Logfile of random's system information tool 1.08 (written by random/random)
Run by Červenacek at 2011-01-09 21:08:24
Microsoft Windows 7 Professional
System drive C: has 324 GB (68%) free of 477 GB
Total RAM: 2046 MB (59% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:08:50, on 9.1.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16700)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Users\Červenacek\Downloads\RSIT.exe
C:\Program Files\trend micro\Červenacek.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [BCU] "C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKCU\..\Run: [Organizér] C:\Program Files\Organizer\Organizer.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-18\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'Default user')
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O16 - DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} (Dldrv2 Control) - http://download.gigabyte.com.tw/object/Dldrv.ocx
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
O23 - Service: Creative Dolby Digital Live Pack Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\DDLLicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: The Cleaner 2011 Helper Service (moohelp) - MooSoft Development LLC - C:\Program Files\The Cleaner\mhelper.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
--
End of file - 6119 bytes
======Scheduled tasks folder======
C:\Windows\tasks\AWC Startup.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2010-12-08 3123072]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2010-12-08 3123072]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-09-15 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-11-18 2219184]
"BCU"=C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe [2009-08-04 346320]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Organizér"=C:\Program Files\Organizer\Organizer.exe [2010-12-13 1152512]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-03-18 207360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2010-12-08 1226608]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Suite]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Remote Control.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TMMonitor.lnk]
C:\PROGRA~1\ArcSoft\TOTALM~1.5\TMMONI~1.EXE [2009-05-08 258048]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2009-07-14 229376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2011-01-09 21:08:24 ----D---- C:\rsit
2011-01-09 20:38:48 ----SHD---- C:\Config.Msi
2011-01-09 16:12:50 ----A---- C:\Windows\dx7ogl32.dll
2011-01-09 16:12:49 ----D---- C:\Program Files\3D Realistic Fireplace 3
2011-01-08 13:10:38 ----D---- C:\Program Files\Amnesia
2011-01-08 10:52:14 ----D---- C:\Users\Červenacek\AppData\Roaming\VitySoft
2011-01-06 16:50:52 ----D---- C:\Program Files\Common Files\Skype
2011-01-06 16:50:49 ----RD---- C:\Program Files\Skype
2011-01-06 16:50:46 ----D---- C:\ProgramData\Skype
2011-01-04 12:06:59 ----D---- C:\Program Files\Common Files\Sony Shared
2011-01-04 12:06:40 ----D---- C:\Program Files\Sony
2011-01-04 12:05:21 ----D---- C:\ProgramData\Apple
2011-01-04 12:05:21 ----D---- C:\Program Files\Apple Software Update
2011-01-04 12:03:18 ----D---- C:\Users\Červenacek\AppData\Roaming\Sony
2011-01-04 12:03:18 ----D---- C:\Program Files\Sony Media Go Install
2011-01-04 11:50:21 ----D---- C:\Program Files\Avanquest update
2011-01-04 11:50:11 ----D---- C:\ProgramData\BVRP Software
2011-01-04 09:25:26 ----D---- C:\Users\Červenacek\AppData\Roaming\Anthropics
2011-01-04 09:25:25 ----D---- C:\Program Files\Portrait Professional Max 6
2011-01-03 11:31:57 ----AD---- C:\ProgramData\TEMP
2011-01-02 16:43:38 ----D---- C:\Program Files\Godlike Developers
2011-01-02 10:46:06 ----D---- C:\ProgramData\WebcamMax
2011-01-01 15:38:13 ----D---- C:\Users\Červenacek\AppData\Roaming\Video2Webcam
2011-01-01 15:32:07 ----A---- C:\Windows\system32\drivers\V2WCDRV.sys
2011-01-01 12:33:54 ----D---- C:\Users\Červenacek\AppData\Roaming\PhotoFiltre
2011-01-01 12:29:16 ----D---- C:\Program Files\PhotoFiltre
2010-12-30 13:37:12 ----SHD---- C:\$RECYCLE.BIN
2010-12-30 11:38:06 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2010-12-30 11:38:03 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-12-30 11:38:03 ----A---- C:\Windows\system32\drivers\mbam.sys
2010-12-29 09:03:17 ----A---- C:\Windows\system32\drivers\seehcri.sys
2010-12-29 08:53:01 ----A---- C:\Windows\system32\WdfCoInstaller01007.dll
2010-12-29 08:53:01 ----A---- C:\Windows\system32\drivers\ggsemc.sys
2010-12-29 08:53:01 ----A---- C:\Windows\system32\drivers\ggflt.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016whnt.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016wh.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016unic.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016obex.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016nd5.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016mgmt.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016mdm.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016mdfl.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016cr.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016cmnt.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016cm.sys
2010-12-29 08:39:45 ----A---- C:\Windows\system32\drivers\s0016bus.sys
2010-12-29 08:39:40 ----D---- C:\ProgramData\Sony Ericsson
2010-12-29 08:39:40 ----D---- C:\Program Files\Sony Ericsson
2010-12-28 07:23:50 ----D---- C:\Users\Červenacek\AppData\Roaming\EBookSys
2010-12-24 16:58:09 ----D---- C:\temp
2010-12-20 13:39:43 ----D---- C:\Program Files\ESET
2010-12-20 13:20:10 ----A---- C:\Windows\system32\cmd.execf
2010-12-19 11:43:39 ----D---- C:\ProgramData\IObit
2010-12-19 09:10:54 ----D---- C:\Windows\temp
2010-12-19 09:03:59 ----D---- C:\Windows\ERDNT
2010-12-18 19:07:54 ----D---- C:\Users\Červenacek\AppData\Roaming\thecleaner
2010-12-18 19:07:45 ----D---- C:\Program Files\The Cleaner
2010-12-15 10:41:55 ----D---- C:\Users\Červenacek\AppData\Roaming\Windows Live Writer
2010-12-15 07:25:54 ----A---- C:\Windows\system32\tzres.dll
2010-12-15 07:25:49 ----A---- C:\Windows\system32\mstime.dll
2010-12-15 07:25:49 ----A---- C:\Windows\system32\mshtml.dll
2010-12-15 07:25:49 ----A---- C:\Windows\system32\iertutil.dll
2010-12-15 07:25:48 ----A---- C:\Windows\system32\ieframe.dll
2010-12-15 07:25:47 ----A---- C:\Windows\system32\wininet.dll
2010-12-15 07:25:47 ----A---- C:\Windows\system32\urlmon.dll
2010-12-15 07:25:47 ----A---- C:\Windows\system32\mshtmled.dll
2010-12-15 07:25:47 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-12-15 07:25:47 ----A---- C:\Windows\system32\msfeeds.dll
2010-12-15 07:25:47 ----A---- C:\Windows\system32\licmgr10.dll
2010-12-15 07:25:47 ----A---- C:\Windows\system32\ieui.dll
2010-12-15 07:25:47 ----A---- C:\Windows\system32\iepeers.dll
2010-12-15 07:25:47 ----A---- C:\Windows\system32\iedkcs32.dll
2010-12-15 07:25:46 ----A---- C:\Windows\system32\msfeedssync.exe
2010-12-15 07:25:46 ----A---- C:\Windows\system32\jsproxy.dll
2010-12-15 07:25:41 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-12-15 07:25:41 ----A---- C:\Windows\system32\taskschd.dll
2010-12-15 07:25:41 ----A---- C:\Windows\system32\taskeng.exe
2010-12-15 07:25:41 ----A---- C:\Windows\system32\taskcomp.dll
2010-12-15 07:25:41 ----A---- C:\Windows\system32\schtasks.exe
2010-12-15 07:25:41 ----A---- C:\Windows\system32\schedsvc.dll
2010-12-15 07:25:36 ----A---- C:\Windows\system32\atmlib.dll
2010-12-15 07:25:36 ----A---- C:\Windows\system32\atmfd.dll
2010-12-15 07:25:35 ----A---- C:\Windows\system32\webio.dll
2010-12-15 07:25:34 ----A---- C:\Windows\system32\win32k.sys
2010-12-15 07:25:34 ----A---- C:\Windows\system32\consent.exe
2010-12-14 12:39:28 ----D---- C:\ProgramData\Nero
2010-12-14 12:39:28 ----D---- C:\Program Files\Nero
2010-12-14 12:39:27 ----D---- C:\Program Files\Common Files\Ahead
2010-12-14 10:09:41 ----D---- C:\Program Files\SCi Games
2010-12-14 09:01:33 ----A---- C:\Windows\system32\drivers\StMp3Rec.sys
2010-12-13 09:21:22 ----D---- C:\Users\Červenacek\AppData\Roaming\MoveFab
2010-12-12 17:00:15 ----D---- C:\ProgramData\Ahead
2010-12-12 10:51:44 ----D---- C:\Program Files\trend micro
2010-12-12 09:42:59 ----A---- C:\Windows\system32\drivers\gBTMouUsb.sys
======List of files/folders modified in the last 1 months======
2011-01-09 21:08:38 ----D---- C:\Windows\Prefetch
2011-01-09 20:51:42 ----D---- C:\Windows
2011-01-09 20:47:50 ----D---- C:\Windows\system32\config
2011-01-09 20:47:39 ----D---- C:\Program Files\Organizer
2011-01-09 20:45:42 ----SHD---- C:\System Volume Information
2011-01-09 20:39:53 ----RD---- C:\Program Files
2011-01-09 20:39:02 ----SHD---- C:\Windows\Installer
2011-01-09 20:38:51 ----D---- C:\Windows\System32
2011-01-09 20:38:51 ----D---- C:\ProgramData
2011-01-09 20:38:51 ----D---- C:\Program Files\Common Files
2011-01-09 20:36:11 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2011-01-09 20:35:49 ----D---- C:\Windows\system32\catroot2
2011-01-09 19:24:32 ----RD---- C:\Users
2011-01-09 15:41:45 ----D---- C:\Windows\inf
2011-01-09 15:41:45 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-01-09 14:27:48 ----D---- C:\Program Files\Mozilla Firefox
2011-01-09 09:11:04 ----D---- C:\Users\Červenacek\AppData\Roaming\Skype
2011-01-09 08:14:42 ----D---- C:\Users\Červenacek\AppData\Roaming\skypePM
2011-01-08 15:49:59 ----D---- C:\Windows\system32\drivers
2011-01-08 15:49:58 ----D---- C:\Windows\system32\DriverStore
2011-01-08 15:49:58 ----D---- C:\Windows\system32\catroot
2011-01-07 12:04:24 ----RSD---- C:\Windows\assembly
2011-01-07 09:24:02 ----D---- C:\Windows\system32\FxsTmp
2011-01-06 21:04:25 ----D---- C:\Users\Červenacek\AppData\Roaming\Nokia
2011-01-06 16:51:04 ----D---- C:\Windows\system32\Tasks
2011-01-04 12:05:57 ----D---- C:\Program Files\Internet Explorer
2011-01-04 11:53:31 ----HD---- C:\Program Files\InstallShield Installation Information
2011-01-03 11:20:17 ----D---- C:\Windows\system32\NDF
2011-01-02 16:44:27 ----D---- C:\Users\Červenacek\AppData\Roaming\Godlike
2010-12-30 13:36:44 ----D---- C:\Windows\Tasks
2010-12-30 13:35:34 ----A---- C:\Windows\system.ini
2010-12-30 13:35:29 ----D---- C:\Windows\system32\drivers\etc
2010-12-30 13:31:38 ----D---- C:\Windows\AppPatch
2010-12-30 12:58:18 ----D---- C:\Program Files\Codemasters
2010-12-28 12:23:04 ----D---- C:\Program Files\DVDFab 5
2010-12-28 12:17:23 ----HD---- C:\Windows\system32\GroupPolicy
2010-12-28 09:05:52 ----D---- C:\Program Files\City Interactive
2010-12-27 08:46:41 ----D---- C:\Program Files\IObit
2010-12-24 16:20:07 ----D---- C:\Users\Červenacek\AppData\Roaming\IObit
2010-12-24 16:00:22 ----D---- C:\Program Files\Ubisoft
2010-12-19 11:38:31 ----D---- C:\Program Files\SureThing Express Labeler
2010-12-17 07:36:42 ----D---- C:\Program Files\Microsoft Silverlight
2010-12-15 12:57:07 ----D---- C:\Windows\rescache
2010-12-15 07:42:00 ----D---- C:\Windows\debug
2010-12-15 07:40:45 ----D---- C:\Windows\winsxs
2010-12-15 07:39:19 ----D---- C:\Program Files\Windows Mail
2010-12-15 07:39:18 ----D---- C:\Windows\system32\migration
2010-12-15 07:39:18 ----D---- C:\Windows\system32\cs-CZ
2010-12-15 07:31:44 ----A---- C:\Windows\system32\MRT.exe
2010-12-14 12:41:27 ----D---- C:\Windows\ehome
2010-12-13 08:04:49 ----D---- C:\Users\Červenacek\AppData\Roaming\Vso
2010-12-12 16:24:28 ----D---- C:\ProgramData\DivX
2010-12-12 16:24:28 ----D---- C:\Program Files\DivX
2010-12-12 14:41:41 ----D---- C:\Windows\Performance
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\Windows\System32\drivers\sfhlp02.sys [2006-06-14 13680]
R0 sfvfs02;StarForce Protection VFS Driver (version 2.x); C:\Windows\System32\drivers\sfvfs02.sys [2006-06-14 78184]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-10-25 691696]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-07-29 115008]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-09-03 137144]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-07-29 96920]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2006-11-10 18688]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-07-07 5882368]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-07-07 210944]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-05-06 108560]
R3 CamSuiteVAC;CamSuite Virtual Audio; C:\Windows\system32\DRIVERS\CamSuiteVAC.sys [2008-09-19 37560]
R3 COMMONFX.SYS;COMMONFX.SYS; C:\Windows\System32\drivers\COMMONFX.SYS [2010-03-18 99416]
R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2010-03-18 511064]
R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2010-03-18 528472]
R3 CTAUDFX.SYS;CTAUDFX.SYS; C:\Windows\System32\drivers\CTAUDFX.SYS [2010-03-18 555096]
R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2010-03-18 14424]
R3 CTSBLFX.SYS;CTSBLFX.SYS; C:\Windows\System32\drivers\CTSBLFX.SYS [2010-03-18 566360]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2010-03-18 157272]
R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2010-03-18 92760]
R3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\Windows\system32\drivers\ha10kx2k.sys [2010-03-18 798808]
R3 hap16v2k;Creative P16V HAL Driver; C:\Windows\system32\drivers\hap16v2k.sys [2010-03-18 162904]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-12-08 2975776]
R3 MarvinBus;Pinnacle Marvin Bus; C:\Windows\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2010-04-27 64904]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2010-04-27 146568]
R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2010-03-18 127576]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2010-10-03 47360]
R3 RTL2832UBDA;REALTEK 2832U BDA Driver; C:\Windows\system32\drivers\RTL2832UBDA.sys [2009-08-13 93216]
R3 RTL2832UUSB;REALTEK 2832U USB Driver; C:\Windows\System32\Drivers\RTL2832UUSB.sys [2009-08-13 32800]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2010-06-23 275048]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2010-12-29 27632]
S0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\Windows\System32\drivers\sfdrv01.sys [2006-06-14 58232]
S0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\Windows\System32\drivers\sfsync02.sys [2004-12-03 20544]
S0 sfsync04;StarForce Protection Synchronization Driver (version 4.x); C:\Windows\System32\drivers\sfsync04.sys [2006-06-14 59264]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-07-07 5882368]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 catchme;catchme; \??\C:\Users\ERVENA~1\AppData\Local\Temp\catchme.sys []
S3 COMMONFX.DLL;COMMONFX.DLL; C:\Windows\system32\COMMONFX.DLL []
S3 COMMONFX;COMMONFX; C:\Windows\system32\drivers\COMMONFX.SYS [2010-03-18 99416]
S3 CT20XUT.DLL;CT20XUT.DLL; C:\Windows\system32\CT20XUT.DLL [2007-04-12 164608]
S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\Windows\system32\CTAUDFX.DLL []
S3 CTAUDFX;CTAUDFX; C:\Windows\system32\drivers\CTAUDFX.SYS [2010-03-18 555096]
S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys []
S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\Windows\system32\CTEAPSFX.DLL [2007-04-12 168192]
S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\Windows\system32\CTEDSPFX.DLL [2007-04-12 280320]
S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\Windows\system32\CTEDSPIO.DLL [2007-04-12 128768]
S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\Windows\system32\CTEDSPSY.DLL [2007-04-12 323328]
S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\Windows\system32\CTERFXFX.DLL []
S3 CTERFXFX.SYS;CTERFXFX.SYS; C:\Windows\System32\drivers\CTERFXFX.SYS [2010-03-18 100952]
S3 CTERFXFX;CTERFXFX; C:\Windows\system32\drivers\CTERFXFX.SYS [2010-03-18 100952]
S3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\Windows\system32\CTEXFIFX.DLL [2007-04-12 1317632]
S3 ctgame;Game Port; C:\Windows\system32\DRIVERS\ctgame.sys []
S3 CTHWIUT.DLL;CTHWIUT.DLL; C:\Windows\system32\CTHWIUT.DLL [2007-04-12 66816]
S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\Windows\system32\CTSBLFX.DLL []
S3 CTSBLFX;CTSBLFX; C:\Windows\system32\drivers\CTSBLFX.SYS [2010-03-18 566360]
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Everest Ultimate Edition v4.60.1613\Everest Ultimate Edition v4.60.1613\kerneld.wnt [2008-12-24 26224]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 gBTMouUsb;BT Mouse Device Drv; C:\Windows\system32\DRIVERS\gBTMouUsb.sys [2009-10-13 9856]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2010-12-27 15600]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2010-12-29 13224]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2010-12-29 25512]
S3 hap17v2k;Creative P17V HAL Driver; C:\Windows\system32\drivers\hap17v2k.sys [2010-03-18 189528]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys []
S3 s0016bus;Sony Ericsson Device 0016 driver (WDM); C:\Windows\system32\DRIVERS\s0016bus.sys [2008-05-16 89256]
S3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s0016mdfl.sys [2008-05-16 15016]
S3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s0016mdm.sys [2008-05-16 120744]
S3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s0016mgmt.sys [2008-05-16 114216]
S3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS); C:\Windows\system32\DRIVERS\s0016nd5.sys [2008-05-16 25512]
S3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s0016obex.sys [2008-05-16 110632]
S3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM); C:\Windows\system32\DRIVERS\s0016unic.sys [2008-05-16 115752]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-07-07 176128]
R2 BCUService;Browser Configuration Utility Service; C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-08-04 219360]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files\Creative\Shared Files\CTAudSvc.exe [2009-02-23 307200]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-11-18 810144]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe /svc []
S2 moohelp;The Cleaner 2011 Helper Service; C:\Program Files\The Cleaner\mhelper.exe [2010-03-29 813056]
S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2010-08-02 79360]
S3 Creative Dolby Digital Live Pack Licensing Service;Creative Dolby Digital Live Pack Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\DDLLicensing.exe [2010-08-02 79360]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-11-18 33584]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-05-04 267824]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-08-02 1343400]
S4 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Zdravím,prosím o kontrolu logu ,hdisc pořád pracuje
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 24
- Registrován: 15 led 2008 21:48
- Bydliště: Vysočina
- Rudy
- Site Admin
- Příspěvky: 119506
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zdravím,prosím o kontrolu logu ,hdisc pořád pracuje
Dejte log z ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode, pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 24
- Registrován: 15 led 2008 21:48
- Bydliště: Vysočina
Re: Zdravím,prosím o kontrolu logu ,hdisc pořád pracuje
ComboFix 11-01-08.05 - Červenacek 09.01.2011 22:15:36.4.2 - x86
Microsoft Windows 7 Professional 6.1.7600.0.1250.420.1029.18.2046.1366 [GMT 1:00]
Spuštěný z: c:\users\Červenacek\Desktop\ComboFix.exe
AV: ESET NOD32 Antivirus 4.2 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 4.2 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-12-09 do 2011-01-09 )))))))))))))))))))))))))))))))
.
2011-01-09 21:20 . 2011-01-09 21:20 -------- d-----w- c:\users\ERVENA~2\AppData\Local\temp
2011-01-09 21:20 . 2011-01-09 21:20 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-01-09 20:08 . 2011-01-09 20:08 -------- d-----w- C:\rsit
2011-01-09 15:12 . 2009-03-02 13:32 5225472 ----a-w- c:\windows\ss3dfire.scr
2011-01-09 15:12 . 2008-08-08 09:19 125440 ----a-w- c:\windows\dx7ogl32.dll
2011-01-09 15:12 . 2011-01-09 15:12 -------- d-----w- c:\program files\3D Realistic Fireplace 3
2011-01-08 12:10 . 2011-01-08 12:13 -------- d-----w- c:\program files\Amnesia
2011-01-08 09:52 . 2011-01-08 09:52 -------- d-----w- c:\users\Červenacek\AppData\Roaming\VitySoft
2011-01-07 10:37 . 2011-01-07 10:37 -------- d-----w- c:\users\Červenacek\AppData\Local\{91534743-5D44-46D9-8171-978FC18DF55D}
2011-01-07 06:31 . 2010-11-10 04:33 6273872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3FC328D3-C960-47A5-8653-53D5BD292B84}\mpengine.dll
2011-01-06 20:39 . 2011-01-06 20:39 -------- d-----w- c:\users\Červenacek\AppData\Local\{C1E3AB4A-1CFE-4230-961A-618BF844F4CC}
2011-01-06 16:01 . 2011-01-06 16:01 -------- d-----w- c:\users\Červenacek\AppData\Local\Hardcoded Software
2011-01-06 15:50 . 2011-01-06 15:50 -------- d-----w- c:\program files\Common Files\Skype
2011-01-06 15:50 . 2011-01-07 11:07 -------- d-----r- c:\program files\Skype
2011-01-06 15:50 . 2011-01-06 15:50 -------- d-----w- c:\programdata\Skype
2011-01-04 11:07 . 2011-01-04 11:23 -------- d-----w- c:\users\Červenacek\AppData\Local\Sony
2011-01-04 11:07 . 2011-01-04 11:07 -------- d-----w- c:\users\Červenacek\Podcasts
2011-01-04 11:06 . 2011-01-04 11:06 -------- d-----w- c:\program files\Common Files\Sony Shared
2011-01-04 11:06 . 2011-01-07 11:04 -------- d-----w- c:\program files\Sony
2011-01-04 11:05 . 2011-01-04 11:05 -------- d-----w- c:\users\Červenacek\AppData\Local\Apple
2011-01-04 11:05 . 2011-01-04 11:05 -------- d-----w- c:\programdata\Apple
2011-01-04 11:05 . 2011-01-04 11:05 -------- d-----w- c:\program files\Apple Software Update
2011-01-04 11:03 . 2011-01-04 11:07 -------- d-----w- c:\users\Červenacek\AppData\Roaming\Sony
2011-01-04 11:03 . 2011-01-04 11:05 -------- d-----w- c:\program files\Sony Media Go Install
2011-01-04 10:50 . 2011-01-04 10:50 -------- d-----w- c:\program files\Avanquest update
2011-01-04 10:50 . 2011-01-04 10:50 -------- d-----w- c:\programdata\BVRP Software
2011-01-04 08:25 . 2011-01-04 08:25 -------- d-----w- c:\users\Červenacek\AppData\Roaming\Anthropics
2011-01-04 08:25 . 2011-01-07 11:06 -------- d-----w- c:\program files\Portrait Professional Max 6
2011-01-02 15:43 . 2011-01-02 15:43 -------- d-----w- c:\program files\Godlike Developers
2011-01-02 09:46 . 2011-01-02 12:58 -------- d-----w- c:\programdata\WebcamMax
2011-01-01 15:13 . 2011-01-01 15:13 -------- d-----w- c:\users\Cervenacek
2011-01-01 14:38 . 2011-01-01 14:38 -------- d-----w- c:\users\Červenacek\AppData\Roaming\Video2Webcam
2011-01-01 14:32 . 2010-04-17 14:31 1053056 ----a-w- c:\windows\system32\drivers\V2WCDRV.sys
2011-01-01 11:33 . 2011-01-01 11:34 -------- d-----w- c:\users\Červenacek\AppData\Roaming\PhotoFiltre
2011-01-01 11:29 . 2011-01-01 11:35 -------- d-----w- c:\program files\PhotoFiltre
2010-12-30 12:45 . 2010-12-30 12:45 -------- d-----w- c:\users\Červenacek\AppData\Local\Codemasters
2010-12-30 12:37 . 2011-01-09 21:20 -------- d-----w- c:\users\Červenacek\AppData\Local\temp
2010-12-30 10:38 . 2010-12-20 17:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-12-30 10:38 . 2010-12-30 10:38 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-12-30 10:38 . 2010-12-20 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-12-29 11:51 . 2010-12-29 11:51 45056 ----a-r- c:\users\Červenacek\AppData\Roaming\Microsoft\Installer\{6815FCDD-401D-481E-BA88-31B4754C2B46}\ARPPRODUCTICON.exe
2010-12-29 08:03 . 2010-12-29 08:03 27632 ----a-w- c:\windows\system32\drivers\seehcri.sys
2010-12-29 07:53 . 2010-12-29 07:53 25512 ----a-w- c:\windows\system32\drivers\ggsemc.sys
2010-12-29 07:53 . 2010-12-29 07:53 13224 ----a-w- c:\windows\system32\drivers\ggflt.sys
2010-12-29 07:53 . 2010-12-29 07:53 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2010-12-29 07:41 . 2011-01-06 20:23 -------- d-----w- c:\users\Červenacek\AppData\Local\Sony Ericsson
2010-12-28 06:23 . 2010-12-28 06:23 -------- d-----w- c:\users\Červenacek\AppData\Roaming\EBookSys
2010-12-24 15:58 . 2010-12-28 07:01 -------- d-----w- C:\temp
2010-12-20 12:39 . 2010-12-20 12:39 -------- d-----w- c:\program files\ESET
2010-12-20 12:20 . 2010-12-20 12:20 301568 ----a-w- c:\windows\system32\cmd.execf
2010-12-19 10:43 . 2010-12-22 09:18 -------- d-----w- c:\programdata\IObit
2010-12-18 18:07 . 2010-12-18 18:15 -------- d-----w- c:\users\Červenacek\AppData\Roaming\thecleaner
2010-12-18 18:07 . 2011-01-07 11:24 -------- d-----w- c:\program files\The Cleaner
2010-12-16 10:04 . 2010-12-16 10:04 -------- d-----w- c:\users\Červenacek\AppData\Local\{631D60B5-63B7-4A30-AA51-42CF39DE6AAB}
2010-12-15 09:42 . 2010-12-15 09:42 -------- d-----w- c:\users\Červenacek\AppData\Local\{FC233C65-ECBE-4FE3-B927-559784EB2E3E}
2010-12-15 09:42 . 2010-12-15 09:42 -------- d-----w- c:\users\Červenacek\AppData\Local\{85770F87-4423-4D7A-863C-7B3A0BB20932}
2010-12-15 09:41 . 2010-12-15 09:42 -------- d-----w- c:\users\Červenacek\AppData\Local\Windows Live Writer
2010-12-15 09:41 . 2010-12-15 09:41 -------- d-----w- c:\users\Červenacek\AppData\Roaming\Windows Live Writer
2010-12-14 11:39 . 2010-12-14 11:39 -------- d-----w- c:\programdata\Nero
2010-12-14 11:39 . 2010-12-14 11:39 -------- d-----w- c:\program files\Nero
2010-12-14 11:39 . 2010-12-14 11:52 -------- d-----w- c:\program files\Common Files\Ahead
2010-12-14 09:09 . 2010-12-14 09:09 -------- d-----w- c:\program files\SCi Games
2010-12-14 08:01 . 2008-06-20 17:27 19840 ----a-w- c:\windows\system32\drivers\StMp3Rec.sys
2010-12-13 09:15 . 2010-12-13 09:15 -------- d-----w- c:\users\Červenacek\DoctorWeb
2010-12-13 08:21 . 2010-12-13 08:21 -------- d-----w- c:\users\Červenacek\AppData\Roaming\MoveFab
2010-12-12 16:00 . 2010-12-12 16:00 -------- d-----w- c:\programdata\Ahead
2010-12-12 09:51 . 2011-01-09 20:08 -------- d-----w- c:\program files\trend micro
2010-12-12 08:42 . 2009-10-13 14:01 9856 ----a-w- c:\windows\system32\drivers\gBTMouUsb.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-03 11:16 . 2010-08-14 10:33 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2010-12-27 07:44 . 2010-08-01 20:32 15600 ----a-w- c:\windows\gdrv.sys
2010-12-24 10:48 . 2010-08-09 12:28 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2010-12-11 16:53 . 2010-08-09 12:28 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-12-03 12:13 . 2010-08-01 20:14 445016 ----a-w- c:\windows\system32\wrap_oal.dll
2010-12-03 12:13 . 2010-08-01 20:14 109144 ----a-w- c:\windows\system32\OpenAL32.dll
2010-11-20 16:49 . 2010-08-14 10:33 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2010-11-15 10:44 . 2010-11-15 10:45 737280 ----a-w- c:\windows\iun6002.exe
2010-11-14 12:46 . 2010-11-14 12:46 491520 ----a-w- c:\windows\WebIE.dll
2010-11-12 00:44 . 2010-11-12 00:44 94208 ----a-w- c:\windows\system32\dpl100.dll
2010-11-10 01:54 . 2010-11-10 01:54 49016 ----a-w- c:\windows\system32\sirenacm.dll
2010-11-10 01:28 . 2010-11-10 01:28 301936 ----a-w- c:\windows\WLXPGSS.SCR
2010-11-08 22:57 . 2010-11-08 22:57 353592 ----a-w- c:\windows\system32\DivXControlPanelApplet.cpl
2010-11-07 16:37 . 2010-08-19 02:37 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-11-04 13:48 . 2010-11-04 13:48 516096 ----a-w- c:\windows\UN32.EXE
2010-10-25 16:07 . 2010-10-25 16:07 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-10-19 09:41 . 2010-08-01 20:50 222080 ------w- c:\windows\system32\MpSigStub.exe
2010-10-14 00:36 . 2010-10-14 00:36 15451288 ----a-w- c:\windows\system32\xlive.dll
2010-10-14 00:36 . 2010-10-14 00:36 13642904 ----a-w- c:\windows\system32\xlivefnt.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Organizér"="c:\program files\Organizer\Organizer.exe" [2010-12-13 1152512]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-11-18 2219184]
"BCU"="c:\program files\DeviceVM\Browser Configuration Utility\BCU.exe" [2009-08-04 346320]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"DevconDefaultDB"="c:\windows\system32\READREG" [X]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Remote Control.lnk]
backup=c:\windows\pss\Remote Control.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TMMonitor.lnk]
backup=c:\windows\pss\TMMonitor.lnk.CommonStartup
backupExtension=.CommonStartup
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Suite
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2010-09-20 21:07 932288 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2010-09-23 02:47 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]
2010-03-18 09:19 207360 ----a-w- c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2010-04-01 09:16 357696 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2010-12-08 19:17 1226608 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [x]
R2 moohelp;The Cleaner 2011 Helper Service;c:\program files\The Cleaner\mhelper.exe [2010-03-29 813056]
R3 COMMONFX;COMMONFX;c:\windows\system32\drivers\COMMONFX.SYS [2010-03-18 99416]
R3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2010-08-02 79360]
R3 Creative Dolby Digital Live Pack Licensing Service;Creative Dolby Digital Live Pack Licensing Service;c:\program files\Common Files\Creative Labs Shared\Service\DDLLicensing.exe [2010-08-02 79360]
R3 CTAUDFX;CTAUDFX;c:\windows\system32\drivers\CTAUDFX.SYS [2010-03-18 555096]
R3 CTERFXFX.SYS;CTERFXFX.SYS;c:\windows\System32\drivers\CTERFXFX.SYS [2010-03-18 100952]
R3 CTERFXFX;CTERFXFX;c:\windows\system32\drivers\CTERFXFX.SYS [2010-03-18 100952]
R3 ctgame;Game Port;c:\windows\system32\DRIVERS\ctgame.sys [x]
R3 CTSBLFX;CTSBLFX;c:\windows\system32\drivers\CTSBLFX.SYS [2010-03-18 566360]
R3 EverestDriver;Lavalys EVEREST Kernel Driver;c:\program files\Everest Ultimate Edition v4.60.1613\Everest Ultimate Edition v4.60.1613\kerneld.wnt [2008-12-24 26224]
R3 gBTMouUsb;BT Mouse Device Drv;c:\windows\system32\DRIVERS\gBTMouUsb.sys [2009-10-13 9856]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2010-12-29 13224]
R3 s0016bus;Sony Ericsson Device 0016 driver (WDM);c:\windows\system32\DRIVERS\s0016bus.sys [2008-05-16 89256]
R3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter;c:\windows\system32\DRIVERS\s0016mdfl.sys [2008-05-16 15016]
R3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver;c:\windows\system32\DRIVERS\s0016mdm.sys [2008-05-16 120744]
R3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM);c:\windows\system32\DRIVERS\s0016mgmt.sys [2008-05-16 114216]
R3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS);c:\windows\system32\DRIVERS\s0016nd5.sys [2008-05-16 25512]
R3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface;c:\windows\system32\DRIVERS\s0016obex.sys [2008-05-16 110632]
R3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM);c:\windows\system32\DRIVERS\s0016unic.sys [2008-05-16 115752]
R3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;c:\program files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-08-02 1343400]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-10-25 691696]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2010-07-29 115008]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-07-07 176128]
S2 BCUService;Browser Configuration Utility Service;c:\program files\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-08-04 219360]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2010-09-03 137144]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-11-18 810144]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2010-07-29 96920]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2010-07-07 5882368]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2010-07-07 210944]
S3 CamSuiteVAC;CamSuite Virtual Audio;c:\windows\system32\DRIVERS\CamSuiteVAC.sys [2008-09-19 37560]
S3 COMMONFX.SYS;COMMONFX.SYS;c:\windows\System32\drivers\COMMONFX.SYS [2010-03-18 99416]
S3 CTAUDFX.SYS;CTAUDFX.SYS;c:\windows\System32\drivers\CTAUDFX.SYS [2010-03-18 555096]
S3 CTSBLFX.SYS;CTSBLFX.SYS;c:\windows\System32\drivers\CTSBLFX.SYS [2010-03-18 566360]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2010-04-27 64904]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2010-04-27 146568]
S3 RTL2832UBDA;REALTEK 2832U BDA Driver;c:\windows\system32\drivers\RTL2832UBDA.sys [2009-08-13 93216]
S3 RTL2832UUSB;REALTEK 2832U USB Driver;c:\windows\system32\Drivers\RTL2832UUSB.sys [2009-08-13 32800]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2010-06-23 275048]
S3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\DRIVERS\seehcri.sys [2010-12-29 27632]
.
Obsah adresáře 'Naplánované úlohy'
2011-01-09 c:\windows\Tasks\AWC Startup.job
- c:\program files\IObit\Advanced SystemCare 3\AWC.exe [2010-12-09 15:19]
.
.
------- Doplňkový sken -------
.
uStart Page = about:blank
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
FF - ProfilePath - c:\users\Červenacek\AppData\Roaming\Mozilla\Firefox\Profiles\chyoyfog.default\
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz
FF - prefs.js: keyword.URL - hxxp://utils.babylon.com/abt/index.php?url=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
FF - Ext: Oskar: {5b175400-2368-11de-8c30-0800200c9a66} - %profile%\extensions\{5b175400-2368-11de-8c30-0800200c9a66}
FF - Ext: Flagfox: {1018e4d6-728f-4b20-ad56-37578a4de76b} - %profile%\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
FF - Ext: PC Sync 2 Synchronisation Extension: bkmrksync@nokia.com - c:\program files\Nokia\Nokia PC Suite 7\bkmrksync
FF - Ext: DivX Plus Web Player HTML5 <video>: {23fcfd51-4958-4f00-80a3-ae97e717ed8b} - c:\program files\DivX\DivX Plus Web Player\firefox\html5video
FF - Ext: DivX HiQ: {6904342A-8307-11DF-A508-4AE2DFD72085} - c:\program files\DivX\DivX Plus Web Player\firefox\wpa
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autofill - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.firstrequest - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: nglayout.initialpaint.delay - 0
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EverestDriver]
"ImagePath"="\??\c:\program files\Everest Ultimate Edition v4.60.1613\Everest Ultimate Edition v4.60.1613\kerneld.wnt"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,67,b6,65,04,0e,4e,c9,40,af,e2,ae,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,67,b6,65,04,0e,4e,c9,40,af,e2,ae,\
[HKEY_USERS\S-1-5-21-1185881143-989080745-2886138194-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
"??"=hex:13,fe,d2,f6,9c,14,7f,39,f5,c0,e9,1b,b5,31,91,0f,18,01,50,0f,41,70,63,
a1,81,15,43,ab,c9,d7,c5,ae,19,e8,67,fe,2f,05,ae,94,95,be,49,2a,dd,17,f6,6e,\
"??"=hex:ad,49,fc,7f,8d,4f,33,3b,7c,5f,b1,fe,bd,3e,70,eb
[HKEY_USERS\S-1-5-21-1185881143-989080745-2886138194-1001\Software\SecuROM\License information*]
"datasecu"=hex:76,70,56,a3,17,f1,5a,2b,24,99,9e,13,9c,87,70,2c,32,67,a9,e5,c5,
d3,ef,c3,66,43,6f,7b,8b,23,43,36,df,a5,b9,72,c0,b8,7e,b6,f5,20,42,95,bb,c9,\
"rkeysecu"=hex:0f,51,ca,13,ca,db,39,df,57,a2,de,46,6a,d5,39,8f
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2011-01-09 22:22:34
ComboFix-quarantined-files.txt 2011-01-09 21:22
Před spuštěním: Volných bajtů: 339 480 612 864
Po spuštění: Volných bajtů: 339 294 916 608
- - End Of File - - 02AF901709818EBECC9F35BEEC3FCABE
Microsoft Windows 7 Professional 6.1.7600.0.1250.420.1029.18.2046.1366 [GMT 1:00]
Spuštěný z: c:\users\Červenacek\Desktop\ComboFix.exe
AV: ESET NOD32 Antivirus 4.2 *Disabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 4.2 *Disabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-12-09 do 2011-01-09 )))))))))))))))))))))))))))))))
.
2011-01-09 21:20 . 2011-01-09 21:20 -------- d-----w- c:\users\ERVENA~2\AppData\Local\temp
2011-01-09 21:20 . 2011-01-09 21:20 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-01-09 20:08 . 2011-01-09 20:08 -------- d-----w- C:\rsit
2011-01-09 15:12 . 2009-03-02 13:32 5225472 ----a-w- c:\windows\ss3dfire.scr
2011-01-09 15:12 . 2008-08-08 09:19 125440 ----a-w- c:\windows\dx7ogl32.dll
2011-01-09 15:12 . 2011-01-09 15:12 -------- d-----w- c:\program files\3D Realistic Fireplace 3
2011-01-08 12:10 . 2011-01-08 12:13 -------- d-----w- c:\program files\Amnesia
2011-01-08 09:52 . 2011-01-08 09:52 -------- d-----w- c:\users\Červenacek\AppData\Roaming\VitySoft
2011-01-07 10:37 . 2011-01-07 10:37 -------- d-----w- c:\users\Červenacek\AppData\Local\{91534743-5D44-46D9-8171-978FC18DF55D}
2011-01-07 06:31 . 2010-11-10 04:33 6273872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3FC328D3-C960-47A5-8653-53D5BD292B84}\mpengine.dll
2011-01-06 20:39 . 2011-01-06 20:39 -------- d-----w- c:\users\Červenacek\AppData\Local\{C1E3AB4A-1CFE-4230-961A-618BF844F4CC}
2011-01-06 16:01 . 2011-01-06 16:01 -------- d-----w- c:\users\Červenacek\AppData\Local\Hardcoded Software
2011-01-06 15:50 . 2011-01-06 15:50 -------- d-----w- c:\program files\Common Files\Skype
2011-01-06 15:50 . 2011-01-07 11:07 -------- d-----r- c:\program files\Skype
2011-01-06 15:50 . 2011-01-06 15:50 -------- d-----w- c:\programdata\Skype
2011-01-04 11:07 . 2011-01-04 11:23 -------- d-----w- c:\users\Červenacek\AppData\Local\Sony
2011-01-04 11:07 . 2011-01-04 11:07 -------- d-----w- c:\users\Červenacek\Podcasts
2011-01-04 11:06 . 2011-01-04 11:06 -------- d-----w- c:\program files\Common Files\Sony Shared
2011-01-04 11:06 . 2011-01-07 11:04 -------- d-----w- c:\program files\Sony
2011-01-04 11:05 . 2011-01-04 11:05 -------- d-----w- c:\users\Červenacek\AppData\Local\Apple
2011-01-04 11:05 . 2011-01-04 11:05 -------- d-----w- c:\programdata\Apple
2011-01-04 11:05 . 2011-01-04 11:05 -------- d-----w- c:\program files\Apple Software Update
2011-01-04 11:03 . 2011-01-04 11:07 -------- d-----w- c:\users\Červenacek\AppData\Roaming\Sony
2011-01-04 11:03 . 2011-01-04 11:05 -------- d-----w- c:\program files\Sony Media Go Install
2011-01-04 10:50 . 2011-01-04 10:50 -------- d-----w- c:\program files\Avanquest update
2011-01-04 10:50 . 2011-01-04 10:50 -------- d-----w- c:\programdata\BVRP Software
2011-01-04 08:25 . 2011-01-04 08:25 -------- d-----w- c:\users\Červenacek\AppData\Roaming\Anthropics
2011-01-04 08:25 . 2011-01-07 11:06 -------- d-----w- c:\program files\Portrait Professional Max 6
2011-01-02 15:43 . 2011-01-02 15:43 -------- d-----w- c:\program files\Godlike Developers
2011-01-02 09:46 . 2011-01-02 12:58 -------- d-----w- c:\programdata\WebcamMax
2011-01-01 15:13 . 2011-01-01 15:13 -------- d-----w- c:\users\Cervenacek
2011-01-01 14:38 . 2011-01-01 14:38 -------- d-----w- c:\users\Červenacek\AppData\Roaming\Video2Webcam
2011-01-01 14:32 . 2010-04-17 14:31 1053056 ----a-w- c:\windows\system32\drivers\V2WCDRV.sys
2011-01-01 11:33 . 2011-01-01 11:34 -------- d-----w- c:\users\Červenacek\AppData\Roaming\PhotoFiltre
2011-01-01 11:29 . 2011-01-01 11:35 -------- d-----w- c:\program files\PhotoFiltre
2010-12-30 12:45 . 2010-12-30 12:45 -------- d-----w- c:\users\Červenacek\AppData\Local\Codemasters
2010-12-30 12:37 . 2011-01-09 21:20 -------- d-----w- c:\users\Červenacek\AppData\Local\temp
2010-12-30 10:38 . 2010-12-20 17:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-12-30 10:38 . 2010-12-30 10:38 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-12-30 10:38 . 2010-12-20 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-12-29 11:51 . 2010-12-29 11:51 45056 ----a-r- c:\users\Červenacek\AppData\Roaming\Microsoft\Installer\{6815FCDD-401D-481E-BA88-31B4754C2B46}\ARPPRODUCTICON.exe
2010-12-29 08:03 . 2010-12-29 08:03 27632 ----a-w- c:\windows\system32\drivers\seehcri.sys
2010-12-29 07:53 . 2010-12-29 07:53 25512 ----a-w- c:\windows\system32\drivers\ggsemc.sys
2010-12-29 07:53 . 2010-12-29 07:53 13224 ----a-w- c:\windows\system32\drivers\ggflt.sys
2010-12-29 07:53 . 2010-12-29 07:53 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2010-12-29 07:41 . 2011-01-06 20:23 -------- d-----w- c:\users\Červenacek\AppData\Local\Sony Ericsson
2010-12-28 06:23 . 2010-12-28 06:23 -------- d-----w- c:\users\Červenacek\AppData\Roaming\EBookSys
2010-12-24 15:58 . 2010-12-28 07:01 -------- d-----w- C:\temp
2010-12-20 12:39 . 2010-12-20 12:39 -------- d-----w- c:\program files\ESET
2010-12-20 12:20 . 2010-12-20 12:20 301568 ----a-w- c:\windows\system32\cmd.execf
2010-12-19 10:43 . 2010-12-22 09:18 -------- d-----w- c:\programdata\IObit
2010-12-18 18:07 . 2010-12-18 18:15 -------- d-----w- c:\users\Červenacek\AppData\Roaming\thecleaner
2010-12-18 18:07 . 2011-01-07 11:24 -------- d-----w- c:\program files\The Cleaner
2010-12-16 10:04 . 2010-12-16 10:04 -------- d-----w- c:\users\Červenacek\AppData\Local\{631D60B5-63B7-4A30-AA51-42CF39DE6AAB}
2010-12-15 09:42 . 2010-12-15 09:42 -------- d-----w- c:\users\Červenacek\AppData\Local\{FC233C65-ECBE-4FE3-B927-559784EB2E3E}
2010-12-15 09:42 . 2010-12-15 09:42 -------- d-----w- c:\users\Červenacek\AppData\Local\{85770F87-4423-4D7A-863C-7B3A0BB20932}
2010-12-15 09:41 . 2010-12-15 09:42 -------- d-----w- c:\users\Červenacek\AppData\Local\Windows Live Writer
2010-12-15 09:41 . 2010-12-15 09:41 -------- d-----w- c:\users\Červenacek\AppData\Roaming\Windows Live Writer
2010-12-14 11:39 . 2010-12-14 11:39 -------- d-----w- c:\programdata\Nero
2010-12-14 11:39 . 2010-12-14 11:39 -------- d-----w- c:\program files\Nero
2010-12-14 11:39 . 2010-12-14 11:52 -------- d-----w- c:\program files\Common Files\Ahead
2010-12-14 09:09 . 2010-12-14 09:09 -------- d-----w- c:\program files\SCi Games
2010-12-14 08:01 . 2008-06-20 17:27 19840 ----a-w- c:\windows\system32\drivers\StMp3Rec.sys
2010-12-13 09:15 . 2010-12-13 09:15 -------- d-----w- c:\users\Červenacek\DoctorWeb
2010-12-13 08:21 . 2010-12-13 08:21 -------- d-----w- c:\users\Červenacek\AppData\Roaming\MoveFab
2010-12-12 16:00 . 2010-12-12 16:00 -------- d-----w- c:\programdata\Ahead
2010-12-12 09:51 . 2011-01-09 20:08 -------- d-----w- c:\program files\trend micro
2010-12-12 08:42 . 2009-10-13 14:01 9856 ----a-w- c:\windows\system32\drivers\gBTMouUsb.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-03 11:16 . 2010-08-14 10:33 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2010-12-27 07:44 . 2010-08-01 20:32 15600 ----a-w- c:\windows\gdrv.sys
2010-12-24 10:48 . 2010-08-09 12:28 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2010-12-11 16:53 . 2010-08-09 12:28 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-12-03 12:13 . 2010-08-01 20:14 445016 ----a-w- c:\windows\system32\wrap_oal.dll
2010-12-03 12:13 . 2010-08-01 20:14 109144 ----a-w- c:\windows\system32\OpenAL32.dll
2010-11-20 16:49 . 2010-08-14 10:33 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2010-11-15 10:44 . 2010-11-15 10:45 737280 ----a-w- c:\windows\iun6002.exe
2010-11-14 12:46 . 2010-11-14 12:46 491520 ----a-w- c:\windows\WebIE.dll
2010-11-12 00:44 . 2010-11-12 00:44 94208 ----a-w- c:\windows\system32\dpl100.dll
2010-11-10 01:54 . 2010-11-10 01:54 49016 ----a-w- c:\windows\system32\sirenacm.dll
2010-11-10 01:28 . 2010-11-10 01:28 301936 ----a-w- c:\windows\WLXPGSS.SCR
2010-11-08 22:57 . 2010-11-08 22:57 353592 ----a-w- c:\windows\system32\DivXControlPanelApplet.cpl
2010-11-07 16:37 . 2010-08-19 02:37 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-11-04 13:48 . 2010-11-04 13:48 516096 ----a-w- c:\windows\UN32.EXE
2010-10-25 16:07 . 2010-10-25 16:07 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-10-19 09:41 . 2010-08-01 20:50 222080 ------w- c:\windows\system32\MpSigStub.exe
2010-10-14 00:36 . 2010-10-14 00:36 15451288 ----a-w- c:\windows\system32\xlive.dll
2010-10-14 00:36 . 2010-10-14 00:36 13642904 ----a-w- c:\windows\system32\xlivefnt.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Organizér"="c:\program files\Organizer\Organizer.exe" [2010-12-13 1152512]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-11-18 2219184]
"BCU"="c:\program files\DeviceVM\Browser Configuration Utility\BCU.exe" [2009-08-04 346320]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"DevconDefaultDB"="c:\windows\system32\READREG" [X]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Remote Control.lnk]
backup=c:\windows\pss\Remote Control.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TMMonitor.lnk]
backup=c:\windows\pss\TMMonitor.lnk.CommonStartup
backupExtension=.CommonStartup
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Suite
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2010-09-20 21:07 932288 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2010-09-23 02:47 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]
2010-03-18 09:19 207360 ----a-w- c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2010-04-01 09:16 357696 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2010-12-08 19:17 1226608 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [x]
R2 moohelp;The Cleaner 2011 Helper Service;c:\program files\The Cleaner\mhelper.exe [2010-03-29 813056]
R3 COMMONFX;COMMONFX;c:\windows\system32\drivers\COMMONFX.SYS [2010-03-18 99416]
R3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2010-08-02 79360]
R3 Creative Dolby Digital Live Pack Licensing Service;Creative Dolby Digital Live Pack Licensing Service;c:\program files\Common Files\Creative Labs Shared\Service\DDLLicensing.exe [2010-08-02 79360]
R3 CTAUDFX;CTAUDFX;c:\windows\system32\drivers\CTAUDFX.SYS [2010-03-18 555096]
R3 CTERFXFX.SYS;CTERFXFX.SYS;c:\windows\System32\drivers\CTERFXFX.SYS [2010-03-18 100952]
R3 CTERFXFX;CTERFXFX;c:\windows\system32\drivers\CTERFXFX.SYS [2010-03-18 100952]
R3 ctgame;Game Port;c:\windows\system32\DRIVERS\ctgame.sys [x]
R3 CTSBLFX;CTSBLFX;c:\windows\system32\drivers\CTSBLFX.SYS [2010-03-18 566360]
R3 EverestDriver;Lavalys EVEREST Kernel Driver;c:\program files\Everest Ultimate Edition v4.60.1613\Everest Ultimate Edition v4.60.1613\kerneld.wnt [2008-12-24 26224]
R3 gBTMouUsb;BT Mouse Device Drv;c:\windows\system32\DRIVERS\gBTMouUsb.sys [2009-10-13 9856]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2010-12-29 13224]
R3 s0016bus;Sony Ericsson Device 0016 driver (WDM);c:\windows\system32\DRIVERS\s0016bus.sys [2008-05-16 89256]
R3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter;c:\windows\system32\DRIVERS\s0016mdfl.sys [2008-05-16 15016]
R3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver;c:\windows\system32\DRIVERS\s0016mdm.sys [2008-05-16 120744]
R3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM);c:\windows\system32\DRIVERS\s0016mgmt.sys [2008-05-16 114216]
R3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS);c:\windows\system32\DRIVERS\s0016nd5.sys [2008-05-16 25512]
R3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface;c:\windows\system32\DRIVERS\s0016obex.sys [2008-05-16 110632]
R3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM);c:\windows\system32\DRIVERS\s0016unic.sys [2008-05-16 115752]
R3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;c:\program files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-08-02 1343400]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-10-25 691696]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2010-07-29 115008]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-07-07 176128]
S2 BCUService;Browser Configuration Utility Service;c:\program files\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-08-04 219360]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2010-09-03 137144]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-11-18 810144]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2010-07-29 96920]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2010-07-07 5882368]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2010-07-07 210944]
S3 CamSuiteVAC;CamSuite Virtual Audio;c:\windows\system32\DRIVERS\CamSuiteVAC.sys [2008-09-19 37560]
S3 COMMONFX.SYS;COMMONFX.SYS;c:\windows\System32\drivers\COMMONFX.SYS [2010-03-18 99416]
S3 CTAUDFX.SYS;CTAUDFX.SYS;c:\windows\System32\drivers\CTAUDFX.SYS [2010-03-18 555096]
S3 CTSBLFX.SYS;CTSBLFX.SYS;c:\windows\System32\drivers\CTSBLFX.SYS [2010-03-18 566360]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2010-04-27 64904]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2010-04-27 146568]
S3 RTL2832UBDA;REALTEK 2832U BDA Driver;c:\windows\system32\drivers\RTL2832UBDA.sys [2009-08-13 93216]
S3 RTL2832UUSB;REALTEK 2832U USB Driver;c:\windows\system32\Drivers\RTL2832UUSB.sys [2009-08-13 32800]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2010-06-23 275048]
S3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\DRIVERS\seehcri.sys [2010-12-29 27632]
.
Obsah adresáře 'Naplánované úlohy'
2011-01-09 c:\windows\Tasks\AWC Startup.job
- c:\program files\IObit\Advanced SystemCare 3\AWC.exe [2010-12-09 15:19]
.
.
------- Doplňkový sken -------
.
uStart Page = about:blank
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
FF - ProfilePath - c:\users\Červenacek\AppData\Roaming\Mozilla\Firefox\Profiles\chyoyfog.default\
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz
FF - prefs.js: keyword.URL - hxxp://utils.babylon.com/abt/index.php?url=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
FF - Ext: Oskar: {5b175400-2368-11de-8c30-0800200c9a66} - %profile%\extensions\{5b175400-2368-11de-8c30-0800200c9a66}
FF - Ext: Flagfox: {1018e4d6-728f-4b20-ad56-37578a4de76b} - %profile%\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
FF - Ext: PC Sync 2 Synchronisation Extension: bkmrksync@nokia.com - c:\program files\Nokia\Nokia PC Suite 7\bkmrksync
FF - Ext: DivX Plus Web Player HTML5 <video>: {23fcfd51-4958-4f00-80a3-ae97e717ed8b} - c:\program files\DivX\DivX Plus Web Player\firefox\html5video
FF - Ext: DivX HiQ: {6904342A-8307-11DF-A508-4AE2DFD72085} - c:\program files\DivX\DivX Plus Web Player\firefox\wpa
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autofill - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.firstrequest - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: nglayout.initialpaint.delay - 0
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EverestDriver]
"ImagePath"="\??\c:\program files\Everest Ultimate Edition v4.60.1613\Everest Ultimate Edition v4.60.1613\kerneld.wnt"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,67,b6,65,04,0e,4e,c9,40,af,e2,ae,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,67,b6,65,04,0e,4e,c9,40,af,e2,ae,\
[HKEY_USERS\S-1-5-21-1185881143-989080745-2886138194-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
"??"=hex:13,fe,d2,f6,9c,14,7f,39,f5,c0,e9,1b,b5,31,91,0f,18,01,50,0f,41,70,63,
a1,81,15,43,ab,c9,d7,c5,ae,19,e8,67,fe,2f,05,ae,94,95,be,49,2a,dd,17,f6,6e,\
"??"=hex:ad,49,fc,7f,8d,4f,33,3b,7c,5f,b1,fe,bd,3e,70,eb
[HKEY_USERS\S-1-5-21-1185881143-989080745-2886138194-1001\Software\SecuROM\License information*]
"datasecu"=hex:76,70,56,a3,17,f1,5a,2b,24,99,9e,13,9c,87,70,2c,32,67,a9,e5,c5,
d3,ef,c3,66,43,6f,7b,8b,23,43,36,df,a5,b9,72,c0,b8,7e,b6,f5,20,42,95,bb,c9,\
"rkeysecu"=hex:0f,51,ca,13,ca,db,39,df,57,a2,de,46,6a,d5,39,8f
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2011-01-09 22:22:34
ComboFix-quarantined-files.txt 2011-01-09 21:22
Před spuštěním: Volných bajtů: 339 480 612 864
Po spuštění: Volných bajtů: 339 294 916 608
- - End Of File - - 02AF901709818EBECC9F35BEEC3FCABE
- Rudy
- Site Admin
- Příspěvky: 119506
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zdravím,prosím o kontrolu logu ,hdisc pořád pracuje
Takže nic, žádné viry tam nejsou. Pracuje pouze disk, nebo je patrná i nějaká síťová aktivita?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 24
- Registrován: 15 led 2008 21:48
- Bydliště: Vysočina
Re: Zdravím,prosím o kontrolu logu ,hdisc pořád pracuje
pracuje jen disk,nebo spíš skoro pořád bliká kontrolka u hdd i v klidu.Zdáse mi i pomalejší načítání internetových stránek.Projížděl jsem to více programy Mwav atd,ale nenašli nic.
- Rudy
- Site Admin
- Příspěvky: 119506
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Zdravím,prosím o kontrolu logu ,hdisc pořád pracuje
Ještě zkuste sken AVPTool: http://www.viry.cz/forum/viewtopic.php?f=29&t=58179 a dejte log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.