Smart security
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Smart security
Všechny zdravím,prosím o pomoc.Asi před rokem jsem si koupil notebook Acer.Neměl jsem žádný problém až teď.Začlo mě naskakovat neustále okno Smart security.Že mám plno virů a že se mám registrovat,a nevím jak to vymazat,jak se toho zbavit,můžete mě prosííím poradit.Děkuji
Logfile of random's system information tool 1.08 (written by random/random)
Run by Lada at 2010-10-08 11:03:36
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 13 GB (9%) free of 146 GB
Total RAM: 3036 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:03:55, on 8.10.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18943)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\PLFSetI.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Ijysob.exe
C:\Users\Lada\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Windows\VM_STI.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\ProgramData\369d0b\SM369_231.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\conime.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Lada\Downloads\RSIT.exe
C:\Program Files\trend micro\Lada.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.chameleonsearch.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:25412
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\1006261110\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: wit for ie - {75ED56AF-4DC9-4243-A30C-4EF4DD0CA28F} - C:\Program Files\ChameleonTom\wit4ie.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\1006261110\ICQToolBar.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [BigDogPath] C:\Windows\VM_STI.EXE Vimicro USB PC Camera (ZC0301PL)
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [reset] regedit /s reset.reg
O4 - HKLM\..\Run: [NBKeyScan] "D:\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Smart Security] "C:\ProgramData\369d0b\SM369_231.exe" /s /d
O4 - HKCU\..\Run: [SMH2B46TDP] C:\Windows\Ijysob.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
O9 - Extra button: ChameleonTom - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\ChameleonTom\ct.htm
O9 - Extra 'Tools' menuitem: ChameleonTom - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\ChameleonTom\ct.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file)
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate1c9c89d3335d80) (gupdate1c9c89d3335d80) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - D:\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (file missing)
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 14303 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Google Software Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2010-07-26 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75ED56AF-4DC9-4243-A30C-4EF4DD0CA28F}]
WitBHO Class - C:\Program Files\ChameleonTom\wit4ie.dll [2009-06-08 215552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]
ShowBarObj Class - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll [2008-07-29 312880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-11-18 408952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll [2010-09-18 842296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-07-17 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetIM Toolbar Helper - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2010-03-18 1361208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll [2008-07-29 142896]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetIM Toolbar for Internet Explorer - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2010-03-18 1361208]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\1006261110\ICQToolBar.dll [2010-03-28 1017592]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2010-07-26 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2008-07-20 182808]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-09-18 6294048]
"ePower_DMC"=C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe [2008-11-28 417792]
"eAudio"=C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe [2008-09-11 544768]
"eDataSecurity Loader"=C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe [2008-07-29 526896]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-29 61440]
"PLFSetI"=C:\Windows\PLFSetI.exe [2007-10-23 200704]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-04-25 1049896]
"LManager"=C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE [2008-06-04 817672]
"ArcadeDeluxeAgent"=C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2009-09-07 152872]
"PlayMovie"=C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2009-05-21 173288]
"BigDogPath"=C:\Windows\VM_STI.EXE [2005-02-28 53248]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696]
"PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE [2009-07-27 180224]
"CLMLServer"=C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe [2009-07-02 206120]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2010-01-27 611712]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"reset"=regedit /s reset.reg []
"NBKeyScan"=D:\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-08 2221352]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2005-03-17 57393]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2005-03-17 40960]
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2010-04-19 106496]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-06-28 2837864]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-04-28 68856]
"Smart Security"=C:\ProgramData\369d0b\SM369_231.exe [2010-10-04 3919872]
"SMH2B46TDP"=C:\Windows\Ijysob.exe [2010-10-04 199168]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=2
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"D:\Moje hry\Loki\Loki.exe"="D:\Moje hry\Loki\Loki.exe:*:Enabled:Loki"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2010-10-08 11:03:36 ----DC---- C:\rsit
2010-10-08 11:03:36 ----DC---- C:\Program Files\trend micro
2010-10-05 23:22:28 ----DC---- C:\Windows\TEMP
2010-10-05 23:18:17 ----DC---- C:\TEMP
2010-10-05 22:39:19 ----SHDC---- C:\$RECYCLE.BIN
2010-10-05 22:39:10 ----AC---- C:\ComboFix.txt
2010-10-05 22:20:43 ----AC---- C:\Windows\zip.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\SWSC.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\SWREG.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\sed.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\PEV.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\NIRCMD.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\MBR.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\grep.exe
2010-10-05 22:20:25 ----DC---- C:\Windows\ERDNT
2010-10-05 22:17:35 ----DC---- C:\ComboFix
2010-10-05 22:17:17 ----DC---- C:\Qoobox
2010-10-05 22:16:51 ----AC---- C:\Windows\SWXCACLS.exe
2010-10-05 17:52:14 ----AC---- C:\Windows\Ijysoc.exe
2010-10-04 15:35:14 ----AC---- C:\Windows\Ijysob.exe
2010-10-04 14:57:13 ----SHDC---- C:\Users\Lada\AppData\Roaming\Smart Security
2010-10-04 14:57:13 ----SHDC---- C:\ProgramData\SMWDVNSS
2010-10-04 14:56:54 ----SHDC---- C:\ProgramData\369d0b
2010-10-04 14:50:25 ----AC---- C:\Windows\Ijysoa.exe
2010-09-28 22:40:32 ----DC---- C:\Program Files\ChameleonTom
2010-09-28 19:37:42 ----AC---- C:\Windows\system32\tzres.dll
2010-09-15 20:30:50 ----AC---- C:\Windows\system32\usp10.dll
2010-09-15 20:30:48 ----AC---- C:\Windows\system32\spoolsv.exe
2010-09-15 20:30:47 ----AC---- C:\Windows\system32\MP4SDECD.DLL
2010-09-15 20:30:45 ----AC---- C:\Windows\system32\inetcomm.dll
======List of files/folders modified in the last 1 months======
2010-10-08 11:03:36 ----RDC---- C:\Program Files
2010-10-08 10:36:04 ----SHD---- C:\System Volume Information
2010-10-08 10:32:03 ----DC---- C:\Windows\Tasks
2010-10-07 17:49:20 ----DC---- C:\ProgramData\Google Updater
2010-10-07 15:01:16 ----DC---- C:\Windows
2010-10-07 14:59:26 ----SHDC---- C:\Windows\Installer
2010-10-07 14:59:25 ----DC---- C:\Config.Msi
2010-10-07 14:53:37 ----DC---- C:\Windows\system32\Tasks
2010-10-06 17:29:39 ----DC---- C:\Windows\Microsoft.NET
2010-10-06 17:29:29 ----RSDC---- C:\Windows\assembly
2010-10-06 14:35:22 ----DC---- C:\Windows\system32\LogFiles
2010-10-05 23:23:35 ----D---- C:\Windows\winsxs
2010-10-05 22:38:10 ----DC---- C:\Windows\system32\catroot
2010-10-05 22:36:47 ----AC---- C:\Windows\system.ini
2010-10-05 22:36:37 ----DC---- C:\Windows\system32\drivers\etc
2010-10-05 22:35:42 ----DC---- C:\Windows\System32
2010-10-05 22:32:59 ----DC---- C:\Windows\system32\drivers
2010-10-05 22:32:59 ----DC---- C:\Windows\AppPatch
2010-10-05 22:32:58 ----DC---- C:\Program Files\Common Files
2010-10-05 18:34:05 ----HDC---- C:\Program Files\InstallShield Installation Information
2010-10-05 18:13:35 ----DC---- C:\Windows\Logs
2010-10-05 18:05:50 ----DC---- C:\ProgramData\ESET
2010-10-05 17:20:20 ----DC---- C:\Users\Lada\AppData\Roaming\uTorrent
2010-10-05 10:48:15 ----DC---- C:\Windows\inf
2010-10-05 10:48:15 ----AC---- C:\Windows\system32\PerfStringBackup.INI
2010-10-05 10:45:41 ----DC---- C:\Windows\Prefetch
2010-10-04 17:40:19 ----DC---- C:\Program Files\Image-Line
2010-10-04 14:57:13 ----DC---- C:\ProgramData
2010-10-04 00:19:34 ----DC---- C:\Users\Lada\AppData\Roaming\Skype
2010-10-04 00:09:38 ----DC---- C:\Users\Lada\AppData\Roaming\skypePM
2010-10-03 21:28:34 ----DC---- C:\CESTINY
2010-09-29 22:26:42 ----DC---- C:\Program Files\Google
2010-09-29 21:45:43 ----D---- C:\Windows\rescache
2010-09-29 00:54:12 ----DC---- C:\Windows\system32\cs-CZ
2010-09-28 19:34:20 ----DC---- C:\Windows\system32\catroot2
2010-09-23 19:51:17 ----DC---- C:\Users\Lada\AppData\Roaming\ICQ
2010-09-22 22:35:12 ----DC---- C:\Windows\Minidump
2010-09-22 22:35:12 ----DC---- C:\Windows\Debug
2010-09-17 12:36:58 ----DC---- C:\Program Files\Mozilla Firefox
2010-09-15 20:34:13 ----AC---- C:\Windows\system32\mrt.exe
2010-09-15 00:29:34 ----DC---- C:\Users\Lada\AppData\Roaming\Uniblue
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2008-07-20 324120]
R0 PSDFilter;PSDFilter; C:\Windows\system32\DRIVERS\psdfilter.sys [2008-07-29 18992]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\Windows\System32\drivers\sfsync02.sys [2006-07-10 27032]
R0 UBHelper;UBHelper; C:\Windows\system32\drivers\UBHelper.sys [2008-01-30 13824]
R0x01000000 papycpu2;papycpu2; C:\Windows\System32\DRIVERS\papycpu2.sys [2003-01-17 1984]
R0x01000000 papyjoy;papyjoy; C:\Windows\System32\DRIVERS\papyjoy.sys [2003-01-17 1856]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-06-28 23376]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2010-06-28 312912]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-06-28 165456]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-06-28 46672]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2009-07-27 58908]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2010-01-27 73312]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-06-28 17744]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-06-28 50256]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2009-08-24 281760]
R2 int15;int15; \??\C:\Windows\system32\drivers\int15.sys [2008-10-01 12832]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2009-08-24 25888]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2009-11-16 50704]
R2 PSDNServ;PSDNServ; C:\Windows\system32\DRIVERS\PSDNServ.sys [2008-07-29 16944]
R2 psdvdisk;PSDVdisk; C:\Windows\system32\DRIVERS\PSDVdisk.sys [2008-07-29 60464]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-19 8704]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-05-19 912384]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-12-10 4172288]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-02 21264]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2008-03-26 980992]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2008-03-26 207872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-09-18 2169944]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E60x86.sys [2008-05-19 47104]
R3 MarvinBus;Pinnacle Marvin Bus; C:\Windows\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2008-01-30 14848]
R3 pfc;Padus ASPI Shell; C:\Windows\system32\drivers\pfc.sys [2009-06-12 10368]
R3 RTSTOR;Realtek USB 2.0 Card Reader; C:\Windows\system32\drivers\RTSTOR.SYS [2008-03-26 61440]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-04-25 199472]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2008-03-26 661504]
R3 winbondcir;Winbond IR Transceiver; C:\Windows\system32\DRIVERS\winbondcir.sys [2007-03-28 43008]
S3 A310;AVerMedia A310 DVB-T; C:\Windows\system32\DRIVERS\AVerA310USB.sys [2008-07-03 26752]
S3 BDASwCap;AVerMedia A310 BDA DVBT Capture Device; C:\Windows\system32\drivers\AVerA310Cap.sys [2008-07-03 47104]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BthPort;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-02-14 80424]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2007-07-16 80936]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-07-16 16168]
S3 catchme;catchme; \??\C:\Users\Lada\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 MTDVC2;Panasonic DVC USB-SERIAL2 Driver for NT Technology; C:\Windows\system32\DRIVERS\mtdv2ku2.sys [2003-10-15 12288]
S3 MTDVC2_ENUM;Panasonic DVC COM2 Driver for NT Technology; C:\Windows\system32\DRIVERS\mtdv2ks2.sys [2003-10-11 11648]
S3 NETw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-05-05 3658752]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2009-02-09 17664]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2009-02-09 22016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 Pcouffin;Low level access layer for CD devices; C:\Windows\System32\Drivers\Pcouffin.sys []
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 TcUsb;TC USB Kernel Driver; C:\Windows\System32\Drivers\tcusb.sys [2008-04-28 50576]
S3 U81xbus;LGE U8XXX driver (WDM); C:\Windows\system32\DRIVERS\U81xbus.sys [2004-03-29 52352]
S3 U81xmdfl;LGE U8XXX USB WMC Modem Filter; C:\Windows\system32\DRIVERS\U81xmdfl.sys [2004-03-29 6064]
S3 U81xmdm;LGE U8XXX USB WMC Modem Driver; C:\Windows\system32\DRIVERS\U81xmdm.sys [2004-03-29 84480]
S3 U81xmgmt;LGE U8XXX USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\U81xmgmt.sys [2004-03-29 77472]
S3 U81xobex;LGE U8XXX USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\U81xobex.sys [2004-03-29 75456]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2009-02-09 7808]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 usbser;Nokia USB Serial Port; C:\Windows\system32\drivers\usbser.sys [2009-04-11 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2009-02-09 7808]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 ZSMC301b;Vimicro USB PC Camera (ZC0301PL); C:\Windows\System32\Drivers\usbVM31b.sys [2004-12-23 93600]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-09-16 722416]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-07-09 144712]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-12-10 724992]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-06-28 40384]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 CLHNService;CLHNService; C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2009-04-16 75048]
R2 eDataSecurity Service;eDataSecurity Service; C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [2008-07-29 500784]
R2 ETService;Empowering Technology Service; C:\Program Files\Acer\Empowering Technology\Service\ETService.exe [2008-11-28 24576]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2008-07-20 354840]
R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2007-12-06 110592]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; D:\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-09-23 144632]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2010-01-26 75064]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-19 386560]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-06-28 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-06-28 40384]
S2 gupdate1c9c89d3335d80;Služba Google Update (gupdate1c9c89d3335d80); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-04-29 133104]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-07 183280]
S2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe []
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2009-03-30 31048]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-01-20 655624]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 getPlusHelper;@C:\Program Files\NOS\bin\getPlus_Helper.dll,-101; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-09-23 50424]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-06-02 637952]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2009-11-02 320760]
-----------------EOF-----------------
Logfile of random's system information tool 1.08 (written by random/random)
Run by Lada at 2010-10-08 11:03:36
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 13 GB (9%) free of 146 GB
Total RAM: 3036 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:03:55, on 8.10.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18943)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\PLFSetI.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Ijysob.exe
C:\Users\Lada\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Windows\VM_STI.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\ProgramData\369d0b\SM369_231.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\conime.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Lada\Downloads\RSIT.exe
C:\Program Files\trend micro\Lada.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.chameleonsearch.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:25412
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\1006261110\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: wit for ie - {75ED56AF-4DC9-4243-A30C-4EF4DD0CA28F} - C:\Program Files\ChameleonTom\wit4ie.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\1006261110\ICQToolBar.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [BigDogPath] C:\Windows\VM_STI.EXE Vimicro USB PC Camera (ZC0301PL)
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [reset] regedit /s reset.reg
O4 - HKLM\..\Run: [NBKeyScan] "D:\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Smart Security] "C:\ProgramData\369d0b\SM369_231.exe" /s /d
O4 - HKCU\..\Run: [SMH2B46TDP] C:\Windows\Ijysob.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
O9 - Extra button: ChameleonTom - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\ChameleonTom\ct.htm
O9 - Extra 'Tools' menuitem: ChameleonTom - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\ChameleonTom\ct.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file)
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate1c9c89d3335d80) (gupdate1c9c89d3335d80) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - D:\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (file missing)
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 14303 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Google Software Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2010-07-26 798771]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75ED56AF-4DC9-4243-A30C-4EF4DD0CA28F}]
WitBHO Class - C:\Program Files\ChameleonTom\wit4ie.dll [2009-06-08 215552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]
ShowBarObj Class - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll [2008-07-29 312880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-11-18 408952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll [2010-09-18 842296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-07-17 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetIM Toolbar Helper - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2010-03-18 1361208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll [2008-07-29 142896]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetIM Toolbar for Internet Explorer - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2010-03-18 1361208]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\1006261110\ICQToolBar.dll [2010-03-28 1017592]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2010-07-26 798771]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2008-07-20 182808]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-09-18 6294048]
"ePower_DMC"=C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe [2008-11-28 417792]
"eAudio"=C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe [2008-09-11 544768]
"eDataSecurity Loader"=C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe [2008-07-29 526896]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-29 61440]
"PLFSetI"=C:\Windows\PLFSetI.exe [2007-10-23 200704]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-04-25 1049896]
"LManager"=C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE [2008-06-04 817672]
"ArcadeDeluxeAgent"=C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2009-09-07 152872]
"PlayMovie"=C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2009-05-21 173288]
"BigDogPath"=C:\Windows\VM_STI.EXE [2005-02-28 53248]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696]
"PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE [2009-07-27 180224]
"CLMLServer"=C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe [2009-07-02 206120]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2010-01-27 611712]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"reset"=regedit /s reset.reg []
"NBKeyScan"=D:\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-08 2221352]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2005-03-17 57393]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2005-03-17 40960]
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2010-04-19 106496]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-06-28 2837864]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-04-28 68856]
"Smart Security"=C:\ProgramData\369d0b\SM369_231.exe [2010-10-04 3919872]
"SMH2B46TDP"=C:\Windows\Ijysob.exe [2010-10-04 199168]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=2
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"D:\Moje hry\Loki\Loki.exe"="D:\Moje hry\Loki\Loki.exe:*:Enabled:Loki"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2010-10-08 11:03:36 ----DC---- C:\rsit
2010-10-08 11:03:36 ----DC---- C:\Program Files\trend micro
2010-10-05 23:22:28 ----DC---- C:\Windows\TEMP
2010-10-05 23:18:17 ----DC---- C:\TEMP
2010-10-05 22:39:19 ----SHDC---- C:\$RECYCLE.BIN
2010-10-05 22:39:10 ----AC---- C:\ComboFix.txt
2010-10-05 22:20:43 ----AC---- C:\Windows\zip.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\SWSC.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\SWREG.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\sed.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\PEV.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\NIRCMD.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\MBR.exe
2010-10-05 22:20:43 ----AC---- C:\Windows\grep.exe
2010-10-05 22:20:25 ----DC---- C:\Windows\ERDNT
2010-10-05 22:17:35 ----DC---- C:\ComboFix
2010-10-05 22:17:17 ----DC---- C:\Qoobox
2010-10-05 22:16:51 ----AC---- C:\Windows\SWXCACLS.exe
2010-10-05 17:52:14 ----AC---- C:\Windows\Ijysoc.exe
2010-10-04 15:35:14 ----AC---- C:\Windows\Ijysob.exe
2010-10-04 14:57:13 ----SHDC---- C:\Users\Lada\AppData\Roaming\Smart Security
2010-10-04 14:57:13 ----SHDC---- C:\ProgramData\SMWDVNSS
2010-10-04 14:56:54 ----SHDC---- C:\ProgramData\369d0b
2010-10-04 14:50:25 ----AC---- C:\Windows\Ijysoa.exe
2010-09-28 22:40:32 ----DC---- C:\Program Files\ChameleonTom
2010-09-28 19:37:42 ----AC---- C:\Windows\system32\tzres.dll
2010-09-15 20:30:50 ----AC---- C:\Windows\system32\usp10.dll
2010-09-15 20:30:48 ----AC---- C:\Windows\system32\spoolsv.exe
2010-09-15 20:30:47 ----AC---- C:\Windows\system32\MP4SDECD.DLL
2010-09-15 20:30:45 ----AC---- C:\Windows\system32\inetcomm.dll
======List of files/folders modified in the last 1 months======
2010-10-08 11:03:36 ----RDC---- C:\Program Files
2010-10-08 10:36:04 ----SHD---- C:\System Volume Information
2010-10-08 10:32:03 ----DC---- C:\Windows\Tasks
2010-10-07 17:49:20 ----DC---- C:\ProgramData\Google Updater
2010-10-07 15:01:16 ----DC---- C:\Windows
2010-10-07 14:59:26 ----SHDC---- C:\Windows\Installer
2010-10-07 14:59:25 ----DC---- C:\Config.Msi
2010-10-07 14:53:37 ----DC---- C:\Windows\system32\Tasks
2010-10-06 17:29:39 ----DC---- C:\Windows\Microsoft.NET
2010-10-06 17:29:29 ----RSDC---- C:\Windows\assembly
2010-10-06 14:35:22 ----DC---- C:\Windows\system32\LogFiles
2010-10-05 23:23:35 ----D---- C:\Windows\winsxs
2010-10-05 22:38:10 ----DC---- C:\Windows\system32\catroot
2010-10-05 22:36:47 ----AC---- C:\Windows\system.ini
2010-10-05 22:36:37 ----DC---- C:\Windows\system32\drivers\etc
2010-10-05 22:35:42 ----DC---- C:\Windows\System32
2010-10-05 22:32:59 ----DC---- C:\Windows\system32\drivers
2010-10-05 22:32:59 ----DC---- C:\Windows\AppPatch
2010-10-05 22:32:58 ----DC---- C:\Program Files\Common Files
2010-10-05 18:34:05 ----HDC---- C:\Program Files\InstallShield Installation Information
2010-10-05 18:13:35 ----DC---- C:\Windows\Logs
2010-10-05 18:05:50 ----DC---- C:\ProgramData\ESET
2010-10-05 17:20:20 ----DC---- C:\Users\Lada\AppData\Roaming\uTorrent
2010-10-05 10:48:15 ----DC---- C:\Windows\inf
2010-10-05 10:48:15 ----AC---- C:\Windows\system32\PerfStringBackup.INI
2010-10-05 10:45:41 ----DC---- C:\Windows\Prefetch
2010-10-04 17:40:19 ----DC---- C:\Program Files\Image-Line
2010-10-04 14:57:13 ----DC---- C:\ProgramData
2010-10-04 00:19:34 ----DC---- C:\Users\Lada\AppData\Roaming\Skype
2010-10-04 00:09:38 ----DC---- C:\Users\Lada\AppData\Roaming\skypePM
2010-10-03 21:28:34 ----DC---- C:\CESTINY
2010-09-29 22:26:42 ----DC---- C:\Program Files\Google
2010-09-29 21:45:43 ----D---- C:\Windows\rescache
2010-09-29 00:54:12 ----DC---- C:\Windows\system32\cs-CZ
2010-09-28 19:34:20 ----DC---- C:\Windows\system32\catroot2
2010-09-23 19:51:17 ----DC---- C:\Users\Lada\AppData\Roaming\ICQ
2010-09-22 22:35:12 ----DC---- C:\Windows\Minidump
2010-09-22 22:35:12 ----DC---- C:\Windows\Debug
2010-09-17 12:36:58 ----DC---- C:\Program Files\Mozilla Firefox
2010-09-15 20:34:13 ----AC---- C:\Windows\system32\mrt.exe
2010-09-15 00:29:34 ----DC---- C:\Users\Lada\AppData\Roaming\Uniblue
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2008-07-20 324120]
R0 PSDFilter;PSDFilter; C:\Windows\system32\DRIVERS\psdfilter.sys [2008-07-29 18992]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\Windows\System32\drivers\sfsync02.sys [2006-07-10 27032]
R0 UBHelper;UBHelper; C:\Windows\system32\drivers\UBHelper.sys [2008-01-30 13824]
R0x01000000 papycpu2;papycpu2; C:\Windows\System32\DRIVERS\papycpu2.sys [2003-01-17 1984]
R0x01000000 papyjoy;papyjoy; C:\Windows\System32\DRIVERS\papyjoy.sys [2003-01-17 1856]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-06-28 23376]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2010-06-28 312912]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-06-28 165456]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-06-28 46672]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2009-07-27 58908]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2010-01-27 73312]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-06-28 17744]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-06-28 50256]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2009-08-24 281760]
R2 int15;int15; \??\C:\Windows\system32\drivers\int15.sys [2008-10-01 12832]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2009-08-24 25888]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2009-11-16 50704]
R2 PSDNServ;PSDNServ; C:\Windows\system32\DRIVERS\PSDNServ.sys [2008-07-29 16944]
R2 psdvdisk;PSDVdisk; C:\Windows\system32\DRIVERS\PSDVdisk.sys [2008-07-29 60464]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-19 8704]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-05-19 912384]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-12-10 4172288]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-02 21264]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2008-03-26 980992]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2008-03-26 207872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-09-18 2169944]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E60x86.sys [2008-05-19 47104]
R3 MarvinBus;Pinnacle Marvin Bus; C:\Windows\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2008-01-30 14848]
R3 pfc;Padus ASPI Shell; C:\Windows\system32\drivers\pfc.sys [2009-06-12 10368]
R3 RTSTOR;Realtek USB 2.0 Card Reader; C:\Windows\system32\drivers\RTSTOR.SYS [2008-03-26 61440]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-04-25 199472]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2008-03-26 661504]
R3 winbondcir;Winbond IR Transceiver; C:\Windows\system32\DRIVERS\winbondcir.sys [2007-03-28 43008]
S3 A310;AVerMedia A310 DVB-T; C:\Windows\system32\DRIVERS\AVerA310USB.sys [2008-07-03 26752]
S3 BDASwCap;AVerMedia A310 BDA DVBT Capture Device; C:\Windows\system32\drivers\AVerA310Cap.sys [2008-07-03 47104]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BthPort;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-02-14 80424]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2007-07-16 80936]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-07-16 16168]
S3 catchme;catchme; \??\C:\Users\Lada\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 MTDVC2;Panasonic DVC USB-SERIAL2 Driver for NT Technology; C:\Windows\system32\DRIVERS\mtdv2ku2.sys [2003-10-15 12288]
S3 MTDVC2_ENUM;Panasonic DVC COM2 Driver for NT Technology; C:\Windows\system32\DRIVERS\mtdv2ks2.sys [2003-10-11 11648]
S3 NETw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-05-05 3658752]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2009-02-09 17664]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2009-02-09 22016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 Pcouffin;Low level access layer for CD devices; C:\Windows\System32\Drivers\Pcouffin.sys []
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 TcUsb;TC USB Kernel Driver; C:\Windows\System32\Drivers\tcusb.sys [2008-04-28 50576]
S3 U81xbus;LGE U8XXX driver (WDM); C:\Windows\system32\DRIVERS\U81xbus.sys [2004-03-29 52352]
S3 U81xmdfl;LGE U8XXX USB WMC Modem Filter; C:\Windows\system32\DRIVERS\U81xmdfl.sys [2004-03-29 6064]
S3 U81xmdm;LGE U8XXX USB WMC Modem Driver; C:\Windows\system32\DRIVERS\U81xmdm.sys [2004-03-29 84480]
S3 U81xmgmt;LGE U8XXX USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\U81xmgmt.sys [2004-03-29 77472]
S3 U81xobex;LGE U8XXX USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\U81xobex.sys [2004-03-29 75456]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2009-02-09 7808]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 usbser;Nokia USB Serial Port; C:\Windows\system32\drivers\usbser.sys [2009-04-11 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2009-02-09 7808]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 ZSMC301b;Vimicro USB PC Camera (ZC0301PL); C:\Windows\System32\Drivers\usbVM31b.sys [2004-12-23 93600]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-09-16 722416]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-07-09 144712]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-12-10 724992]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-06-28 40384]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 CLHNService;CLHNService; C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2009-04-16 75048]
R2 eDataSecurity Service;eDataSecurity Service; C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [2008-07-29 500784]
R2 ETService;Empowering Technology Service; C:\Program Files\Acer\Empowering Technology\Service\ETService.exe [2008-11-28 24576]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2008-07-20 354840]
R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2007-12-06 110592]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; D:\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-09-23 144632]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2010-01-26 75064]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-19 386560]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-06-28 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-06-28 40384]
S2 gupdate1c9c89d3335d80;Služba Google Update (gupdate1c9c89d3335d80); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-04-29 133104]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-07 183280]
S2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe []
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2009-03-30 31048]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-01-20 655624]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 getPlusHelper;@C:\Program Files\NOS\bin\getPlus_Helper.dll,-101; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-09-23 50424]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-06-02 637952]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2009-11-02 320760]
-----------------EOF-----------------
Re: Smart security
A pro jistotu ještě s combafix,nevím jestli to pomůže:
ComboFix 10-10-07.01 - Lada 08.10.2010 11:13:40.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3036.1519 [GMT 2:00]
Spuštěný z: c:\users\Lada\Downloads\ComboFix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\ANTIGEN.tmp
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\CLSV.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\ddv.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\energy.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\exec.tmp
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\fix.tmp
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\kernel32.exe
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\kernel32.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\pal.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\PE.drv
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\PE.exe
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\PE.tmp
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\SICKBOY.dll
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\SICKBOY.drv
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\SM.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\tjd.exe
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\tjd.sys
c:\windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-09-08 do 2010-10-08 )))))))))))))))))))))))))))))))
.
2010-10-08 09:22 . 2010-10-08 09:22 -------- dc----w- c:\users\Public\AppData\Local\temp
2010-10-08 09:22 . 2010-10-08 09:22 -------- dc----w- c:\users\Default\AppData\Local\temp
2010-10-08 09:03 . 2010-10-08 09:03 -------- dc----w- C:\rsit
2010-10-08 09:03 . 2010-10-08 09:03 -------- dc----w- c:\program files\trend micro
2010-10-05 21:18 . 2010-10-05 21:19 -------- dc----w- C:\TEMP
2010-10-05 20:39 . 2010-10-08 09:23 -------- dc----w- c:\users\Lada\AppData\Local\temp
2010-10-05 15:52 . 2010-10-05 14:10 254464 -c--a-w- c:\windows\Ijysoc.exe
2010-10-04 13:35 . 2010-10-04 12:54 199168 -c--a-w- c:\windows\Ijysob.exe
2010-10-04 12:57 . 2010-10-04 12:57 -------- dcsh--w- c:\users\Lada\AppData\Roaming\Smart Security
2010-10-04 12:57 . 2010-10-04 12:57 -------- dcsh--w- c:\programdata\SMWDVNSS
2010-10-04 12:57 . 2010-09-17 10:36 467928 -c--a-w- c:\programdata\369d0b\sqlite3.dll
2010-10-04 12:57 . 2010-09-17 10:36 718296 -c--a-w- c:\programdata\369d0b\mozcrt19.dll
2010-10-04 12:56 . 2010-10-04 12:57 3919872 -c--a-w- c:\programdata\369d0b\SM369_231.exe
2010-10-04 12:56 . 2010-10-05 15:54 -------- dcsh--w- c:\programdata\369d0b
2010-10-04 12:50 . 2010-10-04 12:50 199168 -c--a-w- c:\windows\Ijysoa.exe
2010-09-28 20:40 . 2010-09-28 20:40 -------- dc----w- c:\program files\ChameleonTom
2010-09-28 17:37 . 2010-06-22 13:30 2048 -c--a-w- c:\windows\system32\tzres.dll
2010-09-21 18:37 . 2010-09-21 18:37 932288 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AdobeARM.exe
2010-09-21 18:37 . 2010-09-21 18:37 932288 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AdobeARM.exe
2010-09-21 18:37 . 2010-09-21 18:37 70584 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AdobeExtractFiles.dll
2010-09-21 18:37 . 2010-09-21 18:37 70584 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AdobeExtractFiles.dll
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\ReaderUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AcrobatUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\ReaderUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AcrobatUpdater.exe
2010-09-15 18:30 . 2010-04-16 16:46 502272 -c--a-w- c:\windows\system32\usp10.dll
2010-09-15 18:30 . 2010-08-17 14:11 128000 -c--a-w- c:\windows\system32\spoolsv.exe
2010-09-15 18:30 . 2010-04-05 17:02 317952 -c--a-w- c:\windows\system32\MP4SDECD.DLL
2010-09-15 18:30 . 2010-05-27 20:08 739328 -c--a-w- c:\windows\system32\inetcomm.dll
2010-09-08 13:04 . 2010-09-18 16:32 6836 -c--a-w- c:\users\Lada\AppData\Local\d3d9caps.dat
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-10-07 16:12 . 2009-12-21 19:18 12 ----a-w- c:\windows\bthservsdp.dat
2010-10-07 15:49 . 2009-05-07 17:24 -------- dc----w- c:\programdata\Google Updater
2010-10-05 16:34 . 2009-01-23 01:52 -------- dc-h--w- c:\program files\InstallShield Installation Information
2010-10-05 15:20 . 2009-05-05 16:31 -------- dc----w- c:\users\Lada\AppData\Roaming\uTorrent
2010-10-05 08:48 . 2008-01-21 06:46 607526 -c--a-w- c:\windows\system32\perfh005.dat
2010-10-05 08:48 . 2008-01-21 06:46 119944 -c--a-w- c:\windows\system32\perfc005.dat
2010-10-04 15:40 . 2010-08-29 09:49 -------- dc----w- c:\program files\Image-Line
2010-10-03 22:19 . 2009-04-29 07:35 -------- dc----w- c:\users\Lada\AppData\Roaming\Skype
2010-10-03 22:09 . 2009-04-29 07:37 -------- dc----w- c:\users\Lada\AppData\Roaming\skypePM
2010-09-29 20:26 . 2009-01-23 02:19 -------- dc----w- c:\program files\Google
2010-09-28 20:40 . 2010-09-28 20:40 -------- dc----w- c:\program files\ChameleonTom
2010-09-23 17:51 . 2009-06-20 17:37 -------- dc----w- c:\users\Lada\AppData\Roaming\ICQ
2010-09-14 22:29 . 2010-02-16 20:35 -------- dc----w- c:\users\Lada\AppData\Roaming\Uniblue
2010-09-06 18:54 . 2010-09-06 18:54 -------- dc----w- c:\programdata\Alwil Software
2010-09-06 18:54 . 2010-09-06 18:54 -------- dc----w- c:\program files\Alwil Software
2010-09-06 18:29 . 2006-11-02 10:25 86016 ----a-w- c:\windows\Inf\infstor.dat
2010-09-06 18:29 . 2006-11-02 10:25 51200 ----a-w- c:\windows\Inf\infpub.dat
2010-09-06 18:29 . 2006-11-02 10:25 143360 ----a-w- c:\windows\Inf\infstrng.dat
2010-09-05 08:44 . 2010-06-26 09:09 -------- dc----w- c:\program files\ICQ7.2
2010-09-03 16:45 . 2009-08-11 07:02 2828 -csha-w- c:\programdata\KGyGaAvL.sys
2010-09-03 16:45 . 2009-08-11 07:02 2828 -csha-w- c:\programdata\KGyGaAvL.sys
2010-08-31 13:42 . 2010-08-31 13:42 -------- dc----w- c:\program files\Windows Portable Devices
2010-08-31 13:42 . 2006-11-02 10:25 665600 ----a-w- c:\windows\Inf\drvindex.dat
2010-08-31 13:41 . 2010-08-31 13:41 0 -c-ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-08-29 09:52 . 2010-08-29 09:52 3828846 -c--a-w- c:\users\Lada\AppData\Roaming\OpenCandy\maximus_install.exe
2010-08-29 09:52 . 2010-08-29 09:52 -------- dc----w- c:\users\Lada\AppData\Roaming\OpenCandy
2010-08-29 09:52 . 2010-08-29 09:52 -------- dc----w- c:\program files\ASIO4ALL v2
2010-08-29 09:51 . 2009-09-16 18:53 -------- dc----w- c:\program files\Cakewalk
2010-08-29 09:50 . 2010-08-29 09:50 -------- dc----w- c:\program files\Outsim
2010-08-13 21:51 . 2010-08-13 21:51 -------- dc----w- c:\users\Lada\AppData\Roaming\Command and Conquer 4
2010-08-10 14:49 . 2009-07-09 16:44 -------- dc----w- c:\users\Lada\AppData\Roaming\BlackBean
2010-08-10 07:21 . 2009-06-12 19:53 -------- dc----w- c:\program files\Scorpions WinCheater
2010-08-09 12:24 . 2010-07-26 15:04 -------- dc----w- c:\users\Lada\AppData\Roaming\LangSoft
2010-07-26 15:07 . 2010-07-26 15:06 798771 -c--a-w- c:\programdata\LangSoft\WebIE.dll
2010-07-26 15:07 . 2010-07-26 15:06 356352 -c--a-w- c:\programdata\LangSoft\TrnOutl.dll
2010-07-26 15:07 . 2010-07-26 15:06 299008 -c--a-w- c:\programdata\LangSoft\TrnWord.dll
2010-07-26 13:31 . 2009-04-28 15:02 109936 -c--a-w- c:\users\Lada\AppData\Local\GDIPFONTCACHEV1.DAT
2010-07-17 03:00 . 2010-05-27 11:57 423656 -c--a-w- c:\windows\system32\deployJava1.dll
2009-06-27 20:35 . 2009-06-27 20:35 2080 -c--a-w- c:\program files\Uninstall.ini
2009-06-27 20:35 . 2009-01-07 18:24 74330 -c--a-w- c:\program files\Uninstall.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll" [2010-03-18 187192]
[HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
2010-03-18 14:06 1361208 -c--a-r- c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2010-03-18 1361208]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2010-03-18 1361208]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
@="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
[HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
2008-07-29 16:52 121392 ----a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\snxPluginsShell]
@="{F4B3B0AA-13D1-4a36-BDA2-2055B0F3D5DE}"
[HKEY_CLASSES_ROOT\CLSID\{F4B3B0AA-13D1-4a36-BDA2-2055B0F3D5DE}]
2010-06-28 20:59 153184 -c--a-w- c:\program files\Alwil Software\Avast5\snxPlugins.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-06-16 221184]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-04-28 68856]
"Smart Security"="c:\programdata\369d0b\SM369_231.exe" [2010-10-04 3919872]
"SMH2B46TDP"="c:\windows\Ijysob.exe" [2010-10-04 199168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"reset"="regedit" [X]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2008-07-20 182808]
"RtHDVCpl"="RtHDVCpl.exe" [2008-09-18 6294048]
"ePower_DMC"="c:\program files\Acer\Empowering Technology\ePower\ePower_DMC.exe" [2008-11-28 417792]
"eAudio"="c:\program files\Acer\Empowering Technology\eAudio\eAudio.exe" [2008-09-11 544768]
"eDataSecurity Loader"="c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-07-29 526896]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-29 61440]
"PLFSetI"="c:\windows\PLFSetI.exe" [2007-10-23 200704]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-25 1049896]
"LManager"="c:\progra~1\LAUNCH~1\QtZgAcer.EXE" [2008-06-04 817672]
"ArcadeDeluxeAgent"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" [2009-09-07 152872]
"PlayMovie"="c:\program files\Acer Arcade Deluxe\PlayMovie\PMVService.exe" [2009-05-21 173288]
"BigDogPath"="c:\windows\VM_STI.EXE" [2005-02-28 53248]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 81920]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-05-26 413696]
"PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2009-07-27 180224]
"CLMLServer"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe" [2009-07-02 206120]
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2010-01-27 611712]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"NBKeyScan"="d:\nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-06-08 2221352]
"PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393]
"IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960]
"SweetIM"="c:\program files\SweetIM\Messenger\SweetIM.exe" [2010-04-19 106496]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-4-23 727592]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 2 (0x2)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1463035751-3111859534-512527653-1000]
"EnableNotificationsRef"=dword:00000002
"EnableNotifications"=dword:00000001
R2 gupdate1c9c89d3335d80;Služba Google Update (gupdate1c9c89d3335d80);c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 133104]
R3 A310;AVerMedia A310 DVB-T;c:\windows\system32\DRIVERS\AVerA310USB.sys [2008-07-03 26752]
R3 BDASwCap;AVerMedia A310 BDA DVBT Capture Device;c:\windows\system32\drivers\AVerA310Cap.sys [2008-07-03 47104]
R3 NETw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit;c:\windows\system32\DRIVERS\NETw5v32.sys [2008-05-05 3658752]
R3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-09-23 50424]
R4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys [2009-09-16 722416]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-06-28 50256]
S2 CLHNService;CLHNService;c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2009-04-16 75048]
S2 ETService;Empowering Technology Service;c:\program files\Acer\Empowering Technology\Service\ETService.exe [2008-11-28 24576]
S2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-11-16 50704]
S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-09-23 144632]
S3 winbondcir;Winbond IR Transceiver;c:\windows\system32\DRIVERS\winbondcir.sys [2007-03-28 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
getPlusHelper REG_MULTI_SZ getPlusHelper
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
2010-10-08 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-28 17:24]
2010-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 07:34]
2010-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 07:34]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.chameleonsearch.com/
mStart Page = hxxp://home.sweetim.com
uInternet Settings,ProxyOverride = *.local
uInternet Settings,ProxyServer = http=127.0.0.1:25412
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
IE: {{14CD42DD-ABCD-3586-DCAB-40E3693E3737} - c:\program files\ChameleonTom\ct.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.chameleonsearch.com/search.php?src=tops&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.seznam.cz/?sourceid=FF_5&q=
FF - component: c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
FF - component: c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.032"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.abr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.amr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.amr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ani"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.apd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.apd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.arw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bay"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.bmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bwf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bwf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cel\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cel"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.cr2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.crw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cs1"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cur"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.dcr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.dcx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.dib"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.djv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.djvu"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.dng"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.emf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.eps"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.erf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.fff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.fpx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.gif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.hdr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.icl"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.icn"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.ico"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.iff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ilbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.int"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.inta"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.iw4"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.j2c"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.j2k"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jbr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jfif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jp2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpe"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpeg"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpg"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jpk"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jpx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kar\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.kar"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kdc\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.kdc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.lbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m15\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m15"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m1a\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m1a"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2a\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m2a"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m75\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m75"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.mef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.mos"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.mpv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.mrw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.nef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.nrw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.orf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pbr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pcd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pct"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pcx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pgm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pic"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pics\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pics"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pict"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pix"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.png"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.ppm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.psd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.psp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pspbrush"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pspimage"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qcp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.qcp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qtpf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.qtpf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.raf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ras"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.raw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rgb"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rgba"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.rle"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rsb"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rw2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.rw2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rwl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rwl"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sdv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sdv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfil\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sfil"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sgi"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.smf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.smi"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smil\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.smil"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sml"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.sr2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.srf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.swa\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.swa"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tga"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.thm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tiff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ttc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ttf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ulw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ulw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30po\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30po"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30pp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30pp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30ppf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30ppf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vfw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.vfw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wbmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wmf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xpm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Celkový čas: 2010-10-08 11:25:36
ComboFix-quarantined-files.txt 2010-10-08 09:25
ComboFix2.txt 2010-10-05 20:39
Před spuštěním: Volných bajtů: 13 872 128 000
Po spuštění:
ComboFix 10-10-07.01 - Lada 08.10.2010 11:13:40.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3036.1519 [GMT 2:00]
Spuštěný z: c:\users\Lada\Downloads\ComboFix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\ANTIGEN.tmp
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\CLSV.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\ddv.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\energy.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\exec.tmp
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\fix.tmp
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\kernel32.exe
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\kernel32.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\pal.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\PE.drv
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\PE.exe
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\PE.tmp
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\SICKBOY.dll
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\SICKBOY.drv
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\SM.sys
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\tjd.exe
c:\users\Lada\AppData\Roaming\Microsoft\Windows\Recent\tjd.sys
c:\windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-09-08 do 2010-10-08 )))))))))))))))))))))))))))))))
.
2010-10-08 09:22 . 2010-10-08 09:22 -------- dc----w- c:\users\Public\AppData\Local\temp
2010-10-08 09:22 . 2010-10-08 09:22 -------- dc----w- c:\users\Default\AppData\Local\temp
2010-10-08 09:03 . 2010-10-08 09:03 -------- dc----w- C:\rsit
2010-10-08 09:03 . 2010-10-08 09:03 -------- dc----w- c:\program files\trend micro
2010-10-05 21:18 . 2010-10-05 21:19 -------- dc----w- C:\TEMP
2010-10-05 20:39 . 2010-10-08 09:23 -------- dc----w- c:\users\Lada\AppData\Local\temp
2010-10-05 15:52 . 2010-10-05 14:10 254464 -c--a-w- c:\windows\Ijysoc.exe
2010-10-04 13:35 . 2010-10-04 12:54 199168 -c--a-w- c:\windows\Ijysob.exe
2010-10-04 12:57 . 2010-10-04 12:57 -------- dcsh--w- c:\users\Lada\AppData\Roaming\Smart Security
2010-10-04 12:57 . 2010-10-04 12:57 -------- dcsh--w- c:\programdata\SMWDVNSS
2010-10-04 12:57 . 2010-09-17 10:36 467928 -c--a-w- c:\programdata\369d0b\sqlite3.dll
2010-10-04 12:57 . 2010-09-17 10:36 718296 -c--a-w- c:\programdata\369d0b\mozcrt19.dll
2010-10-04 12:56 . 2010-10-04 12:57 3919872 -c--a-w- c:\programdata\369d0b\SM369_231.exe
2010-10-04 12:56 . 2010-10-05 15:54 -------- dcsh--w- c:\programdata\369d0b
2010-10-04 12:50 . 2010-10-04 12:50 199168 -c--a-w- c:\windows\Ijysoa.exe
2010-09-28 20:40 . 2010-09-28 20:40 -------- dc----w- c:\program files\ChameleonTom
2010-09-28 17:37 . 2010-06-22 13:30 2048 -c--a-w- c:\windows\system32\tzres.dll
2010-09-21 18:37 . 2010-09-21 18:37 932288 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AdobeARM.exe
2010-09-21 18:37 . 2010-09-21 18:37 932288 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AdobeARM.exe
2010-09-21 18:37 . 2010-09-21 18:37 70584 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AdobeExtractFiles.dll
2010-09-21 18:37 . 2010-09-21 18:37 70584 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AdobeExtractFiles.dll
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\ReaderUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AcrobatUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\ReaderUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AcrobatUpdater.exe
2010-09-15 18:30 . 2010-04-16 16:46 502272 -c--a-w- c:\windows\system32\usp10.dll
2010-09-15 18:30 . 2010-08-17 14:11 128000 -c--a-w- c:\windows\system32\spoolsv.exe
2010-09-15 18:30 . 2010-04-05 17:02 317952 -c--a-w- c:\windows\system32\MP4SDECD.DLL
2010-09-15 18:30 . 2010-05-27 20:08 739328 -c--a-w- c:\windows\system32\inetcomm.dll
2010-09-08 13:04 . 2010-09-18 16:32 6836 -c--a-w- c:\users\Lada\AppData\Local\d3d9caps.dat
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-10-07 16:12 . 2009-12-21 19:18 12 ----a-w- c:\windows\bthservsdp.dat
2010-10-07 15:49 . 2009-05-07 17:24 -------- dc----w- c:\programdata\Google Updater
2010-10-05 16:34 . 2009-01-23 01:52 -------- dc-h--w- c:\program files\InstallShield Installation Information
2010-10-05 15:20 . 2009-05-05 16:31 -------- dc----w- c:\users\Lada\AppData\Roaming\uTorrent
2010-10-05 08:48 . 2008-01-21 06:46 607526 -c--a-w- c:\windows\system32\perfh005.dat
2010-10-05 08:48 . 2008-01-21 06:46 119944 -c--a-w- c:\windows\system32\perfc005.dat
2010-10-04 15:40 . 2010-08-29 09:49 -------- dc----w- c:\program files\Image-Line
2010-10-03 22:19 . 2009-04-29 07:35 -------- dc----w- c:\users\Lada\AppData\Roaming\Skype
2010-10-03 22:09 . 2009-04-29 07:37 -------- dc----w- c:\users\Lada\AppData\Roaming\skypePM
2010-09-29 20:26 . 2009-01-23 02:19 -------- dc----w- c:\program files\Google
2010-09-28 20:40 . 2010-09-28 20:40 -------- dc----w- c:\program files\ChameleonTom
2010-09-23 17:51 . 2009-06-20 17:37 -------- dc----w- c:\users\Lada\AppData\Roaming\ICQ
2010-09-14 22:29 . 2010-02-16 20:35 -------- dc----w- c:\users\Lada\AppData\Roaming\Uniblue
2010-09-06 18:54 . 2010-09-06 18:54 -------- dc----w- c:\programdata\Alwil Software
2010-09-06 18:54 . 2010-09-06 18:54 -------- dc----w- c:\program files\Alwil Software
2010-09-06 18:29 . 2006-11-02 10:25 86016 ----a-w- c:\windows\Inf\infstor.dat
2010-09-06 18:29 . 2006-11-02 10:25 51200 ----a-w- c:\windows\Inf\infpub.dat
2010-09-06 18:29 . 2006-11-02 10:25 143360 ----a-w- c:\windows\Inf\infstrng.dat
2010-09-05 08:44 . 2010-06-26 09:09 -------- dc----w- c:\program files\ICQ7.2
2010-09-03 16:45 . 2009-08-11 07:02 2828 -csha-w- c:\programdata\KGyGaAvL.sys
2010-09-03 16:45 . 2009-08-11 07:02 2828 -csha-w- c:\programdata\KGyGaAvL.sys
2010-08-31 13:42 . 2010-08-31 13:42 -------- dc----w- c:\program files\Windows Portable Devices
2010-08-31 13:42 . 2006-11-02 10:25 665600 ----a-w- c:\windows\Inf\drvindex.dat
2010-08-31 13:41 . 2010-08-31 13:41 0 -c-ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-08-29 09:52 . 2010-08-29 09:52 3828846 -c--a-w- c:\users\Lada\AppData\Roaming\OpenCandy\maximus_install.exe
2010-08-29 09:52 . 2010-08-29 09:52 -------- dc----w- c:\users\Lada\AppData\Roaming\OpenCandy
2010-08-29 09:52 . 2010-08-29 09:52 -------- dc----w- c:\program files\ASIO4ALL v2
2010-08-29 09:51 . 2009-09-16 18:53 -------- dc----w- c:\program files\Cakewalk
2010-08-29 09:50 . 2010-08-29 09:50 -------- dc----w- c:\program files\Outsim
2010-08-13 21:51 . 2010-08-13 21:51 -------- dc----w- c:\users\Lada\AppData\Roaming\Command and Conquer 4
2010-08-10 14:49 . 2009-07-09 16:44 -------- dc----w- c:\users\Lada\AppData\Roaming\BlackBean
2010-08-10 07:21 . 2009-06-12 19:53 -------- dc----w- c:\program files\Scorpions WinCheater
2010-08-09 12:24 . 2010-07-26 15:04 -------- dc----w- c:\users\Lada\AppData\Roaming\LangSoft
2010-07-26 15:07 . 2010-07-26 15:06 798771 -c--a-w- c:\programdata\LangSoft\WebIE.dll
2010-07-26 15:07 . 2010-07-26 15:06 356352 -c--a-w- c:\programdata\LangSoft\TrnOutl.dll
2010-07-26 15:07 . 2010-07-26 15:06 299008 -c--a-w- c:\programdata\LangSoft\TrnWord.dll
2010-07-26 13:31 . 2009-04-28 15:02 109936 -c--a-w- c:\users\Lada\AppData\Local\GDIPFONTCACHEV1.DAT
2010-07-17 03:00 . 2010-05-27 11:57 423656 -c--a-w- c:\windows\system32\deployJava1.dll
2009-06-27 20:35 . 2009-06-27 20:35 2080 -c--a-w- c:\program files\Uninstall.ini
2009-06-27 20:35 . 2009-01-07 18:24 74330 -c--a-w- c:\program files\Uninstall.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll" [2010-03-18 187192]
[HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
2010-03-18 14:06 1361208 -c--a-r- c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2010-03-18 1361208]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2010-03-18 1361208]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
@="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
[HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
2008-07-29 16:52 121392 ----a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\snxPluginsShell]
@="{F4B3B0AA-13D1-4a36-BDA2-2055B0F3D5DE}"
[HKEY_CLASSES_ROOT\CLSID\{F4B3B0AA-13D1-4a36-BDA2-2055B0F3D5DE}]
2010-06-28 20:59 153184 -c--a-w- c:\program files\Alwil Software\Avast5\snxPlugins.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-06-16 221184]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-04-28 68856]
"Smart Security"="c:\programdata\369d0b\SM369_231.exe" [2010-10-04 3919872]
"SMH2B46TDP"="c:\windows\Ijysob.exe" [2010-10-04 199168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"reset"="regedit" [X]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2008-07-20 182808]
"RtHDVCpl"="RtHDVCpl.exe" [2008-09-18 6294048]
"ePower_DMC"="c:\program files\Acer\Empowering Technology\ePower\ePower_DMC.exe" [2008-11-28 417792]
"eAudio"="c:\program files\Acer\Empowering Technology\eAudio\eAudio.exe" [2008-09-11 544768]
"eDataSecurity Loader"="c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-07-29 526896]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-29 61440]
"PLFSetI"="c:\windows\PLFSetI.exe" [2007-10-23 200704]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-25 1049896]
"LManager"="c:\progra~1\LAUNCH~1\QtZgAcer.EXE" [2008-06-04 817672]
"ArcadeDeluxeAgent"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" [2009-09-07 152872]
"PlayMovie"="c:\program files\Acer Arcade Deluxe\PlayMovie\PMVService.exe" [2009-05-21 173288]
"BigDogPath"="c:\windows\VM_STI.EXE" [2005-02-28 53248]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 81920]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-05-26 413696]
"PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2009-07-27 180224]
"CLMLServer"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe" [2009-07-02 206120]
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2010-01-27 611712]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"NBKeyScan"="d:\nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-06-08 2221352]
"PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393]
"IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960]
"SweetIM"="c:\program files\SweetIM\Messenger\SweetIM.exe" [2010-04-19 106496]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-4-23 727592]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 2 (0x2)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1463035751-3111859534-512527653-1000]
"EnableNotificationsRef"=dword:00000002
"EnableNotifications"=dword:00000001
R2 gupdate1c9c89d3335d80;Služba Google Update (gupdate1c9c89d3335d80);c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 133104]
R3 A310;AVerMedia A310 DVB-T;c:\windows\system32\DRIVERS\AVerA310USB.sys [2008-07-03 26752]
R3 BDASwCap;AVerMedia A310 BDA DVBT Capture Device;c:\windows\system32\drivers\AVerA310Cap.sys [2008-07-03 47104]
R3 NETw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit;c:\windows\system32\DRIVERS\NETw5v32.sys [2008-05-05 3658752]
R3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-09-23 50424]
R4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys [2009-09-16 722416]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-06-28 50256]
S2 CLHNService;CLHNService;c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2009-04-16 75048]
S2 ETService;Empowering Technology Service;c:\program files\Acer\Empowering Technology\Service\ETService.exe [2008-11-28 24576]
S2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-11-16 50704]
S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-09-23 144632]
S3 winbondcir;Winbond IR Transceiver;c:\windows\system32\DRIVERS\winbondcir.sys [2007-03-28 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
getPlusHelper REG_MULTI_SZ getPlusHelper
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
2010-10-08 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-28 17:24]
2010-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 07:34]
2010-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 07:34]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.chameleonsearch.com/
mStart Page = hxxp://home.sweetim.com
uInternet Settings,ProxyOverride = *.local
uInternet Settings,ProxyServer = http=127.0.0.1:25412
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
IE: {{14CD42DD-ABCD-3586-DCAB-40E3693E3737} - c:\program files\ChameleonTom\ct.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.chameleonsearch.com/search.php?src=tops&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.seznam.cz/?sourceid=FF_5&q=
FF - component: c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
FF - component: c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.032"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.abr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.amr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.amr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ani"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.apd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.apd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.arw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bay"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.bmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bwf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bwf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cel\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cel"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.cr2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.crw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cs1"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cur"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.dcr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.dcx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.dib"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.djv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.djvu"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.dng"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.emf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.eps"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.erf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.fff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.fpx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.gif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.hdr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.icl"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.icn"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.ico"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.iff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ilbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.int"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.inta"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.iw4"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.j2c"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.j2k"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jbr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jfif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jp2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpe"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpeg"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpg"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jpk"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jpx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kar\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.kar"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kdc\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.kdc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.lbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m15\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m15"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m1a\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m1a"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2a\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m2a"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m75\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m75"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.mef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.mos"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.mpv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.mrw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.nef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.nrw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.orf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pbr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pcd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pct"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pcx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pgm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pic"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pics\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pics"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pict"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pix"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.png"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.ppm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.psd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.psp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pspbrush"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pspimage"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qcp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.qcp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qtpf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.qtpf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.raf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ras"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.raw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rgb"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rgba"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.rle"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rsb"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rw2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.rw2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rwl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rwl"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sdv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sdv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfil\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sfil"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sgi"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.smf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.smi"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smil\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.smil"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sml"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.sr2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.srf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.swa\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.swa"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tga"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.thm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tiff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ttc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ttf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ulw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ulw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30po\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30po"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30pp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30pp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30ppf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30ppf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vfw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.vfw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wbmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wmf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xpm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Celkový čas: 2010-10-08 11:25:36
ComboFix-quarantined-files.txt 2010-10-08 09:25
ComboFix2.txt 2010-10-05 20:39
Před spuštěním: Volných bajtů: 13 872 128 000
Po spuštění:
Re: Smart security
Hezké poledne
Otestujte na www.virustotal.com
c:\windows\Ijysob.exe
c:\program files\Uninstall.exe
c:\programdata\369d0b\mozcrt19.dll
c:\programdata\369d0b\SM369_231.exe
-Do okénka zkopírujte cestu k souboru , pokud napíše, že soubor byl už testován, dejte otestovat znovu.
-Sem vložte link s výsledky.
c:\windows\Ijysob.exe
c:\program files\Uninstall.exe
c:\programdata\369d0b\mozcrt19.dll
c:\programdata\369d0b\SM369_231.exe
-Do okénka zkopírujte cestu k souboru , pokud napíše, že soubor byl už testován, dejte otestovat znovu.
-Sem vložte link s výsledky.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Smart security
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 Win-Trojan/Mdob.199168.D
AntiVir 7.10.12.163 2010.10.08 TR/FraudPack.kva.47
Antiy-AVL 2.0.3.7 2010.10.08 Packed/Win32.Katusha.gen
Authentium 5.2.0.5 2010.10.08 W32/Renos.A!Generic
Avast 4.8.1351.0 2010.10.08 Win32:MalOb-BX
Avast5 5.0.594.0 2010.10.08 Win32:MalOb-BX
AVG 9.0.0.851 2010.10.07 Agent2.BODX
BitDefender 7.2 2010.10.08 Gen:Variant.Kazy.1225
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 -
DrWeb 5.0.2.03300 2010.10.08 Trojan.DownLoader1.22680
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 Win32/Renos.D!generic
F-Prot 4.6.2.117 2010.10.08 W32/Renos.A!Generic
F-Secure 9.0.15370.0 2010.10.08 Trojan-Downloader:W32/Renos.GSS
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 Gen:Variant.Kazy.1225
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 Virus
Kaspersky 7.0.0.125 2010.10.08 Packed.Win32.Katusha.o
McAfee 5.400.0.1158 2010.10.08 Downloader-CEW.b
McAfee-GW-Edition 2010.1C 2010.10.08 Heuristic.BehavesLike.Win32.Obfuscated.H
Microsoft 1.6201 2010.10.08 TrojanDownloader:Win32/Renos.LX
NOD32 5514 2010.10.08 a variant of Win32/Kryptik.HEJ
Norman 6.06.07 2010.10.07 W32/Obfuscated.M
nProtect 2010-10-08.01 2010.10.08 Gen:Variant.Kazy.1225
Panda 10.0.2.7 2010.10.08 Suspicious file
PCTools 7.0.3.5 2010.10.08 Trojan.FakeAV
Prevx 3.0 2010.10.08 Medium Risk Malware Dropper
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 Mal/FakeAV-CX
Sunbelt 7012 2010.10.08 VirTool.Win32.Obfuscator.hg!b (v)
SUPERAntiSpyware 4.40.0.1006 2010.10.08 Trojan.Agent/Gen-VTSec
Symantec 20101.2.0.161 2010.10.08 Trojan.FakeAV!gen29
TheHacker 6.7.0.1.052 2010.10.08 -
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 -
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 Trojan.Kryptik.BFCP
MD5: 2b210fb2d24ec57d9ad3df3197f8b7dd
SHA1: 2de5ab9f20bf30d2cc1bb69da6b1e1abc063b038
SHA256: 2680bdbaec37ba4847df3ecebdba9cc568bb79aa6294410af7cbf1f7cd5ddacb
File size: 199168 bytes
Scan date: 2010-10-08 10:28:36 (UTC)
AhnLab-V3 2010.10.08.01 2010.10.08 Win-Trojan/Mdob.199168.D
AntiVir 7.10.12.163 2010.10.08 TR/FraudPack.kva.47
Antiy-AVL 2.0.3.7 2010.10.08 Packed/Win32.Katusha.gen
Authentium 5.2.0.5 2010.10.08 W32/Renos.A!Generic
Avast 4.8.1351.0 2010.10.08 Win32:MalOb-BX
Avast5 5.0.594.0 2010.10.08 Win32:MalOb-BX
AVG 9.0.0.851 2010.10.07 Agent2.BODX
BitDefender 7.2 2010.10.08 Gen:Variant.Kazy.1225
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 -
DrWeb 5.0.2.03300 2010.10.08 Trojan.DownLoader1.22680
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 Win32/Renos.D!generic
F-Prot 4.6.2.117 2010.10.08 W32/Renos.A!Generic
F-Secure 9.0.15370.0 2010.10.08 Trojan-Downloader:W32/Renos.GSS
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 Gen:Variant.Kazy.1225
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 Virus
Kaspersky 7.0.0.125 2010.10.08 Packed.Win32.Katusha.o
McAfee 5.400.0.1158 2010.10.08 Downloader-CEW.b
McAfee-GW-Edition 2010.1C 2010.10.08 Heuristic.BehavesLike.Win32.Obfuscated.H
Microsoft 1.6201 2010.10.08 TrojanDownloader:Win32/Renos.LX
NOD32 5514 2010.10.08 a variant of Win32/Kryptik.HEJ
Norman 6.06.07 2010.10.07 W32/Obfuscated.M
nProtect 2010-10-08.01 2010.10.08 Gen:Variant.Kazy.1225
Panda 10.0.2.7 2010.10.08 Suspicious file
PCTools 7.0.3.5 2010.10.08 Trojan.FakeAV
Prevx 3.0 2010.10.08 Medium Risk Malware Dropper
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 Mal/FakeAV-CX
Sunbelt 7012 2010.10.08 VirTool.Win32.Obfuscator.hg!b (v)
SUPERAntiSpyware 4.40.0.1006 2010.10.08 Trojan.Agent/Gen-VTSec
Symantec 20101.2.0.161 2010.10.08 Trojan.FakeAV!gen29
TheHacker 6.7.0.1.052 2010.10.08 -
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 -
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 Trojan.Kryptik.BFCP
MD5: 2b210fb2d24ec57d9ad3df3197f8b7dd
SHA1: 2de5ab9f20bf30d2cc1bb69da6b1e1abc063b038
SHA256: 2680bdbaec37ba4847df3ecebdba9cc568bb79aa6294410af7cbf1f7cd5ddacb
File size: 199168 bytes
Scan date: 2010-10-08 10:28:36 (UTC)
Re: Smart security
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 -
Antiy-AVL 2.0.3.7 2010.10.08 -
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 -
Avast5 5.0.594.0 2010.10.08 -
AVG 9.0.0.851 2010.10.07 -
BitDefender 7.2 2010.10.08 -
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 -
DrWeb 5.0.2.03300 2010.10.08 -
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 -
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 -
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 -
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 -
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 -
NOD32 5514 2010.10.08 -
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 -
Panda 10.0.2.7 2010.10.08 -
PCTools 7.0.3.5 2010.10.08 -
Prevx 3.0 2010.10.08 -
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 -
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 -
TheHacker 6.7.0.1.052 2010.10.08 -
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 -
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 -
MD5: dc8ba8b46b71ef4b2cd26216437fd219
SHA1: 501d0a1f287682987c2f9fb5f057e93ff4e23a12
SHA256: 32e34db66c8b68d9cd377bbabe3ecaade0be9c6ed78c88638713060d8ad29900
File size: 74330 bytes
Scan date: 2010-10-08 10:38:28 (U
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 -
Antiy-AVL 2.0.3.7 2010.10.08 -
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 -
Avast5 5.0.594.0 2010.10.08 -
AVG 9.0.0.851 2010.10.07 -
BitDefender 7.2 2010.10.08 -
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 -
DrWeb 5.0.2.03300 2010.10.08 -
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 -
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 -
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 -
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 -
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 -
NOD32 5514 2010.10.08 -
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 -
Panda 10.0.2.7 2010.10.08 -
PCTools 7.0.3.5 2010.10.08 -
Prevx 3.0 2010.10.08 -
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 -
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 -
TheHacker 6.7.0.1.052 2010.10.08 -
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 -
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 -
MD5: dc8ba8b46b71ef4b2cd26216437fd219
SHA1: 501d0a1f287682987c2f9fb5f057e93ff4e23a12
SHA256: 32e34db66c8b68d9cd377bbabe3ecaade0be9c6ed78c88638713060d8ad29900
File size: 74330 bytes
Scan date: 2010-10-08 10:38:28 (U
Re: Smart security
* Table
* Tabulated
* CSV
* HTML
* BBCode
* Show positives only
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 -
Antiy-AVL 2.0.3.7 2010.10.08 -
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 -
Avast5 5.0.594.0 2010.10.08 -
AVG 9.0.0.851 2010.10.07 -
BitDefender 7.2 2010.10.08 -
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 -
DrWeb 5.0.2.03300 2010.10.08 -
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 -
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 -
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 -
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 -
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 -
NOD32 5514 2010.10.08 -
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 -
Panda 10.0.2.7 2010.10.08 -
PCTools 7.0.3.5 2010.10.08 -
Prevx 3.0 2010.10.08 -
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 -
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 -
TheHacker 6.7.0.1.052 2010.10.08 -
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 -
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 -
MD5: 1ceafce0aad2c0b5bf9f7a2abc0ae1b4
SHA1: 4a64c25eeb5261498d4cc4f5dd21835f72483bbd
SHA256: 62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e
File size: 718296 bytes
Scan date: 2010-10-08 10:44:28 (UTC)
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 -
Antiy-AVL 2.0.3.7 2010.10.08 -
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 -
Avast5 5.0.594.0 2010.10.08 -
AVG 9.0.0.851 2010.10.07 -
BitDefender 7.2 2010.10.08 -
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 -
DrWeb 5.0.2.03300 2010.10.08 -
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 -
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 -
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 -
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 -
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 -
NOD32 5514 2010.10.08 -
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 -
Panda 10.0.2.7 2010.10.08 -
PCTools 7.0.3.5 2010.10.08 -
Prevx 3.0 2010.10.08 -
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 -
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 -
TheHacker 6.7.0.1.052 2010.10.08 -
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 -
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 -
MD5: 1ceafce0aad2c0b5bf9f7a2abc0ae1b4
SHA1: 4a64c25eeb5261498d4cc4f5dd21835f72483bbd
SHA256: 62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e
File size: 718296 bytes
Scan date: 2010-10-08 10:44:28 (UTC)
"Antivirus", "Version", "Last update", "Result"
"AhnLab-V3", "2010.10.08.01", "2010.10.08", "-"
"AntiVir", "7.10.12.164", "2010.10.08", "-"
"Antiy-AVL", "2.0.3.7", "2010.10.08", "-"
"Authentium", "5.2.0.5", "2010.10.08", "-"
"Avast", "4.8.1351.0", "2010.10.08", "-"
"Avast5", "5.0.594.0", "2010.10.08", "-"
"AVG", "9.0.0.851", "2010.10.07", "-"
"BitDefender", "7.2", "2010.10.08", "-"
"CAT-QuickHeal", "11.00", "2010.10.08", "-"
"ClamAV", "0.96.2.0-git", "2010.10.08", "-"
"Comodo", "6317", "2010.10.07", "-"
"DrWeb", "5.0.2.03300", "2010.10.08", "-"
"Emsisoft", "5.0.0.50", "2010.10.08", "-"
"eSafe", "7.0.17.0", "2010.10.07", "-"
"eTrust-Vet", "36.1.7900", "2010.10.08", "-"
"F-Prot", "4.6.2.117", "2010.10.08", "-"
"F-Secure", "9.0.15370.0", "2010.10.08", "-"
"Fortinet", "4.2.249.0", "2010.10.08", "-"
"GData", "21", "2010.10.08", "-"
"Ikarus", "T3.1.1.90.0", "2010.10.08", "-"
"Jiangmin", "13.0.900", "2010.10.08", "-"
"K7AntiVirus", "9.63.2698", "2010.10.07", "-"
"Kaspersky", "7.0.0.125", "2010.10.08", "-"
"McAfee", "5.400.0.1158", "2010.10.08", "-"
"McAfee-GW-Edition", "2010.1C", "2010.10.08", "-"
"Microsoft", "1.6201", "2010.10.08", "-"
"NOD32", "5514", "2010.10.08", "-"
"Norman", "6.06.07", "2010.10.07", "-"
"nProtect", "2010-10-08.01", "2010.10.08", "-"
"Panda", "10.0.2.7", "2010.10.08", "-"
"PCTools", "7.0.3.5", "2010.10.08", "-"
"Prevx", "3.0", "2010.10.08", "-"
"Rising", "22.67.02.07", "2010.09.30", "-"
"Sophos", "4.58.0", "2010.10.08", "-"
"Sunbelt", "7012", "2010.10.08", "-"
"SUPERAntiSpyware", "4.40.0.1006", "2010.10.08", "-"
"Symantec", "20101.2.0.161", "2010.10.08", "-"
"TheHacker", "6.7.0.1.052", "2010.10.08", "-"
"TrendMicro", "9.120.0.1004", "2010.10.08", "-"
"TrendMicro-HouseCall", "9.120.0.1004", "2010.10.08", "-"
"VBA32", "3.12.14.1", "2010.10.07", "-"
"ViRobot", "2010.10.4.4074", "2010.10.08", "-"
"VirusBuster", "12.67.8.0", "2010.10.07", "-"
"MD5", "1ceafce0aad2c0b5bf9f7a2abc0ae1b4"
"SHA1", "4a64c25eeb5261498d4cc4f5dd21835f72483bbd"
"SHA256", "62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e"
"File size", "718296 bytes"
"Scan date", "2010-10-08 10:44:28 (UTC)"
<table id="filescan">
<tr>
<th>Antivirus</th>
<th>Version</th>
<th>Last update</th>
<th>Result</th>
</tr>
<tr>
<td>AhnLab-V3</td>
<td>2010.10.08.01</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>AntiVir</td>
<td>7.10.12.164</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Antiy-AVL</td>
<td>2.0.3.7</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Authentium</td>
<td>5.2.0.5</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Avast</td>
<td>4.8.1351.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Avast5</td>
<td>5.0.594.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>AVG</td>
<td>9.0.0.851</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>BitDefender</td>
<td>7.2</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>CAT-QuickHeal</td>
<td>11.00</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>ClamAV</td>
<td>0.96.2.0-git</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Comodo</td>
<td>6317</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>DrWeb</td>
<td>5.0.2.03300</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Emsisoft</td>
<td>5.0.0.50</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>eSafe</td>
<td>7.0.17.0</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>eTrust-Vet</td>
<td>36.1.7900</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>F-Prot</td>
<td>4.6.2.117</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>F-Secure</td>
<td>9.0.15370.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Fortinet</td>
<td>4.2.249.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>GData</td>
<td>21</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Ikarus</td>
<td>T3.1.1.90.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Jiangmin</td>
<td>13.0.900</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>K7AntiVirus</td>
<td>9.63.2698</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>Kaspersky</td>
<td>7.0.0.125</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>McAfee</td>
<td>5.400.0.1158</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>McAfee-GW-Edition</td>
<td>2010.1C</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Microsoft</td>
<td>1.6201</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>NOD32</td>
<td>5514</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Norman</td>
<td>6.06.07</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>nProtect</td>
<td>2010-10-08.01</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Panda</td>
<td>10.0.2.7</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>PCTools</td>
<td>7.0.3.5</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Prevx</td>
<td>3.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Rising</td>
<td>22.67.02.07</td>
<td>2010.09.30</td>
<td>-</td>
</tr>
<tr>
<td>Sophos</td>
<td>4.58.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Sunbelt</td>
<td>7012</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>SUPERAntiSpyware</td>
<td>4.40.0.1006</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Symantec</td>
<td>20101.2.0.161</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>TheHacker</td>
<td>6.7.0.1.052</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>TrendMicro</td>
<td>9.120.0.1004</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>TrendMicro-HouseCall</td>
<td>9.120.0.1004</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>VBA32</td>
<td>3.12.14.1</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>ViRobot</td>
<td>2010.10.4.4074</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>VirusBuster</td>
<td>12.67.8.0</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<table>
<table id="fileinfo">
<tr>
<th>Additional information</th>
</tr>
<tr>
<td><strong>MD5:</strong> 1ceafce0aad2c0b5bf9f7a2abc0ae1b4</td>
</tr>
<tr>
<td><strong>SHA1:</strong> 4a64c25eeb5261498d4cc4f5dd21835f72483bbd</td>
</tr>
<tr>
<td><strong>SHA256:</strong> 62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e</td>
</tr>
<tr>
<td><strong>File size:</strong> 718296 bytes</td>
</tr>
<tr>
<td><strong>Scan date:</strong> 2010-10-08 10:44:28 (UTC)</td>
</tr>
</table>
Antivirus results
AhnLab-V3 - 2010.10.08.01 - 2010.10.08 - -
AntiVir - 7.10.12.164 - 2010.10.08 - -
Antiy-AVL - 2.0.3.7 - 2010.10.08 - -
Authentium - 5.2.0.5 - 2010.10.08 - -
Avast - 4.8.1351.0 - 2010.10.08 - -
Avast5 - 5.0.594.0 - 2010.10.08 - -
AVG - 9.0.0.851 - 2010.10.07 - -
BitDefender - 7.2 - 2010.10.08 - -
CAT-QuickHeal - 11.00 - 2010.10.08 - -
ClamAV - 0.96.2.0-git - 2010.10.08 - -
Comodo - 6317 - 2010.10.07 - -
DrWeb - 5.0.2.03300 - 2010.10.08 - -
Emsisoft - 5.0.0.50 - 2010.10.08 - -
eSafe - 7.0.17.0 - 2010.10.07 - -
eTrust-Vet - 36.1.7900 - 2010.10.08 - -
F-Prot - 4.6.2.117 - 2010.10.08 - -
F-Secure - 9.0.15370.0 - 2010.10.08 - -
Fortinet - 4.2.249.0 - 2010.10.08 - -
GData - 21 - 2010.10.08 - -
Ikarus - T3.1.1.90.0 - 2010.10.08 - -
Jiangmin - 13.0.900 - 2010.10.08 - -
K7AntiVirus - 9.63.2698 - 2010.10.07 - -
Kaspersky - 7.0.0.125 - 2010.10.08 - -
McAfee - 5.400.0.1158 - 2010.10.08 - -
McAfee-GW-Edition - 2010.1C - 2010.10.08 - -
Microsoft - 1.6201 - 2010.10.08 - -
NOD32 - 5514 - 2010.10.08 - -
Norman - 6.06.07 - 2010.10.07 - -
nProtect - 2010-10-08.01 - 2010.10.08 - -
Panda - 10.0.2.7 - 2010.10.08 - -
PCTools - 7.0.3.5 - 2010.10.08 - -
Prevx - 3.0 - 2010.10.08 - -
Rising - 22.67.02.07 - 2010.09.30 - -
Sophos - 4.58.0 - 2010.10.08 - -
Sunbelt - 7012 - 2010.10.08 - -
SUPERAntiSpyware - 4.40.0.1006 - 2010.10.08 - -
Symantec - 20101.2.0.161 - 2010.10.08 - -
TheHacker - 6.7.0.1.052 - 2010.10.08 - -
TrendMicro - 9.120.0.1004 - 2010.10.08 - -
TrendMicro-HouseCall - 9.120.0.1004 - 2010.10.08 - -
VBA32 - 3.12.14.1 - 2010.10.07 - -
ViRobot - 2010.10.4.4074 - 2010.10.08 - -
VirusBuster - 12.67.8.0 - 2010.10.07 - -
File info:
MD5: 1ceafce0aad2c0b5bf9f7a2abc0ae1b4
SHA1: 4a64c25eeb5261498d4cc4f5dd21835f72483bbd
SHA256: 62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e
File size: 718296 bytes
Scan date: 2010-10-08 10:44:28 (UTC)
* Tabulated
* CSV
* HTML
* BBCode
* Show positives only
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 -
Antiy-AVL 2.0.3.7 2010.10.08 -
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 -
Avast5 5.0.594.0 2010.10.08 -
AVG 9.0.0.851 2010.10.07 -
BitDefender 7.2 2010.10.08 -
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 -
DrWeb 5.0.2.03300 2010.10.08 -
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 -
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 -
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 -
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 -
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 -
NOD32 5514 2010.10.08 -
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 -
Panda 10.0.2.7 2010.10.08 -
PCTools 7.0.3.5 2010.10.08 -
Prevx 3.0 2010.10.08 -
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 -
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 -
TheHacker 6.7.0.1.052 2010.10.08 -
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 -
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 -
MD5: 1ceafce0aad2c0b5bf9f7a2abc0ae1b4
SHA1: 4a64c25eeb5261498d4cc4f5dd21835f72483bbd
SHA256: 62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e
File size: 718296 bytes
Scan date: 2010-10-08 10:44:28 (UTC)
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 -
Antiy-AVL 2.0.3.7 2010.10.08 -
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 -
Avast5 5.0.594.0 2010.10.08 -
AVG 9.0.0.851 2010.10.07 -
BitDefender 7.2 2010.10.08 -
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 -
DrWeb 5.0.2.03300 2010.10.08 -
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 -
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 -
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 -
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 -
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 -
NOD32 5514 2010.10.08 -
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 -
Panda 10.0.2.7 2010.10.08 -
PCTools 7.0.3.5 2010.10.08 -
Prevx 3.0 2010.10.08 -
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 -
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 -
TheHacker 6.7.0.1.052 2010.10.08 -
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 -
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 -
MD5: 1ceafce0aad2c0b5bf9f7a2abc0ae1b4
SHA1: 4a64c25eeb5261498d4cc4f5dd21835f72483bbd
SHA256: 62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e
File size: 718296 bytes
Scan date: 2010-10-08 10:44:28 (UTC)
"Antivirus", "Version", "Last update", "Result"
"AhnLab-V3", "2010.10.08.01", "2010.10.08", "-"
"AntiVir", "7.10.12.164", "2010.10.08", "-"
"Antiy-AVL", "2.0.3.7", "2010.10.08", "-"
"Authentium", "5.2.0.5", "2010.10.08", "-"
"Avast", "4.8.1351.0", "2010.10.08", "-"
"Avast5", "5.0.594.0", "2010.10.08", "-"
"AVG", "9.0.0.851", "2010.10.07", "-"
"BitDefender", "7.2", "2010.10.08", "-"
"CAT-QuickHeal", "11.00", "2010.10.08", "-"
"ClamAV", "0.96.2.0-git", "2010.10.08", "-"
"Comodo", "6317", "2010.10.07", "-"
"DrWeb", "5.0.2.03300", "2010.10.08", "-"
"Emsisoft", "5.0.0.50", "2010.10.08", "-"
"eSafe", "7.0.17.0", "2010.10.07", "-"
"eTrust-Vet", "36.1.7900", "2010.10.08", "-"
"F-Prot", "4.6.2.117", "2010.10.08", "-"
"F-Secure", "9.0.15370.0", "2010.10.08", "-"
"Fortinet", "4.2.249.0", "2010.10.08", "-"
"GData", "21", "2010.10.08", "-"
"Ikarus", "T3.1.1.90.0", "2010.10.08", "-"
"Jiangmin", "13.0.900", "2010.10.08", "-"
"K7AntiVirus", "9.63.2698", "2010.10.07", "-"
"Kaspersky", "7.0.0.125", "2010.10.08", "-"
"McAfee", "5.400.0.1158", "2010.10.08", "-"
"McAfee-GW-Edition", "2010.1C", "2010.10.08", "-"
"Microsoft", "1.6201", "2010.10.08", "-"
"NOD32", "5514", "2010.10.08", "-"
"Norman", "6.06.07", "2010.10.07", "-"
"nProtect", "2010-10-08.01", "2010.10.08", "-"
"Panda", "10.0.2.7", "2010.10.08", "-"
"PCTools", "7.0.3.5", "2010.10.08", "-"
"Prevx", "3.0", "2010.10.08", "-"
"Rising", "22.67.02.07", "2010.09.30", "-"
"Sophos", "4.58.0", "2010.10.08", "-"
"Sunbelt", "7012", "2010.10.08", "-"
"SUPERAntiSpyware", "4.40.0.1006", "2010.10.08", "-"
"Symantec", "20101.2.0.161", "2010.10.08", "-"
"TheHacker", "6.7.0.1.052", "2010.10.08", "-"
"TrendMicro", "9.120.0.1004", "2010.10.08", "-"
"TrendMicro-HouseCall", "9.120.0.1004", "2010.10.08", "-"
"VBA32", "3.12.14.1", "2010.10.07", "-"
"ViRobot", "2010.10.4.4074", "2010.10.08", "-"
"VirusBuster", "12.67.8.0", "2010.10.07", "-"
"MD5", "1ceafce0aad2c0b5bf9f7a2abc0ae1b4"
"SHA1", "4a64c25eeb5261498d4cc4f5dd21835f72483bbd"
"SHA256", "62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e"
"File size", "718296 bytes"
"Scan date", "2010-10-08 10:44:28 (UTC)"
<table id="filescan">
<tr>
<th>Antivirus</th>
<th>Version</th>
<th>Last update</th>
<th>Result</th>
</tr>
<tr>
<td>AhnLab-V3</td>
<td>2010.10.08.01</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>AntiVir</td>
<td>7.10.12.164</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Antiy-AVL</td>
<td>2.0.3.7</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Authentium</td>
<td>5.2.0.5</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Avast</td>
<td>4.8.1351.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Avast5</td>
<td>5.0.594.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>AVG</td>
<td>9.0.0.851</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>BitDefender</td>
<td>7.2</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>CAT-QuickHeal</td>
<td>11.00</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>ClamAV</td>
<td>0.96.2.0-git</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Comodo</td>
<td>6317</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>DrWeb</td>
<td>5.0.2.03300</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Emsisoft</td>
<td>5.0.0.50</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>eSafe</td>
<td>7.0.17.0</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>eTrust-Vet</td>
<td>36.1.7900</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>F-Prot</td>
<td>4.6.2.117</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>F-Secure</td>
<td>9.0.15370.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Fortinet</td>
<td>4.2.249.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>GData</td>
<td>21</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Ikarus</td>
<td>T3.1.1.90.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Jiangmin</td>
<td>13.0.900</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>K7AntiVirus</td>
<td>9.63.2698</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>Kaspersky</td>
<td>7.0.0.125</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>McAfee</td>
<td>5.400.0.1158</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>McAfee-GW-Edition</td>
<td>2010.1C</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Microsoft</td>
<td>1.6201</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>NOD32</td>
<td>5514</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Norman</td>
<td>6.06.07</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>nProtect</td>
<td>2010-10-08.01</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Panda</td>
<td>10.0.2.7</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>PCTools</td>
<td>7.0.3.5</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Prevx</td>
<td>3.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Rising</td>
<td>22.67.02.07</td>
<td>2010.09.30</td>
<td>-</td>
</tr>
<tr>
<td>Sophos</td>
<td>4.58.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Sunbelt</td>
<td>7012</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>SUPERAntiSpyware</td>
<td>4.40.0.1006</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Symantec</td>
<td>20101.2.0.161</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>TheHacker</td>
<td>6.7.0.1.052</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>TrendMicro</td>
<td>9.120.0.1004</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>TrendMicro-HouseCall</td>
<td>9.120.0.1004</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>VBA32</td>
<td>3.12.14.1</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>ViRobot</td>
<td>2010.10.4.4074</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>VirusBuster</td>
<td>12.67.8.0</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<table>
<table id="fileinfo">
<tr>
<th>Additional information</th>
</tr>
<tr>
<td><strong>MD5:</strong> 1ceafce0aad2c0b5bf9f7a2abc0ae1b4</td>
</tr>
<tr>
<td><strong>SHA1:</strong> 4a64c25eeb5261498d4cc4f5dd21835f72483bbd</td>
</tr>
<tr>
<td><strong>SHA256:</strong> 62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e</td>
</tr>
<tr>
<td><strong>File size:</strong> 718296 bytes</td>
</tr>
<tr>
<td><strong>Scan date:</strong> 2010-10-08 10:44:28 (UTC)</td>
</tr>
</table>
Antivirus results
AhnLab-V3 - 2010.10.08.01 - 2010.10.08 - -
AntiVir - 7.10.12.164 - 2010.10.08 - -
Antiy-AVL - 2.0.3.7 - 2010.10.08 - -
Authentium - 5.2.0.5 - 2010.10.08 - -
Avast - 4.8.1351.0 - 2010.10.08 - -
Avast5 - 5.0.594.0 - 2010.10.08 - -
AVG - 9.0.0.851 - 2010.10.07 - -
BitDefender - 7.2 - 2010.10.08 - -
CAT-QuickHeal - 11.00 - 2010.10.08 - -
ClamAV - 0.96.2.0-git - 2010.10.08 - -
Comodo - 6317 - 2010.10.07 - -
DrWeb - 5.0.2.03300 - 2010.10.08 - -
Emsisoft - 5.0.0.50 - 2010.10.08 - -
eSafe - 7.0.17.0 - 2010.10.07 - -
eTrust-Vet - 36.1.7900 - 2010.10.08 - -
F-Prot - 4.6.2.117 - 2010.10.08 - -
F-Secure - 9.0.15370.0 - 2010.10.08 - -
Fortinet - 4.2.249.0 - 2010.10.08 - -
GData - 21 - 2010.10.08 - -
Ikarus - T3.1.1.90.0 - 2010.10.08 - -
Jiangmin - 13.0.900 - 2010.10.08 - -
K7AntiVirus - 9.63.2698 - 2010.10.07 - -
Kaspersky - 7.0.0.125 - 2010.10.08 - -
McAfee - 5.400.0.1158 - 2010.10.08 - -
McAfee-GW-Edition - 2010.1C - 2010.10.08 - -
Microsoft - 1.6201 - 2010.10.08 - -
NOD32 - 5514 - 2010.10.08 - -
Norman - 6.06.07 - 2010.10.07 - -
nProtect - 2010-10-08.01 - 2010.10.08 - -
Panda - 10.0.2.7 - 2010.10.08 - -
PCTools - 7.0.3.5 - 2010.10.08 - -
Prevx - 3.0 - 2010.10.08 - -
Rising - 22.67.02.07 - 2010.09.30 - -
Sophos - 4.58.0 - 2010.10.08 - -
Sunbelt - 7012 - 2010.10.08 - -
SUPERAntiSpyware - 4.40.0.1006 - 2010.10.08 - -
Symantec - 20101.2.0.161 - 2010.10.08 - -
TheHacker - 6.7.0.1.052 - 2010.10.08 - -
TrendMicro - 9.120.0.1004 - 2010.10.08 - -
TrendMicro-HouseCall - 9.120.0.1004 - 2010.10.08 - -
VBA32 - 3.12.14.1 - 2010.10.07 - -
ViRobot - 2010.10.4.4074 - 2010.10.08 - -
VirusBuster - 12.67.8.0 - 2010.10.07 - -
File info:
MD5: 1ceafce0aad2c0b5bf9f7a2abc0ae1b4
SHA1: 4a64c25eeb5261498d4cc4f5dd21835f72483bbd
SHA256: 62d2b039ae7bbae88c85eb8e2daeb2c8a4e698704ecc84d9dc74d63e416f3a1e
File size: 718296 bytes
Scan date: 2010-10-08 10:44:28 (UTC)
Re: Smart security
* Table
* Tabulated
* CSV
* HTML
* BBCode
* Show positives only
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 TR/Crypt.XPACK.Gen
Antiy-AVL 2.0.3.7 2010.10.08 Trojan/Win32.FraudPack.gen
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 Win32:Malware-gen
Avast5 5.0.594.0 2010.10.08 Win32:Malware-gen
AVG 9.0.0.851 2010.10.07 Generic19.AKVH
BitDefender 7.2 2010.10.08 Gen:Variant.Kazy.1203
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 UnclassifiedMalware
DrWeb 5.0.2.03300 2010.10.08 Trojan.MulDrop1.48620
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 Win32/Tnega.UXX
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 Gen:Variant.Kazy.1203
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 Gen:Variant.Kazy.1203
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 Trojan.Win32.FraudPack.butb
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 VirTool:Win32/Obfuscator.XX
NOD32 5514 2010.10.08 a variant of Win32/Kryptik.HDC
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 Gen:Variant.Kazy.1203
Panda 10.0.2.7 2010.10.08 Trj/CI.A
PCTools 7.0.3.5 2010.10.08 RogueAntiSpyware.CoreGuardAntivirus2009!rem
Prevx 3.0 2010.10.08 High Risk Fraudulent Security Program
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 Mal/FakeAV-BW
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 CoreGuardAntivirus2009
TheHacker 6.7.0.1.052 2010.10.08 Trojan/FraudPack.butb
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 Trojan.Win32.Buzus
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 Trojan.FraudPack.ARJL
MD5: 03e0c4a3594805f7337464d13444dd8c
SHA1: 7b31e8c53c7bd25d34f7da58d77b649e2aa5c028
SHA256: ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54
File size: 3919872 bytes
Scan date: 2010-10-08 10:47:19 (UTC)
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 TR/Crypt.XPACK.Gen
Antiy-AVL 2.0.3.7 2010.10.08 Trojan/Win32.FraudPack.gen
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 Win32:Malware-gen
Avast5 5.0.594.0 2010.10.08 Win32:Malware-gen
AVG 9.0.0.851 2010.10.07 Generic19.AKVH
BitDefender 7.2 2010.10.08 Gen:Variant.Kazy.1203
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 UnclassifiedMalware
DrWeb 5.0.2.03300 2010.10.08 Trojan.MulDrop1.48620
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 Win32/Tnega.UXX
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 Gen:Variant.Kazy.1203
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 Gen:Variant.Kazy.1203
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 Trojan.Win32.FraudPack.butb
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 VirTool:Win32/Obfuscator.XX
NOD32 5514 2010.10.08 a variant of Win32/Kryptik.HDC
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 Gen:Variant.Kazy.1203
Panda 10.0.2.7 2010.10.08 Trj/CI.A
PCTools 7.0.3.5 2010.10.08 RogueAntiSpyware.CoreGuardAntivirus2009!rem
Prevx 3.0 2010.10.08 High Risk Fraudulent Security Program
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 Mal/FakeAV-BW
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 CoreGuardAntivirus2009
TheHacker 6.7.0.1.052 2010.10.08 Trojan/FraudPack.butb
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 Trojan.Win32.Buzus
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 Trojan.FraudPack.ARJL
MD5: 03e0c4a3594805f7337464d13444dd8c
SHA1: 7b31e8c53c7bd25d34f7da58d77b649e2aa5c028
SHA256: ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54
File size: 3919872 bytes
Scan date: 2010-10-08 10:47:19 (UTC)
"Antivirus", "Version", "Last update", "Result"
"AhnLab-V3", "2010.10.08.01", "2010.10.08", "-"
"AntiVir", "7.10.12.164", "2010.10.08", "TR/Crypt.XPACK.Gen"
"Antiy-AVL", "2.0.3.7", "2010.10.08", "Trojan/Win32.FraudPack.gen"
"Authentium", "5.2.0.5", "2010.10.08", "-"
"Avast", "4.8.1351.0", "2010.10.08", "Win32:Malware-gen"
"Avast5", "5.0.594.0", "2010.10.08", "Win32:Malware-gen"
"AVG", "9.0.0.851", "2010.10.07", "Generic19.AKVH"
"BitDefender", "7.2", "2010.10.08", "Gen:Variant.Kazy.1203"
"CAT-QuickHeal", "11.00", "2010.10.08", "-"
"ClamAV", "0.96.2.0-git", "2010.10.08", "-"
"Comodo", "6317", "2010.10.07", "UnclassifiedMalware"
"DrWeb", "5.0.2.03300", "2010.10.08", "Trojan.MulDrop1.48620"
"Emsisoft", "5.0.0.50", "2010.10.08", "-"
"eSafe", "7.0.17.0", "2010.10.07", "-"
"eTrust-Vet", "36.1.7900", "2010.10.08", "Win32/Tnega.UXX"
"F-Prot", "4.6.2.117", "2010.10.08", "-"
"F-Secure", "9.0.15370.0", "2010.10.08", "Gen:Variant.Kazy.1203"
"Fortinet", "4.2.249.0", "2010.10.08", "-"
"GData", "21", "2010.10.08", "Gen:Variant.Kazy.1203"
"Ikarus", "T3.1.1.90.0", "2010.10.08", "-"
"Jiangmin", "13.0.900", "2010.10.08", "-"
"K7AntiVirus", "9.63.2698", "2010.10.07", "-"
"Kaspersky", "7.0.0.125", "2010.10.08", "Trojan.Win32.FraudPack.butb"
"McAfee", "5.400.0.1158", "2010.10.08", "-"
"McAfee-GW-Edition", "2010.1C", "2010.10.08", "-"
"Microsoft", "1.6201", "2010.10.08", "VirTool:Win32/Obfuscator.XX"
"NOD32", "5514", "2010.10.08", "a variant of Win32/Kryptik.HDC"
"Norman", "6.06.07", "2010.10.07", "-"
"nProtect", "2010-10-08.01", "2010.10.08", "Gen:Variant.Kazy.1203"
"Panda", "10.0.2.7", "2010.10.08", "Trj/CI.A"
"PCTools", "7.0.3.5", "2010.10.08", "RogueAntiSpyware.CoreGuardAntivirus2009!rem"
"Prevx", "3.0", "2010.10.08", "High Risk Fraudulent Security Program"
"Rising", "22.67.02.07", "2010.09.30", "-"
"Sophos", "4.58.0", "2010.10.08", "Mal/FakeAV-BW"
"Sunbelt", "7012", "2010.10.08", "-"
"SUPERAntiSpyware", "4.40.0.1006", "2010.10.08", "-"
"Symantec", "20101.2.0.161", "2010.10.08", "CoreGuardAntivirus2009"
"TheHacker", "6.7.0.1.052", "2010.10.08", "Trojan/FraudPack.butb"
"TrendMicro", "9.120.0.1004", "2010.10.08", "-"
"TrendMicro-HouseCall", "9.120.0.1004", "2010.10.08", "-"
"VBA32", "3.12.14.1", "2010.10.07", "Trojan.Win32.Buzus"
"ViRobot", "2010.10.4.4074", "2010.10.08", "-"
"VirusBuster", "12.67.8.0", "2010.10.07", "Trojan.FraudPack.ARJL"
"MD5", "03e0c4a3594805f7337464d13444dd8c"
"SHA1", "7b31e8c53c7bd25d34f7da58d77b649e2aa5c028"
"SHA256", "ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54"
"File size", "3919872 bytes"
"Scan date", "2010-10-08 10:47:19 (UTC)"
<table id="filescan">
<tr>
<th>Antivirus</th>
<th>Version</th>
<th>Last update</th>
<th>Result</th>
</tr>
<tr>
<td>AhnLab-V3</td>
<td>2010.10.08.01</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>AntiVir</td>
<td>7.10.12.164</td>
<td>2010.10.08</td>
<td class="positive">TR/Crypt.XPACK.Gen</td>
</tr>
<tr>
<td>Antiy-AVL</td>
<td>2.0.3.7</td>
<td>2010.10.08</td>
<td class="positive">Trojan/Win32.FraudPack.gen</td>
</tr>
<tr>
<td>Authentium</td>
<td>5.2.0.5</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Avast</td>
<td>4.8.1351.0</td>
<td>2010.10.08</td>
<td class="positive">Win32:Malware-gen</td>
</tr>
<tr>
<td>Avast5</td>
<td>5.0.594.0</td>
<td>2010.10.08</td>
<td class="positive">Win32:Malware-gen</td>
</tr>
<tr>
<td>AVG</td>
<td>9.0.0.851</td>
<td>2010.10.07</td>
<td class="positive">Generic19.AKVH</td>
</tr>
<tr>
<td>BitDefender</td>
<td>7.2</td>
<td>2010.10.08</td>
<td class="positive">Gen:Variant.Kazy.1203</td>
</tr>
<tr>
<td>CAT-QuickHeal</td>
<td>11.00</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>ClamAV</td>
<td>0.96.2.0-git</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Comodo</td>
<td>6317</td>
<td>2010.10.07</td>
<td class="positive">UnclassifiedMalware</td>
</tr>
<tr>
<td>DrWeb</td>
<td>5.0.2.03300</td>
<td>2010.10.08</td>
<td class="positive">Trojan.MulDrop1.48620</td>
</tr>
<tr>
<td>Emsisoft</td>
<td>5.0.0.50</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>eSafe</td>
<td>7.0.17.0</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>eTrust-Vet</td>
<td>36.1.7900</td>
<td>2010.10.08</td>
<td class="positive">Win32/Tnega.UXX</td>
</tr>
<tr>
<td>F-Prot</td>
<td>4.6.2.117</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>F-Secure</td>
<td>9.0.15370.0</td>
<td>2010.10.08</td>
<td class="positive">Gen:Variant.Kazy.1203</td>
</tr>
<tr>
<td>Fortinet</td>
<td>4.2.249.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>GData</td>
<td>21</td>
<td>2010.10.08</td>
<td class="positive">Gen:Variant.Kazy.1203</td>
</tr>
<tr>
<td>Ikarus</td>
<td>T3.1.1.90.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Jiangmin</td>
<td>13.0.900</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>K7AntiVirus</td>
<td>9.63.2698</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>Kaspersky</td>
<td>7.0.0.125</td>
<td>2010.10.08</td>
<td class="positive">Trojan.Win32.FraudPack.butb</td>
</tr>
<tr>
<td>McAfee</td>
<td>5.400.0.1158</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>McAfee-GW-Edition</td>
<td>2010.1C</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Microsoft</td>
<td>1.6201</td>
<td>2010.10.08</td>
<td class="positive">VirTool:Win32/Obfuscator.XX</td>
</tr>
<tr>
<td>NOD32</td>
<td>5514</td>
<td>2010.10.08</td>
<td class="positive">a variant of Win32/Kryptik.HDC</td>
</tr>
<tr>
<td>Norman</td>
<td>6.06.07</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>nProtect</td>
<td>2010-10-08.01</td>
<td>2010.10.08</td>
<td class="positive">Gen:Variant.Kazy.1203</td>
</tr>
<tr>
<td>Panda</td>
<td>10.0.2.7</td>
<td>2010.10.08</td>
<td class="positive">Trj/CI.A</td>
</tr>
<tr>
<td>PCTools</td>
<td>7.0.3.5</td>
<td>2010.10.08</td>
<td class="positive">RogueAntiSpyware.CoreGuardAntivirus2009!rem</td>
</tr>
<tr>
<td>Prevx</td>
<td>3.0</td>
<td>2010.10.08</td>
<td class="positive">High Risk Fraudulent Security Program</td>
</tr>
<tr>
<td>Rising</td>
<td>22.67.02.07</td>
<td>2010.09.30</td>
<td>-</td>
</tr>
<tr>
<td>Sophos</td>
<td>4.58.0</td>
<td>2010.10.08</td>
<td class="positive">Mal/FakeAV-BW</td>
</tr>
<tr>
<td>Sunbelt</td>
<td>7012</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>SUPERAntiSpyware</td>
<td>4.40.0.1006</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Symantec</td>
<td>20101.2.0.161</td>
<td>2010.10.08</td>
<td class="positive">CoreGuardAntivirus2009</td>
</tr>
<tr>
<td>TheHacker</td>
<td>6.7.0.1.052</td>
<td>2010.10.08</td>
<td class="positive">Trojan/FraudPack.butb</td>
</tr>
<tr>
<td>TrendMicro</td>
<td>9.120.0.1004</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>TrendMicro-HouseCall</td>
<td>9.120.0.1004</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>VBA32</td>
<td>3.12.14.1</td>
<td>2010.10.07</td>
<td class="positive">Trojan.Win32.Buzus</td>
</tr>
<tr>
<td>ViRobot</td>
<td>2010.10.4.4074</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>VirusBuster</td>
<td>12.67.8.0</td>
<td>2010.10.07</td>
<td class="positive">Trojan.FraudPack.ARJL</td>
</tr>
<table>
<table id="fileinfo">
<tr>
<th>Additional information</th>
</tr>
<tr>
<td><strong>MD5:</strong> 03e0c4a3594805f7337464d13444dd8c</td>
</tr>
<tr>
<td><strong>SHA1:</strong> 7b31e8c53c7bd25d34f7da58d77b649e2aa5c028</td>
</tr>
<tr>
<td><strong>SHA256:</strong> ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54</td>
</tr>
<tr>
<td><strong>File size:</strong> 3919872 bytes</td>
</tr>
<tr>
<td><strong>Scan date:</strong> 2010-10-08 10:47:19 (UTC)</td>
</tr>
</table>
Antivirus results
AhnLab-V3 - 2010.10.08.01 - 2010.10.08 - -
AntiVir - 7.10.12.164 - 2010.10.08 - TR/Crypt.XPACK.Gen
Antiy-AVL - 2.0.3.7 - 2010.10.08 - Trojan/Win32.FraudPack.gen
Authentium - 5.2.0.5 - 2010.10.08 - -
Avast - 4.8.1351.0 - 2010.10.08 - Win32:Malware-gen
Avast5 - 5.0.594.0 - 2010.10.08 - Win32:Malware-gen
AVG - 9.0.0.851 - 2010.10.07 - Generic19.AKVH
BitDefender - 7.2 - 2010.10.08 - Gen:Variant.Kazy.1203
CAT-QuickHeal - 11.00 - 2010.10.08 - -
ClamAV - 0.96.2.0-git - 2010.10.08 - -
Comodo - 6317 - 2010.10.07 - UnclassifiedMalware
DrWeb - 5.0.2.03300 - 2010.10.08 - Trojan.MulDrop1.48620
Emsisoft - 5.0.0.50 - 2010.10.08 - -
eSafe - 7.0.17.0 - 2010.10.07 - -
eTrust-Vet - 36.1.7900 - 2010.10.08 - Win32/Tnega.UXX
F-Prot - 4.6.2.117 - 2010.10.08 - -
F-Secure - 9.0.15370.0 - 2010.10.08 - Gen:Variant.Kazy.1203
Fortinet - 4.2.249.0 - 2010.10.08 - -
GData - 21 - 2010.10.08 - Gen:Variant.Kazy.1203
Ikarus - T3.1.1.90.0 - 2010.10.08 - -
Jiangmin - 13.0.900 - 2010.10.08 - -
K7AntiVirus - 9.63.2698 - 2010.10.07 - -
Kaspersky - 7.0.0.125 - 2010.10.08 - Trojan.Win32.FraudPack.butb
McAfee - 5.400.0.1158 - 2010.10.08 - -
McAfee-GW-Edition - 2010.1C - 2010.10.08 - -
Microsoft - 1.6201 - 2010.10.08 - VirTool:Win32/Obfuscator.XX
NOD32 - 5514 - 2010.10.08 - a variant of Win32/Kryptik.HDC
Norman - 6.06.07 - 2010.10.07 - -
nProtect - 2010-10-08.01 - 2010.10.08 - Gen:Variant.Kazy.1203
Panda - 10.0.2.7 - 2010.10.08 - Trj/CI.A
PCTools - 7.0.3.5 - 2010.10.08 - RogueAntiSpyware.CoreGuardAntivirus2009!rem
Prevx - 3.0 - 2010.10.08 - High Risk Fraudulent Security Program
Rising - 22.67.02.07 - 2010.09.30 - -
Sophos - 4.58.0 - 2010.10.08 - Mal/FakeAV-BW
Sunbelt - 7012 - 2010.10.08 - -
SUPERAntiSpyware - 4.40.0.1006 - 2010.10.08 - -
Symantec - 20101.2.0.161 - 2010.10.08 - CoreGuardAntivirus2009
TheHacker - 6.7.0.1.052 - 2010.10.08 - Trojan/FraudPack.butb
TrendMicro - 9.120.0.1004 - 2010.10.08 - -
TrendMicro-HouseCall - 9.120.0.1004 - 2010.10.08 - -
VBA32 - 3.12.14.1 - 2010.10.07 - Trojan.Win32.Buzus
ViRobot - 2010.10.4.4074 - 2010.10.08 - -
VirusBuster - 12.67.8.0 - 2010.10.07 - Trojan.FraudPack.ARJL
File info:
MD5: 03e0c4a3594805f7337464d13444dd8c
SHA1: 7b31e8c53c7bd25d34f7da58d77b649e2aa5c028
SHA256: ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54
File size: 3919872 bytes
Scan date: 2010-10-08 10:47:19 (UTC)
Doufám že jsem to udělal dobře,
* Tabulated
* CSV
* HTML
* BBCode
* Show positives only
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 TR/Crypt.XPACK.Gen
Antiy-AVL 2.0.3.7 2010.10.08 Trojan/Win32.FraudPack.gen
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 Win32:Malware-gen
Avast5 5.0.594.0 2010.10.08 Win32:Malware-gen
AVG 9.0.0.851 2010.10.07 Generic19.AKVH
BitDefender 7.2 2010.10.08 Gen:Variant.Kazy.1203
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 UnclassifiedMalware
DrWeb 5.0.2.03300 2010.10.08 Trojan.MulDrop1.48620
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 Win32/Tnega.UXX
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 Gen:Variant.Kazy.1203
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 Gen:Variant.Kazy.1203
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 Trojan.Win32.FraudPack.butb
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 VirTool:Win32/Obfuscator.XX
NOD32 5514 2010.10.08 a variant of Win32/Kryptik.HDC
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 Gen:Variant.Kazy.1203
Panda 10.0.2.7 2010.10.08 Trj/CI.A
PCTools 7.0.3.5 2010.10.08 RogueAntiSpyware.CoreGuardAntivirus2009!rem
Prevx 3.0 2010.10.08 High Risk Fraudulent Security Program
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 Mal/FakeAV-BW
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 CoreGuardAntivirus2009
TheHacker 6.7.0.1.052 2010.10.08 Trojan/FraudPack.butb
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 Trojan.Win32.Buzus
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 Trojan.FraudPack.ARJL
MD5: 03e0c4a3594805f7337464d13444dd8c
SHA1: 7b31e8c53c7bd25d34f7da58d77b649e2aa5c028
SHA256: ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54
File size: 3919872 bytes
Scan date: 2010-10-08 10:47:19 (UTC)
Antivirus Version Last update Result
AhnLab-V3 2010.10.08.01 2010.10.08 -
AntiVir 7.10.12.164 2010.10.08 TR/Crypt.XPACK.Gen
Antiy-AVL 2.0.3.7 2010.10.08 Trojan/Win32.FraudPack.gen
Authentium 5.2.0.5 2010.10.08 -
Avast 4.8.1351.0 2010.10.08 Win32:Malware-gen
Avast5 5.0.594.0 2010.10.08 Win32:Malware-gen
AVG 9.0.0.851 2010.10.07 Generic19.AKVH
BitDefender 7.2 2010.10.08 Gen:Variant.Kazy.1203
CAT-QuickHeal 11.00 2010.10.08 -
ClamAV 0.96.2.0-git 2010.10.08 -
Comodo 6317 2010.10.07 UnclassifiedMalware
DrWeb 5.0.2.03300 2010.10.08 Trojan.MulDrop1.48620
Emsisoft 5.0.0.50 2010.10.08 -
eSafe 7.0.17.0 2010.10.07 -
eTrust-Vet 36.1.7900 2010.10.08 Win32/Tnega.UXX
F-Prot 4.6.2.117 2010.10.08 -
F-Secure 9.0.15370.0 2010.10.08 Gen:Variant.Kazy.1203
Fortinet 4.2.249.0 2010.10.08 -
GData 21 2010.10.08 Gen:Variant.Kazy.1203
Ikarus T3.1.1.90.0 2010.10.08 -
Jiangmin 13.0.900 2010.10.08 -
K7AntiVirus 9.63.2698 2010.10.07 -
Kaspersky 7.0.0.125 2010.10.08 Trojan.Win32.FraudPack.butb
McAfee 5.400.0.1158 2010.10.08 -
McAfee-GW-Edition 2010.1C 2010.10.08 -
Microsoft 1.6201 2010.10.08 VirTool:Win32/Obfuscator.XX
NOD32 5514 2010.10.08 a variant of Win32/Kryptik.HDC
Norman 6.06.07 2010.10.07 -
nProtect 2010-10-08.01 2010.10.08 Gen:Variant.Kazy.1203
Panda 10.0.2.7 2010.10.08 Trj/CI.A
PCTools 7.0.3.5 2010.10.08 RogueAntiSpyware.CoreGuardAntivirus2009!rem
Prevx 3.0 2010.10.08 High Risk Fraudulent Security Program
Rising 22.67.02.07 2010.09.30 -
Sophos 4.58.0 2010.10.08 Mal/FakeAV-BW
Sunbelt 7012 2010.10.08 -
SUPERAntiSpyware 4.40.0.1006 2010.10.08 -
Symantec 20101.2.0.161 2010.10.08 CoreGuardAntivirus2009
TheHacker 6.7.0.1.052 2010.10.08 Trojan/FraudPack.butb
TrendMicro 9.120.0.1004 2010.10.08 -
TrendMicro-HouseCall 9.120.0.1004 2010.10.08 -
VBA32 3.12.14.1 2010.10.07 Trojan.Win32.Buzus
ViRobot 2010.10.4.4074 2010.10.08 -
VirusBuster 12.67.8.0 2010.10.07 Trojan.FraudPack.ARJL
MD5: 03e0c4a3594805f7337464d13444dd8c
SHA1: 7b31e8c53c7bd25d34f7da58d77b649e2aa5c028
SHA256: ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54
File size: 3919872 bytes
Scan date: 2010-10-08 10:47:19 (UTC)
"Antivirus", "Version", "Last update", "Result"
"AhnLab-V3", "2010.10.08.01", "2010.10.08", "-"
"AntiVir", "7.10.12.164", "2010.10.08", "TR/Crypt.XPACK.Gen"
"Antiy-AVL", "2.0.3.7", "2010.10.08", "Trojan/Win32.FraudPack.gen"
"Authentium", "5.2.0.5", "2010.10.08", "-"
"Avast", "4.8.1351.0", "2010.10.08", "Win32:Malware-gen"
"Avast5", "5.0.594.0", "2010.10.08", "Win32:Malware-gen"
"AVG", "9.0.0.851", "2010.10.07", "Generic19.AKVH"
"BitDefender", "7.2", "2010.10.08", "Gen:Variant.Kazy.1203"
"CAT-QuickHeal", "11.00", "2010.10.08", "-"
"ClamAV", "0.96.2.0-git", "2010.10.08", "-"
"Comodo", "6317", "2010.10.07", "UnclassifiedMalware"
"DrWeb", "5.0.2.03300", "2010.10.08", "Trojan.MulDrop1.48620"
"Emsisoft", "5.0.0.50", "2010.10.08", "-"
"eSafe", "7.0.17.0", "2010.10.07", "-"
"eTrust-Vet", "36.1.7900", "2010.10.08", "Win32/Tnega.UXX"
"F-Prot", "4.6.2.117", "2010.10.08", "-"
"F-Secure", "9.0.15370.0", "2010.10.08", "Gen:Variant.Kazy.1203"
"Fortinet", "4.2.249.0", "2010.10.08", "-"
"GData", "21", "2010.10.08", "Gen:Variant.Kazy.1203"
"Ikarus", "T3.1.1.90.0", "2010.10.08", "-"
"Jiangmin", "13.0.900", "2010.10.08", "-"
"K7AntiVirus", "9.63.2698", "2010.10.07", "-"
"Kaspersky", "7.0.0.125", "2010.10.08", "Trojan.Win32.FraudPack.butb"
"McAfee", "5.400.0.1158", "2010.10.08", "-"
"McAfee-GW-Edition", "2010.1C", "2010.10.08", "-"
"Microsoft", "1.6201", "2010.10.08", "VirTool:Win32/Obfuscator.XX"
"NOD32", "5514", "2010.10.08", "a variant of Win32/Kryptik.HDC"
"Norman", "6.06.07", "2010.10.07", "-"
"nProtect", "2010-10-08.01", "2010.10.08", "Gen:Variant.Kazy.1203"
"Panda", "10.0.2.7", "2010.10.08", "Trj/CI.A"
"PCTools", "7.0.3.5", "2010.10.08", "RogueAntiSpyware.CoreGuardAntivirus2009!rem"
"Prevx", "3.0", "2010.10.08", "High Risk Fraudulent Security Program"
"Rising", "22.67.02.07", "2010.09.30", "-"
"Sophos", "4.58.0", "2010.10.08", "Mal/FakeAV-BW"
"Sunbelt", "7012", "2010.10.08", "-"
"SUPERAntiSpyware", "4.40.0.1006", "2010.10.08", "-"
"Symantec", "20101.2.0.161", "2010.10.08", "CoreGuardAntivirus2009"
"TheHacker", "6.7.0.1.052", "2010.10.08", "Trojan/FraudPack.butb"
"TrendMicro", "9.120.0.1004", "2010.10.08", "-"
"TrendMicro-HouseCall", "9.120.0.1004", "2010.10.08", "-"
"VBA32", "3.12.14.1", "2010.10.07", "Trojan.Win32.Buzus"
"ViRobot", "2010.10.4.4074", "2010.10.08", "-"
"VirusBuster", "12.67.8.0", "2010.10.07", "Trojan.FraudPack.ARJL"
"MD5", "03e0c4a3594805f7337464d13444dd8c"
"SHA1", "7b31e8c53c7bd25d34f7da58d77b649e2aa5c028"
"SHA256", "ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54"
"File size", "3919872 bytes"
"Scan date", "2010-10-08 10:47:19 (UTC)"
<table id="filescan">
<tr>
<th>Antivirus</th>
<th>Version</th>
<th>Last update</th>
<th>Result</th>
</tr>
<tr>
<td>AhnLab-V3</td>
<td>2010.10.08.01</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>AntiVir</td>
<td>7.10.12.164</td>
<td>2010.10.08</td>
<td class="positive">TR/Crypt.XPACK.Gen</td>
</tr>
<tr>
<td>Antiy-AVL</td>
<td>2.0.3.7</td>
<td>2010.10.08</td>
<td class="positive">Trojan/Win32.FraudPack.gen</td>
</tr>
<tr>
<td>Authentium</td>
<td>5.2.0.5</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Avast</td>
<td>4.8.1351.0</td>
<td>2010.10.08</td>
<td class="positive">Win32:Malware-gen</td>
</tr>
<tr>
<td>Avast5</td>
<td>5.0.594.0</td>
<td>2010.10.08</td>
<td class="positive">Win32:Malware-gen</td>
</tr>
<tr>
<td>AVG</td>
<td>9.0.0.851</td>
<td>2010.10.07</td>
<td class="positive">Generic19.AKVH</td>
</tr>
<tr>
<td>BitDefender</td>
<td>7.2</td>
<td>2010.10.08</td>
<td class="positive">Gen:Variant.Kazy.1203</td>
</tr>
<tr>
<td>CAT-QuickHeal</td>
<td>11.00</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>ClamAV</td>
<td>0.96.2.0-git</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Comodo</td>
<td>6317</td>
<td>2010.10.07</td>
<td class="positive">UnclassifiedMalware</td>
</tr>
<tr>
<td>DrWeb</td>
<td>5.0.2.03300</td>
<td>2010.10.08</td>
<td class="positive">Trojan.MulDrop1.48620</td>
</tr>
<tr>
<td>Emsisoft</td>
<td>5.0.0.50</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>eSafe</td>
<td>7.0.17.0</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>eTrust-Vet</td>
<td>36.1.7900</td>
<td>2010.10.08</td>
<td class="positive">Win32/Tnega.UXX</td>
</tr>
<tr>
<td>F-Prot</td>
<td>4.6.2.117</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>F-Secure</td>
<td>9.0.15370.0</td>
<td>2010.10.08</td>
<td class="positive">Gen:Variant.Kazy.1203</td>
</tr>
<tr>
<td>Fortinet</td>
<td>4.2.249.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>GData</td>
<td>21</td>
<td>2010.10.08</td>
<td class="positive">Gen:Variant.Kazy.1203</td>
</tr>
<tr>
<td>Ikarus</td>
<td>T3.1.1.90.0</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Jiangmin</td>
<td>13.0.900</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>K7AntiVirus</td>
<td>9.63.2698</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>Kaspersky</td>
<td>7.0.0.125</td>
<td>2010.10.08</td>
<td class="positive">Trojan.Win32.FraudPack.butb</td>
</tr>
<tr>
<td>McAfee</td>
<td>5.400.0.1158</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>McAfee-GW-Edition</td>
<td>2010.1C</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Microsoft</td>
<td>1.6201</td>
<td>2010.10.08</td>
<td class="positive">VirTool:Win32/Obfuscator.XX</td>
</tr>
<tr>
<td>NOD32</td>
<td>5514</td>
<td>2010.10.08</td>
<td class="positive">a variant of Win32/Kryptik.HDC</td>
</tr>
<tr>
<td>Norman</td>
<td>6.06.07</td>
<td>2010.10.07</td>
<td>-</td>
</tr>
<tr>
<td>nProtect</td>
<td>2010-10-08.01</td>
<td>2010.10.08</td>
<td class="positive">Gen:Variant.Kazy.1203</td>
</tr>
<tr>
<td>Panda</td>
<td>10.0.2.7</td>
<td>2010.10.08</td>
<td class="positive">Trj/CI.A</td>
</tr>
<tr>
<td>PCTools</td>
<td>7.0.3.5</td>
<td>2010.10.08</td>
<td class="positive">RogueAntiSpyware.CoreGuardAntivirus2009!rem</td>
</tr>
<tr>
<td>Prevx</td>
<td>3.0</td>
<td>2010.10.08</td>
<td class="positive">High Risk Fraudulent Security Program</td>
</tr>
<tr>
<td>Rising</td>
<td>22.67.02.07</td>
<td>2010.09.30</td>
<td>-</td>
</tr>
<tr>
<td>Sophos</td>
<td>4.58.0</td>
<td>2010.10.08</td>
<td class="positive">Mal/FakeAV-BW</td>
</tr>
<tr>
<td>Sunbelt</td>
<td>7012</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>SUPERAntiSpyware</td>
<td>4.40.0.1006</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>Symantec</td>
<td>20101.2.0.161</td>
<td>2010.10.08</td>
<td class="positive">CoreGuardAntivirus2009</td>
</tr>
<tr>
<td>TheHacker</td>
<td>6.7.0.1.052</td>
<td>2010.10.08</td>
<td class="positive">Trojan/FraudPack.butb</td>
</tr>
<tr>
<td>TrendMicro</td>
<td>9.120.0.1004</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>TrendMicro-HouseCall</td>
<td>9.120.0.1004</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>VBA32</td>
<td>3.12.14.1</td>
<td>2010.10.07</td>
<td class="positive">Trojan.Win32.Buzus</td>
</tr>
<tr>
<td>ViRobot</td>
<td>2010.10.4.4074</td>
<td>2010.10.08</td>
<td>-</td>
</tr>
<tr>
<td>VirusBuster</td>
<td>12.67.8.0</td>
<td>2010.10.07</td>
<td class="positive">Trojan.FraudPack.ARJL</td>
</tr>
<table>
<table id="fileinfo">
<tr>
<th>Additional information</th>
</tr>
<tr>
<td><strong>MD5:</strong> 03e0c4a3594805f7337464d13444dd8c</td>
</tr>
<tr>
<td><strong>SHA1:</strong> 7b31e8c53c7bd25d34f7da58d77b649e2aa5c028</td>
</tr>
<tr>
<td><strong>SHA256:</strong> ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54</td>
</tr>
<tr>
<td><strong>File size:</strong> 3919872 bytes</td>
</tr>
<tr>
<td><strong>Scan date:</strong> 2010-10-08 10:47:19 (UTC)</td>
</tr>
</table>
Antivirus results
AhnLab-V3 - 2010.10.08.01 - 2010.10.08 - -
AntiVir - 7.10.12.164 - 2010.10.08 - TR/Crypt.XPACK.Gen
Antiy-AVL - 2.0.3.7 - 2010.10.08 - Trojan/Win32.FraudPack.gen
Authentium - 5.2.0.5 - 2010.10.08 - -
Avast - 4.8.1351.0 - 2010.10.08 - Win32:Malware-gen
Avast5 - 5.0.594.0 - 2010.10.08 - Win32:Malware-gen
AVG - 9.0.0.851 - 2010.10.07 - Generic19.AKVH
BitDefender - 7.2 - 2010.10.08 - Gen:Variant.Kazy.1203
CAT-QuickHeal - 11.00 - 2010.10.08 - -
ClamAV - 0.96.2.0-git - 2010.10.08 - -
Comodo - 6317 - 2010.10.07 - UnclassifiedMalware
DrWeb - 5.0.2.03300 - 2010.10.08 - Trojan.MulDrop1.48620
Emsisoft - 5.0.0.50 - 2010.10.08 - -
eSafe - 7.0.17.0 - 2010.10.07 - -
eTrust-Vet - 36.1.7900 - 2010.10.08 - Win32/Tnega.UXX
F-Prot - 4.6.2.117 - 2010.10.08 - -
F-Secure - 9.0.15370.0 - 2010.10.08 - Gen:Variant.Kazy.1203
Fortinet - 4.2.249.0 - 2010.10.08 - -
GData - 21 - 2010.10.08 - Gen:Variant.Kazy.1203
Ikarus - T3.1.1.90.0 - 2010.10.08 - -
Jiangmin - 13.0.900 - 2010.10.08 - -
K7AntiVirus - 9.63.2698 - 2010.10.07 - -
Kaspersky - 7.0.0.125 - 2010.10.08 - Trojan.Win32.FraudPack.butb
McAfee - 5.400.0.1158 - 2010.10.08 - -
McAfee-GW-Edition - 2010.1C - 2010.10.08 - -
Microsoft - 1.6201 - 2010.10.08 - VirTool:Win32/Obfuscator.XX
NOD32 - 5514 - 2010.10.08 - a variant of Win32/Kryptik.HDC
Norman - 6.06.07 - 2010.10.07 - -
nProtect - 2010-10-08.01 - 2010.10.08 - Gen:Variant.Kazy.1203
Panda - 10.0.2.7 - 2010.10.08 - Trj/CI.A
PCTools - 7.0.3.5 - 2010.10.08 - RogueAntiSpyware.CoreGuardAntivirus2009!rem
Prevx - 3.0 - 2010.10.08 - High Risk Fraudulent Security Program
Rising - 22.67.02.07 - 2010.09.30 - -
Sophos - 4.58.0 - 2010.10.08 - Mal/FakeAV-BW
Sunbelt - 7012 - 2010.10.08 - -
SUPERAntiSpyware - 4.40.0.1006 - 2010.10.08 - -
Symantec - 20101.2.0.161 - 2010.10.08 - CoreGuardAntivirus2009
TheHacker - 6.7.0.1.052 - 2010.10.08 - Trojan/FraudPack.butb
TrendMicro - 9.120.0.1004 - 2010.10.08 - -
TrendMicro-HouseCall - 9.120.0.1004 - 2010.10.08 - -
VBA32 - 3.12.14.1 - 2010.10.07 - Trojan.Win32.Buzus
ViRobot - 2010.10.4.4074 - 2010.10.08 - -
VirusBuster - 12.67.8.0 - 2010.10.07 - Trojan.FraudPack.ARJL
File info:
MD5: 03e0c4a3594805f7337464d13444dd8c
SHA1: 7b31e8c53c7bd25d34f7da58d77b649e2aa5c028
SHA256: ec4ea575e352b598a16615d1c5b4a4fda5d7680cb0d20b672464cda8e941bf54
File size: 3919872 bytes
Scan date: 2010-10-08 10:47:19 (UTC)
Doufám že jsem to udělal dobře,
Re: Smart security
Mno, chybí mi názvy testovaných souborů
, to je po řadě jak jsem je vypsala já?
Tuhle složku znáte?
c:\programdata\369d0b
Tuhle složku znáte?
c:\programdata\369d0b
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Smart security
ano je to pořadě jak je to vypsaný
Re: Smart security
-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka
Kód: Vybrat vše
Folder::
c:\users\Lada\AppData\Roaming\Smart Security
c:\programdata\SMWDVNSS
c:\programdata\369d0b
c:\program files\SweetIM
Collect::
c:\windows\Ijysoc.exe
c:\windows\Ijysob.exe
c:\windows\Ijysoa.exe
registry::
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"= -
[-HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[-HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[-HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[-HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"=-
[-HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[-HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[-HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[-HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"=-
[-HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[-HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[-HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[-HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"reset"=-
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

-po aplikaci na Vás vypadne další log,vložte ho sem
Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Smart security
ComboFix 10-10-07.01 - Lada 08.10.2010 13:54:01.3.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3036.1867 [GMT 2:00]
Spuštěný z: c:\users\Lada\Downloads\ComboFix.exe
Použité ovládací přepínače :: c:\users\Lada\Desktop\CFScript.txt
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
file zipped: c:\windows\Ijysoa.exe
file zipped: c:\windows\Ijysob.exe
file zipped: c:\windows\Ijysoc.exe
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\SweetIM
c:\program files\SweetIM\Messenger\default.xml
c:\program files\SweetIM\Messenger\mgAdaptersProxy.dll
c:\program files\SweetIM\Messenger\mgAIMAuto.dll
c:\program files\SweetIM\Messenger\mgAIMMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgArchive.dll
c:\program files\SweetIM\Messenger\mgcommon.dll
c:\program files\SweetIM\Messenger\mgcommunication.dll
c:\program files\SweetIM\Messenger\mgconfig.dll
c:\program files\SweetIM\Messenger\mgFlashPlayer.dll
c:\program files\SweetIM\Messenger\mghooking.dll
c:\program files\SweetIM\Messenger\mgICQAuto.dll
c:\program files\SweetIM\Messenger\mgICQMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgIEPlayer.dll
c:\program files\SweetIM\Messenger\mglogger.dll
c:\program files\SweetIM\Messenger\mgMediaPlayer.dll
c:\program files\SweetIM\Messenger\mgMsnAuto.dll
c:\program files\SweetIM\Messenger\mgMsnMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgsimcommon.dll
c:\program files\SweetIM\Messenger\mgSweetIM.dll
c:\program files\SweetIM\Messenger\mgUpdateSupport.dll
c:\program files\SweetIM\Messenger\mgxml_wrapper.dll
c:\program files\SweetIM\Messenger\mgYahooAuto.dll
c:\program files\SweetIM\Messenger\mgYahooMessengerAdapter.dll
c:\program files\SweetIM\Messenger\msvcp71.dll
c:\program files\SweetIM\Messenger\msvcr71.dll
c:\program files\SweetIM\Messenger\resources\images\AudibleButton.png
c:\program files\SweetIM\Messenger\resources\images\DisplayPicturesButton.png
c:\program files\SweetIM\Messenger\resources\images\EmoticonButton.png
c:\program files\SweetIM\Messenger\resources\images\GamesButton.png
c:\program files\SweetIM\Messenger\resources\images\KeyboardButton.png
c:\program files\SweetIM\Messenger\resources\images\NudgeButton.png
c:\program files\SweetIM\Messenger\resources\images\SoundFxButton.png
c:\program files\SweetIM\Messenger\resources\images\WinksButton.png
c:\program files\SweetIM\Messenger\SweetIM.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\ClearHist.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\conf\logger.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\default.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\mgcommon.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgconfig.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\mghooking.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mglogger.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\about.html
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\affid.dat
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\basis.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\bing.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\clear-history.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim-over.gif
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim.gif
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\content-notifier.js
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\dating.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\dictionary.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\e_cards.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\eye_icon.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\eye_icon_over.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\find.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\free_stuff.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\games.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\glitter.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\google.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\help.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\highlight.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\locales.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\logo_16x16.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\logo_21x18.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\logo_32x32.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\logo_about.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\more-search-providers.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\music.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\news.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\options.html
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\photos.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\search-current-site.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\shopping.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\SmileySmile.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\SmileyWink.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\sweetim_text.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\version.txt
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\video.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\web-search.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\yahoo.png
c:\programdata\369d0b
c:\programdata\369d0b\BackUp\Bluetooth.lnk
c:\programdata\369d0b\mozcrt19.dll
c:\programdata\369d0b\SM369_231.exe
c:\programdata\369d0b\SMS.ico
c:\programdata\369d0b\sqlite3.dll
c:\programdata\SMWDVNSS
c:\programdata\SMWDVNSS\SMGJZODZWS.cfg
c:\users\Lada\AppData\Roaming\Smart Security
c:\users\Lada\AppData\Roaming\Smart Security\cookies.sqlite
c:\users\Lada\AppData\Roaming\Smart Security\Instructions.ini
c:\windows\Ijysoa.exe
c:\windows\Ijysob.exe
c:\windows\Ijysoc.exe
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-09-08 do 2010-10-08 )))))))))))))))))))))))))))))))
.
2010-10-08 12:02 . 2010-10-08 12:02 -------- dc----w- c:\users\Public\AppData\Local\temp
2010-10-08 12:02 . 2010-10-08 12:02 -------- dc----w- c:\users\Default\AppData\Local\temp
2010-10-08 09:03 . 2010-10-08 09:03 -------- dc----w- C:\rsit
2010-10-08 09:03 . 2010-10-08 09:03 -------- dc----w- c:\program files\trend micro
2010-10-05 21:18 . 2010-10-05 21:19 -------- dc----w- C:\TEMP
2010-10-05 20:39 . 2010-10-08 12:02 -------- dc----w- c:\users\Lada\AppData\Local\temp
2010-09-28 20:40 . 2010-09-28 20:40 -------- dc----w- c:\program files\ChameleonTom
2010-09-28 17:37 . 2010-06-22 13:30 2048 -c--a-w- c:\windows\system32\tzres.dll
2010-09-21 18:37 . 2010-09-21 18:37 932288 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AdobeARM.exe
2010-09-21 18:37 . 2010-09-21 18:37 932288 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AdobeARM.exe
2010-09-21 18:37 . 2010-09-21 18:37 70584 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AdobeExtractFiles.dll
2010-09-21 18:37 . 2010-09-21 18:37 70584 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AdobeExtractFiles.dll
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\ReaderUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AcrobatUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\ReaderUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AcrobatUpdater.exe
2010-09-15 18:30 . 2010-04-16 16:46 502272 -c--a-w- c:\windows\system32\usp10.dll
2010-09-15 18:30 . 2010-08-17 14:11 128000 -c--a-w- c:\windows\system32\spoolsv.exe
2010-09-15 18:30 . 2010-04-05 17:02 317952 -c--a-w- c:\windows\system32\MP4SDECD.DLL
2010-09-15 18:30 . 2010-05-27 20:08 739328 -c--a-w- c:\windows\system32\inetcomm.dll
2010-09-08 13:04 . 2010-09-18 16:32 6836 -c--a-w- c:\users\Lada\AppData\Local\d3d9caps.dat
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-10-07 16:12 . 2009-12-21 19:18 12 ----a-w- c:\windows\bthservsdp.dat
2010-10-07 15:49 . 2009-05-07 17:24 -------- dc----w- c:\programdata\Google Updater
2010-10-05 16:34 . 2009-01-23 01:52 -------- dc-h--w- c:\program files\InstallShield Installation Information
2010-10-05 15:20 . 2009-05-05 16:31 -------- dc----w- c:\users\Lada\AppData\Roaming\uTorrent
2010-10-05 08:48 . 2008-01-21 06:46 607526 -c--a-w- c:\windows\system32\perfh005.dat
2010-10-05 08:48 . 2008-01-21 06:46 119944 -c--a-w- c:\windows\system32\perfc005.dat
2010-10-04 15:40 . 2010-08-29 09:49 -------- dc----w- c:\program files\Image-Line
2010-10-03 22:19 . 2009-04-29 07:35 -------- dc----w- c:\users\Lada\AppData\Roaming\Skype
2010-10-03 22:09 . 2009-04-29 07:37 -------- dc----w- c:\users\Lada\AppData\Roaming\skypePM
2010-09-29 20:26 . 2009-01-23 02:19 -------- dc----w- c:\program files\Google
2010-09-28 20:40 . 2010-09-28 20:40 -------- dc----w- c:\program files\ChameleonTom
2010-09-23 17:51 . 2009-06-20 17:37 -------- dc----w- c:\users\Lada\AppData\Roaming\ICQ
2010-09-14 22:29 . 2010-02-16 20:35 -------- dc----w- c:\users\Lada\AppData\Roaming\Uniblue
2010-09-06 18:54 . 2010-09-06 18:54 -------- dc----w- c:\programdata\Alwil Software
2010-09-06 18:54 . 2010-09-06 18:54 -------- dc----w- c:\program files\Alwil Software
2010-09-06 18:29 . 2006-11-02 10:25 86016 ----a-w- c:\windows\Inf\infstor.dat
2010-09-06 18:29 . 2006-11-02 10:25 51200 ----a-w- c:\windows\Inf\infpub.dat
2010-09-06 18:29 . 2006-11-02 10:25 143360 ----a-w- c:\windows\Inf\infstrng.dat
2010-09-05 08:44 . 2010-06-26 09:09 -------- dc----w- c:\program files\ICQ7.2
2010-09-03 16:45 . 2009-08-11 07:02 2828 -csha-w- c:\programdata\KGyGaAvL.sys
2010-09-03 16:45 . 2009-08-11 07:02 2828 -csha-w- c:\programdata\KGyGaAvL.sys
2010-08-31 13:42 . 2010-08-31 13:42 -------- dc----w- c:\program files\Windows Portable Devices
2010-08-31 13:42 . 2006-11-02 10:25 665600 ----a-w- c:\windows\Inf\drvindex.dat
2010-08-31 13:41 . 2010-08-31 13:41 0 -c-ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-08-29 09:52 . 2010-08-29 09:52 3828846 -c--a-w- c:\users\Lada\AppData\Roaming\OpenCandy\maximus_install.exe
2010-08-29 09:52 . 2010-08-29 09:52 -------- dc----w- c:\users\Lada\AppData\Roaming\OpenCandy
2010-08-29 09:52 . 2010-08-29 09:52 -------- dc----w- c:\program files\ASIO4ALL v2
2010-08-29 09:51 . 2009-09-16 18:53 -------- dc----w- c:\program files\Cakewalk
2010-08-29 09:50 . 2010-08-29 09:50 -------- dc----w- c:\program files\Outsim
2010-08-13 21:51 . 2010-08-13 21:51 -------- dc----w- c:\users\Lada\AppData\Roaming\Command and Conquer 4
2010-08-10 14:49 . 2009-07-09 16:44 -------- dc----w- c:\users\Lada\AppData\Roaming\BlackBean
2010-08-10 07:21 . 2009-06-12 19:53 -------- dc----w- c:\program files\Scorpions WinCheater
2010-08-09 12:24 . 2010-07-26 15:04 -------- dc----w- c:\users\Lada\AppData\Roaming\LangSoft
2010-07-26 15:07 . 2010-07-26 15:06 798771 -c--a-w- c:\programdata\LangSoft\WebIE.dll
2010-07-26 15:07 . 2010-07-26 15:06 356352 -c--a-w- c:\programdata\LangSoft\TrnOutl.dll
2010-07-26 15:07 . 2010-07-26 15:06 299008 -c--a-w- c:\programdata\LangSoft\TrnWord.dll
2010-07-26 13:31 . 2009-04-28 15:02 109936 -c--a-w- c:\users\Lada\AppData\Local\GDIPFONTCACHEV1.DAT
2010-07-17 03:00 . 2010-05-27 11:57 423656 -c--a-w- c:\windows\system32\deployJava1.dll
2009-06-27 20:35 . 2009-06-27 20:35 2080 -c--a-w- c:\program files\Uninstall.ini
2009-06-27 20:35 . 2009-01-07 18:24 74330 -c--a-w- c:\program files\Uninstall.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
@="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
[HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
2008-07-29 16:52 121392 ----a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\snxPluginsShell]
@="{F4B3B0AA-13D1-4a36-BDA2-2055B0F3D5DE}"
[HKEY_CLASSES_ROOT\CLSID\{F4B3B0AA-13D1-4a36-BDA2-2055B0F3D5DE}]
2010-06-28 20:59 153184 -c--a-w- c:\program files\Alwil Software\Avast5\snxPlugins.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-06-16 221184]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-04-28 68856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2008-07-20 182808]
"RtHDVCpl"="RtHDVCpl.exe" [2008-09-18 6294048]
"ePower_DMC"="c:\program files\Acer\Empowering Technology\ePower\ePower_DMC.exe" [2008-11-28 417792]
"eAudio"="c:\program files\Acer\Empowering Technology\eAudio\eAudio.exe" [2008-09-11 544768]
"eDataSecurity Loader"="c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-07-29 526896]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-29 61440]
"PLFSetI"="c:\windows\PLFSetI.exe" [2007-10-23 200704]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-25 1049896]
"LManager"="c:\progra~1\LAUNCH~1\QtZgAcer.EXE" [2008-06-04 817672]
"ArcadeDeluxeAgent"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" [2009-09-07 152872]
"PlayMovie"="c:\program files\Acer Arcade Deluxe\PlayMovie\PMVService.exe" [2009-05-21 173288]
"BigDogPath"="c:\windows\VM_STI.EXE" [2005-02-28 53248]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 81920]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-05-26 413696]
"PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2009-07-27 180224]
"CLMLServer"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe" [2009-07-02 206120]
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2010-01-27 611712]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"NBKeyScan"="d:\nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-06-08 2221352]
"PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393]
"IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-4-23 727592]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 2 (0x2)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1463035751-3111859534-512527653-1000]
"EnableNotificationsRef"=dword:00000002
"EnableNotifications"=dword:00000001
R2 gupdate1c9c89d3335d80;Služba Google Update (gupdate1c9c89d3335d80);c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 133104]
R3 A310;AVerMedia A310 DVB-T;c:\windows\system32\DRIVERS\AVerA310USB.sys [2008-07-03 26752]
R3 BDASwCap;AVerMedia A310 BDA DVBT Capture Device;c:\windows\system32\drivers\AVerA310Cap.sys [2008-07-03 47104]
R3 NETw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit;c:\windows\system32\DRIVERS\NETw5v32.sys [2008-05-05 3658752]
R3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-09-23 50424]
R4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys [2009-09-16 722416]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-06-28 50256]
S2 CLHNService;CLHNService;c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2009-04-16 75048]
S2 ETService;Empowering Technology Service;c:\program files\Acer\Empowering Technology\Service\ETService.exe [2008-11-28 24576]
S2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-11-16 50704]
S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-09-23 144632]
S3 winbondcir;Winbond IR Transceiver;c:\windows\system32\DRIVERS\winbondcir.sys [2007-03-28 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
getPlusHelper REG_MULTI_SZ getPlusHelper
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
2010-10-08 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-28 17:24]
2010-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 07:34]
2010-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 07:34]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.chameleonsearch.com/
mStart Page = hxxp://home.sweetim.com
uInternet Settings,ProxyOverride = *.local
uInternet Settings,ProxyServer = http=127.0.0.1:25412
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
IE: {{14CD42DD-ABCD-3586-DCAB-40E3693E3737} - c:\program files\ChameleonTom\ct.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.chameleonsearch.com/search.php?src=tops&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.seznam.cz/?sourceid=FF_5&q=
FF - component: c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
FF - component: c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
HKCU-Run-Smart Security - c:\programdata\369d0b\SM369_231.exe
HKCU-Run-SMH2B46TDP - c:\windows\Ijysob.exe
HKLM-Run-SweetIM - c:\program files\SweetIM\Messenger\SweetIM.exe
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.032"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.abr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.amr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.amr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ani"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.apd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.apd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.arw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bay"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.bmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bwf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bwf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cel\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cel"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.cr2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.crw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cs1"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cur"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.dcr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.dcx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.dib"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.djv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.djvu"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.dng"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.emf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.eps"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.erf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.fff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.fpx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.gif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.hdr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.icl"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.icn"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.ico"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.iff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ilbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.int"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.inta"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.iw4"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.j2c"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.j2k"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jbr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jfif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jp2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpe"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpeg"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpg"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jpk"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jpx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kar\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.kar"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kdc\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.kdc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.lbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m15\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m15"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m1a\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m1a"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2a\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m2a"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m75\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m75"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.mef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.mos"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.mpv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.mrw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.nef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.nrw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.orf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pbr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pcd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pct"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pcx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pgm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pic"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pics\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pics"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pict"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pix"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.png"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.ppm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.psd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.psp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pspbrush"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pspimage"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qcp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.qcp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qtpf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.qtpf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.raf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ras"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.raw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rgb"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rgba"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.rle"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rsb"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rw2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.rw2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rwl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rwl"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sdv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sdv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfil\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sfil"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sgi"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.smf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.smi"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smil\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.smil"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sml"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.sr2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.srf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.swa\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.swa"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tga"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.thm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tiff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ttc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ttf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ulw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ulw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30po\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30po"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30pp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30pp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30ppf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30ppf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vfw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.vfw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wbmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wmf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xpm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Celkový čas: 2010-10-08 14:05:17
ComboFix-quarantined-files.txt 2010-10-08 12:05
ComboFix2.txt 2010-10-08 09:25
ComboFix3.txt 2010-10-05 20:39
Před spuštěním: Volných bajtů: 13 971 484 672
Po spuštění: Volných bajtů: 13 939 265 536
Current=5 Default=5 Failed=1 LastKnownGood=7 Sets=1,2,3,4,5,6,7
- - End Of File - - F69968B09C3BA4B3ECED6CC49160C1FD
Nahr nˇ probŘhlo ŁspŘçnŘ
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3036.1867 [GMT 2:00]
Spuštěný z: c:\users\Lada\Downloads\ComboFix.exe
Použité ovládací přepínače :: c:\users\Lada\Desktop\CFScript.txt
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
file zipped: c:\windows\Ijysoa.exe
file zipped: c:\windows\Ijysob.exe
file zipped: c:\windows\Ijysoc.exe
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\SweetIM
c:\program files\SweetIM\Messenger\default.xml
c:\program files\SweetIM\Messenger\mgAdaptersProxy.dll
c:\program files\SweetIM\Messenger\mgAIMAuto.dll
c:\program files\SweetIM\Messenger\mgAIMMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgArchive.dll
c:\program files\SweetIM\Messenger\mgcommon.dll
c:\program files\SweetIM\Messenger\mgcommunication.dll
c:\program files\SweetIM\Messenger\mgconfig.dll
c:\program files\SweetIM\Messenger\mgFlashPlayer.dll
c:\program files\SweetIM\Messenger\mghooking.dll
c:\program files\SweetIM\Messenger\mgICQAuto.dll
c:\program files\SweetIM\Messenger\mgICQMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgIEPlayer.dll
c:\program files\SweetIM\Messenger\mglogger.dll
c:\program files\SweetIM\Messenger\mgMediaPlayer.dll
c:\program files\SweetIM\Messenger\mgMsnAuto.dll
c:\program files\SweetIM\Messenger\mgMsnMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgsimcommon.dll
c:\program files\SweetIM\Messenger\mgSweetIM.dll
c:\program files\SweetIM\Messenger\mgUpdateSupport.dll
c:\program files\SweetIM\Messenger\mgxml_wrapper.dll
c:\program files\SweetIM\Messenger\mgYahooAuto.dll
c:\program files\SweetIM\Messenger\mgYahooMessengerAdapter.dll
c:\program files\SweetIM\Messenger\msvcp71.dll
c:\program files\SweetIM\Messenger\msvcr71.dll
c:\program files\SweetIM\Messenger\resources\images\AudibleButton.png
c:\program files\SweetIM\Messenger\resources\images\DisplayPicturesButton.png
c:\program files\SweetIM\Messenger\resources\images\EmoticonButton.png
c:\program files\SweetIM\Messenger\resources\images\GamesButton.png
c:\program files\SweetIM\Messenger\resources\images\KeyboardButton.png
c:\program files\SweetIM\Messenger\resources\images\NudgeButton.png
c:\program files\SweetIM\Messenger\resources\images\SoundFxButton.png
c:\program files\SweetIM\Messenger\resources\images\WinksButton.png
c:\program files\SweetIM\Messenger\SweetIM.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\ClearHist.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\conf\logger.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\default.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\mgcommon.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgconfig.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\mghooking.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mglogger.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\about.html
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\affid.dat
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\basis.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\bing.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\clear-history.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim-over.gif
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim.gif
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\content-notifier.js
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\dating.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\dictionary.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\e_cards.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\eye_icon.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\eye_icon_over.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\find.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\free_stuff.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\games.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\glitter.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\google.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\help.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\highlight.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\locales.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\logo_16x16.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\logo_21x18.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\logo_32x32.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\logo_about.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\more-search-providers.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\music.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\news.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\options.html
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\photos.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\search-current-site.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\shopping.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\SmileySmile.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\SmileyWink.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\sweetim_text.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\version.txt
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\video.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\web-search.png
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\yahoo.png
c:\programdata\369d0b
c:\programdata\369d0b\BackUp\Bluetooth.lnk
c:\programdata\369d0b\mozcrt19.dll
c:\programdata\369d0b\SM369_231.exe
c:\programdata\369d0b\SMS.ico
c:\programdata\369d0b\sqlite3.dll
c:\programdata\SMWDVNSS
c:\programdata\SMWDVNSS\SMGJZODZWS.cfg
c:\users\Lada\AppData\Roaming\Smart Security
c:\users\Lada\AppData\Roaming\Smart Security\cookies.sqlite
c:\users\Lada\AppData\Roaming\Smart Security\Instructions.ini
c:\windows\Ijysoa.exe
c:\windows\Ijysob.exe
c:\windows\Ijysoc.exe
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-09-08 do 2010-10-08 )))))))))))))))))))))))))))))))
.
2010-10-08 12:02 . 2010-10-08 12:02 -------- dc----w- c:\users\Public\AppData\Local\temp
2010-10-08 12:02 . 2010-10-08 12:02 -------- dc----w- c:\users\Default\AppData\Local\temp
2010-10-08 09:03 . 2010-10-08 09:03 -------- dc----w- C:\rsit
2010-10-08 09:03 . 2010-10-08 09:03 -------- dc----w- c:\program files\trend micro
2010-10-05 21:18 . 2010-10-05 21:19 -------- dc----w- C:\TEMP
2010-10-05 20:39 . 2010-10-08 12:02 -------- dc----w- c:\users\Lada\AppData\Local\temp
2010-09-28 20:40 . 2010-09-28 20:40 -------- dc----w- c:\program files\ChameleonTom
2010-09-28 17:37 . 2010-06-22 13:30 2048 -c--a-w- c:\windows\system32\tzres.dll
2010-09-21 18:37 . 2010-09-21 18:37 932288 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AdobeARM.exe
2010-09-21 18:37 . 2010-09-21 18:37 932288 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AdobeARM.exe
2010-09-21 18:37 . 2010-09-21 18:37 70584 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AdobeExtractFiles.dll
2010-09-21 18:37 . 2010-09-21 18:37 70584 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AdobeExtractFiles.dll
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\ReaderUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\4130\AcrobatUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\ReaderUpdater.exe
2010-09-21 18:37 . 2010-09-21 18:37 338856 -c--a-w- c:\programdata\Adobe\Reader\9.3\ARM\2832\AcrobatUpdater.exe
2010-09-15 18:30 . 2010-04-16 16:46 502272 -c--a-w- c:\windows\system32\usp10.dll
2010-09-15 18:30 . 2010-08-17 14:11 128000 -c--a-w- c:\windows\system32\spoolsv.exe
2010-09-15 18:30 . 2010-04-05 17:02 317952 -c--a-w- c:\windows\system32\MP4SDECD.DLL
2010-09-15 18:30 . 2010-05-27 20:08 739328 -c--a-w- c:\windows\system32\inetcomm.dll
2010-09-08 13:04 . 2010-09-18 16:32 6836 -c--a-w- c:\users\Lada\AppData\Local\d3d9caps.dat
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-10-07 16:12 . 2009-12-21 19:18 12 ----a-w- c:\windows\bthservsdp.dat
2010-10-07 15:49 . 2009-05-07 17:24 -------- dc----w- c:\programdata\Google Updater
2010-10-05 16:34 . 2009-01-23 01:52 -------- dc-h--w- c:\program files\InstallShield Installation Information
2010-10-05 15:20 . 2009-05-05 16:31 -------- dc----w- c:\users\Lada\AppData\Roaming\uTorrent
2010-10-05 08:48 . 2008-01-21 06:46 607526 -c--a-w- c:\windows\system32\perfh005.dat
2010-10-05 08:48 . 2008-01-21 06:46 119944 -c--a-w- c:\windows\system32\perfc005.dat
2010-10-04 15:40 . 2010-08-29 09:49 -------- dc----w- c:\program files\Image-Line
2010-10-03 22:19 . 2009-04-29 07:35 -------- dc----w- c:\users\Lada\AppData\Roaming\Skype
2010-10-03 22:09 . 2009-04-29 07:37 -------- dc----w- c:\users\Lada\AppData\Roaming\skypePM
2010-09-29 20:26 . 2009-01-23 02:19 -------- dc----w- c:\program files\Google
2010-09-28 20:40 . 2010-09-28 20:40 -------- dc----w- c:\program files\ChameleonTom
2010-09-23 17:51 . 2009-06-20 17:37 -------- dc----w- c:\users\Lada\AppData\Roaming\ICQ
2010-09-14 22:29 . 2010-02-16 20:35 -------- dc----w- c:\users\Lada\AppData\Roaming\Uniblue
2010-09-06 18:54 . 2010-09-06 18:54 -------- dc----w- c:\programdata\Alwil Software
2010-09-06 18:54 . 2010-09-06 18:54 -------- dc----w- c:\program files\Alwil Software
2010-09-06 18:29 . 2006-11-02 10:25 86016 ----a-w- c:\windows\Inf\infstor.dat
2010-09-06 18:29 . 2006-11-02 10:25 51200 ----a-w- c:\windows\Inf\infpub.dat
2010-09-06 18:29 . 2006-11-02 10:25 143360 ----a-w- c:\windows\Inf\infstrng.dat
2010-09-05 08:44 . 2010-06-26 09:09 -------- dc----w- c:\program files\ICQ7.2
2010-09-03 16:45 . 2009-08-11 07:02 2828 -csha-w- c:\programdata\KGyGaAvL.sys
2010-09-03 16:45 . 2009-08-11 07:02 2828 -csha-w- c:\programdata\KGyGaAvL.sys
2010-08-31 13:42 . 2010-08-31 13:42 -------- dc----w- c:\program files\Windows Portable Devices
2010-08-31 13:42 . 2006-11-02 10:25 665600 ----a-w- c:\windows\Inf\drvindex.dat
2010-08-31 13:41 . 2010-08-31 13:41 0 -c-ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-08-29 09:52 . 2010-08-29 09:52 3828846 -c--a-w- c:\users\Lada\AppData\Roaming\OpenCandy\maximus_install.exe
2010-08-29 09:52 . 2010-08-29 09:52 -------- dc----w- c:\users\Lada\AppData\Roaming\OpenCandy
2010-08-29 09:52 . 2010-08-29 09:52 -------- dc----w- c:\program files\ASIO4ALL v2
2010-08-29 09:51 . 2009-09-16 18:53 -------- dc----w- c:\program files\Cakewalk
2010-08-29 09:50 . 2010-08-29 09:50 -------- dc----w- c:\program files\Outsim
2010-08-13 21:51 . 2010-08-13 21:51 -------- dc----w- c:\users\Lada\AppData\Roaming\Command and Conquer 4
2010-08-10 14:49 . 2009-07-09 16:44 -------- dc----w- c:\users\Lada\AppData\Roaming\BlackBean
2010-08-10 07:21 . 2009-06-12 19:53 -------- dc----w- c:\program files\Scorpions WinCheater
2010-08-09 12:24 . 2010-07-26 15:04 -------- dc----w- c:\users\Lada\AppData\Roaming\LangSoft
2010-07-26 15:07 . 2010-07-26 15:06 798771 -c--a-w- c:\programdata\LangSoft\WebIE.dll
2010-07-26 15:07 . 2010-07-26 15:06 356352 -c--a-w- c:\programdata\LangSoft\TrnOutl.dll
2010-07-26 15:07 . 2010-07-26 15:06 299008 -c--a-w- c:\programdata\LangSoft\TrnWord.dll
2010-07-26 13:31 . 2009-04-28 15:02 109936 -c--a-w- c:\users\Lada\AppData\Local\GDIPFONTCACHEV1.DAT
2010-07-17 03:00 . 2010-05-27 11:57 423656 -c--a-w- c:\windows\system32\deployJava1.dll
2009-06-27 20:35 . 2009-06-27 20:35 2080 -c--a-w- c:\program files\Uninstall.ini
2009-06-27 20:35 . 2009-01-07 18:24 74330 -c--a-w- c:\program files\Uninstall.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
@="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
[HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
2008-07-29 16:52 121392 ----a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\snxPluginsShell]
@="{F4B3B0AA-13D1-4a36-BDA2-2055B0F3D5DE}"
[HKEY_CLASSES_ROOT\CLSID\{F4B3B0AA-13D1-4a36-BDA2-2055B0F3D5DE}]
2010-06-28 20:59 153184 -c--a-w- c:\program files\Alwil Software\Avast5\snxPlugins.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-06-16 221184]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-04-28 68856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2008-07-20 182808]
"RtHDVCpl"="RtHDVCpl.exe" [2008-09-18 6294048]
"ePower_DMC"="c:\program files\Acer\Empowering Technology\ePower\ePower_DMC.exe" [2008-11-28 417792]
"eAudio"="c:\program files\Acer\Empowering Technology\eAudio\eAudio.exe" [2008-09-11 544768]
"eDataSecurity Loader"="c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-07-29 526896]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-29 61440]
"PLFSetI"="c:\windows\PLFSetI.exe" [2007-10-23 200704]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-25 1049896]
"LManager"="c:\progra~1\LAUNCH~1\QtZgAcer.EXE" [2008-06-04 817672]
"ArcadeDeluxeAgent"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" [2009-09-07 152872]
"PlayMovie"="c:\program files\Acer Arcade Deluxe\PlayMovie\PMVService.exe" [2009-05-21 173288]
"BigDogPath"="c:\windows\VM_STI.EXE" [2005-02-28 53248]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 81920]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-05-26 413696]
"PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2009-07-27 180224]
"CLMLServer"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe" [2009-07-02 206120]
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2010-01-27 611712]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"NBKeyScan"="d:\nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-06-08 2221352]
"PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393]
"IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-4-23 727592]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 2 (0x2)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1463035751-3111859534-512527653-1000]
"EnableNotificationsRef"=dword:00000002
"EnableNotifications"=dword:00000001
R2 gupdate1c9c89d3335d80;Služba Google Update (gupdate1c9c89d3335d80);c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 133104]
R3 A310;AVerMedia A310 DVB-T;c:\windows\system32\DRIVERS\AVerA310USB.sys [2008-07-03 26752]
R3 BDASwCap;AVerMedia A310 BDA DVBT Capture Device;c:\windows\system32\drivers\AVerA310Cap.sys [2008-07-03 47104]
R3 NETw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit;c:\windows\system32\DRIVERS\NETw5v32.sys [2008-05-05 3658752]
R3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-09-23 50424]
R4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys [2009-09-16 722416]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-06-28 50256]
S2 CLHNService;CLHNService;c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2009-04-16 75048]
S2 ETService;Empowering Technology Service;c:\program files\Acer\Empowering Technology\Service\ETService.exe [2008-11-28 24576]
S2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-11-16 50704]
S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-09-23 144632]
S3 winbondcir;Winbond IR Transceiver;c:\windows\system32\DRIVERS\winbondcir.sys [2007-03-28 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
getPlusHelper REG_MULTI_SZ getPlusHelper
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
2010-10-08 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-28 17:24]
2010-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 07:34]
2010-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 07:34]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.chameleonsearch.com/
mStart Page = hxxp://home.sweetim.com
uInternet Settings,ProxyOverride = *.local
uInternet Settings,ProxyServer = http=127.0.0.1:25412
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
IE: {{14CD42DD-ABCD-3586-DCAB-40E3693E3737} - c:\program files\ChameleonTom\ct.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
FF - ProfilePath - c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.chameleonsearch.com/search.php?src=tops&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.seznam.cz/?sourceid=FF_5&q=
FF - component: c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
FF - component: c:\users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\mb507vcd.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
HKCU-Run-Smart Security - c:\programdata\369d0b\SM369_231.exe
HKCU-Run-SMH2B46TDP - c:\windows\Ijysob.exe
HKLM-Run-SweetIM - c:\program files\SweetIM\Messenger\SweetIM.exe
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.032"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.abr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.abr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.amr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.amr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ani"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.apd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.apd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.arw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bay"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.bmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bwf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.bwf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cel\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cel"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.cr2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.crw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cs1"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.cur"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.dcr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.dcx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.dib"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.djv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.djvu"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.dng"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.emf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.eps"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.erf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.fff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.fpx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.gif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.hdr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.icl"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.icn"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.ico"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.iff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ilbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.int"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.inta"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.iw4"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.j2c"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.j2k"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jbr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jfif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jp2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpe"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpeg"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.jpg"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jpk"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.jpx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kar\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.kar"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.kdc\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.kdc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.lbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m15\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m15"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m1a\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m1a"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m2a\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m2a"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.m75\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.m75"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.mef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.mos"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.mpv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.mrw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.nef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.nrw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.orf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pbr"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pcd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pct"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pcx"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pef"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pgm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pic"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pics\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pics"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pict"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pix"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.png"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.ppm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.psd"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.psp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspbrush\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.pspbrush"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.pspimage"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qcp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.qcp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qtpf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.qtpf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.raf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ras"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.raw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rgb"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rgba"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.rle"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rsb"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rw2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.rw2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rwl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.rwl"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sdv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sdv"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfil\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sfil"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sgi"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.smf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.smi"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.smil\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.smil"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.sml"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.sr2"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.srf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.swa\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.swa"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tga"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.thm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.tiff"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ttc"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ttf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ulw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.ulw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30po\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30po"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30pp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30pp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.v30ppf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.v30ppf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vfw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.vfw"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wbmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1463035751-3111859534-512527653-1000)
"Progid"="ACDSee Pro 3.wmf"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xbm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xif"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xmp"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee Pro 3.xpm"
[HKEY_USERS\S-1-5-21-1463035751-3111859534-512527653-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\system\ControlSet005\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Celkový čas: 2010-10-08 14:05:17
ComboFix-quarantined-files.txt 2010-10-08 12:05
ComboFix2.txt 2010-10-08 09:25
ComboFix3.txt 2010-10-05 20:39
Před spuštěním: Volných bajtů: 13 971 484 672
Po spuštění: Volných bajtů: 13 939 265 536
Current=5 Default=5 Failed=1 LastKnownGood=7 Sets=1,2,3,4,5,6,7
- - End Of File - - F69968B09C3BA4B3ECED6CC49160C1FD
Nahr nˇ probŘhlo ŁspŘçnŘ
Re: Smart security
Fajn, jak to vypadá s počítačem?
Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Smart security
Zatím to stále skenuje,ale žádné už okno nevyskočilo,takže by to mohlo být dobré.Jo ve skenu zatím 6 souboru infikovaných
Re: Smart security
Neustále to skenuje a já musím odejít,rád bych vás poprosil kdyby jste mě pomohla až budete mít čas jak to zítra doskenuje hned to pošlu ,moc vám zatím děkuji


Přispějete na provoz fóra?