1) ComboFix 10-03-03.02 - Marek 06.01.2003 3:14.6.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.1279.924 [GMT 1:00]
Spuštěný z: c:\documents and settings\Marek\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Marek\Plocha\CFScript.txt.txt
AV: avast! antivirus 4.8.1368 [VPS 100202-1] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
file zipped: c:\documents and settings\jUMpe´R\Nabídka Start\Programy\Po spuštění\etmin.exe
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\jUMpe´R\Nabídka Start\Programy\Po spuštění\etmin.exe
c:\documents and settings\Marek\Data aplikací\PnkBstrK.sys
Nakažená kopie c:\windows\system32\msgsvc.dll byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\ERDNT\cache\msgsvc.dll
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_VTANY
-------\Legacy_XHUNTER1
-------\Service_vtany
-------\Service_xhunter1
((((((((((((((((((((((((( Soubory vytvořené od 2002-12-06 do 2003-01-06 )))))))))))))))))))))))))))))))
.
2010-01-26 17:01 . 2010-01-26 17:01 -------- d-----w- c:\program files\Ventrilo
2010-01-16 02:46 . 2010-01-16 02:46 -------- d-----w- c:\program files\The Creative Assembly
2010-01-03 07:18 . 2002-12-31 23:32 -------- d-----w- c:\program files\GameSpy Arcade
2010-01-03 06:57 . 2010-01-03 06:57 -------- d-----w- c:\program files\Elaborate Bytes
2009-12-21 09:36 . 2009-02-04 13:17 90112 ----a-r- c:\windows\system32\CNC550O.dll
2009-12-21 09:36 . 2009-03-19 13:38 303104 ----a-w- c:\windows\system32\CNC550L.dll
2009-12-21 09:36 . 2009-03-13 08:31 1310720 ----a-w- c:\windows\system32\CNC550C.dll
2009-12-21 09:36 . 2009-03-13 08:31 110592 ----a-w- c:\windows\system32\CNC550I.dll
2009-12-21 09:36 . 2009-03-13 08:27 106496 ----a-w- c:\windows\system32\CNC550U.dll
2009-12-21 09:36 . 2008-08-25 17:02 15872 ----a-w- c:\windows\system32\CNHMCA.dll
2009-12-21 09:36 . 2004-08-03 21:58 15104 -c--a-w- c:\windows\system32\dllcache\usbscan.sys
2009-12-21 09:36 . 2004-08-03 21:58 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2009-12-21 09:32 . 2004-08-03 22:01 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2009-12-21 09:32 . 2004-08-03 22:01 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2009-11-26 10:02 . 2009-11-26 10:03 -------- d-----w- c:\program files\TuneUp Utilities 2010
2009-11-17 10:22 . 2009-11-17 10:22 -------- d-----w- c:\program files\animations
2009-11-17 10:22 . 2009-11-17 10:22 -------- d-----w- c:\program files\stick figures
2009-10-02 10:37 . 2009-10-02 10:37 -------- d-----w- c:\documents and settings\LocalService\Plocha
2009-09-27 12:52 . 2010-01-03 07:00 -------- d-----w- c:\program files\Activision
2009-09-27 12:47 . 2009-09-27 12:47 -------- d-sh--w- c:\windows\ftpcache
2009-09-26 09:25 . 2009-09-26 09:25 -------- d-----w- c:\program files\Microsoft Silverlight
2009-09-04 16:22 . 2009-09-04 16:22 -------- d-----w- c:\program files\Sierra Entertainment
2009-08-24 05:24 . 2009-08-24 05:24 -------- d-----w- c:\program files\DoubleD
2009-08-21 10:24 . 2009-08-21 10:24 -------- d-----w- c:\windows\65F1CF6331E0450B96F34A88BE7361A6.TMP
2009-08-17 11:09 . 2004-08-17 13:49 21504 -c--a-w- c:\windows\system32\dllcache\hidserv.dll
2009-08-17 11:09 . 2004-08-17 13:49 21504 ----a-w- c:\windows\system32\hidserv.dll
2009-08-17 11:09 . 2004-08-17 13:45 14848 -c--a-w- c:\windows\system32\dllcache\kbdhid.sys
2009-08-17 11:09 . 2004-08-17 13:45 14848 ----a-w- c:\windows\system32\drivers\kbdhid.sys
2009-07-30 22:16 . 2009-10-05 08:54 -------- d-----w- C:\Download
2009-07-19 23:53 . 2002-12-31 23:24 -------- d-----w- c:\program files\Zoner
2009-07-11 12:18 . 2010-01-21 07:52 -------- d-----w- c:\program files\VDOWNLOADER
2009-07-11 12:15 . 2001-08-18 04:36 8704 -c--a-w- c:\windows\system32\dllcache\kbdjpn.dll
2009-07-11 12:15 . 2001-08-18 04:36 8704 ----a-w- c:\windows\system32\kbdjpn.dll
2009-07-11 12:15 . 2001-08-18 04:36 8192 -c--a-w- c:\windows\system32\dllcache\kbdkor.dll
2009-07-11 12:15 . 2001-08-18 04:36 8192 ----a-w- c:\windows\system32\kbdkor.dll
2009-07-11 12:15 . 2001-08-17 20:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd106.dll
2009-07-11 12:15 . 2001-08-17 20:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101c.dll
2009-07-11 12:15 . 2001-08-17 20:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101b.dll
2009-07-11 12:15 . 2001-08-17 20:55 6144 ----a-w- c:\windows\system32\kbd106.dll
2009-07-11 12:15 . 2001-08-17 20:55 6144 ----a-w- c:\windows\system32\kbd101c.dll
2009-07-11 12:15 . 2001-08-17 20:55 6144 ----a-w- c:\windows\system32\kbd101b.dll
2009-07-11 12:15 . 2001-08-17 20:55 5632 -c--a-w- c:\windows\system32\dllcache\kbd103.dll
2009-07-11 12:15 . 2001-08-17 20:55 5632 ----a-w- c:\windows\system32\kbd103.dll
2009-07-08 12:04 . 2009-12-24 14:21 -------- d-----w- c:\program files\MediaManager
2009-07-02 13:44 . 2009-07-02 13:44 -------- d-----w- c:\windows\system32\AGEIA
2009-07-02 13:31 . 2008-07-31 08:41 68616 ----a-w- c:\windows\system32\XAPOFX1_1.dll
2009-07-02 13:31 . 2008-07-31 08:40 509448 ----a-w- c:\windows\system32\XAudio2_2.dll
2009-07-02 13:31 . 2008-07-31 08:41 238088 ----a-w- c:\windows\system32\xactengine3_2.dll
2009-07-02 13:31 . 2008-07-12 06:18 467984 ----a-w- c:\windows\system32\d3dx10_39.dll
2009-07-02 13:31 . 2008-07-12 06:18 1493528 ----a-w- c:\windows\system32\D3DCompiler_39.dll
2009-07-02 13:31 . 2008-07-12 06:18 3851784 ----a-w- c:\windows\system32\D3DX9_39.dll
2009-05-22 23:08 . 2009-05-22 23:08 29696 ----a-w- c:\windows\system32\drivers\VClone.sys
2009-04-29 17:02 . 2009-04-29 17:02 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-04-29 17:02 . 2009-05-03 08:56 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2009-04-29 17:02 . 2009-05-03 08:56 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2009-04-29 17:02 . 2009-04-29 17:02 -------- d-----w- c:\program files\OpenAL
2009-04-09 08:39 . 2009-04-09 08:39 -------- d-----w- c:\program files\Alcohol Soft
2009-03-21 01:46 . 2009-03-21 01:46 -------- d-----w- c:\program files\own3d
2009-03-20 18:16 . 1998-11-18 15:33 144384 ----a-w- c:\windows\system32\Iacenc.dll
2009-03-20 18:16 . 1997-06-13 07:56 56832 ----a-w- c:\windows\system32\Iyvu9_32.dll
2009-03-20 18:16 . 2009-03-20 18:16 -------- d-----w- c:\program files\Intel
2009-03-20 18:13 . 2009-03-20 18:13 -------- d-----w- c:\windows\system32\windows media
2009-03-20 18:13 . 2009-03-20 18:13 -------- d--h--w- c:\windows\msdownld.tmp
2009-03-08 00:32 . 2009-03-08 00:32 -------- d-----w- c:\program files\Apple Software Update
2009-03-08 00:27 . 2000-12-19 08:36 414272 ----a-w- c:\windows\system32\DivXc32f.dll
2009-03-08 00:27 . 2000-12-19 08:36 414272 ----a-w- c:\windows\system32\DivXc32.dll
2009-03-08 00:27 . 2003-07-16 18:09 626688 ----a-w- c:\windows\system32\xvid.dll
2009-03-08 00:27 . 2009-03-08 00:29 -------- d-----w- c:\program files\MPEG4 Direct Maker
2009-02-21 10:35 . 2007-04-27 09:43 120200 ----a-w- c:\windows\system32\DLLDEV32i.dll
2009-02-21 08:57 . 2002-09-20 23:33 1089536 ----a-w- c:\windows\system32\ROBOEX32.DLL
2009-02-21 08:57 . 1999-01-28 13:44 49152 ----a-w- c:\windows\system32\INETWH32.dll
2009-02-21 08:57 . 1998-10-15 16:28 85504 ----a-w- c:\windows\system32\HtmlWH.dll
2009-02-21 08:57 . 2009-03-08 17:54 -------- d-----w- c:\windows\system32\MAGIX
2009-02-21 08:57 . 2008-04-15 15:14 700416 ----a-w- c:\windows\system32\mgxoschk.dll
2009-02-03 09:55 . 2009-04-04 10:15 -------- d-----w- c:\program files\Kopie - Wolfenstein - Enemy Territory
2009-02-01 23:41 . 2009-02-21 09:57 -------- d-----w- c:\program files\Sony
2009-02-01 23:21 . 2009-02-01 23:21 -------- d-----w- c:\program files\MSBuild
2009-02-01 23:17 . 2009-02-01 23:17 -------- d-----w- c:\windows\system32\XPSViewer
2009-02-01 23:16 . 2009-02-01 23:16 -------- d-----w- c:\program files\Reference Assemblies
2009-02-01 23:16 . 2006-10-14 15:43 27648 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll
2009-02-01 23:16 . 2006-06-29 12:07 14048 ------w- c:\windows\system32\spmsg2.dll
2009-02-01 22:08 . 2009-08-20 20:39 -------- d-----w- c:\program files\Ulead Systems
2009-02-01 22:08 . 2009-03-21 15:23 -------- d-----w- c:\program files\Common Files\Ulead Systems
2009-01-30 01:37 . 2009-01-30 01:37 -------- d-----w- c:\program files\DebugMode
2009-01-25 21:42 . 2009-12-21 16:37 -------- d-----w- c:\program files\ICQ6.5
2009-01-25 16:33 . 2010-01-15 17:49 -------- d-----w- c:\documents and settings\iveta
2009-01-16 16:24 . 2009-01-16 16:24 70936 ----a-w- c:\windows\system32\PhysXLoader.dll
2009-01-15 22:05 . 2009-01-15 22:05 -------- d-----w- C:\found.000
2008-12-31 22:48 . 2008-12-31 22:48 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2008-12-31 21:47 . 2008-12-31 21:47 45 ---h--w- c:\windows\dsez1009.dat
2008-12-21 21:00 . 2003-01-03 04:19 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2008-12-19 15:39 . 2008-12-19 15:39 81920 ----a-w- c:\windows\system32\frapsvid.dll
2008-12-04 07:28 . 2008-12-04 07:28 24344 ----a-w- c:\windows\system32\PhysXDevice.dll
2008-11-26 06:55 . 2008-11-26 06:55 288024 ----a-w- c:\windows\system32\PhysXCplUI.exe
2008-11-25 06:38 . 2008-11-25 06:38 288024 ----a-w- c:\windows\system32\PhysXCompatCplUI.exe
2008-11-19 20:21 . 2008-11-19 20:22 -------- d-----w- c:\windows\system32\NtmsData
2008-11-15 13:24 . 2003-01-01 01:58 138328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2008-11-15 13:24 . 2009-09-30 09:48 75064 ----a-w- c:\windows\system32\PnkBstrA.exe
2008-11-15 13:24 . 2003-01-01 01:58 214816 ----a-w- c:\windows\system32\PnkBstrB.exe
2008-11-15 12:48 . 2008-11-15 17:38 674600 ----a-w- c:\windows\system32\pbsvc.exe
2008-11-15 10:09 . 2008-07-10 13:56 107864 ----a-w- c:\windows\system32\tsccvid.dll
2008-10-22 14:16 . 2008-10-22 14:16 -------- d-----w- c:\program files\Common Files\InterVideo
2008-10-22 14:14 . 2008-10-22 14:14 -------- d-----w- c:\program files\Windows Media Components
2008-10-22 12:54 . 2009-02-02 10:58 -------- d-----w- c:\program files\Sony Setup
2008-10-22 10:40 . 2008-10-22 10:43 -------- d-----w- c:\program files\Common Files\Nero
2008-10-22 10:40 . 2008-10-22 10:40 -------- d-----w- c:\program files\Nero
2008-10-21 12:41 . 2008-10-21 12:41 -------- d-----w- c:\documents and settings\All Users\Data aplikac
2008-10-21 12:23 . 2008-10-21 12:23 -------- d-----w- c:\program files\SmartSound Software
2008-10-21 12:22 . 2004-07-02 14:28 89088 ----a-w- c:\windows\system32\atl71.dll
2008-10-21 12:22 . 2004-07-02 14:28 84992 ----a-w- c:\windows\system32\ATL70.DLL
2008-10-21 12:18 . 2005-02-09 10:59 14165 ----a-w- c:\windows\system32\drivers\Pclepci.sys
2008-10-13 17:08 . 2008-10-13 17:08 -------- d-----w- c:\windows\SxsCaPendDel
2008-10-13 17:07 . 2003-05-21 22:50 344064 ----a-w- c:\windows\system32\msvcr70.dll
2008-10-13 17:07 . 2003-03-26 04:58 487424 ----a-w- c:\windows\system32\MSVCP70.DLL
2008-10-13 17:07 . 2002-01-05 13:48 974848 ----a-w- c:\windows\system32\mfc70.dll
2008-10-13 17:07 . 2003-05-22 11:26 638976 ----a-w- c:\windows\system32\divx.dll
2008-10-13 17:07 . 2003-05-21 22:50 24576 ----a-w- c:\windows\system32\msxml3a.dll
2008-10-13 17:07 . 2003-05-21 22:50 261632 ----a-w- c:\windows\system32\mcdvd_32.dll
2008-10-13 17:07 . 2002-08-19 23:41 413760 ----a-w- c:\windows\system32\mpg4c32.dll
2008-10-13 17:07 . 2008-10-13 11:01 -------- d-----w- c:\program files\Common Files\AVSMedia
2008-10-13 13:43 . 2008-10-13 13:43 -------- d-----w- c:\documents and settings\Marek\.gimp-2.4
2008-10-12 13:32 . 2008-10-12 13:32 -------- d-s---w- c:\documents and settings\Marek\UserData
2008-10-07 07:13 . 2008-10-07 07:13 197912 ----a-w- c:\windows\system32\physxcudart_20.dll
2008-10-07 07:13 . 2008-10-07 07:13 58648 ----a-w- c:\windows\system32\AgCPanelTraditionalChinese.dll
2008-10-07 07:13 . 2008-10-07 07:13 58648 ----a-w- c:\windows\system32\AgCPanelSwedish.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-10-25 01:34 . 2001-10-25 14:00 76516 ----a-w- c:\windows\system32\perfc005.dat
2009-10-25 01:34 . 2001-10-25 14:00 424082 ----a-w- c:\windows\system32\perfh005.dat
2009-08-06 18:24 . 2008-07-31 19:40 327896 ----a-w- c:\windows\system32\wucltui.dll
2009-08-06 18:24 . 2008-07-31 19:40 209632 ----a-w- c:\windows\system32\wuweb.dll
2009-08-06 18:24 . 2008-07-31 19:40 35552 ----a-w- c:\windows\system32\wups.dll
2009-08-06 18:24 . 2007-07-30 17:19 44768 ----a-w- c:\windows\system32\wups2.dll
2009-08-06 18:24 . 2008-07-31 18:14 53472 ------w- c:\windows\system32\wuauclt.exe
2009-08-06 18:24 . 2002-09-20 18:03 96480 ----a-w- c:\windows\system32\cdm.dll
2009-08-06 18:23 . 2008-07-31 19:40 575704 ----a-w- c:\windows\system32\wuapi.dll
2009-08-06 18:23 . 2008-07-31 18:14 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2009-08-06 18:23 . 2003-01-02 07:39 215920 ----a-w- c:\windows\system32\muweb.dll
2009-08-06 18:23 . 2003-01-02 07:39 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-02-21 08:58 . 2009-02-21 08:58 -------- d-----w- c:\program files\Common Files\MAGIX Shared
2008-08-10 14:05 . 2008-08-10 14:05 -------- d-----w- c:\program files\Common Files\LogiShared
2008-08-10 14:05 . 2008-08-10 14:05 127034 ------r- c:\windows\bwUnin-8.1.1.50-8876480SL.exe
2008-08-10 14:05 . 2008-08-10 13:55 -------- d-----w- c:\program files\Logitech
2008-08-10 14:04 . 2008-08-10 14:04 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2008-08-10 13:56 . 2008-08-10 13:56 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-08-10 13:00 . 2008-08-10 13:00 2678 ----a-w- c:\windows\java\Packages\Data\5ZL7LRZN.DAT
2008-08-10 13:00 . 2008-08-10 13:00 2678 ----a-w- c:\windows\java\Packages\Data\KZBXJX3H.DAT
2008-08-10 13:00 . 2008-08-10 13:00 2678 ----a-w- c:\windows\java\Packages\Data\2CQYAKX7.DAT
2008-08-10 13:00 . 2008-08-10 13:00 2678 ----a-w- c:\windows\java\Packages\Data\1NZL331J.DAT
2008-08-10 13:00 . 2008-08-10 13:00 2678 ----a-w- c:\windows\java\Packages\Data\37TNRZFD.DAT
2008-07-31 19:43 . 2008-07-31 18:17 86327 ----a-w- c:\windows\PCHealth\HelpCtr\OfflineCache\index.dat
2008-07-31 19:43 . 2008-07-31 18:17 2724 ----a-w- c:\windows\PCHealth\HelpCtr\PackageStore\SkuStore.bin
2008-07-31 19:40 . 2008-07-31 18:17 8972 ----a-w- c:\windows\PCHealth\HelpCtr\Config\Cntstore.bin
2008-07-31 18:42 . 2008-07-31 18:42 -------- d-----w- c:\program files\C-Media 3D Audio
2008-07-31 18:42 . 2008-07-31 18:36 4 ----a-w- c:\windows\system32\BSETUP.TMP
2008-07-31 18:18 . 2008-07-31 18:18 -------- d-----w- c:\program files\microsoft frontpage
2008-07-31 18:18 . 2008-07-31 18:18 558142 ----a-w- c:\windows\java\Packages\RP3313XR.ZIP
2008-07-31 18:18 . 2008-07-31 18:18 155995 ----a-w- c:\windows\java\Packages\QNXZTV9B.ZIP
2008-07-31 18:15 . 2008-07-31 18:15 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2008-07-07 20:32 . 2002-09-20 18:03 253952 ------w- c:\windows\system32\es.dll
2008-06-24 16:24 . 2002-09-20 18:04 74240 ----a-w- c:\windows\system32\mscms.dll
2008-06-24 14:06 . 2008-06-24 14:06 972072 ----a-w- c:\windows\UNNeroMediaHome.exe
2008-06-23 15:41 . 2002-09-20 18:05 660480 ------w- c:\windows\system32\wininet.dll
2008-06-20 17:42 . 2001-10-25 14:00 247296 ------w- c:\windows\system32\mswsock.dll
2008-06-20 10:45 . 2002-08-29 01:58 360320 ------w- c:\windows\system32\drivers\tcpip.sys
2008-06-20 10:44 . 2002-08-29 02:01 138368 ----a-w- c:\windows\system32\drivers\afd.sys
2008-06-20 09:52 . 2002-08-29 01:37 225920 ----a-w- c:\windows\system32\drivers\tcpip6.sys
2008-06-14 18:00 . 2008-07-31 19:40 272128 ------w- c:\windows\system32\drivers\bthport.sys
2008-06-08 07:37 . 2008-06-08 07:37 132904 ----a-w- c:\windows\system32\drivers\imagesrv.sys
2008-06-08 07:37 . 2008-06-08 07:37 11304 ----a-w- c:\windows\system32\drivers\imagedrv.sys
2008-06-06 12:54 . 2008-06-06 12:54 95600 ----a-w- c:\windows\system32\NeroCo.dll
2008-06-06 12:54 . 2008-06-06 12:54 972072 ----a-w- c:\windows\UNRecode.exe
2008-05-30 12:19 . 2008-07-31 19:31 507400 ----a-w- c:\windows\system32\XAudio2_1.dll
2008-05-30 12:18 . 2008-07-31 19:31 238088 ----a-w- c:\windows\system32\xactengine3_1.dll
2008-05-30 12:17 . 2008-07-31 19:31 65032 ----a-w- c:\windows\system32\XAPOFX1_0.dll
2008-05-30 12:17 . 2008-07-31 19:31 25608 ----a-w- c:\windows\system32\X3DAudio1_4.dll
2008-05-30 12:11 . 2008-07-31 19:31 467984 ----a-w- c:\windows\system32\d3dx10_38.dll
2008-05-30 12:11 . 2008-07-31 19:31 3850760 ----a-w- c:\windows\system32\D3DX9_38.dll
2008-05-30 12:11 . 2008-07-31 19:31 1491992 ----a-w- c:\windows\system32\D3DCompiler_38.dll
2008-05-30 12:01 . 2008-07-31 19:31 80896 ----a-w- c:\windows\system32\dxdllreg.exe
2008-05-29 08:28 . 2003-01-03 04:20 28416 ----a-w- c:\windows\system32\uxtuneup.dll
2008-05-08 12:28 . 2001-10-25 14:00 202752 ----a-w- c:\windows\system32\drivers\rmcast.sys
2008-05-07 05:16 . 2008-07-31 19:31 1290240 ----a-w- c:\windows\system32\quartz.dll
2008-04-28 13:53 . 2009-05-03 08:56 805400 ----a-r- c:\windows\system32\tmp6A.tmp
2008-04-28 13:53 . 2009-04-29 17:02 805400 ----a-r- c:\windows\system32\tmp2DA.tmp
2008-04-28 13:53 . 2009-04-29 17:02 805400 ----a-r- c:\windows\system32\tmp2D9.tmp
2008-04-11 18:51 . 2008-07-31 18:16 683520 ----a-w- c:\windows\system32\inetcomm.dll
2008-03-20 08:09 . 2002-09-20 17:41 1845248 ----a-w- c:\windows\system32\win32k.sys
2008-03-05 14:03 . 2008-07-31 19:31 479752 ----a-w- c:\windows\system32\XAudio2_0.dll
2008-03-05 14:03 . 2008-07-31 19:31 238088 ----a-w- c:\windows\system32\xactengine3_0.dll
2008-03-05 14:00 . 2008-07-31 19:31 25608 ----a-w- c:\windows\system32\X3DAudio1_3.dll
2008-03-05 13:56 . 2008-07-31 19:31 3786760 ----a-w- c:\windows\system32\D3DX9_37.dll
2008-03-05 13:56 . 2008-07-31 19:31 1420824 ----a-w- c:\windows\system32\D3DCompiler_37.dll
2008-02-20 06:51 . 2002-09-20 18:03 282624 ----a-w- c:\windows\system32\gdi32.dll
2008-02-20 05:38 . 2001-10-25 14:00 45568 ----a-w- c:\windows\system32\dnsrslvr.dll
2008-02-05 21:07 . 2008-07-31 19:31 462864 ----a-w- c:\windows\system32\d3dx10_37.dll
2007-12-18 14:43 . 2002-09-20 18:04 417792 ----a-w- c:\windows\system32\vbscript.dll
2007-12-18 09:51 . 2001-10-25 14:00 179584 ----a-w- c:\windows\system32\drivers\mrxdav.sys
2007-12-04 18:41 . 2002-09-20 18:04 550912 ----a-w- c:\windows\system32\oleaut32.dll
2007-11-13 10:25 . 2002-03-25 20:02 20480 ----a-w- c:\windows\system32\drivers\secdrv.sys.bak
2007-11-07 09:29 . 2002-09-20 18:04 720896 ----a-w- c:\windows\system32\lsasrv.dll
2007-10-25 07:28 . 2002-09-20 18:05 222720 ----a-w- c:\windows\system32\wmasf.dll
2007-10-22 01:39 . 2008-07-31 19:31 267272 ----a-w- c:\windows\system32\xactengine2_10.dll
2007-10-22 01:37 . 2008-07-31 19:31 17928 ----a-w- c:\windows\system32\X3DAudio1_2.dll
2007-10-12 13:14 . 2008-07-31 19:31 3734536 ----a-w- c:\windows\system32\d3dx9_36.dll
2007-10-12 13:14 . 2008-07-31 19:31 1374232 ----a-w- c:\windows\system32\D3DCompiler_36.dll
2007-10-02 07:56 . 2008-07-31 19:31 444776 ----a-w- c:\windows\system32\d3dx10_36.dll
2007-07-31 17:58 . 2009-02-21 08:58 618496 ----a-w- c:\windows\system32\DLLAV32.dll
2007-07-31 17:58 . 2009-02-21 08:58 98304 ----a-w- c:\windows\system32\DLLCPY32.dll
2007-07-31 17:58 . 2009-02-21 08:58 36864 ----a-w- c:\windows\system32\DLLPNT32.dll
2007-07-31 17:58 . 2009-02-21 08:58 53248 ----a-w- c:\windows\system32\DLLIO32.dll
2007-07-31 17:58 . 2009-02-21 08:58 167936 ----a-w- c:\windows\system32\DLLDEV32.dll
2007-07-31 17:58 . 2009-02-21 08:58 151552 ----a-w- c:\windows\system32\DLLDRV32.dll
2007-07-31 17:58 . 2009-02-21 08:58 32768 ----a-w- c:\windows\system32\STRING32.dll
2007-07-31 17:58 . 2009-02-21 08:58 192512 ----a-w- c:\windows\system32\DLLRES32.dll
2007-07-19 22:57 . 2008-07-31 19:31 267112 ----a-w- c:\windows\system32\xactengine2_9.dll
2007-07-19 16:14 . 2008-07-31 19:31 444776 ----a-w- c:\windows\system32\d3dx10_35.dll
2007-07-19 16:14 . 2008-07-31 19:31 1358192 ----a-w- c:\windows\system32\D3DCompiler_35.dll
2007-07-19 16:14 . 2008-07-31 19:31 3727720 ----a-w- c:\windows\system32\d3dx9_35.dll
2007-07-09 13:11 . 2002-09-20 18:04 584192 ----a-w- c:\windows\system32\rpcrt4.dll
2007-07-06 12:51 . 2002-09-20 18:04 95744 ----a-w- c:\windows\system32\mqsec.dll
2007-07-06 12:51 . 2002-09-20 18:04 489472 ----a-w- c:\windows\system32\mqutil.dll
2007-07-06 12:51 . 2002-09-20 18:04 660992 ----a-w- c:\windows\system32\mqqm.dll
2007-07-06 12:51 . 2002-09-20 18:04 177152 ----a-w- c:\windows\system32\mqrt.dll
2007-07-06 12:51 . 2002-09-20 18:04 16896 ----a-w- c:\windows\system32\mqise.dll
2007-07-06 12:51 . 2002-09-20 18:04 138240 ----a-w- c:\windows\system32\mqad.dll
2007-07-06 12:51 . 2001-10-25 14:00 48640 ----a-w- c:\windows\system32\mqupgrd.dll
.
((((((((((((((((((((((((((((( SnapShot@2003-01-01_19.36.40 )))))))))))))))))))))))))))))))))))))))))
.
+ 2003-01-06 02:25 . 2003-01-06 02:25 16384 c:\windows\Temp\Perflib_Perfdata_710.dat
+ 2003-01-05 23:04 . 2003-01-05 23:04 16384 c:\windows\Temp\Perflib_Perfdata_6fc.dat
+ 2003-01-01 23:58 . 2009-08-06 18:24 44768 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.4.7600.226\wups2.dll
+ 2003-01-01 23:58 . 2009-08-06 18:24 35552 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.4.7600.226\wups.dll
+ 2008-07-31 19:40 . 2009-08-06 18:24 35552 c:\windows\system32\dllcache\wups.dll
+ 2008-07-31 18:14 . 2009-08-06 18:24 53472 c:\windows\system32\dllcache\wuauclt.exe
+ 2002-09-20 18:03 . 2009-08-06 18:24 96480 c:\windows\system32\dllcache\cdm.dll
+ 2003-01-03 04:20 . 2003-01-03 04:20 355584 c:\windows\system32\TuneUpDefragService.exe
+ 2008-07-31 19:40 . 2009-08-06 18:24 209632 c:\windows\system32\dllcache\wuweb.dll
+ 2008-07-31 19:40 . 2009-08-06 18:24 327896 c:\windows\system32\dllcache\wucltui.dll
+ 2008-07-31 19:40 . 2009-08-06 18:23 575704 c:\windows\system32\dllcache\wuapi.dll
+ 2008-07-31 18:14 . 2009-08-06 18:23 1929952 c:\windows\system32\dllcache\wuaueng.dll
+ 2003-01-03 04:20 . 2003-01-03 04:20 1670144 c:\windows\Installer\4a1f79.msi
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" [2008-06-24 1840424]
"ICQ"="c:\program files\ICQ6.5\ICQ.exe" [2009-11-16 172792]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CM-SmWizard"="c:\windows\System\SmWizard.exe" [2003-08-29 1454080]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-03-09 7561216]
"nwiz"="nwiz.exe" [2006-03-09 1519616]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-03-09 86016]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-04-11 56080]
"Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-04-11 56080]
"NeroFilterCheck"="c:\program files\Common Files\Nero\Lib\NeroCheck.exe" [2008-06-19 570664]
"NBKeyScan"="c:\program files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-06-08 2221352]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2004-08-17 15360]
c:\documents and settings\jUMpeďR\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-8-10 692224]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{DAE0285D-0788-4E87-985E-01DF2EDE4ACD}"= "c:\windows\system32\Wshxt.dll" [2008-08-10 53248]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"UVS10 Preload"=c:\program files\Ulead Systems\Ulead VideoStudio 10\uvPL.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Wolfenstein - Enemy Territory\\ET.exe"=
"c:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\TmNationsForever\\TmForever.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\HLSW\\hlsw.exe"=
"c:\\WINDOWS\\system32\\dplaysvr.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\TrackMania Nations ESWC\\TmNationsESWC.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Kopie - Wolfenstein - Enemy Territory\\ET-movie.exe"=
"c:\\Program Files\\Sierra Entertainment\\World in Conflict\\wic.exe"=
"c:\\Program Files\\Sierra Entertainment\\World in Conflict\\wic_ds.exe"=
"c:\\Program Files\\QIP\\qip.exe"=
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [5.7.2006 13:46 63352]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [31.7.2008 21:15 114768]
R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [1.8.2008 17:13 141312]
R1 Winhpfile;Winhpfile;c:\bwlfjxju\HPFile.sys [10.8.2008 15:29 16601]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [31.7.2008 21:15 20560]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [30.10.2009 15:05 1021256]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [14.10.2009 7:24 10064]
S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files\MAGIX\Common\Database\bin\fbserver.exe --> c:\program files\MAGIX\Common\Database\bin\fbserver.exe [?]
S4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys --> c:\windows\system32\Drivers\sptd.sys [?]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2003-01-06 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2008\OneClickStarter.exe [2008-06-20 08:09]
2003-01-01 c:\windows\Tasks\SpeedyPC Program Check.job
- c:\program files\SpeedyPC\SpeedyPC.exe [2010-02-17 20:09]
2003-01-06 c:\windows\Tasks\SpeedyPC Startup.job
- c:\program files\SpeedyPC\SpeedyPC.exe [2010-02-17 20:09]
2003-01-01 c:\windows\Tasks\SpeedyPC.job
- c:\program files\SpeedyPC\SpeedyPC.exe [2010-02-17 20:09]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://eu.ask.com?o=14780&l=dis
uDefault_Search_URL = hxxp://search.qip.ru
uInternet Connection Wizard,ShellNext = iexplore
uSearchAssistant = hxxp://search.qip.ru/ie
uSearchURL,(Default) = hxxp://search.qip.ru/search?query=%s&from=IE
IE: Crawler Search - tbr:iemenu
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath -
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "
http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2003-01-06 03:26
Windows 5.1.2600 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
C:\PROTOKOL
C:\SKRYTY
C:\BWLFJXJU
sken byl úspešně dokončen
skryté soubory: 3
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'explorer.exe'(3220)
c:\program files\Logitech\SetPoint\GameHook.dll
c:\program files\Logitech\SetPoint\lgscroll.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\Common Files\InterVideo\DeviceService\DevSvc.exe
c:\program files\Nero\Nero8\Nero BackItUp\NBService.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\IoctlSvc.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\program files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
c:\program files\Common Files\Nero\Lib\NMIndexingService.exe
c:\program files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
.
**************************************************************************
.
Celkový čas: 2003-01-06 03:30:39 - počítač byl restartován
ComboFix-quarantined-files.txt 2003-01-06 02:30
ComboFix2.txt 2003-01-05 05:38
Před spuštěním: Volných bajtů: 50 401 333 248
Po spuštění: Volných bajtů: 50 365 468 672
- - End Of File - - BF843ADCBA509AFEB539CB79068AD881
2)
http://www.virustotal.com/cs/analisis/d ... 1267639741