Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

podezřelý

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
travick
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 08 lis 2012 22:19

podezřelý

#1 Příspěvek od travick »

Poslední dobou už to není ono, bojím se že je nemocný :(

DDS (Ver_2012-11-07.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16450 BrowserJavaVersion: 1.6.0_35
Run by EL at 21:16:22 on 2012-11-08
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.6088.3981 [GMT 0:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\rundll32.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Windows\system32\spool\DRIVERS\x64\3\HP1006MC.EXE
C:\Program Files\Lenovo\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_287.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_287.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\totalcmd\TOTALCMD64.EXE
C:\Program Files (x86)\phpDesigner 8\phpDesigner.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uURLSearchHooks: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
mURLSearchHooks: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
mWinlogon: Userinit = userinit.exe
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: DivX Plus Web Player HTML5 <video>: {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
BHO: Canon Easy-WebPrint EX BHO: {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
BHO: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Pomocná služba pro přihlášení ke službě Windows Live ID: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
EB: Canon Easy-WebPrint EX: {21347690-EC41-4F9A-8887-1F4AEE672439} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
uRun: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
uRun: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
mRun: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
mRun: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xportovat do aplikace Microsoft Excel - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab
TCP: NameServer = 192.168.1.1 192.168.1.1
TCP: Interfaces\{16594637-4284-4B2F-84C2-8E7ACCEC2001} : DHCPNameServer = 192.168.1.1 192.168.1.1
TCP: Interfaces\{16594637-4284-4B2F-84C2-8E7ACCEC2001}\244575966496D277964786D264F4E4 : DHCPNameServer = 192.168.22.22 192.168.22.23
TCP: Interfaces\{16594637-4284-4B2F-84C2-8E7ACCEC2001}\2456C6B696E6F554E68616E6365646F575962756C6563737F5642344434313 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{53EC29FC-E944-4B05-8719-0B7EAB686D4F} : DHCPNameServer = 192.168.1.1 192.168.1.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
x64-BHO: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-TB: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
x64-Run: [Energy Management] C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
x64-Run: [EnergyUtility] C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe
x64-Run: [SpywareTerminatorShield] C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
x64-Run: [SpywareTerminatorUpdater] C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
x64-Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - <orphaned>
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\EL\AppData\Roaming\Mozilla\Firefox\Profiles\negkw9kt.default\
FF - prefs.js: browser.startup.homepage - google.co.uk
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
FF - plugin: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrlui.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll
FF - plugin: C:\Windows\SysWOW64\npdeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
FF - ExtSQL: 2012-09-09 13:12; {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}; C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
FF - ExtSQL: 2012-10-02 21:05; {23fcfd51-4958-4f00-80a3-ae97e717ed8b}; C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
.
---- FIREFOX POLICIES ----
FF - user.js: extentions.y2layers.installId - a872b053-96e4-4330-b0e3-b97cef5b9de4
FF - user.js: extentions.y2layers.defaultEnableAppsList - bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube
.
FF - user.js: extensions.autoDisableScopes - 14
.
============= SERVICES / DRIVERS ===============
.
R0 LHDmgr;LHDmgr;C:\Windows\System32\drivers\LhdX64.sys [2012-7-27 39008]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2012-7-28 984144]
R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2012-7-28 370288]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2012-9-18 283200]
R1 dvdfabio;dvdfabio;C:\Windows\System32\drivers\dvdfabio.sys [2012-7-28 13184]
R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2012-7-28 25232]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2012-7-28 71600]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-11-8 44808]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-7-28 13336]
R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-10-2 3064000]
R2 sp_rsdrv2;Spyware Terminator Driver Filter;C:\Windows\System32\drivers\stflt.sys [2012-11-5 51496]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service;C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [2012-11-5 1148664]
R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-7-28 2656280]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver;C:\Windows\System32\drivers\AcpiVpc.sys [2010-10-25 29792]
R3 BTWAMPFL;BTWAMPFL;C:\Windows\System32\drivers\btwampfl.sys [2012-7-28 349224]
R3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\System32\drivers\btwl2cap.sys [2012-7-28 39464]
R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2012-7-28 317440]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2012-7-28 76912]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;C:\Windows\System32\drivers\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;C:\Windows\System32\drivers\nusb3xhc.sys [2010-12-10 181248]
R3 vdrive;vdrive;C:\Windows\System32\drivers\vdrive.sys [2012-7-28 45952]
S2 Aladdin SQL Server;Aladdin SQL Server;C:\Program Files (x86)\Aladdin\Aladdin SQL Server\AladdinSQL.exe --> C:\Program Files (x86)\Aladdin\Aladdin SQL Server\AladdinSQL.exe [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-13 160944]
S3 cxbu0x64;OMNIKEY 3x21;C:\Windows\System32\drivers\cxbu0x64.sys [2010-1-25 173952]
S3 dmvsc;dmvsc;C:\Windows\System32\drivers\dmvsc.sys [2011-4-12 71168]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-21 20992]
S3 Synth3dVsc;Synth3dVsc;C:\Windows\System32\drivers\Synth3dVsc.sys [2011-4-12 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\drivers\terminpt.sys [2011-4-12 34816]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;tsusbhub;C:\Windows\System32\drivers\tsusbhub.sys [2011-4-12 117248]
S3 WatAdminSvc;Služba Technologie aktivace Windows;C:\Windows\System32\Wat\WatAdminSvc.exe [2012-7-31 1255736]
S3 wsvd;wsvd;C:\Windows\System32\drivers\wsvd.sys [2009-7-21 121840]
.
=============== File Associations ===============
.
FileExt: .js: Applications\phpDesigner.exe="C:\Program Files (x86)\phpDesigner 8\phpDesigner.exe" "%1" [UserChoice]
ShellExec: PSPad.exe: open=C:\Program Files (x86)\PSPad editor\PSPad.exe
.
=============== Created Last 30 ================
.
2012-11-08 11:13:50 -------- d-----w- C:\Users\EL\AppData\Local\{2E4F221E-5987-4AA0-92F1-4F79023C4EDF}
2012-11-07 23:13:25 -------- d-----w- C:\Users\EL\AppData\Local\{F8494C4C-7290-4081-869F-910A00A1B672}
2012-11-07 11:13:13 -------- d-----w- C:\Users\EL\AppData\Local\{7F6B6341-A8BD-453B-8AA5-E7C23B597B98}
2012-11-06 23:12:49 -------- d-----w- C:\Users\EL\AppData\Local\{C92C21EE-0918-414F-BC3D-298FD9B8BC57}
2012-11-06 11:10:46 -------- d-----w- C:\Users\EL\AppData\Local\{C5EA3D6A-81C5-4E15-8404-725DB3F7A5A3}
2012-11-06 07:16:56 9291768 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E9413700-D970-4E9D-BDB4-0906FFD4C8EE}\mpengine.dll
2012-11-05 19:54:16 51496 ----a-w- C:\Windows\System32\drivers\stflt.sys
2012-11-05 19:54:16 -------- d-----w- C:\Users\EL\AppData\Roaming\Spyware Terminator
2012-11-05 19:54:16 -------- d-----w- C:\ProgramData\Spyware Terminator
2012-11-05 19:53:29 -------- d-----w- C:\Program Files (x86)\Spyware Terminator
2012-11-05 19:35:17 -------- d-----w- C:\Program Files (x86)\SpywareBlaster
2012-11-05 10:07:41 -------- d-----w- C:\Users\EL\AppData\Local\{59C2D1D0-F026-40B8-98B5-41C179032F02}
2012-11-04 22:07:16 -------- d-----w- C:\Users\EL\AppData\Local\{0D504396-CCBF-455C-A221-0501CA9BAE2A}
2012-11-04 10:06:52 -------- d-----w- C:\Users\EL\AppData\Local\{53811F33-CDB6-4636-80DD-827E0802C63B}
2012-11-03 21:43:20 -------- d-----w- C:\Users\EL\AppData\Local\{53155A89-913A-4D98-9D75-2F0FFFCF3124}
2012-11-03 09:43:07 -------- d-----w- C:\Users\EL\AppData\Local\{1DCAF361-4F81-4F07-98DF-01422B696BB6}
2012-11-02 21:27:09 -------- d-----w- C:\Users\EL\AppData\Local\{0B2A4D4B-03F4-4AC1-84D1-FBB20752ACE7}
2012-11-02 09:26:57 -------- d-----w- C:\Users\EL\AppData\Local\{91A90FA9-646C-42F1-8B81-A88508D35698}
2012-11-01 21:26:17 -------- d-----w- C:\Users\EL\AppData\Local\{EFEC29CA-C606-4121-9F55-B2322952C8F6}
2012-11-01 09:25:39 -------- d-----w- C:\Users\EL\AppData\Local\{E047E0A2-7F39-4DBD-AB1E-F5DF4475857A}
2012-10-31 21:25:27 -------- d-----w- C:\Users\EL\AppData\Local\{18AB6A4C-2334-4996-A65A-4683D2CE9D20}
2012-10-31 09:25:14 -------- d-----w- C:\Users\EL\AppData\Local\{0F25413E-B367-41B7-98E7-32F03FA512E6}
2012-10-30 21:24:48 -------- d-----w- C:\Users\EL\AppData\Local\{23E61733-9F09-4BB0-9546-8F4EA877715D}
2012-10-30 09:24:26 -------- d-----w- C:\Users\EL\AppData\Local\{9035A8AC-E60D-48FE-82F1-3BE9488767F7}
2012-10-29 21:24:13 -------- d-----w- C:\Users\EL\AppData\Local\{4386D886-CDDD-4616-A49E-FFDB88680880}
2012-10-29 09:24:01 -------- d-----w- C:\Users\EL\AppData\Local\{D1AAAF7C-A128-4EFB-A725-9F0CBCAECDAF}
2012-10-28 21:23:37 -------- d-----w- C:\Users\EL\AppData\Local\{C0C578F8-0A30-4639-ABAE-09F6CEA5F125}
2012-10-28 09:23:25 -------- d-----w- C:\Users\EL\AppData\Local\{3075907D-71B9-4086-B95E-1FD894AEB99F}
2012-10-27 21:23:12 -------- d-----w- C:\Users\EL\AppData\Local\{9F9E961C-DF41-435A-A9B7-AA2F003B0676}
2012-10-27 09:23:00 -------- d-----w- C:\Users\EL\AppData\Local\{563A578F-8771-4720-80D1-D2C14946B964}
2012-10-26 21:22:35 -------- d-----w- C:\Users\EL\AppData\Local\{7BBDB49E-610F-4ECF-8307-375295FEC460}
2012-10-26 09:22:09 -------- d-----w- C:\Users\EL\AppData\Local\{4E95864F-ED4E-4435-B44F-A6C5AB8801A0}
2012-10-25 20:06:42 -------- d-----w- C:\Users\EL\AppData\Local\{1472C416-90BB-4535-93C0-BB121BD6A321}
2012-10-25 08:06:17 -------- d-----w- C:\Users\EL\AppData\Local\{A901D4C2-828C-4507-A4AF-DC31006736A8}
2012-10-24 19:37:53 -------- d-----w- C:\Users\EL\AppData\Local\{863B9062-5EAD-4072-85E7-E2E053D8DB4D}
2012-10-24 08:42:53 101376 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\HPZPPWN7.DLL
2012-10-24 08:42:25 -------- d-----w- C:\Program Files (x86)\PROFIT
2012-10-24 07:37:28 -------- d-----w- C:\Users\EL\AppData\Local\{717A24F7-AF35-4E60-9569-784DF4A0C44E}
2012-10-23 19:37:04 -------- d-----w- C:\Users\EL\AppData\Local\{4483E5CA-A6B7-4360-B38C-F8ED58047A06}
2012-10-23 09:49:33 -------- d-----w- C:\Users\EL\AppData\Local\Windows Live Print
2012-10-23 07:36:39 -------- d-----w- C:\Users\EL\AppData\Local\{4DC06CBF-9B74-4F6A-BE97-1B63C01CC62E}
2012-10-22 18:44:00 -------- d-----w- C:\Users\EL\AppData\Local\{31B5512F-0400-4B54-AFCB-DD7FE25E2BBC}
2012-10-22 06:43:35 -------- d-----w- C:\Users\EL\AppData\Local\{D58CC003-0230-4B0F-9A9E-35DD939C2269}
2012-10-21 09:40:56 -------- d-----w- C:\Users\EL\AppData\Local\{548E6F26-0EC3-464B-9874-B23DE626EC11}
2012-10-20 09:40:31 -------- d-----w- C:\Users\EL\AppData\Local\{D6E79E06-1C54-4FBE-828D-ECB4B563B84B}
2012-10-19 21:40:07 -------- d-----w- C:\Users\EL\AppData\Local\{C62200C1-33BE-44D4-ADB6-8136748CCD6E}
2012-10-19 08:10:20 -------- d-----w- C:\Users\EL\AppData\Local\{DBB26E92-D65C-4EA4-82D7-81B651279841}
2012-10-18 20:04:11 -------- d-----w- C:\Users\EL\AppData\Local\{B8E71C58-22BA-40D7-A59B-AA3F38523C23}
2012-10-18 08:03:46 -------- d-----w- C:\Users\EL\AppData\Local\{ED3D846E-5EA7-4FF7-944E-FAE312A957AD}
2012-10-17 10:52:38 -------- d-----w- C:\Users\EL\AppData\Local\{F5BA75FF-0792-438F-8C69-EEAEEB533F5F}
2012-10-16 21:15:17 -------- d-----w- C:\Users\EL\AppData\Local\{78CF8097-F884-4B78-9440-B67A3330640A}
2012-10-16 09:14:52 -------- d-----w- C:\Users\EL\AppData\Local\{492FB27C-0510-4A7A-97C5-C21F9AD154EF}
2012-10-15 21:14:27 -------- d-----w- C:\Users\EL\AppData\Local\{E9FFD2AB-EE81-4F64-88E9-26E5FEFDD858}
2012-10-15 09:14:02 -------- d-----w- C:\Users\EL\AppData\Local\{B6B79DD4-0068-4218-BEDD-F7C2183EEE57}
2012-10-14 21:13:37 -------- d-----w- C:\Users\EL\AppData\Local\{BC94A2CE-B405-40E7-996F-06E785C0C7EC}
2012-10-14 09:13:12 -------- d-----w- C:\Users\EL\AppData\Local\{0805BB38-DBC7-465C-B5E9-FC898B58D5B8}
2012-10-13 20:35:21 -------- d-----w- C:\Users\EL\AppData\Local\{2262AA90-8D1A-4FF5-B750-323051F934E9}
2012-10-13 08:34:51 -------- d-----w- C:\Users\EL\AppData\Local\{A325ABC3-F82B-4A41-85CE-981DCE7EF751}
2012-10-12 08:34:14 -------- d-----w- C:\Users\EL\AppData\Local\{659D4E74-7639-4C5F-BED6-70C5DB8594DC}
2012-10-11 20:33:49 -------- d-----w- C:\Users\EL\AppData\Local\{FFEFBCCC-62C0-49C4-86A7-5038697D95CE}
2012-10-11 08:33:37 -------- d-----w- C:\Users\EL\AppData\Local\{21C66124-6393-43F1-AF18-D2E691000BBB}
2012-10-10 20:33:13 -------- d-----w- C:\Users\EL\AppData\Local\{83EC91F2-4A88-4FF0-A837-0B927917D936}
2012-10-10 10:02:57 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2012-10-10 10:02:57 2048 ----a-w- C:\Windows\System32\tzres.dll
2012-10-10 10:02:50 715776 ----a-w- C:\Windows\System32\kerberos.dll
2012-10-10 10:02:50 542208 ----a-w- C:\Windows\SysWow64\kerberos.dll
2012-10-10 10:02:45 1464320 ----a-w- C:\Windows\System32\crypt32.dll
2012-10-10 10:02:44 184320 ----a-w- C:\Windows\System32\cryptsvc.dll
2012-10-10 10:02:44 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll
2012-10-10 10:02:44 140288 ----a-w- C:\Windows\System32\cryptnet.dll
2012-10-10 10:02:44 1159680 ----a-w- C:\Windows\SysWow64\crypt32.dll
2012-10-10 10:02:44 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2012-10-10 08:32:48 -------- d-----w- C:\Users\EL\AppData\Local\{618F6382-D6CF-4ECE-9594-537327B2C3CD}
.
==================== Find3M ====================
.
2012-10-30 22:51:55 984144 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2012-10-30 22:51:55 71600 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2012-10-30 22:51:07 41224 ----a-w- C:\Windows\avastSS.scr
2012-10-15 16:59:28 54072 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
2012-10-09 15:22:19 73656 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-10-09 15:22:19 696760 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-09-18 12:27:50 283200 ----a-w- C:\Windows\System32\drivers\dtsoftbus01.sys
2012-08-31 18:19:35 1659760 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2012-08-30 18:03:45 5559664 ----a-w- C:\Windows\System32\ntoskrnl.exe
2012-08-30 17:12:02 3968880 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2012-08-30 17:12:02 3914096 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2012-08-28 19:24:56 477168 ----a-w- C:\Windows\SysWow64\npdeployJava1.dll
2012-08-28 19:24:53 473072 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2012-08-24 18:05:07 220160 ----a-w- C:\Windows\System32\wintrust.dll
2012-08-24 16:57:48 172544 ----a-w- C:\Windows\SysWow64\wintrust.dll
2012-08-24 10:31:32 2312704 ----a-w- C:\Windows\System32\jscript9.dll
2012-08-24 10:21:18 1392128 ----a-w- C:\Windows\System32\wininet.dll
2012-08-24 10:20:11 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2012-08-24 10:14:45 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2012-08-24 10:13:29 599040 ----a-w- C:\Windows\System32\vbscript.dll
2012-08-24 10:09:42 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2012-08-24 06:59:17 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll
2012-08-24 06:51:27 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2012-08-24 06:51:02 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2012-08-24 06:47:26 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2012-08-24 06:47:12 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll
2012-08-24 06:43:58 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-08-22 18:12:50 1913200 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2012-08-22 18:12:40 950128 ----a-w- C:\Windows\System32\drivers\ndis.sys
2012-08-22 18:12:40 376688 ----a-w- C:\Windows\System32\drivers\netio.sys
2012-08-22 18:12:33 288624 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2012-08-21 21:01:00 245760 ----a-w- C:\Windows\System32\OxpsConverter.exe
2012-08-20 18:48:44 362496 ----a-w- C:\Windows\System32\wow64win.dll
2012-08-20 18:48:44 243200 ----a-w- C:\Windows\System32\wow64.dll
2012-08-20 18:48:44 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2012-08-20 18:48:43 215040 ----a-w- C:\Windows\System32\winsrv.dll
2012-08-20 18:48:37 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2012-08-20 18:48:35 424448 ----a-w- C:\Windows\System32\KernelBase.dll
2012-08-20 18:46:22 338432 ----a-w- C:\Windows\System32\conhost.exe
2012-08-20 17:40:21 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2012-08-20 17:38:44 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2012-08-20 17:38:26 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2012-08-20 17:37:19 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2012-08-20 17:37:18 274944 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2012-08-20 15:38:21 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2012-08-20 15:38:20 2048 ----a-w- C:\Windows\SysWow64\user.exe
2012-08-20 15:33:28 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2012-08-20 15:33:28 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-20 15:33:28 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2012-08-20 15:33:28 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
.
============= FINISH: 21:16:52,62 ===============

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: podezřelý

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Mohu mit dotaz, proc si bezny uzivatel kupuje nejvyssi licenci Windows Ultimate, ktera je urcena spise pro velke korporace, kdyz stejne nevyuzije nic vic nez nabizi verze Home Premium :???: A nebo byla "koupena" nekde na internetu :?:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

travick
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 08 lis 2012 22:19

Re: podezřelý

#3 Příspěvek od travick »

Buduju megakorporaci.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: podezřelý

#4 Příspěvek od vyosek »

Srandicky, legracky?
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

travick
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 08 lis 2012 22:19

Re: podezřelý

#5 Příspěvek od travick »

Chceš abych byl smutný?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: podezřelý

#6 Příspěvek od vyosek »

Srandicky, legracky si delejte na xchatu, FB, p*del treba z plasteliny...ne na renomovanem foru s mezinarodni licenci na poskytovani rad v oblasti malware...

Pokud se vam nelibi ze tu nepodporujeme nelegalni systemy (a toto je popsano v pravidlech fora), nikdo vas tu nenuti byt, tlacitko "Odhlasit" je vlevo nahore.
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

travick
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 08 lis 2012 22:19

Re: podezřelý

#7 Příspěvek od travick »

No hodně se tu toho změnilo. Děkuji za poučení a naschledanou.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: podezřelý

#8 Příspěvek od vyosek »

Schledame se az budete budete dodrzovat pravidla fora...

Nelegalni OS se na foru netoleroval co jej znam...

Takze pomoc odmitam jelikoz nelegalnimi OS se tu nezabyvame :closed:


A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Uživatelský avatar
Pavuk29
VIP in memoriam
VIP in memoriam
Příspěvky: 6953
Registrován: 31 říj 2003 08:26
Bydliště: Banská Bystrica
Kontaktovat uživatele:

Re: podezřelý

#9 Příspěvek od Pavuk29 »

travick píše:No hodně se tu toho změnilo. Děkuji za poučení a naschledanou.
Toto milujem. Je tu registrovany den aj s cestou a komentuje, ako sa to tu zmenilo. Ano, zmenilo, ja som tu uz desiaty rok. :)
------------------------------------------------------------------------------------------------------------------------------
:!: PLS NEPISTE MI SZ, NA ICQ A MAILY S OTAZKAMI, PISTE DO FORA :!: :spam:
------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora, :207: pripadne s inymi uzivatelmi, :whip: kontaktujte ma na ICQ alebo mailom :31: na pavuk29 zavinac forum.viry.cz. Byvam pri pocitaci casto aj ked nie som online na fore.
http://www.icq.com/people/267560078/
:183: hotline: http://forum.viry.cz/viewtopic.php?f=12&t=116821
:!: pravidla fora: http://forum.viry.cz/viewtopic.php?f=12&t=5601

Zamčeno