Mám Windows 8 ENTERPRISE
jak už vysvetloval VIOSEK
Mě F8 atd... opravdu ale opravdu nefunguje
tady log:
ComboFix 13-09-23.02 - Killer . 09. 2013 20:51:10.4.4 - x64
Microsoft Windows 8 Enterprise 6.2.9200.0.1250.420.1029.18.4095.2806 [GMT 2:00]
Spuštěný z: c:\users\Killer\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Killer\Desktop\CFScript.txt.txt
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: avast! Antivirus *Disabled* {131692B0-0864-D491-4E21-3A3A1D8BBB47}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: IObit Malware Fighter *Disabled/Outdated* {A751AC20-3B48-5237-898A-78C4436BB78D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Killer\AppData\Local\ESET
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_eins9694
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-08-23 do 2013-09-23 )))))))))))))))))))))))))))))))
.
.
2013-09-23 18:55 . 2013-09-23 18:56 -------- d-----w- c:\users\Killer\AppData\Local\temp
2013-09-23 18:55 . 2013-09-23 18:55 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-09-21 15:27 . 2013-09-21 15:31 -------- d-----w- c:\program files (x86)\Rayman Origins CZ
2013-09-21 14:14 . 2013-09-22 16:35 -------- d-----w- C:\AdwCleaner
2013-09-21 08:11 . 2013-09-21 08:11 -------- d-----w- c:\users\Killer\AppData\Local\Deployment
2013-09-21 08:11 . 2013-09-21 08:11 -------- d-----w- c:\users\Killer\AppData\Local\Apps
2013-09-20 19:27 . 2013-09-20 19:27 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2013-09-20 19:23 . 2013-09-20 19:27 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2013-09-20 19:01 . 2013-09-21 08:10 -------- d-----w- c:\users\Killer\AppData\Local\Adobe
2013-09-20 09:33 . 2013-09-20 17:33 -------- d-----w- C:\Local Publish
2013-09-20 08:40 . 2013-09-20 08:40 -------- d-----w- C:\images
2013-09-20 08:12 . 2013-09-05 20:09 78296 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-09-20 08:12 . 2013-09-05 20:09 694232 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-09-20 08:09 . 2013-09-20 08:12 -------- d-----r- c:\windows\BrowserChoice
2013-09-20 07:52 . 2012-11-26 02:15 16114176 ----a-w- c:\program files\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll
2013-09-20 07:52 . 2012-11-26 02:14 15541248 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll
2013-09-20 07:39 . 2013-09-20 07:39 -------- d-----w- c:\program files (x86)\Common Files\Java
2013-09-20 07:39 . 2013-09-20 07:39 -------- d-----w- c:\programdata\Oracle
2013-09-20 07:39 . 2013-09-20 07:39 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-09-20 05:49 . 2013-09-20 05:52 -------- d-----w- c:\program files (x86)\WYSIWYG Web Builder 9
2013-09-20 05:34 . 2013-09-20 05:34 -------- d-----w- c:\program files (x86)\Common Files\Altova
2013-09-20 05:34 . 2013-09-20 05:34 -------- d-----w- c:\program files (x86)\Altova
2013-09-20 05:33 . 2013-09-20 05:34 -------- d-----w- c:\programdata\Altova
2013-09-20 05:33 . 2013-09-20 05:33 -------- d-----w- c:\windows\Downloaded Installations
2013-09-19 06:47 . 2012-07-26 03:18 359936 ----a-w- c:\windows\SysWow64\Difxfb7e.rra
2013-09-18 17:36 . 2013-09-18 17:36 -------- d-----w- c:\users\Killer\AppData\Roaming\SUPERAntiSpyware.com
2013-09-18 17:33 . 2013-09-18 17:33 51496 ----a-w- c:\windows\system32\drivers\stflt.sys
2013-09-18 17:33 . 2013-09-18 18:57 -------- d-----w- c:\program files (x86)\Spyware Terminator
2013-09-18 16:57 . 2008-11-06 00:03 -------- d-----w- C:\SDFix
2013-09-18 14:53 . 2013-09-18 14:50 66613248 ----a-w- c:\windows\eins9694.msi
2013-09-18 14:26 . 2013-08-30 07:48 378944 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-09-18 14:26 . 2013-08-30 07:48 33400 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-09-18 14:26 . 2013-08-30 07:48 131232 ----a-w- c:\windows\system32\drivers\aswFW.sys
2013-09-18 14:26 . 2013-08-30 07:48 72016 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-09-18 14:26 . 2013-08-30 07:48 64288 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-09-18 14:26 . 2013-08-30 07:48 65336 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-09-18 14:26 . 2013-08-30 07:48 204880 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-09-18 14:26 . 2013-08-30 07:48 1030952 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-09-18 14:26 . 2013-08-30 07:48 22600 ----a-w- c:\windows\system32\drivers\aswKbd.sys
2013-09-18 14:26 . 2013-08-30 07:48 80816 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-09-18 14:26 . 2013-08-30 07:47 287840 ----a-w- c:\windows\system32\aswBoot.exe
2013-09-18 14:26 . 2013-08-30 07:48 276992 ----a-w- c:\windows\system32\drivers\aswNdisFlt.sys
2013-09-18 14:25 . 2013-04-30 08:51 40616 ----a-w- c:\windows\system32\drivers\tap0901.sys
2013-09-18 14:25 . 2013-08-30 07:47 41664 ----a-w- c:\windows\avastSS.scr
2013-09-18 14:25 . 2013-09-18 14:25 -------- d-----w- c:\program files\AVAST Software
2013-09-18 14:25 . 2013-09-18 14:25 -------- d-----w- c:\programdata\AVAST Software
2013-09-18 12:23 . 2013-09-19 11:12 -------- d-----w- c:\windows\86CA3695A4124BAE92B649A60C2AC663.TMP
2013-09-18 12:22 . 2013-09-18 12:23 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2013-09-18 12:10 . 2013-09-23 12:42 -------- d-----w- c:\users\Killer\AppData\Roaming\vlc
2013-09-18 12:09 . 2013-09-18 12:09 -------- d-----w- c:\program files (x86)\VideoLAN
2013-09-18 11:45 . 2013-09-18 11:46 -------- d-----w- c:\program files (x86)\Total Video Converter
2013-09-18 10:15 . 2013-09-18 10:15 -------- d-----w- c:\users\Killer\AppData\Roaming\Publish Providers
2013-09-18 10:13 . 2013-09-18 10:15 -------- d-----w- c:\users\Killer\AppData\Local\Sony
2013-09-18 10:13 . 2013-09-18 10:13 -------- d-----w- c:\programdata\Sony
2013-09-18 10:13 . 2013-09-18 10:13 -------- d-----w- c:\program files\Sony
2013-09-18 10:13 . 2013-09-18 10:13 -------- d-----w- c:\program files (x86)\Sony
2013-09-18 10:10 . 2013-09-18 10:10 -------- d-----w- c:\program files (x86)\Reference Assemblies
2013-09-18 10:10 . 2013-09-18 10:10 -------- d-----w- c:\program files (x86)\MSBuild
2013-09-18 10:08 . 2013-09-18 10:08 -------- d-----w- c:\windows\SysWow64\XPSViewer
2013-09-18 10:08 . 2013-09-18 10:08 -------- d-----w- c:\program files\Reference Assemblies
2013-09-18 10:08 . 2013-09-18 10:08 -------- d-----w- c:\program files\MSBuild
2013-09-18 10:08 . 2013-09-18 10:15 -------- d-----w- c:\users\Killer\AppData\Roaming\Sony
2013-09-18 10:07 . 2012-07-06 02:02 35400 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2013-09-18 10:07 . 2012-07-06 02:02 778856 ----a-w- c:\windows\SysWow64\PresentationNative_v0300.dll
2013-09-18 10:07 . 2012-07-06 02:02 102528 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2013-09-18 10:07 . 2012-07-06 02:02 35400 ----a-w- c:\windows\system32\TsWpfWrp.exe
2013-09-18 10:07 . 2012-07-06 02:02 1166440 ----a-w- c:\windows\system32\PresentationNative_v0300.dll
2013-09-18 10:07 . 2012-07-06 02:02 124040 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-09-18 09:49 . 2013-09-18 10:41 -------- d-----w- c:\users\Killer\AppData\Local\Nero
2013-09-17 10:24 . 2013-09-23 09:18 -------- d-----w- c:\users\Killer\AppData\Roaming\IDM
2013-09-17 10:24 . 2013-09-17 10:25 -------- d-----w- c:\program files (x86)\Internet Download Manager
2013-09-17 10:18 . 2013-09-17 10:18 -------- d--h--r- c:\users\Killer\AppData\Roaming\SecuROM
2013-09-17 09:15 . 2013-09-17 09:15 -------- d-----w- c:\program files\Free FLV Player
2013-09-16 17:44 . 2013-09-16 17:45 -------- d-----w- c:\program files\Microsoft Mouse and Keyboard Center
2013-09-13 15:06 . 2013-09-13 15:06 -------- d-----w- c:\users\Killer\AppData\Local\Arma 3 Alpha
2013-09-10 18:35 . 2013-09-10 18:35 -------- d-----w- c:\programdata\ATI
2013-09-10 18:35 . 2013-09-10 18:35 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2013-09-10 18:35 . 2013-09-10 18:35 -------- d-----w- c:\program files (x86)\AMD AVT
2013-09-10 18:34 . 2013-09-10 18:35 -------- d-----w- c:\program files\ATI Technologies
2013-09-10 10:42 . 2013-09-10 10:42 -------- d-----w- c:\users\Killer\AppData\Roaming\The Creative Assembly
2013-09-10 10:19 . 2013-09-17 09:31 -------- d-----w- c:\program files (x86)\Total War ROME II
2013-09-10 10:12 . 2013-09-10 10:12 30592 ----a-w- c:\windows\SysWow64\drivers\HWiNFO64A.SYS
2013-09-10 10:12 . 2012-07-26 03:18 359936 ----a-w- c:\windows\SysWow64\Difx768c.rra
2013-09-10 10:07 . 2013-09-10 10:12 -------- d-----w- c:\programdata\DriverGenius
2013-09-10 06:56 . 2013-09-10 06:56 -------- d-----w- c:\users\Killer\AppData\Local\BigHugeEngine
2013-09-10 05:53 . 2013-09-10 05:53 -------- d-----w- c:\users\Killer\AppData\Local\PunkBuster
2013-09-10 05:51 . 2013-09-10 05:51 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2013-09-10 05:51 . 2013-09-10 05:51 -------- d-----w- c:\program files (x86)\AGEIA Technologies
2013-09-10 05:51 . 2013-09-10 05:51 466456 ----a-w- c:\windows\system32\wrap_oal.dll
2013-09-10 05:51 . 2013-09-10 05:51 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2013-09-10 05:51 . 2013-09-10 05:51 122904 ----a-w- c:\windows\system32\OpenAL32.dll
2013-09-10 05:51 . 2013-09-10 05:51 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll
2013-09-06 18:47 . 2013-09-06 18:47 -------- d-----w- c:\users\Killer\AppData\Local\Ubisoft Game Launcher
2013-09-06 18:47 . 2013-09-06 18:47 -------- d-----w- c:\program files (x86)\Ubisoft
2013-09-06 18:24 . 2013-09-06 18:42 -------- d-----w- c:\program files (x86)\Rayman Legends
2013-09-06 18:24 . 2013-09-06 18:56 -------- d-----w- c:\program files (x86)\Common Files\Steam
2013-09-06 18:24 . 2013-09-17 09:36 -------- d-----w- c:\program files (x86)\steam
2013-08-31 18:23 . 2013-09-18 09:49 -------- d-----w- c:\users\Killer\AppData\Roaming\Nero
2013-08-31 18:18 . 2013-08-31 18:20 -------- d-----w- c:\program files (x86)\Common Files\Nero
2013-08-31 18:18 . 2013-08-31 18:22 -------- d-----w- c:\program files (x86)\Nero
2013-08-31 18:18 . 2013-09-18 09:49 -------- d-----w- c:\programdata\Nero
2013-08-30 19:16 . 2013-08-30 19:16 -------- d-----w- c:\windows\Sun
2013-08-30 10:17 . 2013-08-30 10:17 -------- d-----w- c:\program files (x86)\FreeSmartSoftTB
2013-08-28 17:55 . 2013-09-06 18:31 -------- d-----w- c:\programdata\Orbit
2013-08-28 14:10 . 2013-08-28 14:10 -------- d-----w- c:\program files (x86)\Cheat Engine 6.3
2013-08-28 09:03 . 2013-09-23 11:07 -------- d-----w- c:\users\Killer\AppData\Roaming\Skype
2013-08-28 09:03 . 2013-08-28 09:03 -------- d-----w- c:\program files (x86)\Common Files\Skype
2013-08-28 09:03 . 2013-08-28 09:03 -------- d-----r- c:\program files (x86)\Skype
2013-08-28 09:03 . 2013-08-28 09:03 -------- d-----w- c:\programdata\Skype
2013-08-28 07:03 . 2013-09-19 11:14 -------- d-----w- c:\program files (x86)\The KMPlayer
2013-08-28 06:05 . 2013-08-28 06:05 -------- d-----w- c:\programdata\IDM
2013-08-28 05:58 . 2013-08-28 05:58 -------- d-----w- c:\program files (x86)\Company
2013-08-28 05:35 . 2013-08-28 05:35 -------- d-----w- c:\users\Killer\AppData\Local\TV_Online
2013-08-28 05:21 . 2013-08-28 07:25 -------- d-sh--w- c:\windows\SysWow64\AI_RecycleBin
2013-08-28 05:18 . 2013-08-28 05:27 -------- d-----w- c:\program files (x86)\HDD Regenerator
2013-08-28 05:18 . 2013-08-28 05:18 -------- d-----w- c:\users\Killer\AppData\Local\Downloaded Installations
2013-08-28 05:14 . 2013-08-28 05:14 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 8
2013-08-27 19:49 . 2013-09-22 09:22 -------- d-----w- c:\users\Killer\AppData\Local\Diagnostics
2013-08-24 19:20 . 2013-08-24 19:20 -------- d-----w- c:\users\Killer\kbpki
2013-08-24 19:19 . 2013-09-20 07:39 868264 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-08-24 19:19 . 2013-09-20 07:39 790440 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-08-24 19:19 . 2013-08-24 19:19 -------- d-----w- c:\program files (x86)\Java
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-08-24 16:37 . 2013-08-24 16:37 707507 ----a-w- c:\windows\unins000.exe
2013-08-24 09:57 . 2013-08-24 09:57 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2013-08-23 21:22 . 2013-08-23 21:22 17536 ----a-w- c:\programdata\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin
2013-08-23 21:14 . 2012-07-26 08:13 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-07-26 05:13 . 2013-08-23 21:38 51712 ----a-w- c:\windows\system32\ie4uinit.exe
2013-07-26 05:13 . 2013-08-23 21:38 2241024 ----a-w- c:\windows\system32\wininet.dll
2013-07-26 05:13 . 2013-08-23 21:38 915968 ----a-w- c:\windows\system32\uxtheme.dll
2013-07-26 05:13 . 2013-08-23 21:38 53760 ----a-w- c:\windows\system32\UXInit.dll
2013-07-26 05:13 . 2013-08-23 21:38 1365504 ----a-w- c:\windows\system32\urlmon.dll
2013-07-26 05:12 . 2013-08-23 21:38 19239424 ----a-w- c:\windows\system32\mshtml.dll
2013-07-26 05:12 . 2013-08-23 21:38 603136 ----a-w- c:\windows\system32\msfeeds.dll
2013-07-26 05:12 . 2013-08-23 21:38 53760 ----a-w- c:\windows\system32\jsproxy.dll
2013-07-26 05:12 . 2013-08-23 21:38 855552 ----a-w- c:\windows\system32\jscript.dll
2013-07-26 05:12 . 2013-08-23 21:38 3958784 ----a-w- c:\windows\system32\jscript9.dll
2013-07-26 05:12 . 2013-08-23 21:38 136704 ----a-w- c:\windows\system32\iesysprep.dll
2013-07-26 05:12 . 2013-08-23 21:38 39936 ----a-w- c:\windows\system32\iernonce.dll
2013-07-26 05:12 . 2013-08-23 21:38 67072 ----a-w- c:\windows\system32\iesetup.dll
2013-07-26 05:12 . 2013-08-23 21:38 15405056 ----a-w- c:\windows\system32\ieframe.dll
2013-07-26 05:12 . 2013-08-23 21:38 2647040 ----a-w- c:\windows\system32\iertutil.dll
2013-07-26 03:35 . 2013-08-23 21:38 2706432 ----a-w- c:\windows\system32\mshtml.tlb
2013-07-26 03:13 . 2013-08-23 21:38 1767936 ----a-w- c:\windows\SysWow64\wininet.dll
2013-07-26 03:13 . 2013-08-23 21:38 44032 ----a-w- c:\windows\SysWow64\UXInit.dll
2013-07-26 03:12 . 2013-08-23 21:38 2877440 ----a-w- c:\windows\SysWow64\jscript9.dll
2013-07-26 03:12 . 2013-08-23 21:38 61440 ----a-w- c:\windows\SysWow64\iesetup.dll
2013-07-26 03:12 . 2013-08-23 21:38 109056 ----a-w- c:\windows\SysWow64\iesysprep.dll
2013-07-26 02:49 . 2013-08-23 21:38 2706432 ----a-w- c:\windows\SysWow64\mshtml.tlb
2013-07-26 00:54 . 2013-08-23 21:38 534528 ----a-w- c:\windows\SysWow64\uxtheme.dll
2013-07-13 06:18 . 2013-08-23 21:36 337408 ----a-w- c:\windows\system32\wintrust.dll
2013-07-13 06:16 . 2013-08-23 21:36 68096 ----a-w- c:\windows\system32\cryptsvc.dll
2013-07-13 06:16 . 2013-08-23 21:36 1889280 ----a-w- c:\windows\system32\crypt32.dll
2013-07-13 06:15 . 2013-08-23 21:36 98304 ----a-w- c:\windows\system32\apprepsync.dll
2013-07-13 06:15 . 2013-08-23 21:36 124416 ----a-w- c:\windows\system32\apprepapi.dll
2013-07-13 04:24 . 2013-08-23 21:36 261120 ----a-w- c:\windows\SysWow64\wintrust.dll
2013-07-13 04:23 . 2013-08-23 21:36 1568256 ----a-w- c:\windows\SysWow64\crypt32.dll
2013-07-13 04:23 . 2013-08-23 21:36 87040 ----a-w- c:\windows\SysWow64\apprepapi.dll
2013-07-13 04:23 . 2013-08-23 21:36 74240 ----a-w- c:\windows\SysWow64\apprepsync.dll
2013-07-02 00:44 . 2013-08-24 06:14 36288 ----a-w- c:\windows\system32\drivers\WdBoot.sys
2013-07-01 22:08 . 2013-08-24 06:14 247216 ----a-w- c:\windows\system32\drivers\WdFilter.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-07-03 3673184]
"IDMan"="c:\program files (x86)\Internet Download Manager\IDMan.exe" [2013-09-17 3595856]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2013-08-23 39408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2013-04-16 642656]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-08-30 4858968]
"AdobeCEPServiceManager"="c:\program files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe" [2013-03-13 1039248]
"msurykqSrv"="c:\windows\inf\msurykq.vbe" [2013-08-27 1558]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"PromptOnSecureDesktop"= 0 (0x0)
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableCursorSuppression"= 1 (0x1)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
@="Service"
.
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 amdkmafd;AMD Audio Bus Lower Filter;c:\windows\System32\drivers\amdkmafd.sys;c:\windows\SYSNATIVE\drivers\amdkmafd.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 TRIXX;TRIXX;c:\users\Killer\AppData\Local\Temp\TRIXX.sys;c:\users\Killer\AppData\Local\Temp\TRIXX.sys [x]
R3 vmicheartbeat;Služba prezenčního signálu technologie Hyper-V;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
R4 IObitUnlocker;IObitUnlocker;c:\program files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys;c:\program files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [x]
S0 aswRvrt;aswRvrt; [x]
S0 aswVmm;aswVmm; [x]
S1 aswFW;avast! TDI Firewall driver; [x]
S1 aswKbd;aswKbd; [x]
S1 aswNdisFlt;Avast! Firewall Driver;c:\windows\system32\DRIVERS\aswNdisFlt.sys;c:\windows\SYSNATIVE\DRIVERS\aswNdisFlt.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\System32\drivers\dtsoftbus01.sys;c:\windows\SYSNATIVE\drivers\dtsoftbus01.sys [x]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\SysWOW64\drivers\HWiNFO64A.SYS;c:\windows\SysWOW64\drivers\HWiNFO64A.SYS [x]
S2 AdvancedSystemCareService6;Advanced SystemCare Service 6;c:\program files (x86)\IObit\Advanced SystemCare 6\ASCService.exe;c:\program files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 avast! Firewall;avast! Firewall;c:\program files\AVAST Software\Avast\afwServ.exe;c:\program files\AVAST Software\Avast\afwServ.exe [x]
S2 IDMWFP;IDMWFP;c:\windows\system32\DRIVERS\idmwfp.sys;c:\windows\SYSNATIVE\DRIVERS\idmwfp.sys [x]
S2 IMFservice;IMF Service;c:\program files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe;c:\program files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [x]
S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe;c:\program files (x86)\Nero\Update\NASvc.exe [x]
S2 NitroDriverReadSpool8;NitroPDFDriverCreatorReadSpool8;c:\program files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe;c:\program files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe [x]
S2 nlsX86cc;Nalpeiron Licensing Service;c:\windows\SysWOW64\NLSSRV32.EXE;c:\windows\SysWOW64\NLSSRV32.EXE [x]
S2 StartMenuService;StartMenu8 Service;c:\program files (x86)\IObit\Start Menu 8\StartMenuServices.exe;c:\program files (x86)\IObit\Start Menu 8\StartMenuServices.exe [x]
S3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet - adaptér;c:\windows\system32\DRIVERS\l160x64.sys;c:\windows\SYSNATIVE\DRIVERS\l160x64.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW86.sys;c:\windows\SYSNATIVE\drivers\AtihdW86.sys [x]
S3 cmudaxp;ASUS Xonar DG Audio Interface;c:\windows\system32\drivers\cmudaxp.sys;c:\windows\SYSNATIVE\drivers\cmudaxp.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-09-21 08:12 1177552 ----a-w- c:\program files (x86)\Google\Chrome\Application\29.0.1547.76\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-09-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-08-23 21:18]
.
2013-09-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-08-23 21:18]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-08-30 07:47 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension]
@="{CDC95B92-E27C-4745-A8C5-64A52A78855D}"
[HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
2012-11-15 23:07 23496 ----a-w- c:\program files (x86)\Internet Download Manager\IDMShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Cmaudio8788"="c:\windows\Syswow64\cmicnfgp.dll" [2012-11-20 12935168]
"Cmaudio8788GX"="c:\windows\syswow64\HsMgr.exe" [2008-07-11 200704]
"Cmaudio8788GX64"="c:\windows\system\HsMgr64.exe" [2008-07-11 282112]
"Printsrv"="c:\windows\System32\Printing_Admin_Scripts\en-US\pubpr.vbs" [BU]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://seznam.cz/
mDefault_Page_URL = hxxp://
www.google.com
mStart Page = hxxp://
www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~1\Office15\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\MICROS~1\Office15\ONBttnIE.dll/105
IE: Stáhnout s IDM - c:\program files (x86)\Internet Download Manager\IEExt.htm
IE: Stáhnout s IDM všechny odkazy - c:\program files (x86)\Internet Download Manager\IEGetAll.htm
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{4B4D5056-3700-A76A-76A7-7A786E7484D7} - (no file)
ShellIconOverlayIdentifiers-{8BA85C75-763B-4103-94EB-9470F12FE0F7} - (no file)
ShellIconOverlayIdentifiers-{CD55129A-B1A1-438E-A425-CEBC7DC684EE} - (no file)
ShellIconOverlayIdentifiers-{E768CD3B-BDDC-436D-9C13-E1B39CA257B1} - (no file)
AddRemove-WYSIWYG_Web_Builder_9 - c:\windows\iun6002.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-2003740936-3886710681-3831845967-1001CsiTool-CreateHive-{00000000-0000-0000-0000-000000000000}\Software\SecuROM\License information*]
"datasecu"=hex:ad,14,0f,d4,6a,fa,aa,f2,81,c1,b0,32,85,7c,f2,e7,99,f8,68,21,e8,
9b,49,c5,0e,83,04,36,a8,0a,ae,ee,59,59,40,be,02,f1,a2,ed,7e,38,13,eb,e6,c1,\
"rkeysecu"=hex:d4,c2,c6,7f,73,eb,75,33,59,77,5e,14,1f,24,94,fd
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\windows\slsvc.exe
c:\program files (x86)\IObit\Start Menu 8\StartMenu8.exe
c:\program files (x86)\IObit\Start Menu 8\StartMenu_Hook.exe
c:\program files\ASUS Xonar DG Audio\Customapp\ASUSAUDIOCENTER.EXE
c:\program files (x86)\Internet Download Manager\IEMonitor.exe
c:\program files (x86)\Internet Explorer\IEXPLORE.EXE
c:\program files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
.
**************************************************************************
.
Celkový čas: 2013-09-23 21:00:24 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-09-23 19:00
ComboFix2.txt 2013-09-23 06:14
ComboFix3.txt 2013-09-22 16:51
ComboFix4.txt 2013-09-18 17:22
.
Před spuštěním: 209 935 847 424 bytes free
Po spuštění: 209 764 155 392 bytes free
.
- - End Of File - - 8AB7FD4F1736CC391419DF7144A2390F