Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zvuk

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Kilop
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 22 led 2012 19:34

Zvuk

#1 Příspěvek od Kilop »

Zdravím lidi, potřeboval bych odvás takovou pomoc :)

Prostě jsem třeba připojenej na server v csku hraju hraju a najednou nejde zvuk něco jako by zvuk že se mi odpojilo USB a zase zapojilo nikde nejde zvuk dokud nedám restart toho dotyčnýho programu třeba teamspeaku, counter striku a další.

Pokud by ste věděli co stím dělat tak napíšte :)

Co budete potřebovat řeknite a já to udělám, ahojte.

Logfile of random's system information tool 1.09 (written by random/random)
Run by Já at 2012-01-22 19:44:47
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 3 GB (16%) free of 19 GB
Total RAM: 2046 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:51:49, on 22.1.2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe
C:\WINDOWS\RTHDCPL.EXE
c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Steam\steam.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\9.0.1\ToolbarUpdater.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe
C:\Program Files\AVG\AVG2012\avgwdsvc.exe
C:\Program Files\AVG\AVG2012\avgnsx.exe
C:\Program Files\AVG\AVG2012\avgemcx.exe
C:\Program Files\AVG\AVG2012\avgcsrvx.exe
C:\Program Files\AVG\AVG2012\avgtray.exe
C:\Program Files\AVG\AVG2012\avgui.exe
C:\Program Files\AVG\AVG2012\avgrsx.exe
C:\Program Files\AVG\AVG2012\avgcsrvx.exe
C:\Program Files\AVG\AVG2012\avgscanx.exe
C:\Program Files\AVG\AVG2012\avgcsrvx.exe
C:\Documents and Settings\Já\Plocha\Nová složka\RSIT.exe
C:\Program Files\trend micro\Já.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.softonic.com/MON00005/tb_ ... rce=10&cc=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.foxtab.com/?s=0&chnl=dcom ... 1297912481
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: QIPBHO Class - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\Já\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll
O1 - Hosts: ::1 localhost# Start of Entries made by A1C V1x0r's cs5 Activator
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll
O2 - BHO: BrowserPlugin - {895F4032-6445-5AA4-956B-F1FDA82D471A} - (no file)
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\Já\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll
O2 - BHO: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files\Softonic\softonic\1.5.11.5\bh\softonic.dll
O2 - BHO: BS Player - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll
O3 - Toolbar: Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files\Softonic\softonic\1.5.11.5\softonicTlbr.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll
O4 - HKLM\..\Run: [StartCCC] "c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BCU] "C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files\AVG\AVG2012\avgtray.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\9.0.1\ViProtocol.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: AppleChargerSrv - Unknown owner - C:\WINDOWS\system32\AppleChargerSrv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: vToolbarUpdater - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\9.0.1\ToolbarUpdater.exe

--
End of file - 8048 bytes

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Já\Data aplikací\Mozilla\Firefox\Profiles\22zw69vy.default

prefs.js - "browser.startup.homepage" - "seznam.cz"
prefs.js - "keyword.URL" - "http://search.softonic.com/MON00005/tb_ ... e=2&cc=&q="

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=C:\Program Files\AVG\AVG2012\Firefox4\
"avg@toolbar"=C:\Documents and Settings\All Users\Data aplikací\AVG Secure Search\9.0.0.23\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
avg-secure-search.xml
avg_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Já\Data aplikací\Mozilla\Firefox\Profiles\22zw69vy.default\extensions\
ffxtlbra@softonic.com
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}

C:\Documents and Settings\Já\Data aplikací\Mozilla\Firefox\Profiles\22zw69vy.default\searchplugins\
softonic.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2005-09-24 63136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG2012\avgssie.dll [2011-11-11 1378144]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{895F4032-6445-5AA4-956B-F1FDA82D471A}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]
QIPBHO Class - C:\Documents and Settings\Já\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll [2010-12-13 141184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Security Toolbar - C:\Program Files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll [2012-01-22 1574240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68}]
Softonic Helper Object - C:\Program Files\Softonic\softonic\1.5.11.5\bh\softonic.dll [2012-01-11 241872]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\prxtbBS_0.dll [2011-05-09 176936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\prxtbBS_0.dll [2011-05-09 176936]
{5018CFD2-804D-4C99-9F81-25EAEA2769DE} - Softonic Toolbar - C:\Program Files\Softonic\softonic\1.5.11.5\softonicTlbr.dll [2012-01-11 250064]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll [2012-01-22 1574240]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-07-07 98304]
"BCU"=C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe [2009-10-15 375000]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2011-08-09 20055144]
"AVG_TRAY"=C:\Program Files\AVG\AVG2012\avgtray.exe [2011-12-03 2415456]
"vProt"=C:\Program Files\AVG Secure Search\vprot.exe [2012-01-22 892768]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
"AdobeBridge"= []
"Steam"=C:\Program Files\Steam\steam.exe [2012-01-17 1242448]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2011-12-09 4616064]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCU]
C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe [2009-10-15 375000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Documents and Settings\Já\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium]
C:\Program Files\QIP 2010\qip.exe [2011-07-18 6812032]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
C:\Program Files\Samsung\Kies\KiesHelper.exe [2011-12-08 935824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR]
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2011-12-08 21392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2011-12-08 3508624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2010-02-22 26101032]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files\Steam\steam.exe [2012-01-17 1242448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2011-12-09 4616064]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Já^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
C:\PROGRA~1\OPENOF~1.3\program\QUICKS~1.EXE [2007-09-11 393216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2011-05-04 551296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2011-08-18 188416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-07-19 113024]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Garena\Garena.exe"="C:\Program Files\Garena\Garena.exe:*:Enabled:Garena"
"C:\Documents and Settings\Já\Dokumenty\Downloads\Warcraft III (3) Reign Of Chaos and Frozen Throne Portable - [Espera]\Warcraft 3-w-Frozen Throne Expansion Portable\Warcraft 3-w-Frozen Throne Expansion Portable\war3.exe"="C:\Documents and Settings\Já\Dokumenty\Downloads\Warcraft III (3) Reign Of Chaos and Frozen Throne Portable - [Espera]\Warcraft 3-w-Frozen Throne Expansion Portable\Warcraft 3-w-Frozen Throne Expansion Portable\war3.exe:*:Enabled:Warcraft III"
"C:\Program Files\Warcraft III\Warcraft III.exe"="C:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III"
"C:\Program Files\Warcraft III\War3.exe"="C:\Program Files\Warcraft III\War3.exe:*:Enabled:Warcraft III"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Mozilla Firefox"
"C:\Program Files\QIP 2010\qip.exe"="C:\Program Files\QIP 2010\qip.exe:*:Enabled:QIP 2010"
"C:\Program Files\Mozilla Firefox\plugin-container.exe"="C:\Program Files\Mozilla Firefox\plugin-container.exe:*:Enabled:Plugin Container for Firefox"
"C:\Program Files\mIRC\mirc.exe"="C:\Program Files\mIRC\mirc.exe:*:Enabled:mIRC"
"C:\Documents and Settings\Já\Plocha\Garena EXP HACk\Garena.exe"="C:\Documents and Settings\Já\Plocha\Garena EXP HACk\Garena.exe:*:Enabled:www.gghack.tk"
"C:\Documents and Settings\Já\Plocha\[x] GarenaDevil 4.0\Garena\Garena.exe"="C:\Documents and Settings\Já\Plocha\[x] GarenaDevil 4.0\Garena\Garena.exe:*:Enabled:Garena"
"C:\Documents and Settings\Já\Plocha\Garena4\Garena.exe"="C:\Documents and Settings\Já\Plocha\Garena4\Garena.exe:*:Enabled:Garena"
"C:\Program Files\Darer\gproxy.exe"="C:\Program Files\Darer\gproxy.exe:*:Enabled:gproxy"
"C:\Program Files\DotAlicious Gaming Client\client.exe"="C:\Program Files\DotAlicious Gaming Client\client.exe:*:Enabled:client"
"C:\Program Files\Warcraft III\gproxy.exe"="C:\Program Files\Warcraft III\gproxy.exe:*:Enabled:gproxy"
"C:\Program Files\Warcraft III\Warcraft III\gproxy.exe"="C:\Program Files\Warcraft III\Warcraft III\gproxy.exe:*:Enabled:gproxy"
"C:\Program Files\Warcraft III\Warcraft III\war3.exe"="C:\Program Files\Warcraft III\Warcraft III\war3.exe:*:Enabled:Warcraft III"
"C:\Program Files\Stunlock Studios\Bloodline Champions\Binary\BloodlineChampions.exe"="C:\Program Files\Stunlock Studios\Bloodline Champions\Binary\BloodlineChampions.exe:*:Enabled:Bloodline Champions"
"C:\Documents and Settings\Já\Plocha\teamspeak3-server_win32\ts3server_win32.exe"="C:\Documents and Settings\Já\Plocha\teamspeak3-server_win32\ts3server_win32.exe:*:Enabled:TeamSpeak 3 Server"
"C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalátor AVG"
"C:\Program Files\XChat-WDK\xchat.exe"="C:\Program Files\XChat-WDK\xchat.exe:*:Enabled:XChat-WDK IRC Client"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\Steam\steamapps\common\amd driver updater, xp, 32 bit\Setup.exe"="C:\Program Files\Steam\steamapps\common\amd driver updater, xp, 32 bit\Setup.exe:*:Enabled:AMD Driver Updater, XP, 32 bit"
"C:\WINDOWS\Debug\lss64.exe"="C:\WINDOWS\Debug\lss64.exe:*:Enabled:KL"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Garenga\Garena\Garena.exe"="C:\Program Files\Garenga\Garena\Garena.exe:*:Enabled:Garena"
"C:\Program Files\Garena Plus\Room\garena_room.exe"="C:\Program Files\Garena Plus\Room\garena_room.exe:*:Enabled:Garena"
"C:\Documents and Settings\Já\Plocha\utorrent.exe"="C:\Documents and Settings\Já\Plocha\utorrent.exe:*:Enabled:µTorrent"
"C:\Documents and Settings\Já\Plocha\Photoshop\Vietcong -Unzip.2.UR.Games.nPlay\vietcong.exe"="C:\Documents and Settings\Já\Plocha\Photoshop\Vietcong -Unzip.2.UR.Games.nPlay\vietcong.exe:*:Enabled:vietcong"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\WINDOWS\system32\muzapp.exe"="C:\WINDOWS\system32\muzapp.exe:*:Enabled:MUZ AOD APP player"
"C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe"="C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe:*:Enabled:aTube Catcher to download and convert videos."
"C:\Program Files\Steam\steamapps\free7stylsoft\half-life\hl.exe"="C:\Program Files\Steam\steamapps\free7stylsoft\half-life\hl.exe:*:Enabled:Half-Life"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\Program Files\Steam\steamapps\common\dota 2 beta\dota.exe"="C:\Program Files\Steam\steamapps\common\dota 2 beta\dota.exe:*:Enabled:Dota 2"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Steam\steamapps\free7stylsoft\counter-strike\hl.exe"="C:\Program Files\Steam\steamapps\free7stylsoft\counter-strike\hl.exe:*:Enabled:Counter-Strike"
"C:\Program Files\AVG\AVG2012\avgnsx.exe"="C:\Program Files\AVG\AVG2012\avgnsx.exe:*:Enabled:Webový štít"
"C:\Program Files\AVG\AVG2012\avgdiagex.exe"="C:\Program Files\AVG\AVG2012\avgdiagex.exe:*:Enabled:AVG Diagnostika 2012"
"C:\Program Files\AVG\AVG2012\avgmfapx.exe"="C:\Program Files\AVG\AVG2012\avgmfapx.exe:*:Enabled:Instalátor AVG"
"C:\Program Files\AVG\AVG2012\avgemcx.exe"="C:\Program Files\AVG\AVG2012\avgemcx.exe:*:Enabled:Obecná kontrola pošty"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"vidc.ffds"=ffdshow.ax
"msacm.ac3filter"=ac3filter.acm
"VIDC.FMVC"=fmcodec.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv

======List of files/folders created in the last 1 month======

2012-01-22 19:45:00 ----D---- C:\Program Files\trend micro
2012-01-22 19:44:47 ----D---- C:\rsit
2012-01-22 19:19:57 ----D---- C:\Documents and Settings\Já\Data aplikací\AVG2012
2012-01-22 19:17:33 ----D---- C:\Documents and Settings\Já\Data aplikací\AVG Secure Search
2012-01-22 19:17:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVG Secure Search
2012-01-22 19:17:27 ----D---- C:\Program Files\Common Files\AVG Secure Search
2012-01-22 19:17:26 ----D---- C:\Program Files\AVG Secure Search
2012-01-22 19:15:20 ----D---- C:\WINDOWS\LastGood
2012-01-22 19:14:29 ----D---- C:\WINDOWS\system32\drivers\AVG
2012-01-22 19:14:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVG2012
2012-01-22 19:12:16 ----D---- C:\Program Files\AVG
2012-01-22 18:43:33 ----A---- C:\WINDOWS\system32\RTLTEAMING_NB.DLL
2012-01-22 18:43:33 ----A---- C:\WINDOWS\system32\drivers\RtNdPt5x.sys
2012-01-22 18:43:33 ----A---- C:\WINDOWS\system32\drivers\RTLVLAN.SYS
2012-01-22 18:43:33 ----A---- C:\WINDOWS\system32\drivers\RTLTEAMING.SYS
2012-01-22 18:37:23 ----HDC---- C:\WINDOWS\$NtUninstallKB835221WXP$
2012-01-22 17:23:10 ----A---- C:\WINDOWS\system32\drivers\cpuz135_x32.sys
2012-01-22 17:23:09 ----D---- C:\Program Files\CPUID
2012-01-22 16:31:41 ----D---- C:\WINDOWS\system32\RTCOM
2012-01-22 16:30:53 ----A---- C:\WINDOWS\vncutil.exe
2012-01-22 16:30:53 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2012-01-22 16:30:53 ----A---- C:\WINDOWS\SkyTel.exe
2012-01-22 16:30:52 ----A---- C:\WINDOWS\system32\drivers\RtkHDAud.sys
2012-01-22 16:30:52 ----A---- C:\WINDOWS\RtlUpd.exe
2012-01-22 16:30:52 ----A---- C:\WINDOWS\RTLCPL.EXE
2012-01-22 16:30:52 ----A---- C:\WINDOWS\RtkAudioService.exe
2012-01-22 16:30:46 ----A---- C:\WINDOWS\RTHDCPL.EXE
2012-01-22 16:30:45 ----A---- C:\WINDOWS\system32\drivers\Monfilt.sys
2012-01-22 16:30:45 ----A---- C:\WINDOWS\MicCal.exe
2012-01-22 16:30:43 ----A---- C:\WINDOWS\system32\drivers\Ambfilt.sys
2012-01-22 16:30:42 ----A---- C:\WINDOWS\ALCWZRD.EXE
2012-01-22 16:30:42 ----A---- C:\WINDOWS\ALCMTR.EXE
2012-01-22 16:30:33 ----A---- C:\WINDOWS\RtlExUpd.dll
2012-01-22 16:10:25 ----A---- C:\WINDOWS\ModemLog_Sériový kabel mezi dvěma počítači.txt
2012-01-22 16:05:36 ----A---- C:\WINDOWS\OEWABLog.txt
2012-01-19 21:53:50 ----D---- C:\Documents and Settings\Já\Data aplikací\LolClient
2012-01-19 20:38:03 ----D---- C:\Riot Games
2012-01-19 20:09:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\PMB Files
2012-01-19 20:09:05 ----D---- C:\Program Files\Pando Networks
2012-01-19 20:08:30 ----A---- C:\user.js
2012-01-19 20:08:22 ----D---- C:\Program Files\Softonic
2012-01-17 22:46:52 ----D---- C:\Program Files\Steam
2012-01-15 19:40:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\McAfee
2012-01-15 19:35:02 ----A---- C:\WINDOWS\imsins.BAK
2012-01-12 20:40:01 ----D---- C:\Documents and Settings\Já\Data aplikací\OpenOffice.org2
2012-01-12 20:37:05 ----D---- C:\Program Files\OpenOffice.org 2.3
2012-01-12 20:31:42 ----D---- C:\Documents and Settings\Já\Data aplikací\com.acrobat.createpdf.CreatePDFDesktop
2012-01-10 19:00:31 ----D---- C:\Program Files\Polda 2
2012-01-06 11:56:41 ----D---- C:\Program Files\CCleaner
2012-01-06 11:14:29 ----D---- C:\WINDOWS\system32\cs-CZ
2012-01-06 11:14:29 ----A---- C:\WINDOWS\system32\ieencode.dll
2012-01-05 23:50:49 ----D---- C:\WINDOWS\system32\URTTEMP
2012-01-05 23:28:42 ----D---- C:\WINDOWS\WBEM
2012-01-05 23:22:45 ----HDC---- C:\WINDOWS\$NtUninstallKB932823-v3$
2012-01-05 23:22:44 ----HD---- C:\WINDOWS\$hf_mig$
2012-01-04 21:02:37 ----A---- C:\WINDOWS\War3Unin.dat
2012-01-04 21:02:36 ----A---- C:\WINDOWS\War3Unin.pif
2012-01-04 21:02:35 ----A---- C:\WINDOWS\War3Unin.exe
2012-01-04 20:58:08 ----D---- C:\Program Files\Warcraft III
2011-12-26 20:44:47 ----SHD---- C:\Config.Msi
2011-12-26 20:44:08 ----D---- C:\Program Files\AVAST Software
2011-12-24 12:56:34 ----A---- C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
2011-12-24 12:50:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\SecTaskMan

======List of files/folders modified in the last 1 month======

2012-01-22 19:45:00 ----RD---- C:\Program Files
2012-01-22 19:31:27 ----HD---- C:\WINDOWS\inf
2012-01-22 19:24:59 ----D---- C:\WINDOWS\Temp
2012-01-22 19:23:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\MFAData
2012-01-22 19:19:31 ----SHD---- C:\WINDOWS\Installer
2012-01-22 19:17:27 ----D---- C:\Program Files\Common Files
2012-01-22 19:15:37 ----D---- C:\WINDOWS\system32\drivers
2012-01-22 19:15:20 ----D---- C:\WINDOWS
2012-01-22 19:13:41 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-01-22 19:13:33 ----D---- C:\WINDOWS\system32
2012-01-22 18:50:26 ----D---- C:\WINDOWS\system32\CatRoot2
2012-01-22 18:48:56 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-01-22 18:43:30 ----HD---- C:\Program Files\InstallShield Installation Information
2012-01-22 18:43:30 ----D---- C:\Program Files\Realtek
2012-01-22 18:32:40 ----D---- C:\WINDOWS\system32\CatRoot
2012-01-22 18:28:33 ----D---- C:\WINDOWS\system32\config
2012-01-22 16:32:13 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-01-22 16:16:44 ----D---- C:\WINDOWS\Debug
2012-01-22 16:05:37 ----D---- C:\WINDOWS\Prefetch
2012-01-22 16:05:27 ----D---- C:\Documents and Settings
2012-01-22 01:51:04 ----D---- C:\Documents and Settings\Já\Data aplikací\Skype
2012-01-21 20:30:05 ----D---- C:\Documents and Settings\Já\Data aplikací\skypePM
2012-01-21 14:18:43 ----D---- C:\Program Files\Common Files\InstallShield
2012-01-21 12:33:49 ----D---- C:\Program Files\SUPERAntiSpyware
2012-01-19 20:56:47 ----D---- C:\WINDOWS\system32\DirectX
2012-01-19 20:08:19 ----HD---- C:\WINDOWS\msdownld.tmp
2012-01-19 20:08:15 ----D---- C:\WINDOWS\Logs
2012-01-17 23:12:03 ----D---- C:\Program Files\Common Files\Steam
2012-01-17 20:45:16 ----D---- C:\Documents and Settings\Já\Data aplikací\BSplayer
2012-01-16 14:27:06 ----D---- C:\WINDOWS\Help
2012-01-16 14:27:06 ----D---- C:\Program Files\Internet Explorer
2012-01-15 19:50:03 ----D---- C:\Program Files\Mozilla Firefox
2012-01-15 04:57:09 ----SH---- C:\boot.ini
2012-01-15 04:57:09 ----A---- C:\WINDOWS\win.ini
2012-01-15 04:57:09 ----A---- C:\WINDOWS\system.ini
2012-01-14 16:00:44 ----D---- C:\Program Files\BS_Player
2012-01-12 20:39:24 ----RSD---- C:\WINDOWS\assembly
2012-01-12 20:38:07 ----RSD---- C:\WINDOWS\Fonts
2012-01-12 20:31:35 ----D---- C:\Program Files\Adobe
2012-01-12 20:31:23 ----D---- C:\Program Files\Common Files\Adobe AIR
2012-01-06 12:01:39 ----D---- C:\Documents and Settings\Já\Data aplikací\Media Player Classic
2012-01-06 12:01:33 ----D---- C:\Documents and Settings\Já\Data aplikací\uTorrent
2012-01-06 11:58:33 ----D---- C:\WINDOWS\Minidump
2012-01-06 11:17:23 ----SD---- C:\WINDOWS\Tasks
2012-01-06 11:16:25 ----D---- C:\WINDOWS\Media
2012-01-06 11:01:32 ----D---- C:\Documents and Settings\Já\Data aplikací\X-Chat 2
2012-01-05 23:51:47 ----D---- C:\WINDOWS\Registration
2012-01-05 23:28:42 ----D---- C:\WINDOWS\system32\en-US
2012-01-05 15:03:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2011-12-26 20:44:55 ----D---- C:\WINDOWS\WinSxS
2011-12-26 20:21:26 ----D---- C:\Program Files\TeamSpeak 3 Client

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2011-09-13 32592]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R1 AppleCharger;AppleCharger; C:\WINDOWS\system32\DRIVERS\AppleCharger.sys [2010-04-27 19496]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2011-10-07 230608]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2011-08-08 40016]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2011-07-11 295248]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-17 14848]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
R2 RtNdPt5x;Realtek NDIS Protocol Driver; C:\WINDOWS\system32\DRIVERS\RtNdPt5x.sys [2010-12-14 22016]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2011-08-18 7023104]
R3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys [2011-07-11 134608]
R3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys [2011-07-11 24272]
R3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys [2011-10-04 16720]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2011-08-16 6427240]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2011-12-08 327400]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2011-07-11 23120]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\WINDOWS\System32\Drivers\ssadadb.sys [2011-10-27 30312]
S3 dgderdrv;dgderdrv; C:\WINDOWS\System32\drivers\dgderdrv.sys [2011-03-02 20032]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files\Garena Plus\Room\safedrv.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 RTLTEAMING;Realtek Intermediate Driver for Ethernet Extended Features; C:\WINDOWS\system32\DRIVERS\RTLTEAMING.SYS [2010-12-14 36384]
S3 RTLVLAN;Realtek VLAN Intermediate Driver; C:\WINDOWS\system32\DRIVERS\RTLVLAN.SYS [2010-12-14 17536]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\ssadbus.sys [2011-10-27 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\WINDOWS\system32\DRIVERS\ssadmdfl.sys [2011-10-27 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\WINDOWS\system32\DRIVERS\ssadmdm.sys [2011-10-27 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\WINDOWS\system32\DRIVERS\ssadserd.sys [2011-10-27 114280]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\sscdbus.sys [2011-10-27 104648]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\WINDOWS\system32\DRIVERS\sscdmdfl.sys [2011-10-27 14920]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\WINDOWS\system32\DRIVERS\sscdmdm.sys [2011-10-27 132424]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2011-08-12 116608]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2011-08-18 643072]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe [2011-10-12 4433248]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG2012\avgwdsvc.exe [2011-08-02 192776]
R2 BCUService;Browser Configuration Utility Service; C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-10-15 223464]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 vToolbarUpdater;vToolbarUpdater; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\9.0.1\ToolbarUpdater.exe [2012-01-22 869216]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AppleChargerSrv;AppleChargerSrv; C:\WINDOWS\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-04-18 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2012-01-17 419624]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-17 14336]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zvuk

#2 Příspěvek od Rudy »

Zdravím!
Poprosím o log ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Kilop
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 22 led 2012 19:34

Re: Zvuk

#3 Příspěvek od Kilop »

[quote="Rudy"]Zdravím!
Poprosím o log ComboFix.

http://mini.megaupload.cz/nahled/Bez_nazvu.bmp.jpg Tutok je screen co mě to ukazuje ve správci.

Teďka sem spustil antivirus a našlo mi to zatím todle : http://mini.megaupload.cz/nahled/AE.bmp.jpg

počkej prosimtě až se mi dokončí AVG píše mi to varovaní abych to vypl ale v půlce to mám tak ať to nedělám od znova vše zas. :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zvuk

#4 Příspěvek od Rudy »

Zkuste reinstalovat ovladač zv. karty.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Kilop
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 22 led 2012 19:34

Re: Zvuk

#5 Příspěvek od Kilop »

Rudy píše:Zkuste reinstalovat ovladač zv. karty.
Nemám CD.. šlo by to nějak jinak že bych vám dal potřebne informace o PC a vy by ste mi pomoh co stáhnout kde a jak to instalovat protože kamarád mi radil s podobným případem ale neřek mi jak postupně k instalaci a nějak se mě zhroutil PC .. :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zvuk

#6 Příspěvek od Rudy »

Ovladač byste měl najít na webu výrobce zákl. desky (dofám, že máte integrovanou ZK). Vyberte ho podle typu desky a oper. systému.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Kilop
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 22 led 2012 19:34

Re: Zvuk

#7 Příspěvek od Kilop »

http://www.gigabyte.com/search/search.a ... -es3g#pr-1 Jsou tu 4 věci jak zjistím jakou znich mám já? :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zvuk

#8 Příspěvek od Rudy »

Nainstalujte si EverestHome: http://www.stahuj.centrum.cz/utility_a_ ... y/everest/ a spusťte. Získáte kompletní info o vašem hardwaru.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Kilop
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 22 led 2012 19:34

Re: Zvuk

#9 Příspěvek od Kilop »

Rudy píše:Nainstalujte si EverestHome: http://www.stahuj.centrum.cz/utility_a_ ... y/everest/ a spusťte. Získáte kompletní info o vašem hardwaru.

to mám co potřebujete vědět na to aby ste mi moh pomoci stím co mám stáhnout?

log:

ComboFix 12-01-21.02 - Já 22.01.2012 21:40:05.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.2046.1278 [GMT 1:00]
Spuštěný z: c:\documents and settings\Já\Plocha\Nová složka\ComboFix.exe
FW: AVG Firewall *Disabled* {8decf618-9569-4340-b34a-d78d28969b66}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\iun6002.exe
c:\windows\keys.ini
c:\windows\msmqinst.log
c:\windows\system32\muzapp.exe
c:\windows\system32\system32
c:\windows\system32\system32\3DAudio.ax
c:\windows\system32\system32\avrt.dll
c:\windows\system32\system32\cis-2.4.dll
c:\windows\system32\system32\issacapi_bs-2.3.dll
c:\windows\system32\system32\issacapi_pe-2.3.dll
c:\windows\system32\system32\issacapi_se-2.3.dll
c:\windows\system32\system32\MACXMLProto.dll
c:\windows\system32\system32\MaDRM.dll
c:\windows\system32\system32\MaJGUILib.dll
c:\windows\system32\system32\MAMACExtract.dll
c:\windows\system32\system32\MASetupCleaner.exe
c:\windows\system32\system32\MaXMLProto.dll
c:\windows\system32\system32\mfplat.dll
c:\windows\system32\system32\MK_Lyric.dll
c:\windows\system32\system32\MSCLib.dll
c:\windows\system32\system32\MSFLib.dll
c:\windows\system32\system32\MSLUR71.dll
c:\windows\system32\system32\msvcp60.dll
c:\windows\system32\system32\MTTELECHIP.dll
c:\windows\system32\system32\MTXSYNCICON.dll
c:\windows\system32\system32\muzaf1.dll
c:\windows\system32\system32\muzapp.dll
c:\windows\system32\system32\muzapp.exe
c:\windows\system32\system32\muzdecode.ax
c:\windows\system32\system32\muzeffect.ax
c:\windows\system32\system32\muzmp4sp.ax
c:\windows\system32\system32\muzmpgsp.ax
c:\windows\system32\system32\muzoggsp.ax
c:\windows\system32\system32\muzwmts.dll
c:\windows\system32\system32\psapi.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_JAVAQUICKUPDATERSERVICE
-------\Legacy_LOGIN549
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-12-22 do 2012-01-22 )))))))))))))))))))))))))))))))
.
.
2012-01-22 20:20 . 2012-01-22 20:21 -------- d-----w- c:\program files\AVG Secure Search
2012-01-22 18:45 . 2012-01-22 18:51 -------- d-----w- c:\program files\trend micro
2012-01-22 18:44 . 2012-01-22 18:52 -------- d-----w- C:\rsit
2012-01-22 18:19 . 2012-01-22 18:19 -------- d-----w- c:\documents and settings\Já\Data aplikací\AVG2012
2012-01-22 18:17 . 2012-01-22 18:17 -------- d-----w- c:\documents and settings\Já\Data aplikací\AVG Secure Search
2012-01-22 18:17 . 2012-01-22 18:17 -------- d-----w- c:\program files\Common Files\AVG Secure Search
2012-01-22 18:14 . 2012-01-22 19:08 -------- d-----w- c:\windows\system32\drivers\AVG
2012-01-22 18:12 . 2012-01-22 18:12 -------- d-----w- c:\program files\AVG
2012-01-22 17:43 . 2010-12-14 03:54 65824 ----a-w- c:\windows\system32\RTLTEAMING_NB.DLL
2012-01-22 17:43 . 2010-12-14 03:54 36384 ----a-w- c:\windows\system32\drivers\RTLTEAMING.SYS
2012-01-22 17:43 . 2010-12-14 03:54 22016 ----a-w- c:\windows\system32\drivers\RtNdPt5x.sys
2012-01-22 17:43 . 2010-12-14 03:54 17536 ----a-w- c:\windows\system32\drivers\RTLVLAN.SYS
2012-01-22 16:23 . 2011-09-21 09:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x32.sys
2012-01-22 16:23 . 2012-01-22 16:23 -------- d-----w- c:\program files\CPUID
2012-01-22 15:31 . 2012-01-22 17:48 -------- d-----w- c:\windows\system32\RTCOM
2012-01-22 15:05 . 2012-01-22 15:05 -------- d-----w- c:\documents and settings\aaaa
2012-01-21 13:18 . 2005-07-19 20:10 77824 ------w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\ctor.dll
2012-01-21 13:18 . 2005-07-19 20:10 32768 ------w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\objectps.dll
2012-01-21 13:18 . 2005-07-19 20:10 221184 ------w- c:\program files\Common Files\InstallShield\IScript\IScript.dll
2012-01-21 13:18 . 2005-07-19 20:10 221184 ------w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\iuser.dll
2012-01-21 13:18 . 2005-07-19 20:10 212992 ----a-w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\ILog.dll
2012-01-21 13:17 . 2005-07-20 08:10 610436 ----a-w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\IKernel.exe
2012-01-19 20:54 . 2012-01-21 13:44 -------- d-----w- c:\documents and settings\Já\riotsGamesLogs
2012-01-19 20:53 . 2012-01-19 20:53 -------- d-----w- c:\documents and settings\Já\Data aplikací\LolClient
2012-01-19 19:38 . 2012-01-19 19:38 -------- d-----w- C:\Riot Games
2012-01-19 19:09 . 2012-01-21 17:15 -------- d-----w- c:\documents and settings\Já\Local Settings\Data aplikací\PMB Files
2012-01-19 19:09 . 2012-01-19 19:09 -------- d-----w- c:\documents and settings\All Users\Data aplikac
2012-01-19 19:09 . 2012-01-19 19:09 -------- d-----w- c:\program files\Pando Networks
2012-01-19 19:08 . 2012-01-19 19:08 58 ----a-w- C:\user.js
2012-01-19 19:08 . 2012-01-19 19:08 -------- d-----w- c:\program files\Softonic
2012-01-17 21:46 . 2012-01-22 20:53 -------- d-----w- c:\program files\Steam
2012-01-15 18:38 . 2012-01-15 18:40 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-01-14 15:03 . 2012-01-14 15:03 -------- d-----w- c:\documents and settings\Já\Local Settings\Data aplikací\conduitEngine
2012-01-12 19:40 . 2012-01-13 16:41 -------- d-----w- c:\documents and settings\Já\Data aplikací\OpenOffice.org2
2012-01-12 19:37 . 2012-01-12 19:37 -------- d-----w- c:\program files\OpenOffice.org 2.3
2012-01-12 19:31 . 2012-01-12 19:31 -------- d-----w- c:\documents and settings\Já\Data aplikací\com.acrobat.createpdf.CreatePDFDesktop
2012-01-10 18:00 . 2012-01-10 18:00 -------- d-----w- c:\program files\Polda 2
2012-01-06 10:56 . 2012-01-06 10:56 -------- d-----w- c:\program files\CCleaner
2012-01-06 10:20 . 2012-01-06 10:20 -------- d-sh--w- c:\documents and settings\Já\PrivacIE
2012-01-06 10:14 . 2012-01-16 13:27 -------- d-----w- c:\windows\system32\cs-CZ
2012-01-06 10:14 . 2004-08-17 13:49 81920 ----a-w- c:\windows\system32\ieencode.dll
2012-01-06 10:14 . 2004-08-17 13:49 81920 ----a-w- c:\windows\system32\dllcache\ieencode.dll
2012-01-06 10:14 . 2001-10-25 14:00 68608 ----a-w- c:\windows\system32\plugin.ocx
2012-01-05 22:50 . 2012-01-05 22:50 -------- d-----w- c:\windows\system32\URTTEMP
2012-01-05 22:30 . 2012-01-05 22:30 -------- d-sh--w- c:\documents and settings\Já\IETldCache
2012-01-05 22:22 . 2012-01-05 22:22 -------- d--h--w- c:\windows\$hf_mig$
2012-01-04 20:02 . 2012-01-04 20:08 2829 ----a-w- c:\windows\War3Unin.pif
2012-01-04 20:02 . 2012-01-04 20:08 139264 ----a-w- c:\windows\War3Unin.exe
2012-01-04 19:58 . 2012-01-15 20:22 -------- d-----w- c:\program files\Warcraft III
2011-12-26 19:44 . 2011-12-26 19:44 -------- d-----w- c:\program files\AVAST Software
2011-12-24 11:56 . 2011-06-21 10:24 32768 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-12-08 06:09 . 2011-04-07 13:55 327400 ----a-w- c:\windows\system32\drivers\Rtenicxp.sys
2011-10-27 01:25 . 2011-12-08 21:32 14920 ----a-w- c:\windows\system32\drivers\sscdmdfl.sys
2011-10-27 01:25 . 2011-12-08 21:32 132424 ----a-w- c:\windows\system32\drivers\sscdmdm.sys
2011-10-27 01:25 . 2011-12-08 21:32 12616 ----a-w- c:\windows\system32\drivers\sscdcmnt.sys
2011-10-27 01:25 . 2011-12-08 21:32 12616 ----a-w- c:\windows\system32\drivers\sscdcm.sys
2011-10-27 01:25 . 2011-12-08 21:32 12488 ----a-w- c:\windows\system32\drivers\sscdwhnt.sys
2011-10-27 01:25 . 2011-12-08 21:32 12488 ----a-w- c:\windows\system32\drivers\sscdwh.sys
2011-10-27 01:25 . 2011-12-08 21:32 104648 ----a-w- c:\windows\system32\drivers\sscdbus.sys
2011-10-27 01:25 . 2011-12-08 21:33 114280 ----a-w- c:\windows\system32\drivers\ssadserd.sys
2011-10-27 01:25 . 2011-12-08 21:33 30312 ----a-w- c:\windows\system32\drivers\ssadadb.sys
2011-10-27 01:25 . 2011-12-08 21:33 1416680 ----a-w- c:\windows\system32\WdfCoInstaller01005.dll
2011-10-27 01:25 . 2011-12-08 21:33 136808 ----a-w- c:\windows\system32\drivers\ssadmdm.sys
2011-10-27 01:25 . 2011-12-08 21:33 12776 ----a-w- c:\windows\system32\drivers\ssadmdfl.sys
2011-10-27 01:25 . 2011-12-08 21:33 10472 ----a-w- c:\windows\system32\drivers\ssadcmnt.sys
2011-10-27 01:25 . 2011-12-08 21:33 121064 ----a-w- c:\windows\system32\drivers\ssadbus.sys
2011-10-27 01:25 . 2011-12-08 21:33 10344 ----a-w- c:\windows\system32\drivers\ssadwhnt.sys
2011-10-27 01:25 . 2011-12-08 16:08 10472 ----a-w- c:\windows\system32\drivers\ssadcm.sys
2011-10-27 01:25 . 2011-12-08 16:08 1416680 ----a-w- c:\windows\system32\drivers\WdfCoInstaller01005.dll
2011-10-27 01:25 . 2011-12-08 16:08 10344 ----a-w- c:\windows\system32\drivers\ssadwh.sys
2011-12-21 07:39 . 2012-01-15 18:50 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\prxtbBS_0.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-01-22 20:21 1574240 ----a-w- c:\program files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68}]
2012-01-11 14:29 241872 ----a-w- c:\program files\Softonic\softonic\1.5.11.5\bh\softonic.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
2011-05-09 09:49 176936 ----a-w- c:\program files\BS_Player\prxtbBS_0.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\prxtbBS_0.dll" [2011-05-09 176936]
"{5018CFD2-804D-4C99-9F81-25EAEA2769DE}"= "c:\program files\Softonic\softonic\1.5.11.5\softonicTlbr.dll" [2012-01-11 250064]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll" [2012-01-22 1574240]
.
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
.
[HKEY_CLASSES_ROOT\clsid\{5018cfd2-804d-4c99-9f81-25eaea2769de}]
[HKEY_CLASSES_ROOT\Softonic.dskBnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}]
[HKEY_CLASSES_ROOT\Softonic.dskBnd]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}"= "c:\program files\BS_Player\prxtbBS_0.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files\Steam\steam.exe" [2012-01-17 1242448]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-12-09 4616064]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-07-07 98304]
"BCU"="c:\program files\DeviceVM\Browser Configuration Utility\BCU.exe" [2009-10-15 375000]
"RTHDCPL"="RTHDCPL.EXE" [2011-08-09 20055144]
"AVG_TRAY"="c:\program files\AVG\AVG2012\avgtray.exe" [2011-12-03 2415456]
"vProt"="c:\program files\AVG Secure Search\vprot.exe" [2012-01-22 892768]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54 551296 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^Já^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
path=c:\documents and settings\Já\Nabídka Start\Programy\Po spuštění\OpenOffice.org 2.3.lnk
backup=c:\windows\pss\OpenOffice.org 2.3.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCU]
2009-10-15 12:06 375000 ----a-w- c:\program files\DeviceVM\Browser Configuration Utility\BCU.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium]
2011-07-18 13:26 6812032 ----a-w- c:\program files\QIP 2010\qip.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
2011-12-08 01:33 935824 ----a-w- c:\program files\Samsung\Kies\KiesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR]
2011-12-08 01:33 21392 ----a-w- c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
2011-12-08 01:33 3508624 ----a-w- c:\program files\Samsung\Kies\KiesTrayAgent.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2010-02-22 10:42 26101032 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2012-01-17 21:47 1242448 ----a-w- c:\program files\Steam\Steam.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
2011-12-09 00:44 4616064 ----a-w- c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Warcraft III\\Warcraft III.exe"=
"c:\\Program Files\\Warcraft III\\War3.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\QIP 2010\\qip.exe"=
"c:\\Program Files\\Mozilla Firefox\\plugin-container.exe"=
"c:\\Program Files\\XChat-WDK\\xchat.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Garena Plus\\Room\\garena_room.exe"=
"c:\\Documents and Settings\\Já\\Plocha\\utorrent.exe"=
"c:\\Program Files\\DsNET Corp\\aTube Catcher 2.0\\yct.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\dota 2 beta\\dota.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgnsx.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgdiagex.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe"=
"c:\\Program Files\\Steam\\steamapps\\free7stylsoft\\counter-strike\\hl.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"8170:TCP"= 8170:TCP:Generic Host Process
"8000:TCP"= 8000:TCP:Generic Host Process
"57854:TCP"= 57854:TCP:Pando Media Booster
"57854:UDP"= 57854:UDP:Pando Media Booster
.
R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [11.7.2011 1:14 23120]
R1 AppleCharger;AppleCharger;c:\windows\system32\drivers\AppleCharger.sys [7.4.2011 14:55 19496]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [11.7.2011 1:14 295248]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [22.7.2011 17:27 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [12.7.2011 22:55 67664]
R2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCore.exe [12.8.2011 0:38 116608]
R2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2012\avgwdsvc.exe [2.8.2011 6:09 192776]
R2 BCUService;Browser Configuration Utility Service;c:\program files\DeviceVM\Browser Configuration Utility\BCUService.exe [15.10.2009 13:06 223464]
R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [22.1.2012 17:23 21992]
R2 RtNdPt5x;Realtek NDIS Protocol Driver;c:\windows\system32\drivers\RtNdPt5x.sys [22.1.2012 18:43 22016]
R2 vToolbarUpdater;vToolbarUpdater;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\9.0.1\ToolbarUpdater.exe [22.1.2012 19:17 869216]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18.3.2010 12:16 130384]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [22.1.2012 16:30 1691480]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [8.12.2011 22:33 30312]
S3 AppleChargerSrv;AppleChargerSrv;system32\AppleChargerSrv.exe --> system32\AppleChargerSrv.exe [?]
S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [8.12.2011 22:16 20032]
S3 GGSAFERDriver;GGSAFER Driver;\??\c:\program files\Garena Plus\Room\safedrv.sys --> c:\program files\Garena Plus\Room\safedrv.sys [?]
S3 RTLTEAMING;Realtek Intermediate Driver for Ethernet Extended Features;c:\windows\system32\drivers\RTLTEAMING.SYS [22.1.2012 18:43 36384]
S3 RTLVLAN;Realtek VLAN Intermediate Driver;c:\windows\system32\drivers\RTLVLAN.SYS [22.1.2012 18:43 17536]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [8.12.2011 22:33 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [8.12.2011 22:33 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [8.12.2011 22:33 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [8.12.2011 22:33 114280]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18.3.2010 12:16 753504]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=10&cc=
uDefault_Search_URL = hxxp://search.qip.ru
mStart Page = hxxp://search.foxtab.com/?s=0&chnl=dcom&cd=2XzutBtN2Y1L1QzutC0CyC0FyCyDzzzzyDyC0EyEtA0EtAyD0CtN0D0TzutBtDtCtCtDzztCyC&cr=1297912481
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://search.qip.ru/ie
TCP: DhcpNameServer = 192.168.2.1
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\Common Files\AVG Secure Search\ViProtocolInstaller\9.0.1\ViProtocol.dll
FF - ProfilePath - c:\documents and settings\Já\Data aplikací\Mozilla\Firefox\Profiles\22zw69vy.default\
FF - prefs.js: browser.search.selectedEngine - Search the web (Softonic)
FF - prefs.js: browser.startup.homepage - seznam.cz
FF - prefs.js: keyword.URL - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=2&cc=&q=
FF - prefs.js: network.proxy.type - 4
FF - user.js: extensions.softonic_i.hmpg - true
FF - user.js: extensions.softonic_i.hmpgUrl - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=13&cc=
FF - user.js: extensions.softonic_i.dfltSrch - true
FF - user.js: extensions.softonic_i.srchPrvdr - Search the web (Softonic)
FF - user.js: extensions.softonic_i.keyWordUrl - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=2&cc=&q=
FF - user.js: extensions.softonic_i.dnsErr - true
FF - user.js: extensions.softonic_i.newTab - true
FF - user.js: extensions.softonic_i.newTabUrl - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=15&cc=
FF - user.js: extensions.softonic_i.tlbrSrchUrl - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=1&cc=&q=
FF - user.js: extensions.softonic_i.id - 0cb3e35c0000000000001c6f658856e4
FF - user.js: extensions.softonic_i.instlDay - 15358
FF - user.js: extensions.softonic_i.vrsn - 1.5.11.5
FF - user.js: extensions.softonic_i.vrsni - 1.5.11.5
FF - user.js: extensions.softonic_i.vrsnTs - 1.5.11.520:08
FF - user.js: extensions.softonic_i.prtnrId - softonic
FF - user.js: extensions.softonic_i.prdct - softonic
FF - user.js: extensions.softonic_i.aflt - SD
FF - user.js: extensions.softonic_i.smplGrp - eng7
FF - user.js: extensions.softonic_i.tlbrId - en11DECdefault
FF - user.js: extensions.softonic_i.instlRef - MON00005
FF - user.js: extensions.softonic_i.dfltLng -
FF - user.js: extensions.softonic_i.excTlbr - false
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
HKCU-Run-AdobeBridge - (no file)
MSConfigStartUp-Google Update - c:\documents and settings\Já\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
MSConfigStartUp-WinampAgent - c:\program files\Winamp\winampa.exe
AddRemove-Cool's_Codec_pack_4.12 - c:\windows\iun6002.exe
AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe
AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe
AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe
AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe
AddRemove-05_Sloan - c:\program files\Samsung\USB Drivers\05_Sloan\Uninstall.exe
AddRemove-06_Spencer - c:\program files\Samsung\USB Drivers\06_Spencer\Uninstall.exe
AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe
AddRemove-08_EMPChipset - c:\program files\Samsung\USB Drivers\08_EMPChipset\Uninstall.exe
AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe
AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe
AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe
AddRemove-17_EMP_Chipset2 - c:\program files\Samsung\USB Drivers\17_EMP_Chipset2\Uninstall.exe
AddRemove-18_Zinia_Serial_Driver - c:\program files\Samsung\USB Drivers\18_Zinia_Serial_Driver\Uninstall.exe
AddRemove-19_VIA_driver - c:\program files\Samsung\USB Drivers\19_VIA_driver\Uninstall.exe
AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe
AddRemove-21_Searsburg - c:\program files\Samsung\USB Drivers\21_Searsburg\Uninstall.exe
AddRemove-22_WiBro_WiMAX - c:\program files\Samsung\USB Drivers\22_WiBro_WiMAX\Uninstall.exe
AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe
AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-01-22 21:54
Windows 5.1.2600 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(740)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
.
- - - - - - - > 'explorer.exe'(2964)
c:\windows\system32\msi.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\AVG\AVG2012\avgnsx.exe
c:\windows\system32\wscntfy.exe
c:\windows\RTHDCPL.EXE
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
.
**************************************************************************
.
Celkový čas: 2012-01-22 21:59:20 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-01-22 20:59
.
Před spuštěním: 3 991 568 384
Po spuštění: 4 146 094 080
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - F6592B2FB648E8EF4C0465449BE990A4

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zvuk

#10 Příspěvek od Rudy »

Ještě dočistíme. Přesuňte ComboFix na plochu. Otevřte poznámkový blok a zkopírujte do něj:
Collect::
c:\program files\BS_Player\prxtbBS_0.dll

Registry::
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"=-
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek

Potřebuji znát typ základní desky, příp. zv.karty. Podle toho byste měl najít příslušný ovladač.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Kilop
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 22 led 2012 19:34

Re: Zvuk

#11 Příspěvek od Kilop »

Rudy píše:Ještě dočistíme. Přesuňte ComboFix na plochu. Otevřte poznámkový blok a zkopírujte do něj:
Collect::
c:\program files\BS_Player\prxtbBS_0.dll

Registry::
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"=-
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek

Potřebuji znát typ základní desky, příp. zv.karty. Podle toho byste měl najít příslušný ovladač.

Tady to máte :)

Typ základ. desky : Giga byte p41-es3g
Zvukovou kartu : Realtek HD audio / Realtek High Definition Audio "Nevím jestli je to ono snad jo.." :)

:

omboFix 12-01-21.02 - Já 22.01.2012 23:13:07.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.2046.1438 [GMT 1:00]
Spuštěný z: c:\documents and settings\Já\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Já\Plocha\CFScript.txt..txt
FW: AVG Firewall *Disabled* {8decf618-9569-4340-b34a-d78d28969b66}
.
file zipped: c:\program files\BS_Player\prxtbBS_0.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\BS_Player\prxtbBS_0.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-12-22 do 2012-01-22 )))))))))))))))))))))))))))))))
.
.
2012-01-22 20:20 . 2012-01-22 20:21 -------- d-----w- c:\program files\AVG Secure Search
2012-01-22 18:45 . 2012-01-22 18:51 -------- d-----w- c:\program files\trend micro
2012-01-22 18:44 . 2012-01-22 18:52 -------- d-----w- C:\rsit
2012-01-22 18:19 . 2012-01-22 18:19 -------- d-----w- c:\documents and settings\Já\Data aplikací\AVG2012
2012-01-22 18:17 . 2012-01-22 18:17 -------- d-----w- c:\documents and settings\Já\Data aplikací\AVG Secure Search
2012-01-22 18:17 . 2012-01-22 18:17 -------- d-----w- c:\program files\Common Files\AVG Secure Search
2012-01-22 18:14 . 2012-01-22 19:08 -------- d-----w- c:\windows\system32\drivers\AVG
2012-01-22 18:12 . 2012-01-22 18:12 -------- d-----w- c:\program files\AVG
2012-01-22 17:43 . 2010-12-14 03:54 65824 ----a-w- c:\windows\system32\RTLTEAMING_NB.DLL
2012-01-22 17:43 . 2010-12-14 03:54 36384 ----a-w- c:\windows\system32\drivers\RTLTEAMING.SYS
2012-01-22 17:43 . 2010-12-14 03:54 22016 ----a-w- c:\windows\system32\drivers\RtNdPt5x.sys
2012-01-22 17:43 . 2010-12-14 03:54 17536 ----a-w- c:\windows\system32\drivers\RTLVLAN.SYS
2012-01-22 16:23 . 2011-09-21 09:25 21992 ----a-w- c:\windows\system32\drivers\cpuz135_x32.sys
2012-01-22 16:23 . 2012-01-22 16:23 -------- d-----w- c:\program files\CPUID
2012-01-22 15:31 . 2012-01-22 17:48 -------- d-----w- c:\windows\system32\RTCOM
2012-01-22 15:05 . 2012-01-22 15:05 -------- d-----w- c:\documents and settings\aaaa
2012-01-21 13:18 . 2005-07-19 20:10 77824 ------w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\ctor.dll
2012-01-21 13:18 . 2005-07-19 20:10 32768 ------w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\objectps.dll
2012-01-21 13:18 . 2005-07-19 20:10 221184 ------w- c:\program files\Common Files\InstallShield\IScript\IScript.dll
2012-01-21 13:18 . 2005-07-19 20:10 221184 ------w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\iuser.dll
2012-01-21 13:18 . 2005-07-19 20:10 212992 ----a-w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\ILog.dll
2012-01-21 13:17 . 2005-07-20 08:10 610436 ----a-w- c:\program files\Common Files\InstallShield\engine\6\Intel 32\IKernel.exe
2012-01-19 20:54 . 2012-01-21 13:44 -------- d-----w- c:\documents and settings\Já\riotsGamesLogs
2012-01-19 20:53 . 2012-01-19 20:53 -------- d-----w- c:\documents and settings\Já\Data aplikací\LolClient
2012-01-19 19:38 . 2012-01-19 19:38 -------- d-----w- C:\Riot Games
2012-01-19 19:09 . 2012-01-21 17:15 -------- d-----w- c:\documents and settings\Já\Local Settings\Data aplikací\PMB Files
2012-01-19 19:09 . 2012-01-19 19:09 -------- d-----w- c:\documents and settings\All Users\Data aplikac
2012-01-19 19:09 . 2012-01-19 19:09 -------- d-----w- c:\program files\Pando Networks
2012-01-19 19:08 . 2012-01-19 19:08 58 ----a-w- C:\user.js
2012-01-19 19:08 . 2012-01-19 19:08 -------- d-----w- c:\program files\Softonic
2012-01-17 21:46 . 2012-01-22 22:26 -------- d-----w- c:\program files\Steam
2012-01-15 18:38 . 2012-01-15 18:40 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-01-14 15:03 . 2012-01-14 15:03 -------- d-----w- c:\documents and settings\Já\Local Settings\Data aplikací\conduitEngine
2012-01-12 19:40 . 2012-01-13 16:41 -------- d-----w- c:\documents and settings\Já\Data aplikací\OpenOffice.org2
2012-01-12 19:37 . 2012-01-12 19:37 -------- d-----w- c:\program files\OpenOffice.org 2.3
2012-01-12 19:31 . 2012-01-12 19:31 -------- d-----w- c:\documents and settings\Já\Data aplikací\com.acrobat.createpdf.CreatePDFDesktop
2012-01-10 18:00 . 2012-01-10 18:00 -------- d-----w- c:\program files\Polda 2
2012-01-06 10:56 . 2012-01-06 10:56 -------- d-----w- c:\program files\CCleaner
2012-01-06 10:20 . 2012-01-06 10:20 -------- d-sh--w- c:\documents and settings\Já\PrivacIE
2012-01-06 10:14 . 2012-01-16 13:27 -------- d-----w- c:\windows\system32\cs-CZ
2012-01-06 10:14 . 2004-08-17 13:49 81920 ----a-w- c:\windows\system32\ieencode.dll
2012-01-06 10:14 . 2004-08-17 13:49 81920 ----a-w- c:\windows\system32\dllcache\ieencode.dll
2012-01-06 10:14 . 2001-10-25 14:00 68608 ----a-w- c:\windows\system32\plugin.ocx
2012-01-05 22:50 . 2012-01-05 22:50 -------- d-----w- c:\windows\system32\URTTEMP
2012-01-05 22:30 . 2012-01-05 22:30 -------- d-sh--w- c:\documents and settings\Já\IETldCache
2012-01-05 22:22 . 2012-01-05 22:22 -------- d--h--w- c:\windows\$hf_mig$
2012-01-04 20:02 . 2012-01-04 20:08 2829 ----a-w- c:\windows\War3Unin.pif
2012-01-04 20:02 . 2012-01-04 20:08 139264 ----a-w- c:\windows\War3Unin.exe
2012-01-04 19:58 . 2012-01-15 20:22 -------- d-----w- c:\program files\Warcraft III
2011-12-26 19:44 . 2011-12-26 19:44 -------- d-----w- c:\program files\AVAST Software
2011-12-24 11:56 . 2011-06-21 10:24 32768 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-12-08 06:09 . 2011-04-07 13:55 327400 ----a-w- c:\windows\system32\drivers\Rtenicxp.sys
2011-10-27 01:25 . 2011-12-08 21:32 14920 ----a-w- c:\windows\system32\drivers\sscdmdfl.sys
2011-10-27 01:25 . 2011-12-08 21:32 132424 ----a-w- c:\windows\system32\drivers\sscdmdm.sys
2011-10-27 01:25 . 2011-12-08 21:32 12616 ----a-w- c:\windows\system32\drivers\sscdcmnt.sys
2011-10-27 01:25 . 2011-12-08 21:32 12616 ----a-w- c:\windows\system32\drivers\sscdcm.sys
2011-10-27 01:25 . 2011-12-08 21:32 12488 ----a-w- c:\windows\system32\drivers\sscdwhnt.sys
2011-10-27 01:25 . 2011-12-08 21:32 12488 ----a-w- c:\windows\system32\drivers\sscdwh.sys
2011-10-27 01:25 . 2011-12-08 21:32 104648 ----a-w- c:\windows\system32\drivers\sscdbus.sys
2011-10-27 01:25 . 2011-12-08 21:33 114280 ----a-w- c:\windows\system32\drivers\ssadserd.sys
2011-10-27 01:25 . 2011-12-08 21:33 30312 ----a-w- c:\windows\system32\drivers\ssadadb.sys
2011-10-27 01:25 . 2011-12-08 21:33 1416680 ----a-w- c:\windows\system32\WdfCoInstaller01005.dll
2011-10-27 01:25 . 2011-12-08 21:33 136808 ----a-w- c:\windows\system32\drivers\ssadmdm.sys
2011-10-27 01:25 . 2011-12-08 21:33 12776 ----a-w- c:\windows\system32\drivers\ssadmdfl.sys
2011-10-27 01:25 . 2011-12-08 21:33 10472 ----a-w- c:\windows\system32\drivers\ssadcmnt.sys
2011-10-27 01:25 . 2011-12-08 21:33 121064 ----a-w- c:\windows\system32\drivers\ssadbus.sys
2011-10-27 01:25 . 2011-12-08 21:33 10344 ----a-w- c:\windows\system32\drivers\ssadwhnt.sys
2011-10-27 01:25 . 2011-12-08 16:08 10472 ----a-w- c:\windows\system32\drivers\ssadcm.sys
2011-10-27 01:25 . 2011-12-08 16:08 1416680 ----a-w- c:\windows\system32\drivers\WdfCoInstaller01005.dll
2011-10-27 01:25 . 2011-12-08 16:08 10344 ----a-w- c:\windows\system32\drivers\ssadwh.sys
2011-12-21 07:39 . 2012-01-15 18:50 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-01-22 20:21 1574240 ----a-w- c:\program files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68}]
2012-01-11 14:29 241872 ----a-w- c:\program files\Softonic\softonic\1.5.11.5\bh\softonic.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{5018CFD2-804D-4C99-9F81-25EAEA2769DE}"= "c:\program files\Softonic\softonic\1.5.11.5\softonicTlbr.dll" [2012-01-11 250064]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files\AVG Secure Search\9.0.0.23\AVG Secure Search_toolbar.dll" [2012-01-22 1574240]
.
[HKEY_CLASSES_ROOT\clsid\{5018cfd2-804d-4c99-9f81-25eaea2769de}]
[HKEY_CLASSES_ROOT\Softonic.dskBnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}]
[HKEY_CLASSES_ROOT\Softonic.dskBnd]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files\Steam\steam.exe" [2012-01-17 1242448]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-12-09 4616064]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-07-07 98304]
"BCU"="c:\program files\DeviceVM\Browser Configuration Utility\BCU.exe" [2009-10-15 375000]
"RTHDCPL"="RTHDCPL.EXE" [2011-08-09 20055144]
"AVG_TRAY"="c:\program files\AVG\AVG2012\avgtray.exe" [2011-12-03 2415456]
"vProt"="c:\program files\AVG Secure Search\vprot.exe" [2012-01-22 892768]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54 551296 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^Já^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
path=c:\documents and settings\Já\Nabídka Start\Programy\Po spuštění\OpenOffice.org 2.3.lnk
backup=c:\windows\pss\OpenOffice.org 2.3.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCU]
2009-10-15 12:06 375000 ----a-w- c:\program files\DeviceVM\Browser Configuration Utility\BCU.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium]
2011-07-18 13:26 6812032 ----a-w- c:\program files\QIP 2010\qip.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
2011-12-08 01:33 935824 ----a-w- c:\program files\Samsung\Kies\KiesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR]
2011-12-08 01:33 21392 ----a-w- c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
2011-12-08 01:33 3508624 ----a-w- c:\program files\Samsung\Kies\KiesTrayAgent.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2010-02-22 10:42 26101032 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2012-01-17 21:47 1242448 ----a-w- c:\program files\Steam\Steam.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
2011-12-09 00:44 4616064 ----a-w- c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Warcraft III\\Warcraft III.exe"=
"c:\\Program Files\\Warcraft III\\War3.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\QIP 2010\\qip.exe"=
"c:\\Program Files\\Mozilla Firefox\\plugin-container.exe"=
"c:\\Program Files\\XChat-WDK\\xchat.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Garena Plus\\Room\\garena_room.exe"=
"c:\\Documents and Settings\\Já\\Plocha\\utorrent.exe"=
"c:\\Program Files\\DsNET Corp\\aTube Catcher 2.0\\yct.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\dota 2 beta\\dota.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgnsx.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgdiagex.exe"=
"c:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe"=
"c:\\Program Files\\Steam\\steamapps\\free7stylsoft\\counter-strike\\hl.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"8170:TCP"= 8170:TCP:Generic Host Process
"8000:TCP"= 8000:TCP:Generic Host Process
"57854:TCP"= 57854:TCP:Pando Media Booster
"57854:UDP"= 57854:UDP:Pando Media Booster
.
R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [11.7.2011 1:14 23120]
R1 AppleCharger;AppleCharger;c:\windows\system32\drivers\AppleCharger.sys [7.4.2011 14:55 19496]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [11.7.2011 1:14 295248]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [22.7.2011 17:27 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [12.7.2011 22:55 67664]
R2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCore.exe [12.8.2011 0:38 116608]
R2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2012\avgwdsvc.exe [2.8.2011 6:09 192776]
R2 BCUService;Browser Configuration Utility Service;c:\program files\DeviceVM\Browser Configuration Utility\BCUService.exe [15.10.2009 13:06 223464]
R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [22.1.2012 17:23 21992]
R2 RtNdPt5x;Realtek NDIS Protocol Driver;c:\windows\system32\drivers\RtNdPt5x.sys [22.1.2012 18:43 22016]
R2 vToolbarUpdater;vToolbarUpdater;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\9.0.1\ToolbarUpdater.exe [22.1.2012 19:17 869216]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18.3.2010 12:16 130384]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [22.1.2012 16:30 1691480]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [8.12.2011 22:33 30312]
S3 AppleChargerSrv;AppleChargerSrv;system32\AppleChargerSrv.exe --> system32\AppleChargerSrv.exe [?]
S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [8.12.2011 22:16 20032]
S3 GGSAFERDriver;GGSAFER Driver;\??\c:\program files\Garena Plus\Room\safedrv.sys --> c:\program files\Garena Plus\Room\safedrv.sys [?]
S3 RTLTEAMING;Realtek Intermediate Driver for Ethernet Extended Features;c:\windows\system32\drivers\RTLTEAMING.SYS [22.1.2012 18:43 36384]
S3 RTLVLAN;Realtek VLAN Intermediate Driver;c:\windows\system32\drivers\RTLVLAN.SYS [22.1.2012 18:43 17536]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [8.12.2011 22:33 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [8.12.2011 22:33 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [8.12.2011 22:33 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [8.12.2011 22:33 114280]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18.3.2010 12:16 753504]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=10&cc=
uDefault_Search_URL = hxxp://search.qip.ru
mStart Page = hxxp://search.foxtab.com/?s=0&chnl=dcom&cd=2XzutBtN2Y1L1QzutC0CyC0FyCyDzzzzyDyC0EyEtA0EtAyD0CtN0D0TzutBtDtCtCtDzztCyC&cr=1297912481
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://search.qip.ru/ie
TCP: DhcpNameServer = 192.168.2.1
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\Common Files\AVG Secure Search\ViProtocolInstaller\9.0.1\ViProtocol.dll
FF - ProfilePath - c:\documents and settings\Já\Data aplikací\Mozilla\Firefox\Profiles\22zw69vy.default\
FF - prefs.js: browser.search.selectedEngine - Search the web (Softonic)
FF - prefs.js: browser.startup.homepage - seznam.cz
FF - prefs.js: keyword.URL - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=2&cc=&q=
FF - prefs.js: network.proxy.type - 4
FF - user.js: extensions.softonic_i.hmpg - true
FF - user.js: extensions.softonic_i.hmpgUrl - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=13&cc=
FF - user.js: extensions.softonic_i.dfltSrch - true
FF - user.js: extensions.softonic_i.srchPrvdr - Search the web (Softonic)
FF - user.js: extensions.softonic_i.keyWordUrl - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=2&cc=&q=
FF - user.js: extensions.softonic_i.dnsErr - true
FF - user.js: extensions.softonic_i.newTab - true
FF - user.js: extensions.softonic_i.newTabUrl - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=15&cc=
FF - user.js: extensions.softonic_i.tlbrSrchUrl - hxxp://search.softonic.com/MON00005/tb_v1?SearchSource=1&cc=&q=
FF - user.js: extensions.softonic_i.id - 0cb3e35c0000000000001c6f658856e4
FF - user.js: extensions.softonic_i.instlDay - 15358
FF - user.js: extensions.softonic_i.vrsn - 1.5.11.5
FF - user.js: extensions.softonic_i.vrsni - 1.5.11.5
FF - user.js: extensions.softonic_i.vrsnTs - 1.5.11.520:08
FF - user.js: extensions.softonic_i.prtnrId - softonic
FF - user.js: extensions.softonic_i.prdct - softonic
FF - user.js: extensions.softonic_i.aflt - SD
FF - user.js: extensions.softonic_i.smplGrp - eng7
FF - user.js: extensions.softonic_i.tlbrId - en11DECdefault
FF - user.js: extensions.softonic_i.instlRef - MON00005
FF - user.js: extensions.softonic_i.dfltLng -
FF - user.js: extensions.softonic_i.excTlbr - false
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-01-22 23:27
Windows 5.1.2600 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(740)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
.
- - - - - - - > 'explorer.exe'(4044)
c:\windows\system32\msi.dll
c:\program files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\AVG\AVG2012\avgnsx.exe
c:\windows\system32\wscntfy.exe
c:\windows\RTHDCPL.EXE
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
.
**************************************************************************
.
Celkový čas: 2012-01-22 23:31:04 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-01-22 22:31
ComboFix2.txt 2012-01-22 20:59
.
Před spuštěním: 3 964 928 000
Po spuštění: 3 953 803 264
.
- - End Of File - - 3AE41D4F33FF771A9E0BFBB3624C4A34
Nahr nˇ probŘhlo ŁspŘçnŘ

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zvuk

#12 Příspěvek od Rudy »

CF mazal i přesto, že jste chybně uložil skript. CFScript.txt..txt namísto CFScript.txt .

Ovladač by měl být tento: http://download.gigabyte.eu/FileList/Dr ... azalia.exe . Není to zase takový problém najít, stačily mne k tomu 3 kliky.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Kilop
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 22 led 2012 19:34

Re: Zvuk

#13 Příspěvek od Kilop »

a Mám něco odinstalovat a potom nainstalovat tento ovladač?

PS : mám vám to udělat ještě jednou přes ten poznámkovej bloček? :)

Kilop
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 22 led 2012 19:34

Re: Zvuk

#14 Příspěvek od Kilop »

Díky moc chyba zmizela .. teďka testuju jestli se zvuk nevypne a jinak ty Logy co jsem sem hodil jsou čistý? :)

a DÍKY MOC!

Kilop
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 22 led 2012 19:34

Re: Zvuk

#15 Příspěvek od Kilop »

Testoval jsem to zase na counter striku a zvuk se zase po nějaké době vypl.. :(

Opravuji je to sluchátkama, už sem je vyhodil byl naštipnut drátek. :) jen bych chtěl vědět jestli sou čistý ty logy nebo co se sníma provádí a můžeme zavřít tuto debatu.. :)

Moc díky tomuto foru za dobrou pomoc a rychlý odpovědi,+ dobrá aktivita. Určo tu nejsu po prvé a naposled.

AHOJTE A DÍKY MOC!!
Naposledy upravil(a) Kilop dne 23 led 2012 16:56, celkem upraveno 1 x.

Odpovědět