Prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Odpovědět
Zpráva
Autor
vencaa
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 23 Ún 2006 14:35

Prosím o kontrolu logu

#1 Příspěvek od vencaa »

Dobrý den při zapnutí PC se mi na obrazovce objeví C:\windfile:///C:/Staženo/hijackthis.logows\system32\sshnas21.dll Uvedený modul nebyl nalezen
posílám můj Log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:38:48, on 22.6.2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\TNod User & Password Finder\TNODUP.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
C:\Program Files\Visagesoft\eXPert PDF 6\vspdfprsrv.exe
C:\Program Files\DU Meter\DUMeter.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\GPSoftware\Directory Opus\dopusrt.exe
C:\Program Files\365dni\365dniNET.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\totalcmd\TOTALCMD.EXE
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\Desktop\dds (1).pif
C:\Windows\system32\conhost.exe
C:\Windows\system32\cmd.exe
C:\Users\V\AppData\Local\Temp\D384.tmp\evP.exe
C:\Staženo\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://aktualne.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [snpstd] C:\Windows\vsnpstd.exe
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [TNOD UP] "C:\Program Files\TNod User & Password Finder\TNODUP.exe" /i
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [MSSE] "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [vspdfprsrv.exe] C:\Program Files\Visagesoft\eXPert PDF 6\vspdfprsrv.exe --background
O4 - HKCU\..\Run: [DU Meter] C:\Program Files\DU Meter\DUMeter.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [thebat_startup] C:\Program Files\The Bat!\thebat.exe /minimize
O4 - HKCU\..\Run: [Directory Opus Desktop Dblclk] "C:\Program Files\GPSoftware\Directory Opus\dopusrt.exe" /dblclk
O4 - HKCU\..\Run: [Canaveral] rundll32.exe C:\Windows\system32\sshnas21.dll,BackupReadW
O4 - HKCU\..\Run: [M5T8QL3YW3] C:\Users\V\AppData\Local\Temp\Bzx.exe
O4 - HKCU\..\Run: [System Server Cache] C:\Windows\System32\srvhost64.exe
O4 - HKCU\..\Run: [365dni] C:\Program Files\365dni\365dniNET.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\V\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Aktualizovat ESET licenci.lnk = C:\Program Files\ESET\MiNODLogin\MiNODLogin.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Připojit k existujícímu PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Stáhnout &Mass Downloaderem - C:\Program Files\Mass Downloader\Add_Url.htm
O8 - Extra context menu item: Stáhnout &vše Mass Downloaderem - C:\Program Files\Mass Downloader\Add_All.htm
O9 - Extra button: Mass Downloader - {0FD01980-CCCB-11D3-80D4-0000E80E2EDE} - C:\Program Files\Mass Downloader\massdown.exe
O9 - Extra 'Tools' menuitem: &Mass Downloader - {0FD01980-CCCB-11D3-80D4-0000E80E2EDE} - C:\Program Files\Mass Downloader\massdown.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O13 - Gopher Prefix:
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: DU Meter Service (DUMeterSvc) - Hagel Technologies Ltd - C:\Program Files\DU Meter\DUMeterSvc.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: NitroPDFDriverCreatorReadSpool (NitroDriverReadSpool) - Nitro PDF Software - C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe
O23 - Service: NLS Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\system32\NLSSRV32.EXE
O23 - Service: ScsiAccess - Unknown owner - C:\Program Files\Photodex\ProShowProducer\ScsiAccess.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

--
End of file - 12206 bytes
https://SecreLocal.com - Chat Local yyx Free - No Verify - Anonymous +/+/- Dating - Local Dating Sites

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15933
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Prosím o kontrolu logu

#2 Příspěvek od JaRon »

ahoj
stiahni a uloz na plochu ComboFix

potom spust pod uctom s administratorskym opravnenim


akcia trva cca. 5-10 minut, niekedy i dlhsie -, Pocas scanu nespustaj ziadne ine aplikacie

Nie je dovod na paniku ak stroj bude restartovany
upozornenie: ak pouzivas antispyware s rezidentnim stitem, ten pred scanom vypni.

po restarte aplikacie vytvori log, ulozeny na C:\Combofix.txt (jeho obsah vloz sem)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

vencaa
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 23 Ún 2006 14:35

Re: Prosím o kontrolu logu

#3 Příspěvek od vencaa »

ComboFix 10-06-21.01 - V 22.06.2010 9:02.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2047.1023 [GMT 2:00]
Spuštěný z: c:\users\V\Desktop\ComboFix.exe
* Rezidentní štít AV je zapnutý

.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\users\V\AppData\Roaming\EurekaLog
c:\windows\system32\FOLESVR.DLL
c:\windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
D:\resycled

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-05-22 do 2010-06-22 )))))))))))))))))))))))))))))))
.

2010-06-22 05:08 . 2010-06-22 05:12 -------- d-----w- c:\users\V\AppData\Roaming\FreeFixer
2010-06-22 05:08 . 2010-06-22 05:08 -------- d-----w- c:\users\V\AppData\Local\FreeFixer
2010-06-22 05:08 . 2010-06-22 05:08 -------- d-----w- c:\program files\FreeFixer
2010-06-22 05:05 . 2010-06-22 05:26 -------- d-----w- c:\program files\trend micro
2010-06-22 05:05 . 2010-06-22 05:05 -------- d-----w- C:\rsit
2010-06-18 06:03 . 2010-06-18 06:03 -------- d-----w- c:\users\V\AppData\Roaming\eXPert PDF Editor
2010-06-18 05:53 . 2010-06-18 05:53 111 ---ha-w- C:\sys13026.bin
2010-06-18 05:49 . 2010-06-18 05:53 -------- d-----w- c:\users\V\AppData\Roaming\eXPert PDF 6
2010-06-18 05:49 . 2010-06-18 05:49 -------- d-----w- c:\program files\Avanquest update
2010-06-18 05:48 . 2010-06-18 05:48 -------- d-----w- c:\programdata\BVRP Software
2010-06-18 05:47 . 2009-06-15 16:40 22016 ----a-w- c:\windows\system32\vsmon1.dll
2010-06-18 05:47 . 2010-06-18 06:03 -------- d-----w- c:\programdata\eXPert PDF 6
2010-06-18 05:47 . 2010-06-18 05:47 -------- d-----w- c:\programdata\Visage Software
2010-06-18 05:47 . 2010-06-18 05:47 -------- d-----w- c:\programdata\eXPert PDF Jobs
2010-06-18 05:47 . 2010-06-18 05:47 -------- d-----w- c:\program files\Visagesoft
2010-06-16 12:56 . 2010-06-16 12:56 -------- d-----w- c:\program files\NewBlue
2010-06-16 09:59 . 2010-05-21 10:11 1061888 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.exe
2010-06-16 09:59 . 2010-05-21 10:11 475648 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.scr
2010-06-16 09:59 . 2010-06-16 10:14 -------- d-----w- c:\program files\MyDefrag v4.3.1
2010-06-16 08:01 . 2010-06-16 08:02 -------- d-----w- c:\program files\Defraggler
2010-06-15 09:54 . 2010-06-15 10:05 -------- d-----w- c:\users\V\AppData\Local\Pinnacle
2010-06-15 09:46 . 2004-03-29 15:23 90112 ----a-w- c:\windows\unvise32.exe
2010-06-15 09:46 . 2010-06-15 09:46 -------- d-----w- c:\program files\LooksBuilderSE
2010-06-15 08:18 . 2010-06-15 08:18 29926 ----a-r- c:\users\V\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
2010-06-15 08:18 . 2010-06-15 08:18 -------- d-----w- c:\program files\Common Files\Pinnacle
2010-06-15 08:16 . 2010-06-15 08:16 -------- d-----w- c:\programdata\Pinnacle Studio Ultimate Collection
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\program files\Common Files\Pegasus Imaging
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\programdata\Studio 14
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\programdata\Pinnacle Studio Plus
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\program files\Common Files\Yahoo!
2010-06-15 08:02 . 2010-06-15 08:02 -------- d-----w- c:\users\V\AppData\Local\MicroVision Applications
2010-06-15 08:02 . 2010-06-15 08:02 -------- d-----w- c:\program files\Common Files\SureThing Shared
2010-06-15 08:02 . 2010-06-15 08:02 -------- d-----w- c:\program files\SureThing Express Labeler
2010-06-15 08:00 . 2010-06-15 09:45 -------- d-----w- c:\program files\Pinnacle
2010-06-15 07:57 . 2010-06-15 08:15 -------- d-----w- c:\programdata\Pinnacle
2010-06-15 07:25 . 1999-03-15 14:39 212992 ----a-w- c:\windows\ALCHUNIN.EXE
2010-06-15 07:23 . 2010-06-15 07:25 -------- d-----w- c:\program files\Alchemy Mindworks
2010-06-15 07:21 . 2010-06-15 07:29 -------- d-----w- c:\users\V\AppData\Roaming\Alchemy Mindworks
2010-06-13 11:55 . 2010-06-13 11:56 -------- d-----w- c:\program files\Microsoft Security Essentials
2010-06-10 04:36 . 2010-06-10 04:37 -------- d-----w- c:\users\V\AppData\Roaming\365dni
2010-06-10 04:36 . 2010-06-10 04:36 -------- d-----w- c:\program files\365dni
2010-06-09 05:42 . 2010-05-01 14:49 2326528 ----a-w- c:\windows\system32\win32k.sys
2010-06-09 05:41 . 2010-05-21 05:18 977920 ----a-w- c:\windows\system32\wininet.dll
2010-06-09 05:41 . 2010-03-05 07:42 67584 ----a-w- c:\windows\system32\asycfilt.dll
2010-06-09 05:41 . 2010-05-27 03:49 293888 ----a-w- c:\windows\system32\atmfd.dll
2010-06-09 05:41 . 2010-05-27 07:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-06-03 11:52 . 2010-06-03 11:52 -------- d-----w- c:\program files\Photo Effects Studio
2010-05-29 05:25 . 2010-05-29 05:25 -------- d-----w- c:\program files\Radek Kalousek
2010-05-28 05:42 . 2009-11-11 16:21 159800 ----a-w- c:\users\V\AppData\Roaming\Mozilla\Firefox\Profiles\fjri1nhm.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF.dll
2010-05-28 05:42 . 2009-11-11 16:13 163898 ----a-w- c:\users\V\AppData\Roaming\Mozilla\Firefox\Profiles\fjri1nhm.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
2010-05-28 05:35 . 2010-05-28 05:37 -------- d-----w- c:\program files\ACD Systems
2010-05-26 04:15 . 2010-04-23 07:13 2048 ----a-w- c:\windows\system32\tzres.dll
2010-05-24 06:02 . 2010-05-24 06:02 -------- d-----w- c:\program files\ViaVoiceTTS
2010-05-24 06:01 . 2010-05-24 06:01 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-24 06:01 . 2010-05-24 06:01 -------- d-----w- c:\windows\lhsp
2010-05-24 06:01 . 2010-05-24 06:02 -------- d-----w- c:\windows\msagent

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-22 07:06 . 2009-07-14 08:44 625676 ----a-w- c:\windows\system32\perfh005.dat
2010-06-22 07:06 . 2009-07-14 08:44 119794 ----a-w- c:\windows\system32\perfc005.dat
2010-06-22 06:42 . 2010-03-13 05:58 -------- d-----w- c:\users\V\AppData\Roaming\Skype
2010-06-22 06:02 . 2010-01-18 07:27 -------- d-----w- c:\users\V\AppData\Roaming\skypePM
2010-06-22 05:01 . 2010-04-06 06:03 -------- d-----w- c:\programdata\The Bat!
2010-06-18 05:49 . 2010-01-20 17:38 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-06-15 09:48 . 2010-04-07 06:00 142488 ----a-w- c:\users\V\AppData\Local\GDIPFONTCACHEV1.DAT
2010-06-13 04:56 . 2010-01-21 09:37 -------- d-----w- c:\program files\Chaos Manager 2
2010-06-09 05:48 . 2010-01-17 16:30 -------- d-----w- c:\programdata\Microsoft Help
2010-06-04 15:43 . 2010-02-14 07:24 -------- d-----w- c:\program files\Microsoft Silverlight
2010-05-28 05:36 . 2010-02-07 09:08 -------- d-----w- c:\users\V\AppData\Roaming\ACD Systems
2010-05-28 05:35 . 2010-01-22 12:56 -------- d-----w- c:\program files\Common Files\ACD Systems
2010-05-28 05:35 . 2010-01-22 12:56 -------- d-----w- c:\programdata\ACD Systems
2010-05-27 05:44 . 2010-01-17 17:06 -------- d-----w- c:\users\V\AppData\Roaming\LangSoft
2010-05-27 05:44 . 2010-02-24 07:40 798771 ----a-w- c:\programdata\LangSoft\WebIE.dll
2010-05-27 05:44 . 2010-02-24 07:38 -------- d-----w- c:\programdata\LangSoft
2010-05-27 05:44 . 2010-02-24 07:40 356352 ----a-w- c:\programdata\LangSoft\TrnOutl.dll
2010-05-27 05:44 . 2010-02-24 07:40 299008 ----a-w- c:\programdata\LangSoft\TrnWord.dll
2010-05-21 12:14 . 2010-01-17 15:13 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-19 08:34 . 2010-02-02 16:36 -------- d-----w- c:\program files\SMS Zdarma 2
2010-05-19 07:49 . 2010-05-19 06:06 -------- d-----w- c:\program files\pdfsam
2010-05-19 07:00 . 2010-05-19 06:58 3849337 ----a-w- c:\programdata\Monotea\All Users\SMSS3\Update\225\update.exe
2010-05-19 06:58 . 2010-01-21 09:15 -------- d-----w- c:\programdata\Monotea
2010-05-19 06:00 . 2010-04-16 08:49 -------- d-----w- c:\users\V\AppData\Roaming\Nitro PDF
2010-05-16 08:00 . 2010-05-16 06:12 -------- d-----w- c:\program files\Windows Live
2010-05-16 07:59 . 2010-05-16 07:59 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2010-05-14 14:08 . 2010-04-07 14:12 -------- d-----w- c:\program files\Opera
2010-05-09 08:29 . 2010-05-09 05:35 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2010-05-09 05:26 . 2010-01-22 13:04 -------- d-----w- c:\program files\Common Files\Adobe
2010-05-09 05:24 . 2010-05-09 05:24 -------- d-----w- c:\program files\Adobe Media Player
2010-05-09 05:22 . 2010-05-09 05:22 -------- d-----w- c:\program files\Common Files\Adobe AIR
2010-05-09 05:22 . 2010-05-09 07:18 38784 ----a-w- c:\users\V\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2010-05-09 05:22 . 2010-05-09 05:22 38784 ----a-w- c:\users\Default\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2010-05-06 07:50 . 2010-01-17 17:11 -------- d-----w- c:\program files\Java
2010-05-06 05:55 . 2010-05-06 05:55 -------- d-----w- c:\program files\Mass Downloader
2010-05-06 05:20 . 2010-05-05 05:52 -------- d-----w- c:\programdata\AutoPowerOn
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimwmp.dll
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimswf.dll
2010-05-05 04:22 . 2010-05-05 04:22 49152 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\Components\nprpffbrowserrecordext.dll
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimrp.dll
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimqt.dll
2010-05-05 04:22 . 2010-05-05 04:22 40960 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll
2010-05-05 04:22 . 2010-05-05 04:22 341600 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
2010-05-05 04:22 . 2010-05-05 04:22 308808 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Common\rpmainbrowserrecordplugin.dll
2010-05-05 04:22 . 2010-05-05 04:22 14848 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
2010-05-05 04:21 . 2010-05-01 05:14 -------- d-----w- c:\program files\Common Files\Real
2010-05-05 04:21 . 2010-05-01 05:14 -------- d-----w- c:\program files\Real
2010-05-05 04:21 . 2010-05-05 04:21 -------- d-----w- c:\program files\Common Files\xing shared
2010-05-05 04:21 . 2003-10-17 12:44 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-05-05 04:21 . 2003-10-17 12:44 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-05-04 06:07 . 2010-05-04 06:06 -------- d-----w- c:\users\V\AppData\Roaming\PhotoFiltre Studio X
2010-05-04 06:03 . 2010-05-04 06:03 -------- d-----w- c:\program files\PhotoFiltre Studio X
2010-05-04 05:28 . 2010-05-04 05:28 -------- d-----w- c:\program files\NWSoftware
2010-05-02 06:22 . 2010-03-27 05:28 -------- d-----w- c:\program files\FastStone Capture
2010-05-02 05:39 . 2010-05-02 05:39 -------- d-----w- c:\program files\HyperSnap 6
2010-05-01 13:36 . 2010-05-01 13:36 6868368 ----a-w- c:\users\V\AppData\Roaming\ESTsoft\ALUpdate\ALZIP\newfile\TEMP\ALZip752.exe
2010-05-01 10:36 . 2010-05-01 10:36 -------- d-----w- c:\program files\VS Revo Group
2010-05-01 05:19 . 2010-05-01 05:19 439816 ----a-w- c:\users\V\AppData\Roaming\Real\Update\setup3.10\setup.exe
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\DCoder Image Source
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\SHOUTcast Source
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\MONOGRAM AMR SplitterDecoder
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\CD Audio Reader Filter
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\OpenSource DTSAC3DD+ Source Filter
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\RealMedia
2010-05-01 04:33 . 2010-05-01 04:33 -------- d-----w- c:\program files\DScaler5
2010-05-01 04:32 . 2010-05-01 04:32 -------- d-----w- c:\program files\AC3Filter
2010-05-01 04:32 . 2010-05-01 04:32 -------- d-----w- c:\program files\OpenSource Flash Video Splitter
2010-05-01 04:32 . 2010-05-01 04:32 -------- d-----w- c:\program files\DirectVobSub
2010-05-01 04:31 . 2010-05-01 04:31 -------- d-----w- c:\program files\Haali
2010-05-01 04:31 . 2010-05-01 04:31 -------- d-----w- c:\program files\Bass Audio Decoder
2010-05-01 04:24 . 2010-05-01 04:24 -------- d-----w- c:\program files\Fantasysoft-Studio
2010-04-28 16:16 . 2010-04-28 16:07 -------- d-----w- c:\program files\Lizard Safeguard PDF Viewer
2010-04-28 16:07 . 2010-04-28 16:07 -------- d-----w- c:\programdata\LockLizard
2010-04-27 13:31 . 2010-04-27 13:30 3832978 ----a-w- c:\programdata\Monotea\All Users\SMSS3\Update\223\update.exe
2010-04-27 09:51 . 2010-04-27 09:50 952 --sha-w- c:\windows\system32\KGyGaAvL.sys
2010-04-27 07:05 . 2010-04-27 07:05 -------- d-----w- c:\program files\Corel
2010-04-26 18:18 . 2010-03-14 13:48 -------- d-----w- c:\program files\Nero
2010-04-26 18:17 . 2010-03-14 13:47 -------- d-----w- c:\program files\Common Files\Nero
2010-04-26 15:33 . 2010-04-26 15:33 -------- d-----w- c:\users\V\AppData\Roaming\LockLizard
2010-04-25 05:11 . 2010-04-25 05:11 -------- d-----w- c:\programdata\GRAW2
2010-04-25 05:08 . 2010-04-25 05:08 -------- d-----w- c:\program files\AGEIA Technologies
2010-04-25 05:07 . 2010-04-25 05:07 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-04-25 05:07 . 2010-04-25 05:07 -------- d-----w- c:\programdata\Media Center Programs
2010-04-25 04:58 . 2010-04-25 04:58 -------- d-----w- c:\program files\UBISOFT
2010-04-25 04:57 . 2010-04-25 04:57 -------- d-----w- c:\users\V\AppData\Roaming\InstallShield
2010-04-14 05:35 . 2010-04-11 11:28 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-04-12 15:29 . 2010-05-06 07:50 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-04-05 06:25 . 2010-04-05 06:25 632064 ----a-w- c:\windows\system32\msvcr80.dll
2010-04-05 06:25 . 2010-04-05 06:25 554240 ----a-w- c:\windows\system32\msvcp80.dll
2010-04-05 06:25 . 2010-04-05 06:25 34048 ----a-w- c:\windows\system32\eEmpty.exe
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"="c:\program files\DU Meter\DUMeter.exe" [2007-11-13 2585360]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-02-22 26101032]
"thebat_startup"="c:\program files\The Bat!\thebat.exe" [2009-12-25 13753264]
"Directory Opus Desktop Dblclk"="c:\program files\GPSoftware\Directory Opus\dopusrt.exe" [2010-01-08 271840]
"365dni"="c:\program files\365dni\365dniNET.exe" [2010-05-13 858624]
"Google Update"="c:\users\V\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-01-19 135664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-09-11 2054360]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"Adobe Acrobat Speed Launcher"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" [2009-02-27 38768]
"Acrobat Assistant 8.0"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" [2009-02-27 640376]
"snpstd"="c:\windows\vsnpstd.exe" [2005-10-11 339968]
"Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 648072]
"TNOD UP"="c:\program files\TNod User & Password Finder\TNODUP.exe" [2010-04-01 1811968]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2010-05-05 202256]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" [2010-02-22 406992]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2010-02-21 1093208]
"USBToolTip"="c:\progra~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe" [2007-02-20 199752]
"vspdfprsrv.exe"="c:\program files\Visagesoft\eXPert PDF 6\vspdfprsrv.exe" [2010-01-06 1010176]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Aktualizovat ESET licenci.lnk - c:\program files\ESET\MiNODLogin\MiNODLogin.exe [2009-12-10 125952]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"EnableShellExecuteHooks"= 1 (0x1)

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{3CF9ECE0-1A9F-11D2-8C73-00C06C2005DE}"= "c:\program files\GPSoftware\Directory Opus\dopuslib.dll" [2010-01-08 836056]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"

R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-04-14 691696]
R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [2009-12-30 27192]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-02-17 1343400]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-09-11 108792]
S2 ABBYY.Licensing.FineReader.Professional.9.0;ABBYY FineReader 9.0 PE Licensing Service;c:\program files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe [2007-12-06 660768]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-08-18 176128]
S2 DUMeterSvc;DU Meter Service;c:\program files\DU Meter\DUMeterSvc.exe [2007-10-15 1382672]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2009-09-11 735960]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2009-09-11 38240]
S2 NitroDriverReadSpool;NitroPDFDriverCreatorReadSpool;c:\program files\Nitro PDF\Professional\NitroPDFDriverService.exe [2010-02-02 188736]
S2 nlsX86cc;NLS Service;c:\windows\system32\NLSSRV32.EXE [2010-02-02 65856]
S3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet - adaptér;c:\windows\system32\DRIVERS\l160x86.sys [2009-07-13 47104]
S3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [2009-12-02 42368]


[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
.
Obsah adresáře 'Naplánované úlohy'

2010-06-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1609947231-1533711289-1750632049-1001Core.job
- c:\users\V\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-19 17:17]

2010-06-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1609947231-1533711289-1750632049-1001UA.job
- c:\users\V\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-19 17:17]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://aktualne.centrum.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Převést cíl vazby do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Převést do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: Připojit cíl vazby k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Připojit k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: Stáhnout &Mass Downloaderem - c:\program files\Mass Downloader\Add_Url.htm
IE: Stáhnout &vše Mass Downloaderem - c:\program files\Mass Downloader\Add_All.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - c:\users\V\AppData\Roaming\Mozilla\Firefox\Profiles\fjri1nhm.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\Opera\program\plugins\npmassdn.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprjplug.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll
FF - plugin: c:\program files\Photodex Presenter\npPxPlay.dll
FF - plugin: c:\programdata\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
FF - plugin: c:\users\V\AppData\Local\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\windows\system32\Wat\npWatWeb.dll

---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

ShellIconOverlayIdentifiers-{8D2223A2-B3C6-4e32-B096-CDD11F628C60} - (no file)
HKCU-Run-Nektra OEAPI - (no file)
HKCU-Run-OEXPRESS - (no file)
HKCU-Run-Canaveral - c:\windows\system32\sshnas21.dll
HKCU-Run-AdobeBridge - (no file)
HKCU-Run-System Server Cache - c:\windows\System32\srvhost64.exe
AddRemove-PE Explorer_is1 - h:\pe explorer\unins000.exe



[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DUMeterSvc]
"ImagePath"="c:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.032"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.abr"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.aif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.aif"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ani"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.apd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.apd"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.arw"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.au\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.au"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.bay"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.bmp"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.bw"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.cr2"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.crw"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.cs1"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.cur"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dcr"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dcx"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dib"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.djv"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.djvu"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dng"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.emf"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.eps"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.erf"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.fff"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.fpx"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.gif"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.hdr"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.icl"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.icn"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.iff"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ilbm"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.int"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.inta"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.iw4"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.j2c"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.j2k"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jbr"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jfif"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jif"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jp2"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpc"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpe"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpeg"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpg"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpk"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpx"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.KDC\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.kdc"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.lbm"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.mef"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.mos"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.mrw"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.nef"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.nrw"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.orf"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pbm"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pbr"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pcd"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pct"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pcx"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pef"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pgm"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pic"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pict"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pix"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.png"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ppm"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.psd"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.psp"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pspbrush"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pspimage"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.raf"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ras"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.raw"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rgb"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rgba"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rle"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rsb"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rw2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rw2"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rwl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rwl"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.sgi"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.snd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.snd"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.sr2"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.srf"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.tga"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.thm"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.tif"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.tiff"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ttc"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ttf"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v10o\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.v10o"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v10p\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.v10p"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v10pf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.v10pf"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30po\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.v30po"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30pp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.v30pp"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30ppf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.v30ppf"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.wbm"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.wbmp"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.wmf"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xbm"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xif"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xmp"

[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xpm"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-06-22 09:11:36
ComboFix-quarantined-files.txt 2010-06-22 07:11

Před spuštěním: Volných bajtů: 180 609 118 208
Po spuštění: Volných bajtů: 181 363 712 000

- - End Of File - - 6014C44F5B31A67207133A3F44C5EC62
https://SecreLocal.com - Chat Local yyx Free - No Verify - Anonymous +/+/- Dating - Local Dating Sites

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15933
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Prosím o kontrolu logu

#4 Příspěvek od JaRon »

prescanuj PC s MBAM + napis ci su este nejake problemy
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

vencaa
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 23 Ún 2006 14:35

Re: Prosím o kontrolu logu

#5 Příspěvek od vencaa »

Je to dobrý již se to neobjevuje byl tam 1 trojan díky Venca
https://SecreLocal.com - Chat Local yyx Free - No Verify - Anonymous +/+/- Dating - Local Dating Sites

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15933
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Prosím o kontrolu logu

#6 Příspěvek od JaRon »

za malo :)
ak existuje niektory z uvedenych suborov, ZMAZ:
C:\Windows\system32\sshnas21.dll
C:\Users\V\AppData\Local\Temp\Bzx.exe
C:\Windows\System32\srvhost64.exe
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět