Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Windows 7 64bit problem

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní: http://forum.viry.cz/viewtopic.php?f=12&t=123975 . Děkujeme za pochopení.
Zpráva
Autor
kumartin
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 18 pro 2009 15:55

Re: Windows 7 64bit problem

#16 Příspěvek od kumartin »

Tak jsem infikovany soubor odstranil...

kumartin
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 18 pro 2009 15:55

Re: Windows 7 64bit problem

#17 Příspěvek od kumartin »

a vypada to, ze problem je asi uz pryc....ale nevim na jak dlouho

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Windows 7 64bit problem

#18 Příspěvek od motji »

Omluva za vstup :)


:arrow: Spustte OTL
-do bílého okna dole skopírujte tento skript:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKCU..\Run: [NB Probe] File not found
O9 - Extra Button: GetStyles - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : GetStyles - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - Reg Error: Value error. File not found
O13 - gopher Prefix: missing
O15:64bit: - ..Trusted Domains: 57 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
@Alternate Data Stream - 180 bytes -> C:\ProgramData\TEMP:ECF54A0E
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:DFC5A2B2
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:D1B5B4F1
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:A8ADE5D8

:files
C:\WINDOWS\system32\*.tmp.dll /s
C:\WINDOWS\system32\SET*.tmp /s
C:\WINDOWS\*.tmp /s

:COMMANDS
[Reboot]
-klikněte na tlačítko Run fix.
-Následně se pc restartuje.
- Log vložte zde :)

:arrow: Otestujte na http://www.virustotal.com
C:\Windows\ctfile.rfc
Do okénka zkopírujte cestu k souboru , pokud napíše, že soubor byl už testován, dejte otestovat znovu.
Sem vložte link s výsledky.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

kumartin
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 18 pro 2009 15:55

Re: Windows 7 64bit problem

#19 Příspěvek od kumartin »

Mam to udelat, kdyz to vypada uz dobre??

kumartin
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 18 pro 2009 15:55

Re: Windows 7 64bit problem

#20 Příspěvek od kumartin »


kumartin
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 18 pro 2009 15:55

Re: Windows 7 64bit problem

#21 Příspěvek od kumartin »

OTL logfile created on: 7.2.2010 13:03:21 - Run 2
OTL by OldTimer - Version 3.1.28.0 Folder = C:\Users\kucik\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 69,00% Memory free
8,00 Gb Paging File | 7,00 Gb Available in Paging File | 83,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 292,87 Gb Total Space | 50,51 Gb Free Space | 17,25% Space Free | Partition Type: NTFS
Drive D: | 172,79 Gb Total Space | 172,48 Gb Free Space | 99,82% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: KUCIK-PC
Current User Name: kucik
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Users\kucik\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Program Files (x86)\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH)
PRC - C:\Program Files (x86)\Opera\opera.exe (Opera Software)
PRC - C:\Windows\SysWOW64\rpcnet.exe (Absolute Software Corp.)
PRC - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
PRC - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
PRC - C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe ()
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe ()
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\Net4Switch\Net4Switch.exe (ASUS)
PRC - C:\Program Files\ATKGFNEX\GFNEXSrv.exe ()
PRC - C:\Program Files (x86)\ASUS\NB Probe\SPM\spmgr.exe ()
PRC - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Rocket Division Software)


========== Modules (SafeList) ==========

MOD - C:\Users\kucik\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\SysWOW64\comdlg32.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV:64bit: - (avast! Web Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV:64bit: - (avast! Mail Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV:64bit: - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV:64bit: - (WwanSvc) -- C:\Windows\SysNative\wwansvc.dll (Microsoft Corporation)
SRV:64bit: - (WbioSrvc) -- C:\Windows\SysNative\wbiosrvc.dll (Microsoft Corporation)
SRV:64bit: - (UmRdpService) -- C:\Windows\SysNative\umrdp.dll (Microsoft Corporation)
SRV:64bit: - (Power) -- C:\Windows\SysNative\umpo.dll (Microsoft Corporation)
SRV:64bit: - (Themes) -- C:\Windows\SysNative\themeservice.dll (Microsoft Corporation)
SRV:64bit: - (sppuinotify) -- C:\Windows\SysNative\sppuinotify.dll (Microsoft Corporation)
SRV:64bit: - (SensrSvc) -- C:\Windows\SysNative\sensrsvc.dll (Microsoft Corporation)
SRV:64bit: - (PeerDistSvc) -- C:\Windows\SysNative\PeerDistSvc.dll (Microsoft Corporation)
SRV:64bit: - (PNRPsvc) -- C:\Windows\SysNative\pnrpsvc.dll (Microsoft Corporation)
SRV:64bit: - (p2pimsvc) -- C:\Windows\SysNative\pnrpsvc.dll (Microsoft Corporation)
SRV:64bit: - (HomeGroupProvider) -- C:\Windows\SysNative\provsvc.dll (Microsoft Corporation)
SRV:64bit: - (RpcEptMapper) -- C:\Windows\SysNative\RpcEpMap.dll (Microsoft Corporation)
SRV:64bit: - (PNRPAutoReg) -- C:\Windows\SysNative\pnrpauto.dll (Microsoft Corporation)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (HomeGroupListener) -- C:\Windows\SysNative\ListSvc.dll (Microsoft Corporation)
SRV:64bit: - (FontCache) -- C:\Windows\SysNative\FntCache.dll (Microsoft Corporation)
SRV:64bit: - (Dhcp) -- C:\Windows\SysNative\dhcpcore.dll (Microsoft Corporation)
SRV:64bit: - (defragsvc) -- C:\Windows\SysNative\defragsvc.dll (Microsoft Corporation)
SRV:64bit: - (CscService) -- C:\Windows\SysNative\cscsvc.dll (Microsoft Corporation)
SRV:64bit: - (bthserv) -- C:\Windows\SysNative\bthserv.dll (Microsoft Corporation)
SRV:64bit: - (BDESVC) -- C:\Windows\SysNative\bdesvc.dll (Microsoft Corporation)
SRV:64bit: - (AxInstSV) -- C:\Windows\SysNative\AxInstSv.dll (Microsoft Corporation)
SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV:64bit: - (AppIDSvc) -- C:\Windows\SysNative\appidsvc.dll (Microsoft Corporation)
SRV:64bit: - (wbengine) -- C:\Windows\SysNative\wbengine.exe (Microsoft Corporation)
SRV:64bit: - (Pml Driver HPZ12) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (Net Driver HPZ12) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (sppsvc) -- C:\Windows\SysNative\sppsvc.exe (Microsoft Corporation)
SRV:64bit: - (Fax) -- C:\Windows\SysNative\FXSSVC.exe (Microsoft Corporation)
SRV:64bit: - (btwdins) -- C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (Broadcom Corporation.)
SRV:64bit: - (ATKGFNEXSrv) -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe ()
SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (TuneUp.Defrag) -- C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpDefragService.exe (TuneUp Software)
SRV - (TeamViewer5) -- C:\Program Files (x86)\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe (TuneUp Software)
SRV - (rpcnet) Remote Procedure Call (RPC) -- C:\Windows\SysWOW64\rpcnet.exe (Absolute Software Corp.)
SRV - (ServiceLayer) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (IAANTMON) Intel(R) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
SRV - (hpqcxs08) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll (Hewlett-Packard Co.)
SRV - (hpqddsvc) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll (Hewlett-Packard Co.)
SRV - (HPSLPSVC) -- C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL (Hewlett-Packard Co.)
SRV - (VSS) -- C:\Windows\Vss [2009.07.14 04:20:14 | 000,000,000 | ---D | M]
SRV - (MSDTC) Služba DTC (Distributed Transaction Coordinator) -- C:\Windows\SysWOW64\Msdtc [2009.07.14 04:20:14 | 000,000,000 | ---D | M]
SRV - (HomeGroupProvider) -- C:\Windows\SysWOW64\provsvc.dll (Microsoft Corporation)
SRV - (Dhcp) -- C:\Windows\SysWOW64\dhcpcore.dll (Microsoft Corporation)
SRV - (vds) -- C:\Windows\SysWOW64\wbem\vds.mof ()
SRV - (clr_optimization_v2.0.50727_64) -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (ASUSRDVDService) -- C:\Program Files (x86)\ASUS\AI Recovery\ServiceSimple2.exe ()
SRV - (ASLDRService) -- C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe ()
SRV - (spmgr) -- C:\Program Files (x86)\ASUS\NB Probe\SPM\spmgr.exe ()
SRV - (StarWindServiceAE) -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Rocket Division Software)
SRV - (Microsoft Office Groove Audit Service) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (aswTdi) -- C:\Windows\SysNative\drivers\aswTdi.sys (ALWIL Software)
DRV:64bit: - (aswSP) -- C:\Windows\SysNative\drivers\aswSP.sys (ALWIL Software)
DRV:64bit: - (aswRdr) -- C:\Windows\SysNative\drivers\aswRdr.sys (ALWIL Software)
DRV:64bit: - (aswMonFlt) -- C:\Windows\SysNative\drivers\aswMonFlt.sys (ALWIL Software)
DRV:64bit: - (aswFsBlk) -- C:\Windows\SysNative\drivers\aswFsBlk.sys (ALWIL Software)
DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
DRV:64bit: - (pcouffin) -- C:\Windows\SysNative\drivers\pcouffin.sys (VSO Software)
DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys ()
DRV:64bit: - (L1C) -- C:\Windows\SysNative\drivers\L1C62x64.sys (Atheros Communications, Inc.)
DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation)
DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
DRV:64bit: - (nmwcdnsux64) -- C:\Windows\SysNative\drivers\nmwcdnsux64.sys (Nokia)
DRV:64bit: - (nmwcdnsucx64) -- C:\Windows\SysNative\drivers\nmwcdnsucx64.sys (Nokia)
DRV:64bit: - (UsbserFilt) -- C:\Windows\SysNative\drivers\usbser_lowerfltx64j.sys (Nokia)
DRV:64bit: - (nmwcdcx64) -- C:\Windows\SysNative\drivers\ccdcmbox64.sys (Nokia)
DRV:64bit: - (upperdev) -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys (Nokia)
DRV:64bit: - (nmwcdx64) -- C:\Windows\SysNative\drivers\ccdcmbx64.sys (Nokia)
DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.)
DRV:64bit: - (TcUsb) -- C:\Windows\SysNative\drivers\tcusb.sys (UPEK Inc.)
DRV:64bit: - (kbfiltr) -- C:\Windows\SysNative\drivers\kbfiltr.sys ( )
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (KSecPkg) -- C:\Windows\SysNative\drivers\ksecpkg.sys (Microsoft Corporation)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (hwpolicy) -- C:\Windows\SysNative\drivers\hwpolicy.sys (Microsoft Corporation)
DRV:64bit: - (FsDepends) -- C:\Windows\SysNative\drivers\fsdepends.sys (Microsoft Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (WIMMount) -- C:\Windows\SysNative\drivers\wimmount.sys (Microsoft Corporation)
DRV:64bit: - (vhdmp) -- C:\Windows\SysNative\drivers\vhdmp.sys (Microsoft Corporation)
DRV:64bit: - (vmbus) -- C:\Windows\SysNative\drivers\vmbus.sys (Microsoft Corporation)
DRV:64bit: - (storflt) -- C:\Windows\SysNative\drivers\vmstorfl.sys (Microsoft Corporation)
DRV:64bit: - (vdrvroot) -- C:\Windows\SysNative\drivers\vdrvroot.sys (Microsoft Corporation)
DRV:64bit: - (storvsc) -- C:\Windows\SysNative\drivers\storvsc.sys (Microsoft Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (rdyboost) -- C:\Windows\SysNative\drivers\rdyboost.sys (Microsoft Corporation)
DRV:64bit: - (pcw) -- C:\Windows\SysNative\drivers\pcw.sys (Microsoft Corporation)
DRV:64bit: - (CNG) -- C:\Windows\SysNative\drivers\cng.sys (Microsoft Corporation)
DRV:64bit: - (fvevol) -- C:\Windows\SysNative\drivers\fvevol.sys (Microsoft Corporation)
DRV:64bit: - (rdpbus) -- C:\Windows\SysNative\drivers\rdpbus.sys (Microsoft Corporation)
DRV:64bit: - (RDPREFMP) -- C:\Windows\SysNative\drivers\RDPREFMP.sys (Microsoft Corporation)
DRV:64bit: - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\SysNative\drivers\agilevpn.sys (Microsoft Corporation)
DRV:64bit: - (WfpLwf) -- C:\Windows\SysNative\drivers\wfplwf.sys (Microsoft Corporation)
DRV:64bit: - (NdisCap) -- C:\Windows\SysNative\drivers\ndiscap.sys (Microsoft Corporation)
DRV:64bit: - (vwifimp) -- C:\Windows\SysNative\drivers\vwifimp.sys (Microsoft Corporation)
DRV:64bit: - (vwififlt) -- C:\Windows\SysNative\drivers\vwififlt.sys (Microsoft Corporation)
DRV:64bit: - (vwifibus) -- C:\Windows\SysNative\drivers\vwifibus.sys (Microsoft Corporation)
DRV:64bit: - (1394ohci) -- C:\Windows\SysNative\drivers\1394ohci.sys (Microsoft Corporation)
DRV:64bit: - (HdAudAddService) -- C:\Windows\SysNative\drivers\HdAudio.sys (Microsoft Corporation)
DRV:64bit: - (usbvideo) Zobrazovací zařízení USB (WDM) -- C:\Windows\SysNative\drivers\usbvideo.sys (Microsoft Corporation)
DRV:64bit: - (BthPan) Zařízení Bluetooth (síť PAN) -- C:\Windows\SysNative\drivers\bthpan.sys (Microsoft Corporation)
DRV:64bit: - (BTHPORT) -- C:\Windows\SysNative\drivers\bthport.sys (Microsoft Corporation)
DRV:64bit: - (RFCOMM) Zařízení Bluetooth (RFCOMM protokol TDI) -- C:\Windows\SysNative\drivers\rfcomm.sys (Microsoft Corporation)
DRV:64bit: - (BthEnum) -- C:\Windows\SysNative\drivers\bthenum.sys (Microsoft Corporation)
DRV:64bit: - (BTHUSB) -- C:\Windows\SysNative\drivers\BTHUSB.SYS (Microsoft Corporation)
DRV:64bit: - (UmPass) -- C:\Windows\SysNative\drivers\umpass.sys (Microsoft Corporation)
DRV:64bit: - (usbser) -- C:\Windows\SysNative\drivers\usbser.sys (Microsoft Corporation)
DRV:64bit: - (WinUsb) -- C:\Windows\SysNative\drivers\winusb.sys (Microsoft Corporation)
DRV:64bit: - (mshidkmdf) -- C:\Windows\SysNative\drivers\mshidkmdf.sys (Microsoft Corporation)
DRV:64bit: - (WudfPf) -- C:\Windows\SysNative\drivers\WUDFPf.sys (Microsoft Corporation)
DRV:64bit: - (MTConfig) -- C:\Windows\SysNative\drivers\MTConfig.sys (Microsoft Corporation)
DRV:64bit: - (CompositeBus) -- C:\Windows\SysNative\drivers\CompositeBus.sys (Microsoft Corporation)
DRV:64bit: - (Beep) -- C:\Windows\SysNative\drivers\beep.sys (Microsoft Corporation)
DRV:64bit: - (AppID) -- C:\Windows\SysNative\drivers\appid.sys (Microsoft Corporation)
DRV:64bit: - (scfilter) -- C:\Windows\SysNative\drivers\scfilter.sys (Microsoft Corporation)
DRV:64bit: - (s3cap) -- C:\Windows\SysNative\drivers\vms3cap.sys (Microsoft Corporation)
DRV:64bit: - (VMBusHID) -- C:\Windows\SysNative\drivers\VMBusHID.sys (Microsoft Corporation)
DRV:64bit: - (discache) -- C:\Windows\SysNative\drivers\discache.sys (Microsoft Corporation)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (HidBatt) -- C:\Windows\SysNative\drivers\hidbatt.sys (Microsoft Corporation)
DRV:64bit: - (CmBatt) -- C:\Windows\SysNative\drivers\CmBatt.sys (Microsoft Corporation)
DRV:64bit: - (AcpiPmi) -- C:\Windows\SysNative\drivers\acpipmi.sys (Microsoft Corporation)
DRV:64bit: - (CSC) -- C:\Windows\SysNative\drivers\csc.sys (Microsoft Corporation)
DRV:64bit: - (AmdPPM) -- C:\Windows\SysNative\drivers\amdppm.sys (Microsoft Corporation)
DRV:64bit: - (pavboot) -- C:\Windows\SysNative\drivers\pavboot64.sys (Panda Security, S.L.)
DRV:64bit: - (PSI) -- C:\Windows\SysNative\drivers\psi_mf.sys (Secunia)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (BtHidBus) -- C:\Windows\SysNative\drivers\BtHidBus.sys (IVT Corporation.)
DRV:64bit: - (btnetBUs) -- C:\Windows\SysNative\drivers\btnetBus.sys ()
DRV:64bit: - (pccsmcfd) -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys (Nokia)
DRV:64bit: - (btwaudio) -- C:\Windows\SysNative\drivers\btwaudio.sys (Broadcom Corporation.)
DRV:64bit: - (IvtBtBUs) -- C:\Windows\SysNative\drivers\IvtBtBus.sys (IVT Corporation.)
DRV:64bit: - (WimFltr) -- C:\Windows\SysNative\drivers\WimFltr.sys (Microsoft Corporation)
DRV:64bit: - (btwrchid) -- C:\Windows\SysNative\drivers\btwrchid.sys (Broadcom Corporation.)
DRV:64bit: - (btwavdt) -- C:\Windows\SysNative\drivers\btwavdt.sys (Broadcom Corporation.)
DRV:64bit: - (ManyCam) -- C:\Windows\SysNative\drivers\ManyCam_x64.sys (ManyCam LLC.)
DRV:64bit: - (rimmptsk) -- C:\Windows\SysNative\drivers\rimmpx64.sys (REDC)
DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics, Inc.)
DRV:64bit: - (ENTECH64) -- C:\Windows\SysNative\drivers\Entech64.sys (EnTech Taiwan)
DRV:64bit: - (rismxdp) -- C:\Windows\SysNative\drivers\rixdpx64.sys (REDC)
DRV:64bit: - (rimsptsk) -- C:\Windows\SysNative\drivers\rimspx64.sys (REDC)
DRV:64bit: - (ASMMAP64) -- C:\Program Files\ATKGFNEX\ASMMAP64.sys ()
DRV:64bit: - (Btcsrusb) -- C:\Windows\SysNative\drivers\btcusb.sys (IVT Corporation.)
DRV:64bit: - (BT) -- C:\Windows\SysNative\drivers\btnetdrv.sys (IVT Corporation.)
DRV:64bit: - (BTHidMgr) -- C:\Windows\SysNative\drivers\BTHidMgr.sys (IVT Corporation.)
DRV:64bit: - (BTHidEnum) -- C:\Windows\SysNative\drivers\VBTEnum.sys (IVT Corporation.)
DRV:64bit: - (VcommMgr) -- C:\Windows\SysNative\drivers\VCommMgr.sys (IVT Corporation.)
DRV:64bit: - (VComm) -- C:\Windows\SysNative\drivers\VComm.sys (IVT Corporation.)
DRV:64bit: - (WCPU) -- C:\Program Files\P4G\WCPU.sys (Windows (R) Codename Longhorn DDK provider)
DRV:64bit: - (MTsensor) -- C:\Windows\SysNative\drivers\ATK64AMD.sys ()
DRV:64bit: - (PRODIGY) -- C:\Windows\SysNative\drivers\prodigy.sys (B-phreaks)
DRV - (DrvAgent64) -- C:\Windows\SysWOW64\drivers\DrvAgent64.SYS (Phoenix Technologies)
DRV - (TVICHW64) -- C:\Windows\SysWOW64\drivers\TVICHW64.SYS (EnTech Taiwan)
DRV - (CSC) -- C:\Windows\CSC [2009.11.10 01:58:26 | 000,000,000 | ---D | M]
DRV - (TuneUpUtilitiesDrv) -- C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesDriver64.sys (TuneUp Software)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
DRV - (WinUsb) -- C:\Windows\SysWOW64\winusb.dll (Microsoft Corporation)
DRV - (NetBIOS) -- C:\Windows\SysWOW64\netbios.dll (Microsoft Corporation)
DRV - (mpsdrv) -- C:\Windows\SysWOW64\wbem\mpsdrv.mof ()
DRV - (Tcpip) -- C:\Windows\SysWOW64\wbem\tcpip.mof ()
DRV - (ISODrive) -- C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys (EZB Systems, Inc.)
DRV - (ghaio) -- C:\Program Files (x86)\ASUS\NB Probe\SPM\ghaio.sys ()
DRV - (ENTECH64) -- C:\Windows\SysWOW64\drivers\Entech64.sys (EnTech Taiwan)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.Google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.Google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.Google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.Google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.Google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.Google.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>

FF - HKLM\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2009.11.14 12:45:28 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2009.12.20 12:09:33 | 000,000,736 | R--- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Pomocník pro přihlášení ke službě Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (GdfrDUEn Class) - {A3CF7606-E683-4375-A372-96B75DA0AEF7} - C:\Program Files (x86)\Stylish Profile\enlbrdr.dll (TODO: <Company name>)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
O4 - HKLM..\Run: [ACMON] C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ATK)
O4 - HKLM..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe (ASUS)
O4 - HKLM..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (ALWIL Software)
O4 - HKLM..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysNative\wshbth.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysWOW64\wshbth.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O15:64bit: - ..Trusted Domains: 57 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus.com/common/asusTek_sys_ctrl.cab (asusTek_sysctrl Class)
O16 - DPF: {2EDF75C0-5ABD-49f9-BAB6-220476A32034} http://intel-drv-cdn.systemrequirements ... b_srlx.cab (System Requirements Lab Class)
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} http://cdn.scan.onecare.live.com/resour ... cctrl2.cab (Windows Live OneCare safety scanner control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} http://acs.pandasoftware.com/activescan ... stubie.cab (ActiveScan 2.0 Installer Class)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O18:64bit: - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{b2f8898e-de83-11de-9fc2-90e6ba6feccd}\Shell - "" = AutoRun
O33 - MountPoints2\{d6c9caf7-e7f8-11de-863b-90e6ba6feccd}\Shell - "" = AutoRun
O34 - HKLM BootExecute: (autocheck autochk /r \??\C:) - File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
64bit: O35 - comfile [open] -- "%1" %* File not found
64bit: O35 - exefile [open] -- "%1" %* File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010.02.07 12:49:46 | 000,000,000 | ---D | C] -- C:\_OTL
[2010.02.07 12:49:17 | 000,549,376 | ---- | C] (OldTimer Tools) -- C:\Users\kucik\Desktop\OTL.exe
[2010.02.06 19:50:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera
[2010.02.06 14:19:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Stylish Profile
[2010.02.05 15:48:58 | 000,000,000 | ---D | C] -- C:\Windows\rundll16.exe
[2010.02.05 15:48:58 | 000,000,000 | ---D | C] -- C:\Windows\logo1_.exe
[2010.02.05 14:28:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Wireless Console 2
[2010.02.04 23:29:32 | 000,000,000 | ---D | C] -- C:\Users\kucik\Documents\Driver Genius
[2010.02.04 23:10:23 | 003,550,592 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Users\kucik\Documents\procexp.exe
[2010.02.04 22:37:54 | 000,315,552 | ---- | C] (Thesycon GmbH) -- C:\Users\kucik\Documents\dpclat.exe
[2010.02.04 22:22:50 | 000,033,800 | ---- | C] (Panda Security, S.L.) -- C:\Windows\SysNative\drivers\pavboot64.sys
[2010.02.04 22:22:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Panda Security
[2010.02.03 21:52:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel
[2010.02.03 15:28:10 | 000,000,000 | ---D | C] -- C:\Users\kucik\Desktop\brothers
[2010.02.03 15:24:10 | 000,021,712 | ---- | C] (Phoenix Technologies) -- C:\Windows\SysWow64\drivers\DrvAgent64.SYS
[2010.02.03 15:09:58 | 000,000,000 | ---D | C] -- C:\Users\kucik\AppData\Roaming\Intel
[2010.02.03 15:08:28 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2010.02.03 14:58:18 | 000,000,000 | ---D | C] -- C:\Users\kucik\AppData\Local\RadarSync
[2010.01.31 19:22:20 | 000,000,000 | ---D | C] -- C:\Users\kucik\AppData\Local\Criterion Games
[2010.01.30 12:57:54 | 000,000,000 | ---D | C] -- C:\Users\kucik\AppData\Roaming\Ubisoft
[2010.01.30 12:44:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ubisoft
[2010.01.30 11:57:19 | 000,000,000 | ---D | C] -- C:\ProgramData\FileCure
[2010.01.29 16:08:48 | 000,000,000 | R--D | C] -- C:\Users\kucik\Desktop\mar
[2010.01.27 16:59:41 | 002,870,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010.01.27 16:59:41 | 002,614,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2010.01.27 16:59:41 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2010.01.24 21:41:27 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2010.01.24 21:41:27 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2010.01.24 21:41:13 | 000,513,536 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2010.01.24 21:41:13 | 000,211,376 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2010.01.24 21:41:13 | 000,193,536 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2010.01.24 21:41:13 | 000,150,528 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2010.01.24 21:41:11 | 000,611,360 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2010.01.24 21:41:10 | 000,149,536 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2010.01.24 21:41:09 | 000,417,824 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2010.01.24 21:41:08 | 000,304,640 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2010.01.24 21:41:08 | 000,304,640 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2010.01.24 21:41:08 | 000,065,568 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInst64.dll
[2010.01.24 21:41:05 | 000,311,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2010.01.24 21:41:04 | 000,176,640 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\FMAPO64.dll
[2010.01.24 21:41:03 | 000,166,400 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll
[2010.01.24 21:41:03 | 000,067,072 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll
[2010.01.24 21:36:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2010.01.24 21:36:42 | 000,838,176 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll
[2010.01.24 21:10:53 | 001,216,032 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2010.01.24 21:10:52 | 001,542,688 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll
[2010.01.22 14:04:57 | 001,192,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wininet.dll
[2010.01.22 14:04:56 | 000,977,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wininet.dll
[2010.01.22 14:04:56 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iedkcs32.dll
[2010.01.22 14:04:56 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iedkcs32.dll
[2010.01.22 14:04:56 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedsbs.dll
[2010.01.22 14:04:56 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedsbs.dll
[2010.01.22 13:50:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AML Products
[2010.01.18 17:44:06 | 000,000,000 | ---D | C] -- C:\Users\kucik\.borland
[2010.01.18 17:42:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Borland Shared
[2010.01.18 17:42:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Borland
[2010.01.17 22:03:58 | 000,000,000 | ---D | C] -- C:\Users\kucik\AppData\Roaming\TweakNow PowerPack 2009
[2010.01.17 22:03:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TweakNow PowerPack 2009
[2010.01.17 13:12:16 | 000,000,000 | ---D | C] -- C:\Users\kucik\Documents\verka telefon
[2010.01.16 17:45:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PCSuite
[2010.01.16 17:19:34 | 000,032,377 | ---- | C] (B-phreaks) -- C:\Windows\SysNative\drivers\prodigy.sys
[2010.01.16 17:19:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NSS
[2010.01.15 13:51:56 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\Windows\SysWow64\avastSS.scr
[2010.01.15 13:43:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Alwil Software
[2010.01.15 13:41:58 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2010.01.15 13:41:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2010.01.14 18:24:08 | 000,000,000 | ---D | C] -- C:\TRANSLAT
[2010.01.14 18:24:00 | 000,000,000 | ---D | C] -- C:\ProgramData\LangSoft
[2010.01.14 18:24:00 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\kucik
[2010.01.14 18:22:42 | 000,000,000 | ---D | C] -- C:\Users\kucik\AppData\Roaming\LangSoft
[2010.01.14 18:19:04 | 000,000,000 | ---D | C] -- C:\Users\kucik\Documents\PC translator
[2010.01.14 13:25:11 | 000,000,000 | ---D | C] -- C:\Program Files\Zaparit
[2010.01.14 11:38:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\r2 Studios
[2010.01.13 17:53:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live Safety Center
[2010.01.13 15:40:12 | 000,148,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\t2embed.dll
[2010.01.13 15:40:12 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2010.01.13 15:40:12 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2010.01.13 15:40:12 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2010.01.11 20:37:36 | 000,000,000 | ---D | C] -- C:\Windows\$regcmp$
[2010.01.09 14:05:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Nokia
[2010.01.08 19:52:31 | 000,000,000 | R--D | C] -- C:\Users\kucik\Desktop\Gamesky
[2010.01.08 19:32:27 | 000,000,000 | ---D | C] -- C:\Program Files\Ubisoft
[2010.01.08 19:10:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
[2009.12.27 12:50:50 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\kucik\AppData\Roaming\pcouffin.sys
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010.02.07 13:05:04 | 004,194,304 | ---- | M] () -- C:\Users\kucik\ntuser.dat
[2010.02.07 12:59:19 | 000,014,192 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.02.07 12:59:19 | 000,014,192 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.02.07 12:52:15 | 000,045,056 | ---- | M] () -- C:\Windows\SysNative\acovcnt.exe
[2010.02.07 12:52:08 | 000,017,408 | ---- | M] () -- C:\Windows\SysNative\rpcnetp.exe
[2010.02.07 12:52:05 | 000,056,680 | ---- | M] (Absolute Software Corp.) -- C:\Windows\SysWow64\rpcnet.dll
[2010.02.07 12:52:01 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.02.07 12:51:50 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.02.07 12:51:48 | 3220,525,056 | -HS- | M] () -- C:\hiberfil.sys
[2010.02.07 12:50:49 | 002,869,915 | -H-- | M] () -- C:\Users\kucik\AppData\Local\IconCache.db
[2010.02.07 12:49:17 | 000,549,376 | ---- | M] (OldTimer Tools) -- C:\Users\kucik\Desktop\OTL.exe
[2010.02.06 23:16:05 | 724,594,044 | ---- | M] () -- C:\Users\kucik\Desktop\Marinak.2005.DVDRip.by.Lamin.avi
[2010.02.06 23:14:00 | 000,000,962 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3254672160-2363453587-4071648339-1000UA.job
[2010.02.06 19:51:36 | 000,000,943 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk
[2010.02.06 19:14:01 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3254672160-2363453587-4071648339-1000Core.job
[2010.02.06 17:58:44 | 001,454,258 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010.02.06 17:58:44 | 000,625,914 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2010.02.06 17:58:44 | 000,610,094 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010.02.06 17:58:44 | 000,120,000 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2010.02.06 17:58:44 | 000,104,412 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010.02.06 14:56:19 | 734,015,488 | ---- | M] () -- C:\Users\kucik\Desktop\Simpsonovi_-_Prilis_drsny_pro_TV_(1998).avi
[2010.02.05 15:57:36 | 002,362,580 | ---- | M] () -- C:\Users\kucik\Documents\pinfect.zip
[2010.02.05 15:45:42 | 000,000,054 | ---- | M] () -- C:\Windows\Lic.xxx
[2010.02.05 15:33:10 | 000,017,408 | ---- | M] () -- C:\Windows\SysWow64\rpcnetp.dll
[2010.02.05 15:32:41 | 000,017,408 | ---- | M] () -- C:\Windows\SysWow64\rpcnetp.exe
[2010.02.05 15:11:17 | 018,976,458 | ---- | M] () -- C:\Windows\REGBK01.ZIP
[2010.02.04 22:37:54 | 000,315,552 | ---- | M] (Thesycon GmbH) -- C:\Users\kucik\Documents\dpclat.exe
[2010.02.04 19:16:45 | 000,062,094 | -H-- | M] () -- C:\treeinfo.wc
[2010.02.04 19:01:28 | 000,000,000 | ---- | M] () -- C:\Users\kucik\AppData\Roaming\AVSMediaPlayer.m3u
[2010.02.03 19:49:43 | 000,001,391 | ---- | M] () -- C:\Users\kucik\Documents\Centrum řešení HP.lnk
[2010.02.03 15:24:10 | 000,021,712 | ---- | M] (Phoenix Technologies) -- C:\Windows\SysWow64\drivers\DrvAgent64.SYS
[2010.02.03 15:11:07 | 000,000,243 | ---- | M] () -- C:\WirelessDiagLog.csv
[2010.02.01 12:53:28 | 000,001,041 | ---- | M] () -- C:\Users\kucik\AppData\Roaming\vso_ts_preview.xml
[2010.01.30 22:48:35 | 903,833,713 | ---- | M] () -- C:\Users\kucik\Desktop\30 dní dlouhá noc.avi
[2010.01.29 19:58:02 | 000,006,144 | ---- | M] () -- C:\Users\kucik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.01.29 18:52:14 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2010.01.28 23:09:26 | 000,152,672 | ---- | M] (ALWIL Software) -- C:\Windows\SysWow64\aswBoot.exe
[2010.01.28 22:57:59 | 000,051,280 | ---- | M] (ALWIL Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2010.01.28 22:57:40 | 000,120,912 | ---- | M] (ALWIL Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2010.01.28 22:54:45 | 000,028,752 | ---- | M] (ALWIL Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2010.01.28 22:54:30 | 000,063,568 | ---- | M] (ALWIL Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2010.01.28 22:54:07 | 000,022,096 | ---- | M] (ALWIL Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2010.01.24 21:11:40 | 000,524,288 | -HS- | M] () -- C:\Users\kucik\ntuser.dat{a1ff744d-0921-11df-b7e1-90e6ba6feccd}.TMContainer00000000000000000002.regtrans-ms
[2010.01.24 21:11:40 | 000,524,288 | -HS- | M] () -- C:\Users\kucik\ntuser.dat{a1ff744d-0921-11df-b7e1-90e6ba6feccd}.TMContainer00000000000000000001.regtrans-ms
[2010.01.24 21:11:40 | 000,065,536 | -HS- | M] () -- C:\Users\kucik\ntuser.dat{a1ff744d-0921-11df-b7e1-90e6ba6feccd}.TM.blf
[2010.01.24 21:10:16 | 000,000,159 | RH-- | M] () -- C:\Windows\ctfile.rfc
[2010.01.23 16:09:13 | 000,002,097 | ---- | M] () -- C:\Users\kucik\Documents\HijackThis.lnk
[2010.01.22 18:47:15 | 000,002,255 | ---- | M] () -- C:\Users\kucik\Desktop\Google Chrome.lnk
[2010.01.22 13:59:45 | 000,109,136 | ---- | M] () -- C:\Users\kucik\AppData\Local\GDIPFONTCACHEV1.DAT
[2010.01.22 13:59:10 | 000,416,920 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010.01.22 13:50:40 | 000,001,120 | ---- | M] () -- C:\Users\kucik\Documents\AML Free Registry Cleaner.lnk
[2010.01.19 12:57:59 | 000,038,848 | ---- | M] (ALWIL Software) -- C:\Windows\SysWow64\avastSS.scr
[2010.01.18 17:44:03 | 000,000,958 | ---- | M] () -- C:\Users\kucik\Desktop\Delphi 7.lnk
[2010.01.18 17:39:35 | 048,543,708 | ---- | M] () -- C:\Users\kucik\Documents\Delphi7_Personal.rar
[2010.01.17 22:04:02 | 000,001,121 | ---- | M] () -- C:\Users\kucik\Documents\TweakNow PowerPack 2009.lnk
[2010.01.16 17:45:18 | 000,002,038 | ---- | M] () -- C:\Users\Public\Desktop\Nokia PC Suite.lnk
[2010.01.16 17:19:35 | 000,001,021 | ---- | M] () -- C:\Users\kucik\Documents\NSS.lnk
[2010.01.14 18:30:14 | 000,000,034 | ---- | M] () -- C:\Windows\WTRDCTM.INI
[2010.01.14 18:24:58 | 000,000,599 | ---- | M] () -- C:\Users\kucik\Documents\Slovník.lnk
[2010.01.14 18:24:58 | 000,000,599 | ---- | M] () -- C:\Users\kucik\Desktop\PC Translator 2010.lnk
[2010.01.14 18:24:58 | 000,000,599 | ---- | M] () -- C:\Users\kucik\Documents\DicMan.lnk
[2010.01.14 13:25:11 | 000,001,653 | ---- | M] () -- C:\Users\kucik\Documents\Zaparit.lnk
[2010.01.14 11:44:00 | 000,001,910 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
[2010.01.11 21:53:06 | 000,524,288 | -HS- | M] () -- C:\Users\kucik\ntuser.dat{c74e80d4-fec0-11de-9934-90e6ba6feccd}.TMContainer00000000000000000002.regtrans-ms
[2010.01.11 21:53:06 | 000,524,288 | -HS- | M] () -- C:\Users\kucik\ntuser.dat{c74e80d4-fec0-11de-9934-90e6ba6feccd}.TMContainer00000000000000000001.regtrans-ms
[2010.01.11 21:53:06 | 000,065,536 | -HS- | M] () -- C:\Users\kucik\ntuser.dat{c74e80d4-fec0-11de-9934-90e6ba6feccd}.TM.blf
[2010.01.11 08:44:17 | 000,445,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iedkcs32.dll
[2010.01.11 08:12:38 | 000,381,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iedkcs32.dll
[2010.01.10 17:47:04 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_ccdcmbx64_01007.Wdf
[2010.01.10 12:45:53 | 000,524,288 | -HS- | M] () -- C:\Users\kucik\ntuser.dat{7eb63e0d-fd13-11de-99af-90e6ba6feccd}.TMContainer00000000000000000002.regtrans-ms
[2010.01.10 12:45:53 | 000,524,288 | -HS- | M] () -- C:\Users\kucik\ntuser.dat{7eb63e0d-fd13-11de-99af-90e6ba6feccd}.TMContainer00000000000000000001.regtrans-ms
[2010.01.10 12:45:53 | 000,065,536 | -HS- | M] () -- C:\Users\kucik\ntuser.dat{7eb63e0d-fd13-11de-99af-90e6ba6feccd}.TM.blf
[2010.01.09 19:38:07 | 000,001,001 | ---- | M] () -- C:\Users\kucik\Documents\Tunatic.lnk
[2010.01.09 16:55:57 | 000,183,112 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010.01.09 13:53:28 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
[2010.01.08 21:20:32 | 002,250,024 | ---- | M] () -- C:\Windows\SysWow64\pbsvc.exe
[2010.01.08 21:20:32 | 000,066,872 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010.02.06 22:59:12 | 724,594,044 | ---- | C] () -- C:\Users\kucik\Desktop\Marinak.2005.DVDRip.by.Lamin.avi
[2010.02.06 19:40:42 | 000,000,943 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk
[2010.02.06 14:39:03 | 734,015,488 | ---- | C] () -- C:\Users\kucik\Desktop\Simpsonovi_-_Prilis_drsny_pro_TV_(1998).avi
[2010.02.05 15:09:30 | 018,976,458 | ---- | C] () -- C:\Windows\REGBK01.ZIP
[2010.02.03 19:49:43 | 000,001,391 | ---- | C] () -- C:\Users\kucik\Documents\Centrum řešení HP.lnk
[2010.02.03 15:11:07 | 000,000,243 | ---- | C] () -- C:\WirelessDiagLog.csv
[2010.01.30 13:57:35 | 903,833,713 | ---- | C] () -- C:\Users\kucik\Desktop\30 dní dlouhá noc.avi
[2010.01.24 21:41:10 | 000,332,320 | ---- | C] () -- C:\Windows\SysNative\RtlCPAPI64.dll
[2010.01.24 21:41:08 | 001,163,296 | ---- | C] () -- C:\Windows\SysNative\RTCOM64.dll
[2010.01.24 21:02:03 | 000,524,288 | -HS- | C] () -- C:\Users\kucik\ntuser.dat{a1ff744d-0921-11df-b7e1-90e6ba6feccd}.TMContainer00000000000000000002.regtrans-ms
[2010.01.24 21:02:03 | 000,524,288 | -HS- | C] () -- C:\Users\kucik\ntuser.dat{a1ff744d-0921-11df-b7e1-90e6ba6feccd}.TMContainer00000000000000000001.regtrans-ms
[2010.01.24 21:02:03 | 000,065,536 | -HS- | C] () -- C:\Users\kucik\ntuser.dat{a1ff744d-0921-11df-b7e1-90e6ba6feccd}.TM.blf
[2010.01.23 16:09:13 | 000,002,097 | ---- | C] () -- C:\Users\kucik\Documents\HijackThis.lnk
[2010.01.22 13:50:40 | 000,001,120 | ---- | C] () -- C:\Users\kucik\Documents\AML Free Registry Cleaner.lnk
[2010.01.18 17:44:03 | 000,000,958 | ---- | C] () -- C:\Users\kucik\Desktop\Delphi 7.lnk
[2010.01.18 17:38:34 | 048,543,708 | ---- | C] () -- C:\Users\kucik\Documents\Delphi7_Personal.rar
[2010.01.17 22:04:02 | 000,001,121 | ---- | C] () -- C:\Users\kucik\Documents\TweakNow PowerPack 2009.lnk
[2010.01.16 17:45:18 | 000,002,038 | ---- | C] () -- C:\Users\Public\Desktop\Nokia PC Suite.lnk
[2010.01.16 17:19:35 | 000,001,021 | ---- | C] () -- C:\Users\kucik\Documents\NSS.lnk
[2010.01.14 18:30:14 | 000,000,034 | ---- | C] () -- C:\Windows\WTRDCTM.INI
[2010.01.14 18:24:58 | 000,000,599 | ---- | C] () -- C:\Users\kucik\Documents\Slovník.lnk
[2010.01.14 18:24:58 | 000,000,599 | ---- | C] () -- C:\Users\kucik\Desktop\PC Translator 2010.lnk
[2010.01.14 18:24:58 | 000,000,599 | ---- | C] () -- C:\Users\kucik\Documents\DicMan.lnk
[2010.01.14 13:25:11 | 000,001,653 | ---- | C] () -- C:\Users\kucik\Documents\Zaparit.lnk
[2010.01.14 11:44:00 | 000,001,910 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
[2010.01.11 20:44:40 | 000,524,288 | -HS- | C] () -- C:\Users\kucik\ntuser.dat{c74e80d4-fec0-11de-9934-90e6ba6feccd}.TMContainer00000000000000000002.regtrans-ms
[2010.01.11 20:44:40 | 000,524,288 | -HS- | C] () -- C:\Users\kucik\ntuser.dat{c74e80d4-fec0-11de-9934-90e6ba6feccd}.TMContainer00000000000000000001.regtrans-ms
[2010.01.11 20:44:40 | 000,065,536 | -HS- | C] () -- C:\Users\kucik\ntuser.dat{c74e80d4-fec0-11de-9934-90e6ba6feccd}.TM.blf
[2010.01.10 17:47:04 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_ccdcmbx64_01007.Wdf
[2010.01.10 10:54:35 | 000,524,288 | -HS- | C] () -- C:\Users\kucik\ntuser.dat{7eb63e0d-fd13-11de-99af-90e6ba6feccd}.TMContainer00000000000000000002.regtrans-ms
[2010.01.10 10:54:34 | 000,524,288 | -HS- | C] () -- C:\Users\kucik\ntuser.dat{7eb63e0d-fd13-11de-99af-90e6ba6feccd}.TMContainer00000000000000000001.regtrans-ms
[2010.01.10 10:54:34 | 000,065,536 | -HS- | C] () -- C:\Users\kucik\ntuser.dat{7eb63e0d-fd13-11de-99af-90e6ba6feccd}.TM.blf
[2010.01.09 13:53:28 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
[2010.01.08 21:20:32 | 002,250,024 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2009.12.27 12:52:08 | 000,001,041 | ---- | C] () -- C:\Users\kucik\AppData\Roaming\vso_ts_preview.xml
[2009.12.27 12:51:51 | 000,000,034 | ---- | C] () -- C:\Users\kucik\AppData\Roaming\pcouffin.log
[2009.12.27 12:50:50 | 000,099,384 | ---- | C] () -- C:\Users\kucik\AppData\Roaming\inst.exe
[2009.12.27 12:50:50 | 000,007,859 | ---- | C] () -- C:\Users\kucik\AppData\Roaming\pcouffin.cat
[2009.12.27 12:50:50 | 000,001,167 | ---- | C] () -- C:\Users\kucik\AppData\Roaming\pcouffin.inf
[2009.12.20 11:36:41 | 000,146,432 | ---- | C] () -- C:\Windows\SysWow64\APOMngr.DLL
[2009.12.20 11:36:41 | 000,072,704 | ---- | C] () -- C:\Windows\SysWow64\CmdRtr.DLL
[2009.12.05 15:41:36 | 001,471,654 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2009.12.01 19:20:45 | 000,006,144 | ---- | C] () -- C:\Users\kucik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.11.26 16:59:38 | 000,027,648 | ---- | C] () -- C:\Windows\SysWow64\AVSredirect.dll
[2009.11.17 22:24:43 | 000,007,597 | ---- | C] () -- C:\Users\kucik\AppData\Local\Resmon.ResmonCfg
[2009.11.14 12:38:26 | 000,000,813 | ---- | C] () -- C:\ProgramData\hpzinstall.log
[2009.11.14 11:52:48 | 000,003,972 | ---- | C] () -- C:\Windows\SysWow64\drivers\PciBus.sys
[2009.11.12 17:32:47 | 000,178,176 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2009.11.10 12:15:47 | 000,000,000 | ---- | C] () -- C:\Users\kucik\AppData\Roaming\AVSMediaPlayer.m3u
[2009.11.10 01:58:32 | 000,017,408 | ---- | C] () -- C:\Windows\SysWow64\rpcnetp.dll
[2009.11.10 00:02:27 | 000,000,024 | ---- | C] () -- C:\Windows\ATKPF.ini
[2009.11.09 20:09:52 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\LogonStart.dll
[2009.11.06 10:58:04 | 000,178,975 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2008.11.07 18:08:20 | 000,362,029 | ---- | C] () -- C:\Windows\SysWow64\sqlite3.dll
[2008.05.26 21:33:08 | 003,607,040 | ---- | C] () -- C:\Windows\SysWow64\libavcodec.dll
[2008.05.26 21:33:08 | 000,741,376 | ---- | C] () -- C:\Windows\SysWow64\audxlib.dll
[2008.05.26 21:33:08 | 000,711,168 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2008.05.26 21:33:08 | 000,692,224 | ---- | C] () -- C:\Windows\SysWow64\ff_x264.dll
[2008.05.26 21:33:08 | 000,455,680 | ---- | C] () -- C:\Windows\SysWow64\libmplayer.dll
[2008.05.26 21:33:08 | 000,245,760 | ---- | C] () -- C:\Windows\SysWow64\ff_libfaad2.dll
[2008.05.26 21:33:08 | 000,204,800 | ---- | C] () -- C:\Windows\SysWow64\TomsMoComp_ff.dll
[2008.05.26 21:33:08 | 000,204,800 | ---- | C] () -- C:\Windows\SysWow64\ff_kernelDeint.dll
[2008.05.26 21:33:08 | 000,155,648 | ---- | C] () -- C:\Windows\SysWow64\ff_libdts.dll
[2008.05.26 21:33:08 | 000,143,360 | ---- | C] () -- C:\Windows\SysWow64\ff_theora.dll
[2008.05.26 21:33:08 | 000,122,880 | ---- | C] () -- C:\Windows\SysWow64\ff_samplerate.dll
[2008.05.26 21:33:08 | 000,118,784 | ---- | C] () -- C:\Windows\SysWow64\ff_libmad.dll
[2008.05.26 21:33:08 | 000,114,688 | ---- | C] () -- C:\Windows\SysWow64\libmpeg2_ff.dll
[2008.05.26 21:33:08 | 000,097,280 | ---- | C] () -- C:\Windows\SysWow64\ff_realaac.dll
[2008.05.26 21:33:08 | 000,081,408 | ---- | C] () -- C:\Windows\SysWow64\ff_tremor.dll
[2008.05.26 21:33:08 | 000,041,984 | ---- | C] () -- C:\Windows\SysWow64\ff_liba52.dll
[2008.05.26 21:33:08 | 000,038,400 | ---- | C] () -- C:\Windows\SysWow64\ff_unrar.dll
[2008.05.26 21:33:08 | 000,023,552 | ---- | C] () -- C:\Windows\SysWow64\ff_wmv9.dll
[2008.05.26 21:33:08 | 000,007,680 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2008.03.29 16:42:22 | 000,245,248 | ---- | C] () -- C:\Windows\SysWow64\dxr.dll
[2008.03.29 16:42:20 | 000,159,744 | ---- | C] () -- C:\Windows\SysWow64\mmfinfo.dll
[2008.03.29 16:42:14 | 000,102,400 | ---- | C] () -- C:\Windows\SysWow64\avss.dll
[2008.03.29 16:42:08 | 000,148,992 | ---- | C] () -- C:\Windows\SysWow64\mkx.dll
[2008.03.29 16:42:04 | 000,141,312 | ---- | C] () -- C:\Windows\SysWow64\mp4.dll
[2008.03.29 16:42:04 | 000,108,032 | ---- | C] () -- C:\Windows\SysWow64\avi.dll
[2008.03.29 16:42:02 | 000,120,832 | ---- | C] () -- C:\Windows\SysWow64\ogm.dll
[2008.03.29 16:42:00 | 000,163,840 | ---- | C] () -- C:\Windows\SysWow64\ts.dll
[2008.03.29 16:41:54 | 000,097,280 | ---- | C] () -- C:\Windows\SysWow64\avs.dll
[2008.03.29 16:41:52 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\mkzlib.dll
[2008.03.29 16:41:52 | 000,023,552 | ---- | C] () -- C:\Windows\SysWow64\mkunicode.dll
[2008.03.21 21:30:08 | 003,596,288 | ---- | C] () -- C:\Windows\SysWow64\qt-dx331.dll
[2008.03.21 21:28:54 | 000,000,416 | ---- | C] () -- C:\Windows\SysWow64\dtu100.dll.manifest
[2008.03.21 21:28:54 | 000,000,416 | ---- | C] () -- C:\Windows\SysWow64\dpl100.dll.manifest
[2007.10.13 10:30:20 | 000,000,137 | ---- | C] () -- C:\Windows\SysWow64\Registration.ini
[2007.06.28 19:54:10 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2005.05.29 02:45:43 | 000,647,168 | ---- | C] () -- C:\Windows\SysWow64\pqdvdb.dll
< End of report >

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Windows 7 64bit problem

#22 Příspěvek od motji »

:arrow: Ještě znovu spustte OTL, vpravo nahoře je tlačítko Clean up, uklidí po sobě :)

Pokud nejsou problémy, je to vše :) .
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

kumartin
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 18 pro 2009 15:55

Re: Windows 7 64bit problem

#23 Příspěvek od kumartin »

Uvidim, zatim se to chova dobre...uvidim casem.Jinak dekuji za pomoc, Vsem ucastnikum... :)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Windows 7 64bit problem

#24 Příspěvek od motji »

I za kolegu není zač :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět