mám ten log ,ale počas testu sa vyskytla táto chyba : Dumphive.3xe
ComboFix 13-02-07.02 - oco . 02. 2013 13:14:48.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1029.18.895.505 [GMT 1:00]
Running from: C:\Documents and Settings\oco\Plocha\ComboFix.exe
Command switches used :: C:\Documents and Settings\oco\Plocha\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FILE ::
"C:\WINDOWS\tasks\Adobe Flash Player Updater.job"
"C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-725345543-1957994488-1644491937-1004Core.job"
"C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-725345543-1957994488-1644491937-1004UA.job"
"C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job"
"C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job"
"C:\WINDOWS\tasks\ROC_JAN2013_TB_rmv.job"
"C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job"
((((((((((((((((((((((((( Files Created from 2013-01-11 to 2013-02-11 )))))))))))))))))))))))))))))))
2013-02-11 10:42:25 . 2012-10-30 22:51:56 21256 ----a-w- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2013-02-11 10:42:24 . 2012-10-30 22:51:58 361032 ----a-w- C:\WINDOWS\system32\drivers\aswSP.sys
2013-02-11 10:42:20 . 2012-10-30 22:51:58 54232 ----a-w- C:\WINDOWS\system32\drivers\aswTdi.sys
2013-02-11 10:42:20 . 2012-10-30 22:51:58 35928 ----a-w- C:\WINDOWS\system32\drivers\aswRdr.sys
2013-02-11 10:42:18 . 2012-10-30 22:51:58 738504 ----a-w- C:\WINDOWS\system32\drivers\aswSnx.sys
2013-02-11 10:42:17 . 2012-10-30 22:51:57 97608 ----a-w- C:\WINDOWS\system32\drivers\aswmon2.sys
2013-02-11 10:42:17 . 2012-10-30 22:51:57 89752 ----a-w- C:\WINDOWS\system32\drivers\aswmon.sys
2013-02-11 10:42:16 . 2012-10-30 22:51:56 25256 ----a-w- C:\WINDOWS\system32\drivers\aavmker4.sys
2013-02-11 10:41:36 . 2012-10-30 22:51:07 41224 ----a-w- C:\WINDOWS\avastSS.scr
2013-02-11 10:41:35 . 2012-10-30 22:50:59 227648 ----a-w- C:\WINDOWS\system32\aswBoot.exe
2013-02-11 10:41:02 . 2013-02-11 10:41:02 -------- d-----w- C:\Program Files\AVAST Software
2013-02-11 10:41:02 . 2013-02-11 10:41:02 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-02-11 08:36:43 . 2013-02-11 08:36:57 -------- d-----w- C:\Program Files\trend micro
2013-02-11 08:36:42 . 2013-02-11 08:37:01 -------- d-----w- C:\rsit
2013-02-08 14:29:01 . 2013-02-08 14:29:01 16365936 ----a-w- C:\WINDOWS\system32\FlashPlayerInstaller.exe
2013-02-07 14:17:24 . 2013-02-07 14:19:18 -------- d---a-w- C:\Documents and Settings\All Users\Data aplikací\TEMP
2013-02-07 14:16:59 . 2013-02-07 14:40:24 -------- d-----w- C:\Program Files\HDD Regenerator
2013-02-07 14:16:33 . 2013-02-07 14:16:33 -------- d-----w- C:\Documents and Settings\oco\Local Settings\Data aplikací\Downloaded Installations
2013-02-06 13:28:51 . 2013-02-06 13:29:18 -------- d-----w- C:\Documents and Settings\oco\Local Settings\Data aplikací\Facebook
2013-01-29 20:08:32 . 2013-01-29 20:08:32 -------- d-----w- C:\Documents and Settings\oco\Local Settings\Data aplikací\Eraser 6
2013-01-29 15:57:34 . 2013-01-29 15:57:35 -------- d-----w- C:\Program Files\Eraser
2013-01-28 10:43:04 . 2008-04-14 06:51:44 21504 -c--a-w- C:\WINDOWS\system32\dllcache\hidserv.dll
2013-01-28 10:43:04 . 2008-04-14 06:51:44 21504 ----a-w- C:\WINDOWS\system32\hidserv.dll
2013-01-28 10:42:56 . 2008-04-14 05:59:08 14592 -c--a-w- C:\WINDOWS\system32\dllcache\kbdhid.sys
2013-01-28 10:42:56 . 2008-04-14 05:59:08 14592 ----a-w- C:\WINDOWS\system32\drivers\kbdhid.sys
2013-01-28 10:42:44 . 2008-04-22 12:09:20 32384 -c--a-w- C:\WINDOWS\system32\dllcache\usbccgp.sys
2013-01-28 10:42:44 . 2008-04-22 12:09:20 32384 ----a-w- C:\WINDOWS\system32\drivers\usbccgp.sys
2013-01-26 10:39:22 . 2013-01-26 10:39:22 -------- d-----w- C:\Program Files\Common Files\Skype
2013-01-23 14:31:44 . 2013-01-23 14:31:44 -------- d-----w- C:\Program Files\JGoodies
2013-01-15 08:36:54 . 2013-01-15 08:36:55 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\YTD Video Downloader
2013-01-15 08:35:39 . 2013-01-15 08:35:39 -------- d-----w- C:\Program Files\GreenTree Applications
2013-01-13 15:33:11 . 2013-01-13 15:33:11 29760 ----a-w- C:\WINDOWS\system32\drivers\FNETTBOH_305.SYS
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2013-02-08 14:29:16 . 2012-12-18 14:46:53 74096 ----a-w- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-02-08 14:29:16 . 2012-12-18 14:46:53 697712 ----a-w- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-01-02 11:43:05 . 2013-01-02 11:43:05 81920 ----a-w- C:\WINDOWS\system32\BIVBX11.DLL
2012-12-23 11:52:03 . 2012-12-23 11:52:03 639224 ----a-w- C:\WINDOWS\system32\drivers\sptd.sys
2012-12-16 12:31:02 . 2010-01-14 14:59:52 290560 ----a-w- C:\WINDOWS\system32\atmfd.dll
2012-12-10 18:00:00 . 2012-12-13 14:02:40 112640 ----a-w- C:\WINDOWS\system32\ff_vfw.dll
2012-12-05 16:25:38 . 2012-12-05 16:25:38 14656 ----a-w- C:\WINDOWS\system32\drivers\FNETURPX.SYS
2013-02-06 08:45:37 . 2013-02-06 08:45:00 262552 ----a-w- C:\Program Files\mozilla firefox\components\browsercomps.dll
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
[-] 2009-10-09 09:52:10 . FF876311F58C86EC3E1A24F585949C25 . 1571840 . . [5.1.2600.5512 (xpsp.080413-2111)] . . C:\WINDOWS\system32\sfcfiles.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-10-30 22:50:38 121528 ----a-w- C:\Program Files\AVAST Software\Avast\ashShell.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2012-12-17 18:50:28 556648 ----a-w- C:\Program Files\Google\Drive\googledrivesync32.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2012-12-17 18:50:28 556648 ----a-w- C:\Program Files\Google\Drive\googledrivesync32.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2012-12-17 18:50:28 556648 ----a-w- C:\Program Files\Google\Drive\googledrivesync32.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2012-12-17 18:50:28 556648 ----a-w- C:\Program Files\Google\Drive\googledrivesync32.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 11:00:00 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2009-04-14 07:03:00 13684736]
"avast"="C:\Program Files\AVAST Software\Avast\avastUI.exe" [2012-10-30 22:50:59 4297136]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 11:00:00 15360]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2010-01-14 15:05:55 304128]
[HKLM\~\startupfolder\C:^Documents and Settings^oco^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.3.lnk]
path=C:\Documents and Settings\oco\Nabídka Start\Programy\Po spuštění\OpenOffice.org 3.3.lnk
backup=C:\WINDOWS\pss\OpenOffice.org 3.3.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]
2010-10-27 18:17:52 207424 ----a-w- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\asrRd]
2012-10-25 14:13:02 1592144 ----a-w- C:\Program Files\ASRock Utility\XFast RAM\asrRd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Eraser]
2012-05-22 07:13:12 980920 ----a-w- C:\PROGRA~1\Eraser\Eraser.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2006-10-26 23:47:42 31016 ----a-w- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
2009-12-03 11:47:16 33718272 ----a-r- C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Lexmark X74-X75]
2002-10-14 14:09:12 57344 ----a-w- C:\Program Files\Lexmark X74-X75\lxbbbmgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
2007-12-10 14:55:26 323584 ----a-w- C:\WINDOWS\PixArt\PAC207\Monitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
2008-04-14 06:52:38 1695232 ------w- C:\Program Files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2009-04-14 07:03:00 13684736 ----a-w- C:\WINDOWS\system32\nvcpl.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2009-04-14 07:03:00 86016 ----a-w- C:\WINDOWS\system32\nvmctray.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PAC207_Monitor]
2007-12-10 14:55:26 323584 ----a-w- C:\WINDOWS\PixArt\PAC207\Monitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XFast LAN]
2011-10-19 15:19:20 1202560 ----a-r- C:\Program Files\ASRock\XFast LAN\cfosspeed.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XFastUSB]
2012-12-05 16:25:38 5019360 ----a-w- C:\Program Files\XFastUSB\XFastUsb.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\SIMS\\RACER\\racer.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"C:\\Documents and Settings\\oco\\Local Settings\\Data aplikací\\Facebook\\Video\\Skype\\FacebookVideoCalling.exe"=
R0 AsrRamDisk;AsrRamDisk;C:\WINDOWS\system32\drivers\AsrRamDisk.sys [5. 12. 2012 17:21:27 32592]
R0 sptd;sptd;C:\WINDOWS\system32\drivers\sptd.sys [23. 12. 2012 12:52:03 639224]
R1 aswSnx;aswSnx;C:\WINDOWS\system32\drivers\aswSnx.sys [11. 2. 2013 11:42:18 738504]
R1 aswSP;aswSP;C:\WINDOWS\system32\drivers\aswSP.sys [11. 2. 2013 11:42:24 361032]
R1 FNETURPX;FNETURPX;C:\WINDOWS\system32\drivers\FNETURPX.SYS [5. 12. 2012 17:25:38 14656]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\drivers\aswFsBlk.sys [11. 2. 2013 11:42:25 21256]
R2 Skype C2C Service;Skype C2C Service;C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [31. 1. 2013 10:38:54 3289208]
R3 PAC207;PC Camer@;C:\WINDOWS\system32\drivers\PFC027.SYS [19. 12. 2012 11:29:19 618112]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;C:\WINDOWS\system32\drivers\viahduaa.sys [5. 12. 2012 17:19:57 1617408]
S1 DumpDrv;Crash Dump Driver;C:\WINDOWS\system32\drivers\dumpdrv.sys [14. 1. 2010 16:04:10 9472]
S2 SkypeUpdate;Skype Updater;C:\Program Files\Skype\Updater\Updater.exe [8. 1. 2013 12:55:20 161536]
S3 AMBFilt;AMBFilt;C:\WINDOWS\system32\drivers\Ambfilt.sys [5. 12. 2012 17:19:57 1656960]
S3 FNETTBOH_305;FNETTBOH_305;C:\WINDOWS\system32\drivers\FNETTBOH_305.SYS [13. 1. 2013 16:33:11 29760]
S3 teamviewervpn;TeamViewer VPN Adapter;C:\WINDOWS\system32\drivers\teamviewervpn.sys [19. 12. 2012 16:48:06 25088]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-02-02 16:28:34 1607120 ----a-w- C:\Program Files\Google\Chrome\Application\24.0.1312.57\Installer\chrmstp.exe
Contents of the 'Scheduled Tasks' folder
2013-02-11 C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-12-18 14:46:53 . 2013-02-08 14:29:17]
2013-02-11 C:\WINDOWS\Tasks\avast! Emergency Update.job
- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-02-11 10:41:32 . 2012-10-30 22:50:59]
2013-02-11 C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
- C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-18 15:23:13 . 2012-12-18 15:23:12]
2013-02-11 C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
- C:\Program Files\Google\Update\GoogleUpdate.exe [2012-12-18 15:23:13 . 2012-12-18 15:23:12]
------- Supplementary Scan -------
uInternet Connection Wizard,ShellNext = iexplore
IE: E&xportovat do aplikace Microsoft Excel - C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - C:\Documents and Settings\oco\Data aplikací\Mozilla\Firefox\Profiles\quijvhmn.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://
www.google.sk/
FF - ExtSQL: 2012-12-25 18:39; {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}; C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF - ExtSQL: 2012-12-31 10:52; {003D3EDC-99B9-4a34-9C20-60CB94F7E829}; C:\Documents and Settings\oco\Data aplikacĂÂ\Mozilla\Firefox\Profiles\quijvhmn.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}.xpi
FF - ExtSQL: 2013-02-11 11:41;
wrc@avast.com; C:\Program Files\AVAST Software\Avast\WebRep\FF