2005-11-28 05:55 118784 ------w- c:\windows\system32\igfxpers.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
2005-11-28 05:55 98304 ------w- c:\windows\system32\igfxtray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\JMB36X IDE Setup]
2007-03-20 06:36 36864 ------r- c:\windows\RaidTool\xInsIDE.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2006-01-12 16:40 155648 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2007-12-05 00:41 8523776 ------w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2007-12-05 00:41 81920 ------w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2007-12-05 00:41 1626112 ------w- c:\windows\system32\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2007-09-19 10:14 16844800 ------r- c:\windows\RTHDCPL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SW20]
2006-02-22 06:46 208896 ------w- c:\windows\system32\sw20.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SW24]
2006-02-22 06:46 69632 ------w- c:\windows\system32\sw24.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"tray_ico1"=
"tray_ico"=
"tray_ico2"=
"tray_ico3"=
"tray_ico4"=
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallOverride"=dword:00000001
"DisableThumbnailCache"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"d:\\LocMt2\\Locmt2.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Documents and Settings\\win\\temp\\TeamViewer\\Version5\\TeamViewer.exe"=
"d:\\WOW\\Launcher.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=
"d:\\hl2\\Half-Life\\czero.exe"=
"c:\\Documents and Settings\\win\\temp\\TeamViewer\\Version4\\TeamViewer.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"d:\\Warcraft III\\war3.exe"=
"c:\\WINDOWS\\system32\\java.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\WINDOWS\\update.tray-7-0\\svchost.exe"=
"c:\\WINDOWS\\update.tray-7-0-lnk\\svchost.exe"=
"c:\\WINDOWS\\update.tray-2-0-lnk\\svchost.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"59070:TCP"= 59070:TCP:Pando Media Booster
"59070:UDP"= 59070:UDP:Pando Media Booster
"22970:TCP"= 22970:TCP:BitComet 22970 TCP
"22970:UDP"= 22970:UDP:BitComet 22970 UDP
.
R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [22.2.2011 8:13 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [16.3.2011 16:03 32592]
R0 iteraid;ITERAID_Service_Install;c:\windows\system32\drivers\iteraid.sys [14.4.2006 22:58 25067]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [14.11.2009 14:47 721904]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [7.1.2011 6:41 248656]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [5.4.2011 0:59 297168]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [21.12.2010 15:04 115008]
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [21.12.2010 13:47 94872]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe [20.7.2011 10:38 1526592]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [12.7.2010 4:33 30432]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys [29.11.2010 19:27 10064]
S2 AvSynMgr;AVSync Manager;"c:\program files\McAfee\McAfee VirusScan\Avsynmgr.exe" --> c:\program files\McAfee\McAfee VirusScan\Avsynmgr.exe [?]
S2 ekrn;ESET Service;"c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe" --> c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [?]
S2 gupdate1ca1a1437e2ff0;Služba Google Update (gupdate1ca1a1437e2ff0);c:\program files\Google\Update\GoogleUpdate.exe [11.8.2009 1:40 133104]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [12.7.2010 4:33 30432]
S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [14.4.2011 21:28 134480]
S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [10.2.2011 7:53 24144]
S3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [10.2.2011 7:53 27216]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [11.8.2009 1:40 133104]
S3 McAfee ScanAndRepair Svc;McAfee ScanAndRepair Svc;c:\program files\McAfeeScanAndRepair\McAfeeScanRepairSvc.exe [6.4.2011 16:40 694864]
S3 NaiFiltr;NaiFiltr;c:\windows\system32\drivers\NaiFiltr.sys [17.8.2001 11:22 23296]
S3 teamviewervpn;TeamViewer VPN Adapter;c:\windows\system32\drivers\teamviewervpn.sys [25.1.2008 11:12 25088]
S4 GEST Service;GEST Service for program management.;c:\program files\GIGABYTE\GEST\GSvr.exe [12.6.2008 14:52 47624]
S4 UltiDev Cassini Web Server for ASP.NET 2.0;UltiDev Cassini Web Server for ASP.NET 2.0;c:\program files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe [8.2.2007 0:06 49152]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
.
2011-08-23 c:\windows\Tasks\At1.job
- c:\program files\HP\HP Photosmart Plus B210 series\Bin\HPCustPartic.exe [2010-06-14 14:07]
.
2011-08-23 c:\windows\Tasks\At2.job
- c:\program files\HP\HP Photosmart Plus B210 series\Bin\HPCustPartic.exe [2010-06-14 14:07]
.
2011-08-23 c:\windows\Tasks\At3.job
- c:\program files\HP\HP Photosmart Plus B210 series\Bin\HPCustPartic.exe [2010-06-14 14:07]
.
2011-08-23 c:\windows\Tasks\At4.job
- c:\program files\HP\HP Photosmart Plus B210 series\Bin\HPCustPartic.exe [2010-06-14 14:07]
.
2011-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-10 23:40]
.
2011-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore1ca2c9bba0d80fc.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-10 23:40]
.
2011-08-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-10 23:40]
.
.
------- Doplňkový sken -------
.
uStart Page =
uSearchMigratedDefaultUrl = hxxp://www.mywebsearch.com/jsp/cfg_redir2.jsp? ... earchTerms}
uDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = hxxp://www.yahoo.com
uInternet Settings,ProxyOverride = local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: {{0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - c:\program files\Seznam.cz\listicka.dll
IE: {{0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - {E601996F-E400-41CA-804B-CD6373A7EEE2} -
IE: {{20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - c:\windows\system32\mscoree.DLL
TCP: DhcpNameServer = 217.112.162.34 217.112.161.110
TCP: Interfaces\{7519E748-2514-43C3-B154-9D54B3DE031E}: NameServer = 212.111.0.10
FF - ProfilePath - c:\documents and settings\win\Data aplikací\Mozilla\Firefox\Profiles\l19s6ece.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - c:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
FF - Ext: Conduit Engine : engine@conduit.com - %profile%\extensions\engine@conduit.com
FF - Ext: Illimitux: illimitux@illimitux.net - %profile%\extensions\illimitux@illimitux.net
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Get Styles: {6236BA26-C117-4007-928C-DE0716C7FA80} - %profile%\extensions\{6236BA26-C117-4007-928C-DE0716C7FA80}
FF - Ext: FBFan: {6236BA26-C117-4007-928C-DE0716C7FA99} - %profile%\extensions\{6236BA26-C117-4007-928C-DE0716C7FA99}
FF - Ext: U Flv: {7645f4b1-1f19-13dd-2d6b-0200600c2a56} - %profile%\extensions\{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
FF - Ext: {7645f4b1-1f19-13dd-2d6b-0200600c2a56}: {7645f4b1-1f19-13dd-2d6b-0200600c2a56} - %profile%\extensions\{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - %profile%\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: DVDVideoSoftTB Toolbar: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - %profile%\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
FF - Ext: BitTorrentBar Community Toolbar: {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - %profile%\extensions\{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
FF - Ext: kikin plugin: {AA994882-F391-4d2e-806F-8908DA4814ED} - %profile%\extensions\{AA994882-F391-4d2e-806F-8908DA4814ED}
FF - Ext: DVDVideoSoft Menu: {ACAA314B-EEBA-48e4-AD47-84E31C44796C} - %profile%\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
FF - Ext: uTorrentBar Community Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - %profile%\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
BHO-{511131f1-4629-4254-a85f-ed7b6d75dd3c} - (no file)
Toolbar-{511131f1-4629-4254-a85f-ed7b6d75dd3c} - (no file)
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
WebBrowser-{511131F1-4629-4254-A85F-ED7B6D75DD3C} - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
HKLM-Run-McAfee Guardian - c:\program files\McAfee\McAfee Shared Components\Guardian\CMGrdian.exe
HKLM-Run-tray_ico - (no file)
HKLM-Run-tray_ico2 - (no file)
HKLM-Run-tray_ico3 - (no file)
HKLM-Run-tray_ico4 - (no file)
Notify-AtiExtEvent - (no file)
MSConfigStartUp-l1rezerv - c:\windows\l1rezerv.exe
MSConfigStartUp-WeatherDPA - c:\program files\Hotbar\bin\11.0.120.0\Weather.exe
AddRemove-facemoods - c:\program files\facemoods.com\facemoods\1.3.62.1\uninstall.exe
AddRemove-{091ED936-E610-497D-B651-0E4BF73CE598}_is1 - c:\program files\Nice Prosper\CashBackAssistant\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-08-24 09:57
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1390067357-1644491937-839522115-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:ce,ee,6b,fc,b9,2c,d5,a5,a7,0c,d4,24,40,af,df,e2,84,98,fe,f0,4e,a1,0e,
8b,fa,72,63,5c,a8,06,40,33,40,0d,9e,dc,fa,ec,d7,55,8a,9a,a9,c7,3c,d7,c3,7d,\
"??"=hex:7d,40,b4,0b,20,07,93,17,3e,24,13,53,99,23,20,48
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(1868)
c:\windows\system32\msi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Google\Update\1.3.21.65\GoogleCrashHandler.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\windows\system32\wdfmgr.exe
c:\windows\system32\UTSCSI.EXE
c:\windows\system32\wbem\wmiapsrv.exe
c:\program files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
c:\program files\Skype\Plugin Manager\skypePM.exe
.
**************************************************************************
.
Celkový čas: 2011-08-24 10:01:55 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-08-24 08:01
.
Před spuštěním: Volných bajtů: 48 471 572 480
Po spuštění: Volných bajtů: 48 421 703 680
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=AlwaysOff /fastdetect /TUTag=IEK6NA noguiboot
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional (TuneUp Backup)" /noexecute=AlwaysOff /fastdetect /TUTag=IEK6NA-BAK
.
- - End Of File - - DE503242648275ED7C138E7B51F54B83
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\win\BrowserStartPage.dll
c:\documents and settings\win\Dokumenty\99wc.avi
c:\documents and settings\win\InstallHelper.exe
c:\documents and settings\win\RegSetup.exe
c:\documents and settings\win\selfupdate.exe
c:\program files\facemoods.com
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoods.crx
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoods.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoods.png
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoodsApp.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoodsEng.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\facemoodssafe.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\faCEmoodstlbr.dll
c:\program files\facemoods.com\facemoods\1.3.62.1\uninstall.exe
c:\program files\INSTALL.LOG
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\components\FFHst.dll
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\components\FFHst.xpt
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\facemoods.css
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\facemoods.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\facemoods.xul
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\fcmdDef.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\facemoods.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\fb.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\help_16.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\home.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\logo.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\moodsIcon.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\pref.jpg
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\privecy_16_hot.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\stripicons.png
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\tellafriend.gif
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\Thumbs.db
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\images\vssver.scc
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\instlgc.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\Loader.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\mtrprt.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\newTabLgc.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\preferences\preferences.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\preferences\preferences.xul
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\preferences\vssver.scc
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\prefman.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\script-compiler.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\Thumbs.db
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\utils.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\vssver.scc
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\xmlhttprequester.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\content\xpiInstallLgc.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\defaults\preferences\instlPref.js
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\defaults\preferences\vssver.scc
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\chrome.manifest
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\install.rdf
c:\program files\Mozilla Firefox\extensions\ffxtlbr@Facemoods.com\vssver.scc
c:\program files\Nice Prosper
c:\program files\Nice Prosper\CashBackAssistant\cfcpxlog.mx
c:\program files\Nice Prosper\CashBackAssistant\MatchingData.zd5
c:\program files\Nice Prosper\CashBackAssistant\unins000.dat
c:\program files\Nice Prosper\CashBackAssistant\unins000.exe
c:\program files\Uninstall.exe
c:\windows\btc_client_iplist.txt
c:\windows\Downloaded Program Files\f3initialsetup1.0.1.1.inf
c:\windows\ehome\medctrro.exe
c:\windows\front_ip_list.txt
c:\windows\geoiplist
c:\windows\geoiplist.rar
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\loader2.exe_ok
c:\windows\phoenix
c:\windows\phoenix.rar
c:\windows\phoenix\kernels\phatk\__init__.py
c:\windows\phoenix\kernels\phatk\__init__.pyc
c:\windows\phoenix\kernels\phatk\462e8334ce7a594f9a23f50439ef75b8.elf
c:\windows\phoenix\kernels\phatk\BFIPatcher.py
c:\windows\phoenix\kernels\phatk\BFIPatcher.pyc
c:\windows\phoenix\kernels\phatk\kernel.cl
c:\windows\phoenix\kernels\poclbm\__init__.py
c:\windows\phoenix\kernels\poclbm\__init__.pyc
c:\windows\phoenix\kernels\poclbm\7487ec600b15cdf0400e7f4a4f7f3f02.elf
c:\windows\phoenix\kernels\poclbm\BFIPatcher.py
c:\windows\phoenix\kernels\poclbm\BFIPatcher.pyc
c:\windows\phoenix\kernels\poclbm\e0a8419077f973ae0d039c34f15031b9.elf
c:\windows\phoenix\kernels\poclbm\kernel.cl
c:\windows\phoenix\phoenix.exe
c:\windows\proc_list1.log
c:\windows\rpcminer.rar
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\system32\Ijl11.dll
c:\windows\system32\SCLabel.ocx
c:\windows\system32\SysInfo.dll
c:\windows\system32\vbpng1.dll
c:\windows\system32\WinSys.exe
c:\windows\ufa.rar
c:\windows\update.1
c:\windows\update.2
c:\windows\update.5.0
c:\windows\update.7.1
c:\windows\update.7.1\svchostdriver.exe
c:\windows\winlog-dirs.txt
c:\windows\winlog-ids.txt
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_DDSERVICE
-------\Legacy_NPF
-------\Service_ddservice
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-07-24 do 2011-08-24 )))))))))))))))))))))))))))))))
.
.
2012-02-09 01:14 . 2012-02-09 01:14 -------- d-s---w- c:\documents and settings\win\IECompatCache
2012-02-07 12:40 . 2012-02-07 12:40 434688 -c----w- c:\windows\system32\ss2uinst.exe
2012-02-07 12:40 . 2010-11-02 21:34 -------- d-----w- c:\program files\Audio Flash
2012-02-06 21:57 . 2012-02-06 21:57 -------- d-s---w- c:\documents and settings\NetworkService\IETldCache
2012-02-06 00:26 . 2012-02-06 00:26 -------- d-s---w- c:\documents and settings\win\PrivacIE
2012-02-06 00:24 . 2012-02-06 00:24 -------- d-s---w- c:\documents and settings\win\IETldCache
2012-02-06 00:22 . 2012-02-06 00:22 -------- d-----w- c:\program files\Seznam.cz
2012-02-06 00:22 . 2009-04-25 22:22 -------- d-----w- c:\windows\msdownld.tmp
2012-02-02 12:26 . 2012-02-02 12:26 -------- d-----w- c:\documents and settings\win\Local Settings\Data aplikací\TechSmith
2012-02-02 12:19 . 2006-09-22 04:00 102400 ------w- c:\windows\system32\tsccvid.dll
2012-02-02 12:19 . 2012-02-02 12:19 -------- d-----w- c:\windows\system32\QuickTime
2012-02-01 16:22 . 2012-02-01 16:22 -------- d-----w- c:\program files\ScreenMates
2012-01-24 17:35 . 2009-10-30 18:24 -------- d-----w- c:\program files\Steam
2012-01-10 12:53 . 2012-01-10 12:53 -------- d-----w- c:\documents and settings\LocalService\Data aplikací\Ahead
2012-01-08 12:08 . 2012-01-08 12:08 -------- d-----w- c:\documents and settings\win\Local Settings\Data aplikací\Ascaron Entertainment
2012-01-08 12:05 . 2012-01-08 12:05 -------- d-----w- c:\program files\cdv USA
2012-01-08 11:39 . 2012-01-08 11:39 -------- d-----w- c:\documents and settings\win\Data aplikací\InstallShield Installation Information
2012-01-08 11:35 . 2012-01-08 11:35 -------- d-----w- c:\windows\system32\AGEIA
2012-01-08 11:35 . 2012-01-08 12:04 -------- d-----w- c:\program files\AGEIA Technologies
2012-01-08 11:35 . 2012-01-08 12:04 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2012-01-08 10:33 . 2012-01-08 10:33 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Trymedia
2012-01-07 20:55 . 2012-01-07 20:55 -------- d-----w- c:\program files\Ascaron Entertainment
2012-01-07 19:57 . 2012-01-07 19:57 -------- d-----r- c:\documents and settings\win\Data aplikací\SecuROM
2012-01-07 19:56 . 2007-03-05 12:42 15128 -c----w- c:\windows\system32\x3daudio1_1.dll
2012-01-07 19:56 . 2006-12-08 12:02 251672 -c----w- c:\windows\system32\xactengine2_5.dll
2012-01-07 19:56 . 2006-11-29 13:06 3426072 -c----w- c:\windows\system32\d3dx9_32.dll
2012-01-07 15:52 . 2010-11-02 21:34 -------- d-----w- c:\program files\MOBILedit!
2011-12-28 17:49 . 2011-12-28 17:49 -------- d-----w- c:\program files\Gameforge4D
2011-12-24 17:39 . 2011-12-24 17:39 -------- d-----w- c:\documents and settings\win\Data aplikací\Internet Saving Optimizer
2011-12-24 17:05 . 2011-12-24 17:39 -------- dc----w- c:\documents and settings\All Users\Data aplikací\{A716538F-A52D-4381-B66E-3DFAABA30BCA}
2011-12-24 17:05 . 2009-09-03 13:43 -------- d-----w- c:\documents and settings\win\Local Settings\Data aplikací\DoubleD
2011-11-29 23:18 . 2011-08-13 14:03 -------- d-----w- c:\documents and settings\win\Data aplikací\uTorrent
2011-11-26 16:22 . 2011-07-28 14:22 -------- d-----w- c:\windows\Logs
2011-11-26 16:22 . 2011-11-26 16:22 -------- d-----w- c:\program files\Utherverse Digital Inc
2011-11-14 02:56 . 2011-11-14 02:56 -------- d-----w- c:\documents and settings\win\Data aplikací\AdobeUM
2011-11-10 20:49 . 2011-11-10 20:49 -------- d-----w- c:\program files\Common Files\DirectX
2011-11-10 20:43 . 2011-11-10 20:43 -------- d-----w- c:\program files\Aspyr Media, Inc
2011-11-10 19:58 . 2011-11-10 19:58 -------- d-----w- c:\program files\Globar Star Software
2011-10-11 22:46 . 2011-11-22 17:16 -------- d-----w- c:\program files\ICQToolbar
2011-10-11 22:46 . 2012-01-12 12:51 -------- d-----w- c:\program files\ICQ6.501_18_14
2011-10-11 22:32 . 2010-04-26 20:50 -------- d-----w- c:\documents and settings\All Users\Data aplikací\SwiftKit
2011-10-11 22:32 . 2011-08-17 07:29 -------- d-----w- c:\program files\SwiftKit
2011-10-09 18:38 . 2010-07-05 19:00 -------- d-----w- c:\program files\ICQ6Toolbar
2011-10-09 18:38 . 2010-07-05 18:59 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ICQ
2011-10-09 18:36 . 2011-10-09 18:40 -------- d-----w- c:\program files\ICQ623_46_00
2011-09-17 23:41 . 2011-09-17 23:41 -------- d-----w- c:\documents and settings\win\Data aplikací\CyberLink
2011-09-15 02:01 . 2010-06-14 07:43 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2011-09-14 12:30 . 2011-07-15 13:29 456320 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2011-08-22 23:36 . 2011-08-22 23:36 -------- d-----w- c:\documents and settings\win\Data aplikací\Malwarebytes
2011-08-22 23:35 . 2010-11-29 15:42 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-08-22 23:35 . 2011-08-22 23:35 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-08-22 23:35 . 2011-08-23 22:18 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-08-22 23:35 . 2010-11-29 15:42 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-08-22 00:09 . 2011-08-22 00:13 -------- d-----w- C:\rsit
2011-08-22 00:09 . 2011-08-22 00:13 -------- d-----w- c:\program files\trend micro
2011-08-21 23:31 . 2011-08-21 23:37 -------- d-----w- c:\program files\McAfee
2011-08-21 23:05 . 2011-08-21 23:05 -------- d-----w- c:\windows\update.tray-9-0
2011-08-21 23:05 . 2011-08-21 23:05 -------- d-----w- c:\windows\update.tray-9-0-lnk
2011-08-21 22:59 . 2011-08-21 22:59 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Data aplikací\DVDVideoSoftTB
2011-08-21 22:59 . 2011-08-21 22:59 -------- d-----w- c:\documents and settings\LocalService\Data aplikací\facemoods.com
2011-08-21 22:59 . 2011-08-21 22:59 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Data aplikací\ConduitEngine
2011-08-21 22:58 . 2011-08-21 22:58 -------- d-----r- c:\documents and settings\LocalService\Oblíbené položky
2011-08-21 22:55 . 2011-08-21 22:55 -------- d-----w- c:\program files\Common Files\Network Associates
2011-08-21 22:54 . 2011-08-21 22:54 -------- d-----w- c:\program files\McAfee VirusScan Home Edition 7.02 Demo 30
2011-08-21 20:32 . 2011-08-21 20:33 -------- d-----w- c:\documents and settings\Administrator
2011-08-21 20:24 . 2011-08-21 20:24 -------- d-----w- c:\windows\update.tray-2-0
2011-08-21 20:24 . 2011-08-21 20:24 -------- d-----w- c:\windows\update.tray-2-0-lnk
2011-08-21 10:28 . 2011-08-21 10:28 -------- d-----w- C:\Inetpub
2011-08-20 13:45 . 2011-08-20 13:45 -------- d-----w- c:\documents and settings\LocalService\Data aplikací\TuneUp Software
2011-08-19 23:10 . 2011-08-19 23:10 -------- d-----w- c:\windows\update.tray-12-0
2011-08-19 23:10 . 2011-08-19 23:10 -------- d-----w- c:\windows\update.tray-12-0-lnk
2011-08-19 23:05 . 2011-08-19 23:05 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Common Files
2011-08-19 23:05 . 2011-08-19 23:05 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVG Security Toolbar
2011-08-19 23:02 . 2011-08-19 23:02 -------- d-----w- c:\windows\system32\drivers\AVG
2011-08-19 22:46 . 2011-08-19 23:43 -------- d-----w- c:\documents and settings\All Users\Data aplikací\MFAData
2011-08-19 22:24 . 2011-08-19 22:24 -------- d-----w- c:\program files\AMD APP
2011-08-19 22:24 . 2011-08-19 22:24 -------- d-----w- c:\program files\ATI
2011-08-19 22:14 . 2011-08-19 22:14 -------- d-----w- C:\ATI
2011-08-19 22:05 . 2011-08-19 22:05 -------- d-----w- c:\windows\ufa
2011-08-19 21:45 . 2011-07-04 11:36 441176 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-08-19 21:45 . 2011-07-04 11:43 40112 ----a-w- c:\windows\avastSS.scr
2011-08-19 21:07 . 2011-08-19 21:07 -------- d-----w- c:\documents and settings\NetworkService\Nabídka Start
2011-08-19 20:58 . 2011-08-19 22:05 246272 ----a-w- c:\windows\unrar.exe
2011-08-19 20:34 . 2011-08-21 20:25 -------- d-----w- c:\windows\av_ico
2011-08-19 20:31 . 2011-08-19 20:31 -------- d-----w- c:\windows\update.tray-7-0
2011-08-19 20:31 . 2011-08-19 20:31 -------- d-----w- c:\windows\update.tray-7-0-lnk
2011-08-19 20:22 . 2011-08-19 20:22 -------- d-----w- c:\documents and settings\LocalService\Nabídka Start
2011-08-19 13:01 . 2011-08-19 13:01 16856 ----a-w- c:\program files\Mozilla Firefox\plugin-container.exe
2011-08-19 13:01 . 2011-08-19 13:01 719832 ----a-w- c:\program files\Mozilla Firefox\mozcpp19.dll
2011-08-13 13:53 . 2011-08-13 13:53 -------- d-----w- c:\documents and settings\LocalService\Plocha
2011-08-13 13:48 . 2011-07-20 08:35 29504 ------w- c:\windows\system32\uxtuneup.dll
2011-08-13 13:44 . 2011-07-20 08:41 31552 ------w- c:\windows\system32\TURegOpt.exe
2011-08-13 13:43 . 2011-08-13 13:43 -------- d-----w- c:\documents and settings\win\Data aplikací\TuneUp Software
2011-08-13 13:43 . 2011-08-13 13:48 -------- d-----w- c:\program files\TuneUp Utilities 2011
2011-08-13 13:43 . 2011-08-13 13:47 -------- d-----w- c:\documents and settings\All Users\Data aplikací\TuneUp Software
2011-08-13 13:42 . 2011-08-13 13:42 -------- d-s---w- c:\documents and settings\All Users\Data aplikací\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2011-08-10 22:59 . 2011-06-24 14:10 139656 -c----w- c:\windows\system32\dllcache\rdpwd.sys
2011-08-10 22:59 . 2011-07-08 14:02 10496 -c----w- c:\windows\system32\dllcache\ndistapi.sys
2011-07-28 15:04 . 2011-07-28 15:16 -------- d-----w- c:\documents and settings\win\Data aplikací\EpicBot
2011-07-28 14:00 . 2011-07-28 14:00 -------- d-----w- c:\windows\system32\AI_RecycleBin
2011-07-28 13:59 . 2011-07-28 14:00 -------- d-----w- c:\documents and settings\win\Data aplikací\com.w3i.fliptoast
2011-07-28 13:59 . 2011-07-28 13:59 -------- d-----w- c:\program files\Fliptoast
2011-07-28 13:59 . 2011-07-28 13:59 -------- d-----w- c:\documents and settings\win\Data aplikací\W3i, LLC
2011-07-28 13:57 . 2011-07-28 13:57 -------- d-----w- c:\program files\EpicBot
2011-07-28 13:56 . 2011-07-28 13:56 -------- d-----w- c:\program files\Free Offers from Freeze.com
2011-07-28 13:56 . 2011-08-20 18:09 -------- d-----w- c:\program files\Zrychleni Pocitace
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-08 12:08 . 2008-10-18 07:55 107888 -c----w- c:\windows\system32\CmdLineExt.dll
2011-07-15 13:29 . 2005-01-19 05:26 456320 ------w- c:\windows\system32\drivers\mrxsmb.sys
2011-07-08 14:02 . 2001-10-25 14:00 10496 ------w- c:\windows\system32\drivers\ndistapi.sys
2011-07-04 11:43 . 2008-10-27 18:06 199304 ----a-w- c:\windows\system32\aswBoot.exe
2011-07-04 11:36 . 2008-10-27 18:06 309848 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-07-04 11:35 . 2008-10-27 18:07 43608 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-07-04 11:35 . 2008-10-27 18:06 102616 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2011-07-04 11:35 . 2008-10-27 18:06 96344 ----a-w- c:\windows\system32\drivers\aswmon.sys
2011-07-04 11:32 . 2008-10-27 18:07 25432 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-07-04 11:32 . 2008-10-27 18:07 30808 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2011-07-04 11:32 . 2008-10-27 18:06 19544 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-06-24 14:10 . 2006-04-14 20:42 139656 ------w- c:\windows\system32\drivers\rdpwd.sys
2011-06-21 18:18 . 2004-09-29 18:49 668160 ------w- c:\windows\system32\wininet.dll
2011-06-21 18:18 . 2004-08-03 20:59 61952 ------w- c:\windows\system32\tdc.ocx
2011-06-21 18:18 . 2009-04-25 22:19 81920 ------w- c:\windows\system32\ieencode.dll
2011-06-21 18:16 . 2004-08-17 13:44 370176 ------w- c:\windows\system32\html.iec
2011-06-20 17:44 . 2005-03-02 19:18 293376 ------w- c:\windows\system32\winsrv.dll
2011-06-06 11:35 . 2005-03-02 19:08 1858944 ------w- c:\windows\system32\win32k.sys
2011-06-02 13:52 . 2009-09-23 09:41 25280 ------w- c:\windows\system32\drivers\hamachi.sys
2008-05-28 08:36 . 2008-09-21 16:54 87400 ----a-w- c:\program files\UnHyCam2.exe
2008-05-28 08:36 . 2008-09-21 16:54 882000 -c--a-w- c:\program files\HyCam2.exe
2007-10-22 14:09 . 2008-09-21 16:54 106496 -c--a-w- c:\program files\CamRes2.dll
2007-08-11 17:15 . 2008-09-21 16:54 57344 -c--a-w- c:\program files\MClick2.dll
2009-05-01 21:02 . 2009-05-01 21:02 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-05-01 21:02 . 2009-05-01 21:02 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2010-10-18 11:26 3908192 ----a-w- c:\program files\ConduitEngine\ConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
2011-01-17 14:54 175912 ----a-w- c:\program files\DVDVideoSoftTB\prxtbDVD2.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD2.dll" [2011-01-17 175912]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\ConduitEngine.dll" [2010-10-18 3908192]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{872B5B88-9DB5-4310-BDD0-AC189557E5F5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD2.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NTServiceManager"="c:\program files\YoutubeDownloader.org\YoutubeDownloader\NTServiceManager.exe" [2011-04-13 409600]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-10-11 14940040]
"McAfee.InstantUpdate.Monitor"="c:\program files\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe" [2003-06-03 122948]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"36X Raid Configurer"="c:\windows\system32\xRaidSetup.exe" [2007-08-29 1966080]
"Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2010-03-12 49208]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"USBToolTip"="c:\progra~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe" [2007-02-20 199752]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\win\Nabˇdka Start\Programy\Po spuçtŘnˇ\
hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2011-6-2 624416]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~1\AVG\AVG10\avgchsvx.exe /sync\0c:\progra~1\AVG\AVG10\avgrsx.exe /sync /restart
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Reader Speed Launch.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
2005-05-03 10:43 69632 ------r- c:\windows\Alcmtr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2009-04-23 13:51 691656 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series]
2007-12-13 06:00 188928 -c----w- c:\windows\system32\spool\drivers\w32x86\3\E_FATIEFE.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series (kopie 1)]
2007-12-13 06:00 188928 -c----w- c:\windows\system32\spool\drivers\w32x86\3\E_FATIEFE.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FocoLink]
2011-05-10 10:42 1817600 ----a-w- c:\program files\YoutubeDownloader.org\YoutubeDownloader\Foco.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fraps]
2009-11-07 22:26 2377648 ----a-w- c:\fraps\fraps.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GEST]
2007-12-14 10:46 236040 ----a-w- c:\program files\GIGABYTE\GEST\run.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
2005-11-28 05:52 77824 ------w- c:\windows\system32\hkcmd.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
2005-11-28 05:55 118784 ------w- c:\windows\system32\igfxpers.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
2005-11-28 05:55 98304 ------w- c:\windows\system32\igfxtray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\JMB36X IDE Setup]
2007-03-20 06:36 36864 ------r- c:\windows\RaidTool\xInsIDE.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2006-01-12 16:40 155648 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2007-12-05 00:41 8523776 ------w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2007-12-05 00:41 81920 ------w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2007-12-05 00:41 1626112 ------w- c:\windows\system32\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2007-09-19 10:14 16844800 ------r- c:\windows\RTHDCPL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SW20]
2006-02-22 06:46 208896 ------w- c:\windows\system32\sw20.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SW24]
2006-02-22 06:46 69632 ------w- c:\windows\system32\sw24.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"tray_ico1"=
"tray_ico"=
"tray_ico2"=
"tray_ico3"=
"tray_ico4"=
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallOverride"=dword:00000001
"DisableThumbnailCache"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"d:\\LocMt2\\Locmt2.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Documents and Settings\\win\\temp\\TeamViewer\\Version5\\TeamViewer.exe"=
"d:\\WOW\\Launcher.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=
"d:\\hl2\\Half-Life\\czero.exe"=
"c:\\Documents and Settings\\win\\temp\\TeamViewer\\Version4\\TeamViewer.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"d:\\Warcraft III\\war3.exe"=
"c:\\WINDOWS\\system32\\java.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\WINDOWS\\update.tray-7-0\\svchost.exe"=
"c:\\WINDOWS\\update.tray-7-0-lnk\\svchost.exe"=
"c:\\WINDOWS\\update.tray-2-0-lnk\\svchost.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"59070:TCP"= 59070:TCP:Pando Media Booster
"59070:UDP"= 59070:UDP:Pando Media Booster
"22970:TCP"= 22970:TCP:BitComet 22970 TCP
"22970:UDP"= 22970:UDP:BitComet 22970 UDP
.
R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [22.2.2011 8:13 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [16.3.2011 16:03 32592]
R0 iteraid;ITERAID_Service_Install;c:\windows\system32\drivers\iteraid.sys [14.4.2006 22:58 25067]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [14.11.2009 14:47 721904]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [7.1.2011 6:41 248656]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [5.4.2011 0:59 297168]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [21.12.2010 15:04 115008]
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [21.12.2010 13:47 94872]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe [20.7.2011 10:38 1526592]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [12.7.2010 4:33 30432]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys [29.11.2010 19:27 10064]
S2 AvSynMgr;AVSync Manager;"c:\program files\McAfee\McAfee VirusScan\Avsynmgr.exe" --> c:\program files\McAfee\McAfee VirusScan\Avsynmgr.exe [?]
S2 ekrn;ESET Service;"c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe" --> c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [?]
S2 gupdate1ca1a1437e2ff0;Služba Google Update (gupdate1ca1a1437e2ff0);c:\program files\Google\Update\GoogleUpdate.exe [11.8.2009 1:40 133104]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [12.7.2010 4:33 30432]
S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [14.4.2011 21:28 134480]
S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [10.2.2011 7:53 24144]
S3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [10.2.2011 7:53 27216]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [11.8.2009 1:40 133104]
S3 McAfee ScanAndRepair Svc;McAfee ScanAndRepair Svc;c:\program files\McAfeeScanAndRepair\McAfeeScanRepairSvc.exe [6.4.2011 16:40 694864]
S3 NaiFiltr;NaiFiltr;c:\windows\system32\drivers\NaiFiltr.sys [17.8.2001 11:22 23296]
S3 teamviewervpn;TeamViewer VPN Adapter;c:\windows\system32\drivers\teamviewervpn.sys [25.1.2008 11:12 25088]
S4 GEST Service;GEST Service for program management.;c:\program files\GIGABYTE\GEST\GSvr.exe [12.6.2008 14:52 47624]
S4 UltiDev Cassini Web Server for ASP.NET 2.0;UltiDev Cassini Web Server for ASP.NET 2.0;c:\program files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe [8.2.2007 0:06 49152]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
.
2011-08-23 c:\windows\Tasks\At1.job
- c:\program files\HP\HP Photosmart Plus B210 series\Bin\HPCustPartic.exe [2010-06-14 14:07]
.
2011-08-23 c:\windows\Tasks\At2.job
- c:\program files\HP\HP Photosmart Plus B210 series\Bin\HPCustPartic.exe [2010-06-14 14:07]
.
2011-08-23 c:\windows\Tasks\At3.job
- c:\program files\HP\HP Photosmart Plus B210 series\Bin\HPCustPartic.exe [2010-06-14 14:07]
.
2011-08-23 c:\windows\Tasks\At4.job
- c:\program files\HP\HP Photosmart Plus B210 series\Bin\HPCustPartic.exe [2010-06-14 14:07]
.
2011-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-10 23:40]
.
2011-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore1ca2c9bba0d80fc.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-10 23:40]
.
2011-08-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-10 23:40]
.
.
------- Doplňkový sken -------
.
uStart Page =
uSearchMigratedDefaultUrl = hxxp://www.mywebsearch.com/jsp/cfg_redir2.jsp? ... earchTerms}
uDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = hxxp://www.yahoo.com
uInternet Settings,ProxyOverride = local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: {{0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - c:\program files\Seznam.cz\listicka.dll
IE: {{0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - {E601996F-E400-41CA-804B-CD6373A7EEE2} -
IE: {{20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - c:\windows\system32\mscoree.DLL
TCP: DhcpNameServer = 217.112.162.34 217.112.161.110
TCP: Interfaces\{7519E748-2514-43C3-B154-9D54B3DE031E}: NameServer = 212.111.0.10
FF - ProfilePath - c:\documents and settings\win\Data aplikací\Mozilla\Firefox\Profiles\l19s6ece.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - prefs.js: keyword.URL - hxxp://smartwebsearch.net/results.php?q=
FF - prefs.js: browser.search.selectedEngine - GoogleFeed.net
FF - prefs.js: browser.startup.homepage -
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - c:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
FF - Ext: Conduit Engine : engine@conduit.com - %profile%\extensions\engine@conduit.com
FF - Ext: Illimitux: illimitux@illimitux.net - %profile%\extensions\illimitux@illimitux.net
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Get Styles: {6236BA26-C117-4007-928C-DE0716C7FA80} - %profile%\extensions\{6236BA26-C117-4007-928C-DE0716C7FA80}
FF - Ext: FBFan: {6236BA26-C117-4007-928C-DE0716C7FA99} - %profile%\extensions\{6236BA26-C117-4007-928C-DE0716C7FA99}
FF - Ext: U Flv: {7645f4b1-1f19-13dd-2d6b-0200600c2a56} - %profile%\extensions\{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
FF - Ext: {7645f4b1-1f19-13dd-2d6b-0200600c2a56}: {7645f4b1-1f19-13dd-2d6b-0200600c2a56} - %profile%\extensions\{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - %profile%\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: DVDVideoSoftTB Toolbar: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - %profile%\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
FF - Ext: BitTorrentBar Community Toolbar: {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - %profile%\extensions\{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
FF - Ext: kikin plugin: {AA994882-F391-4d2e-806F-8908DA4814ED} - %profile%\extensions\{AA994882-F391-4d2e-806F-8908DA4814ED}
FF - Ext: DVDVideoSoft Menu: {ACAA314B-EEBA-48e4-AD47-84E31C44796C} - %profile%\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
FF - Ext: uTorrentBar Community Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - %profile%\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
BHO-{511131f1-4629-4254-a85f-ed7b6d75dd3c} - (no file)
Toolbar-{511131f1-4629-4254-a85f-ed7b6d75dd3c} - (no file)
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
WebBrowser-{511131F1-4629-4254-A85F-ED7B6D75DD3C} - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
HKLM-Run-McAfee Guardian - c:\program files\McAfee\McAfee Shared Components\Guardian\CMGrdian.exe
HKLM-Run-tray_ico - (no file)
HKLM-Run-tray_ico2 - (no file)
HKLM-Run-tray_ico3 - (no file)
HKLM-Run-tray_ico4 - (no file)
Notify-AtiExtEvent - (no file)
MSConfigStartUp-l1rezerv - c:\windows\l1rezerv.exe
MSConfigStartUp-WeatherDPA - c:\program files\Hotbar\bin\11.0.120.0\Weather.exe
AddRemove-facemoods - c:\program files\facemoods.com\facemoods\1.3.62.1\uninstall.exe
AddRemove-{091ED936-E610-497D-B651-0E4BF73CE598}_is1 - c:\program files\Nice Prosper\CashBackAssistant\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-08-24 09:57
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1390067357-1644491937-839522115-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:ce,ee,6b,fc,b9,2c,d5,a5,a7,0c,d4,24,40,af,df,e2,84,98,fe,f0,4e,a1,0e,
8b,fa,72,63,5c,a8,06,40,33,40,0d,9e,dc,fa,ec,d7,55,8a,9a,a9,c7,3c,d7,c3,7d,\
"??"=hex:7d,40,b4,0b,20,07,93,17,3e,24,13,53,99,23,20,48
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(1868)
c:\windows\system32\msi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Google\Update\1.3.21.65\GoogleCrashHandler.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\windows\system32\wdfmgr.exe
c:\windows\system32\UTSCSI.EXE
c:\windows\system32\wbem\wmiapsrv.exe
c:\program files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
c:\program files\Skype\Plugin Manager\skypePM.exe
.
**************************************************************************
.
Celkový čas: 2011-08-24 10:01:55 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-08-24 08:01
.
Před spuštěním: Volných bajtů: 48 471 572 480
Po spuštění: Volných bajtů: 48 421 703 680
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=AlwaysOff /fastdetect /TUTag=IEK6NA noguiboot
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional (TuneUp Backup)" /noexecute=AlwaysOff /fastdetect /TUTag=IEK6NA-BAK
.
- - End Of File - - DE503242648275ED7C138E7B51F54B83
Re: FB Vir :/
Tuto stránku znáte?
hxxp://smartwebsearch.net
hxxp://smartwebsearch.net
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.