dobry den pri zapinani noteboku mi vipisuje tuto hlasku PRI SPUSTENY SUBORU C:/Windows/system32/sshnas.dll doslo k problemu , UZ SOM VSETKO MOZNE VISKUSAL ALE NEDA SA MI TO ODSTRANIT PRESKENOVAL SOM NOTEBOK S RUNSCANNER.EXE A TOTO JE VYSLEDO SKENOVANIA ZA RADU VOPRED DAKUJEM Runscanner logfile
* = signed file
- = file not found
General info
------------
Computer name : MICHAL-PC
Creation time : 19.6.2010 8:14:12
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 8.0.7600.16385
OS : Windows 7 Professional
OS Build : 7600
OS SP :
RunScanner Version : 1.9.0.9
User Language : Čeština (Česká republika)
User rights : Administrator
Windows folder : C:\Windows
Running processes
-----------------
* C:\Program Files\ASUS\ASUS Live Update\ALU.exe
* C:\Windows\system32\atieclxx.exe (AMD)
* C:\Windows\system32\atiesrxx.exe (AMD)
* C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe (ASUS)
* C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe (ASUS)
* C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe (ASUS)
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Advanced Micro Devices Inc.)
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ATI Technologies Inc.)
* C:\Windows\system32\csrss.exe (Microsoft Corporation)
* C:\Windows\system32\csrss.exe (Microsoft Corporation)
* C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
* C:\Program Files\DivX\DivX Update\DivXUpdate.exe
* C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
* C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET)
* C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
* C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
* C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
* C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe (Hewlett-Packard)
* C:\Program Files\ASUS\ATK Hotkey\HControl.exe (ASUS)
* C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\taskhost.exe (Microsoft Corporation)
* C:\Windows\System32\rundll32.exe (Microsoft Corporation)
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard Co.)
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe (Hewlett-Packard Co.)
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
* C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_clipbook.exe (Hewlett-Packard Co.)
* C:\Program Files\HP\HP Software Update\hpwuSchd2.exe (Hewlett-Packard)
* C:\Program Files\ICQ6Toolbar\ICQ Service.exe
* C:\Program Files\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
* C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe (ASUS)
* C:\Windows\system32\lsass.exe (Microsoft Corporation)
* C:\Windows\system32\lsm.exe (Microsoft Corporation)
* C:\Windows\system32\SearchIndexer.exe (Microsoft Corporation)
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia)
* C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe (Nokia)
C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin (OpenOffice.org)
C:\Program Files\OpenOffice.org 3\program\soffice.exe (OpenOffice.org)
* C:\Windows\system32\PnkBstrA.exe
* C:\Windows\system32\PnkBstrB.exe
* C:\Windows\Explorer.EXE (Microsoft Corporation)
* C:\Users\Michal\Downloads\runscanner.exe (Runscanner.net)
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (Nokia)
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
* C:\Windows\system32\services.exe (Microsoft Corporation)
* C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
* C:\Program Files\Skype\Toolbars\Shared\SkypeNames2.exe (Skype Technologies S.A.)
* C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
* C:\Windows\System32\spoolsv.exe (Microsoft Corporation)
* C:\Windows\system32\Dwm.exe (Microsoft Corporation)
* C:\Program Files\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.)
* C:\Windows\system32\taskeng.exe (Microsoft Corporation)
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (Nokia)
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
* C:\Program Files\ASUS\ATK Hotkey\WDC.exe (ASUS)
* C:\Windows\system32\AUDIODG.EXE (Microsoft Corporation)
* C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
* C:\Windows\system32\winlogon.exe (Microsoft Corporation)
* C:\Program Files\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
* C:\Windows\servicing\TrustedInstaller.exe (Microsoft Corporation)
* c:\windows\System32\smss.exe (Microsoft Corporation)
* C:\Windows\system32\wininit.exe (Microsoft Corporation)
Unrated items
-------------
002 C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
002 * C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe (ASUS)
002 * C:\Program Files\DivX\DivX Update\DivXUpdate.exe
002 * C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
002 C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
002 * C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (Hewlett-Packard)
002 C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe (Hewlett-Packard)
002 C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia)
002 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
002 * C:\Program Files\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.)
003 * C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
003 * C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe (Nokia)
004 C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE
005 C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe (Hewlett-Packard Co.)
006 C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe (Hewlett-Packard Co.)
007 C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE
010 * C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe (ASLDR Service)
010 C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (IDriverT Module)
010 C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (Nero BackItUp)
010 * C:\Windows\system32\PnkBstrA.exe (PnkBstrA.exe)
010 * C:\Windows\system32\PnkBstrB.exe (PnkBstrB.exe)
010 C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (ServiceLayer Module)
010 * C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe (spmgr Module)
011 * C:\Windows\system32\DRIVERS\AtiPcie.sys (AMD PCIE Filter Driver for ATI PCIE chipset)
011 * C:\Windows\system32\DRIVERS\amdsata.sys (amdsata)
011 * C:\Windows\system32\DRIVERS\amdxata.sys (amdxata)
011 * C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys (ghaio.sys)
011 * C:\Windows\system32\DRIVERS\hamachi.sys (Hamachi Virtual Network Interface Driver)
011 * C:\Windows\system32\DRIVERS\kbfiltr.sys (Keyboard Filter Driver)
011 C:\Windows\System32\Drivers\pcouffin.sys (low level access layer for CD/DVD/BD devices)
011 * C:\Windows\system32\drivers\acedrv11.sys (ProtectDisc x64/x86 Hybrid Driver)
011 * C:\Windows\system32\DRIVERS\s117bus.sys (Sony Ericsson Device 117 Driver)
011 * C:\Windows\system32\DRIVERS\s117unic.sys (Sony Ericsson Device 117 USB Ethernet Emulation)
011 * C:\Windows\system32\DRIVERS\s117nd5.sys (Sony Ericsson Device 117 USB Ethernet Emulation (NDIS 5 Miniport))
011 * C:\Windows\system32\DRIVERS\s117mgmt.sys (Sony Ericsson Device 117 USB WMC Device Management Driver)
011 * C:\Windows\system32\DRIVERS\s117mdfl.sys (Sony Ericsson Device 117 USB WMC Modem Filter Driver)
011 * C:\Windows\system32\DRIVERS\s117mdm.sys (Sony Ericsson Device 117 USB WMC Modem WDM Driver)
011 * C:\Windows\system32\DRIVERS\s117obex.sys (Sony Ericsson Device 117 USB WMC OBEX Interface Device Driver)
011 C:\Windows\System32\Drivers\sptd.sys (sptd)
011 * C:\Windows\system32\DRIVERS\snp2uvc.sys (UVC Camera Streaming Driver)
040 * C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com) {00000000-6E41-4FD3-8538-502F5495E5FC}
040 C:\Program Files\DVDVideoSoft\tbDVDV.dll (Conduit Ltd.) {e9911ec6-1bcc-40b0-9993-e0eea7f6953f}
040 * C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll (SweetIM Technologies Ltd.) {EEE6C35D-6118-11DC-9C72-001320C79847}
041 * C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com) {D4027C7F-154A-4066-A1AD-4243D8127440}
041 C:\Program Files\DVDVideoSoft\tbDVDV.dll (Conduit Ltd.) {e9911ec6-1bcc-40b0-9993-e0eea7f6953f}
041 * C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) {EEE6C35B-6118-11DC-9C72-001320C79847}
041 * C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll {32099AAC-C132-4136-9E9A-4E364A424E17}
042 GUID / CLSID not found {DDE87865-83C5-48c4-8357-2F5B1AA84522}
045 * C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com) {D4027C7F-154A-4066-A1AD-4243D8127440}
045 C:\Program Files\DVDVideoSoft\tbDVDV.dll (Conduit Ltd.) {E9911EC6-1BCC-40B0-9993-E0EEA7F6953F}
045 * C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) {EEE6C35B-6118-11DC-9C72-001320C79847}
045 * C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll {32099AAC-C132-4136-9E9A-4E364A424E17}
052 * C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com) {D4027C7F-154A-4066-A1AD-4243D8127440}
052 C:\Program Files\DVDVideoSoft\tbDVDV.dll (Conduit Ltd.) {e9911ec6-1bcc-40b0-9993-e0eea7f6953f}
052 * C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) {EEE6C35C-6118-11DC-9C72-001320C79847}
060 GUID / CLSID not found {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
061 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
061 C:\PROGRA~1\AIMP2\System\AIMP_S~1.DLL (AIMP DevTeam) {1F77B17B-F531-44DB-ACA4-76ABB5010A28}
061 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll (Advanced Micro Devices, Inc.) {5E2121EE-0300-11D4-8D3B-444553540000}
061 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiamaxx.dll (Advanced Micro Devices, Inc.) {872A9397-E0D6-4e28-B64D-52B8D0A7EA35}
061 C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXPropertyHandler.dll (DivX, Inc.) {D8D1CE8C-B1EB-4E95-B63B-1531BA60E992}
061 C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXThumbnailProvider.dll (DivX, Inc.) {83238FAE-D346-4E12-8734-D42F7554B3E6}
061 C:\Program Files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll (Nokia) {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}
061 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
062 GUID / CLSID not found {C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}
100 Start Page HKCU : http://www.daemon-search.com/startpage
100 Start Page HKLM : http://home.sweetim.com
104 * C:\Windows\Downloaded Program Files\PCPitstop2.dll (PC Pitstop LLC) {FFB3A759-98B1-446F-BDA9-909C6EB18CC7}
105 Google Sidewiki... : res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
173 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
173 C:\PROGRA~1\AIMP2\System\AIMP_S~1.DLL (AIMP DevTeam) {1F77B17B-F531-44DB-ACA4-76ABB5010A28}
173 C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll (Nero AG)
173 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
221 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
221 C:\PROGRA~1\AIMP2\System\AIMP_S~1.DLL (AIMP DevTeam) {1F77B17B-F531-44DB-ACA4-76ABB5010A28}
221 C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll (Nero AG)
221 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll (Nero AG)
225 C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll (Nero AG)
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
225 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
227 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
227 C:\PROGRA~1\AIMP2\System\AIMP_S~1.DLL (AIMP DevTeam) {1F77B17B-F531-44DB-ACA4-76ABB5010A28}
227 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
229 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll (Advanced Micro Devices, Inc.) {5E2121EE-0300-11D4-8D3B-444553540000}
230 GUID / CLSID not found OpenOffice.org Column Handler
251 C:\Program Files\7-Zip\7-zip.dll (Igor Pavlov) {23170F69-40C1-278A-1000-000100020000}
251 C:\Program Files\WinRAR\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
254 C:\Program Files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll (Nokia) {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}
Missing files
-------------
002 C:\Program Files\tuEagles\EagleSvr.exe
003 C:\Program Files\FlashGet Network\FlashGet universal\FlashGet.exe
003 C:\Windows\system32\sshnas.dll
003 C:\Users\Michal\AppData\Local\Temp\d.exe
003 C:\Program Files\SRS Labs\Audio Sandbox\SRSSSC.exe
008 C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
009 C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
011 C:\Users\Michal\AppData\Local\Temp\NYJ1CEB.tmp
011 c:\windows\system32\drivers\WPRO_40_1340.sys
040 C:\Program Files\Mario_Forever\tbMari.dll䄀㕂
041 C:\Program Files\Mario_Forever\tbMari.dll䄀㕂
045 C:\Program Files\Mario_Forever\tbMari.dll䄀㕂
052 C:\Program Files\Mario_Forever\tbMari.dll䄀㕂

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
C:/Windows/system32/sshnas.dll doslo k problemu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- 1danab
- Nováček
- Příspěvky: 1412
- Registrován: 21 říj 2007 13:04
- Bydliště: České Budějovice
- Kontaktovat uživatele:
Re: C:/Windows/system32/sshnas.dll doslo k problemu
zdravím
stáhněte a uložte nejlépe na plochu ComboFix
spusťte aplikaci pod účtem s administrátorským oprávněním
po startu se zobrazí obrazovka s licenčními podmínkami, klikněte na tlačítko Ano:

může dojít k varování ohledně rezidentního štítu Vašeho antiviru a upozornění na nenainstalovanou konzoli pro zotavení; zatím jí neinstalujte
sken trvá cca 10 minut (může trvat i déle, podle množství souborů a rychlosti pc); během skenu nespouštějte žádné aplikace
během skenování může být Vaše pc restartováno, proto nepropadejte panice
upozornění: pokud používate antispyware s rezidentním štítem, deaktivujte jeho rezidentní štít, protože dochází při skenu a výmazu případného malware k nežádoucím kolizím Combofixu s rezidentem antispyware
po restartování vytvoří aplikace log, uložený na C:/Combofix.txt jeho obsah vložte sem

stáhněte a uložte nejlépe na plochu ComboFix
spusťte aplikaci pod účtem s administrátorským oprávněním
po startu se zobrazí obrazovka s licenčními podmínkami, klikněte na tlačítko Ano:

může dojít k varování ohledně rezidentního štítu Vašeho antiviru a upozornění na nenainstalovanou konzoli pro zotavení; zatím jí neinstalujte
sken trvá cca 10 minut (může trvat i déle, podle množství souborů a rychlosti pc); během skenu nespouštějte žádné aplikace
během skenování může být Vaše pc restartováno, proto nepropadejte panice
upozornění: pokud používate antispyware s rezidentním štítem, deaktivujte jeho rezidentní štít, protože dochází při skenu a výmazu případného malware k nežádoucím kolizím Combofixu s rezidentem antispyware
po restartování vytvoří aplikace log, uložený na C:/Combofix.txt jeho obsah vložte sem
Re: C:/Windows/system32/sshnas.dll doslo k problemu
dakujem za radu dal som skenovat a tu je vysledok ComboFix 10-06-19.03 - Michal 20.06.2010 8:24.1.2 - x86
Microsoft Windows 7 Professional 6.1.7600.0.1250.420.1029.18.3071.2002 [GMT 2:00]
Spuštěný z: c:\users\Michal\Desktop\ComboFix.exe
* Rezidentní štít AV je zapnutý
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\FlashGet Network
c:\program files\FlashGet Network\FlashGet universal\dbtrans_verbose - 2010.01.23 08.32.24.log
c:\program files\FlashGet Network\FlashGet universal\dbtrans_verbose - 2010.02.09 17.11.37.log
c:\program files\FlashGet Network\FlashGet universal\dbtrans_verbose.log
c:\program files\FlashGet Network\FlashGet universal\fgoption.ini
c:\program files\FlashGet Network\FlashGet universal\P2PCfg.ini
c:\program files\FlashGet Network\FlashGet universal\p2spmgr.ini
c:\program files\FlashGet Network\FlashGet universal\p4spmgr.ini
c:\program files\FlashGet Network\FlashGet universal\Profiles\config.dat
c:\program files\FlashGet Network\FlashGet universal\Profiles\tasks.dat
c:\program files\FlashGet Network\FlashGet universal\transaction - 2010.01.23 08.32.24.log
c:\program files\FlashGet Network\FlashGet universal\transaction - 2010.02.09 17.11.37.log
c:\program files\FlashGet Network\FlashGet universal\transaction.log
c:\users\Michal\AppData\Roaming\.#
c:\users\Michal\AppData\Roaming\BITS
c:\users\Michal\AppData\Roaming\BITS\BITS.ini
c:\users\Michal\AppData\Roaming\BITS\DHTTable.dat
c:\users\Michal\AppData\Roaming\BITS\ProxyList.ini
c:\users\Michal\AppData\Roaming\BITS\UPnP.ini
c:\users\Michal\AppData\Roaming\inst.exe
c:\users\Michal\DocumentsBbt037_save2pc.exe
c:\users\Michal\DocumentsCel42b_save2pc.exe
c:\users\Michal\DocumentsCrT1Dq_save2pc.exe
c:\users\Michal\DocumentsEvx6Gg_save2pc.exe
c:\users\Michal\DocumentsGvo2N1_save2pc.exe
c:\users\Michal\DocumentsJtt8Rd_save2pc.exe
c:\users\Michal\DocumentsJvU8Xh_save2pc.exe
c:\users\Michal\DocumentsKaA475_save2pc.exe
c:\users\Michal\DocumentsKmO399_save2pc.exe
c:\users\Michal\DocumentsNwj7J7_save2pc.exe
c:\users\Michal\DocumentsPuT017_save2pc.exe
c:\users\Michal\DocumentsTkQ8Kl_save2pc.exe
c:\users\Michal\DocumentsUhx74h_save2pc.exe
c:\users\Michal\DocumentsYwH898_save2pc.exe
c:\windows\system32\kr_done1
----- Souboroví replikátoři -----
c:\windows\Installer\{04676477-AE5B-B715-AFD6-41271A8F52FC}\ARPPRODUCTICON.exe
c:\windows\Installer\{0D0CD81B-813F-6908-B3B6-13B898F71375}\ARPPRODUCTICON.exe
c:\windows\Installer\{0F3D063B-CE3D-76AF-03DF-3D8A4A9E7E3C}\ARPPRODUCTICON.exe
c:\windows\Installer\{1176FD4E-FAC3-D758-AB3E-AF309434314C}\ARPPRODUCTICON.exe
c:\windows\Installer\{1783EBB5-DF8A-0FEE-C5EC-7F553C14BA1B}\ARPPRODUCTICON.exe
c:\windows\Installer\{1D34D263-8A04-2C73-444C-AB764FF7F6FF}\ARPPRODUCTICON.exe
c:\windows\Installer\{25C62DCD-C476-A404-7811-E1E8639D14A4}\ARPPRODUCTICON.exe
c:\windows\Installer\{31CF6C0E-51F0-41D2-B088-A6A143C4303C}\ARPPRODUCTICON.exe
c:\windows\Installer\{38AFEEC6-E197-6843-17D1-D71FA6807D9E}\ARPPRODUCTICON.exe
c:\windows\Installer\{392A601F-AD57-B204-5D4E-A6523D0D28F6}\ARPPRODUCTICON.exe
c:\windows\Installer\{3CB8C9BC-6D97-9882-21E8-2CCCA6970978}\ARPPRODUCTICON.exe
c:\windows\Installer\{3FF168BC-0B41-C839-BA48-36FD5E569499}\ARPPRODUCTICON.exe
c:\windows\Installer\{41EAA86A-2F69-3D8D-3B66-2CC15F92360C}\ARPPRODUCTICON.exe
c:\windows\Installer\{4A9482B4-95F9-1DDD-B9EB-DA37A18C09F8}\ARPPRODUCTICON.exe
c:\windows\Installer\{4E1CD3D5-D4EE-4246-AE24-F0FD5A60390D}\ARPPRODUCTICON.exe
c:\windows\Installer\{4FFD1AB4-54F0-4069-88D9-3A55B38F874B}\ARPPRODUCTICON.exe
c:\windows\Installer\{547C6AA8-607A-5013-0F00-4BD8EE229A90}\ARPPRODUCTICON.exe
c:\windows\Installer\{61910C5A-20F8-AE54-B00A-DF05348D564E}\ARPPRODUCTICON.exe
c:\windows\Installer\{6BD7AAEF-6201-6C4E-1857-F120475A2BE3}\ARPPRODUCTICON.exe
c:\windows\Installer\{7033275B-193E-6495-368D-02586B72796F}\ARPPRODUCTICON.exe
c:\windows\Installer\{72736F5F-520D-472A-88CC-7B02872FD34E}\ARPPRODUCTICON.exe
c:\windows\Installer\{7397EDED-F38A-4654-B669-BF61065803D0}\ARPPRODUCTICON.exe
c:\windows\Installer\{81601299-AD02-403C-9A47-93C509FE2EC2}\ARPPRODUCTICON.exe
c:\windows\Installer\{8B75BD18-6553-924C-49BC-3EC911FA7EA0}\ARPPRODUCTICON.exe
c:\windows\Installer\{8C51BA88-BE5A-A364-4CB5-F60B8F92F905}\ARPPRODUCTICON.exe
c:\windows\Installer\{A6911A2D-0E76-30C4-0B09-E7D824446B45}\ARPPRODUCTICON.exe
c:\windows\Installer\{CA777D61-2F1F-CB92-E028-F2F1AB3F0336}\ARPPRODUCTICON.exe
c:\windows\Installer\{CB68B722-C49C-F179-0FF6-ECED5F9C78FE}\ARPPRODUCTICON.exe
c:\windows\Installer\{CD96F5A7-4354-A8BC-C50E-56A7FA3F40F0}\ARPPRODUCTICON.exe
c:\windows\Installer\{CE4C20AF-28D1-F986-33CF-56D65A2B53A9}\ARPPRODUCTICON.exe
c:\windows\Installer\{CE56F5FB-71F6-9EE5-F5FF-A78DCAFAB66E}\ARPPRODUCTICON.exe
c:\windows\Installer\{D06463DF-B9A6-CA5A-35EF-10BE58C66590}\ARPPRODUCTICON.exe
c:\windows\Installer\{D6714393-A66D-4EB8-9896-2BACB7CBCA62}\ARPPRODUCTICON.exe
c:\windows\Installer\{D8EFDCFC-3BC2-E252-3E84-D0168AD342A0}\ARPPRODUCTICON.exe
c:\windows\Installer\{DF6F459C-8B89-4F88-B63F-A2E136BB6B79}\ARPPRODUCTICON.exe
c:\windows\Installer\{EFAE8FD0-A385-D88B-BBF5-B145CED0BACE}\ARPPRODUCTICON.exe
c:\windows\Installer\{F7D92219-01E8-BDE6-C6B4-EF131CD7D71C}\ARPPRODUCTICON.exe
c:\windows\Installer\{FA3CF05E-6A32-3227-1376-EF10809A34F1}\ARPPRODUCTICON.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-05-20 do 2010-06-20 )))))))))))))))))))))))))))))))
.
2010-06-20 06:32 . 2010-06-20 06:33 -------- d-----w- c:\users\Michal\AppData\Local\temp
2010-06-20 06:32 . 2010-06-20 06:32 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-06-19 12:16 . 2010-06-19 12:16 -------- d-----w- c:\program files\Dreamcatcher
2010-06-19 06:11 . 2010-06-19 06:11 -------- d-----w- c:\users\Michal\AppData\Local\Runscanner.net
2010-06-19 05:38 . 2010-06-19 05:38 -------- d-----w- C:\_OTM
2010-06-18 09:51 . 2010-06-18 09:51 -------- d-----w- c:\program files\Common Files\Skype
2010-06-16 10:08 . 2010-06-16 10:09 -------- d-----w- c:\program files\The KMPlayer
2010-06-16 09:41 . 2010-06-16 09:41 -------- d-----w- c:\program files\GameSpy Arcade
2010-06-16 09:35 . 2010-06-16 09:35 623 ----a-w- c:\windows\eReg.dat
2010-06-16 09:30 . 2010-06-16 09:30 -------- d-----w- c:\program files\EA GAMES
2010-06-15 18:35 . 2010-06-15 18:35 -------- d-----w- c:\program files\ESET
2010-06-11 09:07 . 2010-05-01 14:49 2326528 ----a-w- c:\windows\system32\win32k.sys
2010-06-11 09:07 . 2010-03-05 07:42 67584 ----a-w- c:\windows\system32\asycfilt.dll
2010-06-11 09:07 . 2010-05-21 05:18 977920 ----a-w- c:\windows\system32\wininet.dll
2010-06-11 09:06 . 2010-05-27 07:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-06-11 09:06 . 2010-05-27 03:49 293888 ----a-w- c:\windows\system32\atmfd.dll
2010-06-07 17:25 . 2010-06-17 17:23 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-06-06 12:25 . 2010-06-07 17:24 -------- d-----w- c:\programdata\Symantec
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\programdata\Norton
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\windows\system32\drivers\NSS
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\program files\Norton Security Scan
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\programdata\NortonInstaller
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\program files\NortonInstaller
2010-06-06 09:31 . 2010-06-06 09:31 56765 ----a-w- c:\programdata\DivX\DivXPlusShortcuts\Uninstaller.exe
2010-06-06 09:31 . 2010-06-06 09:31 56997 ----a-w- c:\programdata\DivX\WebPlayer\Uninstaller.exe
2010-06-06 09:31 . 2010-06-06 09:31 53600 ----a-w- c:\programdata\DivX\Update\Uninstaller.exe
2010-06-06 09:31 . 2010-06-06 09:31 57715 ----a-w- c:\programdata\DivX\Player\Uninstaller.exe
2010-06-06 09:30 . 2010-06-06 09:30 54153 ----a-w- c:\programdata\DivX\DFXPlugin\Uninstaller.exe
2010-06-06 09:29 . 2010-06-06 09:29 54128 ----a-w- c:\programdata\DivX\Converter\Uninstaller.exe
2010-06-06 09:29 . 2010-06-06 09:29 54644 ----a-w- c:\programdata\DivX\TranscodeEngine\Uninstaller.exe
2010-06-06 09:29 . 2010-06-06 09:29 54101 ----a-w- c:\programdata\DivX\MPEG2Plugin\Uninstaller.exe
2010-05-31 15:32 . 2010-05-31 15:32 -------- d-----w- c:\programdata\WEBREG
2010-05-31 15:31 . 2010-05-31 15:37 -------- d-----w- c:\users\Michal\AppData\Roaming\HP
2010-05-31 15:30 . 2010-05-31 15:30 -------- d-----w- c:\users\Michal\AppData\Local\HP
2010-05-31 15:22 . 2010-05-31 15:22 -------- d-----w- c:\programdata\HP Product Assistant
2010-05-31 15:18 . 2010-05-31 15:18 -------- d-----w- c:\program files\Common Files\HP
2010-05-31 15:18 . 2010-05-31 15:18 -------- d-----w- c:\program files\Common Files\Hewlett-Packard
2010-05-31 15:15 . 2010-05-31 15:25 -------- d-----w- c:\program files\HP
2010-05-31 15:13 . 2010-05-31 15:32 184362 ----a-w- c:\windows\hpoins14.dat
2010-05-31 15:13 . 2009-10-08 02:00 1498 ------w- c:\windows\hpomdl14.dat
2010-05-31 15:12 . 2009-07-08 10:51 452408 ----a-w- c:\windows\system32\hpzids01.dll
2010-05-31 15:12 . 2009-07-08 10:51 364544 ----a-w- c:\windows\system32\hppldcoi.dll
2010-05-31 15:12 . 2009-07-08 10:51 675840 ----a-w- c:\windows\system32\hpowiax3.dll
2010-05-31 15:12 . 2009-07-08 10:51 569344 ----a-w- c:\windows\system32\hpotscl3.dll
2010-05-31 15:12 . 2009-07-08 10:51 303104 ----a-w- c:\windows\system32\hpovst10.dll
2010-05-31 13:19 . 2010-05-31 15:31 -------- d-----w- c:\programdata\HP
2010-05-27 15:19 . 2010-04-23 07:13 2048 ----a-w- c:\windows\system32\tzres.dll
2010-05-25 16:58 . 2010-05-30 07:47 -------- d-----w- c:\program files\Sonne Video Converter
2010-05-23 17:55 . 2010-06-06 09:45 57344 ----a-w- c:\programdata\DivX\RunAsUser\RUNASUSERPROCESS.dll
2010-05-23 17:55 . 2010-06-06 09:25 1062184 ----a-w- c:\programdata\DivX\Setup\Resource.dll
2010-05-23 17:55 . 2010-06-06 09:24 895256 ----a-w- c:\programdata\DivX\Setup\DivXSetup.exe
2010-05-23 17:55 . 2009-12-04 18:30 530625 ----a-w- c:\programdata\DivX\DivX7\DivX Converter\DivXConverterUninstall.exe
2010-05-23 17:55 . 2009-12-04 18:30 530625 ----a-w- c:\programdata\DivX\DivX7\DivX Plus DirectShow Filters\DivXDSFiltersUninstall.exe
2010-05-23 17:54 . 2010-05-23 17:54 84040 ----a-w- c:\programdata\DivX\TransferWizard\Uninstaller.exe
2010-05-23 17:54 . 2010-05-23 17:54 57609 ----a-w- c:\programdata\DivX\MFComponents\Uninstaller.exe
2010-05-23 17:54 . 2010-05-23 17:54 57054 ----a-w- c:\programdata\DivX\DSDesktopComponents\Uninstaller.exe
2010-05-23 17:54 . 2010-05-23 17:54 54166 ----a-w- c:\programdata\DivX\DSAVCDecoder\Uninstaller.exe
2010-05-23 17:54 . 2010-05-23 17:54 57532 ----a-w- c:\programdata\DivX\DSASPDecoder\Uninstaller.exe
2010-05-23 17:53 . 2010-05-23 17:53 56458 ----a-w- c:\programdata\DivX\DivXDecoderShortcut\Uninstaller.exe
2010-05-23 17:53 . 2010-05-23 17:53 54174 ----a-w- c:\programdata\DivX\DSAACDecoder\Uninstaller.exe
2010-05-23 17:53 . 2010-05-23 17:53 57409 ----a-w- c:\programdata\DivX\ControlPanel\Uninstaller.exe
2010-05-23 17:53 . 2010-05-23 17:53 52963 ----a-w- c:\programdata\DivX\MSVC80CRTRedist\Uninstaller.exe
2010-05-23 17:52 . 2010-05-23 17:52 54073 ----a-w- c:\programdata\DivX\Qt4.5\Uninstaller.exe
2010-05-23 17:52 . 2010-05-23 17:52 56969 ----a-w- c:\programdata\DivX\ASPEncoder\Uninstaller.exe
2010-05-23 17:43 . 2010-06-06 09:45 -------- d-----w- c:\programdata\DivX
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-20 06:21 . 2009-12-04 19:29 -------- d-----w- c:\users\Michal\AppData\Roaming\Skype
2010-06-19 18:46 . 2010-03-10 18:00 1 ----a-w- c:\users\Michal\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-06-19 17:48 . 2009-12-04 19:33 -------- d-----w- c:\users\Michal\AppData\Roaming\skypePM
2010-06-19 12:17 . 2009-11-29 21:15 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-06-18 18:20 . 2009-12-17 18:59 14 ----a-w- c:\windows\popcinfo.dat
2010-06-18 09:56 . 2010-03-08 09:34 -------- d-----w- c:\program files\JDownloader
2010-06-16 10:04 . 2010-01-16 19:18 -------- d-----w- c:\users\Michal\AppData\Roaming\AIMP
2010-06-14 12:47 . 2009-07-14 08:44 622660 ----a-w- c:\windows\system32\perfh005.dat
2010-06-14 12:47 . 2009-07-14 08:44 118810 ----a-w- c:\windows\system32\perfc005.dat
2010-06-08 18:38 . 2009-12-25 16:00 -------- d-----w- c:\users\Michal\AppData\Roaming\LimeWire
2010-06-08 10:14 . 2010-02-10 09:25 -------- d-----w- c:\program files\Treasures of Ancient Cavern
2010-06-06 09:31 . 2009-12-04 18:30 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-06-06 09:31 . 2009-12-04 18:30 -------- d-----w- c:\program files\DivX
2010-06-04 17:05 . 2010-03-05 16:22 -------- d-----w- c:\program files\Common Files\DVDVideoSoft
2010-05-31 15:30 . 2009-11-30 15:43 62504 ----a-w- c:\users\Michal\AppData\Local\GDIPFONTCACHEV1.DAT
2010-05-27 17:25 . 2009-12-13 11:53 -------- d-----w- c:\users\Michal\AppData\Roaming\Vso
2010-05-25 16:59 . 2009-12-14 12:54 81920 ----a-w- c:\users\Michal\AppData\Roaming\ezpinst.exe
2010-05-25 16:59 . 2009-12-14 12:54 81920 ----a-w- c:\users\Michal\AppData\Roaming\ezpinst.exe
2010-05-25 16:59 . 2009-12-13 11:53 47360 ----a-w- c:\users\Michal\AppData\Roaming\pcouffin.sys
2010-05-25 16:59 . 2009-12-13 11:53 47360 ----a-w- c:\users\Michal\AppData\Roaming\pcouffin.sys
2010-05-24 14:45 . 2009-12-05 13:07 -------- d-----w- c:\users\Michal\AppData\Roaming\DivX
2010-05-23 17:45 . 2010-01-22 18:33 -------- d-----w- c:\program files\Google
2010-05-21 12:14 . 2009-11-29 20:05 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-18 16:14 . 2010-05-18 15:43 -------- d-----w- c:\program files\Magic Video Converter
2010-05-16 12:19 . 2010-05-16 12:19 -------- d-----w- c:\program files\AGEIA Technologies
2010-05-16 12:19 . 2010-05-16 12:19 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-05-15 18:12 . 2009-12-25 15:57 -------- d-----w- c:\program files\LimeWire
2010-05-13 15:58 . 2010-01-31 16:48 -------- d-----w- c:\users\Michal\AppData\Roaming\Nokia
2010-05-13 15:51 . 2010-01-31 16:48 -------- d-----w- c:\program files\Common Files\Nokia
2010-05-13 15:51 . 2010-01-31 16:47 -------- d-----w- c:\program files\Nokia
2010-05-13 15:51 . 2010-05-13 15:51 -------- d-----w- c:\program files\PC Connectivity Solution
2010-05-13 15:47 . 2010-05-13 15:47 12212040 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X86-ENU.exe
2010-05-13 15:47 . 2010-05-13 15:47 13930312 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X64-ENU.exe
2010-05-13 15:47 . 2010-05-13 15:47 61440 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\WMF11Runx86.exe
2010-05-13 15:47 . 2010-05-13 15:47 58880 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\WMF11Runx64.exe
2010-05-13 15:47 . 2010-05-13 15:47 77824 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\Run_XML6_SP1.exe
2010-05-13 15:47 . 2010-05-13 15:47 50000 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\pcswpc.exe
2010-05-13 15:46 . 2010-05-13 15:46 -------- d-----w- c:\programdata\OviInstallerCache
2010-05-13 15:45 . 2010-05-13 15:46 98366952 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Nokia_Ovi_Suite_webinstaller_ALL.exe
2010-05-13 15:38 . 2010-01-31 16:47 -------- d-----w- c:\users\Michal\AppData\Roaming\PC Suite
2010-05-12 16:45 . 2009-07-14 02:37 -------- d-----w- c:\program files\Windows Mail
2010-05-02 10:07 . 2009-12-25 19:09 -------- d-----w- c:\program files\Opera
2010-04-23 10:57 . 2010-04-23 10:56 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-04-23 10:57 . 2010-01-09 10:39 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2010-04-12 15:29 . 2010-04-17 09:59 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-04-04 16:12 . 2010-04-04 16:12 3909760 ----a-w- c:\users\Michal\AppData\Roaming\ProtectDISC\pe17f5f3ba.dll
2010-03-31 06:23 . 2010-03-31 06:23 96896 ----a-w- c:\windows\system32\drivers\epfwwfpr.sys
2010-03-31 06:22 . 2010-03-31 06:22 114984 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2010-03-31 06:17 . 2010-03-31 06:17 134024 ----a-w- c:\windows\system32\drivers\eamonm.sys
2010-03-25 09:27 . 2010-03-25 09:27 1107264 ----a-w- c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
2010-03-22 12:22 . 2009-12-29 19:45 1247776 ----a-w- c:\windows\RtlExUpd.dll
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll" [2009-10-19 187192]
"{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}"= "c:\program files\DVDVideoSoft\tbDVDV.dll" [2009-11-09 2331672]
"{707db484-2428-402d-afb5-d85b387544c7}"= "c:\program files\Mario_Forever\tbMari.dll" [2009-08-30 2259480]
[HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
[HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
[HKEY_CLASSES_ROOT\clsid\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}]
[HKEY_CLASSES_ROOT\clsid\{707db484-2428-402d-afb5-d85b387544c7}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{707db484-2428-402d-afb5-d85b387544c7}]
2009-08-30 07:28 2259480 ----a-w- c:\program files\Mario_Forever\tbMari.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2010-02-04 15:50 1197448 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}]
2009-11-09 17:38 2331672 ----a-w- c:\program files\DVDVideoSoft\tbDVDV.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
2009-10-19 15:15 1345336 ----a-w- c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2009-10-19 1345336]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448]
"{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}"= "c:\program files\DVDVideoSoft\tbDVDV.dll" [2009-11-09 2331672]
"{707db484-2428-402d-afb5-d85b387544c7}"= "c:\program files\Mario_Forever\tbMari.dll" [2009-08-30 2259480]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CLASSES_ROOT\clsid\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}]
[HKEY_CLASSES_ROOT\clsid\{707db484-2428-402d-afb5-d85b387544c7}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2009-10-19 1345336]
"{707DB484-2428-402D-AFB5-D85B387544C7}"= "c:\program files\Mario_Forever\tbMari.dll" [2009-08-30 2259480]
"{E9911EC6-1BCC-40B0-9993-E0EEA7F6953F}"= "c:\program files\DVDVideoSoft\tbDVDV.dll" [2009-11-09 2331672]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_CLASSES_ROOT\clsid\{707db484-2428-402d-afb5-d85b387544c7}]
[HKEY_CLASSES_ROOT\clsid\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-05-13 26192168]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-03-12 153136]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-02-07 39408]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"NokiaOviSuite2"="c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" [2010-02-24 385928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-09 153136]
"HControlUser"="c:\program files\ASUS\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2009-08-17 6859392]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"SweetIM"="c:\program files\SweetIM\Messenger\SweetIM.exe" [2009-10-20 111928]
"HDAudDeck"="c:\program files\VIA\VIAudioi\VDeck\VDeck.exe" [2009-07-13 1474560]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2009-06-14 307200]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-11-10 98304]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-04-04 36272]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2008-07-22 150528]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2010-06-03 1144104]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-03-31 2145000]
c:\users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-9-16 384512]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2009-9-20 270336]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2009-11-30 691696]
R2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-19 135664]
R3 GarenaPEngine;GarenaPEngine;c:\users\Michal\AppData\Local\Temp\NYJ1CEB.tmp [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-05-19 1343400]
R3 WPRO_40_1340;WinPcap Packet Driver (WPRO_40_1340);c:\windows\system32\drivers\WPRO_40_1340.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2010-03-31 114984]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 acedrv11;acedrv11;c:\windows\system32\drivers\acedrv11.sys [2010-01-20 295432]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-11-11 172032]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2010-03-31 134024]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-03-31 810120]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2010-03-31 96896]
S2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atipmdag.sys [2009-11-11 5092864]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2009-11-11 120320]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-05-22 167936]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2009-07-09 1066496]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Obsah adresáře 'Naplánované úlohy'
2010-06-20 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-19 18:15]
2010-06-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-19 18:15]
2010-06-17 c:\windows\Tasks\Norton Security Scan for Michal.job
- c:\program files\Norton Security Scan\Engine\2.7.3.34\Nss.exe [2010-06-06 12:25]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.daemon-search.com/startpage
mStart Page = hxxp://home.sweetim.com
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
FF - ProfilePath - c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2269050&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.zoznam.sk/
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=2.0.0.1&q=
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBook.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBookDB.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpNeoLogger.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSaturn.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSeymour.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartSelect.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartWebPrinting.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSWPOperation.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPLogging.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTC.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTL.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXREStub.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}\components\SkypeFfComponent.dll
FF - component: c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\components\FirefoxExtension.dll
FF - component: c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\components\WinampTBPlayer.dll
FF - component: c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}\components\FFExternalAlert.dll
FF - component: c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}\components\RadioWMPCore.dll
FF - component: c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\plugins\nphpclipbook.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
HKCU-Run-SRS Audio Sandbox - c:\program files\SRS Labs\Audio Sandbox\SRSSSC.exe
HKCU-Run-LosAlamos - c:\windows\system32\sshnas.dll
HKCU-Run-FlashGet - c:\program files\FlashGet Network\FlashGet universal\FlashGet.exe
HKLM-Run-eagleye - c:\program files\tuEagles\EagleSvr.exe
HKU-Default-Run-Nokia.PCSync - c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe
AddRemove-OggDS - c:\windows\system32\OggDSuninst.exe
AddRemove-Painkiller: slovenčina - c:\program files\Painkiller\Odinštalovať_SK.exe
AddRemove-X-men 3 the official game - c:\program files\Activision\X-Men - The Official Game\Uninstall xmen3_sk.exe
AddRemove-{7B63B2922B174135AFC0E1377DD81EC2} - c:\program files\DivX\DivXCodecUninstall.exe
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\GarenaPEngine]
"ImagePath"="\??\c:\users\Michal\AppData\Local\Temp\NYJ1CEB.tmp"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-3681277941-151801394-3204157296-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:aa,38,cb,6a,ad,f6,d6,4f,5a,6b,98,93,88,e3,7b,42,43,2a,cf,3d,08,b0,db,
96,e2,80,f1,bb,27,c1,39,53,3b,c5,30,59,a9,c2,74,f9,58,0d,b8,81,61,bc,de,00,\
"??"=hex:1c,c3,b7,50,99,2e,14,a1,ab,2f,af,36,f7,66,f8,cf
[HKEY_USERS\S-1-5-21-3681277941-151801394-3204157296-1001\Software\SecuROM\License information*]
"datasecu"=hex:7c,68,2d,c7,8c,87,8e,0d,64,39,00,55,9f,85,5c,b9,f9,0d,19,8f,be,
b4,b0,b9,b4,ca,2d,a4,17,6a,b3,e7,1c,c0,f1,55,1e,aa,96,b8,22,8d,92,71,f2,8b,\
"rkeysecu"=hex:f4,ee,8d,77,19,04,fa,65,f1,d4,c7,8b,17,d9,91,e2
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-06-20 08:34:48
ComboFix-quarantined-files.txt 2010-06-20 06:34
Před spuštěním: Volných bajtů: 75 269 824 512
Po spuštění: Volných bajtů: 76 212 822 016
- - End Of File - - 9A739EFBEE78A3E9D3F30B18F0DF9ED6
Microsoft Windows 7 Professional 6.1.7600.0.1250.420.1029.18.3071.2002 [GMT 2:00]
Spuštěný z: c:\users\Michal\Desktop\ComboFix.exe
* Rezidentní štít AV je zapnutý
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\FlashGet Network
c:\program files\FlashGet Network\FlashGet universal\dbtrans_verbose - 2010.01.23 08.32.24.log
c:\program files\FlashGet Network\FlashGet universal\dbtrans_verbose - 2010.02.09 17.11.37.log
c:\program files\FlashGet Network\FlashGet universal\dbtrans_verbose.log
c:\program files\FlashGet Network\FlashGet universal\fgoption.ini
c:\program files\FlashGet Network\FlashGet universal\P2PCfg.ini
c:\program files\FlashGet Network\FlashGet universal\p2spmgr.ini
c:\program files\FlashGet Network\FlashGet universal\p4spmgr.ini
c:\program files\FlashGet Network\FlashGet universal\Profiles\config.dat
c:\program files\FlashGet Network\FlashGet universal\Profiles\tasks.dat
c:\program files\FlashGet Network\FlashGet universal\transaction - 2010.01.23 08.32.24.log
c:\program files\FlashGet Network\FlashGet universal\transaction - 2010.02.09 17.11.37.log
c:\program files\FlashGet Network\FlashGet universal\transaction.log
c:\users\Michal\AppData\Roaming\.#
c:\users\Michal\AppData\Roaming\BITS
c:\users\Michal\AppData\Roaming\BITS\BITS.ini
c:\users\Michal\AppData\Roaming\BITS\DHTTable.dat
c:\users\Michal\AppData\Roaming\BITS\ProxyList.ini
c:\users\Michal\AppData\Roaming\BITS\UPnP.ini
c:\users\Michal\AppData\Roaming\inst.exe
c:\users\Michal\DocumentsBbt037_save2pc.exe
c:\users\Michal\DocumentsCel42b_save2pc.exe
c:\users\Michal\DocumentsCrT1Dq_save2pc.exe
c:\users\Michal\DocumentsEvx6Gg_save2pc.exe
c:\users\Michal\DocumentsGvo2N1_save2pc.exe
c:\users\Michal\DocumentsJtt8Rd_save2pc.exe
c:\users\Michal\DocumentsJvU8Xh_save2pc.exe
c:\users\Michal\DocumentsKaA475_save2pc.exe
c:\users\Michal\DocumentsKmO399_save2pc.exe
c:\users\Michal\DocumentsNwj7J7_save2pc.exe
c:\users\Michal\DocumentsPuT017_save2pc.exe
c:\users\Michal\DocumentsTkQ8Kl_save2pc.exe
c:\users\Michal\DocumentsUhx74h_save2pc.exe
c:\users\Michal\DocumentsYwH898_save2pc.exe
c:\windows\system32\kr_done1
----- Souboroví replikátoři -----
c:\windows\Installer\{04676477-AE5B-B715-AFD6-41271A8F52FC}\ARPPRODUCTICON.exe
c:\windows\Installer\{0D0CD81B-813F-6908-B3B6-13B898F71375}\ARPPRODUCTICON.exe
c:\windows\Installer\{0F3D063B-CE3D-76AF-03DF-3D8A4A9E7E3C}\ARPPRODUCTICON.exe
c:\windows\Installer\{1176FD4E-FAC3-D758-AB3E-AF309434314C}\ARPPRODUCTICON.exe
c:\windows\Installer\{1783EBB5-DF8A-0FEE-C5EC-7F553C14BA1B}\ARPPRODUCTICON.exe
c:\windows\Installer\{1D34D263-8A04-2C73-444C-AB764FF7F6FF}\ARPPRODUCTICON.exe
c:\windows\Installer\{25C62DCD-C476-A404-7811-E1E8639D14A4}\ARPPRODUCTICON.exe
c:\windows\Installer\{31CF6C0E-51F0-41D2-B088-A6A143C4303C}\ARPPRODUCTICON.exe
c:\windows\Installer\{38AFEEC6-E197-6843-17D1-D71FA6807D9E}\ARPPRODUCTICON.exe
c:\windows\Installer\{392A601F-AD57-B204-5D4E-A6523D0D28F6}\ARPPRODUCTICON.exe
c:\windows\Installer\{3CB8C9BC-6D97-9882-21E8-2CCCA6970978}\ARPPRODUCTICON.exe
c:\windows\Installer\{3FF168BC-0B41-C839-BA48-36FD5E569499}\ARPPRODUCTICON.exe
c:\windows\Installer\{41EAA86A-2F69-3D8D-3B66-2CC15F92360C}\ARPPRODUCTICON.exe
c:\windows\Installer\{4A9482B4-95F9-1DDD-B9EB-DA37A18C09F8}\ARPPRODUCTICON.exe
c:\windows\Installer\{4E1CD3D5-D4EE-4246-AE24-F0FD5A60390D}\ARPPRODUCTICON.exe
c:\windows\Installer\{4FFD1AB4-54F0-4069-88D9-3A55B38F874B}\ARPPRODUCTICON.exe
c:\windows\Installer\{547C6AA8-607A-5013-0F00-4BD8EE229A90}\ARPPRODUCTICON.exe
c:\windows\Installer\{61910C5A-20F8-AE54-B00A-DF05348D564E}\ARPPRODUCTICON.exe
c:\windows\Installer\{6BD7AAEF-6201-6C4E-1857-F120475A2BE3}\ARPPRODUCTICON.exe
c:\windows\Installer\{7033275B-193E-6495-368D-02586B72796F}\ARPPRODUCTICON.exe
c:\windows\Installer\{72736F5F-520D-472A-88CC-7B02872FD34E}\ARPPRODUCTICON.exe
c:\windows\Installer\{7397EDED-F38A-4654-B669-BF61065803D0}\ARPPRODUCTICON.exe
c:\windows\Installer\{81601299-AD02-403C-9A47-93C509FE2EC2}\ARPPRODUCTICON.exe
c:\windows\Installer\{8B75BD18-6553-924C-49BC-3EC911FA7EA0}\ARPPRODUCTICON.exe
c:\windows\Installer\{8C51BA88-BE5A-A364-4CB5-F60B8F92F905}\ARPPRODUCTICON.exe
c:\windows\Installer\{A6911A2D-0E76-30C4-0B09-E7D824446B45}\ARPPRODUCTICON.exe
c:\windows\Installer\{CA777D61-2F1F-CB92-E028-F2F1AB3F0336}\ARPPRODUCTICON.exe
c:\windows\Installer\{CB68B722-C49C-F179-0FF6-ECED5F9C78FE}\ARPPRODUCTICON.exe
c:\windows\Installer\{CD96F5A7-4354-A8BC-C50E-56A7FA3F40F0}\ARPPRODUCTICON.exe
c:\windows\Installer\{CE4C20AF-28D1-F986-33CF-56D65A2B53A9}\ARPPRODUCTICON.exe
c:\windows\Installer\{CE56F5FB-71F6-9EE5-F5FF-A78DCAFAB66E}\ARPPRODUCTICON.exe
c:\windows\Installer\{D06463DF-B9A6-CA5A-35EF-10BE58C66590}\ARPPRODUCTICON.exe
c:\windows\Installer\{D6714393-A66D-4EB8-9896-2BACB7CBCA62}\ARPPRODUCTICON.exe
c:\windows\Installer\{D8EFDCFC-3BC2-E252-3E84-D0168AD342A0}\ARPPRODUCTICON.exe
c:\windows\Installer\{DF6F459C-8B89-4F88-B63F-A2E136BB6B79}\ARPPRODUCTICON.exe
c:\windows\Installer\{EFAE8FD0-A385-D88B-BBF5-B145CED0BACE}\ARPPRODUCTICON.exe
c:\windows\Installer\{F7D92219-01E8-BDE6-C6B4-EF131CD7D71C}\ARPPRODUCTICON.exe
c:\windows\Installer\{FA3CF05E-6A32-3227-1376-EF10809A34F1}\ARPPRODUCTICON.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-05-20 do 2010-06-20 )))))))))))))))))))))))))))))))
.
2010-06-20 06:32 . 2010-06-20 06:33 -------- d-----w- c:\users\Michal\AppData\Local\temp
2010-06-20 06:32 . 2010-06-20 06:32 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-06-19 12:16 . 2010-06-19 12:16 -------- d-----w- c:\program files\Dreamcatcher
2010-06-19 06:11 . 2010-06-19 06:11 -------- d-----w- c:\users\Michal\AppData\Local\Runscanner.net
2010-06-19 05:38 . 2010-06-19 05:38 -------- d-----w- C:\_OTM
2010-06-18 09:51 . 2010-06-18 09:51 -------- d-----w- c:\program files\Common Files\Skype
2010-06-16 10:08 . 2010-06-16 10:09 -------- d-----w- c:\program files\The KMPlayer
2010-06-16 09:41 . 2010-06-16 09:41 -------- d-----w- c:\program files\GameSpy Arcade
2010-06-16 09:35 . 2010-06-16 09:35 623 ----a-w- c:\windows\eReg.dat
2010-06-16 09:30 . 2010-06-16 09:30 -------- d-----w- c:\program files\EA GAMES
2010-06-15 18:35 . 2010-06-15 18:35 -------- d-----w- c:\program files\ESET
2010-06-11 09:07 . 2010-05-01 14:49 2326528 ----a-w- c:\windows\system32\win32k.sys
2010-06-11 09:07 . 2010-03-05 07:42 67584 ----a-w- c:\windows\system32\asycfilt.dll
2010-06-11 09:07 . 2010-05-21 05:18 977920 ----a-w- c:\windows\system32\wininet.dll
2010-06-11 09:06 . 2010-05-27 07:24 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-06-11 09:06 . 2010-05-27 03:49 293888 ----a-w- c:\windows\system32\atmfd.dll
2010-06-07 17:25 . 2010-06-17 17:23 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-06-06 12:25 . 2010-06-07 17:24 -------- d-----w- c:\programdata\Symantec
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\programdata\Norton
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\windows\system32\drivers\NSS
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\program files\Norton Security Scan
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\programdata\NortonInstaller
2010-06-06 12:25 . 2010-06-06 12:25 -------- d-----w- c:\program files\NortonInstaller
2010-06-06 09:31 . 2010-06-06 09:31 56765 ----a-w- c:\programdata\DivX\DivXPlusShortcuts\Uninstaller.exe
2010-06-06 09:31 . 2010-06-06 09:31 56997 ----a-w- c:\programdata\DivX\WebPlayer\Uninstaller.exe
2010-06-06 09:31 . 2010-06-06 09:31 53600 ----a-w- c:\programdata\DivX\Update\Uninstaller.exe
2010-06-06 09:31 . 2010-06-06 09:31 57715 ----a-w- c:\programdata\DivX\Player\Uninstaller.exe
2010-06-06 09:30 . 2010-06-06 09:30 54153 ----a-w- c:\programdata\DivX\DFXPlugin\Uninstaller.exe
2010-06-06 09:29 . 2010-06-06 09:29 54128 ----a-w- c:\programdata\DivX\Converter\Uninstaller.exe
2010-06-06 09:29 . 2010-06-06 09:29 54644 ----a-w- c:\programdata\DivX\TranscodeEngine\Uninstaller.exe
2010-06-06 09:29 . 2010-06-06 09:29 54101 ----a-w- c:\programdata\DivX\MPEG2Plugin\Uninstaller.exe
2010-05-31 15:32 . 2010-05-31 15:32 -------- d-----w- c:\programdata\WEBREG
2010-05-31 15:31 . 2010-05-31 15:37 -------- d-----w- c:\users\Michal\AppData\Roaming\HP
2010-05-31 15:30 . 2010-05-31 15:30 -------- d-----w- c:\users\Michal\AppData\Local\HP
2010-05-31 15:22 . 2010-05-31 15:22 -------- d-----w- c:\programdata\HP Product Assistant
2010-05-31 15:18 . 2010-05-31 15:18 -------- d-----w- c:\program files\Common Files\HP
2010-05-31 15:18 . 2010-05-31 15:18 -------- d-----w- c:\program files\Common Files\Hewlett-Packard
2010-05-31 15:15 . 2010-05-31 15:25 -------- d-----w- c:\program files\HP
2010-05-31 15:13 . 2010-05-31 15:32 184362 ----a-w- c:\windows\hpoins14.dat
2010-05-31 15:13 . 2009-10-08 02:00 1498 ------w- c:\windows\hpomdl14.dat
2010-05-31 15:12 . 2009-07-08 10:51 452408 ----a-w- c:\windows\system32\hpzids01.dll
2010-05-31 15:12 . 2009-07-08 10:51 364544 ----a-w- c:\windows\system32\hppldcoi.dll
2010-05-31 15:12 . 2009-07-08 10:51 675840 ----a-w- c:\windows\system32\hpowiax3.dll
2010-05-31 15:12 . 2009-07-08 10:51 569344 ----a-w- c:\windows\system32\hpotscl3.dll
2010-05-31 15:12 . 2009-07-08 10:51 303104 ----a-w- c:\windows\system32\hpovst10.dll
2010-05-31 13:19 . 2010-05-31 15:31 -------- d-----w- c:\programdata\HP
2010-05-27 15:19 . 2010-04-23 07:13 2048 ----a-w- c:\windows\system32\tzres.dll
2010-05-25 16:58 . 2010-05-30 07:47 -------- d-----w- c:\program files\Sonne Video Converter
2010-05-23 17:55 . 2010-06-06 09:45 57344 ----a-w- c:\programdata\DivX\RunAsUser\RUNASUSERPROCESS.dll
2010-05-23 17:55 . 2010-06-06 09:25 1062184 ----a-w- c:\programdata\DivX\Setup\Resource.dll
2010-05-23 17:55 . 2010-06-06 09:24 895256 ----a-w- c:\programdata\DivX\Setup\DivXSetup.exe
2010-05-23 17:55 . 2009-12-04 18:30 530625 ----a-w- c:\programdata\DivX\DivX7\DivX Converter\DivXConverterUninstall.exe
2010-05-23 17:55 . 2009-12-04 18:30 530625 ----a-w- c:\programdata\DivX\DivX7\DivX Plus DirectShow Filters\DivXDSFiltersUninstall.exe
2010-05-23 17:54 . 2010-05-23 17:54 84040 ----a-w- c:\programdata\DivX\TransferWizard\Uninstaller.exe
2010-05-23 17:54 . 2010-05-23 17:54 57609 ----a-w- c:\programdata\DivX\MFComponents\Uninstaller.exe
2010-05-23 17:54 . 2010-05-23 17:54 57054 ----a-w- c:\programdata\DivX\DSDesktopComponents\Uninstaller.exe
2010-05-23 17:54 . 2010-05-23 17:54 54166 ----a-w- c:\programdata\DivX\DSAVCDecoder\Uninstaller.exe
2010-05-23 17:54 . 2010-05-23 17:54 57532 ----a-w- c:\programdata\DivX\DSASPDecoder\Uninstaller.exe
2010-05-23 17:53 . 2010-05-23 17:53 56458 ----a-w- c:\programdata\DivX\DivXDecoderShortcut\Uninstaller.exe
2010-05-23 17:53 . 2010-05-23 17:53 54174 ----a-w- c:\programdata\DivX\DSAACDecoder\Uninstaller.exe
2010-05-23 17:53 . 2010-05-23 17:53 57409 ----a-w- c:\programdata\DivX\ControlPanel\Uninstaller.exe
2010-05-23 17:53 . 2010-05-23 17:53 52963 ----a-w- c:\programdata\DivX\MSVC80CRTRedist\Uninstaller.exe
2010-05-23 17:52 . 2010-05-23 17:52 54073 ----a-w- c:\programdata\DivX\Qt4.5\Uninstaller.exe
2010-05-23 17:52 . 2010-05-23 17:52 56969 ----a-w- c:\programdata\DivX\ASPEncoder\Uninstaller.exe
2010-05-23 17:43 . 2010-06-06 09:45 -------- d-----w- c:\programdata\DivX
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-20 06:21 . 2009-12-04 19:29 -------- d-----w- c:\users\Michal\AppData\Roaming\Skype
2010-06-19 18:46 . 2010-03-10 18:00 1 ----a-w- c:\users\Michal\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-06-19 17:48 . 2009-12-04 19:33 -------- d-----w- c:\users\Michal\AppData\Roaming\skypePM
2010-06-19 12:17 . 2009-11-29 21:15 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-06-18 18:20 . 2009-12-17 18:59 14 ----a-w- c:\windows\popcinfo.dat
2010-06-18 09:56 . 2010-03-08 09:34 -------- d-----w- c:\program files\JDownloader
2010-06-16 10:04 . 2010-01-16 19:18 -------- d-----w- c:\users\Michal\AppData\Roaming\AIMP
2010-06-14 12:47 . 2009-07-14 08:44 622660 ----a-w- c:\windows\system32\perfh005.dat
2010-06-14 12:47 . 2009-07-14 08:44 118810 ----a-w- c:\windows\system32\perfc005.dat
2010-06-08 18:38 . 2009-12-25 16:00 -------- d-----w- c:\users\Michal\AppData\Roaming\LimeWire
2010-06-08 10:14 . 2010-02-10 09:25 -------- d-----w- c:\program files\Treasures of Ancient Cavern
2010-06-06 09:31 . 2009-12-04 18:30 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-06-06 09:31 . 2009-12-04 18:30 -------- d-----w- c:\program files\DivX
2010-06-04 17:05 . 2010-03-05 16:22 -------- d-----w- c:\program files\Common Files\DVDVideoSoft
2010-05-31 15:30 . 2009-11-30 15:43 62504 ----a-w- c:\users\Michal\AppData\Local\GDIPFONTCACHEV1.DAT
2010-05-27 17:25 . 2009-12-13 11:53 -------- d-----w- c:\users\Michal\AppData\Roaming\Vso
2010-05-25 16:59 . 2009-12-14 12:54 81920 ----a-w- c:\users\Michal\AppData\Roaming\ezpinst.exe
2010-05-25 16:59 . 2009-12-14 12:54 81920 ----a-w- c:\users\Michal\AppData\Roaming\ezpinst.exe
2010-05-25 16:59 . 2009-12-13 11:53 47360 ----a-w- c:\users\Michal\AppData\Roaming\pcouffin.sys
2010-05-25 16:59 . 2009-12-13 11:53 47360 ----a-w- c:\users\Michal\AppData\Roaming\pcouffin.sys
2010-05-24 14:45 . 2009-12-05 13:07 -------- d-----w- c:\users\Michal\AppData\Roaming\DivX
2010-05-23 17:45 . 2010-01-22 18:33 -------- d-----w- c:\program files\Google
2010-05-21 12:14 . 2009-11-29 20:05 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-18 16:14 . 2010-05-18 15:43 -------- d-----w- c:\program files\Magic Video Converter
2010-05-16 12:19 . 2010-05-16 12:19 -------- d-----w- c:\program files\AGEIA Technologies
2010-05-16 12:19 . 2010-05-16 12:19 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-05-15 18:12 . 2009-12-25 15:57 -------- d-----w- c:\program files\LimeWire
2010-05-13 15:58 . 2010-01-31 16:48 -------- d-----w- c:\users\Michal\AppData\Roaming\Nokia
2010-05-13 15:51 . 2010-01-31 16:48 -------- d-----w- c:\program files\Common Files\Nokia
2010-05-13 15:51 . 2010-01-31 16:47 -------- d-----w- c:\program files\Nokia
2010-05-13 15:51 . 2010-05-13 15:51 -------- d-----w- c:\program files\PC Connectivity Solution
2010-05-13 15:47 . 2010-05-13 15:47 12212040 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X86-ENU.exe
2010-05-13 15:47 . 2010-05-13 15:47 13930312 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X64-ENU.exe
2010-05-13 15:47 . 2010-05-13 15:47 61440 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\WMF11Runx86.exe
2010-05-13 15:47 . 2010-05-13 15:47 58880 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\WMF11Runx64.exe
2010-05-13 15:47 . 2010-05-13 15:47 77824 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\Run_XML6_SP1.exe
2010-05-13 15:47 . 2010-05-13 15:47 50000 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Installer\CommonCustomActions\pcswpc.exe
2010-05-13 15:46 . 2010-05-13 15:46 -------- d-----w- c:\programdata\OviInstallerCache
2010-05-13 15:45 . 2010-05-13 15:46 98366952 ----a-w- c:\programdata\OviInstallerCache\{DEE1E2E5-B553-4F88-9DE7-23CBEA5D739C}\Nokia_Ovi_Suite_webinstaller_ALL.exe
2010-05-13 15:38 . 2010-01-31 16:47 -------- d-----w- c:\users\Michal\AppData\Roaming\PC Suite
2010-05-12 16:45 . 2009-07-14 02:37 -------- d-----w- c:\program files\Windows Mail
2010-05-02 10:07 . 2009-12-25 19:09 -------- d-----w- c:\program files\Opera
2010-04-23 10:57 . 2010-04-23 10:56 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-04-23 10:57 . 2010-01-09 10:39 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2010-04-12 15:29 . 2010-04-17 09:59 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-04-04 16:12 . 2010-04-04 16:12 3909760 ----a-w- c:\users\Michal\AppData\Roaming\ProtectDISC\pe17f5f3ba.dll
2010-03-31 06:23 . 2010-03-31 06:23 96896 ----a-w- c:\windows\system32\drivers\epfwwfpr.sys
2010-03-31 06:22 . 2010-03-31 06:22 114984 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2010-03-31 06:17 . 2010-03-31 06:17 134024 ----a-w- c:\windows\system32\drivers\eamonm.sys
2010-03-25 09:27 . 2010-03-25 09:27 1107264 ----a-w- c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
2010-03-22 12:22 . 2009-12-29 19:45 1247776 ----a-w- c:\windows\RtlExUpd.dll
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll" [2009-10-19 187192]
"{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}"= "c:\program files\DVDVideoSoft\tbDVDV.dll" [2009-11-09 2331672]
"{707db484-2428-402d-afb5-d85b387544c7}"= "c:\program files\Mario_Forever\tbMari.dll" [2009-08-30 2259480]
[HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
[HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
[HKEY_CLASSES_ROOT\clsid\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}]
[HKEY_CLASSES_ROOT\clsid\{707db484-2428-402d-afb5-d85b387544c7}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{707db484-2428-402d-afb5-d85b387544c7}]
2009-08-30 07:28 2259480 ----a-w- c:\program files\Mario_Forever\tbMari.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2010-02-04 15:50 1197448 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}]
2009-11-09 17:38 2331672 ----a-w- c:\program files\DVDVideoSoft\tbDVDV.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
2009-10-19 15:15 1345336 ----a-w- c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2009-10-19 1345336]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448]
"{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}"= "c:\program files\DVDVideoSoft\tbDVDV.dll" [2009-11-09 2331672]
"{707db484-2428-402d-afb5-d85b387544c7}"= "c:\program files\Mario_Forever\tbMari.dll" [2009-08-30 2259480]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CLASSES_ROOT\clsid\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}]
[HKEY_CLASSES_ROOT\clsid\{707db484-2428-402d-afb5-d85b387544c7}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2009-10-19 1345336]
"{707DB484-2428-402D-AFB5-D85B387544C7}"= "c:\program files\Mario_Forever\tbMari.dll" [2009-08-30 2259480]
"{E9911EC6-1BCC-40B0-9993-E0EEA7F6953F}"= "c:\program files\DVDVideoSoft\tbDVDV.dll" [2009-11-09 2331672]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_CLASSES_ROOT\clsid\{707db484-2428-402d-afb5-d85b387544c7}]
[HKEY_CLASSES_ROOT\clsid\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-05-13 26192168]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-03-12 153136]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-02-07 39408]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"NokiaOviSuite2"="c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" [2010-02-24 385928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-09 153136]
"HControlUser"="c:\program files\ASUS\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2009-08-17 6859392]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"SweetIM"="c:\program files\SweetIM\Messenger\SweetIM.exe" [2009-10-20 111928]
"HDAudDeck"="c:\program files\VIA\VIAudioi\VDeck\VDeck.exe" [2009-07-13 1474560]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2009-06-14 307200]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-11-10 98304]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-04-04 36272]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2008-07-22 150528]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2010-06-03 1144104]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-03-31 2145000]
c:\users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-9-16 384512]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2009-9-20 270336]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2009-11-30 691696]
R2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-19 135664]
R3 GarenaPEngine;GarenaPEngine;c:\users\Michal\AppData\Local\Temp\NYJ1CEB.tmp [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-05-19 1343400]
R3 WPRO_40_1340;WinPcap Packet Driver (WPRO_40_1340);c:\windows\system32\drivers\WPRO_40_1340.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2010-03-31 114984]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 acedrv11;acedrv11;c:\windows\system32\drivers\acedrv11.sys [2010-01-20 295432]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-11-11 172032]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2010-03-31 134024]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-03-31 810120]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2010-03-31 96896]
S2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atipmdag.sys [2009-11-11 5092864]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2009-11-11 120320]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-05-22 167936]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2009-07-09 1066496]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Obsah adresáře 'Naplánované úlohy'
2010-06-20 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-19 18:15]
2010-06-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-19 18:15]
2010-06-17 c:\windows\Tasks\Norton Security Scan for Michal.job
- c:\program files\Norton Security Scan\Engine\2.7.3.34\Nss.exe [2010-06-06 12:25]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.daemon-search.com/startpage
mStart Page = hxxp://home.sweetim.com
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
FF - ProfilePath - c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2269050&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.zoznam.sk/
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=2.0.0.1&q=
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBook.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBookDB.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpNeoLogger.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSaturn.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSeymour.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartSelect.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartWebPrinting.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSWPOperation.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPLogging.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTC.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTL.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXREStub.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}\components\SkypeFfComponent.dll
FF - component: c:\program files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\components\FirefoxExtension.dll
FF - component: c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\components\WinampTBPlayer.dll
FF - component: c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}\components\FFExternalAlert.dll
FF - component: c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}\components\RadioWMPCore.dll
FF - component: c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\l9rhcwr4.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\plugins\nphpclipbook.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
HKCU-Run-SRS Audio Sandbox - c:\program files\SRS Labs\Audio Sandbox\SRSSSC.exe
HKCU-Run-LosAlamos - c:\windows\system32\sshnas.dll
HKCU-Run-FlashGet - c:\program files\FlashGet Network\FlashGet universal\FlashGet.exe
HKLM-Run-eagleye - c:\program files\tuEagles\EagleSvr.exe
HKU-Default-Run-Nokia.PCSync - c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe
AddRemove-OggDS - c:\windows\system32\OggDSuninst.exe
AddRemove-Painkiller: slovenčina - c:\program files\Painkiller\Odinštalovať_SK.exe
AddRemove-X-men 3 the official game - c:\program files\Activision\X-Men - The Official Game\Uninstall xmen3_sk.exe
AddRemove-{7B63B2922B174135AFC0E1377DD81EC2} - c:\program files\DivX\DivXCodecUninstall.exe
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\GarenaPEngine]
"ImagePath"="\??\c:\users\Michal\AppData\Local\Temp\NYJ1CEB.tmp"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-3681277941-151801394-3204157296-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:aa,38,cb,6a,ad,f6,d6,4f,5a,6b,98,93,88,e3,7b,42,43,2a,cf,3d,08,b0,db,
96,e2,80,f1,bb,27,c1,39,53,3b,c5,30,59,a9,c2,74,f9,58,0d,b8,81,61,bc,de,00,\
"??"=hex:1c,c3,b7,50,99,2e,14,a1,ab,2f,af,36,f7,66,f8,cf
[HKEY_USERS\S-1-5-21-3681277941-151801394-3204157296-1001\Software\SecuROM\License information*]
"datasecu"=hex:7c,68,2d,c7,8c,87,8e,0d,64,39,00,55,9f,85,5c,b9,f9,0d,19,8f,be,
b4,b0,b9,b4,ca,2d,a4,17,6a,b3,e7,1c,c0,f1,55,1e,aa,96,b8,22,8d,92,71,f2,8b,\
"rkeysecu"=hex:f4,ee,8d,77,19,04,fa,65,f1,d4,c7,8b,17,d9,91,e2
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-06-20 08:34:48
ComboFix-quarantined-files.txt 2010-06-20 06:34
Před spuštěním: Volných bajtů: 75 269 824 512
Po spuštění: Volných bajtů: 76 212 822 016
- - End Of File - - 9A739EFBEE78A3E9D3F30B18F0DF9ED6
- 1danab
- Nováček
- Příspěvky: 1412
- Registrován: 21 říj 2007 13:04
- Bydliště: České Budějovice
- Kontaktovat uživatele:
Re: C:/Windows/system32/sshnas.dll doslo k problemu
zeptám se, pořád se vám zobrazuje hláška při zapnutí notebooku?
Re: C:/Windows/system32/sshnas.dll doslo k problemu
nie uz sa nezobrazuje dakujem velmy pekne za radu 

- 1danab
- Nováček
- Příspěvky: 1412
- Registrován: 21 říj 2007 13:04
- Bydliště: České Budějovice
- Kontaktovat uživatele:
Re: C:/Windows/system32/sshnas.dll doslo k problemu
nemáte zač
kdyby se ještě něco dělo s pc dejte vědět 

