ComboFix 11-11-20.01 - Blanka 20.11.2011 18:33:05.4.2 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4094.2638 [GMT 1:00]
Spuštěný z: c:\users\Blanka\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Blanka\Desktop\CFScript.txt
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1029.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1031.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1033.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1034.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1036.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1040.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1041.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1043.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1045.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1046.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1049.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1053.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\1055.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\2052.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\Adobe Photoshop Elements 9.msi
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\AdobeAIRInstaller.exe
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\AdobePhotoshopDotcomInspirationBrowser.air
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\Data1.cab
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\Data11.cab
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1029.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1031.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1033.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1034.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1036.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1040.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1041.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1043.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1045.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1046.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1049.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1053.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\1055.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\2052.mst
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\Data1.cab
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\Data11.cab
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsOrganizer\Elements 9 Organizer.msi
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\deploy\ElementsSTIInstaller.install.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\deploy\ElementsSTIInstaller.remove.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\packages\core\PDApp.pima
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\packages\core\PDApp.pimx
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\packages\DWA\DWA.pima
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\packages\DWA\DWA.pimx
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\packages\install.sig
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\packages\LWA\LWA.pima
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\packages\LWA\LWA.pimx
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\packages\UWA\UWA.pima
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\packages\UWA\UWA.pimx
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeAPE3-mul\AdobeAPE3-mul.boot.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeAPE3-mul\AdobeAPE3-mul.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeAPE3-mul\Assets1_1.zip
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeAPE3-mul\Install.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeAPE3-mul\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeAPE3-mul\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeCameraRawProfile6.0All\AdobeCameraRawProfile6.0All.boot.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeCameraRawProfile6.0All\AdobeCameraRawProfile6.0All.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeCameraRawProfile6.0All\Assets2_1.zip
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeCameraRawProfile6.0All\Install.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeCameraRawProfile6.0All\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeCameraRawProfile6.0All\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeExtendScriptToolkit3.5.0-mul\AdobeExtendScriptToolkit3.5.0-mul.boot.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeExtendScriptToolkit3.5.0-mul\AdobeExtendScriptToolkit3.5.0-mul.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeExtendScriptToolkit3.5.0-mul\Assets1_1.zip
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeExtendScriptToolkit3.5.0-mul\Assets2_1.zip
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeExtendScriptToolkit3.5.0-mul\Install.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeExtendScriptToolkit3.5.0-mul\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeExtendScriptToolkit3.5.0-mul\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeHelp\AdobeAIRInstaller.exe
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeHelp\AdobeHelp.air
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeHelp\AdobeHelp.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeHelp\AIRInstallerRunner.exe
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeHelp\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeHelp\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeXMPPanelsAll\AdobeXMPPanelsAll.boot.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeXMPPanelsAll\AdobeXMPPanelsAll.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeXMPPanelsAll\Assets2_1.zip
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeXMPPanelsAll\Install.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeXMPPanelsAll\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\AdobeXMPPanelsAll\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsCameraRaw6.1All\Assets2_1.zip
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsCameraRaw6.1All\ElementsCameraRaw6.1All.boot.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsCameraRaw6.1All\ElementsCameraRaw6.1All.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsCameraRaw6.1All\Install.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsCameraRaw6.1All\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsCameraRaw6.1All\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsSTIInstaller\Assets1_1.zip
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsSTIInstaller\ElementsSTIInstaller.boot.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsSTIInstaller\ElementsSTIInstaller.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsSTIInstaller\Install.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsSTIInstaller\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\ElementsSTIInstaller\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_CRT_x86\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_CRT_x86\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_CRT_x86\Microsoft_VC80_CRT_x86.msi
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_CRT_x86\Microsoft_VC80_CRT_x86.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_MFC_x86\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_MFC_x86\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_MFC_x86\Microsoft_VC80_MFC_x86.msi
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_MFC_x86\Microsoft_VC80_MFC_x86.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_MFCLOC_x86\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_MFCLOC_x86\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_MFCLOC_x86\Microsoft_VC80_MFCLOC_x86.msi
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC80_MFCLOC_x86\Microsoft_VC80_MFCLOC_x86.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC90_CRT_x86\media.sql
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC90_CRT_x86\Media_db.db
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC90_CRT_x86\Microsoft_VC90_CRT_x86.msi
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Microsoft_VC90_CRT_x86\Microsoft_VC90_CRT_x86.proxy.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\payloads\Setup.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\AdobePIM.dll
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\cs_CZ\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\da_DK\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\de_DE\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\en_GB\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\en_US\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\en_XM\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\es_ES\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\es_LA\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\es_MX\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\es_NA\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\fi_FI\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\fr_CA\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\fr_FR\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\fr_XM\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\hr_HR\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\hu_HU\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\it_IT\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\ja_JP\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\ko_KR\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\nb_NO\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\nl_NL\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\pl_PL\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\pt_BR\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\ro_RO\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\ru_RU\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\sk_SK\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\sl_SI\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\sv_SE\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\tr_TR\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\uk_UA\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\zh_CN\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\Dictionary\zh_TW\stringTable.zdct
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\setup.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\resources\updaterinventory.dll
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ElementsSTIInstaller\Set-up.exe
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\lang.dat
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ols_config.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\ols_config_education.xml
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\Setup.exe
c:\users\Blanka\Desktop\Adobe 9\adobe photoshop elements 9 cz\Setup.ini
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_COMSysApp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-10-20 do 2011-11-20 )))))))))))))))))))))))))))))))
.
.
2011-11-20 17:38 . 2011-11-20 17:38 -------- d-----w- c:\users\Ladik\AppData\Local\temp
2011-11-20 17:38 . 2011-11-20 17:38 -------- d-----w- c:\users\Elizabeta\AppData\Local\temp
2011-11-20 17:38 . 2011-11-20 17:38 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-11-20 15:07 . 2011-11-20 15:07 -------- d-----w- c:\users\Blanka\AppData\Roaming\Malwarebytes
2011-11-20 15:07 . 2011-11-20 15:07 -------- d-----w- c:\programdata\Malwarebytes
2011-11-20 15:07 . 2011-11-20 15:07 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2011-11-20 15:07 . 2011-08-31 16:00 25416 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-11-19 09:18 . 2011-11-19 09:18 -------- d-----w- C:\Render
2011-11-18 15:53 . 2011-11-18 15:53 -------- d-----w- c:\programdata\Disney Interactive
2011-11-08 15:54 . 2011-11-08 15:54 -------- d-----w- c:\programdata\Sandlot Games
2011-11-08 15:36 . 2011-11-08 15:36 -------- d-----w- c:\programdata\PopCap Games
2011-11-07 12:06 . 2011-11-07 12:06 -------- d-----w- c:\users\Elizabeta\AppData\Local\VirtualStore
2011-11-06 13:15 . 2011-11-06 13:16 -------- d-----w- c:\users\Blanka\AppData\Roaming\wargaming.net
2011-11-06 13:07 . 2011-11-06 13:07 -------- d-----w- c:\users\Ladik\AppData\Local\VirtualStore
2011-11-05 19:37 . 2011-11-05 19:37 -------- d-----w- c:\programdata\InstallShield
2011-11-05 19:37 . 2008-10-10 15:01 26624 ----a-r- c:\windows\SysWow64\LGDispDrv.dll
2011-11-05 19:37 . 2008-10-10 15:01 147456 ----a-r- c:\windows\SysWow64\LgExport.dll
2011-11-05 19:37 . 2011-11-05 19:37 -------- d-----w- c:\program files (x86)\LG Soft India
2011-11-05 19:37 . 2004-04-17 11:41 196608 ----a-w- c:\program files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe
2011-11-05 19:37 . 2004-04-17 11:40 385024 ----a-w- c:\program files (x86)\Common Files\InstallShield\UpdateService\_ispmres.dll
2011-11-05 19:37 . 2004-04-16 10:24 61440 ----a-w- c:\windows\SysWow64\ISUSPM.cpl
2011-11-05 19:37 . 2004-04-13 05:07 69632 ----a-w- c:\program files (x86)\Common Files\InstallShield\UpdateService\issch.exe
2011-11-05 19:37 . 2004-04-13 05:06 368640 ----a-w- c:\program files (x86)\Common Files\InstallShield\UpdateService\_isusres.dll
2011-11-05 19:37 . 2004-04-23 18:03 446464 ----a-w- c:\program files (x86)\Common Files\InstallShield\UpdateService\agent.exe
2011-11-05 19:37 . 2004-04-13 05:03 204800 ----a-w- c:\program files (x86)\Common Files\InstallShield\UpdateService\ISDM.exe
2011-11-05 19:36 . 2004-04-18 22:42 733184 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iKernel.dll
2011-11-05 19:36 . 2004-04-18 22:40 69715 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\ctor.dll
2011-11-05 19:36 . 2004-04-18 22:39 266240 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iscript.dll
2011-11-05 19:36 . 2004-04-18 22:39 172032 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iuser.dll
2011-11-05 19:36 . 2004-04-18 22:39 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\DotNetInstaller.exe
2011-11-04 19:18 . 2011-11-04 19:18 -------- d-sh--w- c:\windows\system32\%APPDATA%
2011-11-04 14:10 . 2011-11-04 14:10 -------- d-----w- c:\users\Ladik\AppData\Roaming\Canon
2011-11-04 14:10 . 2011-11-04 14:10 -------- d-----w- c:\users\Ladik\AppData\Local\Canon Easy-PhotoPrint EX
2011-11-03 21:20 . 2011-11-03 21:24 -------- d-----w- c:\users\Blanka\AppData\Roaming\Canon
2011-11-03 21:13 . 2011-11-08 15:00 -------- d-----w- c:\users\Blanka\AppData\Local\Canon Easy-PhotoPrint EX
2011-11-03 21:13 . 2011-11-03 21:13 -------- d--h--w- c:\programdata\CanonIJEPPEX2
2011-11-03 21:13 . 2011-11-03 21:13 -------- d--h--w- c:\programdata\CanonEPP
2011-11-03 21:12 . 2010-08-25 04:00 361472 ----a-w- c:\windows\system32\CNMXLMAD.DLL
2011-11-03 21:11 . 2011-11-03 21:11 -------- d-----w- c:\programdata\CanonIJMSetup
2011-11-03 21:11 . 2011-11-03 21:11 -------- d-----w- c:\program files\Common Files\CANON
2011-11-03 21:11 . 2011-11-03 21:11 -------- d-----w- c:\programdata\CanonIJWSpt
2011-11-03 21:10 . 2011-11-03 21:10 -------- d-----w- c:\program files\Canon
2011-11-03 21:10 . 2011-11-03 21:10 -------- d--h--w- c:\programdata\CanonBJ
2011-11-03 21:10 . 2010-08-25 04:00 87040 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNMPPAD.DLL
2011-11-03 21:10 . 2010-08-25 04:00 28672 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNMPDAD.DLL
2011-11-03 21:10 . 2011-11-03 21:10 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information
2011-11-03 21:10 . 2010-03-18 18:25 307200 ----a-w- c:\windows\SysWow64\CNC5100L.dll
2011-11-03 21:10 . 2010-03-18 18:26 348672 ----a-w- c:\windows\system32\CNC5100L.dll
2011-11-03 21:10 . 2010-03-18 16:13 1354240 ----a-w- c:\windows\system32\CNC5100C.dll
2011-11-03 21:10 . 2010-03-18 16:13 112128 ----a-w- c:\windows\system32\CNC5100I.dll
2011-11-03 21:10 . 2010-03-18 16:11 106496 ----a-w- c:\windows\SysWow64\CNC5100U.dll
2011-11-03 21:10 . 2008-08-25 17:02 17920 ----a-w- c:\windows\system32\CNHMCA6.dll
2011-11-03 21:10 . 2008-08-25 17:02 15872 ----a-w- c:\windows\SysWow64\CNHMCA.dll
2011-11-03 21:09 . 2010-08-25 04:00 361472 ----a-w- c:\windows\system32\CNMLMAD.DLL
2011-11-03 21:09 . 2010-01-13 14:04 103424 ----a-w- c:\windows\system32\CNC5100O.dll
2011-11-03 21:09 . 2010-03-11 08:57 248320 ----a-w- c:\windows\system32\CNMIUAD.DLL
2011-11-03 21:07 . 2011-11-03 21:11 -------- d-----w- c:\program files (x86)\Canon
2011-11-03 19:06 . 2011-11-03 19:06 -------- d-----w- C:\rsit
2011-11-03 19:06 . 2011-11-03 19:06 -------- d-----w- c:\program files\trend micro
2011-11-03 17:33 . 2011-11-05 05:50 -------- d-----w- c:\programdata\Origin
2011-11-03 17:33 . 2011-11-03 17:33 -------- d-----w- c:\program files (x86)\Origin Games
2011-11-03 17:33 . 2011-11-03 17:33 -------- d-----w- c:\program files (x86)\Origin
2011-11-03 13:29 . 2011-11-20 17:25 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-03 10:11 . 2011-11-03 10:11 -------- d-----w- c:\users\Blanka\AppData\Local\AMD
2011-11-02 21:22 . 2011-11-02 21:22 -------- d-----w- c:\users\Ladik\AppData\Local\AMD
2011-11-02 20:33 . 2011-11-02 20:33 -------- d-----w- c:\windows\system32\Macromed
2011-11-02 19:17 . 2011-11-02 19:17 -------- d-----w- c:\users\Elizabeta\AppData\Local\AMD
2011-11-02 16:52 . 2011-11-02 16:52 -------- d-----w- c:\programdata\ATI
2011-11-02 16:52 . 2011-11-02 16:52 -------- d-----w- c:\program files (x86)\AMD APP
2011-11-02 16:52 . 2011-11-02 16:52 -------- d-----w- c:\programdata\AMD
2011-11-02 16:52 . 2010-02-18 08:18 46136 ----a-w- c:\windows\system32\drivers\amdiox64.sys
2011-11-02 16:51 . 2011-11-02 16:51 -------- d-----w- c:\users\Default\AppData\Roaming\ATI
2011-11-02 16:51 . 2011-11-02 16:51 -------- d-----w- c:\users\Default\AppData\Local\ATI
2011-11-01 10:09 . 2011-11-01 10:09 303236 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\setup.dll
2011-11-01 10:09 . 2011-11-01 10:09 180356 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\iGdi.dll
2011-11-01 10:09 . 2011-10-07 04:16 8570192 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F169F7E6-6F11-418F-8E66-EB22C25C73D4}\mpengine.dll
2011-10-28 20:45 . 2004-03-29 14:23 90112 ----a-w- c:\windows\unvise32.exe
2011-10-28 20:34 . 2011-10-28 20:34 -------- d-----w- c:\program files (x86)\Common Files\Pinnacle
2011-10-28 20:34 . 2011-10-28 20:34 -------- d-----w- c:\users\Blanka\AppData\Local\Downloaded Installations
2011-10-28 20:34 . 2011-10-30 22:39 -------- d-----w- c:\users\Blanka\AppData\Local\Pinnacle
2011-10-28 20:33 . 2011-10-28 20:33 -------- d-----w- c:\programdata\Pinnacle Studio Ultimate
2011-10-28 20:27 . 2011-10-28 20:45 -------- d-----w- c:\program files (x86)\Pinnacle
2011-10-28 20:27 . 2011-10-28 20:27 -------- d-----w- c:\programdata\Studio 15
2011-10-28 20:27 . 2011-10-28 20:27 -------- d-----w- c:\programdata\Pinnacle Studio Plus
2011-10-28 20:27 . 2011-10-28 20:27 -------- d-----w- c:\program files (x86)\Common Files\Yahoo!
2011-10-28 20:27 . 2011-10-28 20:27 -------- d-----w- c:\program files (x86)\Common Files\Pegasus Imaging
2011-10-28 20:21 . 2011-10-28 20:33 -------- d-----w- c:\programdata\Pinnacle
2011-10-25 20:22 . 2011-08-13 05:27 6144 ----a-w- c:\program files\Internet Explorer\iecompat.dll
2011-10-25 20:22 . 2011-08-13 04:18 6144 ----a-w- c:\program files (x86)\Internet Explorer\iecompat.dll
2011-10-24 14:55 . 2011-10-24 14:58 -------- d-----w- c:\program files\PhotoFilter
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-10-01 03:25 . 2011-10-13 04:34 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2011-10-01 02:42 . 2011-10-13 04:34 1638912 ----a-w- c:\windows\SysWow64\mshtml.tlb
2011-09-08 19:38 . 2011-09-08 19:38 14851106 ----a-w- c:\windows\SysWow64\ArtD - Grafický atelier Černý_Book-Maker_uninstaller.exe
2011-09-06 03:03 . 2011-10-13 04:34 3138048 ----a-w- c:\windows\system32\win32k.sys
2011-09-02 08:44 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2011-09-02 08:44 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2011-08-27 05:37 . 2011-10-13 04:34 861696 ----a-w- c:\windows\system32\oleaut32.dll
2011-08-27 05:37 . 2011-10-13 04:34 331776 ----a-w- c:\windows\system32\oleacc.dll
2011-08-27 04:26 . 2011-10-13 04:34 233472 ----a-w- c:\windows\SysWow64\oleacc.dll
2011-08-27 04:26 . 2011-10-13 04:34 571904 ----a-w- c:\windows\SysWow64\oleaut32.dll
2011-08-24 19:19 . 2011-08-24 19:19 56320 ----a-w- c:\windows\SysWow64\OpenVideo.dll
2011-08-24 19:18 . 2011-08-24 19:18 13601280 ----a-w- c:\windows\SysWow64\amdocl.dll
2011-08-24 19:17 . 2011-08-24 19:17 43520 ----a-w- c:\windows\SysWow64\OpenCL.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2011-11-05_20.42.49 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-11-11 16:00 . 2011-11-20 17:25 63676 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2011-11-20 17:26 41652 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2010-11-13 16:03 . 2011-11-18 17:47 13968 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-2657635680-3219457055-4108436301-1003_UserData.bin
+ 2010-11-11 16:00 . 2011-11-20 17:26 22108 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-2657635680-3219457055-4108436301-1001_UserData.bin
- 2010-11-11 15:49 . 2011-11-05 20:42 65536 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 15:49 . 2011-11-20 17:40 65536 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2011-11-20 17:40 81920 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-11-05 20:42 81920 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-11-11 15:54 . 2011-11-05 20:19 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 15:54 . 2011-11-20 17:24 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:46 . 2011-11-18 13:10 87696 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
- 2010-11-11 15:54 . 2011-11-05 20:19 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2010-11-11 15:54 . 2011-11-20 17:24 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2010-11-11 15:54 . 2011-11-20 17:24 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-11-11 15:54 . 2011-11-05 20:19 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-11-11 15:54 . 2011-11-05 20:19 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 15:54 . 2011-11-20 17:24 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 15:54 . 2011-11-20 17:24 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-11-11 15:54 . 2011-11-05 20:19 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-11-15 18:45 . 2011-11-16 15:12 3388 c:\windows\system32\wdi\ERCQueuedResolutions.dat
+ 2011-07-25 08:35 . 2011-11-19 20:01 6744 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-2657635680-3219457055-4108436301-1004_UserData.bin
+ 2010-11-11 15:50 . 2011-11-16 15:29 9560 c:\windows\system32\NetworkList\Icons\{C96C425B-09AC-443A-B290-0438FAAC36E6}_48.bin
- 2010-11-11 15:50 . 2011-11-05 20:09 9560 c:\windows\system32\NetworkList\Icons\{C96C425B-09AC-443A-B290-0438FAAC36E6}_48.bin
+ 2010-11-11 15:50 . 2011-11-16 15:29 4280 c:\windows\system32\NetworkList\Icons\{C96C425B-09AC-443A-B290-0438FAAC36E6}_32.bin
- 2010-11-11 15:50 . 2011-11-05 20:09 4280 c:\windows\system32\NetworkList\Icons\{C96C425B-09AC-443A-B290-0438FAAC36E6}_32.bin
+ 2010-11-11 15:50 . 2011-11-16 15:29 2456 c:\windows\system32\NetworkList\Icons\{C96C425B-09AC-443A-B290-0438FAAC36E6}_24.bin
- 2010-11-11 15:50 . 2011-11-05 20:09 2456 c:\windows\system32\NetworkList\Icons\{C96C425B-09AC-443A-B290-0438FAAC36E6}_24.bin
+ 2011-11-20 17:40 . 2011-11-20 17:40 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2011-11-05 20:42 . 2011-11-05 20:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2011-11-05 20:42 . 2011-11-05 20:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-11-20 17:40 . 2011-11-20 17:40 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-11-20 17:25 . 2011-11-20 17:25 247968 c:\windows\SysWOW64\Macromed\Flash\FlashUtil11e_Plugin.exe
+ 2010-12-10 19:17 . 2011-11-13 17:07 309684 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
+ 2009-07-14 02:36 . 2011-11-19 09:09 655054 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2011-11-05 19:26 655054 c:\windows\system32\perfh009.dat
- 2009-07-14 15:18 . 2011-11-05 19:26 669660 c:\windows\system32\perfh005.dat
+ 2009-07-14 15:18 . 2011-11-19 09:09 669660 c:\windows\system32\perfh005.dat
+ 2009-07-14 02:36 . 2011-11-19 09:09 121926 c:\windows\system32\perfc009.dat
- 2009-07-14 02:36 . 2011-11-05 19:26 121926 c:\windows\system32\perfc009.dat
- 2009-07-14 15:18 . 2011-11-05 19:26 141292 c:\windows\system32\perfc005.dat
+ 2009-07-14 15:18 . 2011-11-19 09:09 141292 c:\windows\system32\perfc005.dat
- 2010-11-11 15:49 . 2011-11-05 20:42 786432 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2010-11-11 15:49 . 2011-11-20 17:40 786432 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 05:01 . 2011-11-05 20:41 425620 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2011-11-20 17:39 425620 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 1999-07-04 21:06 . 1999-07-04 21:06 184832 c:\windows\PUninstall.Exe
+ 2010-11-11 17:01 . 2011-11-20 17:25 8527008 c:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll
+ 2010-12-06 23:16 . 2011-11-20 17:39 1844504 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
+ 2011-07-25 10:36 . 2011-11-16 11:14 5589948 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2657635680-3219457055-4108436301-1004-8192.dat
- 2011-07-25 10:36 . 2011-11-02 20:37 5589948 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2657635680-3219457055-4108436301-1004-8192.dat
+ 2010-11-11 15:25 . 2011-11-20 17:23 5672376 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2657635680-3219457055-4108436301-1001-8192.dat
+ 2011-04-06 09:26 . 2011-11-06 17:19 11902744 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2657635680-3219457055-4108436301-1003-8192.dat
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinFast Schedule"="c:\program files\WinFast\WFDTV\WFWIZ.exe" [2010-08-11 2920448]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2010-04-12 180224]
"WinFastDTV"="c:\program files\WinFast\WFDTV\DTVSchdl.exe" [2010-06-09 101888]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-07-28 336384]
"CanonSolutionMenuEx"="c:\program files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE" [2010-04-02 1185112]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-08-31 449608]
.
c:\users\Blanka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - c:\program files\Microsoft Office\Office14\ONENOTEM.EXE [2010-12-21 245120]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
forteManager.lnk - c:\program files (x86)\LG Soft India\forteManager\bin\Monitor.exe [2011-11-5 1687552]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableSecureUIAPaths"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"ArcSoft Connection Service"=c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
"ISUSScheduler"="c:\program files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 EverestDriver;Lavalys EVEREST Kernel Driver;c:\program files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [2010-03-30 26752]
R3 LGDDCDevice;LGDDCDevice;c:\program files (x86)\LG Soft India\forteManager\bin\I2CDriver.sys [2008-12-12 14336]
R3 LGII2CDevice;LGII2CDevice;c:\program files (x86)\LG Soft India\forteManager\bin\PII2CDriver.sys [2008-12-12 18432]
R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe [x]
R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 51740536]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-07-28 361984]
S2 AODDriver4.01;AODDriver4.01;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2011-06-24 55424]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [x]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-08-31 366152]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2010-11-23 1974080]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys [x]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-10-07 11856]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [x]
S3 WFLR6654;WinFast TV2000 XP Expert (FM1216MK3);c:\windows\system32\drivers\wfeaglxt.sys [x]
.
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-07-28 11101800]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 112512]
"Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 660360]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2010-03-25 2726728]
"combofix"="c:\combofix\CF13161.3XE" [2010-11-20 345088]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\users\Blanka\AppData\Roaming\Mozilla\Firefox\Profiles\0qlftxz4.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2992540&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EverestDriver]
"ImagePath"="\??\c:\program files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus\1]
@="131473"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows CE Services]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\program files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
.
**************************************************************************
.
Celkový čas: 2011-11-20 18:44:34 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-11-20 17:44
ComboFix2.txt 2011-11-16 15:11
ComboFix3.txt 2011-11-16 14:51
ComboFix4.txt 2011-11-05 20:47
.
Před spuštěním: 2 334 552 064
Po spuštění: 2 533 351 424
.
- - End Of File - - 0B1DC849503A59B4D706DDA8E909F649

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Vir Coinminer
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Mc_Murphy
- VIP in memoriam
- Příspěvky: 6706
- Registrován: 03 lis 2008 15:55
- Bydliště: Plzeň [ZČ]
- Kontaktovat uživatele:
Re: Vir Coinminer



- Pokud používáš Win Vista či Win7, klikni na OTL pravým myšítkem a dej Run As Administrator či Spustit jako správce.
- Pokud používáš 64bitový OS, zkontroluj, zda-li je zaškrtnutý čtvereček Pro 64 bitové OS. Pokud ne, zaškrtni jej.
- Zaškrtni okénko Pro všechny uživatele.
- Zaškrtni okénko Kontrola na havěť "LOP".
- Zaškrtni okénko Kontrola na havěť "Purity".
- Stáři souborů změň z 30 dnů na 7 dnů.
- Do spodního okénka Vlastní skenování/opravy vlož tento script:
Kód: Vybrat vše
safebootminimal
safebootnetwork
drivers32
savembr:0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
/md5start
scecli.dll
autochk.exe
csrss.exe
explorer.exe
lsass.exe
services.exe
smss.exe
spoolsv.exe
svchost.exe
userinit.exe
winlogon.exe
atapi.sys
cdrom.sys
ndis.sys
ntfs.sys
tcpip.sys
%SystemDrive%\PhysicalMBR.bin
/md5stop
C:\windows\system32\spool\prtprocs|dll;true;true;true /FP
%systemroot%\system32\drivers\*.sys /5
%systemroot%\system32\drivers\*.sys /X
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\system32\*.* /5
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\config\*.sav
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\*.* /U /s
%systemroot%\*. /mp /s
%ALLUSERSPROFILE%\Data Aplikací\*.*
%ALLUSERSPROFILE%\Data Aplikací\*.exe /s
%ALLUSERSPROFILE%\Dáta aplikácií\*.*
%ALLUSERSPROFILE%\Dáta aplikácií\*.exe /s
%APPDATA%\*.
%APPDATA%\*.*
%APPDATA%\*.exe /s
%SYSTEMDRIVE%\*.exe
*crack* /s
*keygen* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
*legalizator* /s
*registration* /s
*Office 2010* /s
*AutoRearm* /s
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU /s
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager" /v BootExecute /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager" /v "PendingFileRenameOperations" /c
type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5
- Klikni na tlačítko Prohledat.
- Po dokončení skenu se objeví logy OTL.txt a Extras.txt, oba mi sem vlož.
- Logy se nevejdou do jednoho, rozděl je tedy prosím do více příspěvků.