Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

mrzne xp

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
dusanbalaz1
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 29 lis 2009 18:15

mrzne xp

#1 Příspěvek od dusanbalaz1 »

zdravím páni. mám takýto prpblém. mal som v počítači trojanagent. po odstránení viru mi blbne počítač tak že sa sám od seba reštartuje a asi tak po pol hodinke práce ho musím vypnúť lebo mi zamrzne. mám z toho už dosť narvy. prosím vás dá sa s tým niečo robiť? vopred ďakujem. :worship:

Uživatelský avatar
stell
VIP in memoriam
VIP in memoriam
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: mrzne xp

#2 Příspěvek od stell »

zdravim
:arrow:
Stiahnes>>RSIT >>logy vloz sem,
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

dusanbalaz1
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 29 lis 2009 18:15

Re: mrzne xp

#3 Příspěvek od dusanbalaz1 »

prikladám log

Logfile of random's system information tool 1.06 (written by random/random)
Run by Dušan at 2009-12-06 16:23:06
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 10 GB (52%) free of 20 GB
Total RAM: 895 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:23:48, on 6.12.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\FixCamera.exe
C:\WINDOWS\vsnpstd3.exe
C:\WINDOWS\tsnpstd3.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
D:\Nová složka\Office12\GrooveMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\Dušan\Plocha\RSIT.exe
C:\Program Files\trend micro\Dušan.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Nová složka\Office12\GrooveShellExtensions.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [FixCamera] C:\WINDOWS\FixCamera.exe
O4 - HKLM\..\Run: [snpstd3] C:\WINDOWS\vsnpstd3.exe
O4 - HKLM\..\Run: [tsnpstd3] C:\WINDOWS\tsnpstd3.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Nová složka\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O4 - Global Startup: Aktualizovat ESET licenci.lnk = C:\Program Files\ESET\MiNODLogin\MiNODLogin.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\NOVSLO~1\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\NOVSLO~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 9488727671
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Nová složka\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 6388 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\tasks\MP Scheduled Scan.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-08-04 1586472]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - D:\Nová složka\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-05-06 1145736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-11-24 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-11-24 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-05-06 1145736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2006-11-03 866584]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-09-11 2054360]
"FixCamera"=C:\WINDOWS\FixCamera.exe [2007-07-11 20480]
"snpstd3"=C:\WINDOWS\vsnpstd3.exe [2007-05-10 835584]
"tsnpstd3"=C:\WINDOWS\tsnpstd3.exe [2007-04-21 270336]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-10-22 7700480]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-10-22 86016]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2007-04-16 577536]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-11-24 149280]
"GrooveMonitor"=D:\Nová složka\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Aktualizovat ESET licenci.lnk - C:\Program Files\ESET\MiNODLogin\MiNODLogin.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-04-27 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"=C:\PROGRA~1\WIFD1F~1\MpShHook.dll [2006-11-03 83224]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\Nová složka\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
"NoSecCpl"=0
"DisableChangePassword"=0
"DisableLockWorkstation"=0
"NoDispCpl"=0
"NoDispScrSavPage"=0
"NoDispAppearancePage"=0
"NoDispSettingsPage"=0
"NoVisualStyleChoice"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoStartMenuPinnedList"=0
"NoStartMenuMFUprogramsList"=0
"NoUserNameInStartMenu"=0
"NoStartMenuSubFolders"=0
"NoCommonGroups"=0
"NoPrinterTabs"=0
"NoDeletePrinter"=0
"NoAddPrinter"=0
"NoPrinters"=0
"NoFavoritesMenu"=0
"NoDrives"=0
"NoRecentDocsNetHood"=0
"NoChangeAnimation"=0
"NoChangeKeyboardNavigationIndicators"=0
"NoDriveAutoRun"=67108863
"NoDesktop"=0
"NoActiveDesktop"=0
"HideClock"=0
"StartmenuLogoff"=0
"NoRun"=0
"NoFind"=0
"NoClose"=0
"NoSetFolders"=0
"NoViewContextMenu"=0
"NoToolbarCustomize"=0
"NoThemesTab"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"D:\Nová složka\Office12\OUTLOOK.EXE"="D:\Nová složka\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"D:\Nová složka\Office12\GROOVE.EXE"="D:\Nová složka\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2009-12-06 16:23:07 ----D---- C:\Program Files\trend micro
2009-12-06 16:23:06 ----D---- C:\rsit
2009-12-04 21:09:57 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2009-12-04 20:39:08 ----D---- C:\Program Files\MSECache
2009-11-30 10:01:15 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2009-11-30 10:01:15 ----A---- C:\WINDOWS\system32\mucltui.dll
2009-11-29 17:07:49 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-11-29 17:07:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2009-11-29 16:54:19 ----D---- C:\totalcmd
2009-11-29 16:54:19 ----D---- C:\Documents and Settings\Dušan\Data aplikací\GHISLER
2009-11-29 16:18:19 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Malwarebytes
2009-11-29 16:18:11 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2009-11-29 16:18:09 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-11-29 13:03:41 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Windows Search
2009-11-27 21:06:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\page
2009-11-27 20:16:01 ----D---- C:\Program Files\Ask.com
2009-11-27 19:17:43 ----HD---- C:\WINDOWS\$NtUninstallKB961118$
2009-11-27 19:17:05 ----HD---- C:\WINDOWS\$NtUninstallKB963093$
2009-11-27 18:45:10 ----A---- C:\WINDOWS\MBR.exe
2009-11-27 18:19:57 ----HD---- C:\WINDOWS\$NtUninstallKB971513$
2009-11-27 18:18:57 ----D---- C:\WINDOWS\ie8updates
2009-11-27 18:14:41 ----D---- C:\Program Files\Yamicsoft
2009-11-27 18:14:06 ----HD---- C:\WINDOWS\ie8
2009-11-27 18:03:31 ----D---- C:\WINDOWS\system32\XPSViewer
2009-11-27 18:03:21 ----D---- C:\Program Files\MSBuild
2009-11-27 18:03:16 ----D---- C:\WINDOWS\system32\en-US
2009-11-27 18:03:04 ----D---- C:\Program Files\Reference Assemblies
2009-11-27 18:02:05 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2009-11-27 18:02:05 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2009-11-27 18:02:05 ----N---- C:\WINDOWS\system32\prntvpt.dll
2009-11-27 17:56:40 ----HD---- C:\WINDOWS\$NtUninstallbasecsp$
2009-11-27 17:56:16 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Windows Desktop Search
2009-11-27 17:55:19 ----D---- C:\Program Files\Windows Desktop Search
2009-11-27 17:55:18 ----D---- C:\WINDOWS\system32\GroupPolicy
2009-11-27 17:55:04 ----HD---- C:\WINDOWS\$NtUninstallKB940157$
2009-11-27 17:54:53 ----HD---- C:\WINDOWS\$NtUninstallKB915800-v4$
2009-11-27 17:51:27 ----RSD---- C:\WINDOWS\assembly
2009-11-27 17:51:27 ----D---- C:\WINDOWS\Microsoft.NET
2009-11-27 17:51:25 ----D---- C:\WINDOWS\system32\URTTemp
2009-11-27 17:37:17 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Google
2009-11-27 17:36:48 ----D---- C:\WINDOWS\system32\appmgmt
2009-11-25 20:52:59 ----HD---- C:\WINDOWS\$NtUninstallKB976098-v2$
2009-11-25 20:52:38 ----HD---- C:\WINDOWS\$NtUninstallKB973687$
2009-11-25 19:44:15 ----D---- C:\Program Files\Microsoft Office
2009-11-24 19:17:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\Ashampoo
2009-11-24 19:05:50 ----A---- C:\WINDOWS\iun6002.exe
2009-11-24 19:05:41 ----D---- C:\Program Files\Codec Pack - All In 1
2009-11-24 18:34:13 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Nero
2009-11-24 18:32:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2009-11-24 18:32:23 ----D---- C:\Program Files\Common Files\Nero
2009-11-24 18:13:20 ----D---- C:\WINDOWS\Prefetch
2009-11-24 17:51:50 ----D---- C:\Program Files\Microsoft Works
2009-11-24 17:51:09 ----D---- C:\Program Files\Microsoft Visual Studio
2009-11-24 17:51:08 ----D---- C:\Program Files\Common Files\DESIGNER
2009-11-24 17:46:56 ----D---- C:\WINDOWS\SHELLNEW
2009-11-24 17:46:22 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2009-11-24 17:07:07 ----A---- C:\WINDOWS\system32\javaws.exe
2009-11-24 17:07:07 ----A---- C:\WINDOWS\system32\deploytk.dll
2009-11-24 17:07:06 ----A---- C:\WINDOWS\system32\javaw.exe
2009-11-24 17:07:06 ----A---- C:\WINDOWS\system32\java.exe
2009-11-24 17:06:50 ----D---- C:\Program Files\Java
2009-11-24 17:06:02 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Sun
2009-11-24 16:53:13 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Godlike
2009-11-24 16:52:55 ----D---- C:\Program Files\Godlike Developers
2009-11-24 16:31:17 ----D---- C:\Program Files\uTorrent
2009-11-24 16:30:17 ----D---- C:\Documents and Settings\Dušan\Data aplikací\uTorrent
2009-11-24 16:29:00 ----D---- C:\Program Files\7-Zip
2009-11-24 16:20:40 ----D---- C:\Program Files\VIA Technologies, Inc
2009-11-24 16:20:40 ----A---- C:\WINDOWS\system32\UnAudioNT.dll
2009-11-24 16:20:28 ----A---- C:\WINDOWS\IsUninst.exe
2009-11-23 20:42:40 ----D---- C:\Program Files\VideoLAN
2009-11-23 20:23:14 ----HD---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-11-23 20:22:58 ----HD---- C:\WINDOWS\$NtUninstallKB952954$
2009-11-23 20:22:37 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Opera
2009-11-23 20:22:36 ----HD---- C:\WINDOWS\$NtUninstallKB959426$
2009-11-23 20:22:17 ----D---- C:\Program Files\Opera
2009-11-23 20:22:12 ----HD---- C:\WINDOWS\$NtUninstallKB946648$
2009-11-23 20:21:57 ----HD---- C:\WINDOWS\$NtUninstallKB956803$
2009-11-23 20:21:41 ----HD---- C:\WINDOWS\$NtUninstallKB960859$
2009-11-23 20:21:26 ----HD---- C:\WINDOWS\$NtUninstallKB958869$
2009-11-23 20:20:58 ----HD---- C:\WINDOWS\$NtUninstallKB951978$
2009-11-23 20:20:40 ----HD---- C:\WINDOWS\$NtUninstallKB969059$
2009-11-23 20:20:21 ----HD---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2009-11-23 20:19:48 ----HD---- C:\WINDOWS\$NtUninstallKB961371-v2$
2009-11-23 20:18:59 ----HD---- C:\WINDOWS\$NtUninstallKB950974$
2009-11-23 20:18:16 ----HD---- C:\WINDOWS\$NtUninstallKB971657$
2009-11-23 20:17:51 ----D---- C:\Documents and Settings\Dušan\Data aplikací\skypePM
2009-11-23 20:17:44 ----HD---- C:\WINDOWS\$NtUninstallKB971557$
2009-11-23 20:17:31 ----HD---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-11-23 20:17:22 ----HD---- C:\WINDOWS\$NtUninstallKB960225$
2009-11-23 20:16:11 ----A---- C:\WINDOWS\system32\MRT.exe
2009-11-23 20:15:54 ----HD---- C:\WINDOWS\$NtUninstallKB956744$
2009-11-23 20:15:34 ----HD---- C:\WINDOWS\$NtUninstallKB974112$
2009-11-23 20:15:07 ----HD---- C:\WINDOWS\$NtUninstallKB956572$
2009-11-23 20:14:47 ----HD---- C:\WINDOWS\$NtUninstallKB956844$
2009-11-23 20:14:31 ----HD---- C:\WINDOWS\$NtUninstallKB961501$
2009-11-23 20:14:22 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Skype
2009-11-23 20:14:11 ----HD---- C:\WINDOWS\$NtUninstallKB971633$
2009-11-23 20:13:52 ----HD---- C:\WINDOWS\$NtUninstallKB973869$
2009-11-23 20:13:26 ----HD---- C:\WINDOWS\$NtUninstallKB975025$
2009-11-23 20:12:55 ----D---- C:\Program Files\Common Files\Skype
2009-11-23 20:12:47 ----RD---- C:\Program Files\Skype
2009-11-23 20:12:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2009-11-23 20:12:17 ----D---- C:\WINDOWS\ie7updates
2009-11-23 20:11:49 ----HD---- C:\WINDOWS\$NtUninstallKB952004$
2009-11-23 20:11:34 ----HD---- C:\WINDOWS\$NtUninstallKB974571$
2009-11-23 20:11:20 ----HD---- C:\WINDOWS\$NtUninstallKB973507$
2009-11-23 20:11:04 ----HD---- C:\WINDOWS\$NtUninstallKB950762$
2009-11-23 20:10:48 ----HD---- C:\WINDOWS\$NtUninstallKB957097$
2009-11-23 20:10:30 ----HD---- C:\WINDOWS\$NtUninstallKB958687$
2009-11-23 20:10:14 ----HD---- C:\WINDOWS\$NtUninstallKB952287$
2009-11-23 20:09:57 ----HD---- C:\WINDOWS\$NtUninstallKB973354$
2009-11-23 20:09:37 ----HD---- C:\WINDOWS\$NtUninstallKB967715$
2009-11-23 20:09:19 ----HD---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2009-11-23 20:09:06 ----HD---- C:\WINDOWS\$NtUninstallKB951066$
2009-11-23 20:08:48 ----HD---- C:\WINDOWS\$NtUninstallKB954459$
2009-11-23 20:08:29 ----HD---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-11-23 20:08:13 ----HD---- C:\WINDOWS\$NtUninstallKB951748$
2009-11-23 20:07:52 ----HD---- C:\WINDOWS\$NtUninstallKB970238$
2009-11-23 20:07:33 ----HD---- C:\WINDOWS\$NtUninstallKB971486$
2009-11-23 20:07:22 ----D---- C:\Program Files\CCleaner
2009-11-23 20:07:13 ----HD---- C:\WINDOWS\$NtUninstallKB960803$
2009-11-23 20:06:42 ----HD---- C:\WINDOWS\$NtUninstallKB973815$
2009-11-23 20:06:15 ----HD---- C:\WINDOWS\$NtUninstallKB973525$
2009-11-23 20:06:01 ----HD---- C:\WINDOWS\$NtUninstallKB958644$
2009-11-23 20:05:39 ----HD---- C:\WINDOWS\$NtUninstallKB955069$
2009-11-23 20:05:17 ----HD---- C:\WINDOWS\$NtUninstallKB956802$
2009-11-23 20:05:11 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Macromedia
2009-11-23 20:05:11 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Adobe
2009-11-23 20:05:01 ----HD---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2009-11-23 20:04:49 ----HD---- C:\WINDOWS\$NtUninstallKB923561$
2009-11-23 20:04:31 ----HD---- C:\WINDOWS\$NtUninstallKB971961$
2009-11-23 20:04:17 ----HD---- C:\WINDOWS\$NtUninstallKB970653-v3$
2009-11-23 20:04:07 ----HD---- C:\WINDOWS\$NtUninstallKB975467$
2009-11-23 20:03:51 ----HD---- C:\WINDOWS\$NtUninstallKB968389$
2009-11-23 20:03:31 ----HD---- C:\WINDOWS\$NtUninstallKB969947$
2009-11-23 19:28:38 ----D---- C:\Program Files\Realtek AC97
2009-11-23 19:23:50 ----D---- C:\WINDOWS\nview
2009-11-23 19:23:50 ----A---- C:\WINDOWS\system32\nvudisp.exe
2009-11-23 19:23:38 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-11-23 19:23:27 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2009-11-23 19:23:06 ----D---- C:\NVIDIA
2009-11-23 19:19:18 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2009-11-23 19:05:20 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2009-11-23 19:04:19 ----A---- C:\WINDOWS\FixCamera.exe
2009-11-23 19:04:19 ----A---- C:\WINDOWS\amcap.exe
2009-11-23 19:04:12 ----N---- C:\WINDOWS\vsnpstd3.exe
2009-11-23 19:04:11 ----A---- C:\WINDOWS\tsnpstd3.exe
2009-11-23 19:04:11 ----A---- C:\WINDOWS\snpstd3.ini
2009-11-23 19:04:03 ----D---- C:\Program Files\Common Files\snpstd3
2009-11-23 19:04:03 ----A---- C:\WINDOWS\system32\vsnpstd3.dll
2009-11-23 19:04:03 ----A---- C:\WINDOWS\system32\rsnpstd3.dll
2009-11-23 19:04:03 ----A---- C:\WINDOWS\system32\csnpstd3.dll
2009-11-23 19:04:03 ----A---- C:\WINDOWS\csnpstd3.dll
2009-11-23 19:03:37 ----D---- C:\Documents and Settings\Dušan\Data aplikací\InstallShield
2009-11-23 18:51:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2009-11-23 18:49:53 ----D---- C:\Documents and Settings\Dušan\Data aplikací\ESET
2009-11-23 18:48:37 ----D---- C:\Program Files\ESET
2009-11-23 18:48:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2009-11-23 18:47:11 ----D---- C:\WINDOWS\system32\PreInstall
2009-11-23 18:47:10 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2009-11-23 18:47:09 ----HD---- C:\WINDOWS\$NtUninstallKB898461$
2009-11-23 18:46:45 ----A---- C:\WINDOWS\system32\ChCfg.exe
2009-11-23 18:46:13 ----N---- C:\WINDOWS\system32\ksuser.dll
2009-11-23 18:46:07 ----A---- C:\WINDOWS\system32\RTLCPL.EXE
2009-11-23 18:46:05 ----N---- C:\WINDOWS\soundman.exe
2009-11-23 18:46:05 ----A---- C:\WINDOWS\system32\RtlCPAPI.dll
2009-11-23 18:46:05 ----A---- C:\WINDOWS\alcupd.exe
2009-11-23 18:46:05 ----A---- C:\WINDOWS\Alcrmv.exe
2009-11-23 18:46:04 ----HD---- C:\Program Files\InstallShield Installation Information
2009-11-23 18:45:53 ----D---- C:\Program Files\Common Files\InstallShield
2009-11-23 18:42:07 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-11-23 18:41:54 ----SHD---- C:\Recycled
2009-11-23 18:37:20 ----D---- C:\temp
2009-11-23 18:31:34 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Identities
2009-11-23 18:31:17 ----D---- C:\Program Files\Windows Defender
2009-11-23 18:31:09 ----SD---- C:\Documents and Settings\Dušan\Data aplikací\Microsoft
2009-11-23 18:31:09 ----ASH---- C:\Documents and Settings\Dušan\Data aplikací\desktop.ini
2009-11-23 18:30:23 ----D---- C:\WINDOWS\SoftwareDistribution
2009-11-23 18:30:22 ----SHD---- C:\System Volume Information
2009-11-23 18:30:21 ----SD---- C:\WINDOWS\system32\Microsoft
2009-11-23 18:30:21 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-11-23 18:23:34 ----D---- C:\WINDOWS\system32\xircom
2009-11-23 18:23:34 ----D---- C:\Program Files\xerox
2009-11-23 18:23:34 ----D---- C:\Program Files\microsoft frontpage
2009-11-23 18:22:49 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-11-23 18:22:48 ----HD---- C:\WINDOWS\$hf_mig$
2009-11-23 18:22:37 ----A---- C:\WINDOWS\control.ini
2009-11-23 18:22:17 ----A---- C:\WINDOWS\system32\mapi32.dll
2009-11-23 18:21:14 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-11-23 18:21:09 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-11-23 18:21:00 ----D---- C:\Program Files\Online Services
2009-11-23 18:20:40 ----D---- C:\WINDOWS\system32\DirectX
2009-11-23 18:20:30 ----A---- C:\WINDOWS\system32\atrace.dll
2009-11-23 18:20:28 ----A---- C:\WINDOWS\system32\desktop.ini
2009-11-23 18:20:28 ----A---- C:\WINDOWS\desktop.ini
2009-11-23 18:20:20 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2009-11-23 18:20:18 ----A---- C:\WINDOWS\system32\acctres.dll
2009-11-23 18:20:17 ----D---- C:\Program Files\Common Files\Services
2009-11-23 18:20:14 ----SD---- C:\WINDOWS\Tasks
2009-11-23 18:20:14 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2009-11-23 18:20:13 ----D---- C:\Program Files\Common Files\MSSoap
2009-11-23 18:20:07 ----D---- C:\WINDOWS\srchasst
2009-11-23 18:20:06 ----D---- C:\WINDOWS\system32\Macromed
2009-11-23 18:20:04 ----A---- C:\WINDOWS\system32\wuweb.dll
2009-11-23 18:20:04 ----A---- C:\WINDOWS\system32\wucltui.dll
2009-11-23 18:20:04 ----A---- C:\WINDOWS\system32\wuauserv.dll
2009-11-23 18:20:04 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2009-11-23 18:20:03 ----N---- C:\WINDOWS\system32\wuauclt.exe
2009-11-23 18:20:03 ----A---- C:\WINDOWS\system32\wups.dll
2009-11-23 18:20:03 ----A---- C:\WINDOWS\system32\wuaueng.dll
2009-11-23 18:20:03 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2009-11-23 18:20:03 ----A---- C:\WINDOWS\system32\wuapi.dll
2009-11-23 18:20:02 ----N---- C:\WINDOWS\system32\qmgr.dll
2009-11-23 18:20:02 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2009-11-23 18:20:02 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2009-11-23 18:20:02 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2009-11-23 18:20:02 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2009-11-23 18:19:58 ----D---- C:\Program Files\Movie Maker
2009-11-23 18:19:35 ----A---- C:\WINDOWS\system32\safrslv.dll
2009-11-23 18:19:35 ----A---- C:\WINDOWS\system32\safrdm.dll
2009-11-23 18:19:34 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2009-11-23 18:19:34 ----A---- C:\WINDOWS\system32\racpldlg.dll
2009-11-23 18:19:28 ----A---- C:\WINDOWS\system32\fltMc.exe
2009-11-23 18:19:28 ----A---- C:\WINDOWS\system32\fltlib.dll
2009-11-23 18:19:27 ----N---- C:\WINDOWS\system32\srsvc.dll
2009-11-23 18:19:27 ----D---- C:\WINDOWS\system32\Restore
2009-11-23 18:19:27 ----A---- C:\WINDOWS\system32\srrstr.dll
2009-11-23 18:19:27 ----A---- C:\WINDOWS\system32\srclient.dll
2009-11-23 18:19:26 ----A---- C:\WINDOWS\system32\mnmdd.dll
2009-11-23 18:19:26 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2009-11-23 18:19:26 ----A---- C:\WINDOWS\system32\ils.dll
2009-11-23 18:19:25 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2009-11-23 18:19:25 ----A---- C:\WINDOWS\system32\msconf.dll
2009-11-23 18:19:25 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2009-11-23 18:19:22 ----D---- C:\Program Files\NetMeeting
2009-11-23 18:19:21 ----A---- C:\WINDOWS\system32\msoert2.dll
2009-11-23 18:19:21 ----A---- C:\WINDOWS\system32\msoeacct.dll
2009-11-23 18:19:20 ----A---- C:\WINDOWS\system32\inetres.dll
2009-11-23 18:19:19 ----A---- C:\WINDOWS\system32\inetcomm.dll
2009-11-23 18:19:17 ----N---- C:\WINDOWS\system32\schedsvc.dll
2009-11-23 18:19:17 ----D---- C:\Program Files\Outlook Express
2009-11-23 18:19:17 ----A---- C:\WINDOWS\system32\mstinit.exe
2009-11-23 18:19:17 ----A---- C:\WINDOWS\system32\mstask.dll
2009-11-23 18:19:16 ----A---- C:\WINDOWS\system32\isign32.dll
2009-11-23 18:19:16 ----A---- C:\WINDOWS\system32\inetcfg.dll
2009-11-23 18:19:16 ----A---- C:\WINDOWS\system32\icwphbk.dll
2009-11-23 18:19:16 ----A---- C:\WINDOWS\system32\icwdial.dll
2009-11-23 18:19:09 ----D---- C:\Program Files\Common Files\System
2009-11-23 18:19:06 ----D---- C:\Program Files\Internet Explorer
2009-11-23 18:17:58 ----A---- C:\WINDOWS\vbaddin.ini
2009-11-23 18:17:58 ----A---- C:\WINDOWS\vb.ini
2009-11-23 18:17:54 ----D---- C:\WINDOWS\Registration
2009-11-23 18:17:32 ----D---- C:\Program Files\Windows Media Connect 2
2009-11-23 18:17:31 ----D---- C:\Program Files\Windows Media Player
2009-11-23 18:17:29 ----D---- C:\Program Files\Messenger
2009-11-23 18:17:25 ----D---- C:\Program Files\MSN Gaming Zone
2009-11-23 18:17:25 ----A---- C:\WINDOWS\system32\write.exe
2009-11-23 18:17:13 ----A---- C:\WINDOWS\system32\sndvol32.exe
2009-11-23 18:17:13 ----A---- C:\WINDOWS\system32\hticons.dll
2009-11-23 18:17:12 ----A---- C:\WINDOWS\system32\winchat.exe
2009-11-23 18:17:12 ----A---- C:\WINDOWS\system32\avwav.dll
2009-11-23 18:17:12 ----A---- C:\WINDOWS\system32\avtapi.dll
2009-11-23 18:17:12 ----A---- C:\WINDOWS\system32\avmeter.dll
2009-11-23 18:17:03 ----A---- C:\WINDOWS\system32\charmap.exe
2009-11-23 18:17:03 ----A---- C:\WINDOWS\system32\getuname.dll
2009-11-23 18:17:03 ----A---- C:\WINDOWS\system32\calc.exe
2009-11-23 18:17:02 ----A---- C:\WINDOWS\system32\winmine.exe
2009-11-23 18:17:02 ----A---- C:\WINDOWS\system32\sol.exe
2009-11-23 18:17:02 ----A---- C:\WINDOWS\system32\mshearts.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tslabels.ini
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tskill.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tscon.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\reset.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\freecell.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\shadow.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\rwinsta.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\regini.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\qwinsta.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\qappsrv.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\msg.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\logoff.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\cdmodem.dll
2009-11-23 18:16:59 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2009-11-23 18:16:52 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2009-11-23 18:16:51 ----A---- C:\WINDOWS\system32\sndrec32.exe
2009-11-23 18:16:51 ----A---- C:\WINDOWS\system32\mplay32.exe
2009-11-23 18:16:51 ----A---- C:\WINDOWS\system32\hypertrm.dll
2009-11-23 18:16:51 ----A---- C:\WINDOWS\system32\accwiz.exe
2009-11-23 18:16:50 ----D---- C:\Program Files\Windows NT
2009-11-23 18:16:50 ----A---- C:\WINDOWS\system32\mspaint.exe
2009-11-23 18:16:49 ----A---- C:\WINDOWS\system32\spider.exe
2009-11-23 18:16:49 ----A---- C:\WINDOWS\system32\clipbrd.exe
2009-11-23 18:16:48 ----A---- C:\WINDOWS\system32\tsgqec.dll
2009-11-23 18:16:48 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2009-11-23 18:16:48 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2009-11-23 18:16:47 ----A---- C:\WINDOWS\system32\mstscax.dll
2009-11-23 18:16:47 ----A---- C:\WINDOWS\system32\aaclient.dll
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\sessmgr.exe
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\remotepg.dll
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\rdshost.exe
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\rdchost.dll
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\mstsc.exe
2009-11-23 18:16:45 ----N---- C:\WINDOWS\system32\termsrv.dll
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\rdpclip.exe
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\qprocess.exe
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\icaapi.dll
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2009-11-23 18:16:44 ----D---- C:\WINDOWS\system32\MsDtc
2009-11-23 18:16:44 ----A---- C:\WINDOWS\system32\mtxoci.dll
2009-11-23 18:16:44 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2009-11-23 18:16:44 ----A---- C:\WINDOWS\system32\msdtctm.dll
2009-11-23 18:16:44 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2009-11-23 18:16:43 ----A---- C:\WINDOWS\system32\xolehlp.dll
2009-11-23 18:16:43 ----A---- C:\WINDOWS\system32\msdtclog.dll
2009-11-23 18:16:43 ----A---- C:\WINDOWS\system32\msdtc.exe
2009-11-23 18:16:42 ----D---- C:\WINDOWS\system32\Com
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\mtxex.dll
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\mtxdm.dll
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\colbact.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\stclient.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\comrepl.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\comaddin.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\clbcatex.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\catsrvps.dll
2009-11-23 18:16:40 ----A---- C:\WINDOWS\system32\comsvcs.dll
2009-11-23 18:16:40 ----A---- C:\WINDOWS\system32\catsrvut.dll
2009-11-23 18:16:40 ----A---- C:\WINDOWS\system32\catsrv.dll
2009-11-23 18:16:39 ----A---- C:\WINDOWS\system32\comuid.dll
2009-11-23 18:16:39 ----A---- C:\WINDOWS\system32\comsnap.dll
2009-11-23 18:16:39 ----A---- C:\WINDOWS\system32\clbcatq.dll
2009-11-23 18:16:31 ----A---- C:\WINDOWS\system32\servdeps.dll
2009-11-23 18:16:31 ----A---- C:\WINDOWS\system32\mmfutil.dll
2009-11-23 18:16:31 ----A---- C:\WINDOWS\system32\licwmi.dll
2009-11-23 18:16:31 ----A---- C:\WINDOWS\system32\cmprops.dll
2009-11-23 18:14:19 ----A---- C:\WINDOWS\system32\h323log.txt
2009-11-23 18:08:08 ----A---- C:\WINDOWS\system32\hidserv.dll
2009-11-23 18:07:21 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2009-11-23 18:06:43 ----A---- C:\WINDOWS\system32\usbui.dll
2009-11-23 18:05:25 ----SHD---- C:\WINDOWS\Installer
2009-11-23 18:05:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-11-23 18:05:24 ----D---- C:\Program Files\Common Files\ODBC
2009-11-23 18:05:24 ----A---- C:\WINDOWS\ODBCINST.INI
2009-11-23 18:05:20 ----D---- C:\Program Files\Common Files\SpeechEngines
2009-11-23 18:05:19 ----RD---- C:\Program Files
2009-11-23 18:05:19 ----D---- C:\Program Files\Common Files\Microsoft Shared
2009-11-23 18:05:19 ----D---- C:\Program Files\Common Files
2009-11-23 18:05:14 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2009-11-23 18:05:14 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2009-11-23 18:05:14 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdur.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2009-11-23 18:05:11 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2009-11-23 18:05:11 ----RA---- C:\WINDOWS\system32\kbdru.dll
2009-11-23 18:05:11 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2009-11-23 18:05:11 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdest.dll
2009-11-23 18:04:59 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2009-11-23 18:04:59 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdro.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2009-11-23 18:04:55 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-11-23 18:04:55 ----A---- C:\WINDOWS\system32\irclass.dll
2009-11-23 18:04:55 ----A---- C:\WINDOWS\system32\dgsetup.dll
2009-11-23 18:04:55 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2009-11-23 18:04:54 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2009-11-23 18:04:52 ----A---- C:\WINDOWS\TASKMAN.EXE
2009-11-23 18:04:51 ----A---- C:\WINDOWS\system32\batt.dll
2009-11-23 18:04:51 ----A---- C:\WINDOWS\NOTEPAD.EXE
2009-11-23 18:04:50 ----A---- C:\WINDOWS\system32\storprop.dll
2009-11-23 18:04:42 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2009-11-23 18:04:25 ----D---- C:\WINDOWS\system32\CatRoot2
2009-11-23 18:04:25 ----D---- C:\WINDOWS\system32\CatRoot
2009-11-23 18:04:19 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2009-11-23 18:03:52 ----D---- C:\Documents and Settings
2009-11-23 18:03:14 ----SH---- C:\boot.ini
2009-11-23 17:58:22 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-11-23 17:58:22 ----RSHD---- C:\WINDOWS\system32\dllcache
2009-11-23 17:58:22 ----RSD---- C:\WINDOWS\Fonts
2009-11-23 17:58:22 ----RD---- C:\WINDOWS\Web
2009-11-23 17:58:22 ----HD---- C:\WINDOWS\inf
2009-11-23 17:58:22 ----D---- C:\WINDOWS\WinSxS
2009-11-23 17:58:22 ----D---- C:\WINDOWS\WBEM
2009-11-23 17:58:22 ----D---- C:\WINDOWS\twain_32
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Temp
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\wins
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\wbem
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\usmt
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\spool
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\ShellExt
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\Setup
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\ras
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\oobe
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\npp
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\mui
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\inetsrv
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\IME
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\icsxml
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\ias
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\export
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\drivers
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\dhcp
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\cs-cz
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\cs
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\config
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\3com_dmi
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\3076
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\2052
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1054
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1042
2009-11-23 17:58:22 ----D---- C:\WINDAOWS\system32\1041
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1037
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1033
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1031
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1029
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1028
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1025
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system
2009-11-23 17:58:22 ----D---- C:\WINDOWS\security
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Resources
2009-11-23 17:58:22 ----D---- C:\WINDOWS\repair
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Provisioning
2009-11-23 17:58:22 ----D---- C:\WINDOWS\pchealth
2009-11-23 17:58:22 ----D---- C:\WINDOWS\PeerNet
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Offline Web Pages
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Network Diagnostic
2009-11-23 17:58:22 ----D---- C:\WINDOWS\msapps
2009-11-23 17:58:22 ----D---- C:\WINDOWS\msagent
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Media
2009-11-23 17:58:22 ----D---- C:\WINDOWS\L2Schemas
2009-11-23 17:58:22 ----D---- C:\WINDOWS\java
2009-11-23 17:58:22 ----D---- C:\WINDOWS\ime
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Help
2009-11-23 17:58:22 ----D---- C:\WINDOWS\ehome
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Driver Cache
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Debug
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Cursors
2009-11-23 17:58:22 ----D---- C:\WINDOWS\AppPatch
2009-11-23 17:58:22 ----D---- C:\WINDOWS

======List of files/folders modified in the last 1 months======

2009-11-29 18:41:50 ----A---- C:\WINDOWS\win.ini
2009-11-27 18:53:14 ----A---- C:\WINDOWS\system.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK7;Ovladač procesoru AMD K7; C:\WINDOWS\system32\DRIVERS\amdk7.sys [2008-04-27 41600]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-09-11 108792]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-09-11 55768]A
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-09-11 116008]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-09-11 135048]
R3 cmuda;C-Media WDM Audio Interface; C:\WINDOWS\system32\drivers\cmuda.sys [2006-06-09 1373120]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-06-19 33096]
R3 FET5X86V;VIA Rhine-Family Fast-Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys [2008-09-22 43520]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 KMWDFILTER;HIDUASDesc; C:\WINDOWS\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-27 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-10-22 3994624]
R3 RT73;%General.Service.DispName%; C:\WINDOWS\system32\DRIVERS\rt73.sys [2008-10-21 465152]
R3 SNPSTD3;USB PC Camera (SNPSTD3); C:\WINDOWS\system32\DRIVERS\snpstd3.sys [2007-10-16 10376576]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VIAudio;VIA AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\viaudio.sys [2002-09-15 64128]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2008-04-27 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-04-27 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-09-11 735960]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-11-24 153376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-22 159810]
R2 WinDefend;Windows Defender; C:\Program Files\Windows Defender\MsMpEng.exe [2006-11-03 13592]
R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-09-11 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; D:\Nová složka\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

dusanbalaz1
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 29 lis 2009 18:15

Re: mrzne xp

#4 Příspěvek od dusanbalaz1 »

prikladám log

Logfile of random's system information tool 1.06 (written by random/random)
Run by Dušan at 2009-12-06 16:39:30
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 10 GB (52%) free of 20 GB
Total RAM: 895 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:40:07, on 6.12.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\FixCamera.exe
C:\WINDOWS\vsnpstd3.exe
C:\WINDOWS\tsnpstd3.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
D:\Nová složka\Office12\GrooveMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\Dušan\Plocha\RSIT.exe
C:\Program Files\trend micro\Dušan.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Nová složka\Office12\GrooveShellExtensions.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [FixCamera] C:\WINDOWS\FixCamera.exe
O4 - HKLM\..\Run: [snpstd3] C:\WINDOWS\vsnpstd3.exe
O4 - HKLM\..\Run: [tsnpstd3] C:\WINDOWS\tsnpstd3.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Nová složka\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O4 - Global Startup: Aktualizovat ESET licenci.lnk = C:\Program Files\ESET\MiNODLogin\MiNODLogin.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\NOVSLO~1\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\NOVSLO~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 9488727671
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Nová složka\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 6421 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\tasks\MP Scheduled Scan.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-08-04 1586472]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - D:\Nová složka\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-05-06 1145736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-11-24 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-11-24 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-05-06 1145736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2006-11-03 866584]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-09-11 2054360]
"FixCamera"=C:\WINDOWS\FixCamera.exe [2007-07-11 20480]
"snpstd3"=C:\WINDOWS\vsnpstd3.exe [2007-05-10 835584]
"tsnpstd3"=C:\WINDOWS\tsnpstd3.exe [2007-04-21 270336]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-10-22 7700480]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-10-22 86016]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2007-04-16 577536]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-11-24 149280]
"GrooveMonitor"=D:\Nová složka\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Aktualizovat ESET licenci.lnk - C:\Program Files\ESET\MiNODLogin\MiNODLogin.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-04-27 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"=C:\PROGRA~1\WIFD1F~1\MpShHook.dll [2006-11-03 83224]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\Nová složka\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
"NoSecCpl"=0
"DisableChangePassword"=0
"DisableLockWorkstation"=0
"NoDispCpl"=0
"NoDispScrSavPage"=0
"NoDispAppearancePage"=0
"NoDispSettingsPage"=0
"NoVisualStyleChoice"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoStartMenuPinnedList"=0
"NoStartMenuMFUprogramsList"=0
"NoUserNameInStartMenu"=0
"NoStartMenuSubFolders"=0
"NoCommonGroups"=0
"NoPrinterTabs"=0
"NoDeletePrinter"=0
"NoAddPrinter"=0
"NoPrinters"=0
"NoFavoritesMenu"=0
"NoDrives"=0
"NoRecentDocsNetHood"=0
"NoChangeAnimation"=0
"NoChangeKeyboardNavigationIndicators"=0
"NoDriveAutoRun"=67108863
"NoDesktop"=0
"NoActiveDesktop"=0
"HideClock"=0
"StartmenuLogoff"=0
"NoRun"=0
"NoFind"=0
"NoClose"=0
"NoSetFolders"=0
"NoViewContextMenu"=0
"NoToolbarCustomize"=0
"NoThemesTab"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"D:\Nová složka\Office12\OUTLOOK.EXE"="D:\Nová složka\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"D:\Nová složka\Office12\GROOVE.EXE"="D:\Nová složka\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2009-12-06 16:23:07 ----D---- C:\Program Files\trend micro
2009-12-06 16:23:06 ----D---- C:\rsit
2009-12-04 21:09:57 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2009-12-04 20:39:08 ----D---- C:\Program Files\MSECache
2009-11-30 10:01:15 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2009-11-30 10:01:15 ----A---- C:\WINDOWS\system32\mucltui.dll
2009-11-29 17:07:49 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-11-29 17:07:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2009-11-29 16:54:19 ----D---- C:\totalcmd
2009-11-29 16:54:19 ----D---- C:\Documents and Settings\Dušan\Data aplikací\GHISLER
2009-11-29 16:18:19 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Malwarebytes
2009-11-29 16:18:11 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2009-11-29 16:18:09 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-11-29 13:03:41 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Windows Search
2009-11-27 21:06:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\page
2009-11-27 20:16:01 ----D---- C:\Program Files\Ask.com
2009-11-27 19:17:43 ----HD---- C:\WINDOWS\$NtUninstallKB961118$
2009-11-27 19:17:05 ----HD---- C:\WINDOWS\$NtUninstallKB963093$
2009-11-27 18:45:10 ----A---- C:\WINDOWS\MBR.exe
2009-11-27 18:19:57 ----HD---- C:\WINDOWS\$NtUninstallKB971513$
2009-11-27 18:18:57 ----D---- C:\WINDOWS\ie8updates
2009-11-27 18:14:41 ----D---- C:\Program Files\Yamicsoft
2009-11-27 18:14:06 ----HD---- C:\WINDOWS\ie8
2009-11-27 18:03:31 ----D---- C:\WINDOWS\system32\XPSViewer
2009-11-27 18:03:21 ----D---- C:\Program Files\MSBuild
2009-11-27 18:03:16 ----D---- C:\WINDOWS\system32\en-US
2009-11-27 18:03:04 ----D---- C:\Program Files\Reference Assemblies
2009-11-27 18:02:05 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2009-11-27 18:02:05 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2009-11-27 18:02:05 ----N---- C:\WINDOWS\system32\prntvpt.dll
2009-11-27 17:56:40 ----HD---- C:\WINDOWS\$NtUninstallbasecsp$
2009-11-27 17:56:16 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Windows Desktop Search
2009-11-27 17:55:19 ----D---- C:\Program Files\Windows Desktop Search
2009-11-27 17:55:18 ----D---- C:\WINDOWS\system32\GroupPolicy
2009-11-27 17:55:04 ----HD---- C:\WINDOWS\$NtUninstallKB940157$
2009-11-27 17:54:53 ----HD---- C:\WINDOWS\$NtUninstallKB915800-v4$
2009-11-27 17:51:27 ----RSD---- C:\WINDOWS\assembly
2009-11-27 17:51:27 ----D---- C:\WINDOWS\Microsoft.NET
2009-11-27 17:51:25 ----D---- C:\WINDOWS\system32\URTTemp
2009-11-27 17:37:17 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Google
2009-11-27 17:36:48 ----D---- C:\WINDOWS\system32\appmgmt
2009-11-25 20:52:59 ----HD---- C:\WINDOWS\$NtUninstallKB976098-v2$
2009-11-25 20:52:38 ----HD---- C:\WINDOWS\$NtUninstallKB973687$
2009-11-25 19:44:15 ----D---- C:\Program Files\Microsoft Office
2009-11-24 19:17:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\Ashampoo
2009-11-24 19:05:50 ----A---- C:\WINDOWS\iun6002.exe
2009-11-24 19:05:41 ----D---- C:\Program Files\Codec Pack - All In 1
2009-11-24 18:34:13 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Nero
2009-11-24 18:32:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2009-11-24 18:32:23 ----D---- C:\Program Files\Common Files\Nero
2009-11-24 18:13:20 ----D---- C:\WINDOWS\Prefetch
2009-11-24 17:51:50 ----D---- C:\Program Files\Microsoft Works
2009-11-24 17:51:09 ----D---- C:\Program Files\Microsoft Visual Studio
2009-11-24 17:51:08 ----D---- C:\Program Files\Common Files\DESIGNER
2009-11-24 17:46:56 ----D---- C:\WINDOWS\SHELLNEW
2009-11-24 17:46:22 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2009-11-24 17:07:07 ----A---- C:\WINDOWS\system32\javaws.exe
2009-11-24 17:07:07 ----A---- C:\WINDOWS\system32\deploytk.dll
2009-11-24 17:07:06 ----A---- C:\WINDOWS\system32\javaw.exe
2009-11-24 17:07:06 ----A---- C:\WINDOWS\system32\java.exe
2009-11-24 17:06:50 ----D---- C:\Program Files\Java
2009-11-24 17:06:02 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Sun
2009-11-24 16:53:13 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Godlike
2009-11-24 16:52:55 ----D---- C:\Program Files\Godlike Developers
2009-11-24 16:31:17 ----D---- C:\Program Files\uTorrent
2009-11-24 16:30:17 ----D---- C:\Documents and Settings\Dušan\Data aplikací\uTorrent
2009-11-24 16:29:00 ----D---- C:\Program Files\7-Zip
2009-11-24 16:20:40 ----D---- C:\Program Files\VIA Technologies, Inc
2009-11-24 16:20:40 ----A---- C:\WINDOWS\system32\UnAudioNT.dll
2009-11-24 16:20:28 ----A---- C:\WINDOWS\IsUninst.exe
2009-11-23 20:42:40 ----D---- C:\Program Files\VideoLAN
2009-11-23 20:23:14 ----HD---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-11-23 20:22:58 ----HD---- C:\WINDOWS\$NtUninstallKB952954$
2009-11-23 20:22:37 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Opera
2009-11-23 20:22:36 ----HD---- C:\WINDOWS\$NtUninstallKB959426$
2009-11-23 20:22:17 ----D---- C:\Program Files\Opera
2009-11-23 20:22:12 ----HD---- C:\WINDOWS\$NtUninstallKB946648$
2009-11-23 20:21:57 ----HD---- C:\WINDOWS\$NtUninstallKB956803$
2009-11-23 20:21:41 ----HD---- C:\WINDOWS\$NtUninstallKB960859$
2009-11-23 20:21:26 ----HD---- C:\WINDOWS\$NtUninstallKB958869$
2009-11-23 20:20:58 ----HD---- C:\WINDOWS\$NtUninstallKB951978$
2009-11-23 20:20:40 ----HD---- C:\WINDOWS\$NtUninstallKB969059$
2009-11-23 20:20:21 ----HD---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2009-11-23 20:19:48 ----HD---- C:\WINDOWS\$NtUninstallKB961371-v2$
2009-11-23 20:18:59 ----HD---- C:\WINDOWS\$NtUninstallKB950974$
2009-11-23 20:18:16 ----HD---- C:\WINDOWS\$NtUninstallKB971657$
2009-11-23 20:17:51 ----D---- C:\Documents and Settings\Dušan\Data aplikací\skypePM
2009-11-23 20:17:44 ----HD---- C:\WINDOWS\$NtUninstallKB971557$
2009-11-23 20:17:31 ----HD---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-11-23 20:17:22 ----HD---- C:\WINDOWS\$NtUninstallKB960225$
2009-11-23 20:16:11 ----A---- C:\WINDOWS\system32\MRT.exe
2009-11-23 20:15:54 ----HD---- C:\WINDOWS\$NtUninstallKB956744$
2009-11-23 20:15:34 ----HD---- C:\WINDOWS\$NtUninstallKB974112$
2009-11-23 20:15:07 ----HD---- C:\WINDOWS\$NtUninstallKB956572$
2009-11-23 20:14:47 ----HD---- C:\WINDOWS\$NtUninstallKB956844$
2009-11-23 20:14:31 ----HD---- C:\WINDOWS\$NtUninstallKB961501$
2009-11-23 20:14:22 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Skype
2009-11-23 20:14:11 ----HD---- C:\WINDOWS\$NtUninstallKB971633$
2009-11-23 20:13:52 ----HD---- C:\WINDOWS\$NtUninstallKB973869$
2009-11-23 20:13:26 ----HD---- C:\WINDOWS\$NtUninstallKB975025$
2009-11-23 20:12:55 ----D---- C:\Program Files\Common Files\Skype
2009-11-23 20:12:47 ----RD---- C:\Program Files\Skype
2009-11-23 20:12:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2009-11-23 20:12:17 ----D---- C:\WINDOWS\ie7updates
2009-11-23 20:11:49 ----HD---- C:\WINDOWS\$NtUninstallKB952004$
2009-11-23 20:11:34 ----HD---- C:\WINDOWS\$NtUninstallKB974571$
2009-11-23 20:11:20 ----HD---- C:\WINDOWS\$NtUninstallKB973507$
2009-11-23 20:11:04 ----HD---- C:\WINDOWS\$NtUninstallKB950762$
2009-11-23 20:10:48 ----HD---- C:\WINDOWS\$NtUninstallKB957097$
2009-11-23 20:10:30 ----HD---- C:\WINDOWS\$NtUninstallKB958687$
2009-11-23 20:10:14 ----HD---- C:\WINDOWS\$NtUninstallKB952287$
2009-11-23 20:09:57 ----HD---- C:\WINDOWS\$NtUninstallKB973354$
2009-11-23 20:09:37 ----HD---- C:\WINDOWS\$NtUninstallKB967715$
2009-11-23 20:09:19 ----HD---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2009-11-23 20:09:06 ----HD---- C:\WINDOWS\$NtUninstallKB951066$
2009-11-23 20:08:48 ----HD---- C:\WINDOWS\$NtUninstallKB954459$
2009-11-23 20:08:29 ----HD---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-11-23 20:08:13 ----HD---- C:\WINDOWS\$NtUninstallKB951748$
2009-11-23 20:07:52 ----HD---- C:\WINDOWS\$NtUninstallKB970238$
2009-11-23 20:07:33 ----HD---- C:\WINDOWS\$NtUninstallKB971486$
2009-11-23 20:07:22 ----D---- C:\Program Files\CCleaner
2009-11-23 20:07:13 ----HD---- C:\WINDOWS\$NtUninstallKB960803$
2009-11-23 20:06:42 ----HD---- C:\WINDOWS\$NtUninstallKB973815$
2009-11-23 20:06:15 ----HD---- C:\WINDOWS\$NtUninstallKB973525$
2009-11-23 20:06:01 ----HD---- C:\WINDOWS\$NtUninstallKB958644$
2009-11-23 20:05:39 ----HD---- C:\WINDOWS\$NtUninstallKB955069$
2009-11-23 20:05:17 ----HD---- C:\WINDOWS\$NtUninstallKB956802$
2009-11-23 20:05:11 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Macromedia
2009-11-23 20:05:11 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Adobe
2009-11-23 20:05:01 ----HD---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2009-11-23 20:04:49 ----HD---- C:\WINDOWS\$NtUninstallKB923561$
2009-11-23 20:04:31 ----HD---- C:\WINDOWS\$NtUninstallKB971961$
2009-11-23 20:04:17 ----HD---- C:\WINDOWS\$NtUninstallKB970653-v3$
2009-11-23 20:04:07 ----HD---- C:\WINDOWS\$NtUninstallKB975467$
2009-11-23 20:03:51 ----HD---- C:\WINDOWS\$NtUninstallKB968389$
2009-11-23 20:03:31 ----HD---- C:\WINDOWS\$NtUninstallKB969947$
2009-11-23 19:28:38 ----D---- C:\Program Files\Realtek AC97
2009-11-23 19:23:50 ----D---- C:\WINDOWS\nview
2009-11-23 19:23:50 ----A---- C:\WINDOWS\system32\nvudisp.exe
2009-11-23 19:23:38 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-11-23 19:23:27 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2009-11-23 19:23:06 ----D---- C:\NVIDIA
2009-11-23 19:19:18 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2009-11-23 19:05:20 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2009-11-23 19:04:19 ----A---- C:\WINDOWS\FixCamera.exe
2009-11-23 19:04:19 ----A---- C:\WINDOWS\amcap.exe
2009-11-23 19:04:12 ----N---- C:\WINDOWS\vsnpstd3.exe
2009-11-23 19:04:11 ----A---- C:\WINDOWS\tsnpstd3.exe
2009-11-23 19:04:11 ----A---- C:\WINDOWS\snpstd3.ini
2009-11-23 19:04:03 ----D---- C:\Program Files\Common Files\snpstd3
2009-11-23 19:04:03 ----A---- C:\WINDOWS\system32\vsnpstd3.dll
2009-11-23 19:04:03 ----A---- C:\WINDOWS\system32\rsnpstd3.dll
2009-11-23 19:04:03 ----A---- C:\WINDOWS\system32\csnpstd3.dll
2009-11-23 19:04:03 ----A---- C:\WINDOWS\csnpstd3.dll
2009-11-23 19:03:37 ----D---- C:\Documents and Settings\Dušan\Data aplikací\InstallShield
2009-11-23 18:51:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2009-11-23 18:49:53 ----D---- C:\Documents and Settings\Dušan\Data aplikací\ESET
2009-11-23 18:48:37 ----D---- C:\Program Files\ESET
2009-11-23 18:48:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2009-11-23 18:47:11 ----D---- C:\WINDOWS\system32\PreInstall
2009-11-23 18:47:10 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2009-11-23 18:47:09 ----HD---- C:\WINDOWS\$NtUninstallKB898461$
2009-11-23 18:46:45 ----A---- C:\WINDOWS\system32\ChCfg.exe
2009-11-23 18:46:13 ----N---- C:\WINDOWS\system32\ksuser.dll
2009-11-23 18:46:07 ----A---- C:\WINDOWS\system32\RTLCPL.EXE
2009-11-23 18:46:05 ----N---- C:\WINDOWS\soundman.exe
2009-11-23 18:46:05 ----A---- C:\WINDOWS\system32\RtlCPAPI.dll
2009-11-23 18:46:05 ----A---- C:\WINDOWS\alcupd.exe
2009-11-23 18:46:05 ----A---- C:\WINDOWS\Alcrmv.exe
2009-11-23 18:46:04 ----HD---- C:\Program Files\InstallShield Installation Information
2009-11-23 18:45:53 ----D---- C:\Program Files\Common Files\InstallShield
2009-11-23 18:42:07 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-11-23 18:41:54 ----SHD---- C:\Recycled
2009-11-23 18:37:20 ----D---- C:\temp
2009-11-23 18:31:34 ----D---- C:\Documents and Settings\Dušan\Data aplikací\Identities
2009-11-23 18:31:17 ----D---- C:\Program Files\Windows Defender
2009-11-23 18:31:09 ----SD---- C:\Documents and Settings\Dušan\Data aplikací\Microsoft
2009-11-23 18:31:09 ----ASH---- C:\Documents and Settings\Dušan\Data aplikací\desktop.ini
2009-11-23 18:30:23 ----D---- C:\WINDOWS\SoftwareDistribution
2009-11-23 18:30:22 ----SHD---- C:\System Volume Information
2009-11-23 18:30:21 ----SD---- C:\WINDOWS\system32\Microsoft
2009-11-23 18:30:21 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-11-23 18:23:34 ----D---- C:\WINDOWS\system32\xircom
2009-11-23 18:23:34 ----D---- C:\Program Files\xerox
2009-11-23 18:23:34 ----D---- C:\Program Files\microsoft frontpage
2009-11-23 18:22:49 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-11-23 18:22:48 ----HD---- C:\WINDOWS\$hf_mig$
2009-11-23 18:22:37 ----A---- C:\WINDOWS\control.ini
2009-11-23 18:22:17 ----A---- C:\WINDOWS\system32\mapi32.dll
2009-11-23 18:21:14 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-11-23 18:21:09 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-11-23 18:21:00 ----D---- C:\Program Files\Online Services
2009-11-23 18:20:40 ----D---- C:\WINDOWS\system32\DirectX
2009-11-23 18:20:30 ----A---- C:\WINDOWS\system32\atrace.dll
2009-11-23 18:20:28 ----A---- C:\WINDOWS\system32\desktop.ini
2009-11-23 18:20:28 ----A---- C:\WINDOWS\desktop.ini
2009-11-23 18:20:20 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2009-11-23 18:20:18 ----A---- C:\WINDOWS\system32\acctres.dll
2009-11-23 18:20:17 ----D---- C:\Program Files\Common Files\Services
2009-11-23 18:20:14 ----SD---- C:\WINDOWS\Tasks
2009-11-23 18:20:14 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2009-11-23 18:20:13 ----D---- C:\Program Files\Common Files\MSSoap
2009-11-23 18:20:07 ----D---- C:\WINDOWS\srchasst
2009-11-23 18:20:06 ----D---- C:\WINDOWS\system32\Macromed
2009-11-23 18:20:04 ----A---- C:\WINDOWS\system32\wuweb.dll
2009-11-23 18:20:04 ----A---- C:\WINDOWS\system32\wucltui.dll
2009-11-23 18:20:04 ----A---- C:\WINDOWS\system32\wuauserv.dll
2009-11-23 18:20:04 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2009-11-23 18:20:03 ----N---- C:\WINDOWS\system32\wuauclt.exe
2009-11-23 18:20:03 ----A---- C:\WINDOWS\system32\wups.dll
2009-11-23 18:20:03 ----A---- C:\WINDOWS\system32\wuaueng.dll
2009-11-23 18:20:03 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2009-11-23 18:20:03 ----A---- C:\WINDOWS\system32\wuapi.dll
2009-11-23 18:20:02 ----N---- C:\WINDOWS\system32\qmgr.dll
2009-11-23 18:20:02 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2009-11-23 18:20:02 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2009-11-23 18:20:02 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2009-11-23 18:20:02 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2009-11-23 18:19:58 ----D---- C:\Program Files\Movie Maker
2009-11-23 18:19:35 ----A---- C:\WINDOWS\system32\safrslv.dll
2009-11-23 18:19:35 ----A---- C:\WINDOWS\system32\safrdm.dll
2009-11-23 18:19:34 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2009-11-23 18:19:34 ----A---- C:\WINDOWS\system32\racpldlg.dll
2009-11-23 18:19:28 ----A---- C:\WINDOWS\system32\fltMc.exe
2009-11-23 18:19:28 ----A---- C:\WINDOWS\system32\fltlib.dll
2009-11-23 18:19:27 ----N---- C:\WINDOWS\system32\srsvc.dll
2009-11-23 18:19:27 ----D---- C:\WINDOWS\system32\Restore
2009-11-23 18:19:27 ----A---- C:\WINDOWS\system32\srrstr.dll
2009-11-23 18:19:27 ----A---- C:\WINDOWS\system32\srclient.dll
2009-11-23 18:19:26 ----A---- C:\WINDOWS\system32\mnmdd.dll
2009-11-23 18:19:26 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2009-11-23 18:19:26 ----A---- C:\WINDOWS\system32\ils.dll
2009-11-23 18:19:25 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2009-11-23 18:19:25 ----A---- C:\WINDOWS\system32\msconf.dll
2009-11-23 18:19:25 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2009-11-23 18:19:22 ----D---- C:\Program Files\NetMeeting
2009-11-23 18:19:21 ----A---- C:\WINDOWS\system32\msoert2.dll
2009-11-23 18:19:21 ----A---- C:\WINDOWS\system32\msoeacct.dll
2009-11-23 18:19:20 ----A---- C:\WINDOWS\system32\inetres.dll
2009-11-23 18:19:19 ----A---- C:\WINDOWS\system32\inetcomm.dll
2009-11-23 18:19:17 ----N---- C:\WINDOWS\system32\schedsvc.dll
2009-11-23 18:19:17 ----D---- C:\Program Files\Outlook Express
2009-11-23 18:19:17 ----A---- C:\WINDOWS\system32\mstinit.exe
2009-11-23 18:19:17 ----A---- C:\WINDOWS\system32\mstask.dll
2009-11-23 18:19:16 ----A---- C:\WINDOWS\system32\isign32.dll
2009-11-23 18:19:16 ----A---- C:\WINDOWS\system32\inetcfg.dll
2009-11-23 18:19:16 ----A---- C:\WINDOWS\system32\icwphbk.dll
2009-11-23 18:19:16 ----A---- C:\WINDOWS\system32\icwdial.dll
2009-11-23 18:19:09 ----D---- C:\Program Files\Common Files\System
2009-11-23 18:19:06 ----D---- C:\Program Files\Internet Explorer
2009-11-23 18:17:58 ----A---- C:\WINDOWS\vbaddin.ini
2009-11-23 18:17:58 ----A---- C:\WINDOWS\vb.ini
2009-11-23 18:17:54 ----D---- C:\WINDOWS\Registration
2009-11-23 18:17:32 ----D---- C:\Program Files\Windows Media Connect 2
2009-11-23 18:17:31 ----D---- C:\Program Files\Windows Media Player
2009-11-23 18:17:29 ----D---- C:\Program Files\Messenger
2009-11-23 18:17:25 ----D---- C:\Program Files\MSN Gaming Zone
2009-11-23 18:17:25 ----A---- C:\WINDOWS\system32\write.exe
2009-11-23 18:17:13 ----A---- C:\WINDOWS\system32\sndvol32.exe
2009-11-23 18:17:13 ----A---- C:\WINDOWS\system32\hticons.dll
2009-11-23 18:17:12 ----A---- C:\WINDOWS\system32\winchat.exe
2009-11-23 18:17:12 ----A---- C:\WINDOWS\system32\avwav.dll
2009-11-23 18:17:12 ----A---- C:\WINDOWS\system32\avtapi.dll
2009-11-23 18:17:12 ----A---- C:\WINDOWS\system32\avmeter.dll
2009-11-23 18:17:03 ----A---- C:\WINDOWS\system32\charmap.exe
2009-11-23 18:17:03 ----A---- C:\WINDOWS\system32\getuname.dll
2009-11-23 18:17:03 ----A---- C:\WINDOWS\system32\calc.exe
2009-11-23 18:17:02 ----A---- C:\WINDOWS\system32\winmine.exe
2009-11-23 18:17:02 ----A---- C:\WINDOWS\system32\sol.exe
2009-11-23 18:17:02 ----A---- C:\WINDOWS\system32\mshearts.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tslabels.ini
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tskill.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\tscon.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\reset.exe
2009-11-23 18:17:01 ----A---- C:\WINDOWS\system32\freecell.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\shadow.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\rwinsta.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\regini.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\qwinsta.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\qappsrv.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\msg.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\logoff.exe
2009-11-23 18:17:00 ----A---- C:\WINDOWS\system32\cdmodem.dll
2009-11-23 18:16:59 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2009-11-23 18:16:52 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2009-11-23 18:16:51 ----A---- C:\WINDOWS\system32\sndrec32.exe
2009-11-23 18:16:51 ----A---- C:\WINDOWS\system32\mplay32.exe
2009-11-23 18:16:51 ----A---- C:\WINDOWS\system32\hypertrm.dll
2009-11-23 18:16:51 ----A---- C:\WINDOWS\system32\accwiz.exe
2009-11-23 18:16:50 ----D---- C:\Program Files\Windows NT
2009-11-23 18:16:50 ----A---- C:\WINDOWS\system32\mspaint.exe
2009-11-23 18:16:49 ----A---- C:\WINDOWS\system32\spider.exe
2009-11-23 18:16:49 ----A---- C:\WINDOWS\system32\clipbrd.exe
2009-11-23 18:16:48 ----A---- C:\WINDOWS\system32\tsgqec.dll
2009-11-23 18:16:48 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2009-11-23 18:16:48 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2009-11-23 18:16:47 ----A---- C:\WINDOWS\system32\mstscax.dll
2009-11-23 18:16:47 ----A---- C:\WINDOWS\system32\aaclient.dll
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\sessmgr.exe
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\remotepg.dll
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\rdshost.exe
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\rdchost.dll
2009-11-23 18:16:46 ----A---- C:\WINDOWS\system32\mstsc.exe
2009-11-23 18:16:45 ----N---- C:\WINDOWS\system32\termsrv.dll
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\rdpclip.exe
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\qprocess.exe
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\icaapi.dll
2009-11-23 18:16:45 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2009-11-23 18:16:44 ----D---- C:\WINDOWS\system32\MsDtc
2009-11-23 18:16:44 ----A---- C:\WINDOWS\system32\mtxoci.dll
2009-11-23 18:16:44 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2009-11-23 18:16:44 ----A---- C:\WINDOWS\system32\msdtctm.dll
2009-11-23 18:16:44 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2009-11-23 18:16:43 ----A---- C:\WINDOWS\system32\xolehlp.dll
2009-11-23 18:16:43 ----A---- C:\WINDOWS\system32\msdtclog.dll
2009-11-23 18:16:43 ----A---- C:\WINDOWS\system32\msdtc.exe
2009-11-23 18:16:42 ----D---- C:\WINDOWS\system32\Com
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\mtxex.dll
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\mtxdm.dll
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2009-11-23 18:16:42 ----A---- C:\WINDOWS\system32\colbact.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\stclient.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\comrepl.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\comaddin.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\clbcatex.dll
2009-11-23 18:16:41 ----A---- C:\WINDOWS\system32\catsrvps.dll
2009-11-23 18:16:40 ----A---- C:\WINDOWS\system32\comsvcs.dll
2009-11-23 18:16:40 ----A---- C:\WINDOWS\system32\catsrvut.dll
2009-11-23 18:16:40 ----A---- C:\WINDOWS\system32\catsrv.dll
2009-11-23 18:16:39 ----A---- C:\WINDOWS\system32\comuid.dll
2009-11-23 18:16:39 ----A---- C:\WINDOWS\system32\comsnap.dll
2009-11-23 18:16:39 ----A---- C:\WINDOWS\system32\clbcatq.dll
2009-11-23 18:16:31 ----A---- C:\WINDOWS\system32\servdeps.dll
2009-11-23 18:16:31 ----A---- C:\WINDOWS\system32\mmfutil.dll
2009-11-23 18:16:31 ----A---- C:\WINDOWS\system32\licwmi.dll
2009-11-23 18:16:31 ----A---- C:\WINDOWS\system32\cmprops.dll
2009-11-23 18:14:19 ----A---- C:\WINDOWS\system32\h323log.txt
2009-11-23 18:08:08 ----A---- C:\WINDOWS\system32\hidserv.dll
2009-11-23 18:07:21 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2009-11-23 18:06:43 ----A---- C:\WINDOWS\system32\usbui.dll
2009-11-23 18:05:25 ----SHD---- C:\WINDOWS\Installer
2009-11-23 18:05:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-11-23 18:05:24 ----D---- C:\Program Files\Common Files\ODBC
2009-11-23 18:05:24 ----A---- C:\WINDOWS\ODBCINST.INI
2009-11-23 18:05:20 ----D---- C:\Program Files\Common Files\SpeechEngines
2009-11-23 18:05:19 ----RD---- C:\Program Files
2009-11-23 18:05:19 ----D---- C:\Program Files\Common Files\Microsoft Shared
2009-11-23 18:05:19 ----D---- C:\Program Files\Common Files
2009-11-23 18:05:14 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2009-11-23 18:05:14 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2009-11-23 18:05:14 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdur.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2009-11-23 18:05:12 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2009-11-23 18:05:11 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2009-11-23 18:05:11 ----RA---- C:\WINDOWS\system32\kbdru.dll
2009-11-23 18:05:11 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2009-11-23 18:05:11 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2009-11-23 18:05:09 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2009-11-23 18:05:07 ----RA---- C:\WINDOWS\system32\kbdest.dll
2009-11-23 18:04:59 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2009-11-23 18:04:59 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdro.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2009-11-23 18:04:58 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2009-11-23 18:04:55 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-11-23 18:04:55 ----A---- C:\WINDOWS\system32\irclass.dll
2009-11-23 18:04:55 ----A---- C:\WINDOWS\system32\dgsetup.dll
2009-11-23 18:04:55 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2009-11-23 18:04:54 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2009-11-23 18:04:52 ----A---- C:\WINDOWS\TASKMAN.EXE
2009-11-23 18:04:51 ----A---- C:\WINDOWS\system32\batt.dll
2009-11-23 18:04:51 ----A---- C:\WINDOWS\NOTEPAD.EXE
2009-11-23 18:04:50 ----A---- C:\WINDOWS\system32\storprop.dll
2009-11-23 18:04:42 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2009-11-23 18:04:25 ----D---- C:\WINDOWS\system32\CatRoot2
2009-11-23 18:04:25 ----D---- C:\WINDOWS\system32\CatRoot
2009-11-23 18:04:19 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2009-11-23 18:03:52 ----D---- C:\Documents and Settings
2009-11-23 18:03:14 ----SH---- C:\boot.ini
2009-11-23 17:58:22 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-11-23 17:58:22 ----RSHD---- C:\WINDOWS\system32\dllcache
2009-11-23 17:58:22 ----RSD---- C:\WINDOWS\Fonts
2009-11-23 17:58:22 ----RD---- C:\WINDOWS\Web
2009-11-23 17:58:22 ----HD---- C:\WINDOWS\inf
2009-11-23 17:58:22 ----D---- C:\WINDOWS\WinSxS
2009-11-23 17:58:22 ----D---- C:\WINDOWS\WBEM
2009-11-23 17:58:22 ----D---- C:\WINDOWS\twain_32
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Temp
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\wins
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\wbem
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\usmt
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\spool
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\ShellExt
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\Setup
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\ras
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\oobe
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\npp
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\mui
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\inetsrv
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\IME
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\icsxml
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\ias
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\export
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\drivers
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\dhcp
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\cs-cz
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\cs
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\config
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\3com_dmi
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\3076
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\2052
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1054
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1042
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1041
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1037
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1033
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1031
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1029
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1028
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32\1025
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system32
2009-11-23 17:58:22 ----D---- C:\WINDOWS\system
2009-11-23 17:58:22 ----D---- C:\WINDOWS\security
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Resources
2009-11-23 17:58:22 ----D---- C:\WINDOWS\repair
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Provisioning
2009-11-23 17:58:22 ----D---- C:\WINDOWS\pchealth
2009-11-23 17:58:22 ----D---- C:\WINDOWS\PeerNet
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Offline Web Pages
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Network Diagnostic
2009-11-23 17:58:22 ----D---- C:\WINDOWS\msapps
2009-11-23 17:58:22 ----D---- C:\WINDOWS\msagent
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Media
2009-11-23 17:58:22 ----D---- C:\WINDOWS\L2Schemas
2009-11-23 17:58:22 ----D---- C:\WINDOWS\java
2009-11-23 17:58:22 ----D---- C:\WINDOWS\ime
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Help
2009-11-23 17:58:22 ----D---- C:\WINDOWS\ehome
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Driver Cache
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Debug
2009-11-23 17:58:22 ----D---- C:\WINDOWS\Cursors
2009-11-23 17:58:22 ----D---- C:\WINDOWS\AppPatch
2009-11-23 17:58:22 ----D---- C:\WINDOWS

======List of files/folders modified in the last 1 months======

2009-11-29 18:41:50 ----A---- C:\WINDOWS\win.ini
2009-11-27 18:53:14 ----A---- C:\WINDOWS\system.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK7;Ovladač procesoru AMD K7; C:\WINDOWS\system32\DRIVERS\amdk7.sys [2008-04-27 41600]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-09-11 108792]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-09-11 55768]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-09-11 116008]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-09-11 135048]
R3 cmuda;C-Media WDM Audio Interface; C:\WINDOWS\system32\drivers\cmuda.sys [2006-06-09 1373120]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-06-19 33096]
R3 FET5X86V;VIA Rhine-Family Fast-Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys [2008-09-22 43520]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 KMWDFILTER;HIDUASDesc; C:\WINDOWS\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-27 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-10-22 3994624]
R3 RT73;%General.Service.DispName%; C:\WINDOWS\system32\DRIVERS\rt73.sys [2008-10-21 465152]
R3 SNPSTD3;USB PC Camera (SNPSTD3); C:\WINDOWS\system32\DRIVERS\snpstd3.sys [2007-10-16 10376576]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VIAudio;VIA AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\viaudio.sys [2002-09-15 64128]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2008-04-27 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-04-27 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-09-11 735960]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-11-24 153376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-22 159810]
R2 WinDefend;Windows Defender; C:\Program Files\Windows Defender\MsMpEng.exe [2006-11-03 13592]
R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-09-11 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; D:\Nová složka\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
stell
VIP in memoriam
VIP in memoriam
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: mrzne xp

#5 Příspěvek od stell »

odinstaluj
C:\Program Files\Ask.com
a das log z combofixu
PROSIM CITAJTE POZORNE NAVODY!!!,

Stáhněte na plochu, ukončete všechna aktivní okna a spusťte ComboFix -
http://download.bleepingcomputer.com/sUBs/ComboFix.exe

Suhlasit instalacio Konzoly pre zotavenie (Recovery console)


- ComboFix je třeba spustit pod účtem s právy administrátora.
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano;

A este raz >ANO<

- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího modreho okna

- Po dokončení skenování, trvajícího maximálně 10-15 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah do svého threadu na forum
- Před použitím ComboFixu je treba vypnout všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary. NAVOD: http://www.bleepingcomputer.com/forums/topic114351.html
Mohou zasahovat do činnosti ComboFixu, což může způsobit, že nebude fungovat korektně.

V případě detekce antiviru u ComboFixu se jedná o falešný poplach.
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

dusanbalaz1
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 29 lis 2009 18:15

Re: mrzne xp

#6 Příspěvek od dusanbalaz1 »

Toto som odinstaloval C:\Program Files\Ask.com

ComboFix 09-12-08.07 - Dušan 09.12.2009 20:20:25.2.1 - FAT32x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.895.548 [GMT 1:00]
Spuštěný z: c:\documents and settings\Dušan\Plocha\ComboFix.exe
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

D:\Autorun.inf

.
((((((((((((((((((((((((( Soubory vytvořené od 2009-11-09 do 2009-12-09 )))))))))))))))))))))))))))))))
.

2009-12-09 08:51 . 2009-12-09 08:51 -------- d-----w- C:\FOUND.006
2009-12-09 08:15 . 2009-12-09 08:15 -------- d-----w- C:\FOUND.005
2009-12-08 17:54 . 2009-12-08 17:54 -------- d-----w- C:\FOUND.004
2009-12-08 17:47 . 2009-12-08 17:47 -------- d-----w- C:\FOUND.003
2009-12-08 17:41 . 2009-12-08 17:41 -------- d-----w- C:\FOUND.002
2009-12-08 11:14 . 2009-12-08 11:14 -------- d-----w- C:\FOUND.001
2009-12-07 21:13 . 2009-12-07 21:13 -------- d-----w- C:\FOUND.000
2009-12-06 15:23 . 2009-12-06 15:23 -------- d-----w- c:\program files\trend micro
2009-12-06 15:23 . 2009-12-06 15:23 -------- d-----w- C:\rsit
2009-12-04 20:09 . 2009-12-04 20:09 -------- d-----w- c:\program files\Microsoft CAPICOM 2.1.0.2
2009-12-04 19:39 . 2009-12-04 19:39 -------- d-----w- c:\program files\MSECache
2009-11-30 09:01 . 2009-08-06 18:23 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-11-29 16:07 . 2009-11-29 16:07 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-11-29 15:54 . 2009-11-29 15:54 -------- d-----w- C:\totalcmd
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\UC.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\RAR.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKZIP.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKUNZIP.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\NOCLOSE.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\LHA.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\ARJ.PIF
2009-11-29 15:18 . 2009-09-10 13:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-11-29 15:18 . 2009-09-10 13:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-11-29 15:18 . 2009-11-29 15:18 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-11-27 17:33 . 2009-11-27 17:33 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache
2009-11-27 17:19 . 2009-10-02 04:44 92160 ------w- c:\windows\system32\dllcache\iecompat.dll
2009-11-27 17:18 . 2009-11-27 17:18 -------- d-----w- c:\windows\ie8updates
2009-11-27 17:18 . 2009-10-29 07:43 12800 ------w- c:\windows\system32\dllcache\xpshims.dll
2009-11-27 17:18 . 2009-10-29 07:43 246272 ------w- c:\windows\system32\dllcache\ieproxy.dll
2009-11-27 17:14 . 2009-11-27 17:14 -------- d-----w- c:\program files\Yamicsoft
2009-11-27 17:14 . 2009-11-27 17:14 -------- d--h--w- c:\windows\ie8
2009-11-27 17:03 . 2009-11-27 17:03 -------- d-----w- c:\windows\system32\XPSViewer
2009-11-27 17:03 . 2009-11-27 17:03 -------- d-----w- c:\program files\MSBuild
2009-11-27 17:03 . 2009-11-27 17:03 -------- d-----w- c:\program files\Reference Assemblies
2009-11-27 17:02 . 2008-07-06 12:06 89088 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll
2009-11-27 17:02 . 2008-07-06 12:06 89088 ------w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2009-11-27 17:02 . 2008-07-06 12:06 575488 ------w- c:\windows\system32\xpsshhdr.dll
2009-11-27 17:02 . 2008-07-06 12:06 575488 ------w- c:\windows\system32\dllcache\xpsshhdr.dll
2009-11-27 17:02 . 2008-07-06 12:06 1676288 ------w- c:\windows\system32\xpssvcs.dll
2009-11-27 17:02 . 2008-07-06 12:06 1676288 ------w- c:\windows\system32\dllcache\xpssvcs.dll
2009-11-27 17:02 . 2008-07-06 12:06 117760 ------w- c:\windows\system32\prntvpt.dll
2009-11-27 17:02 . 2008-07-06 10:50 597504 ------w- c:\windows\system32\Spool\prtprocs\w32x86\printfilterpipelinesvc.exe
2009-11-27 17:02 . 2008-07-06 10:50 597504 ------w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2009-11-27 16:55 . 2009-11-27 16:55 -------- d-----w- c:\program files\Windows Desktop Search
2009-11-27 16:55 . 2009-11-27 16:55 -------- d-----w- c:\windows\system32\GroupPolicy
2009-11-27 16:51 . 2009-11-27 16:51 -------- d-----w- c:\windows\system32\URTTemp
2009-11-24 18:05 . 2009-11-24 18:05 737280 ----a-w- c:\windows\iun6002.exe
2009-11-24 18:05 . 2009-11-24 18:05 -------- d-----w- c:\program files\Codec Pack - All In 1
2009-11-24 17:32 . 2009-11-24 17:32 -------- d-----w- c:\program files\Common Files\Nero
2009-11-24 16:51 . 2009-11-24 16:51 -------- d-----w- c:\program files\Microsoft Works
2009-11-24 16:46 . 2009-11-24 16:46 -------- d-----w- c:\windows\SHELLNEW
2009-11-24 16:07 . 2009-11-24 16:06 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-11-24 16:06 . 2009-11-24 16:06 -------- d-----w- c:\program files\Java
2009-11-24 15:52 . 2009-11-24 15:52 -------- d-----w- c:\program files\Godlike Developers
2009-11-24 15:31 . 2009-11-24 15:31 -------- d-----w- c:\program files\uTorrent
2009-11-24 15:29 . 2009-11-24 15:29 -------- d-----w- c:\program files\7-Zip
2009-11-24 15:20 . 2002-09-15 19:20 64128 ----a-r- c:\windows\system32\drivers\viaudio.sys
2009-11-24 15:20 . 2009-11-24 15:20 -------- d-----w- c:\program files\VIA Technologies, Inc
2009-11-24 15:20 . 2001-09-23 10:11 32768 ----a-w- c:\windows\system32\UnAudioNT.dll
2009-11-24 15:20 . 1998-10-29 15:45 306688 ----a-w- c:\windows\IsUninst.exe
2009-11-23 19:42 . 2009-11-23 19:42 -------- d-----w- c:\program files\VideoLAN
2009-11-23 19:22 . 2009-11-23 19:22 -------- d-----w- c:\program files\Opera
2009-11-23 19:17 . 2009-11-23 19:17 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-11-23 19:12 . 2009-11-23 19:12 -------- d-----w- c:\program files\Common Files\Skype
2009-11-23 19:12 . 2009-11-23 19:12 -------- d-----r- c:\program files\Skype
2009-11-23 19:07 . 2009-11-23 19:07 -------- d-----w- c:\program files\CCleaner
2009-11-23 18:28 . 2009-11-23 18:28 -------- d-----w- c:\program files\Realtek AC97
2009-11-23 18:23 . 2009-11-23 18:23 -------- d-----w- c:\windows\nview
2009-11-23 18:23 . 2006-10-22 11:22 208896 ----a-w- c:\windows\system32\nvudisp.exe
2009-11-23 18:23 . 2006-10-22 14:06 208896 ----a-w- c:\windows\system32\NVUNINST.EXE
2009-11-23 18:23 . 2009-11-23 18:23 -------- d-----w- C:\NVIDIA
2009-11-23 18:19 . 2009-11-02 19:42 195456 ------w- c:\windows\system32\MpSigStub.exe
2009-11-23 18:07 . 2008-04-13 21:09 5504 ----a-w- c:\windows\system32\drivers\MSTEE.sys
2009-11-23 18:07 . 2008-04-13 21:09 5504 ----a-w- c:\windows\system32\dllcache\mstee.sys
2009-11-23 18:07 . 2008-04-13 21:16 10880 ----a-w- c:\windows\system32\drivers\NdisIP.sys
2009-11-23 18:07 . 2008-04-13 21:16 10880 ----a-w- c:\windows\system32\dllcache\ndisip.sys
2009-11-23 18:07 . 2008-04-13 21:16 15232 ----a-w- c:\windows\system32\drivers\StreamIP.sys
2009-11-23 18:07 . 2008-04-13 21:16 15232 ----a-w- c:\windows\system32\dllcache\streamip.sys
2009-11-23 18:06 . 2008-04-13 21:16 11136 ----a-w- c:\windows\system32\drivers\SLIP.sys
2009-11-23 18:06 . 2008-04-13 21:16 11136 ----a-w- c:\windows\system32\dllcache\slip.sys
2009-11-23 18:06 . 2008-04-13 21:16 19200 ----a-w- c:\windows\system32\drivers\WSTCODEC.SYS
2009-11-23 18:06 . 2008-04-13 21:16 19200 ----a-w- c:\windows\system32\dllcache\wstcodec.sys
2009-11-23 18:06 . 2008-04-13 21:16 85248 ----a-w- c:\windows\system32\drivers\NABTSFEC.sys
2009-11-23 18:06 . 2008-04-13 21:16 85248 ----a-w- c:\windows\system32\dllcache\nabtsfec.sys
2009-11-23 18:06 . 2008-04-13 21:16 17024 ----a-w- c:\windows\system32\drivers\CCDECODE.sys
2009-11-23 18:06 . 2008-04-13 21:16 17024 ----a-w- c:\windows\system32\dllcache\ccdecode.sys
2009-11-23 18:05 . 2001-10-25 16:00 77824 ----a-w- c:\windows\system32\dllcache\spcommon.dll
2009-11-23 18:05 . 2001-10-25 16:00 61440 ----a-w- c:\windows\system32\dllcache\spcplui.dll
2009-11-23 18:05 . 2001-10-25 16:00 774144 ----a-w- c:\windows\system32\dllcache\spttseng.dll
2009-11-23 18:05 . 2008-04-14 08:51 741376 ----a-w- c:\windows\system32\dllcache\sapi.dll
2009-11-23 18:05 . 2008-04-14 05:52 54272 ----a-w- c:\windows\system32\vfwwdm32.dll
2009-11-23 18:05 . 2008-04-14 05:52 54272 ----a-w- c:\windows\system32\dllcache\vfwwdm32.dll
2009-11-23 18:05 . 2001-10-25 16:00 36864 ----a-w- c:\windows\system32\dllcache\sapisvr.exe
2009-11-23 18:05 . 2007-04-02 23:56 22016 ----a-w- c:\windows\system32\dllcache\agt0408.dll
2009-11-23 18:05 . 2007-04-02 23:56 19456 ----a-w- c:\windows\system32\dllcache\agt041f.dll
2009-11-23 18:05 . 2007-04-02 23:56 19456 ----a-w- c:\windows\system32\dllcache\agt0419.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-09 11:43 . 2001-10-25 15:00 90546 ----a-w- c:\windows\system32\perfc005.dat
2009-12-09 11:43 . 2001-10-25 15:00 458370 ----a-w- c:\windows\system32\perfh005.dat
2009-11-23 19:55 . 2009-11-23 17:21 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-11-23 19:55 . 2009-11-23 17:21 2426 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2009-11-23 19:53 . 2009-11-23 17:21 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2009-11-23 18:04 . 2009-11-23 18:04 -------- d-----w- c:\program files\Common Files\snpstd3
2009-11-23 17:48 . 2009-11-23 17:48 -------- d-----w- c:\program files\ESET
2009-11-23 17:46 . 2009-11-23 17:46 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-11-23 17:45 . 2009-11-23 17:45 -------- d-----w- c:\program files\Common Files\InstallShield
2009-11-23 17:31 . 2009-11-23 17:31 -------- d-----w- c:\program files\Windows Defender
2009-11-23 17:23 . 2009-11-23 17:23 -------- d-----w- c:\program files\microsoft frontpage
2009-11-23 17:18 . 2009-11-23 17:18 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2009-11-23 17:17 . 2009-11-23 17:17 -------- d-----w- c:\program files\Windows Media Connect 2
2009-10-29 07:43 . 2008-03-01 12:02 916480 ----a-w- c:\windows\system32\wininet.dll
2009-10-21 05:40 . 2008-04-14 07:52 75776 ----a-w- c:\windows\system32\strmfilt.dll
2009-10-21 05:40 . 2008-04-14 07:51 25088 ----a-w- c:\windows\system32\httpapi.dll
2009-10-20 16:20 . 2008-04-13 23:23 265728 ----a-w- c:\windows\system32\drivers\http.sys
2009-10-13 10:34 . 2008-04-14 07:51 271360 ----a-w- c:\windows\system32\oakley.dll
2009-10-12 13:40 . 2008-04-14 07:51 79872 ----a-w- c:\windows\system32\raschap.dll
2009-10-12 13:40 . 2008-04-14 07:51 150016 ----a-w- c:\windows\system32\rastls.dll
2009-10-08 13:57 . 2008-07-29 18:59 613376 ----a-w- c:\windows\system32\uiautomationcore.dll
2009-10-08 13:57 . 2001-10-25 15:00 22528 ----a-w- c:\windows\system32\oleaccrc.dll
2009-10-08 13:57 . 2001-10-25 15:00 220160 ----a-w- c:\windows\system32\oleacc.dll
2009-09-11 14:19 . 2008-04-14 07:51 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-11 06:26 . 2009-09-11 06:26 55768 ----a-w- c:\windows\system32\drivers\epfwtdi.sys
2009-09-11 06:26 . 2009-09-11 06:26 135048 ----a-w- c:\windows\system32\drivers\epfw.sys
2009-09-11 06:23 . 2009-09-11 06:23 108792 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2009-09-11 06:17 . 2009-09-11 06:17 116008 ----a-w- c:\windows\system32\drivers\eamon.sys
.

------- Sigcheck -------

[-] 2008-04-27 . 1E603EA2A3FDBAE9E5B88A8CB3C03124 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2006-11-03 866584]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-09-11 2054360]
"FixCamera"="c:\windows\FixCamera.exe" [2007-07-11 20480]
"snpstd3"="c:\windows\vsnpstd3.exe" [2007-05-10 835584]
"tsnpstd3"="c:\windows\tsnpstd3.exe" [2007-04-21 270336]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-22 7700480]
"nwiz"="nwiz.exe" [2006-10-22 1622016]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-22 86016]
"SoundMan"="SOUNDMAN.EXE" [2007-04-16 577536]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-11-24 149280]
"GrooveMonitor"="d:\nová složka\Office12\GrooveMonitor.exe" [2008-10-25 31072]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_2"="shell32" [X]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Aktualizovat ESET licenci.lnk - c:\program files\ESET\MiNODLogin\MiNODLogin.exe [2009-10-24 125952]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoStartMenuSubFolders"= 0 (0x0)
"NoCommonGroups"= 0 (0x0)
"NoPrinters"= 0 (0x0)
"NoRecentDocsNetHood"= 0 (0x0)
"NoChangeAnimation"= 0 (0x0)

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"d:\\Nová složka\\Office12\\OUTLOOK.EXE"=
"d:\\Nová složka\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [11.9.2009 7:23 108792]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [11.9.2009 7:24 735960]
R2 WinDefend;Windows Defender;c:\program files\Windows Defender\MsMpEng.exe [3.11.2006 19:19 13592]
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.sk/
IE: E&xportovat do aplikace Microsoft Excel - d:\novslo~1\Office12\EXCEL.EXE/3000
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-09 20:24
Windows 5.1.2600 Service Pack 3 FAT NTAPI

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
Celkový čas: 2009-12-09 20:25:47
ComboFix-quarantined-files.txt 2009-12-09 19:25

Před spuštěním: Volných bajtů: 10 892 066 816
Po spuštění: Volných bajtů: 10 861 019 136

WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

- - End Of File - - 97C91D24A999B272A5B3647EA512A120

Uživatelský avatar
stell
VIP in memoriam
VIP in memoriam
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: mrzne xp

#7 Příspěvek od stell »

Pri tejto akcii je nutné mať ComboFix na ploche.

Vypni>FIREWALL>Antivir>Antispyware>vsetko rezidentne.

Otvor Notepad (Poznámkový blok) a zkopíruj do neho celý zeleny tex:

Kód: Vybrat vše

KILLALL::
Folder::
C:\FOUND.006
C:\FOUND.005
C:\FOUND.004
C:\FOUND.003
C:\FOUND.002
C:\FOUND.001
C:\FOUND.000
Potom klik na Subor -> Uložiť ako.. .. -> Ako je Názov souboru tak do toho riadku napiš:CFScript.txt
Typ súboru tak tam vyberies *všetky súbory
A ulož ho na plochu.> Pozor CFScript.txt>Neotvarat a nemoze byt ani>CFScript.txt.txt A Urobis Toto :
Obrázek

Po skonceni skenu vlož log čo ComboFix vytvorí
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

dusanbalaz1
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 29 lis 2009 18:15

Re: mrzne xp

#8 Příspěvek od dusanbalaz1 »

ComboFix 09-12-08.07 - Dušan 10.12.2009 16:38:06.3.1 - FAT32x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.895.486 [GMT 1:00]
Spuštěný z: c:\documents and settings\Dušan\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Dušan\Plocha\CFScript.txt
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\FOUND.000
c:\found.000\FILE0000.CHK
C:\FOUND.001
c:\found.001\FILE0000.CHK
C:\FOUND.002
c:\found.002\FILE0000.CHK
c:\found.002\FILE0001.CHK
c:\found.002\FILE0002.CHK
c:\found.002\FILE0003.CHK
c:\found.002\FILE0004.CHK
c:\found.002\FILE0005.CHK
c:\found.002\FILE0006.CHK
C:\FOUND.003
c:\found.003\FILE0000.CHK
C:\FOUND.004
c:\found.004\FILE0000.CHK
c:\found.004\FILE0001.CHK
c:\found.004\FILE0002.CHK
c:\found.004\FILE0003.CHK
c:\found.004\FILE0004.CHK
c:\found.004\FILE0005.CHK
c:\found.004\FILE0006.CHK
c:\found.004\FILE0007.CHK
c:\found.004\FILE0008.CHK
c:\found.004\FILE0009.CHK
c:\found.004\FILE0010.CHK
c:\found.004\FILE0011.CHK
c:\found.004\FILE0012.CHK
c:\found.004\FILE0013.CHK
c:\found.004\FILE0014.CHK
c:\found.004\FILE0015.CHK
c:\found.004\FILE0016.CHK
c:\found.004\FILE0017.CHK
c:\found.004\FILE0018.CHK
c:\found.004\FILE0019.CHK
c:\found.004\FILE0020.CHK
c:\found.004\FILE0021.CHK
c:\found.004\FILE0022.CHK
c:\found.004\FILE0023.CHK
c:\found.004\FILE0024.CHK
c:\found.004\FILE0025.CHK
c:\found.004\FILE0026.CHK
c:\found.004\FILE0027.CHK
c:\found.004\FILE0028.CHK
c:\found.004\FILE0029.CHK
c:\found.004\FILE0030.CHK
c:\found.004\FILE0031.CHK
c:\found.004\FILE0032.CHK
c:\found.004\FILE0033.CHK
c:\found.004\FILE0034.CHK
c:\found.004\FILE0035.CHK
c:\found.004\FILE0036.CHK
c:\found.004\FILE0037.CHK
C:\FOUND.005
c:\found.005\FILE0000.CHK
C:\FOUND.006
c:\found.006\FILE0000.CHK
c:\found.006\FILE0001.CHK
c:\found.006\FILE0002.CHK
c:\found.006\FILE0003.CHK
c:\found.006\FILE0004.CHK
c:\found.006\FILE0005.CHK
c:\found.006\FILE0006.CHK
c:\found.006\FILE0007.CHK
c:\found.006\FILE0008.CHK
c:\found.006\FILE0009.CHK
c:\found.006\FILE0010.CHK
c:\found.006\FILE0011.CHK
c:\found.006\FILE0012.CHK
c:\found.006\FILE0013.CHK
c:\found.006\FILE0014.CHK
c:\found.006\FILE0015.CHK
c:\found.006\FILE0016.CHK
c:\found.006\FILE0017.CHK
c:\found.006\FILE0018.CHK
c:\found.006\FILE0019.CHK
c:\found.006\FILE0020.CHK
c:\found.006\FILE0021.CHK
c:\found.006\FILE0022.CHK
c:\found.006\FILE0023.CHK
c:\found.006\FILE0024.CHK
c:\found.006\FILE0025.CHK
c:\found.006\FILE0026.CHK
c:\found.006\FILE0027.CHK
c:\found.006\FILE0028.CHK
c:\found.006\FILE0029.CHK
c:\found.006\FILE0030.CHK
c:\found.006\FILE0031.CHK
c:\found.006\FILE0032.CHK
c:\found.006\FILE0033.CHK
c:\found.006\FILE0034.CHK
c:\found.006\FILE0035.CHK
c:\found.006\FILE0036.CHK
c:\found.006\FILE0037.CHK
c:\found.006\FILE0038.CHK
c:\found.006\FILE0039.CHK
c:\found.006\FILE0040.CHK
c:\found.006\FILE0041.CHK
c:\found.006\FILE0042.CHK
c:\found.006\FILE0043.CHK
c:\found.006\FILE0044.CHK
c:\found.006\FILE0045.CHK
c:\found.006\FILE0046.CHK
c:\found.006\FILE0047.CHK
c:\found.006\FILE0048.CHK
c:\found.006\FILE0049.CHK
c:\found.006\FILE0050.CHK
c:\found.006\FILE0051.CHK
c:\found.006\FILE0052.CHK
c:\found.006\FILE0053.CHK
c:\found.006\FILE0054.CHK
c:\found.006\FILE0055.CHK
c:\found.006\FILE0056.CHK
c:\found.006\FILE0057.CHK
c:\found.006\FILE0058.CHK
c:\found.006\FILE0059.CHK
c:\found.006\FILE0060.CHK
c:\found.006\FILE0061.CHK
c:\found.006\FILE0062.CHK
c:\found.006\FILE0063.CHK
c:\found.006\FILE0064.CHK
c:\found.006\FILE0065.CHK
c:\found.006\FILE0066.CHK
c:\found.006\FILE0067.CHK
c:\found.006\FILE0068.CHK
c:\found.006\FILE0069.CHK
c:\found.006\FILE0070.CHK
c:\found.006\FILE0071.CHK
c:\found.006\FILE0072.CHK
c:\found.006\FILE0073.CHK
c:\found.006\FILE0074.CHK
c:\found.006\FILE0075.CHK
c:\found.006\FILE0076.CHK
c:\found.006\FILE0077.CHK
c:\found.006\FILE0078.CHK
c:\found.006\FILE0079.CHK
c:\found.006\FILE0080.CHK
c:\found.006\FILE0081.CHK
c:\found.006\FILE0082.CHK
c:\found.006\FILE0083.CHK
c:\found.006\FILE0084.CHK
c:\found.006\FILE0085.CHK
c:\found.006\FILE0086.CHK
c:\found.006\FILE0087.CHK
c:\found.006\FILE0088.CHK
c:\found.006\FILE0089.CHK
c:\found.006\FILE0090.CHK
c:\found.006\FILE0091.CHK
c:\found.006\FILE0092.CHK

.
((((((((((((((((((((((((( Soubory vytvořené od 2009-11-10 do 2009-12-10 )))))))))))))))))))))))))))))))
.

2009-12-10 10:00 . 2009-12-10 10:00 -------- d-----w- C:\FOUND.007
2009-12-06 15:23 . 2009-12-06 15:23 -------- d-----w- c:\program files\trend micro
2009-12-06 15:23 . 2009-12-06 15:23 -------- d-----w- C:\rsit
2009-12-04 20:09 . 2009-12-04 20:09 -------- d-----w- c:\program files\Microsoft CAPICOM 2.1.0.2
2009-12-04 19:39 . 2009-12-04 19:39 -------- d-----w- c:\program files\MSECache
2009-11-30 09:01 . 2009-08-06 18:23 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-11-29 16:07 . 2009-11-29 16:07 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-11-29 15:54 . 2009-11-29 15:54 -------- d-----w- C:\totalcmd
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\UC.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\RAR.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKZIP.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKUNZIP.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\NOCLOSE.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\LHA.PIF
2009-11-29 15:54 . 2009-09-24 06:50 545 ----a-w- c:\windows\ARJ.PIF
2009-11-29 15:18 . 2009-09-10 13:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-11-29 15:18 . 2009-09-10 13:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-11-29 15:18 . 2009-11-29 15:18 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-11-27 17:33 . 2009-11-27 17:33 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache
2009-11-27 17:19 . 2009-10-02 04:44 92160 ------w- c:\windows\system32\dllcache\iecompat.dll
2009-11-27 17:18 . 2009-11-27 17:18 -------- d-----w- c:\windows\ie8updates
2009-11-27 17:18 . 2009-10-29 07:43 12800 ------w- c:\windows\system32\dllcache\xpshims.dll
2009-11-27 17:18 . 2009-10-29 07:43 246272 ------w- c:\windows\system32\dllcache\ieproxy.dll
2009-11-27 17:14 . 2009-11-27 17:14 -------- d-----w- c:\program files\Yamicsoft
2009-11-27 17:14 . 2009-11-27 17:14 -------- d--h--w- c:\windows\ie8
2009-11-27 17:03 . 2009-11-27 17:03 -------- d-----w- c:\windows\system32\XPSViewer
2009-11-27 17:03 . 2009-11-27 17:03 -------- d-----w- c:\program files\MSBuild
2009-11-27 17:03 . 2009-11-27 17:03 -------- d-----w- c:\program files\Reference Assemblies
2009-11-27 17:02 . 2008-07-06 12:06 89088 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll
2009-11-27 17:02 . 2008-07-06 12:06 89088 ------w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2009-11-27 17:02 . 2008-07-06 12:06 575488 ------w- c:\windows\system32\xpsshhdr.dll
2009-11-27 17:02 . 2008-07-06 12:06 575488 ------w- c:\windows\system32\dllcache\xpsshhdr.dll
2009-11-27 17:02 . 2008-07-06 12:06 1676288 ------w- c:\windows\system32\xpssvcs.dll
2009-11-27 17:02 . 2008-07-06 12:06 1676288 ------w- c:\windows\system32\dllcache\xpssvcs.dll
2009-11-27 17:02 . 2008-07-06 12:06 117760 ------w- c:\windows\system32\prntvpt.dll
2009-11-27 17:02 . 2008-07-06 10:50 597504 ------w- c:\windows\system32\Spool\prtprocs\w32x86\printfilterpipelinesvc.exe
2009-11-27 17:02 . 2008-07-06 10:50 597504 ------w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2009-11-27 16:55 . 2009-11-27 16:55 -------- d-----w- c:\program files\Windows Desktop Search
2009-11-27 16:55 . 2009-11-27 16:55 -------- d-----w- c:\windows\system32\GroupPolicy
2009-11-27 16:51 . 2009-11-27 16:51 -------- d-----w- c:\windows\system32\URTTemp
2009-11-24 18:05 . 2009-11-24 18:05 737280 ----a-w- c:\windows\iun6002.exe
2009-11-24 18:05 . 2009-11-24 18:05 -------- d-----w- c:\program files\Codec Pack - All In 1
2009-11-24 17:32 . 2009-11-24 17:32 -------- d-----w- c:\program files\Common Files\Nero
2009-11-24 16:51 . 2009-11-24 16:51 -------- d-----w- c:\program files\Microsoft Works
2009-11-24 16:46 . 2009-11-24 16:46 -------- d-----w- c:\windows\SHELLNEW
2009-11-24 16:07 . 2009-11-24 16:06 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-11-24 16:06 . 2009-11-24 16:06 -------- d-----w- c:\program files\Java
2009-11-24 15:52 . 2009-11-24 15:52 -------- d-----w- c:\program files\Godlike Developers
2009-11-24 15:31 . 2009-11-24 15:31 -------- d-----w- c:\program files\uTorrent
2009-11-24 15:29 . 2009-11-24 15:29 -------- d-----w- c:\program files\7-Zip
2009-11-24 15:20 . 2002-09-15 19:20 64128 ----a-r- c:\windows\system32\drivers\viaudio.sys
2009-11-24 15:20 . 2009-11-24 15:20 -------- d-----w- c:\program files\VIA Technologies, Inc
2009-11-24 15:20 . 2001-09-23 10:11 32768 ----a-w- c:\windows\system32\UnAudioNT.dll
2009-11-24 15:20 . 1998-10-29 15:45 306688 ----a-w- c:\windows\IsUninst.exe
2009-11-23 19:42 . 2009-11-23 19:42 -------- d-----w- c:\program files\VideoLAN
2009-11-23 19:22 . 2009-11-23 19:22 -------- d-----w- c:\program files\Opera
2009-11-23 19:17 . 2009-11-23 19:17 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-11-23 19:12 . 2009-11-23 19:12 -------- d-----w- c:\program files\Common Files\Skype
2009-11-23 19:12 . 2009-11-23 19:12 -------- d-----r- c:\program files\Skype
2009-11-23 19:07 . 2009-11-23 19:07 -------- d-----w- c:\program files\CCleaner
2009-11-23 18:28 . 2009-11-23 18:28 -------- d-----w- c:\program files\Realtek AC97
2009-11-23 18:23 . 2009-11-23 18:23 -------- d-----w- c:\windows\nview
2009-11-23 18:23 . 2006-10-22 11:22 208896 ----a-w- c:\windows\system32\nvudisp.exe
2009-11-23 18:23 . 2006-10-22 14:06 208896 ----a-w- c:\windows\system32\NVUNINST.EXE
2009-11-23 18:23 . 2009-11-23 18:23 -------- d-----w- C:\NVIDIA
2009-11-23 18:19 . 2009-11-02 19:42 195456 ------w- c:\windows\system32\MpSigStub.exe
2009-11-23 18:07 . 2008-04-13 21:09 5504 ----a-w- c:\windows\system32\drivers\MSTEE.sys
2009-11-23 18:07 . 2008-04-13 21:09 5504 ----a-w- c:\windows\system32\dllcache\mstee.sys
2009-11-23 18:07 . 2008-04-13 21:16 10880 ----a-w- c:\windows\system32\drivers\NdisIP.sys
2009-11-23 18:07 . 2008-04-13 21:16 10880 ----a-w- c:\windows\system32\dllcache\ndisip.sys
2009-11-23 18:07 . 2008-04-13 21:16 15232 ----a-w- c:\windows\system32\drivers\StreamIP.sys
2009-11-23 18:07 . 2008-04-13 21:16 15232 ----a-w- c:\windows\system32\dllcache\streamip.sys
2009-11-23 18:06 . 2008-04-13 21:16 11136 ----a-w- c:\windows\system32\drivers\SLIP.sys
2009-11-23 18:06 . 2008-04-13 21:16 11136 ----a-w- c:\windows\system32\dllcache\slip.sys
2009-11-23 18:06 . 2008-04-13 21:16 19200 ----a-w- c:\windows\system32\drivers\WSTCODEC.SYS
2009-11-23 18:06 . 2008-04-13 21:16 19200 ----a-w- c:\windows\system32\dllcache\wstcodec.sys
2009-11-23 18:06 . 2008-04-13 21:16 85248 ----a-w- c:\windows\system32\drivers\NABTSFEC.sys
2009-11-23 18:06 . 2008-04-13 21:16 85248 ----a-w- c:\windows\system32\dllcache\nabtsfec.sys
2009-11-23 18:06 . 2008-04-13 21:16 17024 ----a-w- c:\windows\system32\drivers\CCDECODE.sys
2009-11-23 18:06 . 2008-04-13 21:16 17024 ----a-w- c:\windows\system32\dllcache\ccdecode.sys
2009-11-23 18:05 . 2001-10-25 16:00 77824 ----a-w- c:\windows\system32\dllcache\spcommon.dll
2009-11-23 18:05 . 2001-10-25 16:00 61440 ----a-w- c:\windows\system32\dllcache\spcplui.dll
2009-11-23 18:05 . 2001-10-25 16:00 774144 ----a-w- c:\windows\system32\dllcache\spttseng.dll
2009-11-23 18:05 . 2008-04-14 08:51 741376 ----a-w- c:\windows\system32\dllcache\sapi.dll
2009-11-23 18:05 . 2008-04-14 05:52 54272 ----a-w- c:\windows\system32\vfwwdm32.dll
2009-11-23 18:05 . 2008-04-14 05:52 54272 ----a-w- c:\windows\system32\dllcache\vfwwdm32.dll
2009-11-23 18:05 . 2001-10-25 16:00 36864 ----a-w- c:\windows\system32\dllcache\sapisvr.exe
2009-11-23 18:05 . 2007-04-02 23:56 22016 ----a-w- c:\windows\system32\dllcache\agt0408.dll
2009-11-23 18:05 . 2007-04-02 23:56 19456 ----a-w- c:\windows\system32\dllcache\agt041f.dll
2009-11-23 18:05 . 2007-04-02 23:56 19456 ----a-w- c:\windows\system32\dllcache\agt0419.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-09 11:43 . 2001-10-25 15:00 90546 ----a-w- c:\windows\system32\perfc005.dat
2009-12-09 11:43 . 2001-10-25 15:00 458370 ----a-w- c:\windows\system32\perfh005.dat
2009-11-23 19:55 . 2009-11-23 17:21 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-11-23 19:55 . 2009-11-23 17:21 2426 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2009-11-23 19:53 . 2009-11-23 17:21 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2009-11-23 18:04 . 2009-11-23 18:04 -------- d-----w- c:\program files\Common Files\snpstd3
2009-11-23 17:48 . 2009-11-23 17:48 -------- d-----w- c:\program files\ESET
2009-11-23 17:46 . 2009-11-23 17:46 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-11-23 17:45 . 2009-11-23 17:45 -------- d-----w- c:\program files\Common Files\InstallShield
2009-11-23 17:31 . 2009-11-23 17:31 -------- d-----w- c:\program files\Windows Defender
2009-11-23 17:23 . 2009-11-23 17:23 -------- d-----w- c:\program files\microsoft frontpage
2009-11-23 17:18 . 2009-11-23 17:18 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2009-11-23 17:17 . 2009-11-23 17:17 -------- d-----w- c:\program files\Windows Media Connect 2
2009-10-29 07:43 . 2008-03-01 12:02 916480 ------w- c:\windows\system32\wininet.dll
2009-10-21 05:40 . 2008-04-14 07:52 75776 ----a-w- c:\windows\system32\strmfilt.dll
2009-10-21 05:40 . 2008-04-14 07:51 25088 ----a-w- c:\windows\system32\httpapi.dll
2009-10-20 16:20 . 2008-04-13 23:23 265728 ----a-w- c:\windows\system32\drivers\http.sys
2009-10-13 10:34 . 2008-04-14 07:51 271360 ----a-w- c:\windows\system32\oakley.dll
2009-10-12 13:40 . 2008-04-14 07:51 79872 ----a-w- c:\windows\system32\raschap.dll
2009-10-12 13:40 . 2008-04-14 07:51 150016 ----a-w- c:\windows\system32\rastls.dll
2009-10-08 13:57 . 2008-07-29 18:59 613376 ----a-w- c:\windows\system32\uiautomationcore.dll
2009-10-08 13:57 . 2001-10-25 15:00 22528 ----a-w- c:\windows\system32\oleaccrc.dll
2009-10-08 13:57 . 2001-10-25 15:00 220160 ----a-w- c:\windows\system32\oleacc.dll
.

------- Sigcheck -------

[-] 2008-04-27 . 1E603EA2A3FDBAE9E5B88A8CB3C03124 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((( SnapShot@2009-12-09_19.24.11 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-12-10 15:44 . 2009-12-10 15:44 16384 c:\windows\Temp\usgthrsvc\Perflib_Perfdata_420.dat
+ 2009-12-10 15:44 . 2009-12-10 15:44 16384 c:\windows\Temp\Perflib_Perfdata_31c.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2006-11-03 866584]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-09-11 2054360]
"FixCamera"="c:\windows\FixCamera.exe" [2007-07-11 20480]
"snpstd3"="c:\windows\vsnpstd3.exe" [2007-05-10 835584]
"tsnpstd3"="c:\windows\tsnpstd3.exe" [2007-04-21 270336]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-22 7700480]
"nwiz"="nwiz.exe" [2006-10-22 1622016]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-22 86016]
"SoundMan"="SOUNDMAN.EXE" [2007-04-16 577536]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-11-24 149280]
"GrooveMonitor"="d:\nová složka\Office12\GrooveMonitor.exe" [2008-10-25 31072]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_2"="shell32" [X]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Aktualizovat ESET licenci.lnk - c:\program files\ESET\MiNODLogin\MiNODLogin.exe [2009-10-24 125952]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoStartMenuSubFolders"= 0 (0x0)
"NoCommonGroups"= 0 (0x0)
"NoPrinters"= 0 (0x0)
"NoRecentDocsNetHood"= 0 (0x0)
"NoChangeAnimation"= 0 (0x0)

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"d:\\Nová složka\\Office12\\OUTLOOK.EXE"=
"d:\\Nová složka\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [11.9.2009 7:23 108792]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [11.9.2009 7:24 735960]
R2 WinDefend;Windows Defender;c:\program files\Windows Defender\MsMpEng.exe [3.11.2006 19:19 13592]
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.sk/
IE: E&xportovat do aplikace Microsoft Excel - d:\novslo~1\Office12\EXCEL.EXE/3000
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-10 16:44
Windows 5.1.2600 Service Pack 3 FAT NTAPI

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'explorer.exe'(3460)
c:\windows\system32\webcheck.dll
c:\windows\system32\wpdshserviceobj.dll
c:\windows\system32\portabledevicetypes.dll
c:\windows\system32\portabledeviceapi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\SearchIndexer.exe
c:\windows\system32\RUNDLL32.EXE
c:\windows\SOUNDMAN.EXE
.
**************************************************************************
.
Celkový čas: 2009-12-10 16:47:51 - počítač byl restartován
ComboFix-quarantined-files.txt 2009-12-10 15:47
ComboFix2.txt 2009-12-09 19:25

Před spuštěním: Volných bajtů: 10 874 683 392
Po spuštění: Volných bajtů: 10 845 143 040

- - End Of File - - 21461F6A470839E7D613398716809705

Uživatelský avatar
stell
VIP in memoriam
VIP in memoriam
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: mrzne xp

#9 Příspěvek od stell »

ok,ako je na tom pocitac??
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

dusanbalaz1
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 29 lis 2009 18:15

Re: mrzne xp

#10 Příspěvek od dusanbalaz1 »

stale to mrzne. uz mam z toho fakt nervy. dakujem za pomoc. da sa stym este nieco robit?

Uživatelský avatar
stell
VIP in memoriam
VIP in memoriam
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: mrzne xp

#11 Příspěvek od stell »

:arrow:
Stáhni, nainstaluj program CCleaner - http://www.ccleaner.com/download/downloadpage.aspx?f=2
- PravyKlik na kos-spustit ccleaner ->>>Cakas>>na cistenie,,
PravyKlik na kos-otvorit ccleaner-záložka Windows a stiskni Analyzovat a poté Spustit Cleaner
- Klikni na záložku Aplikace a stiskni Analyzovat a poté Spustit Cleaner
- Klikni na Registry, stiskni Hledej problémy, po dokončení skenování klikni na Opravit vybrané problémy,
-zvol Ano pro vytvoření zálohy, ulož nabídnutý soubor a klikni na Opravit všechny problémy,

Start-spustit-napis cleanmgr ok>>dalsie moznosti-obnova systemu-vycistit,,ok,,ok

Start-spustit-napis cleanmgr,,ok,ok,zafajkni
Temporary Internet Files
kos

vycistit,ok
Click OK,Yes

Stiahnes na plochu TFC
zatvor vsetko co mas otvorene a spust-po skane restart
:arrow:
stiahnes specialnu verziu G-Mer
Special
uloz na plochu >>
Odpojiť sa od internetu a zatvor všetky otvorené programy,
Dočasne zakázať akékoľvek real-time aktívnej ochrany,
a spust>.prebehne kratky skan,,,
ak dostanes hlasku rootkit activity and asks if you want to run scan>>kliknes NO<<
a nastavis to takto
Obrázek

>> kliknes scan,<<
na konci skanu >>SAVE<< nazov das mojlog.txt>>uloz na plochu a log vloz sem,,
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

dusanbalaz1
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 29 lis 2009 18:15

Re: mrzne xp

#12 Příspěvek od dusanbalaz1 »

tan ccleaner mi nenasiel ziadne problemy. toto je ten log.

GMER 1.0.15.15279 - http://www.gmer.net
Rootkit scan 2009-12-12 18:15:57
Windows 5.1.2600 Service Pack 3
Running: 1mcxun6d.exe; Driver: C:\DOCUME~1\DUŠAN\LOCALS~1\Temp\ffpyafod.sys


---- System - GMER 1.0.15 ----

SSDT 845958A0 ZwAssignProcessToJobObject
SSDT 84594CB0 ZwOpenProcess
SSDT 845950D0 ZwOpenThread
SSDT 845956D0 ZwSuspendProcess
SSDT 845954F0 ZwSuspendThread
SSDT 84594EE0 ZwTerminateProcess
SSDT 84595310 ZwTerminateThread

---- Devices - GMER 1.0.15 ----

AttachedDevice \FileSystem\Ntfs \Ntfs eamon.sys (Amon monitor/ESET)
AttachedDevice \Driver\Tcpip \Device\Ip epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\Tcpip \Device\Tcp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)

Device \Driver\ffpyafod \Device\ffpyafod ffpyafod.sys

AttachedDevice \Driver\Tcpip \Device\Udp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\Tcpip \Device\RawIp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \FileSystem\Fastfat \Fat eamon.sys (Amon monitor/ESET)

---- Threads - GMER 1.0.15 ----

Thread System [4:544] 84593930

---- EOF - GMER 1.0.15 ----

Uživatelský avatar
stell
VIP in memoriam
VIP in memoriam
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: mrzne xp

#13 Příspěvek od stell »

toto bol kratky skan,zafajkni tak ako je na obrazku a spust skan,log vloz sem,
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

dusanbalaz1
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 29 lis 2009 18:15

Re: mrzne xp

#14 Příspěvek od dusanbalaz1 »

zdravím ťa.prepáč že som sa už neozval ale mal som problém s prihlásením. ináč som preinštaloval počítač. dal som vistu ultimate ale aj tak by som ťa chcel poprosiť či by si sa mi na to pre istotu nepozrel. Ďakujem.

Uživatelský avatar
stell
VIP in memoriam
VIP in memoriam
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: mrzne xp

#15 Příspěvek od stell »

ok,mozme
Stiahnes>>RSIT >>logy vloz sem,
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

Odpovědět