Re: rez. štít AVG nalezl BackDoor.Generic12.AEIU-pomale PC
Napsal: 02 bře 2010 07:12
+ 2010-01-13 19:04 . 2009-05-26 16:10 391032 c:\windows\$NtUninstallKB955759$\spuninst\updspapi.dll
+ 2010-01-13 19:04 . 2009-05-26 11:40 233848 c:\windows\$NtUninstallKB955759$\spuninst\spuninst.exe
+ 2010-01-13 19:04 . 2008-04-14 03:21 451072 c:\windows\$NtUninstallKB955759$\aclayers.dll
+ 2010-01-22 16:05 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB978207-IE7\update\updspapi.dll
+ 2010-01-22 16:05 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB978207-IE7\update\update.exe
+ 2010-01-22 16:05 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB978207-IE7\spuninst.exe
+ 2010-01-05 09:48 . 2010-01-05 09:48 841216 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 233472 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\webcheck.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 105984 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\url.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 102912 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\occache.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 671232 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mstime.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 193024 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\msrating.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 477696 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtmled.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 459264 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\msfeeds.dll
+ 2009-12-18 07:00 . 2009-12-18 07:00 634632 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iexplore.exe
+ 2010-01-05 09:48 . 2010-01-05 09:48 268288 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iertutil.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 193024 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iepeers.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 388608 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iedkcs32.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 380928 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieapfltr.dll
+ 2009-12-18 06:58 . 2009-12-18 06:58 161792 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieakui.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 230400 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieaksie.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 153088 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieakeng.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 132608 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\extmgr.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 214528 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\dxtrans.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 347136 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\dxtmsft.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 124928 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\advpack.dll
+ 2009-12-09 17:05 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB976325-IE7\update\updspapi.dll
+ 2009-12-09 17:05 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB976325-IE7\update\update.exe
+ 2009-12-09 17:05 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB976325-IE7\spuninst.exe
+ 2009-10-29 07:37 . 2009-10-29 07:37 841216 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 233472 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\webcheck.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 105984 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\url.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 102912 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\occache.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 671232 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mstime.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 193024 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\msrating.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 477696 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtmled.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 459264 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\msfeeds.dll
+ 2009-10-28 06:54 . 2009-10-28 06:54 634632 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iexplore.exe
+ 2009-10-29 07:37 . 2009-10-29 07:37 268288 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iertutil.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 388608 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iedkcs32.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 380928 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieapfltr.dll
+ 2009-10-28 06:52 . 2009-10-28 06:52 161792 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieakui.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 230400 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieaksie.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 153088 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieakeng.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 132608 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\extmgr.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 214528 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\dxtrans.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 347136 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\dxtmsft.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 124928 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\advpack.dll
+ 2009-12-09 17:04 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB974392\update\updspapi.dll
+ 2009-12-09 17:04 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB974392\update\update.exe
+ 2009-12-09 17:04 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB974392\spuninst.exe
+ 2009-10-13 10:39 . 2009-10-13 10:39 271360 c:\windows\$hf_mig$\KB974392\SP3QFE\oakley.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB974318\update\updspapi.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB974318\update\update.exe
+ 2009-12-09 17:06 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB974318\spuninst.exe
+ 2009-10-12 13:33 . 2009-10-12 13:33 150528 c:\windows\$hf_mig$\KB974318\SP3QFE\rastls.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB973904\update\updspapi.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB973904\update\update.exe
+ 2009-12-09 17:06 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB973904\spuninst.exe
+ 2009-12-09 10:19 . 2009-07-29 14:00 119648 c:\windows\$hf_mig$\KB973904\SP3QFE\msconv97.dll
+ 2009-11-25 19:34 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB973687\update\updspapi.dll
+ 2009-11-25 19:34 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB973687\update\update.exe
+ 2009-11-25 19:34 . 2008-07-08 12:59 233848 c:\windows\$hf_mig$\KB973687\spuninst.exe
+ 2010-01-13 19:04 . 2008-07-08 12:59 391032 c:\windows\$hf_mig$\KB972270\update\updspapi.dll
+ 2010-01-13 19:04 . 2008-07-08 12:59 759160 c:\windows\$hf_mig$\KB972270\update\update.exe
+ 2010-01-13 19:04 . 2008-07-08 12:59 233848 c:\windows\$hf_mig$\KB972270\spuninst.exe
+ 2010-01-13 06:19 . 2009-10-15 16:40 119808 c:\windows\$hf_mig$\KB972270\SP3QFE\t2embed.dll
+ 2009-12-09 17:04 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB971737\update\updspapi.dll
+ 2009-12-09 17:04 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB971737\update\update.exe
+ 2009-12-09 17:04 . 2008-07-08 12:59 233848 c:\windows\$hf_mig$\KB971737\spuninst.exe
+ 2009-08-25 09:31 . 2009-08-25 09:31 354816 c:\windows\$hf_mig$\KB971737\SP3QFE\winhttp.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB970430\update\updspapi.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB970430\update\update.exe
+ 2009-12-09 17:06 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB970430\spuninst.exe
+ 2009-10-20 15:21 . 2009-10-20 15:21 265728 c:\windows\$hf_mig$\KB970430\SP3QFE\http.sys
+ 2009-11-11 07:40 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB969947\update\updspapi.dll
+ 2009-11-11 07:40 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB969947\update\update.exe
+ 2009-11-11 07:40 . 2008-07-08 12:59 233848 c:\windows\$hf_mig$\KB969947\spuninst.exe
+ 2010-01-13 19:04 . 2009-05-26 16:10 391032 c:\windows\$hf_mig$\KB955759\update\updspapi.dll
+ 2010-01-13 19:04 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB955759\update\update.exe
+ 2010-01-13 19:04 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB955759\spuninst.exe
+ 2010-01-13 06:19 . 2009-11-21 15:49 471552 c:\windows\$hf_mig$\KB955759\SP3QFE\aclayers.dll
+ 2006-03-02 12:00 . 2009-08-14 15:15 1850624 c:\windows\system32\win32k.sys
+ 2006-03-02 12:00 . 2010-01-05 09:58 1168384 c:\windows\system32\urlmon.dll
- 2006-03-02 12:00 . 2009-08-29 07:31 1168384 c:\windows\system32\urlmon.dll
+ 2006-03-02 12:00 . 2009-11-27 17:14 1294336 c:\windows\system32\quartz.dll
+ 2007-05-15 14:43 . 2009-07-31 09:05 1372672 c:\windows\system32\msxml6.dll
+ 2006-03-02 12:00 . 2009-07-31 04:35 1172480 c:\windows\system32\msxml3.dll
+ 2006-03-02 12:00 . 2010-01-05 09:58 3599360 c:\windows\system32\mshtml.dll
+ 2007-08-13 17:54 . 2010-01-05 09:58 6067200 c:\windows\system32\ieframe.dll
- 2007-08-13 17:54 . 2009-08-29 07:30 6067200 c:\windows\system32\ieframe.dll
+ 2008-10-16 06:02 . 2009-08-14 15:15 1850624 c:\windows\system32\dllcache\win32k.sys
- 2006-03-02 12:00 . 2009-08-29 07:31 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2006-03-02 12:00 . 2010-01-05 09:58 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2008-05-07 05:12 . 2009-11-27 17:14 1294336 c:\windows\system32\dllcache\quartz.dll
- 2008-10-16 06:02 . 2009-08-04 20:59 2191360 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2191360 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2025984 c:\windows\system32\dllcache\ntkrpamp.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2025984 c:\windows\system32\dllcache\ntkrpamp.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2068224 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2068224 c:\windows\system32\dllcache\ntkrnlpa.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2147328 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2147328 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2008-04-14 03:21 . 2009-07-31 09:05 1372672 c:\windows\system32\dllcache\msxml6.dll
+ 2008-11-13 06:34 . 2009-07-31 04:35 1172480 c:\windows\system32\dllcache\msxml3.dll
+ 2006-03-02 12:00 . 2010-01-05 09:58 3599360 c:\windows\system32\dllcache\mshtml.dll
+ 2007-10-10 23:50 . 2010-01-05 09:58 6067200 c:\windows\system32\dllcache\ieframe.dll
- 2007-10-10 23:50 . 2009-08-29 07:30 6067200 c:\windows\system32\dllcache\ieframe.dll
+ 2009-10-16 06:03 . 2009-10-16 06:03 5003776 c:\windows\Installer\46ab70.msp
+ 2009-08-18 11:58 . 2009-08-18 11:58 8301056 c:\windows\Installer\46ab5f.msp
+ 2009-08-18 11:57 . 2009-08-18 11:57 9122304 c:\windows\Installer\46ab4e.msp
+ 2009-04-04 16:10 . 2009-04-04 16:10 9926144 c:\windows\Installer\38881f.msp
+ 2009-04-04 16:09 . 2009-04-04 16:09 2364928 c:\windows\Installer\38880b.msp
+ 2009-12-03 13:15 . 2009-12-03 13:15 5004288 c:\windows\Installer\2c2644d.msp
+ 2010-01-14 20:26 . 2010-01-14 20:26 5027840 c:\windows\Installer\20ba576.msp
+ 2009-11-20 22:36 . 2009-11-20 22:36 5002752 c:\windows\Installer\1d8435b.msp
+ 2009-10-16 06:09 . 2009-10-16 06:09 2518016 c:\windows\Installer\1d8434a.msp
+ 2009-11-17 17:27 . 2009-11-17 17:27 4871680 c:\windows\Installer\1d8433a.msp
+ 2008-01-15 12:26 . 2010-02-10 15:55 1172240 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\xlicons.exe
- 2008-01-15 12:26 . 2009-10-16 18:08 1172240 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\xlicons.exe
+ 2009-03-06 03:26 . 2009-03-06 03:26 5291376 c:\windows\Installer\$PatchCache$\Managed\00002119210000000000000000F01FEC\12.0.6425\IPEDITOR.DLL
+ 2006-10-26 13:47 . 2006-10-26 13:47 1512304 c:\windows\Installer\$PatchCache$\Managed\00002119210000000000000000F01FEC\12.0.4518\NLSD0000.DLL
+ 2010-01-22 16:05 . 2009-10-29 07:45 1168384 c:\windows\ie7updates\KB978207-IE7\urlmon.dll
+ 2010-01-22 16:05 . 2009-10-29 07:45 3598336 c:\windows\ie7updates\KB978207-IE7\mshtml.dll
+ 2010-01-22 16:05 . 2009-10-29 07:45 6067200 c:\windows\ie7updates\KB978207-IE7\ieframe.dll
+ 2009-12-09 17:05 . 2009-08-29 07:31 1168384 c:\windows\ie7updates\KB976325-IE7\urlmon.dll
+ 2009-12-09 17:05 . 2009-10-21 04:08 3598336 c:\windows\ie7updates\KB976325-IE7\mshtml.dll
+ 2009-12-09 17:05 . 2009-08-29 07:30 6067200 c:\windows\ie7updates\KB976325-IE7\ieframe.dll
- 2008-10-16 06:02 . 2009-08-04 20:59 2191360 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2191360 c:\windows\Driver Cache\i386\ntoskrnl.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2025984 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2025984 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2068224 c:\windows\Driver Cache\i386\ntkrnlpa.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2068224 c:\windows\Driver Cache\i386\ntkrnlpa.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2147328 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2147328 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2009-11-25 19:34 . 2008-09-10 01:16 1307648 c:\windows\$NtUninstallKB973687$\msxml6.dll
+ 2009-11-25 19:34 . 2008-09-04 17:17 1106944 c:\windows\$NtUninstallKB973687$\msxml3.dll
+ 2009-11-11 07:40 . 2009-04-19 19:52 1847168 c:\windows\$NtUninstallKB969947$\win32k.sys
+ 2010-01-05 09:48 . 2010-01-05 09:48 1170944 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\urlmon.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 3602944 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 6071296 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieframe.dll
+ 2010-01-22 06:31 . 2009-06-29 08:33 2452872 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieapfltr.dat
+ 2009-10-29 07:37 . 2009-10-29 07:37 1170944 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\urlmon.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 3602432 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 6070784 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieframe.dll
+ 2009-12-09 10:20 . 2009-06-29 08:33 2452872 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieapfltr.dat
+ 2009-11-25 08:46 . 2009-07-31 04:30 1447424 c:\windows\$hf_mig$\KB973687\SP3QFE\msxml6.dll
+ 2009-11-25 08:46 . 2009-07-31 04:30 1172480 c:\windows\$hf_mig$\KB973687\SP3QFE\msxml3.dll
+ 2009-08-14 16:00 . 2009-08-14 16:00 1859712 c:\windows\$hf_mig$\KB969947\SP3QFE\win32k.sys
+ 2008-01-14 16:04 . 2010-02-01 19:26 30364104 c:\windows\system32\MRT.exe
+ 2009-04-04 16:09 . 2009-04-04 16:09 10874880 c:\windows\Installer\388815.msp
+ 2009-04-04 14:50 . 2009-04-04 14:50 20277760 c:\windows\Installer\388731.msp
+ 2009-04-04 14:49 . 2009-04-04 14:49 14030336 c:\windows\Installer\388724.msp
+ 2009-04-04 16:08 . 2009-04-04 16:08 343058432 c:\windows\Installer\388805.msp
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ABUNINSTALLEX"="c:\documents and settings\all users\data aplikací\ab studio\ABUnInstallEx.exe" [2007-07-03 263664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AudioDeck"="c:\program files\VIA\VIAudioi\SBADeck\ADeck.exe" [2006-11-02 528384]
"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-05-15 339968]
"Smapp"="c:\program files\Analog Devices\SoundMAX\SMTray.exe" [2003-05-05 143360]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-12-11 2043160]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 29696]
WinZip Quick Pick.lnk - c:\program files\WinZip\WZQKPICK.EXE [2008-9-16 106560]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-07-31 06:58 11952 ----a-w- c:\windows\system32\avgrsstx.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgam.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\drivers\avgrkx86.sys [27.2.2009 8:53 12552]
R0 viasraid;viasraid;c:\windows\system32\drivers\viasraid.sys [12.12.2003 16:49 77312]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [27.2.2009 8:53 335240]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [27.2.2009 8:53 108552]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [27.2.2009 8:52 297752]
S0 aepqc;aepqc; [x]
S3 AbSoftMgr4;AbSoftMgr4;c:\program files\Common Files\AB Studio Shared\AbSoftMgr4.exe [15.1.2008 13:49 450560]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
DPF: {640373B0-6978-4FA5-A9FC-420ECBBC61C7} - file://pracant/data%20(d)/PORSCHEolomouc/DPS/GEMO%20dilenska%20dokumentace,%20materialy/ocelovka/model%20aktualni%20SO02/PORSCHE_Olomouc_virtualni_model_SO%2002/dll/zkitlib.dll
DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} - hxxp://217.112.167.135:30080/activex/AMC.cab
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
AddRemove-The Bat! - c:\windows\tbat_del.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-02 06:56
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
AudioDeck = c:\program files\VIA\VIAudioi\SBADeck\ADeck.exe 1????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(676)
c:\windows\system32\Ati2evxx.dll
.
Celkový čas: 2010-03-02 06:59:54
ComboFix-quarantined-files.txt 2010-03-02 05:59
ComboFix2.txt 2009-11-06 15:24
Před spuštěním: Volných bajtů: 34 531 024 896
Po spuštění: Volných bajtů: 34 517 782 528
- - End Of File - - E0CE485A3583E7D5C87549370161FC34
+ 2010-01-13 19:04 . 2009-05-26 11:40 233848 c:\windows\$NtUninstallKB955759$\spuninst\spuninst.exe
+ 2010-01-13 19:04 . 2008-04-14 03:21 451072 c:\windows\$NtUninstallKB955759$\aclayers.dll
+ 2010-01-22 16:05 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB978207-IE7\update\updspapi.dll
+ 2010-01-22 16:05 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB978207-IE7\update\update.exe
+ 2010-01-22 16:05 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB978207-IE7\spuninst.exe
+ 2010-01-05 09:48 . 2010-01-05 09:48 841216 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 233472 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\webcheck.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 105984 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\url.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 102912 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\occache.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 671232 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mstime.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 193024 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\msrating.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 477696 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtmled.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 459264 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\msfeeds.dll
+ 2009-12-18 07:00 . 2009-12-18 07:00 634632 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iexplore.exe
+ 2010-01-05 09:48 . 2010-01-05 09:48 268288 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iertutil.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 193024 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iepeers.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 388608 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iedkcs32.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 380928 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieapfltr.dll
+ 2009-12-18 06:58 . 2009-12-18 06:58 161792 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieakui.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 230400 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieaksie.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 153088 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieakeng.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 132608 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\extmgr.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 214528 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\dxtrans.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 347136 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\dxtmsft.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 124928 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\advpack.dll
+ 2009-12-09 17:05 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB976325-IE7\update\updspapi.dll
+ 2009-12-09 17:05 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB976325-IE7\update\update.exe
+ 2009-12-09 17:05 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB976325-IE7\spuninst.exe
+ 2009-10-29 07:37 . 2009-10-29 07:37 841216 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 233472 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\webcheck.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 105984 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\url.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 102912 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\occache.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 671232 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mstime.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 193024 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\msrating.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 477696 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtmled.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 459264 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\msfeeds.dll
+ 2009-10-28 06:54 . 2009-10-28 06:54 634632 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iexplore.exe
+ 2009-10-29 07:37 . 2009-10-29 07:37 268288 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iertutil.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 388608 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iedkcs32.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 380928 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieapfltr.dll
+ 2009-10-28 06:52 . 2009-10-28 06:52 161792 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieakui.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 230400 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieaksie.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 153088 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieakeng.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 132608 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\extmgr.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 214528 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\dxtrans.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 347136 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\dxtmsft.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 124928 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\advpack.dll
+ 2009-12-09 17:04 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB974392\update\updspapi.dll
+ 2009-12-09 17:04 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB974392\update\update.exe
+ 2009-12-09 17:04 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB974392\spuninst.exe
+ 2009-10-13 10:39 . 2009-10-13 10:39 271360 c:\windows\$hf_mig$\KB974392\SP3QFE\oakley.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB974318\update\updspapi.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB974318\update\update.exe
+ 2009-12-09 17:06 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB974318\spuninst.exe
+ 2009-10-12 13:33 . 2009-10-12 13:33 150528 c:\windows\$hf_mig$\KB974318\SP3QFE\rastls.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB973904\update\updspapi.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB973904\update\update.exe
+ 2009-12-09 17:06 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB973904\spuninst.exe
+ 2009-12-09 10:19 . 2009-07-29 14:00 119648 c:\windows\$hf_mig$\KB973904\SP3QFE\msconv97.dll
+ 2009-11-25 19:34 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB973687\update\updspapi.dll
+ 2009-11-25 19:34 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB973687\update\update.exe
+ 2009-11-25 19:34 . 2008-07-08 12:59 233848 c:\windows\$hf_mig$\KB973687\spuninst.exe
+ 2010-01-13 19:04 . 2008-07-08 12:59 391032 c:\windows\$hf_mig$\KB972270\update\updspapi.dll
+ 2010-01-13 19:04 . 2008-07-08 12:59 759160 c:\windows\$hf_mig$\KB972270\update\update.exe
+ 2010-01-13 19:04 . 2008-07-08 12:59 233848 c:\windows\$hf_mig$\KB972270\spuninst.exe
+ 2010-01-13 06:19 . 2009-10-15 16:40 119808 c:\windows\$hf_mig$\KB972270\SP3QFE\t2embed.dll
+ 2009-12-09 17:04 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB971737\update\updspapi.dll
+ 2009-12-09 17:04 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB971737\update\update.exe
+ 2009-12-09 17:04 . 2008-07-08 12:59 233848 c:\windows\$hf_mig$\KB971737\spuninst.exe
+ 2009-08-25 09:31 . 2009-08-25 09:31 354816 c:\windows\$hf_mig$\KB971737\SP3QFE\winhttp.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB970430\update\updspapi.dll
+ 2009-12-09 17:06 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB970430\update\update.exe
+ 2009-12-09 17:06 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB970430\spuninst.exe
+ 2009-10-20 15:21 . 2009-10-20 15:21 265728 c:\windows\$hf_mig$\KB970430\SP3QFE\http.sys
+ 2009-11-11 07:40 . 2009-05-26 11:40 391032 c:\windows\$hf_mig$\KB969947\update\updspapi.dll
+ 2009-11-11 07:40 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB969947\update\update.exe
+ 2009-11-11 07:40 . 2008-07-08 12:59 233848 c:\windows\$hf_mig$\KB969947\spuninst.exe
+ 2010-01-13 19:04 . 2009-05-26 16:10 391032 c:\windows\$hf_mig$\KB955759\update\updspapi.dll
+ 2010-01-13 19:04 . 2009-05-26 11:40 759160 c:\windows\$hf_mig$\KB955759\update\update.exe
+ 2010-01-13 19:04 . 2009-05-26 11:40 233848 c:\windows\$hf_mig$\KB955759\spuninst.exe
+ 2010-01-13 06:19 . 2009-11-21 15:49 471552 c:\windows\$hf_mig$\KB955759\SP3QFE\aclayers.dll
+ 2006-03-02 12:00 . 2009-08-14 15:15 1850624 c:\windows\system32\win32k.sys
+ 2006-03-02 12:00 . 2010-01-05 09:58 1168384 c:\windows\system32\urlmon.dll
- 2006-03-02 12:00 . 2009-08-29 07:31 1168384 c:\windows\system32\urlmon.dll
+ 2006-03-02 12:00 . 2009-11-27 17:14 1294336 c:\windows\system32\quartz.dll
+ 2007-05-15 14:43 . 2009-07-31 09:05 1372672 c:\windows\system32\msxml6.dll
+ 2006-03-02 12:00 . 2009-07-31 04:35 1172480 c:\windows\system32\msxml3.dll
+ 2006-03-02 12:00 . 2010-01-05 09:58 3599360 c:\windows\system32\mshtml.dll
+ 2007-08-13 17:54 . 2010-01-05 09:58 6067200 c:\windows\system32\ieframe.dll
- 2007-08-13 17:54 . 2009-08-29 07:30 6067200 c:\windows\system32\ieframe.dll
+ 2008-10-16 06:02 . 2009-08-14 15:15 1850624 c:\windows\system32\dllcache\win32k.sys
- 2006-03-02 12:00 . 2009-08-29 07:31 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2006-03-02 12:00 . 2010-01-05 09:58 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2008-05-07 05:12 . 2009-11-27 17:14 1294336 c:\windows\system32\dllcache\quartz.dll
- 2008-10-16 06:02 . 2009-08-04 20:59 2191360 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2191360 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2025984 c:\windows\system32\dllcache\ntkrpamp.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2025984 c:\windows\system32\dllcache\ntkrpamp.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2068224 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2068224 c:\windows\system32\dllcache\ntkrnlpa.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2147328 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2147328 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2008-04-14 03:21 . 2009-07-31 09:05 1372672 c:\windows\system32\dllcache\msxml6.dll
+ 2008-11-13 06:34 . 2009-07-31 04:35 1172480 c:\windows\system32\dllcache\msxml3.dll
+ 2006-03-02 12:00 . 2010-01-05 09:58 3599360 c:\windows\system32\dllcache\mshtml.dll
+ 2007-10-10 23:50 . 2010-01-05 09:58 6067200 c:\windows\system32\dllcache\ieframe.dll
- 2007-10-10 23:50 . 2009-08-29 07:30 6067200 c:\windows\system32\dllcache\ieframe.dll
+ 2009-10-16 06:03 . 2009-10-16 06:03 5003776 c:\windows\Installer\46ab70.msp
+ 2009-08-18 11:58 . 2009-08-18 11:58 8301056 c:\windows\Installer\46ab5f.msp
+ 2009-08-18 11:57 . 2009-08-18 11:57 9122304 c:\windows\Installer\46ab4e.msp
+ 2009-04-04 16:10 . 2009-04-04 16:10 9926144 c:\windows\Installer\38881f.msp
+ 2009-04-04 16:09 . 2009-04-04 16:09 2364928 c:\windows\Installer\38880b.msp
+ 2009-12-03 13:15 . 2009-12-03 13:15 5004288 c:\windows\Installer\2c2644d.msp
+ 2010-01-14 20:26 . 2010-01-14 20:26 5027840 c:\windows\Installer\20ba576.msp
+ 2009-11-20 22:36 . 2009-11-20 22:36 5002752 c:\windows\Installer\1d8435b.msp
+ 2009-10-16 06:09 . 2009-10-16 06:09 2518016 c:\windows\Installer\1d8434a.msp
+ 2009-11-17 17:27 . 2009-11-17 17:27 4871680 c:\windows\Installer\1d8433a.msp
+ 2008-01-15 12:26 . 2010-02-10 15:55 1172240 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\xlicons.exe
- 2008-01-15 12:26 . 2009-10-16 18:08 1172240 c:\windows\Installer\{91120000-0012-0000-0000-0000000FF1CE}\xlicons.exe
+ 2009-03-06 03:26 . 2009-03-06 03:26 5291376 c:\windows\Installer\$PatchCache$\Managed\00002119210000000000000000F01FEC\12.0.6425\IPEDITOR.DLL
+ 2006-10-26 13:47 . 2006-10-26 13:47 1512304 c:\windows\Installer\$PatchCache$\Managed\00002119210000000000000000F01FEC\12.0.4518\NLSD0000.DLL
+ 2010-01-22 16:05 . 2009-10-29 07:45 1168384 c:\windows\ie7updates\KB978207-IE7\urlmon.dll
+ 2010-01-22 16:05 . 2009-10-29 07:45 3598336 c:\windows\ie7updates\KB978207-IE7\mshtml.dll
+ 2010-01-22 16:05 . 2009-10-29 07:45 6067200 c:\windows\ie7updates\KB978207-IE7\ieframe.dll
+ 2009-12-09 17:05 . 2009-08-29 07:31 1168384 c:\windows\ie7updates\KB976325-IE7\urlmon.dll
+ 2009-12-09 17:05 . 2009-10-21 04:08 3598336 c:\windows\ie7updates\KB976325-IE7\mshtml.dll
+ 2009-12-09 17:05 . 2009-08-29 07:30 6067200 c:\windows\ie7updates\KB976325-IE7\ieframe.dll
- 2008-10-16 06:02 . 2009-08-04 20:59 2191360 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2191360 c:\windows\Driver Cache\i386\ntoskrnl.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2025984 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2025984 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2068224 c:\windows\Driver Cache\i386\ntkrnlpa.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2068224 c:\windows\Driver Cache\i386\ntkrnlpa.exe
- 2008-10-16 06:02 . 2009-08-04 17:29 2147328 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2008-10-16 06:02 . 2009-12-09 10:11 2147328 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2009-11-25 19:34 . 2008-09-10 01:16 1307648 c:\windows\$NtUninstallKB973687$\msxml6.dll
+ 2009-11-25 19:34 . 2008-09-04 17:17 1106944 c:\windows\$NtUninstallKB973687$\msxml3.dll
+ 2009-11-11 07:40 . 2009-04-19 19:52 1847168 c:\windows\$NtUninstallKB969947$\win32k.sys
+ 2010-01-05 09:48 . 2010-01-05 09:48 1170944 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\urlmon.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 3602944 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll
+ 2010-01-05 09:48 . 2010-01-05 09:48 6071296 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieframe.dll
+ 2010-01-22 06:31 . 2009-06-29 08:33 2452872 c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieapfltr.dat
+ 2009-10-29 07:37 . 2009-10-29 07:37 1170944 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\urlmon.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 3602432 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll
+ 2009-10-29 07:37 . 2009-10-29 07:37 6070784 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieframe.dll
+ 2009-12-09 10:20 . 2009-06-29 08:33 2452872 c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieapfltr.dat
+ 2009-11-25 08:46 . 2009-07-31 04:30 1447424 c:\windows\$hf_mig$\KB973687\SP3QFE\msxml6.dll
+ 2009-11-25 08:46 . 2009-07-31 04:30 1172480 c:\windows\$hf_mig$\KB973687\SP3QFE\msxml3.dll
+ 2009-08-14 16:00 . 2009-08-14 16:00 1859712 c:\windows\$hf_mig$\KB969947\SP3QFE\win32k.sys
+ 2008-01-14 16:04 . 2010-02-01 19:26 30364104 c:\windows\system32\MRT.exe
+ 2009-04-04 16:09 . 2009-04-04 16:09 10874880 c:\windows\Installer\388815.msp
+ 2009-04-04 14:50 . 2009-04-04 14:50 20277760 c:\windows\Installer\388731.msp
+ 2009-04-04 14:49 . 2009-04-04 14:49 14030336 c:\windows\Installer\388724.msp
+ 2009-04-04 16:08 . 2009-04-04 16:08 343058432 c:\windows\Installer\388805.msp
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ABUNINSTALLEX"="c:\documents and settings\all users\data aplikací\ab studio\ABUnInstallEx.exe" [2007-07-03 263664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AudioDeck"="c:\program files\VIA\VIAudioi\SBADeck\ADeck.exe" [2006-11-02 528384]
"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-05-15 339968]
"Smapp"="c:\program files\Analog Devices\SoundMAX\SMTray.exe" [2003-05-05 143360]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-12-11 2043160]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 29696]
WinZip Quick Pick.lnk - c:\program files\WinZip\WZQKPICK.EXE [2008-9-16 106560]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-07-31 06:58 11952 ----a-w- c:\windows\system32\avgrsstx.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgam.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\drivers\avgrkx86.sys [27.2.2009 8:53 12552]
R0 viasraid;viasraid;c:\windows\system32\drivers\viasraid.sys [12.12.2003 16:49 77312]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [27.2.2009 8:53 335240]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [27.2.2009 8:53 108552]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [27.2.2009 8:52 297752]
S0 aepqc;aepqc; [x]
S3 AbSoftMgr4;AbSoftMgr4;c:\program files\Common Files\AB Studio Shared\AbSoftMgr4.exe [15.1.2008 13:49 450560]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
DPF: {640373B0-6978-4FA5-A9FC-420ECBBC61C7} - file://pracant/data%20(d)/PORSCHEolomouc/DPS/GEMO%20dilenska%20dokumentace,%20materialy/ocelovka/model%20aktualni%20SO02/PORSCHE_Olomouc_virtualni_model_SO%2002/dll/zkitlib.dll
DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} - hxxp://217.112.167.135:30080/activex/AMC.cab
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
AddRemove-The Bat! - c:\windows\tbat_del.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-02 06:56
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
AudioDeck = c:\program files\VIA\VIAudioi\SBADeck\ADeck.exe 1????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(676)
c:\windows\system32\Ati2evxx.dll
.
Celkový čas: 2010-03-02 06:59:54
ComboFix-quarantined-files.txt 2010-03-02 05:59
ComboFix2.txt 2009-11-06 15:24
Před spuštěním: Volných bajtů: 34 531 024 896
Po spuštění: Volných bajtů: 34 517 782 528
- - End Of File - - E0CE485A3583E7D5C87549370161FC34