Dobrý den při zapnutí PC se mi na obrazovce objeví C:\windfile:///C:/Staženo/hijackthis.logows\system32\sshnas21.dll Uvedený modul nebyl nalezen
posílám můj Log
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:38:48, on 22.6.2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\TNod User & Password Finder\TNODUP.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
C:\Program Files\Visagesoft\eXPert PDF 6\vspdfprsrv.exe
C:\Program Files\DU Meter\DUMeter.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\GPSoftware\Directory Opus\dopusrt.exe
C:\Program Files\365dni\365dniNET.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\totalcmd\TOTALCMD.EXE
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\V\Desktop\dds (1).pif
C:\Windows\system32\conhost.exe
C:\Windows\system32\cmd.exe
C:\Users\V\AppData\Local\Temp\D384.tmp\evP.exe
C:\Staženo\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://aktualne.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [snpstd] C:\Windows\vsnpstd.exe
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [TNOD UP] "C:\Program Files\TNod User & Password Finder\TNODUP.exe" /i
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [MSSE] "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [vspdfprsrv.exe] C:\Program Files\Visagesoft\eXPert PDF 6\vspdfprsrv.exe --background
O4 - HKCU\..\Run: [DU Meter] C:\Program Files\DU Meter\DUMeter.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [thebat_startup] C:\Program Files\The Bat!\thebat.exe /minimize
O4 - HKCU\..\Run: [Directory Opus Desktop Dblclk] "C:\Program Files\GPSoftware\Directory Opus\dopusrt.exe" /dblclk
O4 - HKCU\..\Run: [Canaveral] rundll32.exe C:\Windows\system32\sshnas21.dll,BackupReadW
O4 - HKCU\..\Run: [M5T8QL3YW3] C:\Users\V\AppData\Local\Temp\Bzx.exe
O4 - HKCU\..\Run: [System Server Cache] C:\Windows\System32\srvhost64.exe
O4 - HKCU\..\Run: [365dni] C:\Program Files\365dni\365dniNET.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\V\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Aktualizovat ESET licenci.lnk = C:\Program Files\ESET\MiNODLogin\MiNODLogin.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Připojit k existujícímu PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Stáhnout &Mass Downloaderem - C:\Program Files\Mass Downloader\Add_Url.htm
O8 - Extra context menu item: Stáhnout &vše Mass Downloaderem - C:\Program Files\Mass Downloader\Add_All.htm
O9 - Extra button: Mass Downloader - {0FD01980-CCCB-11D3-80D4-0000E80E2EDE} - C:\Program Files\Mass Downloader\massdown.exe
O9 - Extra 'Tools' menuitem: &Mass Downloader - {0FD01980-CCCB-11D3-80D4-0000E80E2EDE} - C:\Program Files\Mass Downloader\massdown.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O13 - Gopher Prefix:
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: DU Meter Service (DUMeterSvc) - Hagel Technologies Ltd - C:\Program Files\DU Meter\DUMeterSvc.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: NitroPDFDriverCreatorReadSpool (NitroDriverReadSpool) - Nitro PDF Software - C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe
O23 - Service: NLS Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\system32\NLSSRV32.EXE
O23 - Service: ScsiAccess - Unknown owner - C:\Program Files\Photodex\ProShowProducer\ScsiAccess.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
--
End of file - 12206 bytes

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím o kontrolu logu
ahoj
stiahni a uloz na plochu ComboFix
potom spust pod uctom s administratorskym opravnenim
akcia trva cca. 5-10 minut, niekedy i dlhsie -, Pocas scanu nespustaj ziadne ine aplikacie
Nie je dovod na paniku ak stroj bude restartovany
upozornenie: ak pouzivas antispyware s rezidentnim stitem, ten pred scanom vypni.
po restarte aplikacie vytvori log, ulozeny na C:\Combofix.txt (jeho obsah vloz sem)
stiahni a uloz na plochu ComboFix
potom spust pod uctom s administratorskym opravnenim
akcia trva cca. 5-10 minut, niekedy i dlhsie -, Pocas scanu nespustaj ziadne ine aplikacie
Nie je dovod na paniku ak stroj bude restartovany
upozornenie: ak pouzivas antispyware s rezidentnim stitem, ten pred scanom vypni.
po restarte aplikacie vytvori log, ulozeny na C:\Combofix.txt (jeho obsah vloz sem)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím o kontrolu logu
ComboFix 10-06-21.01 - V 22.06.2010 9:02.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2047.1023 [GMT 2:00]
Spuštěný z: c:\users\V\Desktop\ComboFix.exe
* Rezidentní štít AV je zapnutý
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\users\V\AppData\Roaming\EurekaLog
c:\windows\system32\FOLESVR.DLL
c:\windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
D:\resycled
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-05-22 do 2010-06-22 )))))))))))))))))))))))))))))))
.
2010-06-22 05:08 . 2010-06-22 05:12 -------- d-----w- c:\users\V\AppData\Roaming\FreeFixer
2010-06-22 05:08 . 2010-06-22 05:08 -------- d-----w- c:\users\V\AppData\Local\FreeFixer
2010-06-22 05:08 . 2010-06-22 05:08 -------- d-----w- c:\program files\FreeFixer
2010-06-22 05:05 . 2010-06-22 05:26 -------- d-----w- c:\program files\trend micro
2010-06-22 05:05 . 2010-06-22 05:05 -------- d-----w- C:\rsit
2010-06-18 06:03 . 2010-06-18 06:03 -------- d-----w- c:\users\V\AppData\Roaming\eXPert PDF Editor
2010-06-18 05:53 . 2010-06-18 05:53 111 ---ha-w- C:\sys13026.bin
2010-06-18 05:49 . 2010-06-18 05:53 -------- d-----w- c:\users\V\AppData\Roaming\eXPert PDF 6
2010-06-18 05:49 . 2010-06-18 05:49 -------- d-----w- c:\program files\Avanquest update
2010-06-18 05:48 . 2010-06-18 05:48 -------- d-----w- c:\programdata\BVRP Software
2010-06-18 05:47 . 2009-06-15 16:40 22016 ----a-w- c:\windows\system32\vsmon1.dll
2010-06-18 05:47 . 2010-06-18 06:03 -------- d-----w- c:\programdata\eXPert PDF 6
2010-06-18 05:47 . 2010-06-18 05:47 -------- d-----w- c:\programdata\Visage Software
2010-06-18 05:47 . 2010-06-18 05:47 -------- d-----w- c:\programdata\eXPert PDF Jobs
2010-06-18 05:47 . 2010-06-18 05:47 -------- d-----w- c:\program files\Visagesoft
2010-06-16 12:56 . 2010-06-16 12:56 -------- d-----w- c:\program files\NewBlue
2010-06-16 09:59 . 2010-05-21 10:11 1061888 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.exe
2010-06-16 09:59 . 2010-05-21 10:11 475648 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.scr
2010-06-16 09:59 . 2010-06-16 10:14 -------- d-----w- c:\program files\MyDefrag v4.3.1
2010-06-16 08:01 . 2010-06-16 08:02 -------- d-----w- c:\program files\Defraggler
2010-06-15 09:54 . 2010-06-15 10:05 -------- d-----w- c:\users\V\AppData\Local\Pinnacle
2010-06-15 09:46 . 2004-03-29 15:23 90112 ----a-w- c:\windows\unvise32.exe
2010-06-15 09:46 . 2010-06-15 09:46 -------- d-----w- c:\program files\LooksBuilderSE
2010-06-15 08:18 . 2010-06-15 08:18 29926 ----a-r- c:\users\V\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
2010-06-15 08:18 . 2010-06-15 08:18 -------- d-----w- c:\program files\Common Files\Pinnacle
2010-06-15 08:16 . 2010-06-15 08:16 -------- d-----w- c:\programdata\Pinnacle Studio Ultimate Collection
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\program files\Common Files\Pegasus Imaging
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\programdata\Studio 14
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\programdata\Pinnacle Studio Plus
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\program files\Common Files\Yahoo!
2010-06-15 08:02 . 2010-06-15 08:02 -------- d-----w- c:\users\V\AppData\Local\MicroVision Applications
2010-06-15 08:02 . 2010-06-15 08:02 -------- d-----w- c:\program files\Common Files\SureThing Shared
2010-06-15 08:02 . 2010-06-15 08:02 -------- d-----w- c:\program files\SureThing Express Labeler
2010-06-15 08:00 . 2010-06-15 09:45 -------- d-----w- c:\program files\Pinnacle
2010-06-15 07:57 . 2010-06-15 08:15 -------- d-----w- c:\programdata\Pinnacle
2010-06-15 07:25 . 1999-03-15 14:39 212992 ----a-w- c:\windows\ALCHUNIN.EXE
2010-06-15 07:23 . 2010-06-15 07:25 -------- d-----w- c:\program files\Alchemy Mindworks
2010-06-15 07:21 . 2010-06-15 07:29 -------- d-----w- c:\users\V\AppData\Roaming\Alchemy Mindworks
2010-06-13 11:55 . 2010-06-13 11:56 -------- d-----w- c:\program files\Microsoft Security Essentials
2010-06-10 04:36 . 2010-06-10 04:37 -------- d-----w- c:\users\V\AppData\Roaming\365dni
2010-06-10 04:36 . 2010-06-10 04:36 -------- d-----w- c:\program files\365dni
2010-06-09 05:42 . 2010-05-01 14:49 2326528 ----a-w- c:\windows\system32\win32k.sys
2010-06-09 05:41 . 2010-05-21 05:18 977920 ----a-w- c:\windows\system32\wininet.dll
2010-06-09 05:41 . 2010-03-05 07:42 67584 ----a-w- c:\windows\system32\asycfilt.dll
2010-06-09 05:41 . 2010-05-27 03:49 293888 ----a-w- c:\windows\system32\atmfd.dll
2010-06-09 05:41 . 2010-05-27 07:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-06-03 11:52 . 2010-06-03 11:52 -------- d-----w- c:\program files\Photo Effects Studio
2010-05-29 05:25 . 2010-05-29 05:25 -------- d-----w- c:\program files\Radek Kalousek
2010-05-28 05:42 . 2009-11-11 16:21 159800 ----a-w- c:\users\V\AppData\Roaming\Mozilla\Firefox\Profiles\fjri1nhm.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF.dll
2010-05-28 05:42 . 2009-11-11 16:13 163898 ----a-w- c:\users\V\AppData\Roaming\Mozilla\Firefox\Profiles\fjri1nhm.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
2010-05-28 05:35 . 2010-05-28 05:37 -------- d-----w- c:\program files\ACD Systems
2010-05-26 04:15 . 2010-04-23 07:13 2048 ----a-w- c:\windows\system32\tzres.dll
2010-05-24 06:02 . 2010-05-24 06:02 -------- d-----w- c:\program files\ViaVoiceTTS
2010-05-24 06:01 . 2010-05-24 06:01 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-24 06:01 . 2010-05-24 06:01 -------- d-----w- c:\windows\lhsp
2010-05-24 06:01 . 2010-05-24 06:02 -------- d-----w- c:\windows\msagent
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-22 07:06 . 2009-07-14 08:44 625676 ----a-w- c:\windows\system32\perfh005.dat
2010-06-22 07:06 . 2009-07-14 08:44 119794 ----a-w- c:\windows\system32\perfc005.dat
2010-06-22 06:42 . 2010-03-13 05:58 -------- d-----w- c:\users\V\AppData\Roaming\Skype
2010-06-22 06:02 . 2010-01-18 07:27 -------- d-----w- c:\users\V\AppData\Roaming\skypePM
2010-06-22 05:01 . 2010-04-06 06:03 -------- d-----w- c:\programdata\The Bat!
2010-06-18 05:49 . 2010-01-20 17:38 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-06-15 09:48 . 2010-04-07 06:00 142488 ----a-w- c:\users\V\AppData\Local\GDIPFONTCACHEV1.DAT
2010-06-13 04:56 . 2010-01-21 09:37 -------- d-----w- c:\program files\Chaos Manager 2
2010-06-09 05:48 . 2010-01-17 16:30 -------- d-----w- c:\programdata\Microsoft Help
2010-06-04 15:43 . 2010-02-14 07:24 -------- d-----w- c:\program files\Microsoft Silverlight
2010-05-28 05:36 . 2010-02-07 09:08 -------- d-----w- c:\users\V\AppData\Roaming\ACD Systems
2010-05-28 05:35 . 2010-01-22 12:56 -------- d-----w- c:\program files\Common Files\ACD Systems
2010-05-28 05:35 . 2010-01-22 12:56 -------- d-----w- c:\programdata\ACD Systems
2010-05-27 05:44 . 2010-01-17 17:06 -------- d-----w- c:\users\V\AppData\Roaming\LangSoft
2010-05-27 05:44 . 2010-02-24 07:40 798771 ----a-w- c:\programdata\LangSoft\WebIE.dll
2010-05-27 05:44 . 2010-02-24 07:38 -------- d-----w- c:\programdata\LangSoft
2010-05-27 05:44 . 2010-02-24 07:40 356352 ----a-w- c:\programdata\LangSoft\TrnOutl.dll
2010-05-27 05:44 . 2010-02-24 07:40 299008 ----a-w- c:\programdata\LangSoft\TrnWord.dll
2010-05-21 12:14 . 2010-01-17 15:13 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-19 08:34 . 2010-02-02 16:36 -------- d-----w- c:\program files\SMS Zdarma 2
2010-05-19 07:49 . 2010-05-19 06:06 -------- d-----w- c:\program files\pdfsam
2010-05-19 07:00 . 2010-05-19 06:58 3849337 ----a-w- c:\programdata\Monotea\All Users\SMSS3\Update\225\update.exe
2010-05-19 06:58 . 2010-01-21 09:15 -------- d-----w- c:\programdata\Monotea
2010-05-19 06:00 . 2010-04-16 08:49 -------- d-----w- c:\users\V\AppData\Roaming\Nitro PDF
2010-05-16 08:00 . 2010-05-16 06:12 -------- d-----w- c:\program files\Windows Live
2010-05-16 07:59 . 2010-05-16 07:59 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2010-05-14 14:08 . 2010-04-07 14:12 -------- d-----w- c:\program files\Opera
2010-05-09 08:29 . 2010-05-09 05:35 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2010-05-09 05:26 . 2010-01-22 13:04 -------- d-----w- c:\program files\Common Files\Adobe
2010-05-09 05:24 . 2010-05-09 05:24 -------- d-----w- c:\program files\Adobe Media Player
2010-05-09 05:22 . 2010-05-09 05:22 -------- d-----w- c:\program files\Common Files\Adobe AIR
2010-05-09 05:22 . 2010-05-09 07:18 38784 ----a-w- c:\users\V\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2010-05-09 05:22 . 2010-05-09 05:22 38784 ----a-w- c:\users\Default\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2010-05-06 07:50 . 2010-01-17 17:11 -------- d-----w- c:\program files\Java
2010-05-06 05:55 . 2010-05-06 05:55 -------- d-----w- c:\program files\Mass Downloader
2010-05-06 05:20 . 2010-05-05 05:52 -------- d-----w- c:\programdata\AutoPowerOn
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimwmp.dll
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimswf.dll
2010-05-05 04:22 . 2010-05-05 04:22 49152 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\Components\nprpffbrowserrecordext.dll
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimrp.dll
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimqt.dll
2010-05-05 04:22 . 2010-05-05 04:22 40960 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll
2010-05-05 04:22 . 2010-05-05 04:22 341600 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
2010-05-05 04:22 . 2010-05-05 04:22 308808 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Common\rpmainbrowserrecordplugin.dll
2010-05-05 04:22 . 2010-05-05 04:22 14848 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
2010-05-05 04:21 . 2010-05-01 05:14 -------- d-----w- c:\program files\Common Files\Real
2010-05-05 04:21 . 2010-05-01 05:14 -------- d-----w- c:\program files\Real
2010-05-05 04:21 . 2010-05-05 04:21 -------- d-----w- c:\program files\Common Files\xing shared
2010-05-05 04:21 . 2003-10-17 12:44 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-05-05 04:21 . 2003-10-17 12:44 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-05-04 06:07 . 2010-05-04 06:06 -------- d-----w- c:\users\V\AppData\Roaming\PhotoFiltre Studio X
2010-05-04 06:03 . 2010-05-04 06:03 -------- d-----w- c:\program files\PhotoFiltre Studio X
2010-05-04 05:28 . 2010-05-04 05:28 -------- d-----w- c:\program files\NWSoftware
2010-05-02 06:22 . 2010-03-27 05:28 -------- d-----w- c:\program files\FastStone Capture
2010-05-02 05:39 . 2010-05-02 05:39 -------- d-----w- c:\program files\HyperSnap 6
2010-05-01 13:36 . 2010-05-01 13:36 6868368 ----a-w- c:\users\V\AppData\Roaming\ESTsoft\ALUpdate\ALZIP\newfile\TEMP\ALZip752.exe
2010-05-01 10:36 . 2010-05-01 10:36 -------- d-----w- c:\program files\VS Revo Group
2010-05-01 05:19 . 2010-05-01 05:19 439816 ----a-w- c:\users\V\AppData\Roaming\Real\Update\setup3.10\setup.exe
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\DCoder Image Source
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\SHOUTcast Source
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\MONOGRAM AMR SplitterDecoder
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\CD Audio Reader Filter
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\OpenSource DTSAC3DD+ Source Filter
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\RealMedia
2010-05-01 04:33 . 2010-05-01 04:33 -------- d-----w- c:\program files\DScaler5
2010-05-01 04:32 . 2010-05-01 04:32 -------- d-----w- c:\program files\AC3Filter
2010-05-01 04:32 . 2010-05-01 04:32 -------- d-----w- c:\program files\OpenSource Flash Video Splitter
2010-05-01 04:32 . 2010-05-01 04:32 -------- d-----w- c:\program files\DirectVobSub
2010-05-01 04:31 . 2010-05-01 04:31 -------- d-----w- c:\program files\Haali
2010-05-01 04:31 . 2010-05-01 04:31 -------- d-----w- c:\program files\Bass Audio Decoder
2010-05-01 04:24 . 2010-05-01 04:24 -------- d-----w- c:\program files\Fantasysoft-Studio
2010-04-28 16:16 . 2010-04-28 16:07 -------- d-----w- c:\program files\Lizard Safeguard PDF Viewer
2010-04-28 16:07 . 2010-04-28 16:07 -------- d-----w- c:\programdata\LockLizard
2010-04-27 13:31 . 2010-04-27 13:30 3832978 ----a-w- c:\programdata\Monotea\All Users\SMSS3\Update\223\update.exe
2010-04-27 09:51 . 2010-04-27 09:50 952 --sha-w- c:\windows\system32\KGyGaAvL.sys
2010-04-27 07:05 . 2010-04-27 07:05 -------- d-----w- c:\program files\Corel
2010-04-26 18:18 . 2010-03-14 13:48 -------- d-----w- c:\program files\Nero
2010-04-26 18:17 . 2010-03-14 13:47 -------- d-----w- c:\program files\Common Files\Nero
2010-04-26 15:33 . 2010-04-26 15:33 -------- d-----w- c:\users\V\AppData\Roaming\LockLizard
2010-04-25 05:11 . 2010-04-25 05:11 -------- d-----w- c:\programdata\GRAW2
2010-04-25 05:08 . 2010-04-25 05:08 -------- d-----w- c:\program files\AGEIA Technologies
2010-04-25 05:07 . 2010-04-25 05:07 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-04-25 05:07 . 2010-04-25 05:07 -------- d-----w- c:\programdata\Media Center Programs
2010-04-25 04:58 . 2010-04-25 04:58 -------- d-----w- c:\program files\UBISOFT
2010-04-25 04:57 . 2010-04-25 04:57 -------- d-----w- c:\users\V\AppData\Roaming\InstallShield
2010-04-14 05:35 . 2010-04-11 11:28 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-04-12 15:29 . 2010-05-06 07:50 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-04-05 06:25 . 2010-04-05 06:25 632064 ----a-w- c:\windows\system32\msvcr80.dll
2010-04-05 06:25 . 2010-04-05 06:25 554240 ----a-w- c:\windows\system32\msvcp80.dll
2010-04-05 06:25 . 2010-04-05 06:25 34048 ----a-w- c:\windows\system32\eEmpty.exe
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"="c:\program files\DU Meter\DUMeter.exe" [2007-11-13 2585360]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-02-22 26101032]
"thebat_startup"="c:\program files\The Bat!\thebat.exe" [2009-12-25 13753264]
"Directory Opus Desktop Dblclk"="c:\program files\GPSoftware\Directory Opus\dopusrt.exe" [2010-01-08 271840]
"365dni"="c:\program files\365dni\365dniNET.exe" [2010-05-13 858624]
"Google Update"="c:\users\V\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-01-19 135664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-09-11 2054360]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"Adobe Acrobat Speed Launcher"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" [2009-02-27 38768]
"Acrobat Assistant 8.0"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" [2009-02-27 640376]
"snpstd"="c:\windows\vsnpstd.exe" [2005-10-11 339968]
"Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 648072]
"TNOD UP"="c:\program files\TNod User & Password Finder\TNODUP.exe" [2010-04-01 1811968]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2010-05-05 202256]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" [2010-02-22 406992]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2010-02-21 1093208]
"USBToolTip"="c:\progra~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe" [2007-02-20 199752]
"vspdfprsrv.exe"="c:\program files\Visagesoft\eXPert PDF 6\vspdfprsrv.exe" [2010-01-06 1010176]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Aktualizovat ESET licenci.lnk - c:\program files\ESET\MiNODLogin\MiNODLogin.exe [2009-12-10 125952]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"EnableShellExecuteHooks"= 1 (0x1)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{3CF9ECE0-1A9F-11D2-8C73-00C06C2005DE}"= "c:\program files\GPSoftware\Directory Opus\dopuslib.dll" [2010-01-08 836056]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-04-14 691696]
R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [2009-12-30 27192]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-02-17 1343400]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-09-11 108792]
S2 ABBYY.Licensing.FineReader.Professional.9.0;ABBYY FineReader 9.0 PE Licensing Service;c:\program files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe [2007-12-06 660768]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-08-18 176128]
S2 DUMeterSvc;DU Meter Service;c:\program files\DU Meter\DUMeterSvc.exe [2007-10-15 1382672]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2009-09-11 735960]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2009-09-11 38240]
S2 NitroDriverReadSpool;NitroPDFDriverCreatorReadSpool;c:\program files\Nitro PDF\Professional\NitroPDFDriverService.exe [2010-02-02 188736]
S2 nlsX86cc;NLS Service;c:\windows\system32\NLSSRV32.EXE [2010-02-02 65856]
S3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet - adaptér;c:\windows\system32\DRIVERS\l160x86.sys [2009-07-13 47104]
S3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [2009-12-02 42368]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
.
Obsah adresáře 'Naplánované úlohy'
2010-06-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1609947231-1533711289-1750632049-1001Core.job
- c:\users\V\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-19 17:17]
2010-06-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1609947231-1533711289-1750632049-1001UA.job
- c:\users\V\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-19 17:17]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://aktualne.centrum.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Převést cíl vazby do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Převést do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: Připojit cíl vazby k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Připojit k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: Stáhnout &Mass Downloaderem - c:\program files\Mass Downloader\Add_Url.htm
IE: Stáhnout &vše Mass Downloaderem - c:\program files\Mass Downloader\Add_All.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - c:\users\V\AppData\Roaming\Mozilla\Firefox\Profiles\fjri1nhm.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\Opera\program\plugins\npmassdn.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprjplug.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll
FF - plugin: c:\program files\Photodex Presenter\npPxPlay.dll
FF - plugin: c:\programdata\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
FF - plugin: c:\users\V\AppData\Local\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\windows\system32\Wat\npWatWeb.dll
---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
ShellIconOverlayIdentifiers-{8D2223A2-B3C6-4e32-B096-CDD11F628C60} - (no file)
HKCU-Run-Nektra OEAPI - (no file)
HKCU-Run-OEXPRESS - (no file)
HKCU-Run-Canaveral - c:\windows\system32\sshnas21.dll
HKCU-Run-AdobeBridge - (no file)
HKCU-Run-System Server Cache - c:\windows\System32\srvhost64.exe
AddRemove-PE Explorer_is1 - h:\pe explorer\unins000.exe
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DUMeterSvc]
"ImagePath"="c:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.032"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.abr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.aif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.aif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ani"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.apd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.apd"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.arw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.au\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.au"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.bay"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.bmp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.bw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.cr2"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.crw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.cs1"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.cur"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dcr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dcx"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dib"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.djv"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.djvu"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dng"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.emf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.eps"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.erf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.fff"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.fpx"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.gif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.hdr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.icl"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.icn"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.iff"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ilbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.int"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.inta"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.iw4"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.j2c"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.j2k"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jbr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jfif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jp2"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpc"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpe"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpeg"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpg"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpk"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpx"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.KDC\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.kdc"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.lbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.mef"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.mos"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.mrw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.nef"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.nrw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.orf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pbr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pcd"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pct"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pcx"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pef"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pgm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pic"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pict"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pix"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.png"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ppm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.psd"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.psp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pspbrush"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pspimage"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.raf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ras"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.raw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rgb"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rgba"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rle"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rsb"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rw2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rw2"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rwl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rwl"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.sgi"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.snd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.snd"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.sr2"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.srf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.tga"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.thm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.tif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.tiff"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ttc"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ttf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v10o\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.v10o"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v10p\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.v10p"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v10pf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.v10pf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30po\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.v30po"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30pp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.v30pp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30ppf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.v30ppf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.wbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.wbmp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.wmf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xmp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xpm"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-06-22 09:11:36
ComboFix-quarantined-files.txt 2010-06-22 07:11
Před spuštěním: Volných bajtů: 180 609 118 208
Po spuštění: Volných bajtů: 181 363 712 000
- - End Of File - - 6014C44F5B31A67207133A3F44C5EC62
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2047.1023 [GMT 2:00]
Spuštěný z: c:\users\V\Desktop\ComboFix.exe
* Rezidentní štít AV je zapnutý
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\users\V\AppData\Roaming\EurekaLog
c:\windows\system32\FOLESVR.DLL
c:\windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
D:\resycled
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-05-22 do 2010-06-22 )))))))))))))))))))))))))))))))
.
2010-06-22 05:08 . 2010-06-22 05:12 -------- d-----w- c:\users\V\AppData\Roaming\FreeFixer
2010-06-22 05:08 . 2010-06-22 05:08 -------- d-----w- c:\users\V\AppData\Local\FreeFixer
2010-06-22 05:08 . 2010-06-22 05:08 -------- d-----w- c:\program files\FreeFixer
2010-06-22 05:05 . 2010-06-22 05:26 -------- d-----w- c:\program files\trend micro
2010-06-22 05:05 . 2010-06-22 05:05 -------- d-----w- C:\rsit
2010-06-18 06:03 . 2010-06-18 06:03 -------- d-----w- c:\users\V\AppData\Roaming\eXPert PDF Editor
2010-06-18 05:53 . 2010-06-18 05:53 111 ---ha-w- C:\sys13026.bin
2010-06-18 05:49 . 2010-06-18 05:53 -------- d-----w- c:\users\V\AppData\Roaming\eXPert PDF 6
2010-06-18 05:49 . 2010-06-18 05:49 -------- d-----w- c:\program files\Avanquest update
2010-06-18 05:48 . 2010-06-18 05:48 -------- d-----w- c:\programdata\BVRP Software
2010-06-18 05:47 . 2009-06-15 16:40 22016 ----a-w- c:\windows\system32\vsmon1.dll
2010-06-18 05:47 . 2010-06-18 06:03 -------- d-----w- c:\programdata\eXPert PDF 6
2010-06-18 05:47 . 2010-06-18 05:47 -------- d-----w- c:\programdata\Visage Software
2010-06-18 05:47 . 2010-06-18 05:47 -------- d-----w- c:\programdata\eXPert PDF Jobs
2010-06-18 05:47 . 2010-06-18 05:47 -------- d-----w- c:\program files\Visagesoft
2010-06-16 12:56 . 2010-06-16 12:56 -------- d-----w- c:\program files\NewBlue
2010-06-16 09:59 . 2010-05-21 10:11 1061888 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.exe
2010-06-16 09:59 . 2010-05-21 10:11 475648 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.scr
2010-06-16 09:59 . 2010-06-16 10:14 -------- d-----w- c:\program files\MyDefrag v4.3.1
2010-06-16 08:01 . 2010-06-16 08:02 -------- d-----w- c:\program files\Defraggler
2010-06-15 09:54 . 2010-06-15 10:05 -------- d-----w- c:\users\V\AppData\Local\Pinnacle
2010-06-15 09:46 . 2004-03-29 15:23 90112 ----a-w- c:\windows\unvise32.exe
2010-06-15 09:46 . 2010-06-15 09:46 -------- d-----w- c:\program files\LooksBuilderSE
2010-06-15 08:18 . 2010-06-15 08:18 29926 ----a-r- c:\users\V\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
2010-06-15 08:18 . 2010-06-15 08:18 -------- d-----w- c:\program files\Common Files\Pinnacle
2010-06-15 08:16 . 2010-06-15 08:16 -------- d-----w- c:\programdata\Pinnacle Studio Ultimate Collection
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\program files\Common Files\Pegasus Imaging
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\programdata\Studio 14
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\programdata\Pinnacle Studio Plus
2010-06-15 08:09 . 2010-06-15 08:09 -------- d-----w- c:\program files\Common Files\Yahoo!
2010-06-15 08:02 . 2010-06-15 08:02 -------- d-----w- c:\users\V\AppData\Local\MicroVision Applications
2010-06-15 08:02 . 2010-06-15 08:02 -------- d-----w- c:\program files\Common Files\SureThing Shared
2010-06-15 08:02 . 2010-06-15 08:02 -------- d-----w- c:\program files\SureThing Express Labeler
2010-06-15 08:00 . 2010-06-15 09:45 -------- d-----w- c:\program files\Pinnacle
2010-06-15 07:57 . 2010-06-15 08:15 -------- d-----w- c:\programdata\Pinnacle
2010-06-15 07:25 . 1999-03-15 14:39 212992 ----a-w- c:\windows\ALCHUNIN.EXE
2010-06-15 07:23 . 2010-06-15 07:25 -------- d-----w- c:\program files\Alchemy Mindworks
2010-06-15 07:21 . 2010-06-15 07:29 -------- d-----w- c:\users\V\AppData\Roaming\Alchemy Mindworks
2010-06-13 11:55 . 2010-06-13 11:56 -------- d-----w- c:\program files\Microsoft Security Essentials
2010-06-10 04:36 . 2010-06-10 04:37 -------- d-----w- c:\users\V\AppData\Roaming\365dni
2010-06-10 04:36 . 2010-06-10 04:36 -------- d-----w- c:\program files\365dni
2010-06-09 05:42 . 2010-05-01 14:49 2326528 ----a-w- c:\windows\system32\win32k.sys
2010-06-09 05:41 . 2010-05-21 05:18 977920 ----a-w- c:\windows\system32\wininet.dll
2010-06-09 05:41 . 2010-03-05 07:42 67584 ----a-w- c:\windows\system32\asycfilt.dll
2010-06-09 05:41 . 2010-05-27 03:49 293888 ----a-w- c:\windows\system32\atmfd.dll
2010-06-09 05:41 . 2010-05-27 07:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-06-03 11:52 . 2010-06-03 11:52 -------- d-----w- c:\program files\Photo Effects Studio
2010-05-29 05:25 . 2010-05-29 05:25 -------- d-----w- c:\program files\Radek Kalousek
2010-05-28 05:42 . 2009-11-11 16:21 159800 ----a-w- c:\users\V\AppData\Roaming\Mozilla\Firefox\Profiles\fjri1nhm.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF.dll
2010-05-28 05:42 . 2009-11-11 16:13 163898 ----a-w- c:\users\V\AppData\Roaming\Mozilla\Firefox\Profiles\fjri1nhm.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
2010-05-28 05:35 . 2010-05-28 05:37 -------- d-----w- c:\program files\ACD Systems
2010-05-26 04:15 . 2010-04-23 07:13 2048 ----a-w- c:\windows\system32\tzres.dll
2010-05-24 06:02 . 2010-05-24 06:02 -------- d-----w- c:\program files\ViaVoiceTTS
2010-05-24 06:01 . 2010-05-24 06:01 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-24 06:01 . 2010-05-24 06:01 -------- d-----w- c:\windows\lhsp
2010-05-24 06:01 . 2010-05-24 06:02 -------- d-----w- c:\windows\msagent
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-22 07:06 . 2009-07-14 08:44 625676 ----a-w- c:\windows\system32\perfh005.dat
2010-06-22 07:06 . 2009-07-14 08:44 119794 ----a-w- c:\windows\system32\perfc005.dat
2010-06-22 06:42 . 2010-03-13 05:58 -------- d-----w- c:\users\V\AppData\Roaming\Skype
2010-06-22 06:02 . 2010-01-18 07:27 -------- d-----w- c:\users\V\AppData\Roaming\skypePM
2010-06-22 05:01 . 2010-04-06 06:03 -------- d-----w- c:\programdata\The Bat!
2010-06-18 05:49 . 2010-01-20 17:38 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-06-15 09:48 . 2010-04-07 06:00 142488 ----a-w- c:\users\V\AppData\Local\GDIPFONTCACHEV1.DAT
2010-06-13 04:56 . 2010-01-21 09:37 -------- d-----w- c:\program files\Chaos Manager 2
2010-06-09 05:48 . 2010-01-17 16:30 -------- d-----w- c:\programdata\Microsoft Help
2010-06-04 15:43 . 2010-02-14 07:24 -------- d-----w- c:\program files\Microsoft Silverlight
2010-05-28 05:36 . 2010-02-07 09:08 -------- d-----w- c:\users\V\AppData\Roaming\ACD Systems
2010-05-28 05:35 . 2010-01-22 12:56 -------- d-----w- c:\program files\Common Files\ACD Systems
2010-05-28 05:35 . 2010-01-22 12:56 -------- d-----w- c:\programdata\ACD Systems
2010-05-27 05:44 . 2010-01-17 17:06 -------- d-----w- c:\users\V\AppData\Roaming\LangSoft
2010-05-27 05:44 . 2010-02-24 07:40 798771 ----a-w- c:\programdata\LangSoft\WebIE.dll
2010-05-27 05:44 . 2010-02-24 07:38 -------- d-----w- c:\programdata\LangSoft
2010-05-27 05:44 . 2010-02-24 07:40 356352 ----a-w- c:\programdata\LangSoft\TrnOutl.dll
2010-05-27 05:44 . 2010-02-24 07:40 299008 ----a-w- c:\programdata\LangSoft\TrnWord.dll
2010-05-21 12:14 . 2010-01-17 15:13 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-19 08:34 . 2010-02-02 16:36 -------- d-----w- c:\program files\SMS Zdarma 2
2010-05-19 07:49 . 2010-05-19 06:06 -------- d-----w- c:\program files\pdfsam
2010-05-19 07:00 . 2010-05-19 06:58 3849337 ----a-w- c:\programdata\Monotea\All Users\SMSS3\Update\225\update.exe
2010-05-19 06:58 . 2010-01-21 09:15 -------- d-----w- c:\programdata\Monotea
2010-05-19 06:00 . 2010-04-16 08:49 -------- d-----w- c:\users\V\AppData\Roaming\Nitro PDF
2010-05-16 08:00 . 2010-05-16 06:12 -------- d-----w- c:\program files\Windows Live
2010-05-16 07:59 . 2010-05-16 07:59 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2010-05-14 14:08 . 2010-04-07 14:12 -------- d-----w- c:\program files\Opera
2010-05-09 08:29 . 2010-05-09 05:35 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2010-05-09 05:26 . 2010-01-22 13:04 -------- d-----w- c:\program files\Common Files\Adobe
2010-05-09 05:24 . 2010-05-09 05:24 -------- d-----w- c:\program files\Adobe Media Player
2010-05-09 05:22 . 2010-05-09 05:22 -------- d-----w- c:\program files\Common Files\Adobe AIR
2010-05-09 05:22 . 2010-05-09 07:18 38784 ----a-w- c:\users\V\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2010-05-09 05:22 . 2010-05-09 05:22 38784 ----a-w- c:\users\Default\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2010-05-06 07:50 . 2010-01-17 17:11 -------- d-----w- c:\program files\Java
2010-05-06 05:55 . 2010-05-06 05:55 -------- d-----w- c:\program files\Mass Downloader
2010-05-06 05:20 . 2010-05-05 05:52 -------- d-----w- c:\programdata\AutoPowerOn
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimwmp.dll
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimswf.dll
2010-05-05 04:22 . 2010-05-05 04:22 49152 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\Components\nprpffbrowserrecordext.dll
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimrp.dll
2010-05-05 04:22 . 2010-05-05 04:22 45056 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\ThinShims\rpnpshimqt.dll
2010-05-05 04:22 . 2010-05-05 04:22 40960 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll
2010-05-05 04:22 . 2010-05-05 04:22 341600 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
2010-05-05 04:22 . 2010-05-05 04:22 308808 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\Common\rpmainbrowserrecordplugin.dll
2010-05-05 04:22 . 2010-05-05 04:22 14848 ----a-w- c:\programdata\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
2010-05-05 04:21 . 2010-05-01 05:14 -------- d-----w- c:\program files\Common Files\Real
2010-05-05 04:21 . 2010-05-01 05:14 -------- d-----w- c:\program files\Real
2010-05-05 04:21 . 2010-05-05 04:21 -------- d-----w- c:\program files\Common Files\xing shared
2010-05-05 04:21 . 2003-10-17 12:44 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-05-05 04:21 . 2003-10-17 12:44 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-05-04 06:07 . 2010-05-04 06:06 -------- d-----w- c:\users\V\AppData\Roaming\PhotoFiltre Studio X
2010-05-04 06:03 . 2010-05-04 06:03 -------- d-----w- c:\program files\PhotoFiltre Studio X
2010-05-04 05:28 . 2010-05-04 05:28 -------- d-----w- c:\program files\NWSoftware
2010-05-02 06:22 . 2010-03-27 05:28 -------- d-----w- c:\program files\FastStone Capture
2010-05-02 05:39 . 2010-05-02 05:39 -------- d-----w- c:\program files\HyperSnap 6
2010-05-01 13:36 . 2010-05-01 13:36 6868368 ----a-w- c:\users\V\AppData\Roaming\ESTsoft\ALUpdate\ALZIP\newfile\TEMP\ALZip752.exe
2010-05-01 10:36 . 2010-05-01 10:36 -------- d-----w- c:\program files\VS Revo Group
2010-05-01 05:19 . 2010-05-01 05:19 439816 ----a-w- c:\users\V\AppData\Roaming\Real\Update\setup3.10\setup.exe
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\DCoder Image Source
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\SHOUTcast Source
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\MONOGRAM AMR SplitterDecoder
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\CD Audio Reader Filter
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\OpenSource DTSAC3DD+ Source Filter
2010-05-01 04:34 . 2010-05-01 04:34 -------- d-----w- c:\program files\RealMedia
2010-05-01 04:33 . 2010-05-01 04:33 -------- d-----w- c:\program files\DScaler5
2010-05-01 04:32 . 2010-05-01 04:32 -------- d-----w- c:\program files\AC3Filter
2010-05-01 04:32 . 2010-05-01 04:32 -------- d-----w- c:\program files\OpenSource Flash Video Splitter
2010-05-01 04:32 . 2010-05-01 04:32 -------- d-----w- c:\program files\DirectVobSub
2010-05-01 04:31 . 2010-05-01 04:31 -------- d-----w- c:\program files\Haali
2010-05-01 04:31 . 2010-05-01 04:31 -------- d-----w- c:\program files\Bass Audio Decoder
2010-05-01 04:24 . 2010-05-01 04:24 -------- d-----w- c:\program files\Fantasysoft-Studio
2010-04-28 16:16 . 2010-04-28 16:07 -------- d-----w- c:\program files\Lizard Safeguard PDF Viewer
2010-04-28 16:07 . 2010-04-28 16:07 -------- d-----w- c:\programdata\LockLizard
2010-04-27 13:31 . 2010-04-27 13:30 3832978 ----a-w- c:\programdata\Monotea\All Users\SMSS3\Update\223\update.exe
2010-04-27 09:51 . 2010-04-27 09:50 952 --sha-w- c:\windows\system32\KGyGaAvL.sys
2010-04-27 07:05 . 2010-04-27 07:05 -------- d-----w- c:\program files\Corel
2010-04-26 18:18 . 2010-03-14 13:48 -------- d-----w- c:\program files\Nero
2010-04-26 18:17 . 2010-03-14 13:47 -------- d-----w- c:\program files\Common Files\Nero
2010-04-26 15:33 . 2010-04-26 15:33 -------- d-----w- c:\users\V\AppData\Roaming\LockLizard
2010-04-25 05:11 . 2010-04-25 05:11 -------- d-----w- c:\programdata\GRAW2
2010-04-25 05:08 . 2010-04-25 05:08 -------- d-----w- c:\program files\AGEIA Technologies
2010-04-25 05:07 . 2010-04-25 05:07 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-04-25 05:07 . 2010-04-25 05:07 -------- d-----w- c:\programdata\Media Center Programs
2010-04-25 04:58 . 2010-04-25 04:58 -------- d-----w- c:\program files\UBISOFT
2010-04-25 04:57 . 2010-04-25 04:57 -------- d-----w- c:\users\V\AppData\Roaming\InstallShield
2010-04-14 05:35 . 2010-04-11 11:28 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-04-12 15:29 . 2010-05-06 07:50 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-04-05 06:25 . 2010-04-05 06:25 632064 ----a-w- c:\windows\system32\msvcr80.dll
2010-04-05 06:25 . 2010-04-05 06:25 554240 ----a-w- c:\windows\system32\msvcp80.dll
2010-04-05 06:25 . 2010-04-05 06:25 34048 ----a-w- c:\windows\system32\eEmpty.exe
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"="c:\program files\DU Meter\DUMeter.exe" [2007-11-13 2585360]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-02-22 26101032]
"thebat_startup"="c:\program files\The Bat!\thebat.exe" [2009-12-25 13753264]
"Directory Opus Desktop Dblclk"="c:\program files\GPSoftware\Directory Opus\dopusrt.exe" [2010-01-08 271840]
"365dni"="c:\program files\365dni\365dniNET.exe" [2010-05-13 858624]
"Google Update"="c:\users\V\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-01-19 135664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-09-11 2054360]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"Adobe Acrobat Speed Launcher"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" [2009-02-27 38768]
"Acrobat Assistant 8.0"="c:\program files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" [2009-02-27 640376]
"snpstd"="c:\windows\vsnpstd.exe" [2005-10-11 339968]
"Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 648072]
"TNOD UP"="c:\program files\TNod User & Password Finder\TNODUP.exe" [2010-04-01 1811968]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2010-05-05 202256]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" [2010-02-22 406992]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2010-02-21 1093208]
"USBToolTip"="c:\progra~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe" [2007-02-20 199752]
"vspdfprsrv.exe"="c:\program files\Visagesoft\eXPert PDF 6\vspdfprsrv.exe" [2010-01-06 1010176]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Aktualizovat ESET licenci.lnk - c:\program files\ESET\MiNODLogin\MiNODLogin.exe [2009-12-10 125952]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"EnableShellExecuteHooks"= 1 (0x1)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{3CF9ECE0-1A9F-11D2-8C73-00C06C2005DE}"= "c:\program files\GPSoftware\Directory Opus\dopuslib.dll" [2010-01-08 836056]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-04-14 691696]
R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [2009-12-30 27192]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-02-17 1343400]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-09-11 108792]
S2 ABBYY.Licensing.FineReader.Professional.9.0;ABBYY FineReader 9.0 PE Licensing Service;c:\program files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe [2007-12-06 660768]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-08-18 176128]
S2 DUMeterSvc;DU Meter Service;c:\program files\DU Meter\DUMeterSvc.exe [2007-10-15 1382672]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2009-09-11 735960]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2009-09-11 38240]
S2 NitroDriverReadSpool;NitroPDFDriverCreatorReadSpool;c:\program files\Nitro PDF\Professional\NitroPDFDriverService.exe [2010-02-02 188736]
S2 nlsX86cc;NLS Service;c:\windows\system32\NLSSRV32.EXE [2010-02-02 65856]
S3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet - adaptér;c:\windows\system32\DRIVERS\l160x86.sys [2009-07-13 47104]
S3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [2009-12-02 42368]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
.
Obsah adresáře 'Naplánované úlohy'
2010-06-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1609947231-1533711289-1750632049-1001Core.job
- c:\users\V\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-19 17:17]
2010-06-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1609947231-1533711289-1750632049-1001UA.job
- c:\users\V\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-19 17:17]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://aktualne.centrum.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Převést cíl vazby do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Převést do Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: Připojit cíl vazby k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Připojit k existujícímu PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: Stáhnout &Mass Downloaderem - c:\program files\Mass Downloader\Add_Url.htm
IE: Stáhnout &vše Mass Downloaderem - c:\program files\Mass Downloader\Add_All.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - c:\users\V\AppData\Roaming\Mozilla\Firefox\Profiles\fjri1nhm.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz/
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\Opera\program\plugins\npmassdn.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprjplug.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll
FF - plugin: c:\program files\Photodex Presenter\npPxPlay.dll
FF - plugin: c:\programdata\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
FF - plugin: c:\users\V\AppData\Local\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\windows\system32\Wat\npWatWeb.dll
---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
ShellIconOverlayIdentifiers-{8D2223A2-B3C6-4e32-B096-CDD11F628C60} - (no file)
HKCU-Run-Nektra OEAPI - (no file)
HKCU-Run-OEXPRESS - (no file)
HKCU-Run-Canaveral - c:\windows\system32\sshnas21.dll
HKCU-Run-AdobeBridge - (no file)
HKCU-Run-System Server Cache - c:\windows\System32\srvhost64.exe
AddRemove-PE Explorer_is1 - h:\pe explorer\unins000.exe
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\DUMeterSvc]
"ImagePath"="c:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.032"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.abr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.aif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.aif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ani"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.apd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.apd"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.arw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.au\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.au"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.bay"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.bmp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.bw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.cr2"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.crw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.cs1"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.cur"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dcr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dcx"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dib"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.djv"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.djvu"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.dng"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.emf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.eps"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.erf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.fff"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.fpx"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.gif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.hdr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.icl"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.icn"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.iff"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ilbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.int"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.inta"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.iw4"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.j2c"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.j2k"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jbr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jfif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jp2"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpc"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpe"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpeg"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpg"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpk"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.jpx"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.KDC\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.kdc"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.lbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.mef"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.mos"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.mrw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.nef"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.nrw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.orf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pbr"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pcd"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pct"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pcx"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pef"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pgm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pic"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pict"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pix"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.png"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ppm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.psd"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.psp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pspbrush"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.pspimage"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.raf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ras"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.raw"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rgb"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rgba"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rle"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rsb"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rw2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rw2"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rwl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.rwl"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.sgi"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.snd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.snd"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.sr2"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.srf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.tga"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.thm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.tif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.tiff"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ttc"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.ttf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v10o\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.v10o"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v10p\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.v10p"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v10pf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.v10pf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30po\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.v30po"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30pp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.v30pp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30ppf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.v30ppf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.wbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.wbmp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.wmf"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xbm"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xif"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xmp"
[HKEY_USERS\S-1-5-21-1609947231-1533711289-1750632049-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Photo Manager 12.xpm"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-06-22 09:11:36
ComboFix-quarantined-files.txt 2010-06-22 07:11
Před spuštěním: Volných bajtů: 180 609 118 208
Po spuštění: Volných bajtů: 181 363 712 000
- - End Of File - - 6014C44F5B31A67207133A3F44C5EC62
Re: Prosím o kontrolu logu
prescanuj PC s MBAM + napis ci su este nejake problemy
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím o kontrolu logu
Je to dobrý již se to neobjevuje byl tam 1 trojan díky Venca
Re: Prosím o kontrolu logu
za malo
ak existuje niektory z uvedenych suborov, ZMAZ:
C:\Windows\system32\sshnas21.dll
C:\Users\V\AppData\Local\Temp\Bzx.exe
C:\Windows\System32\srvhost64.exe

ak existuje niektory z uvedenych suborov, ZMAZ:
C:\Windows\system32\sshnas21.dll
C:\Users\V\AppData\Local\Temp\Bzx.exe
C:\Windows\System32\srvhost64.exe
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/