Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

neco mi ovlada ADSL modem

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: neco mi ovlada ADSL modem

#76 Příspěvek od motji »

Zvláštní, sice se mi stále něco nelíbí, ale nic nemůžu najít :o .
Vydržte, dám konzultaci s kolegy.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

fido-dido
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 15 bře 2007 18:44

Re: neco mi ovlada ADSL modem

#77 Příspěvek od fido-dido »

jasne.

preji pekny novy rok.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: neco mi ovlada ADSL modem

#78 Příspěvek od motji »

:arrow: Stahněte OTL http://oldtimer.geekstogo.com/OTL.exe
-Spusťte Otl,
-všechno odoznačte - nebo dejte na none.
- nastavte file created a file modified... na File age.
- do bílého pole zkopirujte tento skript:


Kód: Vybrat vše

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
c:\windows\*.* /U
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
ndis.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
/md5stop
c:\windows\*.* /JN
c:\windows\*.* /HL
c:\windows\*.* /RP
-klikněte na run scan
-objeví se log, zkopírujte ho zde :)

:arrow: Stáhněte
http://rootrepeal.googlepages.com/RootRepeal.zip
-Stáhněte,rozbalte a spusťte
-vyberte záložku Drivers, potom Files, klikněte na Scan,
-proběhne sken, po něm klikněte na Save Report , tím se uloží log, který zkopírujete sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

fido-dido
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 15 bře 2007 18:44

Re: neco mi ovlada ADSL modem

#79 Příspěvek od fido-dido »

OTL logfile created on: 2.1.2010 8:07:54 - Run 1
OTL by OldTimer - Version 3.1.20.1 Folder = C:\Documents and Settings\lukas\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1 023,00 Mb Total Physical Memory | 513,00 Mb Available Physical Memory | 50,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 64,00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 126,96 Gb Total Space | 106,20 Gb Free Space | 83,65% Space Free | Partition Type: NTFS
Drive D: | 106,80 Gb Total Space | 33,21 Gb Free Space | 31,10% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: LUKASPC
Current User Name: lukas
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

========== Files/Folders - Created Within 30 Days ==========

[2010.01.02 08:05:57 | 00,513,536 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\lukas\Plocha\OTL.exe
[2009.12.31 09:34:47 | 00,000,000 | -HSD | C] -- C:\RECYCLER
[2009.12.31 09:32:20 | 00,000,000 | -HSD | C] -- C:\Documents and Settings\lukas\PrivacIE
[2009.12.31 09:21:02 | 00,000,000 | ---D | C] -- C:\Avenger
[2009.12.31 09:13:22 | 00,000,000 | -HSD | C] -- C:\Documents and Settings\lukas\IETldCache
[2009.12.31 09:08:14 | 00,594,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2009.12.31 09:08:14 | 00,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2009.12.31 09:08:13 | 11,069,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2009.12.31 09:08:13 | 01,985,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2009.12.31 09:08:08 | 00,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2009.12.31 09:07:46 | 00,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2009.12.31 09:07:21 | 00,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2009.12.31 03:04:57 | 00,203,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rmcast.sys
[2009.12.31 03:04:56 | 00,726,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jscript.dll
[2009.12.31 03:04:51 | 00,272,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bthport.sys
[2009.12.31 03:03:32 | 00,455,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
[2009.12.31 03:03:30 | 00,333,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srv.sys
[2009.12.31 03:03:19 | 08,465,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shell32.dll
[2009.12.31 03:02:47 | 00,691,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcomm.dll
[2009.12.31 03:02:19 | 00,585,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rpcrt4.dll
[2009.12.31 03:02:17 | 02,147,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
[2009.12.31 03:02:16 | 02,025,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
[2009.12.31 03:02:15 | 02,068,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlpa.exe
[2009.12.31 03:01:41 | 00,337,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\netapi32.dll
[2009.12.31 03:01:40 | 01,172,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml3.dll
[2009.12.31 03:00:29 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2009.12.31 03:00:26 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2009.12.30 22:55:28 | 00,331,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadce.dll
[2009.12.30 22:53:00 | 00,044,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wups2.dll
[2009.12.30 22:52:58 | 00,022,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wucltui.dll.mui
[2009.12.30 22:52:58 | 00,018,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuaueng.dll.mui
[2009.12.30 22:52:58 | 00,015,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuaucpl.cpl.mui
[2009.12.30 22:52:58 | 00,015,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll.mui
[2009.12.30 22:33:33 | 00,000,000 | ---D | C] -- C:\ComboFix
[2009.12.30 20:05:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\lukas\Dokumenty\NFS ProStreet
[2009.12.30 20:02:00 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2009.12.30 19:50:53 | 00,000,000 | ---D | C] -- C:\Program Files\Electronic Arts
[2009.12.30 19:50:52 | 01,124,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_34.dll
[2009.12.30 19:50:52 | 00,443,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_34.dll
[2009.12.30 19:50:52 | 00,266,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_8.dll
[2009.12.30 19:50:52 | 00,018,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\x3daudio1_2.dll
[2009.12.30 19:50:51 | 03,497,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_34.dll
[2009.12.30 19:50:50 | 00,261,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_7.dll
[2009.12.30 19:50:50 | 00,081,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_3.dll
[2009.12.30 19:50:49 | 01,123,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_33.dll
[2009.12.30 19:50:49 | 00,443,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_33.dll
[2009.12.30 19:50:48 | 03,495,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_33.dll
[2009.12.30 19:50:46 | 00,255,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_6.dll
[2009.12.30 19:50:46 | 00,015,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\x3daudio1_1.dll
[2009.12.30 19:15:01 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\lukas\Recent
[2009.12.30 17:46:57 | 00,000,000 | ---D | C] -- C:\rsit
[2009.12.28 17:47:46 | 00,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2009.12.28 17:47:46 | 00,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2009.12.28 17:47:46 | 00,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2009.12.28 17:47:46 | 00,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2009.12.28 17:47:38 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2009.12.28 17:39:59 | 00,000,000 | ---D | C] -- C:\Qoobox
[2009.12.24 14:42:41 | 00,000,000 | --SD | C] -- C:\Documents and Settings\lukas\UserData
[2009.12.12 12:22:47 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\MSN6
[2009.12.08 18:34:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\lukas\Data aplikací\Media Player Classic
[2009.12.08 18:34:03 | 01,294,336 | ---- | C] (HMS http://hp.vector.co.jp/authors/VA012897/) -- C:\WINDOWS\System32\vorbis.acm
[2009.12.08 18:34:03 | 00,389,120 | ---- | C] (http://www.mp3dev.org/) -- C:\WINDOWS\System32\lameACM.acm
[2009.12.08 18:34:03 | 00,287,744 | ---- | C] (Kristal StudioDFileDescription) -- C:\WINDOWS\System32\divxa32.acm
[2009.12.08 18:34:03 | 00,232,448 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\WINDOWS\System32\mp3fhg.acm
[2009.12.08 18:34:03 | 00,118,784 | ---- | C] (fccHandler) -- C:\WINDOWS\System32\ac3acm.acm
[2009.12.08 18:34:02 | 01,565,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmv9vcm.dll
[2009.12.08 18:34:01 | 00,200,704 | ---- | C] (The OpenSSL Project, http://www.openssl.org/) -- C:\WINDOWS\System32\ssldivx.dll
[2009.12.08 18:34:00 | 01,044,480 | ---- | C] (The OpenSSL Project, http://www.openssl.org/) -- C:\WINDOWS\System32\libdivx.dll
[2009.12.08 18:34:00 | 00,196,608 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\dtu100.dll
[2009.12.08 18:34:00 | 00,073,728 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\dpl100.dll
[2009.12.08 18:33:59 | 00,639,066 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\divx.dll
[2009.12.08 18:33:57 | 00,348,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcr71.dll
[2009.12.08 18:33:56 | 00,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack
[2009.12.07 20:54:39 | 00,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2009.12.06 12:22:47 | 00,000,000 | ---D | C] -- C:\Documents and Settings\lukas\Local Settings\Data aplikací\Identities
[2009.12.05 10:48:44 | 00,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2009.12.04 22:33:38 | 00,000,000 | ---D | C] -- C:\Documents and Settings\lukas\DoctorWeb
[2009.11.17 16:26:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Microsoft
[2009.11.17 16:12:37 | 00,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Data aplikací\Microsoft
[2009.11.17 16:12:37 | 00,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Data aplikací\Microsoft
[2009.11.17 16:12:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Microsoft

========== Files - Modified Within 30 Days ==========

[2010.01.02 08:08:46 | 06,029,312 | -H-- | M] () -- C:\Documents and Settings\lukas\NTUSER.DAT
[2010.01.02 08:06:02 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\lukas\Plocha\OTL.exe
[2010.01.02 07:59:55 | 00,000,418 | ---- | M] () -- C:\WINDOWS\tasks\Norton AntiVirus - lukas - Úplné prověření systému.job
[2010.01.01 19:16:36 | 00,002,283 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Skype.lnk
[2010.01.01 15:30:35 | 00,029,204 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010.01.01 07:58:42 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.01.01 07:58:40 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.01.01 03:16:30 | 00,000,178 | -HS- | M] () -- C:\Documents and Settings\lukas\ntuser.ini
[2010.01.01 03:00:54 | 00,001,355 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2009.12.31 14:27:11 | 00,371,288 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2009.12.31 14:03:20 | 00,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2009.12.31 13:53:43 | 00,103,736 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2009.12.31 09:44:33 | 00,022,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009.12.31 09:20:06 | 00,311,740 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009.12.31 09:20:06 | 00,309,990 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2009.12.31 09:20:06 | 00,046,196 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2009.12.31 09:20:06 | 00,040,128 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009.12.31 09:20:05 | 00,714,754 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009.12.31 09:13:01 | 00,231,184 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009.12.31 09:10:02 | 00,000,249 | ---- | M] () -- C:\WINDOWS\LEXSTAT.INI
[2009.12.30 22:39:02 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2009.12.30 20:42:31 | 00,066,872 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2009.12.30 20:32:53 | 00,371,288 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20091231-142711.backup
[2009.12.29 23:31:30 | 00,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009.12.09 22:54:07 | 00,261,632 | ---- | M] () -- C:\WINDOWS\PEV.exe
[2009.12.08 18:38:38 | 00,000,121 | ---- | M] () -- C:\Documents and Settings\lukas\default.pls
[2009.12.07 21:43:47 | 00,019,456 | ---- | M] () -- C:\Documents and Settings\lukas\Dokumenty\Potomci.doc
[2009.12.07 20:54:39 | 00,001,548 | ---- | M] () -- C:\Documents and Settings\lukas\Plocha\CCleaner.lnk
[2009.12.07 19:00:12 | 00,000,410 | ---- | M] () -- C:\WINDOWS\wincmd.ini
[2009.12.06 18:31:40 | 02,806,860 | -H-- | M] () -- C:\Documents and Settings\lukas\Local Settings\Data aplikací\IconCache.db
[2009.12.04 23:00:10 | 00,000,789 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20091230-203252.backup

========== Files Created - No Company Name ==========

[2009.12.31 03:00:33 | 00,001,355 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2009.12.30 20:04:53 | 00,066,872 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2009.12.30 20:04:52 | 00,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009.12.30 20:04:39 | 00,103,736 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2009.12.28 17:47:46 | 00,261,632 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2009.12.28 17:47:46 | 00,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2009.12.28 17:47:46 | 00,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2009.12.28 17:47:46 | 00,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2009.12.08 18:34:03 | 00,000,414 | ---- | C] () -- C:\WINDOWS\System32\lame_acm.xml
[2009.12.08 18:34:02 | 00,654,848 | ---- | C] () -- C:\WINDOWS\System32\x264vfw.dll
[2009.12.08 18:34:01 | 03,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2009.12.08 18:34:01 | 00,765,952 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2009.12.08 18:34:01 | 00,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2009.12.08 18:33:58 | 00,010,752 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2009.12.08 18:33:58 | 00,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
[2009.12.07 21:43:47 | 00,019,456 | ---- | C] () -- C:\Documents and Settings\lukas\Dokumenty\Potomci.doc
[2009.12.07 20:54:39 | 00,001,548 | ---- | C] () -- C:\Documents and Settings\lukas\Plocha\CCleaner.lnk
[2009.12.06 09:50:00 | 00,000,418 | ---- | C] () -- C:\WINDOWS\tasks\Norton AntiVirus - lukas - Úplné prověření systému.job
[2009.11.22 17:11:45 | 00,006,144 | ---- | C] () -- C:\Documents and Settings\lukas\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.11.18 21:44:18 | 00,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009.11.17 22:33:52 | 00,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009.11.17 17:20:14 | 00,000,410 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2009.11.17 17:10:10 | 00,000,249 | ---- | C] () -- C:\WINDOWS\LEXSTAT.INI
[2009.11.17 17:07:00 | 01,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2009.11.17 17:06:59 | 01,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2009.11.17 17:06:59 | 00,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2009.11.17 17:06:58 | 01,466,368 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2009.11.17 17:06:58 | 00,540,672 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
[2009.11.17 17:06:58 | 00,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2009.11.17 16:59:10 | 00,000,164 | ---- | C] () -- C:\WINDOWS\avrack.ini
[2009.11.17 16:59:07 | 00,156,672 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll
[1999.01.22 18:46:58 | 00,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL

========== Custom Scans ==========


< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}" = "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" -- [2006.11.16 19:04:20 | 00,139,264 | ---- | M] (Nero AG)
"SpybotSD TeaTimer" = C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe -- [2009.03.05 16:07:20 | 02,260,480 | RHS- | M] (Safer-Networking Ltd.)
"Skype" = "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized -- [2009.10.09 13:11:12 | 25,623,336 | R--- | M] (Skype Technologies S.A.)
"AlcoholAutomount" = "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount -- [2009.04.24 04:21:40 | 00,203,928 | ---- | M] (Alcohol Soft Development Team)
"ICQ" = "C:\Program Files\ICQ6.5\ICQ.exe" silent -- [2009.11.16 16:36:19 | 00,172,792 | ---- | M] (ICQ, LLC.)
"ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 08:52:18 | 00,015,360 | ---- | M] (Microsoft Corporation)

< c:\windows\*.* /U >


< MD5 for: AGP440.SYS >
[2008.04.14 00:06:40 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys
[2008.04.14 00:06:40 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.14 00:06:40 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004.08.03 23:07:42 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\$NtServicePackUninstall$\agp440.sys

< MD5 for: ATAPI.SYS >
[2008.04.13 23:10:32 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
[2008.04.14 00:10:32 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 23:10:32 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008.04.13 23:10:32 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008.04.14 00:10:32 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\i386\atapi.sys
[2004.08.03 22:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: EVENTLOG.DLL >
[2008.04.14 08:51:42 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ERDNT\cache\eventlog.dll
[2008.04.14 08:51:42 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 08:51:42 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
[2004.08.17 15:49:08 | 00,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: NDIS.SYS >
[2008.04.14 00:50:38 | 00,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ERDNT\cache\ndis.sys
[2008.04.14 00:50:38 | 00,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.14 00:50:38 | 00,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2004.08.03 23:14:30 | 00,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

< MD5 for: NETLOGON.DLL >
[2004.08.17 15:49:14 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=2591CADAEF7D2242039255028E577688 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2008.04.14 08:51:52 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ERDNT\cache\netlogon.dll
[2008.04.14 08:51:52 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 08:51:52 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll

< MD5 for: NVATA.SYS >
[2005.05.17 10:45:08 | 00,092,800 | R--- | M] (NVIDIA Corporation) MD5=DCE353985C988BFB7E84FD942068151F -- C:\WINDOWS\system32\drivers\nvata.sys

< MD5 for: SCECLI.DLL >
[2004.08.17 15:49:18 | 00,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 08:51:56 | 00,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ERDNT\cache\scecli.dll
[2008.04.14 08:51:56 | 00,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 08:51:56 | 00,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< c:\windows\*.* /JN >
[2010.01.01 07:58:58 | 00,000,000 | ---- | M] () -- c:\WINDOWS\0.log
[2004.09.01 13:04:18 | 00,139,264 | ---- | M] (Realtek Semiconductor Corp.) -- c:\WINDOWS\alcrmv.exe
[2004.11.05 09:29:30 | 00,208,896 | ---- | M] (Realtek Semiconductor Corp.) -- c:\WINDOWS\alcupd.exe
[2006.10.23 06:55:02 | 00,000,545 | ---- | M] () -- c:\windows\ARJ.PIF
[2001.07.05 17:19:12 | 00,000,164 | ---- | M] () -- c:\WINDOWS\avrack.ini
[2010.01.01 07:58:40 | 00,002,048 | --S- | M] () -- c:\WINDOWS\bootstat.dat
[2001.10.25 15:00:00 | 00,082,944 | ---- | M] () -- c:\WINDOWS\clock.avi
[2010.01.01 03:01:02 | 00,130,592 | ---- | M] () -- c:\WINDOWS\comsetup.log
[2009.11.17 16:07:46 | 00,000,000 | ---- | M] () -- c:\WINDOWS\control.ini
[2004.03.22 03:09:00 | 00,081,920 | R--- | M] (Creative Technology Ltd.) -- c:\WINDOWS\CtDrvIns.exe
[1999.10.11 02:00:00 | 00,041,984 | ---- | M] (Creative Technology Ltd ) -- c:\WINDOWS\Ctregrun.exe
[2001.10.25 15:00:00 | 00,000,002 | ---- | M] () -- c:\WINDOWS\desktop.ini
[2009.12.30 19:50:53 | 00,048,207 | ---- | M] () -- c:\WINDOWS\DirectX.log
[2008.04.14 08:52:24 | 01,034,240 | ---- | M] (Microsoft Corporation) -- c:\WINDOWS\explorer.exe
[2001.10.25 15:00:00 | 00,000,080 | ---- | M] () -- c:\windows\explorer.scf
[2010.01.01 03:01:01 | 00,395,721 | ---- | M] () -- c:\WINDOWS\FaxSetup.log
[2000.08.31 08:00:00 | 00,080,412 | ---- | M] () -- c:\WINDOWS\grep.exe
[2008.04.14 08:52:26 | 00,010,752 | ---- | M] (Microsoft Corporation) -- c:\WINDOWS\hh.exe
[2009.12.31 09:08:01 | 00,063,925 | ---- | M] () -- c:\WINDOWS\ie8.log
[2009.12.31 09:08:37 | 00,058,837 | ---- | M] () -- c:\WINDOWS\ie8_main.log
[2010.01.01 03:01:02 | 00,426,984 | ---- | M] () -- c:\WINDOWS\iis6.log
[2010.01.01 03:00:54 | 00,001,355 | ---- | M] () -- c:\WINDOWS\imsins.BAK
[2010.01.01 03:01:02 | 00,001,355 | ---- | M] () -- c:\WINDOWS\imsins.log
[2009.12.31 03:00:34 | 00,007,375 | ---- | M] () -- c:\WINDOWS\KB898461.log
[2009.12.31 08:55:32 | 00,014,497 | ---- | M] () -- c:\WINDOWS\KB923561.log
[2009.12.31 09:09:49 | 00,053,173 | ---- | M] () -- c:\WINDOWS\KB946648.log
[2009.12.31 08:58:54 | 00,018,158 | ---- | M] () -- c:\WINDOWS\KB950762.log
[2009.12.31 09:00:48 | 00,033,496 | ---- | M] () -- c:\WINDOWS\KB950974.log
[2009.12.31 08:58:06 | 00,017,311 | ---- | M] () -- c:\WINDOWS\KB951066.log
[2009.12.31 09:10:11 | 00,054,099 | ---- | M] () -- c:\WINDOWS\KB951376-v2.log
[2009.12.31 08:57:44 | 00,023,821 | ---- | M] () -- c:\WINDOWS\KB951748.log
[2009.12.31 09:09:08 | 00,060,425 | ---- | M] () -- c:\WINDOWS\KB951978.log
[2009.12.31 08:59:30 | 00,029,135 | ---- | M] () -- c:\WINDOWS\KB952004.log
[2009.12.31 08:57:50 | 00,016,676 | ---- | M] () -- c:\WINDOWS\KB952069.log
[2009.12.31 08:58:38 | 00,017,843 | ---- | M] () -- c:\WINDOWS\KB952287.log
[2009.12.31 09:10:05 | 00,060,987 | ---- | M] () -- c:\WINDOWS\KB952954.log
[2009.12.31 09:00:32 | 00,025,203 | ---- | M] () -- c:\WINDOWS\KB954155.log
[2009.12.31 08:57:55 | 00,022,404 | ---- | M] () -- c:\WINDOWS\KB954459.log
[2009.12.31 08:55:42 | 00,014,906 | ---- | M] () -- c:\WINDOWS\KB955069.log
[2009.12.31 09:00:10 | 00,029,024 | ---- | M] () -- c:\WINDOWS\KB956572.log
[2009.12.31 09:00:22 | 00,026,981 | ---- | M] () -- c:\WINDOWS\KB956744.log
[2009.12.31 08:55:37 | 00,019,601 | ---- | M] () -- c:\WINDOWS\KB956802.log
[2009.12.31 09:09:42 | 00,053,246 | ---- | M] () -- c:\WINDOWS\KB956803.log
[2009.12.31 08:59:58 | 00,022,878 | ---- | M] () -- c:\WINDOWS\KB956844.log
[2009.12.31 08:58:49 | 00,018,227 | ---- | M] () -- c:\WINDOWS\KB957097.log
[2009.12.31 08:55:48 | 00,015,428 | ---- | M] () -- c:\WINDOWS\KB958644.log
[2009.12.31 08:58:43 | 00,018,148 | ---- | M] () -- c:\WINDOWS\KB958687.log
[2009.12.31 09:09:28 | 00,050,691 | ---- | M] () -- c:\WINDOWS\KB958869.log
[2009.12.31 09:09:58 | 00,059,718 | ---- | M] () -- c:\WINDOWS\KB959426.log
[2009.12.31 09:00:27 | 00,026,546 | ---- | M] () -- c:\WINDOWS\KB960225.log
[2009.12.31 08:57:22 | 00,021,151 | ---- | M] () -- c:\WINDOWS\KB960803.log
[2009.12.31 09:09:36 | 00,060,105 | ---- | M] () -- c:\WINDOWS\KB960859.log
[2009.12.31 09:08:44 | 00,058,434 | ---- | M] () -- c:\WINDOWS\KB961371-v2.log
[2009.12.31 08:59:52 | 00,028,836 | ---- | M] () -- c:\WINDOWS\KB961501.log
[2009.12.31 08:58:20 | 00,018,141 | ---- | M] () -- c:\WINDOWS\KB967715.log
[2009.12.31 08:55:15 | 00,018,421 | ---- | M] () -- c:\WINDOWS\KB968389.log
[2009.12.31 09:08:50 | 00,050,635 | ---- | M] () -- c:\WINDOWS\KB968816.log
[2009.12.31 09:08:58 | 00,059,160 | ---- | M] () -- c:\WINDOWS\KB969059.log
[2009.12.31 08:55:07 | 00,014,660 | ---- | M] () -- c:\WINDOWS\KB969947.log
[2009.12.31 08:57:36 | 00,016,307 | ---- | M] () -- c:\WINDOWS\KB970238.log
[2010.01.01 03:01:02 | 00,013,845 | ---- | M] () -- c:\WINDOWS\KB970430.log
[2009.12.31 08:57:30 | 00,016,959 | ---- | M] () -- c:\WINDOWS\KB971486.log
[2009.12.31 09:00:37 | 00,032,401 | ---- | M] () -- c:\WINDOWS\KB971557.log
[2009.12.31 08:59:47 | 00,029,366 | ---- | M] () -- c:\WINDOWS\KB971633.log
[2009.12.31 09:00:43 | 00,033,534 | ---- | M] () -- c:\WINDOWS\KB971657.log
[2010.01.01 03:00:54 | 00,012,272 | ---- | M] () -- c:\WINDOWS\KB971737.log
[2010.01.01 03:00:48 | 00,008,037 | ---- | M] () -- c:\WINDOWS\KB971961-IE8.log
[2009.12.31 08:55:25 | 00,013,141 | ---- | M] () -- c:\WINDOWS\KB971961.log
[2009.12.31 08:58:33 | 00,017,832 | ---- | M] () -- c:\WINDOWS\KB973354.log
[2009.12.31 08:59:07 | 00,024,221 | ---- | M] () -- c:\WINDOWS\KB973507.log
[2009.12.31 08:57:11 | 00,014,907 | ---- | M] () -- c:\WINDOWS\KB973525.log
[2009.12.31 08:58:13 | 00,016,122 | ---- | M] () -- c:\WINDOWS\KB973540.log
[2009.12.31 08:59:01 | 00,018,934 | ---- | M] () -- c:\WINDOWS\KB973687.log
[2009.12.31 08:57:16 | 00,020,451 | ---- | M] () -- c:\WINDOWS\KB973815.log
[2009.12.31 08:59:41 | 00,022,165 | ---- | M] () -- c:\WINDOWS\KB973869.log
[2009.12.31 08:58:27 | 00,018,963 | ---- | M] () -- c:\WINDOWS\KB973904.log
[2009.12.31 09:00:16 | 00,033,124 | ---- | M] () -- c:\WINDOWS\KB974112.log
[2009.12.31 09:09:15 | 00,060,325 | ---- | M] () -- c:\WINDOWS\KB974318.log
[2009.12.31 08:58:01 | 00,023,222 | ---- | M] () -- c:\WINDOWS\KB974392.log
[2009.12.31 08:59:22 | 00,027,286 | ---- | M] () -- c:\WINDOWS\KB974571.log
[2009.12.31 08:59:35 | 00,028,468 | ---- | M] () -- c:\WINDOWS\KB975025.log
[2009.12.31 09:08:12 | 00,053,513 | ---- | M] () -- c:\WINDOWS\KB975364-IE8.log
[2009.12.31 08:55:20 | 00,018,031 | ---- | M] () -- c:\WINDOWS\KB975467.log
[2009.12.31 09:09:22 | 00,050,321 | ---- | M] () -- c:\WINDOWS\KB976098-v2.log
[2009.12.31 09:08:35 | 00,062,184 | ---- | M] () -- c:\WINDOWS\KB976325-IE8.log
[2009.12.31 08:59:17 | 00,028,266 | ---- | M] () -- c:\WINDOWS\KB976325.log
[2009.12.31 09:10:02 | 00,000,249 | ---- | M] () -- c:\WINDOWS\LEXSTAT.INI
[2006.10.23 06:55:02 | 00,000,545 | ---- | M] () -- c:\windows\LHA.PIF
[2009.10.25 06:11:34 | 00,077,312 | ---- | M] () -- c:\WINDOWS\MBR.exe
[2010.01.01 03:01:01 | 00,027,200 | ---- | M] () -- c:\WINDOWS\MedCtrOC.log
[2001.10.25 15:00:00 | 00,001,272 | ---- | M] () -- c:\WINDOWS\Modrá krajka 16.bmp
[2001.10.25 15:00:00 | 00,001,405 | ---- | M] () -- c:\WINDOWS\msdfmap.ini
[2010.01.01 03:01:01 | 00,019,776 | ---- | M] () -- c:\WINDOWS\msgsocm.log
[2010.01.01 03:01:01 | 00,123,628 | ---- | M] () -- c:\WINDOWS\msmqinst.log
[2001.10.25 15:00:00 | 00,065,978 | ---- | M] () -- c:\WINDOWS\Mýdlové bubliny.bmp
[2001.10.25 15:00:00 | 00,017,336 | ---- | M] () -- c:\WINDOWS\Na rybách.bmp
[2009.12.31 14:03:20 | 00,000,116 | ---- | M] () -- c:\WINDOWS\NeroDigital.ini
[2010.01.01 03:01:01 | 00,069,312 | ---- | M] () -- c:\WINDOWS\netfxocm.log
[2009.04.20 12:56:28 | 00,031,232 | ---- | M] (NirSoft) -- c:\WINDOWS\NIRCMD.exe
[2006.10.23 06:55:02 | 00,000,545 | ---- | M] () -- c:\windows\NOCLOSE.PIF
[2008.04.14 08:52:40 | 00,069,632 | ---- | M] (Microsoft Corporation) -- c:\WINDOWS\notepad.exe
[2009.11.17 19:02:57 | 00,000,000 | ---- | M] () -- c:\WINDOWS\nsreg.dat
[2009.12.31 09:26:59 | 00,080,490 | ---- | M] () -- c:\WINDOWS\ntbtlog.txt
[2010.01.01 03:01:02 | 00,079,183 | ---- | M] () -- c:\WINDOWS\ntdtcsetup.log
[2010.01.01 03:01:01 | 00,189,184 | ---- | M] () -- c:\WINDOWS\ocgen.log
[2010.01.01 03:01:02 | 00,024,704 | ---- | M] () -- c:\WINDOWS\ocmsn.log
[2009.12.01 09:30:39 | 00,000,390 | ---- | M] () -- c:\WINDOWS\ODBC.INI
[2009.11.17 16:07:39 | 00,004,265 | ---- | M] () -- c:\WINDOWS\ODBCINST.INI
[2001.10.25 15:00:00 | 00,065,832 | ---- | M] () -- c:\WINDOWS\Omítka Santa Fe.bmp
[2004.02.23 02:00:00 | 00,020,480 | R--- | M] (Creative Technology Ltd.) -- c:\WINDOWS\P0630Cfg.exe
[2004.04.22 05:15:04 | 00,003,877 | R--- | M] () -- c:\WINDOWS\PD0630.uns
[2009.12.09 22:54:07 | 00,261,632 | ---- | M] () -- c:\WINDOWS\PEV.exe
[2006.10.23 06:55:02 | 00,000,545 | ---- | M] () -- c:\windows\PKUNZIP.PIF
[2006.10.23 06:55:02 | 00,000,545 | ---- | M] () -- c:\windows\PKZIP.PIF
[1998.09.23 19:10:16 | 00,195,072 | ---- | M] (Pantone, Inc.) -- c:\WINDOWS\POCE98.DLL
[1999.05.13 14:39:32 | 00,031,744 | ---- | M] (Pantone, Inc.) -- c:\WINDOWS\POCELANG.DLL
[2001.10.25 15:00:00 | 00,065,954 | ---- | M] () -- c:\WINDOWS\Prérijní vítr.bmp
[2006.10.23 06:55:02 | 00,000,545 | ---- | M] () -- c:\windows\RAR.PIF
[2008.04.14 08:52:44 | 00,147,968 | ---- | M] (Microsoft Corporation) -- c:\WINDOWS\regedit.exe
[2009.11.17 16:10:26 | 00,008,192 | ---- | M] () -- c:\WINDOWS\REGLOCS.OLD
[2001.10.25 15:00:00 | 00,017,362 | ---- | M] () -- c:\WINDOWS\Rododendron.bmp
[2009.12.31 09:20:17 | 00,016,882 | ---- | M] () -- c:\WINDOWS\SchedLgU.Txt
[2000.08.31 08:00:00 | 00,098,816 | ---- | M] () -- c:\WINDOWS\sed.exe
[2009.12.31 03:00:32 | 00,000,000 | ---- | M] () -- c:\WINDOWS\setupact.log
[2009.12.30 22:42:18 | 00,015,002 | ---- | M] () -- c:\WINDOWS\setupapi.log
[2009.12.31 03:00:32 | 00,000,000 | ---- | M] () -- c:\WINDOWS\setuperr.log
[2008.04.14 08:52:48 | 00,032,866 | ---- | M] (Smart Link) -- c:\WINDOWS\slrundll.exe
[2004.12.22 10:09:44 | 00,077,824 | ---- | M] (Realtek Semiconductor Corp.) -- c:\WINDOWS\SOUNDMAN.EXE
[2009.12.31 09:14:03 | 00,008,378 | ---- | M] () -- c:\WINDOWS\spupdsvc.log
[2009.11.17 13:35:20 | 00,000,000 | ---- | M] () -- c:\WINDOWS\Sti_Trace.log
[2000.08.31 08:00:00 | 00,161,792 | ---- | M] (SteelWerX) -- c:\WINDOWS\SWREG.exe
[2000.08.31 08:00:00 | 00,136,704 | ---- | M] (SteelWerX) -- c:\WINDOWS\SWSC.exe
[2000.08.31 08:00:00 | 00,212,480 | ---- | M] (SteelWerX) -- c:\WINDOWS\SWXCACLS.exe
[2009.12.30 22:39:02 | 00,000,227 | ---- | M] () -- c:\WINDOWS\system.ini
[2010.01.01 03:01:02 | 00,019,904 | ---- | M] () -- c:\WINDOWS\tabletoc.log
[2001.10.25 15:00:00 | 00,015,360 | ---- | M] (Microsoft Corporation) -- c:\WINDOWS\TASKMAN.EXE
[2001.10.25 15:00:00 | 00,016,730 | ---- | M] () -- c:\WINDOWS\Textura peří.bmp
[2010.01.01 03:01:02 | 00,180,548 | ---- | M] () -- c:\WINDOWS\tsoc.log
[2001.10.25 15:00:00 | 00,094,784 | ---- | M] (Twain Working Group) -- c:\WINDOWS\twain.dll
[2008.04.14 08:52:06 | 00,050,688 | ---- | M] (Twain Working Group) -- c:\WINDOWS\twain_32.dll
[2001.10.25 15:00:00 | 00,049,680 | ---- | M] (Twain Working Group) -- c:\WINDOWS\twunk_16.exe
[2001.10.25 15:00:00 | 00,025,600 | ---- | M] (Twain Working Group) -- c:\WINDOWS\twunk_32.exe
[2006.10.23 06:55:02 | 00,000,545 | ---- | M] () -- c:\windows\UC.PIF
[1997.04.18 11:46:20 | 00,297,984 | ---- | M] () -- c:\WINDOWS\unin0405.exe
[2005.08.30 20:33:38 | 00,000,050 | ---- | M] () -- c:\WINDOWS\UNNeroBackItUp.cfg
[2006.07.14 16:29:44 | 00,966,656 | ---- | M] (Nero AG) -- c:\WINDOWS\UNNeroBackItUp.exe
[2005.09.15 13:35:46 | 00,000,050 | ---- | M] () -- c:\WINDOWS\UNNeroMediaHome.cfg
[2006.07.14 16:29:44 | 00,966,656 | ---- | M] (Nero AG) -- c:\WINDOWS\UNNeroMediaHome.exe
[2005.08.30 20:37:04 | 00,000,050 | ---- | M] () -- c:\WINDOWS\UNNeroShowTime.cfg
[2006.07.14 16:29:44 | 00,966,656 | ---- | M] (Nero AG) -- c:\WINDOWS\UNNeroShowTime.exe
[2005.08.30 20:37:52 | 00,000,050 | ---- | M] () -- c:\WINDOWS\UNNeroVision.cfg
[2006.07.14 16:29:44 | 00,966,656 | ---- | M] (Nero AG) -- c:\WINDOWS\UNNeroVision.exe
[2005.08.30 20:36:38 | 00,000,050 | ---- | M] () -- c:\WINDOWS\UNRecode.cfg
[2006.07.14 16:29:44 | 00,966,656 | ---- | M] (Nero AG) -- c:\WINDOWS\UNRecode.exe
[2010.01.01 03:01:00 | 00,035,355 | ---- | M] () -- c:\WINDOWS\updspapi.log
[2009.11.17 16:04:59 | 00,000,036 | ---- | M] () -- c:\WINDOWS\vb.ini
[2009.11.17 16:04:59 | 00,000,037 | ---- | M] () -- c:\WINDOWS\vbaddin.ini
[2001.10.25 15:00:00 | 00,018,944 | ---- | M] (Microsoft Corporation) -- c:\WINDOWS\vmmreg32.dll
[2010.01.01 07:58:56 | 00,000,159 | ---- | M] () -- c:\WINDOWS\wiadebug.log
[2010.01.01 07:58:55 | 00,000,048 | ---- | M] () -- c:\WINDOWS\wiaservc.log
[2009.11.17 22:33:20 | 00,000,600 | ---- | M] () -- c:\WINDOWS\win.ini
[2009.12.07 19:00:12 | 00,000,410 | ---- | M] () -- c:\WINDOWS\wincmd.ini
[2009.11.17 16:06:59 | 00,000,749 | RH-- | M] () -- c:\WINDOWS\WindowsShell.Manifest
[2010.01.02 03:00:10 | 01,295,391 | ---- | M] () -- c:\WINDOWS\WindowsUpdate.log
[2001.10.25 15:00:00 | 00,256,419 | ---- | M] (Microsoft Corporation) -- c:\WINDOWS\winhelp.exe
[2008.04.14 08:52:54 | 00,283,648 | ---- | M] (Microsoft Corporation) -- c:\WINDOWS\winhlp32.exe
[2001.10.25 15:00:00 | 00,048,680 | -HS- | M] () -- c:\WINDOWS\winnt.bmp
[2001.10.25 15:00:00 | 00,048,680 | -HS- | M] () -- c:\WINDOWS\winnt256.bmp
[2001.10.25 15:00:00 | 00,036,582 | ---- | M] () -- c:\WINDOWS\wmprfCSY.prx
[2009.12.31 08:58:13 | 00,000,148 | ---- | M] () -- c:\WINDOWS\wmsetup.log
[2009.11.17 16:49:17 | 00,316,640 | ---- | M] () -- c:\WINDOWS\WMSysPr9.prx
[2009.11.17 16:07:43 | 00,299,552 | ---- | M] () -- c:\WINDOWS\WMSysPrx.prx
[2001.10.25 15:00:00 | 00,009,522 | ---- | M] () -- c:\WINDOWS\Zapotec.bmp
[2001.10.25 15:00:00 | 00,026,582 | ---- | M] () -- c:\WINDOWS\Zelený kámen.bmp
[2000.08.31 08:00:00 | 00,068,096 | ---- | M] () -- c:\WINDOWS\zip.exe
[2001.10.25 15:00:00 | 00,017,062 | ---- | M] () -- c:\WINDOWS\Zrnko kávy.bmp
[2001.10.25 15:00:00 | 00,000,707 | ---- | M] () -- c:\windows\_default.pif
[2001.10.25 15:00:00 | 00,026,680 | ---- | M] () -- c:\WINDOWS\Řeka Sumida.bmp

< c:\windows\*.* /HL >

< c:\windows\*.* /RP >
< End of report >

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: neco mi ovlada ADSL modem

#80 Příspěvek od motji »

Já už nikde nic opravdu nevidím :o . Ještě zkuste rootrepeal.
Co dělá modem ted? je všechno v pořádku?

Pc jste přeinstalovali,že?



:arrow: Stáhněte
http://rootrepeal.googlepages.com/RootRepeal.zip
-Stáhněte,rozbalte a spusťte
-vyberte záložku Files, klikněte na Scan,
-proběhne sken, po něm klikněte na Save Report , tím se uloží log, který zkopírujete sem

-postupně vyberte všechny záložky a udělejte skeny.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

fido-dido
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 15 bře 2007 18:44

Re: neco mi ovlada ADSL modem

#81 Příspěvek od fido-dido »

ano PC jsem preinstaloval a po 14 dnech se problem opakoval.

u rootrepeal jsem mi podaril pouze sken DRIVERS u FILES se mi po spusteni kousne PC a musim ho restartovat. skousel jsem to trikrat a pokazde stejne.



ROOTREPEAL (c) AD, 2007-2009
==================================================
Scan Start Time: 2010/01/02 09:17
Program Version: Version 1.3.5.0
Windows Version: Windows XP SP3
==================================================

Drivers
-------------------
Name: ACPI.sys
Image Path: ACPI.sys
Address: 0xF74AD000 Size: 188288 File Visible: - Signed: -
Status: -

Name: ACPI_HAL
Image Path: \Driver\ACPI_HAL
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

Name: aec.sys
Image Path: C:\WINDOWS\system32\drivers\aec.sys
Address: 0xB1F0A000 Size: 142592 File Visible: - Signed: -
Status: -

Name: afd.sys
Image Path: C:\WINDOWS\System32\drivers\afd.sys
Address: 0xEDDEF000 Size: 138496 File Visible: - Signed: -
Status: -

Name: ALCXWDM.SYS
Image Path: C:\WINDOWS\system32\drivers\ALCXWDM.SYS
Address: 0xF66A8000 Size: 2304320 File Visible: - Signed: -
Status: -

Name: AmdK8.sys
Image Path: C:\WINDOWS\system32\DRIVERS\AmdK8.sys
Address: 0xF767C000 Size: 65536 File Visible: - Signed: -
Status: -

Name: atapi.sys
Image Path: atapi.sys
Address: 0xF743F000 Size: 96512 File Visible: - Signed: -
Status: -

Name: audstub.sys
Image Path: C:\WINDOWS\System32\DRIVERS\audstub.sys
Address: 0xF7CA1000 Size: 3072 File Visible: - Signed: -
Status: -

Name: Beep.SYS
Image Path: C:\WINDOWS\System32\Drivers\Beep.SYS
Address: 0xF7B6C000 Size: 4224 File Visible: - Signed: -
Status: -

Name: BHDrvx86.sys
Image Path: C:\Documents and Settings\All Users\Data aplikací\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_17.0.0.136\Definitions\BASHDefs\20091205.001\BHDrvx86.sys
Address: 0xB24D9000 Size: 544768 File Visible: - Signed: -
Status: -

Name: BOOTVID.dll
Image Path: C:\WINDOWS\system32\BOOTVID.dll
Address: 0xF79EC000 Size: 12288 File Visible: - Signed: -
Status: -

Name: ccHPx86.sys
Image Path: C:\WINDOWS\system32\drivers\NAV\1101000.013\ccHPx86.sys
Address: 0xEDA23000 Size: 520192 File Visible: - Signed: -
Status: -

Name: Cdfs.SYS
Image Path: C:\WINDOWS\System32\Drivers\Cdfs.SYS
Address: 0xB49D4000 Size: 63744 File Visible: - Signed: -
Status: -

Name: cdrom.sys
Image Path: C:\WINDOWS\System32\DRIVERS\cdrom.sys
Address: 0xF6B15000 Size: 62976 File Visible: - Signed: -
Status: -

Name: CLASSPNP.SYS
Image Path: C:\WINDOWS\System32\DRIVERS\CLASSPNP.SYS
Address: 0xF761C000 Size: 53248 File Visible: - Signed: -
Status: -

Name: disk.sys
Image Path: disk.sys
Address: 0xF760C000 Size: 36352 File Visible: - Signed: -
Status: -

Name: dmio.sys
Image Path: dmio.sys
Address: 0xF7457000 Size: 153856 File Visible: - Signed: -
Status: -

Name: dmload.sys
Image Path: dmload.sys
Address: 0xF7AE0000 Size: 5888 File Visible: - Signed: -
Status: -

Name: DMusic.sys
Image Path: C:\WINDOWS\system32\drivers\DMusic.sys
Address: 0xB49C4000 Size: 52864 File Visible: - Signed: -
Status: -

Name: drmk.sys
Image Path: C:\WINDOWS\system32\drivers\drmk.sys
Address: 0xF768C000 Size: 61440 File Visible: - Signed: -
Status: -

Name: drmkaud.sys
Image Path: C:\WINDOWS\system32\drivers\drmkaud.sys
Address: 0xF7CCE000 Size: 2944 File Visible: - Signed: -
Status: -

Name: dump_nvata.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_nvata.sys
Address: 0xB3914000 Size: 94208 File Visible: No Signed: -
Status: -

Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xF7B4C000 Size: 8192 File Visible: No Signed: -
Status: -

Name: Dxapi.sys
Image Path: C:\WINDOWS\System32\drivers\Dxapi.sys
Address: 0xB4B8F000 Size: 12288 File Visible: - Signed: -
Status: -

Name: dxg.sys
Image Path: C:\WINDOWS\System32\drivers\dxg.sys
Address: 0xBF9C4000 Size: 73728 File Visible: - Signed: -
Status: -

Name: dxgthk.sys
Image Path: C:\WINDOWS\System32\drivers\dxgthk.sys
Address: 0xF7C84000 Size: 4096 File Visible: - Signed: -
Status: -

Name: eeCtrl.sys
Image Path: C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
Address: 0xEDABF000 Size: 385024 File Visible: - Signed: -
Status: -

Name: EraserUtilRebootDrv.sys
Image Path: C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
Address: 0xEDAA2000 Size: 118784 File Visible: - Signed: -
Status: -

Name: Fips.SYS
Image Path: C:\WINDOWS\System32\Drivers\Fips.SYS
Address: 0xF2E12000 Size: 44544 File Visible: - Signed: -
Status: -

Name: fltmgr.sys
Image Path: fltmgr.sys
Address: 0xF7408000 Size: 129792 File Visible: - Signed: -
Status: -

Name: Fs_Rec.SYS
Image Path: C:\WINDOWS\System32\Drivers\Fs_Rec.SYS
Address: 0xF7B6A000 Size: 7936 File Visible: - Signed: -
Status: -

Name: ftdisk.sys
Image Path: ftdisk.sys
Address: 0xF747D000 Size: 125184 File Visible: - Signed: -
Status: -

Name: hal.dll
Image Path: C:\WINDOWS\system32\hal.dll
Address: 0x806D0000 Size: 131840 File Visible: - Signed: -
Status: -

Name: HTTP.sys
Image Path: C:\WINDOWS\System32\Drivers\HTTP.sys
Address: 0xB1B54000 Size: 265728 File Visible: - Signed: -
Status: -

Name: i8042prt.sys
Image Path: C:\WINDOWS\System32\DRIVERS\i8042prt.sys
Address: 0xF6AD5000 Size: 52096 File Visible: - Signed: -
Status: -

Name: IDSxpx86.sys
Image Path: C:\Documents and Settings\All Users\Data aplikací\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_17.0.0.136\Definitions\IPSDefs\20091217.002\IDSxpx86.sys
Address: 0xEDE39000 Size: 344064 File Visible: - Signed: -
Status: -

Name: imapi.sys
Image Path: C:\WINDOWS\System32\DRIVERS\imapi.sys
Address: 0xF6AF5000 Size: 42112 File Visible: - Signed: -
Status: -

Name: ipnat.sys
Image Path: C:\WINDOWS\System32\DRIVERS\ipnat.sys
Address: 0xEDC6F000 Size: 152832 File Visible: - Signed: -
Status: -

Name: ipsec.sys
Image Path: C:\WINDOWS\System32\DRIVERS\ipsec.sys
Address: 0xEDF62000 Size: 75264 File Visible: - Signed: -
Status: -

Name: Ironx86.SYS
Image Path: C:\WINDOWS\System32\Drivers\NAV\1101000.013\Ironx86.SYS
Address: 0xEDD30000 Size: 126976 File Visible: - Signed: -
Status: -

Name: isapnp.sys
Image Path: isapnp.sys
Address: 0xF75DC000 Size: 37248 File Visible: - Signed: -
Status: -

Name: kbdclass.sys
Image Path: C:\WINDOWS\System32\DRIVERS\kbdclass.sys
Address: 0xF78DC000 Size: 24576 File Visible: - Signed: -
Status: -

Name: KDCOM.DLL
Image Path: C:\WINDOWS\system32\KDCOM.DLL
Address: 0xF7ADC000 Size: 8192 File Visible: - Signed: -
Status: -

Name: kmixer.sys
Image Path: C:\WINDOWS\system32\drivers\kmixer.sys
Address: 0xB1EDF000 Size: 172416 File Visible: - Signed: -
Status: -

Name: ks.sys
Image Path: C:\WINDOWS\system32\drivers\ks.sys
Address: 0xF62D4000 Size: 143360 File Visible: - Signed: -
Status: -

Name: KSecDD.sys
Image Path: KSecDD.sys
Address: 0xF735D000 Size: 92928 File Visible: - Signed: -
Status: -

Name: mnmdd.SYS
Image Path: C:\WINDOWS\System32\Drivers\mnmdd.SYS
Address: 0xF7B6E000 Size: 4224 File Visible: - Signed: -
Status: -

Name: mouclass.sys
Image Path: C:\WINDOWS\System32\DRIVERS\mouclass.sys
Address: 0xF78D4000 Size: 23040 File Visible: - Signed: -
Status: -

Name: MountMgr.sys
Image Path: MountMgr.sys
Address: 0xF75EC000 Size: 42368 File Visible: - Signed: -
Status: -

Name: mrxdav.sys
Image Path: C:\WINDOWS\System32\DRIVERS\mrxdav.sys
Address: 0xB255E000 Size: 180608 File Visible: - Signed: -
Status: -

Name: mrxsmb.sys
Image Path: C:\WINDOWS\System32\DRIVERS\mrxsmb.sys
Address: 0xEDC95000 Size: 455296 File Visible: - Signed: -
Status: -

Name: Msfs.SYS
Image Path: C:\WINDOWS\System32\Drivers\Msfs.SYS
Address: 0xF1D56000 Size: 19072 File Visible: - Signed: -
Status: -

Name: msgpc.sys
Image Path: C:\WINDOWS\System32\DRIVERS\msgpc.sys
Address: 0xF76FC000 Size: 35072 File Visible: - Signed: -
Status: -

Name: mssmbios.sys
Image Path: C:\WINDOWS\System32\DRIVERS\mssmbios.sys
Address: 0xF7A94000 Size: 15488 File Visible: - Signed: -
Status: -

Name: Mup.sys
Image Path: Mup.sys
Address: 0xF7289000 Size: 105344 File Visible: - Signed: -
Status: -

Name: NAVENG.SYS
Image Path: C:\Documents and Settings\All Users\Data aplikací\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_17.0.0.136\Definitions\VirusDefs\20091231.041\NAVENG.SYS
Address: 0xB1FE2000 Size: 78208 File Visible: - Signed: -
Status: -

Name: NAVEX15.SYS
Image Path: C:\Documents and Settings\All Users\Data aplikací\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_17.0.0.136\Definitions\VirusDefs\20091231.041\NAVEX15.SYS
Address: 0xB1FF6000 Size: 1316864 File Visible: - Signed: -
Status: -

Name: NDIS.sys
Image Path: NDIS.sys
Address: 0xF72A3000 Size: 182656 File Visible: - Signed: -
Status: -

Name: ndistapi.sys
Image Path: C:\WINDOWS\System32\DRIVERS\ndistapi.sys
Address: 0xF7A7C000 Size: 10112 File Visible: - Signed: -
Status: -

Name: ndisuio.sys
Image Path: C:\WINDOWS\System32\DRIVERS\ndisuio.sys
Address: 0xF68FF000 Size: 14592 File Visible: - Signed: -
Status: -

Name: ndiswan.sys
Image Path: C:\WINDOWS\System32\DRIVERS\ndiswan.sys
Address: 0xF5F15000 Size: 91520 File Visible: - Signed: -
Status: -

Name: NDProxy.SYS
Image Path: C:\WINDOWS\System32\Drivers\NDProxy.SYS
Address: 0xF77AC000 Size: 40576 File Visible: - Signed: -
Status: -

Name: netbios.sys
Image Path: C:\WINDOWS\System32\DRIVERS\netbios.sys
Address: 0xF2E42000 Size: 34688 File Visible: - Signed: -
Status: -

Name: netbt.sys
Image Path: C:\WINDOWS\System32\DRIVERS\netbt.sys
Address: 0xEDE11000 Size: 162816 File Visible: - Signed: -
Status: -

Name: Npfs.SYS
Image Path: C:\WINDOWS\System32\Drivers\Npfs.SYS
Address: 0xF1D4E000 Size: 30848 File Visible: - Signed: -
Status: -

Name: Ntfs.sys
Image Path: Ntfs.sys
Address: 0xF72D0000 Size: 574976 File Visible: - Signed: -
Status: -

Name: ntkrnlpa.exe
Image Path: C:\WINDOWS\system32\ntkrnlpa.exe
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

Name: Null.SYS
Image Path: C:\WINDOWS\System32\Drivers\Null.SYS
Address: 0xF1CEF000 Size: 2944 File Visible: - Signed: -
Status: -

Name: nv4_disp.dll
Image Path: C:\WINDOWS\System32\nv4_disp.dll
Address: 0xBF9D6000 Size: 3911680 File Visible: - Signed: -
Status: -

Name: nv4_mini.sys
Image Path: C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
Address: 0xF5F54000 Size: 3198560 File Visible: - Signed: -
Status: -

Name: nvata.sys
Image Path: nvata.sys
Address: 0xF7428000 Size: 92800 File Visible: - Signed: -
Status: -

Name: NVENETFD.sys
Image Path: C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
Address: 0xF2E52000 Size: 33536 File Visible: - Signed: -
Status: -

Name: nvnetbus.sys
Image Path: C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
Address: 0xF7A74000 Size: 12928 File Visible: - Signed: -
Status: -

Name: NVNRM.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\NVNRM.SYS
Address: 0xF6294000 Size: 262144 File Visible: - Signed: -
Status: -

Name: NVSNPU.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\NVSNPU.SYS
Address: 0xF6261000 Size: 208896 File Visible: - Signed: -
Status: -

Name: P0630EVX.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\P0630EVX.SYS
Address: 0xEDB45000 Size: 1126400 File Visible: - Signed: -
Status: -

Name: P0630Vid.sys
Image Path: C:\WINDOWS\system32\DRIVERS\P0630Vid.sys
Address: 0xEDC58000 Size: 91744 File Visible: - Signed: -
Status: -

Name: parport.sys
Image Path: C:\WINDOWS\System32\DRIVERS\parport.sys
Address: 0xF5F2C000 Size: 80000 File Visible: - Signed: -
Status: -

Name: PartMgr.sys
Image Path: PartMgr.sys
Address: 0xF7864000 Size: 19712 File Visible: - Signed: -
Status: -

Name: ParVdm.SYS
Image Path: C:\WINDOWS\System32\Drivers\ParVdm.SYS
Address: 0xF059B000 Size: 6784 File Visible: - Signed: -
Status: -

Name: pci.sys
Image Path: pci.sys
Address: 0xF749C000 Size: 68736 File Visible: - Signed: -
Status: -

Name: pciide.sys
Image Path: pciide.sys
Address: 0xF7BA4000 Size: 3328 File Visible: - Signed: -
Status: -

Name: PCIIDEX.SYS
Image Path: C:\WINDOWS\System32\DRIVERS\PCIIDEX.SYS
Address: 0xF785C000 Size: 28672 File Visible: - Signed: -
Status: -

Name: PnpManager
Image Path: \Driver\PnpManager
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

Name: portcls.sys
Image Path: C:\WINDOWS\system32\drivers\portcls.sys
Address: 0xF6684000 Size: 147456 File Visible: - Signed: -
Status: -

Name: psched.sys
Image Path: C:\WINDOWS\System32\DRIVERS\psched.sys
Address: 0xF5F04000 Size: 69120 File Visible: - Signed: -
Status: -

Name: ptilink.sys
Image Path: C:\WINDOWS\System32\DRIVERS\ptilink.sys
Address: 0xF78F4000 Size: 17792 File Visible: - Signed: -
Status: -

Name: rasacd.sys
Image Path: C:\WINDOWS\System32\DRIVERS\rasacd.sys
Address: 0xF3179000 Size: 8832 File Visible: - Signed: -
Status: -

Name: rasl2tp.sys
Image Path: C:\WINDOWS\System32\DRIVERS\rasl2tp.sys
Address: 0xF6AC5000 Size: 51328 File Visible: - Signed: -
Status: -

Name: raspppoe.sys
Image Path: C:\WINDOWS\System32\DRIVERS\raspppoe.sys
Address: 0xF6AB5000 Size: 41472 File Visible: - Signed: -
Status: -

Name: raspptp.sys
Image Path: C:\WINDOWS\System32\DRIVERS\raspptp.sys
Address: 0xF6AA5000 Size: 48384 File Visible: - Signed: -
Status: -

Name: raspti.sys
Image Path: C:\WINDOWS\System32\DRIVERS\raspti.sys
Address: 0xF78E4000 Size: 16512 File Visible: - Signed: -
Status: -

Name: RAW
Image Path: \FileSystem\RAW
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

Name: rdbss.sys
Image Path: C:\WINDOWS\System32\DRIVERS\rdbss.sys
Address: 0xEDD05000 Size: 175744 File Visible: - Signed: -
Status: -

Name: RDPCDD.sys
Image Path: C:\WINDOWS\System32\DRIVERS\RDPCDD.sys
Address: 0xF7B70000 Size: 4224 File Visible: - Signed: -
Status: -

Name: rdpdr.sys
Image Path: C:\WINDOWS\System32\DRIVERS\rdpdr.sys
Address: 0xF5ED4000 Size: 196224 File Visible: - Signed: -
Status: -

Name: redbook.sys
Image Path: C:\WINDOWS\System32\DRIVERS\redbook.sys
Address: 0xF6B05000 Size: 58496 File Visible: - Signed: -
Status: -

Name: rootrepeal.sys
Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys
Address: 0xB1988000 Size: 49152 File Visible: No Signed: -
Status: -

Name: serenum.sys
Image Path: C:\WINDOWS\System32\DRIVERS\serenum.sys
Address: 0xF7A78000 Size: 15744 File Visible: - Signed: -
Status: -

Name: serial.sys
Image Path: C:\WINDOWS\System32\DRIVERS\serial.sys
Address: 0xF6AE5000 Size: 64256 File Visible: - Signed: -
Status: -

Name: splitter.sys
Image Path: C:\WINDOWS\system32\drivers\splitter.sys
Address: 0xF7AF6000 Size: 6272 File Visible: - Signed: -
Status: -

Name: sr.sys
Image Path: sr.sys
Address: 0xF73A0000 Size: 73344 File Visible: - Signed: -
Status: -

Name: SRTSP.SYS
Image Path: C:\WINDOWS\System32\Drivers\NAV\1101000.013\SRTSP.SYS
Address: 0xB2138000 Size: 356352 File Visible: - Signed: -
Status: -

Name: SRTSPX.SYS
Image Path: C:\WINDOWS\system32\drivers\NAV\1101000.013\SRTSPX.SYS
Address: 0xF2E22000 Size: 36992 File Visible: - Signed: -
Status: -

Name: srv.sys
Image Path: C:\WINDOWS\System32\DRIVERS\srv.sys
Address: 0xB245F000 Size: 333952 File Visible: - Signed: -
Status: -

Name: STREAM.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\STREAM.SYS
Address: 0xF2DF2000 Size: 53248 File Visible: - Signed: -
Status: -

Name: swenum.sys
Image Path: C:\WINDOWS\System32\DRIVERS\swenum.sys
Address: 0xF7B94000 Size: 4352 File Visible: - Signed: -
Status: -

Name: swmidi.sys
Image Path: C:\WINDOWS\system32\drivers\swmidi.sys
Address: 0xF3CBA000 Size: 56576 File Visible: - Signed: -
Status: -

Name: SYMDS.SYS
Image Path: SYMDS.SYS
Address: 0xF73B2000 Size: 352256 File Visible: No Signed: -
Status: -

Name: SYMEFA.SYS
Image Path: SYMEFA.SYS
Address: 0xF7374000 Size: 180224 File Visible: No Signed: -
Status: -

Name: SYMEVENT.SYS
Image Path: C:\WINDOWS\system32\Drivers\SYMEVENT.SYS
Address: 0xEDE8D000 Size: 151552 File Visible: - Signed: -
Status: -

Name: SYMTDI.SYS
Image Path: C:\WINDOWS\System32\Drivers\NAV\1101000.013\SYMTDI.SYS
Address: 0xEDEB2000 Size: 354816 File Visible: - Signed: -
Status: -

Name: sysaudio.sys
Image Path: C:\WINDOWS\system32\drivers\sysaudio.sys
Address: 0xB219F000 Size: 60800 File Visible: - Signed: -
Status: -

Name: tcpip.sys
Image Path: C:\WINDOWS\System32\DRIVERS\tcpip.sys
Address: 0xEDF09000 Size: 361600 File Visible: - Signed: -
Status: -

Name: TDI.SYS
Image Path: C:\WINDOWS\System32\DRIVERS\TDI.SYS
Address: 0xF78EC000 Size: 20480 File Visible: - Signed: -
Status: -

Name: termdd.sys
Image Path: C:\WINDOWS\System32\DRIVERS\termdd.sys
Address: 0xF770C000 Size: 40704 File Visible: - Signed: -
Status: -

Name: update.sys
Image Path: C:\WINDOWS\System32\DRIVERS\update.sys
Address: 0xF5E76000 Size: 384768 File Visible: - Signed: -
Status: -

Name: USBD.SYS
Image Path: C:\WINDOWS\System32\DRIVERS\USBD.SYS
Address: 0xF7AFC000 Size: 8192 File Visible: - Signed: -
Status: -

Name: usbehci.sys
Image Path: C:\WINDOWS\System32\DRIVERS\usbehci.sys
Address: 0xF789C000 Size: 30208 File Visible: - Signed: -
Status: -

Name: usbhub.sys
Image Path: C:\WINDOWS\System32\DRIVERS\usbhub.sys
Address: 0xF77BC000 Size: 59520 File Visible: - Signed: -
Status: -

Name: usbohci.sys
Image Path: C:\WINDOWS\System32\DRIVERS\usbohci.sys
Address: 0xF7894000 Size: 17152 File Visible: - Signed: -
Status: -

Name: USBPORT.SYS
Image Path: C:\WINDOWS\System32\DRIVERS\USBPORT.SYS
Address: 0xF68DB000 Size: 147456 File Visible: - Signed: -
Status: -

Name: usbprint.sys
Image Path: C:\WINDOWS\System32\DRIVERS\usbprint.sys
Address: 0xF1D3E000 Size: 25856 File Visible: - Signed: -
Status: -

Name: vga.sys
Image Path: C:\WINDOWS\System32\drivers\vga.sys
Address: 0xF2432000 Size: 20992 File Visible: - Signed: -
Status: -

Name: VIDEOPRT.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\VIDEOPRT.SYS
Address: 0xF5F40000 Size: 81920 File Visible: - Signed: -
Status: -

Name: VolSnap.sys
Image Path: VolSnap.sys
Address: 0xF75FC000 Size: 52480 File Visible: - Signed: -
Status: -

Name: wanarp.sys
Image Path: C:\WINDOWS\System32\DRIVERS\wanarp.sys
Address: 0xF2E02000 Size: 34560 File Visible: - Signed: -
Status: -

Name: watchdog.sys
Image Path: C:\WINDOWS\System32\watchdog.sys
Address: 0xB40FC000 Size: 20480 File Visible: - Signed: -
Status: -

Name: wdmaud.sys
Image Path: C:\WINDOWS\system32\drivers\wdmaud.sys
Address: 0xB1F2D000 Size: 83072 File Visible: - Signed: -
Status: -

Name: Win32k
Image Path: \Driver\Win32k
Address: 0xBF800000 Size: 1851392 File Visible: - Signed: -
Status: -

Name: win32k.sys
Image Path: C:\WINDOWS\System32\win32k.sys
Address: 0xBF800000 Size: 1851392 File Visible: - Signed: -
Status: -

Name: WMILIB.SYS
Image Path: C:\WINDOWS\System32\DRIVERS\WMILIB.SYS
Address: 0xF7ADE000 Size: 8192 File Visible: - Signed: -
Status: -

Name: WMIxWDM
Image Path: \Driver\WMIxWDM
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

fido-dido
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 15 bře 2007 18:44

Re: neco mi ovlada ADSL modem

#82 Příspěvek od fido-dido »

prave jsem telefonoval s kolegou co pouziva muj modem pres wifi a vcera mu to nefungovalo. na vnitrni sit se pripoji ale ven se nedostane na web.

zkusim vymenu sitovky a jeste me napadlo vymazat modem a znova nastavit.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: neco mi ovlada ADSL modem

#83 Příspěvek od motji »

To jsem Vám chtěla napsat, zkuste resetovat modem. I tu sítovku vyměnte. Já opravdu nikde nic nevidím, to by tam muselo být někde něco opravdu hodně zašitého :o .

Uklidíme po programech a pak napište jak to vypadá :) .

:arrow: Odinstalujte combofix přes
Start >> Spustit zkopírujte do okénka:

ComboFix /Uninstall

stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.



:arrow: Stáhněte T-Cleaner
http://sweb.cz/Marinus/T-Cleaner.exe

-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir


:arrow: Stahněte TFC a použijte
TFC (http://oldtimer.geekstogo.com/TFC.exe)


:arrow: Stáhněte Ccleaner,viz můj podpis
-nainstalujte a vyčištěte dočasné soubory, i registry
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

fido-dido
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 15 bře 2007 18:44

Re: neco mi ovlada ADSL modem

#84 Příspěvek od fido-dido »

jak neco vymeni nebo udelam budu urcite informovat.

mockrat dekuji

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: neco mi ovlada ADSL modem

#85 Příspěvek od motji »

Bohužel není zač :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

fido-dido
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 15 bře 2007 18:44

Re: neco mi ovlada ADSL modem

#86 Příspěvek od fido-dido »

tak zatim jsme v mem PC vymenili sitovou kartu a vse zustalo pri starem. stale se wifi blokuje.
zkousel jsem na muj sitovy kabel pridat switch aby dochazelo k presmerovani na modem a teke bez uspechu.

ted je na rade aktualizace modemu.

dnes donesl koleka notebook s wifi abycho to mohli rovnou sledovat a samozdrejme vse slapalo jak ma, tak jsem na nic zatim neprisli.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: neco mi ovlada ADSL modem

#87 Příspěvek od motji »

Zkuste vyseretovat ten modem.
Zkusím se ještě poradit s kolegy :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

fido-dido
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 15 bře 2007 18:44

Re: neco mi ovlada ADSL modem

#88 Příspěvek od fido-dido »

tento viken chceme nainstalovat uplne novy modem s wifi a uvidime co se zmeni. vypada to ze to dela modem.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: neco mi ovlada ADSL modem

#89 Příspěvek od motji »

Zkuste. Já jsem v pc nic špatného nenašla, a to jsme ho zkontrolovali pořádně :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

fido-dido
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 15 bře 2007 18:44

Re: neco mi ovlada ADSL modem

#90 Příspěvek od fido-dido »

modem je nainstalovany novy a vypada ze vsechny problemy spusoboval software ve starem modemu.

Odpovědět