Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Nouzový režim PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Uživatelský avatar
rarasek
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 07 bře 2012 08:19

Nouzový režim PC

#1 Příspěvek od rarasek »

Dobrý den, mám asi zavirovaný počítač. Přestal mi jít zvuk ,systém je hrozně pomalý a PC jde pouze v nouzovém režimu.Prosím Vás mohli by jste mi pomoci tuto závadu odstranit? Předem děkuji.
Připojuji oba logy z RZITU.
---------------------------------------------------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Jonáš at 2012-03-07 08:39:55
WIN_VISTA Service Pack 2
System drive C: has 49 GB (32%) free of 153 GB
Total RAM: 2039 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:40:19, on 7.3.2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Safe mode with network support

Running processes:
C:\Windows\Explorer.EXE
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Jonáš\Desktop\RSIT.exe
C:\Program Files\trend micro\Jonáš.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1:9421;
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Labtec\WebCam10\WebCam10.exe" /hide
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime Alternative\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKCU\..\Run: [Center Agent] C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Windows\TEMP\E_S5A0B.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series (kopie 1)] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Windows\TEMP\E_S935B.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Jonáš\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Jonáš\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Badoo Desktop] C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User '?')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User '?')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Center Agent] C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Google Update] "C:\Users\Jonáš\AppData\Local\Google\Update\GoogleUpdate.exe" /c (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Akamai NetSession Interface] "C:\Users\Jonáš\AppData\Local\Akamai\netsession_win.exe" (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [AdobeBridge] (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Badoo Desktop] C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe (User '?')
O4 - S-1-5-21-458586356-3566987795-1268713004-1000 Startup: PowerReg Scheduler.exe (User '?')
O4 - Startup: PowerReg Scheduler.exe
O4 - Global Startup: Remote Control.lnk = C:\Program Files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (file missing)
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: LVSrvLauncher - Labtec Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 8936 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-458586356-3566987795-1268713004-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-458586356-3566987795-1268713004-1000UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default

prefs.js - "browser.startup.homepage" - "http://www.google.cz/"
prefs.js - "keyword.URL" - "http://search.babylon.com/?AF=109993&ba ... bafbaf1&q="

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\Alwil Software\Avast5\WebRep\FF
"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video
"{6904342A-8307-11DF-A508-4AE2DFD72085}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nexon.net/NxGame]
"Description"=Nexon Game Controller
"Path"=C:\ProgramData\NexonUS\NGM\npNxGameUS.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@ngm.nexoneu.com/NxGame]
"Description"=Nexon Game Controller
"Path"=C:\ProgramData\NexonEU\NGM\npNxGameeu.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69]
"Description"=6.0.12.69
"Path"=C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.1.11]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
nppdf32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default\extensions\
battlefieldplay4free@ea.com
cs@dictionaries.addons.mozilla.org
{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-02-23 998560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-10-18 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo Layers - C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll [2011-06-21 787744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-02-23 998560]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-26 138008]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-26 154392]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-26 133912]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe [2007-03-06 488984]
""= []
"LogitechQuickCamRibbon"=C:\Program Files\Labtec\WebCam10\WebCam10.exe [2007-03-06 1060376]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2012-02-23 4031368]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-12-23 500208]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"QuickTime Task"=C:\Program Files\QuickTime Alternative\QTTask.exe [2010-11-29 421888]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2011-03-21 1230704]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-02-28 1987976]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-08-26 10828392]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"=C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe [2007-01-19 864768]
"EPSON Stylus DX4400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"EPSON Stylus DX4400 Series (kopie 1)"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-01-15 147456]
"Google Update"=C:\Users\Jonáš\AppData\Local\Google\Update\GoogleUpdate.exe [2011-01-23 136176]
"Akamai NetSession Interface"=C:\Users\Jonáš\AppData\Local\Akamai\netsession_win.exe [2012-02-02 3329824]
"AdobeBridge"= []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"Badoo Desktop"=C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe [2011-10-05 1051760]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Remote Control.lnk - C:\Program Files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe

C:\Users\Jonáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PowerReg Scheduler.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-22 200704]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"MSVideo"=vfwwdm32.dll
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"vidc.mpng"=C:\Program Files\t@b\0.958\686\tabdec.dll
"vidc.mvjp"=C:\Program Files\t@b\0.958\686\tabdec.dll
"vidc.444p"=C:\Program Files\t@b\0.958\686\tabdec.dll
"VIDC.FPS1"=frapsvid.dll
"vidc.dvsd"=pdvcodec.dll
"VIDC.FFDS"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
"vidc.mjpg"=bdmjpeg.dll
"vidc.mpeg"=bdmpegv.dll
"msacm.bdmpeg"=bdmpega.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-03-07 08:39:55 ----D---- C:\rsit
2012-03-07 08:39:55 ----D---- C:\Program Files\trend micro
2012-03-06 22:47:22 ----D---- C:\Program Files\ESET
2012-03-06 22:44:02 ----A---- C:\Windows\ntbtlog.txt
2012-03-06 22:30:53 ----D---- C:\Windows\system32\RTCOM
2012-03-06 22:29:38 ----A---- C:\Windows\system32\WavesLib.dll
2012-03-06 22:29:38 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-03-06 22:29:38 ----A---- C:\Windows\system32\tosade.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\tadefxapo2.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\tadefxapo.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSWOW.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSTSXT.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSTSHD.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSHP360.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SFNHK.dll
2012-03-06 22:29:36 ----A---- C:\Windows\system32\SFCOM.dll
2012-03-06 22:29:36 ----A---- C:\Windows\system32\SFAPO.dll
2012-03-06 22:29:36 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2012-03-06 22:29:35 ----A---- C:\Windows\system32\RtkPgExt.dll
2012-03-06 22:29:35 ----A---- C:\Windows\system32\RtkCoInst.dll
2012-03-06 22:29:35 ----A---- C:\Windows\system32\RtkApoApi.dll
2012-03-06 22:29:34 ----A---- C:\Windows\system32\RtkAPO.dll
2012-03-06 22:29:34 ----A---- C:\Windows\system32\RTEEP32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RTEEL32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RTEEG32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RTEED32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RP3DHT32.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RP3DAA32.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RCoRes.dat
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEP32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEL32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEG32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EED32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEA32A.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\KAAPORT.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\FMAPO.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\AERTARen.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\AERTACap.dll
2012-03-06 22:21:04 ----A---- C:\user.js
2012-03-06 22:21:01 ----D---- C:\Program Files\BabylonToolbar
2012-03-06 22:20:38 ----D---- C:\ProgramData\Babylon
2012-03-06 22:20:37 ----D---- C:\Users\Jonáš\AppData\Roaming\Babylon
2012-03-05 22:01:02 ----HD---- C:\Program Files\Temp
2012-03-05 19:33:38 ----D---- C:\ProgramData\NexonEU
2012-03-05 18:28:50 ----D---- C:\ProgramData\Nexon
2012-03-05 17:22:42 ----D---- C:\Program Files\BandiMPEG1
2012-03-05 17:11:28 ----D---- C:\Nexon
2012-03-05 17:07:21 ----D---- C:\ProgramData\NexonUS
2012-03-01 08:42:52 ----D---- C:\Program Files\LogMeIn Hamachi
2012-02-29 22:03:04 ----D---- C:\Program Files\MatroskaProp
2012-02-29 22:02:33 ----D---- C:\Program Files\Matroska Pack
2012-02-27 08:16:25 ----D---- C:\Program Files\Google
2012-02-21 15:34:16 ----A---- C:\Windows\system32\NVUNINST.EXE
2012-02-21 15:33:58 ----D---- C:\NVIDIA
2012-02-16 17:46:12 ----D---- C:\ProgramData\Badoo
2012-02-16 15:20:45 ----A---- C:\Windows\system32\mshtmled.dll
2012-02-16 15:20:44 ----A---- C:\Windows\system32\jscript.dll
2012-02-16 15:20:44 ----A---- C:\Windows\system32\iertutil.dll
2012-02-16 15:20:43 ----A---- C:\Windows\system32\jscript9.dll
2012-02-16 15:20:42 ----A---- C:\Windows\system32\wininet.dll
2012-02-16 15:20:42 ----A---- C:\Windows\system32\url.dll
2012-02-16 15:20:42 ----A---- C:\Windows\system32\ieui.dll
2012-02-16 15:20:41 ----A---- C:\Windows\system32\jsproxy.dll
2012-02-16 15:20:39 ----A---- C:\Windows\system32\mshtml.dll
2012-02-16 15:20:36 ----A---- C:\Windows\system32\ieframe.dll
2012-02-16 15:20:35 ----A---- C:\Windows\system32\urlmon.dll
2012-02-15 07:22:44 ----A---- C:\Windows\system32\win32k.sys
2012-02-15 07:22:43 ----A---- C:\Windows\system32\msvcrt.dll

======List of files/folders modified in the last 1 month======

2012-03-07 08:39:55 ----RD---- C:\Program Files
2012-03-07 07:20:51 ----D---- C:\Windows\Temp
2012-03-06 22:44:02 ----AD---- C:\Windows
2012-03-06 22:42:29 ----D---- C:\Users\Jonáš\AppData\Roaming\Skype
2012-03-06 22:38:21 ----D---- C:\Windows\Prefetch
2012-03-06 22:33:44 ----D---- C:\Program Files\Common Files\Akamai
2012-03-06 22:31:06 ----AD---- C:\Windows\System32
2012-03-06 22:30:53 ----D---- C:\Windows\system32\drivers
2012-03-06 22:30:47 ----D---- C:\Windows\system32\catroot
2012-03-06 22:30:46 ----D---- C:\Windows\system32\catroot2
2012-03-06 22:30:42 ----D---- C:\Windows\inf
2012-03-06 22:30:04 ----A---- C:\Windows\DIFxAPI.dll
2012-03-06 22:29:25 ----HD---- C:\Program Files\InstallShield Installation Information
2012-03-06 22:20:38 ----HD---- C:\ProgramData
2012-03-06 21:26:31 ----D---- C:\Users\Jonáš\AppData\Roaming\uTorrent
2012-03-05 22:19:20 ----D---- C:\Program Files\Realtek
2012-03-05 20:09:17 ----SHD---- C:\System Volume Information
2012-03-05 16:40:56 ----D---- C:\ProgramData\PMB Files
2012-03-04 14:00:30 ----SHD---- C:\Windows\Installer
2012-03-03 11:45:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-02-28 21:34:11 ----D---- C:\Program Files\EA Games
2012-02-27 08:17:21 ----D---- C:\Windows\Tasks
2012-02-27 08:17:21 ----D---- C:\Windows\system32\Tasks
2012-02-26 21:43:40 ----A---- C:\Windows\system32\PnkBstrB.exe
2012-02-26 14:20:48 ----A---- C:\Windows\system32\PnkBstrA.exe
2012-02-23 17:23:21 ----A---- C:\Windows\system32\aswBoot.exe
2012-02-23 11:07:29 ----RSD---- C:\Windows\assembly
2012-02-22 10:19:39 ----D---- C:\Program Files\Turbine
2012-02-21 15:16:01 ----D---- C:\Program Files\GameSpy Arcade
2012-02-21 15:15:15 ----RD---- C:\Users
2012-02-17 22:12:53 ----D---- C:\Program Files\Mozilla Firefox
2012-02-16 16:04:47 ----D---- C:\Windows\Microsoft.NET
2012-02-16 16:04:14 ----D---- C:\Windows\winsxs
2012-02-16 15:40:00 ----D---- C:\Windows\system32\migration
2012-02-16 15:40:00 ----D---- C:\Program Files\Internet Explorer
2012-02-16 15:22:15 ----A---- C:\Windows\system32\mrt.exe
2012-02-16 15:20:20 ----D---- C:\Program Files\Windows Mail
2012-02-15 17:53:00 ----D---- C:\Users\Jonáš\AppData\Roaming\Sony

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2012-02-23 35672]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2007-01-15 70144]
S1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-02-23 610648]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-02-23 337112]
S1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-02-23 53848]
S1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2009-12-17 26024]
S2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys []
S2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-02-23 20696]
S2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-02-23 57688]
S3 3xHybrid;3xHybrid service; C:\Windows\system32\DRIVERS\3xHybrid.sys [2007-01-18 670592]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 EagleXNt;EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys []
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-22 1662464]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-22 1662464]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-08-30 3659240]
S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys [2007-03-06 1669664]
S3 LVMVDrv;Logitech Machine Vision Engine Loader; C:\Windows\system32\DRIVERS\LVMVDrv.sys [2007-03-06 2261792]
S3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2007-03-06 41376]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 Ph3xIB32;Philips 713x Inbox PCI TV Card; C:\Windows\system32\DRIVERS\Ph3xIB32.sys [2006-11-02 1083520]
S3 PID_0928;Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561AV.SYS [2007-03-06 491168]
S3 Revoflt;Revoflt; C:\Windows\system32\DRIVERS\revoflt.sys [2009-12-30 27192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 XDva380;XDva380; \??\C:\Windows\system32\XDva380.sys []
S3 XDva383;XDva383; \??\C:\Windows\system32\XDva383.sys []
S3 XDva385;XDva385; \??\C:\Windows\system32\XDva385.sys []
S3 XDva390;XDva390; \??\C:\Windows\system32\XDva390.sys []
S3 XDva393;XDva393; \??\C:\Windows\system32\XDva393.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 1373576]
S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 Akamai;Akamai NetSession Interface; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2012-02-23 44768]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-02-27 136176]
S2 LVSrvLauncher;LVSrvLauncher; C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe [2007-03-06 105248]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-02-26 75136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-02-27 136176]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-01-15 266240]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-04-28 403240]
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
rarasek
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 07 bře 2012 08:19

Re: Nouzový režim PC

#2 Příspěvek od rarasek »

Druhý LOG!!!!!!!
-------------------------------------
info.txt logfile of random's system information tool 1.09 2012-03-07 08:40:24

======Uninstall list======

-->C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Windows\UNNeroBackItUp.exe /UNINSTALL
-->C:\Windows\UNNeroMediaHome.exe /UNINSTALL
-->C:\Windows\UNNeroShowTime.exe /UNINSTALL
-->C:\Windows\UNNeroVision.exe /UNINSTALL
-->C:\Windows\UNRecode.exe /UNINSTALL
µTorrent-->"C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{ACEB2BAF-96DF-48FD-ADD5-43842D4C443D}
Adobe Community Help-->msiexec /qb /x {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Flash Player 11 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil11e_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil11f_Plugin.exe -maintain plugin
Adobe Media Player-->msiexec /qb /x {DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Reader X (10.1.2) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AA1000000001}
Adobe Shockwave Player 11.6-->"C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe"
Aegisub 2.1.8-->"C:\Program Files\Aegisub\unins000.exe"
Akamai NetSession Interface-->C:\Program Files\Common Files\Akamai\uninstall.exe
Apple Application Support-->MsiExec.exe /I{EE6097DD-05F4-4178-9719-D3170BF098E8}
Ashampoo Burning Studio 9.21-->"C:\Program Files\Ashampoo\Ashampoo Burning Studio 9\unins000.exe"
Ashampoo Photo Commander 7.31-->"C:\Program Files\Ashampoo\Ashampoo Photo Commander 7\unins000.exe"
avast! Free Antivirus-->C:\Program Files\Alwil Software\Avast5\aswRunDll.exe "C:\Program Files\Alwil Software\Avast5\Setup\setiface.dll" RunSetup
Babylon toolbar on IE-->"C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\uninstall.exe"
Badoo Desktop-->MsiExec.exe /X{040FF9BD-17BE-427B-85DD-67694FB8F786}
Bandisoft MPEG-1 Decoder-->"C:\Program Files\BandiMPEG1\uninstall.exe"
BS.Player PRO-->"C:\Program Files\Webteh\BSplayerPro\uninstall.exe"
CloneDVD2-->"C:\Program Files\Elaborate Bytes\CloneDVD2\CloneDVD2-uninst.exe" /D="C:\Program Files\Elaborate Bytes\CloneDVD2"
Combined Community Codec Pack 2011-07-30-->"C:\Program Files\Combined Community Codec Pack\unins000.exe"
EPSON Copy Utility 3-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{67EDD823-135A-4D59-87BD-950616D6E857}\SETUP.EXE" -l0x9 -UnInstall
EPSON Printer Software-->C:\Windows\system32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
EPSON Scan-->C:\Program Files\epson\escndv\setup\setup.exe /r
Fraps (remove only)-->"C:\Fraps\uninstall.exe"
GameSpy Arcade-->C:\PROGRA~1\GAMESP~1\UNWISE.EXE C:\PROGRA~1\GAMESP~1\INSTALL.LOG
GIMP 2.6.11-->"C:\Program Files\GIMP-2.0\setup\unins000.exe"
Google Chrome-->"C:\Program Files\Google\Chrome\Application\17.0.963.56\Installer\setup.exe" --uninstall --multi-install --chrome --system-level --verbose-logging
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
HyperMediaCenter-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6AE9A059-6372-435D-A5FE-0568A3B67F19}\Setup.exe" -l0x9
Intel(R) Graphics Media Accelerator Driver-->C:\Windows\system32\igxpun.exe -uninstall
Java(TM) 6 Update 29-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216022FF}
K-Lite Codec Pack 5.8.3 (Basic)-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
KWorld TV Tuner Card Utilities-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{49F864F5-1A85-4E69-8764-C7E4EABD8BA0}\Setup.exe" -l0x9 -uninst
KWorld TV713X BDA Driver-->C:\Windows\p3xunist.exe
Labtec WebCam-->MsiExec.exe /X{995BF1A7-30E5-49E5-A0E4-AD3213D9E330}
Labtec® Camera Driver-->"C:\Program Files\Common Files\Labtec\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
Logitech Audio Echo Cancellation Component-->MsiExec.exe /X{BEF726DD-4037-4214-8C6A-E625C02D2870}
Logitech Video Enumerator-->MsiExec.exe /X{EA516024-D84D-41F1-814F-83175A6188F2}
LogMeIn Hamachi-->C:\Windows\system32\\msiexec.exe /i {E2494AD8-314D-44F8-B39C-4358A60DC184} REMOVE=ALL
LogMeIn Hamachi-->MsiExec.exe /I{E2494AD8-314D-44F8-B39C-4358A60DC184}
MediaInfo 0.7.48-->C:\Program Files\MediaInfo\uninst.exe
Microsoft .NET Framework 1.1 Security Update (KB2656353)-->"C:\Windows\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\Windows\Microsoft.NET\Framework\v1.1.4322\Updates\M2656353\M2656353Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 3.5 Language Pack SP1 - csy-->MsiExec.exe /I{DD73CA82-EA82-38AA-863D-9A24A018DC96}
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /lcid 1029 /parameterfolder ClientLP
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->MsiExec.exe /X{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
Microsoft .NET Framework 4 Extended CSY Language Pack-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\Setup.exe /repair /x86 /lcid 1029 /parameterfolder ExtendedLP
Microsoft .NET Framework 4 Extended CSY Language Pack-->MsiExec.exe /X{A2DE62D8-EF1B-36CB-B461-B1E221ED8608}
Microsoft .NET Framework 4 Extended-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\Setup.exe /repair /x86 /parameterfolder Extended
Microsoft .NET Framework 4 Extended-->MsiExec.exe /X{0A0CADCF-78DA-33C4-A350-CD51849B9702}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570-->MsiExec.exe /X{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319-->MsiExec.exe /X{196BB40D-1578-3D01-B289-BEFC77A11A1E}
Microsoft XNA Framework Redistributable 3.1-->MsiExec.exe /I{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}
Mozilla Firefox 10.0.2 (x86 cs)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSVCRT Redists-->MsiExec.exe /I{5DF7AA5E-A1CB-11E0-A7D6-0013D3D69929}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MVision-->MsiExec.exe /I{35725FBC-A136-4A46-9F29-091759D9BB93}
Need for Speed™ Most Wanted-->C:\Program Files\EA GAMES\Need for Speed Most Wanted\EAUninstall.exe
OpenLibraries-->C:\Program Files\OpenLibraries\uninst-openlibraries.exe
OpenOffice.org 3.2-->MsiExec.exe /I{5DE71D48-01EB-4BF2-A643-50FE6C9B6AC9}
Pando Media Booster-->C:\Program Files\Pando Networks\Media Booster\uninst.exe
QuickTime Alternative 2.7.0-->"C:\Program Files\QuickTime Alternative\unins000.exe"
QuickTime-->MsiExec.exe /I{57752979-A1C9-4C02-856B-FBB27AC4E02C}
Real Alternative 1.9.0-->"C:\Program Files\Real Alternative\unins000.exe"
Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x0005 -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Revo Uninstaller Pro 2.4.1-->"C:\Program Files\VS Revo Group\Revo Uninstaller Pro\unins000.exe"
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {F6F5AC31-9833-3E77-AC8E-8E910CAB39AE} /qb+ REBOOTPROMPT=""
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {3E0806DB-3085-378A-840A-F0D3AE3609D1} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7E97AB83-C1FE-38DE-B848-877E0A4BD81E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {DB31DEDD-BF95-31E7-A9B7-5480561CEFF3} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {8DDEFC7E-0C61-3D11-AFC6-5414F2DAFD01} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2478663)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2518870)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {42A3562E-8B4E-39A4-B82D-CC12F82889E3} /parameterfolder Extended
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Extended
Skype Click to Call-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 5.5-->MsiExec.exe /X{AA59DDE4-B672-4621-A016-4C248204957A}
swMSM-->MsiExec.exe /I{612C34C7-5E90-47D8-9B5C-0F717DD82726}
TeamSpeak 3 Client-->"C:\Program Files\TeamSpeak 3 Client\uninstall.exe"
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Client
Update for Microsoft .NET Framework 4 Extended (KB2468871)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2533523)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Extended
VC80CRTRedist - 8.0.50727.4053-->MsiExec.exe /I{5EE7D259-D137-4438-9A5F-42F432EC0421}
Vegas Pro 10.0-->MsiExec.exe /X{5AC11070-A1CB-11E0-A0DC-0013D3D69929}
VLC media player 1.1.11-->C:\Program Files\VideoLAN\VLC\uninstall.exe
WinRAR-->C:\Program Files\WinRAR\uninstall.exe
Yontoo Layers Runtime 1.10.01-->C:\PROGRA~2\TARMAI~1\{889DF~1\Setup.exe /remove /q0

======Hosts File======

127.0.0.1 activate.adobe.com

Securitycenter WMI appears to be broken

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\OpenLibraries\bin;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\QuickTime Alternative\QTSystem\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 2, GenuineIntel
"PROCESSOR_REVISION"=0f02
"NUMBER_OF_PROCESSORS"=2
"configsetroot"=%SystemRoot%\ConfigSetRoot
"PYTHONPATH"=C:\Program Files\OpenLibraries\python
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"SAFEBOOT_OPTION"=NETWORK

-----------------EOF-----------------

Uživatelský avatar
rarasek
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 07 bře 2012 08:19

Re: Nouzový režim PC

#3 Příspěvek od rarasek »

Dobrý den. Včera jsem Vás poprosil o pomoc s PC a zatím se mi nikdo neozval. Prosím Vás , zda by mi mohl od Vás někdo pomoci. Předem Vám moc děkuji.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nouzový režim PC

#4 Příspěvek od motji »

Dobrý večer :)

Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
rarasek
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 07 bře 2012 08:19

Re: Nouzový režim PC

#5 Příspěvek od rarasek »

ComboFix 12-03-10.01 - Jonáš 10.03.2012 12:24:35.1.2 - x86
Spuštěný z: c:\users\JonßÜ\Desktop\ComboFix.exe
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Tarma Installer
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setup.dll
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.dat
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.exe
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.ico
c:\windows\IsUn0407.exe
c:\windows\PFRO.log
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-10 do 2012-03-10 )))))))))))))))))))))))))))))))
.
.
2012-03-10 11:37 . 2012-03-10 11:38 -------- d-----w- c:\users\Jonáš\AppData\Local\temp
2012-03-10 11:37 . 2012-03-10 11:37 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Malwarebytes
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\programdata\Malwarebytes
2012-03-08 13:04 . 2012-03-08 15:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-03-07 07:39 . 2012-03-09 13:01 -------- d-----w- c:\program files\trend micro
2012-03-07 07:39 . 2012-03-07 07:40 -------- d-----w- C:\rsit
2012-03-06 21:47 . 2012-03-06 21:47 -------- d-----w- c:\program files\ESET
2012-03-06 21:30 . 2012-03-06 21:30 -------- d-----w- c:\windows\system32\RTCOM
2012-03-06 21:21 . 2012-03-06 21:21 237 ----a-w- C:\user.js
2012-03-06 21:21 . 2012-03-06 21:21 -------- d-----w- c:\program files\BabylonToolbar
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Local\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\programdata\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Babylon
2012-03-05 21:01 . 2012-03-06 21:31 -------- d--h--w- c:\program files\Temp
2012-03-05 17:28 . 2012-03-05 17:28 -------- d-----w- c:\programdata\Nexon
2012-03-05 16:22 . 2012-03-05 19:26 -------- d-----w- c:\program files\BandiMPEG1
2012-03-05 16:11 . 2012-03-06 18:58 -------- d-----w- C:\Nexon
2012-03-02 07:07 . 2012-02-08 06:03 6552120 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{DE4B8568-0CF6-4163-96AE-9B1AC36AFA13}\mpengine.dll
2012-03-01 07:42 . 2012-03-01 07:42 -------- d-----w- c:\program files\LogMeIn Hamachi
2012-02-29 21:03 . 2012-03-04 10:36 -------- d-----w- c:\program files\MatroskaProp
2012-02-29 21:02 . 2012-03-04 12:46 -------- d-----w- c:\program files\Matroska Pack
2012-02-27 07:16 . 2012-02-27 07:18 -------- d-----w- c:\program files\Google
2012-02-21 14:34 . 2006-10-22 14:06 208896 ----a-w- c:\windows\system32\NVUNINST.EXE
2012-02-21 14:33 . 2012-02-21 14:33 -------- d-----w- C:\NVIDIA
2012-02-21 14:15 . 2012-02-21 14:15 -------- d-----w- c:\users\Joná?
2012-02-21 14:04 . 2004-10-22 01:17 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2012-02-21 14:04 . 2004-10-22 01:17 274432 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2012-02-21 14:04 . 2004-10-22 01:16 180224 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2012-02-21 14:04 . 2004-10-22 01:18 749568 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2012-02-21 14:04 . 2004-10-22 01:16 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2012-02-21 14:04 . 2012-02-21 14:04 192644 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2012-02-21 14:04 . 2012-02-21 14:04 323716 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2012-02-16 16:46 . 2012-02-16 16:46 -------- d-----w- c:\programdata\Badoo
2012-02-15 06:22 . 2012-01-12 19:52 2044416 ----a-w- c:\windows\system32\win32k.sys
2012-02-15 06:22 . 2011-12-14 16:17 680448 ----a-w- c:\windows\system32\msvcrt.dll
2012-02-15 06:22 . 2011-12-20 10:56 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-07 00:15 . 2010-10-14 13:49 41184 ----a-w- c:\windows\avastSS.scr
2012-03-07 00:15 . 2010-10-14 13:49 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-07 00:03 . 2011-04-25 07:45 612184 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-07 00:03 . 2010-10-14 13:50 337880 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-07 00:02 . 2010-10-14 13:50 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-03-07 00:01 . 2010-10-14 13:50 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-07 00:01 . 2010-10-14 13:50 57688 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-07 00:01 . 2010-10-14 13:50 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-03-06 21:30 . 2010-10-13 07:55 319456 ----a-w- c:\windows\DIFxAPI.dll
2012-02-29 06:00 . 2011-06-14 13:14 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-26 20:44 . 2011-10-24 16:54 138264 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-02-26 20:43 . 2011-10-24 17:02 234768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-02-26 20:43 . 2011-10-24 16:53 234768 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:20 . 2011-10-24 16:53 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-01-29 04:10 . 2010-10-13 10:57 237072 ------w- c:\windows\system32\MpSigStub.exe
2011-12-14 07:41 . 2011-12-14 07:41 515856 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-12-13 10:01 . 2010-10-13 07:55 1698408 ----a-w- c:\windows\RtlExUpd.dll
2010-12-12 18:25 . 2010-12-12 18:24 746343330 ---ha-w- c:\program files\S4League.exe.part
2012-02-17 21:12 . 2011-05-08 09:44 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-07 00:15 123536 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"="c:\program files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe" [2007-01-19 864768]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-01-15 147456]
"Akamai NetSession Interface"="c:\users\Jonáš\AppData\Local\Akamai\netsession_win.exe" [2012-02-02 3329824]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"Badoo Desktop"="c:\programdata\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe" [2011-10-05 1051760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-02-26 138008]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-02-26 154392]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-02-26 133912]
"LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-03-06 488984]
"LogitechQuickCamRibbon"="c:\program files\Labtec\WebCam10\WebCam10.exe" [2007-03-06 1060376]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-12-23 500208]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"QuickTime Task"="c:\program files\QuickTime Alternative\QTTask.exe" [2010-11-29 421888]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-03-21 1230704]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-08-26 10828392]
.
c:\users\Jonáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
PowerReg Scheduler.exe [2011-1-2 256000]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Remote Control.lnk - c:\program files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe [2010-10-13 77824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S3 3xHybrid;3xHybrid service;c:\windows\system32\DRIVERS\3xHybrid.sys [2007-01-18 670592]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
Akamai REG_MULTI_SZ Akamai
.
Obsah adresáře 'Naplánované úlohy'
.
2012-03-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
2012-03-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local;127.0.0.1:9421;
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?AF=109993&babsrc=adbartrp&mntrId=601403380000000000000019dbafbaf1&q=
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109993
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.hardId - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15405
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:20
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - tb9
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-AdobeBridge - (no file)
AddRemove-{889DF117-14D1-44EE-9F31-C5FB5D47F68B} - c:\progra~2\TARMAI~1\{889DF~1\Setup.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-03-10 12:38
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
C:\avast! sandbox
.
sken byl úspešně dokončen
skryté soubory: 1
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Akamai]
"ServiceDll"="c:\program files\common files\akamai/netsession_win_7de0ed9.dll"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
Celkový čas: 2012-03-10 12:42:49
ComboFix-quarantined-files.txt 2012-03-10 11:42
.
Před spuštěním: Volných bajtů: 45 558 906 880
Po spuštění: Volných bajtů: 47 067 451 392
.
- - End Of File - - 544C7BF18440E928A7318DF30870DCA7

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nouzový režim PC

#6 Příspěvek od motji »

Akamai a babylon používáte?
Tuto složku znáte?
c:\users\Joná?

Změnilo se něco s pc?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
rarasek
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 07 bře 2012 08:19

Re: Nouzový režim PC

#7 Příspěvek od rarasek »

motji píše:Akamai a babylon používáte?
Tuto složku znáte?
c:\users\Joná?

Změnilo se něco s pc?
----------------------------------------------------------
Dobrý den, na otázku :Akamai a babylon používáte?
tyto aplikace nepoužívám, pravděpodobně byly nainstalovány s nějakou mojí hrou,kterou jsem už vymazal. Můžeme tedy odstranit pokud to půjde.
na otázku:Tuto složku znáte?
c:\users\Joná?
odpovídám ,že složka je prázdná a nepoužívá se. Možno také odstranit.
PC už nemusím mít v nouzovém režimu a chová se celkem standartně.
Ve spodní liště PC (na pravé straně dole) mám pořád v "připojení k internetu"křížek(červený -poznámka STAV PŘIPOJENÍ NEZNÁMÝ - TŘÍDA NENÍ ZAREGISTROVÁNA, nevím co se tam děje, dříve to tam nebylo(myšleno před závadou). Dále potíže se zvukem přetrvávají, tedy nejde vůbec žádný zvuk z PC , který mi zmizel těsně před závadou v PC. Snažil jsem se to také vyřešit, ač marně.... :!:

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nouzový režim PC

#8 Příspěvek od motji »

Mrkněte do správce zařízení, zda Vám tam nechybí nějaké drivery.

:arrow: Stáhněte TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
- a uložte ho na plochu.
- 2x klikněte na ikonu programu a spusťte
- dejte volbu Spustit kontrolu - pak potvrdte start sken
- pokud program najde infikovaný soubor, ukáže se Vám předvolená akce Cure, v tom případě potvrdte tlačítko Continue
- pokud bude chtít program restartovat počítač, klikněte na tlačítko Reboot Now
- pokud si restart nevyžádá, klikněte na tlačítko Report. Měl vy na Vás vyskočit log, obsah logu zkopírujte do svého topicu.
- pokud se log nezobrazí, je uložený ve Vašem kořenovém adresáři.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
rarasek
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 07 bře 2012 08:19

Re: Nouzový režim PC

#9 Příspěvek od rarasek »

10:24:05.0159 1008 TDSS rootkit removing tool 2.7.20.0 Mar 9 2012 17:10:43
10:24:05.0362 1008 ============================================================
10:24:05.0362 1008 Current date / time: 2012/03/11 10:24:05.0362
10:24:05.0362 1008 SystemInfo:
10:24:05.0363 1008
10:24:05.0363 1008 OS Version: 6.0.6002 ServicePack: 2.0
10:24:05.0363 1008 Product type: Workstation
10:24:05.0363 1008 ComputerName: JONÁŠ-PC
10:24:05.0363 1008 UserName: Jonáš
10:24:05.0363 1008 Windows directory: C:\Windows
10:24:05.0363 1008 System windows directory: C:\Windows
10:24:05.0363 1008 Processor architecture: Intel x86
10:24:05.0363 1008 Number of processors: 2
10:24:05.0363 1008 Page size: 0x1000
10:24:05.0363 1008 Boot type: Normal boot
10:24:05.0363 1008 ============================================================
10:24:06.0769 1008 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:24:06.0833 1008 \Device\Harddisk0\DR0:
10:24:06.0833 1008 MBR used
10:24:06.0833 1008 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x12A18800
10:24:06.0888 1008 Initialize success
10:24:06.0888 1008 ============================================================
10:25:08.0080 2008 ============================================================
10:25:08.0080 2008 Scan started
10:25:08.0080 2008 Mode: Manual;
10:25:08.0080 2008 ============================================================
10:25:08.0918 2008 3xHybrid (f2882b93bb527a71d3527a3761085e2d) C:\Windows\system32\DRIVERS\3xHybrid.sys
10:25:08.0982 2008 3xHybrid - ok
10:25:09.0035 2008 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
10:25:09.0048 2008 ACPI - ok
10:25:09.0058 2008 adfs - ok
10:25:09.0127 2008 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys
10:25:09.0209 2008 adp94xx - ok
10:25:09.0230 2008 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys
10:25:09.0252 2008 adpahci - ok
10:25:09.0270 2008 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys
10:25:09.0276 2008 adpu160m - ok
10:25:09.0315 2008 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys
10:25:09.0333 2008 adpu320 - ok
10:25:09.0457 2008 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
10:25:09.0464 2008 AFD - ok
10:25:09.0497 2008 agp440 (ef23439cdd587f64c2c1b8825cead7d8) C:\Windows\system32\drivers\agp440.sys
10:25:09.0499 2008 agp440 - ok
10:25:09.0522 2008 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
10:25:09.0528 2008 aic78xx - ok
10:25:09.0568 2008 aliide (90395b64600ebb4552e26e178c94b2e4) C:\Windows\system32\drivers\aliide.sys
10:25:09.0570 2008 aliide - ok
10:25:09.0590 2008 amdagp (2b13e304c9dfdfa5eb582f6a149fa2c7) C:\Windows\system32\drivers\amdagp.sys
10:25:09.0593 2008 amdagp - ok
10:25:09.0614 2008 amdide (0577df1d323fe75a739c787893d300ea) C:\Windows\system32\drivers\amdide.sys
10:25:09.0617 2008 amdide - ok
10:25:09.0641 2008 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys
10:25:09.0643 2008 AmdK7 - ok
10:25:09.0662 2008 AmdK8 (0ca0071da4315b00fc1328ca86b425da) C:\Windows\system32\drivers\amdk8.sys
10:25:09.0664 2008 AmdK8 - ok
10:25:09.0705 2008 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys
10:25:09.0708 2008 arc - ok
10:25:09.0731 2008 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys
10:25:09.0736 2008 arcsas - ok
10:25:09.0824 2008 aswFsBlk (0ae43c6c411254049279c2ee55630f95) C:\Windows\system32\drivers\aswFsBlk.sys
10:25:09.0831 2008 aswFsBlk - ok
10:25:09.0874 2008 aswMonFlt (6693141560b1615d8dccf0d8eb00087e) C:\Windows\system32\drivers\aswMonFlt.sys
10:25:09.0880 2008 aswMonFlt - ok
10:25:09.0907 2008 aswRdr (da12626fd9a67f4e917e2f2fbe1e1764) C:\Windows\system32\drivers\aswRdr.sys
10:25:09.0949 2008 aswRdr - ok
10:25:10.0067 2008 aswSnx (dcb199b967375753b5019ec15f008f53) C:\Windows\system32\drivers\aswSnx.sys
10:25:10.0100 2008 aswSnx - ok
10:25:10.0134 2008 aswSP (b32873e5a1443c0a1e322266e203bf10) C:\Windows\system32\drivers\aswSP.sys
10:25:10.0160 2008 aswSP - ok
10:25:10.0179 2008 aswTdi (6ff544175a9180c5d88534d3d9c9a9f7) C:\Windows\system32\drivers\aswTdi.sys
10:25:10.0186 2008 aswTdi - ok
10:25:10.0254 2008 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
10:25:10.0256 2008 AsyncMac - ok
10:25:10.0283 2008 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
10:25:10.0284 2008 atapi - ok
10:25:10.0371 2008 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
10:25:10.0373 2008 Beep - ok
10:25:10.0397 2008 blbdrive - ok
10:25:10.0460 2008 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
10:25:10.0467 2008 bowser - ok
10:25:10.0501 2008 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
10:25:10.0507 2008 BrFiltLo - ok
10:25:10.0520 2008 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
10:25:10.0522 2008 BrFiltUp - ok
10:25:10.0547 2008 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
10:25:10.0554 2008 Brserid - ok
10:25:10.0583 2008 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
10:25:10.0585 2008 BrSerWdm - ok
10:25:10.0610 2008 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
10:25:10.0612 2008 BrUsbMdm - ok
10:25:10.0623 2008 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
10:25:10.0626 2008 BrUsbSer - ok
10:25:10.0643 2008 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
10:25:10.0645 2008 BTHMODEM - ok
10:25:10.0733 2008 catchme - ok
10:25:10.0806 2008 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
10:25:10.0812 2008 cdfs - ok
10:25:10.0862 2008 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
10:25:10.0867 2008 cdrom - ok
10:25:10.0906 2008 circlass (da8e0afc7baa226c538ef53ac2f90897) C:\Windows\system32\drivers\circlass.sys
10:25:10.0914 2008 circlass - ok
10:25:11.0002 2008 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
10:25:11.0016 2008 CLFS - ok
10:25:11.0047 2008 cmdide (45201046c776ffdaf3fc8a0029c581c8) C:\Windows\system32\drivers\cmdide.sys
10:25:11.0049 2008 cmdide - ok
10:25:11.0068 2008 Compbatt (82b8c91d327cfecf76cb58716f7d4997) C:\Windows\system32\drivers\compbatt.sys
10:25:11.0069 2008 Compbatt - ok
10:25:11.0093 2008 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys
10:25:11.0098 2008 crcdisk - ok
10:25:11.0120 2008 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys
10:25:11.0122 2008 Crusoe - ok
10:25:11.0193 2008 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
10:25:11.0200 2008 DfsC - ok
10:25:11.0293 2008 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
10:25:11.0333 2008 disk - ok
10:25:11.0405 2008 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
10:25:11.0408 2008 drmkaud - ok
10:25:11.0476 2008 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
10:25:11.0506 2008 DXGKrnl - ok
10:25:11.0547 2008 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys
10:25:11.0556 2008 E1G60 - ok
10:25:11.0580 2008 EagleNT - ok
10:25:11.0605 2008 EagleXNt - ok
10:25:11.0704 2008 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
10:25:11.0712 2008 Ecache - ok
10:25:11.0760 2008 ElbyCDIO (44996a2addd2db7454f2ca40b67d8941) C:\Windows\system32\Drivers\ElbyCDIO.sys
10:25:11.0781 2008 ElbyCDIO - ok
10:25:11.0814 2008 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys
10:25:11.0834 2008 elxstor - ok
10:25:11.0917 2008 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
10:25:11.0949 2008 exfat - ok
10:25:12.0013 2008 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
10:25:12.0022 2008 fastfat - ok
10:25:12.0058 2008 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys
10:25:12.0059 2008 fdc - ok
10:25:12.0135 2008 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
10:25:12.0140 2008 FileInfo - ok
10:25:12.0197 2008 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
10:25:12.0231 2008 Filetrace - ok
10:25:12.0279 2008 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys
10:25:12.0283 2008 flpydisk - ok
10:25:12.0380 2008 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
10:25:12.0389 2008 FltMgr - ok
10:25:12.0422 2008 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
10:25:12.0424 2008 Fs_Rec - ok
10:25:12.0452 2008 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys
10:25:12.0457 2008 gagp30kx - ok
10:25:12.0462 2008 GMSIPCI - ok
10:25:12.0566 2008 hamachi (833051c6c6c42117191935f734cfbd97) C:\Windows\system32\DRIVERS\hamachi.sys
10:25:12.0572 2008 hamachi - ok
10:25:12.0614 2008 HdAudAddService (3f90e001369a07243763bd5a523d8722) C:\Windows\system32\drivers\HdAudio.sys
10:25:12.0626 2008 HdAudAddService - ok
10:25:12.0672 2008 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
10:25:12.0708 2008 HDAudBus - ok
10:25:12.0741 2008 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
10:25:12.0745 2008 HidBth - ok
10:25:12.0765 2008 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
10:25:12.0767 2008 HidIr - ok
10:25:12.0814 2008 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
10:25:12.0818 2008 HidUsb - ok
10:25:12.0852 2008 HpCISSs (df353b401001246853763c4b7aaa6f50) C:\Windows\system32\drivers\hpcisss.sys
10:25:12.0854 2008 HpCISSs - ok
10:25:12.0895 2008 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
10:25:12.0904 2008 HTTP - ok
10:25:12.0923 2008 i2omp (324c2152ff2c61abae92d09f3cca4d63) C:\Windows\system32\drivers\i2omp.sys
10:25:12.0925 2008 i2omp - ok
10:25:12.0963 2008 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
10:25:13.0001 2008 i8042prt - ok
10:25:13.0105 2008 ialm (dbb0588936e43c5f16b643f90f53c06d) C:\Windows\system32\DRIVERS\igdkmd32.sys
10:25:13.0183 2008 ialm - ok
10:25:13.0221 2008 iaStorV (c957bf4b5d80b46c5017bf0101e6c906) C:\Windows\system32\drivers\iastorv.sys
10:25:13.0233 2008 iaStorV - ok
10:25:13.0295 2008 igfx (dbb0588936e43c5f16b643f90f53c06d) C:\Windows\system32\DRIVERS\igdkmd32.sys
10:25:13.0309 2008 igfx - ok
10:25:13.0334 2008 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
10:25:13.0336 2008 iirsp - ok
10:25:13.0486 2008 IntcAzAudAddService (d4394a481b845cc1df361a85751c071a) C:\Windows\system32\drivers\RTKVHDA.sys
10:25:13.0694 2008 IntcAzAudAddService - ok
10:25:13.0733 2008 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
10:25:13.0737 2008 intelide - ok
10:25:13.0770 2008 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
10:25:13.0772 2008 intelppm - ok
10:25:13.0842 2008 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:25:13.0848 2008 IpFilterDriver - ok
10:25:13.0864 2008 IpInIp - ok
10:25:13.0898 2008 IPMIDRV (40f34f8aba2a015d780e4b09138b6c17) C:\Windows\system32\drivers\ipmidrv.sys
10:25:13.0904 2008 IPMIDRV - ok
10:25:13.0967 2008 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
10:25:13.0973 2008 IPNAT - ok
10:25:14.0035 2008 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
10:25:14.0038 2008 IRENUM - ok
10:25:14.0079 2008 isapnp (350fca7e73cf65bcef43fae1e4e91293) C:\Windows\system32\drivers\isapnp.sys
10:25:14.0085 2008 isapnp - ok
10:25:14.0127 2008 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
10:25:14.0132 2008 iScsiPrt - ok
10:25:14.0150 2008 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
10:25:14.0152 2008 iteatapi - ok
10:25:14.0180 2008 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
10:25:14.0185 2008 iteraid - ok
10:25:14.0218 2008 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
10:25:14.0222 2008 kbdclass - ok
10:25:14.0237 2008 kbdhid (d2600cb17b7408b4a83f231dc9a11ac3) C:\Windows\system32\drivers\kbdhid.sys
10:25:14.0239 2008 kbdhid - ok
10:25:14.0303 2008 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
10:25:14.0328 2008 KSecDD - ok
10:25:14.0408 2008 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
10:25:14.0415 2008 lltdio - ok
10:25:14.0467 2008 LSI_FC (a2262fb9f28935e862b4db46438c80d2) C:\Windows\system32\drivers\lsi_fc.sys
10:25:14.0479 2008 LSI_FC - ok
10:25:14.0563 2008 LSI_SAS (30d73327d390f72a62f32c103daf1d6d) C:\Windows\system32\drivers\lsi_sas.sys
10:25:14.0602 2008 LSI_SAS - ok
10:25:14.0725 2008 LSI_SCSI (e1e36fefd45849a95f1ab81de0159fe3) C:\Windows\system32\drivers\lsi_scsi.sys
10:25:14.0741 2008 LSI_SCSI - ok
10:25:14.0803 2008 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
10:25:14.0840 2008 luafv - ok
10:25:15.0004 2008 LVcKap (b72e763eb92b8dbe45c455ba6e4babd0) C:\Windows\system32\DRIVERS\LVcKap.sys
10:25:15.0162 2008 LVcKap - ok
10:25:15.0280 2008 LVMVDrv (e8a376abc340c35318a79b766c2406bb) C:\Windows\system32\DRIVERS\LVMVDrv.sys
10:25:15.0393 2008 LVMVDrv - ok
10:25:15.0482 2008 LVUSBSta (839da24941c0395c69c681f12b721a47) C:\Windows\system32\drivers\LVUSBSta.sys
10:25:15.0489 2008 LVUSBSta - ok
10:25:15.0538 2008 megasas (d153b14fc6598eae8422a2037553adce) C:\Windows\system32\drivers\megasas.sys
10:25:15.0542 2008 megasas - ok
10:25:15.0607 2008 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
10:25:15.0611 2008 Modem - ok
10:25:15.0646 2008 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
10:25:15.0649 2008 monitor - ok
10:25:15.0679 2008 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
10:25:15.0683 2008 mouclass - ok
10:25:15.0698 2008 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
10:25:15.0702 2008 mouhid - ok
10:25:15.0768 2008 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
10:25:15.0773 2008 MountMgr - ok
10:25:15.0823 2008 mpio (583a41f26278d9e0ea548163d6139397) C:\Windows\system32\drivers\mpio.sys
10:25:15.0829 2008 mpio - ok
10:25:15.0889 2008 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
10:25:15.0894 2008 mpsdrv - ok
10:25:15.0933 2008 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
10:25:15.0939 2008 Mraid35x - ok
10:25:16.0019 2008 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
10:25:16.0026 2008 MRxDAV - ok
10:25:16.0109 2008 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
10:25:16.0116 2008 mrxsmb - ok
10:25:16.0174 2008 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:25:16.0185 2008 mrxsmb10 - ok
10:25:16.0200 2008 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:25:16.0207 2008 mrxsmb20 - ok
10:25:16.0229 2008 msahci (742aed7939e734c36b7e8d6228ce26b7) C:\Windows\system32\drivers\msahci.sys
10:25:16.0233 2008 msahci - ok
10:25:16.0251 2008 msdsm (3fc82a2ae4cc149165a94699183d3028) C:\Windows\system32\drivers\msdsm.sys
10:25:16.0257 2008 msdsm - ok
10:25:16.0329 2008 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
10:25:16.0332 2008 Msfs - ok
10:25:16.0367 2008 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
10:25:16.0373 2008 msisadrv - ok
10:25:16.0446 2008 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
10:25:16.0451 2008 MSKSSRV - ok
10:25:16.0505 2008 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
10:25:16.0507 2008 MSPCLOCK - ok
10:25:16.0560 2008 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
10:25:16.0565 2008 MSPQM - ok
10:25:16.0649 2008 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
10:25:16.0659 2008 MsRPC - ok
10:25:16.0678 2008 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
10:25:16.0682 2008 mssmbios - ok
10:25:16.0694 2008 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
10:25:16.0703 2008 MSTEE - ok
10:25:16.0788 2008 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
10:25:16.0793 2008 Mup - ok
10:25:16.0885 2008 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
10:25:16.0895 2008 NativeWifiP - ok
10:25:17.0022 2008 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
10:25:17.0052 2008 NDIS - ok
10:25:17.0120 2008 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
10:25:17.0124 2008 NdisTapi - ok
10:25:17.0180 2008 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
10:25:17.0183 2008 Ndisuio - ok
10:25:17.0264 2008 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
10:25:17.0271 2008 NdisWan - ok
10:25:17.0330 2008 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
10:25:17.0334 2008 NDProxy - ok
10:25:17.0390 2008 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
10:25:17.0394 2008 NetBIOS - ok
10:25:17.0479 2008 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
10:25:17.0490 2008 netbt - ok
10:25:17.0566 2008 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
10:25:17.0570 2008 nfrd960 - ok
10:25:17.0626 2008 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
10:25:17.0632 2008 Npfs - ok
10:25:17.0688 2008 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
10:25:17.0692 2008 nsiproxy - ok
10:25:17.0800 2008 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
10:25:17.0872 2008 Ntfs - ok
10:25:17.0896 2008 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
10:25:17.0902 2008 ntrigdigi - ok
10:25:17.0932 2008 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
10:25:17.0937 2008 Null - ok
10:25:17.0975 2008 nvraid (e69e946f80c1c31c53003bfbf50cbb7c) C:\Windows\system32\drivers\nvraid.sys
10:25:17.0981 2008 nvraid - ok
10:25:17.0998 2008 nvstor (9e0ba19a28c498a6d323d065db76dffc) C:\Windows\system32\drivers\nvstor.sys
10:25:18.0003 2008 nvstor - ok
10:25:18.0031 2008 nv_agp (07c186427eb8fcc3d8d7927187f260f7) C:\Windows\system32\drivers\nv_agp.sys
10:25:18.0037 2008 nv_agp - ok
10:25:18.0048 2008 NwlnkFlt - ok
10:25:18.0062 2008 NwlnkFwd - ok
10:25:18.0110 2008 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
10:25:18.0118 2008 ohci1394 - ok
10:25:18.0174 2008 Parport (8a79fdf04a73428597e2caf9d0d67850) C:\Windows\system32\DRIVERS\parport.sys
10:25:18.0183 2008 Parport - ok
10:25:18.0263 2008 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
10:25:18.0267 2008 partmgr - ok
10:25:18.0286 2008 Parvdm (6c580025c81caf3ae9e3617c22cad00e) C:\Windows\system32\DRIVERS\parvdm.sys
10:25:18.0289 2008 Parvdm - ok
10:25:18.0324 2008 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
10:25:18.0336 2008 pci - ok
10:25:18.0359 2008 pciide (3b1901e401473e03eb8c874271e50c26) C:\Windows\system32\drivers\pciide.sys
10:25:18.0363 2008 pciide - ok
10:25:18.0394 2008 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
10:25:18.0404 2008 pcmcia - ok
10:25:18.0455 2008 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
10:25:18.0523 2008 PEAUTH - ok
10:25:18.0604 2008 Ph3xIB32 (514fadd940a5ee06d6caa5cd0f6725d6) C:\Windows\system32\DRIVERS\Ph3xIB32.sys
10:25:18.0680 2008 Ph3xIB32 - ok
10:25:18.0729 2008 PID_0928 (d395b2dc1705454aa36a34099e066df0) C:\Windows\system32\DRIVERS\LV561AV.SYS
10:25:18.0762 2008 PID_0928 - ok
10:25:18.0850 2008 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
10:25:18.0855 2008 PptpMiniport - ok
10:25:18.0897 2008 Processor (0e3cef5d28b40cf273281d620c50700a) C:\Windows\system32\drivers\processr.sys
10:25:18.0904 2008 Processor - ok
10:25:19.0009 2008 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
10:25:19.0015 2008 PSched - ok
10:25:19.0070 2008 ql2300 (ccdac889326317792480c0a67156a1ec) C:\Windows\system32\drivers\ql2300.sys
10:25:19.0131 2008 ql2300 - ok
10:25:19.0164 2008 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
10:25:19.0170 2008 ql40xx - ok
10:25:19.0231 2008 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
10:25:19.0235 2008 QWAVEdrv - ok
10:25:19.0290 2008 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
10:25:19.0294 2008 RasAcd - ok
10:25:19.0362 2008 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
10:25:19.0368 2008 Rasl2tp - ok
10:25:19.0456 2008 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
10:25:19.0461 2008 RasPppoe - ok
10:25:19.0511 2008 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
10:25:19.0518 2008 RasSstp - ok
10:25:19.0570 2008 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
10:25:19.0582 2008 rdbss - ok
10:25:19.0637 2008 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
10:25:19.0642 2008 RDPCDD - ok
10:25:19.0698 2008 rdpdr (e8bd98d46f2ed77132ba927fccb47d8b) C:\Windows\system32\drivers\rdpdr.sys
10:25:19.0716 2008 rdpdr - ok
10:25:19.0735 2008 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
10:25:19.0737 2008 RDPENCDD - ok
10:25:19.0787 2008 RDPWD (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys
10:25:19.0801 2008 RDPWD - ok
10:25:19.0856 2008 Revoflt (b9bb8e2093c1615ad6ea55ad96214354) C:\Windows\system32\DRIVERS\revoflt.sys
10:25:19.0861 2008 Revoflt - ok
10:25:19.0942 2008 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
10:25:19.0951 2008 rspndr - ok
10:25:20.0135 2008 RTL8169 (904fd29ec1ff2709099ae2cd1c09a913) C:\Windows\system32\DRIVERS\Rtlh86.sys
10:25:20.0143 2008 RTL8169 - ok
10:25:20.0360 2008 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
10:25:20.0372 2008 sbp2port - ok
10:25:20.0417 2008 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
10:25:20.0421 2008 secdrv - ok
10:25:20.0467 2008 Serenum (ce9ec966638ef0b10b864ddedf62a099) C:\Windows\system32\DRIVERS\serenum.sys
10:25:20.0471 2008 Serenum - ok
10:25:20.0521 2008 Serial (6d663022db3e7058907784ae14b69898) C:\Windows\system32\DRIVERS\serial.sys
10:25:20.0557 2008 Serial - ok
10:25:20.0601 2008 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
10:25:20.0605 2008 sermouse - ok
10:25:20.0641 2008 sffdisk (103b79418da647736ee95645f305f68a) C:\Windows\system32\drivers\sffdisk.sys
10:25:20.0643 2008 sffdisk - ok
10:25:20.0667 2008 sffp_mmc (8fd08a310645fe872eeec6e08c6bf3ee) C:\Windows\system32\drivers\sffp_mmc.sys
10:25:20.0673 2008 sffp_mmc - ok
10:25:20.0700 2008 sffp_sd (9cfa05fcfcb7124e69cfc812b72f9614) C:\Windows\system32\drivers\sffp_sd.sys
10:25:20.0704 2008 sffp_sd - ok
10:25:20.0732 2008 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
10:25:20.0735 2008 sfloppy - ok
10:25:20.0798 2008 sisagp (d2a595d6eebeeaf4334f8e50efbc9931) C:\Windows\system32\drivers\sisagp.sys
10:25:20.0803 2008 sisagp - ok
10:25:20.0836 2008 SiSRaid2 (cedd6f4e7d84e9f98b34b3fe988373aa) C:\Windows\system32\drivers\sisraid2.sys
10:25:20.0841 2008 SiSRaid2 - ok
10:25:20.0879 2008 SiSRaid4 (df843c528c4f69d12ce41ce462e973a7) C:\Windows\system32\drivers\sisraid4.sys
10:25:20.0885 2008 SiSRaid4 - ok
10:25:20.0987 2008 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
10:25:20.0990 2008 Smb - ok
10:25:21.0070 2008 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
10:25:21.0072 2008 spldr - ok
10:25:21.0157 2008 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
10:25:21.0228 2008 srv - ok
10:25:21.0381 2008 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
10:25:21.0410 2008 srv2 - ok
10:25:21.0496 2008 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
10:25:21.0503 2008 srvnet - ok
10:25:21.0576 2008 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
10:25:21.0582 2008 swenum - ok
10:25:21.0631 2008 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
10:25:21.0634 2008 Symc8xx - ok
10:25:21.0662 2008 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
10:25:21.0664 2008 Sym_hi - ok
10:25:21.0692 2008 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
10:25:21.0698 2008 Sym_u3 - ok
10:25:21.0795 2008 Tcpip (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\drivers\tcpip.sys
10:25:21.0867 2008 Tcpip - ok
10:25:21.0894 2008 Tcpip6 (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\DRIVERS\tcpip.sys
10:25:21.0902 2008 Tcpip6 - ok
10:25:21.0935 2008 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
10:25:21.0939 2008 tcpipreg - ok
10:25:22.0001 2008 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
10:25:22.0003 2008 TDPIPE - ok
10:25:22.0064 2008 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
10:25:22.0067 2008 TDTCP - ok
10:25:22.0153 2008 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
10:25:22.0159 2008 tdx - ok
10:25:22.0193 2008 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
10:25:22.0199 2008 TermDD - ok
10:25:22.0266 2008 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
10:25:22.0268 2008 tssecsrv - ok
10:25:22.0298 2008 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
10:25:22.0301 2008 tunmp - ok
10:25:22.0337 2008 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
10:25:22.0339 2008 tunnel - ok
10:25:22.0375 2008 uagp35 (c3ade15414120033a36c0f293d4a4121) C:\Windows\system32\drivers\uagp35.sys
10:25:22.0377 2008 uagp35 - ok
10:25:22.0456 2008 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
10:25:22.0469 2008 udfs - ok
10:25:22.0513 2008 uliagpkx (75e6890ebfce0841d3291b02e7a8bdb0) C:\Windows\system32\drivers\uliagpkx.sys
10:25:22.0516 2008 uliagpkx - ok
10:25:22.0538 2008 uliahci (3cd4ea35a6221b85dcc25daa46313f8d) C:\Windows\system32\drivers\uliahci.sys
10:25:22.0558 2008 uliahci - ok
10:25:22.0585 2008 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
10:25:22.0591 2008 UlSata - ok
10:25:22.0622 2008 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
10:25:22.0630 2008 ulsata2 - ok
10:25:22.0664 2008 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
10:25:22.0670 2008 umbus - ok
10:25:22.0720 2008 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
10:25:22.0726 2008 usbccgp - ok
10:25:22.0764 2008 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
10:25:22.0768 2008 usbcir - ok
10:25:22.0818 2008 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
10:25:22.0822 2008 usbehci - ok
10:25:22.0858 2008 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
10:25:22.0869 2008 usbhub - ok
10:25:22.0894 2008 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
10:25:22.0896 2008 usbohci - ok
10:25:22.0923 2008 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
10:25:22.0927 2008 usbprint - ok
10:25:22.0973 2008 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
10:25:22.0978 2008 usbscan - ok
10:25:22.0997 2008 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
10:25:23.0002 2008 USBSTOR - ok
10:25:23.0030 2008 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
10:25:23.0034 2008 usbuhci - ok
10:25:23.0075 2008 vga (7d92be0028ecdedec74617009084b5ef) C:\Windows\system32\DRIVERS\vgapnp.sys
10:25:23.0077 2008 vga - ok
10:25:23.0142 2008 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
10:25:23.0144 2008 VgaSave - ok
10:25:23.0175 2008 viaagp (045d9961e591cf0674a920b6ba3ba5cb) C:\Windows\system32\drivers\viaagp.sys
10:25:23.0182 2008 viaagp - ok
10:25:23.0209 2008 ViaC7 (56a4de5f02f2e88182b0981119b4dd98) C:\Windows\system32\drivers\viac7.sys
10:25:23.0217 2008 ViaC7 - ok
10:25:23.0241 2008 viaide (fd2e3175fcada350c7ab4521dca187ec) C:\Windows\system32\drivers\viaide.sys
10:25:23.0247 2008 viaide - ok
10:25:23.0275 2008 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
10:25:23.0281 2008 volmgr - ok
10:25:23.0373 2008 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
10:25:23.0380 2008 volmgrx - ok
10:25:23.0416 2008 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
10:25:23.0429 2008 volsnap - ok
10:25:23.0459 2008 vsmraid (d984439746d42b30fc65a4c3546c6829) C:\Windows\system32\drivers\vsmraid.sys
10:25:23.0463 2008 vsmraid - ok
10:25:23.0494 2008 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
10:25:23.0501 2008 WacomPen - ok
10:25:23.0562 2008 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
10:25:23.0567 2008 Wanarp - ok
10:25:23.0583 2008 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
10:25:23.0585 2008 Wanarpv6 - ok
10:25:23.0621 2008 Wd (afc5ad65b991c1e205cf25cfdbf7a6f4) C:\Windows\system32\drivers\wd.sys
10:25:23.0625 2008 Wd - ok
10:25:23.0695 2008 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
10:25:23.0721 2008 Wdf01000 - ok
10:25:23.0810 2008 WmiAcpi (701a9f884a294327e9141d73746ee279) C:\Windows\system32\drivers\wmiacpi.sys
10:25:23.0815 2008 WmiAcpi - ok
10:25:23.0904 2008 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
10:25:23.0909 2008 WpdUsb - ok
10:25:23.0974 2008 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
10:25:23.0976 2008 ws2ifsl - ok
10:25:24.0062 2008 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
10:25:24.0065 2008 WUDFRd - ok
10:25:24.0081 2008 XDva380 - ok
10:25:24.0106 2008 XDva383 - ok
10:25:24.0134 2008 XDva385 - ok
10:25:24.0148 2008 XDva390 - ok
10:25:24.0162 2008 XDva393 - ok
10:25:24.0192 2008 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
10:25:24.0272 2008 \Device\Harddisk0\DR0 - ok
10:25:24.0279 2008 Boot (0x1200) (db095508602461e6d59b95f8bb682028) \Device\Harddisk0\DR0\Partition0
10:25:24.0282 2008 \Device\Harddisk0\DR0\Partition0 - ok
10:25:24.0282 2008 ============================================================
10:25:24.0282 2008 Scan finished
10:25:24.0282 2008 ============================================================
10:25:24.0304 0520 Detected object count: 0
10:25:24.0304 0520 Actual detected object count: 0

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nouzový režim PC

#10 Příspěvek od motji »

Díval jste se do toho správce zařízení?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
rarasek
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 07 bře 2012 08:19

Re: Nouzový režim PC

#11 Příspěvek od rarasek »

:!: Díval jsem se a sice tomu moc nerozumím, ale spíše tam nic chybět nebude. Bez zvuku jsem od té doby, co se vyskytl problém na PC. Šlo by prosím "MOTJI", nějak z Vaší strany zkontrolovat, co se stalo s tím zvukem a zda tam je to vše potřebné, aby se zvuk zase vrátil? Byl bych moc vděčný...Jinak se mi tady objevil problém, že mi ve spodní liště ukazuje okénko,že nejde zavřít zabezpečení proti malware. Asi je tam pořád problém s virem, nebo už nevím. :!:
Ve spodní liště se stále také objevuje okénko s označením pro připojení internetu "citace" - PŘIPOJENÍ NEZNÁMÉ.Počítač se také dost seká, což také nebývalo před závadou.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nouzový režim PC

#12 Příspěvek od motji »

Já tam nic moc nevidím :( .

:arrow: stáhněte
http://www.slunecnice.cz/sw/crystaldiskinfo/
- spusťte ho a v nabídce zvolte Kopírovat.
-Data ze schránky sem pak vložte pomocí Ctrl+V
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
rarasek
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 07 bře 2012 08:19

Re: Nouzový režim PC

#13 Příspěvek od rarasek »

:arrow:
----------------------------------------------------------------------------
CrystalDiskInfo 4.1.3 (C) 2008-2011 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows Vista Home Premium Edition SP2 [6.0 Build 6002] (x86)
Date : 2012/03/12 15:48:08

-- Controller Map ----------------------------------------------------------

-- Disk List ---------------------------------------------------------------
(1) WDC WD1600AAJS-08PSA0 : 160.0 GB [0-X-X, pd1]

----------------------------------------------------------------------------
(1) WDC WD1600AAJS-08PSA0
----------------------------------------------------------------------------
Model : WDC WD1600AAJS-08PSA0
Firmware : 05.06H05
Serial Number : WD-WCAP90705449
Disk Size : 160.0 GB (8.4/137.4/160.0)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 312581808
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA/ATAPI-7
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 21864 hod.
Power On Count : 2223 krát
Temparature : 39 C (102 F)
Health Status : Dobrý
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : 8080h [ON]

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 158 155 _21 000000000BFA Čas na roztočení ploten
04 _98 _98 __0 0000000008D0 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 _51 000000000000 Počet chybných hledání
09 _71 _71 __0 000000005568 Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 _51 000000000000 Počet pokusů o překalibrování
0C _98 _98 __0 0000000008AF Počet cyklů zapnutí zařízení
C0 200 200 __0 000000000051 Počet vypnutí disku
C1 200 200 __0 0000000008DC Počet cyklů načítání/vymazání
C2 104 _95 __0 000000000027 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 200 200 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 _51 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 42 7A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 57 44 2D 57 43 41 50
020: 39 30 37 30 35 34 34 39 00 00 40 00 00 32 30 35
030: 2E 30 36 48 30 35 57 44 43 20 57 44 31 36 30 30
040: 41 41 4A 53 2D 30 38 50 53 41 30 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 01 00 00 00 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 07 06 00 00 00 44 00 40
0A0: 00 FE 00 00 74 6B 7F 61 41 23 74 69 BE 41 41 23
0B0: 20 7F 00 16 00 00 00 00 FF FE 00 00 80 80 00 00
0C0: 00 00 00 00 00 00 00 00 9E B0 12 A1 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 50 01 4E E1 00 39 D2 6D
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 10
0F0: 40 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 09 00 00 00 00 00 00 00 00 16 7F 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 10 3F 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 01 10 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3A A5

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nouzový režim PC

#14 Příspěvek od motji »

Disk je ok. Dejte mi prosím aktuální log z combofixu :) .
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
rarasek
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 07 bře 2012 08:19

Re: Nouzový režim PC

#15 Příspěvek od rarasek »

ComboFix 12-03-10.01 - Jonáš 13.03.2012 14:49:51.3.2 - x86
Spuštěný z: c:\users\JonßÜ\Desktop\ComboFix.exe
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-13 do 2012-03-13 )))))))))))))))))))))))))))))))
.
.
2012-03-13 14:01 . 2012-03-13 14:01 -------- d-----w- c:\users\Jonáš\AppData\Local\temp
2012-03-13 14:01 . 2012-03-13 14:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-12 14:47 . 2012-03-12 14:47 -------- d-----w- c:\program files\CrystalDiskInfo
2012-03-11 13:35 . 2011-10-18 14:57 58264 ----a-w- c:\windows\system32\TepeqAPO.dll
2012-03-11 13:35 . 2011-11-18 15:40 191080 ----a-w- c:\windows\system32\SFSS_APO.dll
2012-03-11 13:35 . 2011-09-02 13:21 214368 ----a-w- c:\windows\system32\SFNHK.dll
2012-03-11 13:35 . 2011-09-02 13:21 68960 ----a-w- c:\windows\system32\SFAPO.dll
2012-03-11 13:35 . 2011-09-02 13:21 74080 ----a-w- c:\windows\system32\SFCOM.dll
2012-03-11 13:34 . 2011-12-13 17:27 3921448 ----a-w- c:\windows\system32\drivers\RTKVHDA.sys
2012-03-11 13:34 . 2011-12-13 15:58 1497704 ----a-w- c:\windows\system32\RTSndMgr.cpl
2012-03-11 13:34 . 2011-11-22 10:36 2359400 ----a-w- c:\windows\system32\RtkPgExt.dll
2012-03-11 13:34 . 2011-12-12 16:20 83560 ----a-w- c:\windows\system32\RtkCoInstII.dll
2012-03-11 13:34 . 2011-12-08 16:28 1378920 ----a-w- c:\windows\system32\RtkApoApi.dll
2012-03-11 13:34 . 2011-11-22 15:28 13416 ----a-w- c:\windows\system32\RtkCoLDR.dll
2012-03-11 13:34 . 2011-12-08 15:27 3319400 ----a-w- c:\windows\system32\RtkAPO.dll
2012-03-11 13:34 . 2011-12-13 15:25 200468 ----a-w- c:\windows\system32\drivers\RTAIODAT.DAT
2012-03-11 13:34 . 2011-12-09 15:42 2684416 ----a-w- c:\windows\system32\RCoRes.dat
2012-03-11 13:34 . 2010-11-29 13:36 587096 ----a-w- c:\windows\system32\MaxxAudioRealtek2.dll
2012-03-10 12:39 . 2012-03-10 12:40 -------- d-----w- C:\TEMP
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Malwarebytes
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\programdata\Malwarebytes
2012-03-08 13:04 . 2012-03-08 15:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-03-07 07:39 . 2012-03-09 13:01 -------- d-----w- c:\program files\trend micro
2012-03-07 07:39 . 2012-03-07 07:40 -------- d-----w- C:\rsit
2012-03-06 21:47 . 2012-03-06 21:47 -------- d-----w- c:\program files\ESET
2012-03-06 21:30 . 2012-03-11 13:39 -------- d-----w- c:\windows\system32\RTCOM
2012-03-06 21:21 . 2012-03-06 21:21 237 ----a-w- C:\user.js
2012-03-06 21:21 . 2012-03-06 21:21 -------- d-----w- c:\program files\BabylonToolbar
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Local\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\programdata\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Babylon
2012-03-05 21:01 . 2012-03-11 13:36 -------- d--h--w- c:\program files\Temp
2012-03-05 17:28 . 2012-03-05 17:28 -------- d-----w- c:\programdata\Nexon
2012-03-05 16:22 . 2012-03-05 19:26 -------- d-----w- c:\program files\BandiMPEG1
2012-03-05 16:11 . 2012-03-06 18:58 -------- d-----w- C:\Nexon
2012-03-02 07:07 . 2012-02-08 06:03 6552120 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{DE4B8568-0CF6-4163-96AE-9B1AC36AFA13}\mpengine.dll
2012-03-01 07:42 . 2012-03-01 07:42 -------- d-----w- c:\program files\LogMeIn Hamachi
2012-02-29 21:03 . 2012-03-04 10:36 -------- d-----w- c:\program files\MatroskaProp
2012-02-29 21:02 . 2012-03-04 12:46 -------- d-----w- c:\program files\Matroska Pack
2012-02-27 07:16 . 2012-02-27 07:18 -------- d-----w- c:\program files\Google
2012-02-21 14:34 . 2006-10-22 14:06 208896 ----a-w- c:\windows\system32\NVUNINST.EXE
2012-02-21 14:33 . 2012-02-21 14:33 -------- d-----w- C:\NVIDIA
2012-02-21 14:15 . 2012-03-10 11:42 -------- d-----w- c:\users\Joná?
2012-02-21 14:04 . 2004-10-22 01:17 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2012-02-21 14:04 . 2004-10-22 01:17 274432 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2012-02-21 14:04 . 2004-10-22 01:16 180224 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2012-02-21 14:04 . 2004-10-22 01:18 749568 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2012-02-21 14:04 . 2004-10-22 01:16 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2012-02-21 14:04 . 2012-02-21 14:04 192644 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2012-02-21 14:04 . 2012-02-21 14:04 323716 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2012-02-16 16:46 . 2012-02-16 16:46 -------- d-----w- c:\programdata\Badoo
2012-02-15 06:22 . 2012-01-12 19:52 2044416 ----a-w- c:\windows\system32\win32k.sys
2012-02-15 06:22 . 2011-12-14 16:17 680448 ----a-w- c:\windows\system32\msvcrt.dll
2012-02-15 06:22 . 2011-12-20 10:56 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-11 13:35 . 2010-10-13 07:55 319456 ----a-w- c:\windows\DIFxAPI.dll
2012-03-07 00:15 . 2010-10-14 13:49 41184 ----a-w- c:\windows\avastSS.scr
2012-03-07 00:15 . 2010-10-14 13:49 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-07 00:03 . 2011-04-25 07:45 612184 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-07 00:03 . 2010-10-14 13:50 337880 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-07 00:02 . 2010-10-14 13:50 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-03-07 00:01 . 2010-10-14 13:50 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-07 00:01 . 2010-10-14 13:50 57688 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-07 00:01 . 2010-10-14 13:50 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-29 06:00 . 2011-06-14 13:14 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-26 20:44 . 2011-10-24 16:54 138264 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-02-26 20:43 . 2011-10-24 17:02 234768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-02-26 20:43 . 2011-10-24 16:53 234768 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:20 . 2011-10-24 16:53 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-01-29 04:10 . 2010-10-13 10:57 237072 ------w- c:\windows\system32\MpSigStub.exe
2010-12-12 18:25 . 2010-12-12 18:24 746343330 ---ha-w- c:\program files\S4League.exe.part
2012-02-17 21:12 . 2011-05-08 09:44 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-07 00:15 123536 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"="c:\program files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe" [2007-01-19 864768]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-01-15 147456]
"Akamai NetSession Interface"="c:\users\Jonáš\AppData\Local\Akamai\netsession_win.exe" [2012-02-02 3329824]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"Badoo Desktop"="c:\programdata\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe" [2011-10-05 1051760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-02-26 138008]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-02-26 154392]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-02-26 133912]
"LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-03-06 488984]
"LogitechQuickCamRibbon"="c:\program files\Labtec\WebCam10\WebCam10.exe" [2007-03-06 1060376]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-12-23 500208]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"QuickTime Task"="c:\program files\QuickTime Alternative\QTTask.exe" [2010-11-29 421888]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-03-21 1230704]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-12-13 11487848]
.
c:\users\Jonáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
PowerReg Scheduler.exe [2011-1-2 256000]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Remote Control.lnk - c:\program files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe [2010-10-13 77824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S3 3xHybrid;3xHybrid service;c:\windows\system32\DRIVERS\3xHybrid.sys [2007-01-18 670592]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
Akamai REG_MULTI_SZ Akamai
.
Obsah adresáře 'Naplánované úlohy'
.
2012-03-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
2012-03-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local;127.0.0.1:9421;
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?AF=109993&babsrc=adbartrp&mntrId=601403380000000000000019dbafbaf1&q=
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109993
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.hardId - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15405
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:20
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - tb9
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-03-13 15:01
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Akamai]
"ServiceDll"="c:\program files\common files\akamai/netsession_win_7de0ed9.dll"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
Celkový čas: 2012-03-13 15:04:11
ComboFix-quarantined-files.txt 2012-03-13 14:04
ComboFix2.txt 2012-03-13 13:22
ComboFix3.txt 2012-03-10 11:42
.
Před spuštěním: Volných bajtů: 45 410 381 824
Po spuštění: Volných bajtů: 45 388 144 640
.
- - End Of File - - 406063A4AE6AAE9C7232AB328B9DF7E4

Odpovědět