Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Jeanuss
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 19 bře 2010 11:50

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#16 Příspěvek od Jeanuss »

Před tím příspěvkem ať chvilinku vydržím už běžel combofix.

Zde je log:

ComboFix 10-03-18.02 - uzivatel 2-III-2010 14:41:48.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.1023.732 [GMT 1:00]
Spuštěný z: c:\documents and settings\uzivatel\Plocha\tygr.com.exe
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\uzivatel\Data aplikací\drivers\downld
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\103234.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\104203.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\107671.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\111671.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\111828.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\112031.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\112312.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\112468.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\113343.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\114218.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\117515.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\117750.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\118953.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\119625.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\121156.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\122421.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\122734.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\122906.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\123046.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\123218.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\124437.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\167390.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\167593.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\167765.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\168281.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\168671.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\168828.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\169015.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\169203.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\169390.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\170156.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\170531.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\170750.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\170953.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\171500.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\172000.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\172906.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\173531.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\173750.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\173937.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\174093.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\179453.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\180500.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\181390.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\181531.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\181687.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\181875.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\182156.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\182312.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\182484.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\182671.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\182843.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\183328.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\183671.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\184250.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\184656.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\185281.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\227640.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\227750.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\227890.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\228093.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\228312.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\228531.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\228671.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\228812.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\228984.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\229203.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\229375.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\229500.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\229640.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\230359.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\230703.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\231156.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\231484.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\232281.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\232843.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\233421.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\234046.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\234265.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\234421.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\234546.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\244812.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\245109.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\245656.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\246140.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\247437.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\248375.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\248484.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\248593.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\248765.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\248968.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\250062.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\250906.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\251125.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\251375.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\251515.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\251671.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\251843.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\252031.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\252703.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\254015.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\255062.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\255828.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\256234.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\256578.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\256812.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\257015.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\258531.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\259953.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\260578.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\261265.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\262171.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\262781.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\263343.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\263890.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\264031.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\264203.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\264500.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\264703.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\264953.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\265156.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\265312.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\265500.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\265656.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\265843.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\268140.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\269500.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\270343.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\270781.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\271046.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\271281.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\271734.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\272937.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\273109.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\273312.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\274296.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\275015.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\275453.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\275796.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\277562.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\278953.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\279328.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\279703.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\279859.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\280046.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\280625.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\281062.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\281265.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\281421.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\281593.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\281765.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\282906.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\283140.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\283328.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\283671.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\283796.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\91703.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\92109.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\92437.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\92671.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\downld\92906.exe
c:\documents and settings\uzivatel\Data aplikací\drivers\winupgro.exe
c:\documents and settings\uzivatel\Data aplikací\m\shared
c:\documents and settings\uzivatel\Data aplikací\m\shared\1st Security Agent v2.1 by SirCrack.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\1st Security Agent with 1st Screen Lock v7.3 by ViRiLiTY.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\32bit Web Browser 9.24.01.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\A.I.M.S Retail JAVA by RLYEH.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Acoustica MixCraft v3.0x by SND.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Active MPEG Video Converter 1.9.3.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Adaware Away v2.2.8.7 Multilingual WinALL Regged by DVT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\AdLib eXpress Server v2.9.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Advanced VBA Password Recovery 1.32 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\AlarmWorks 2.3.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Alexandra Ledermann 3 v1.0 [FRENCH] No-CD Fixed EXE.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\AlgoLab Raster to Vector Conversion Toolkit 2.82.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Altdo 3GP to AVI WMV DVD Converter&Burner 6.1 keygen.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\AltN MDaemon Pro 6.5.1 Release.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Amiable FlexiSIGNPRO v7.6v2.0776 Incl KeyMaker and Patch by DVT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Amigo DVD Ripper 2.8.85.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Amor Video Joiner v2.8.8.5 by AT4RE.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\AnFX 4.9.5 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\ArmorTools v7.3 by CiM.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Ascential DataStage v7.5.1a Server WinALL Regged by iNFECTED.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Audiofan Wave to MP3 Converter v1.1 by RED.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\AutoInstall 1.20 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Azores Screensaver 1.0 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Backup to CDRW 5.0.89.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Bad Mojo Redux GERMAN NoCD by TNT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Bapsoft CrossNums v1.4 for PalmOS5.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Batch It! 1.2h.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Bibliographix Pro v6.0.01 Multilanguage by TBE.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\BIN to ISO Converter v2.0 32 bit.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Bizimg Foggy Autumn 1.0.0.1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\BobCADCAM v19.5.1 by SHOCK.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Bootmanager BOOTSTAR v7.28.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Briz AVI Splitter v2.11 by Lz0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\BWMeter v1.8.1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Cabinet Manager 99 v2.5.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Caricature de Loftstory Screensaver by PC.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\CatStudio v3.1 WinALL Incl Keygen by BM.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\CD2HTML v4.x.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\cimema 4D 10 for Mac (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Cleaner 5.1.1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\ClickTyper 1.0 for Mac.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Clock Tower 3D Screensaver 1.2.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\CLOX 2000.6.00.02.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Color7 Music Editor 6.2.9 CrAcKed.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Com 6.9.9.30 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Command and Conquer 3 Tiberium Wars Kane Edition.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\ComponentOne DocToHelp 6.0.95 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Contenta MRW Converter 4.8.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Cool Music Converter v7.4.3.60 by LUCiFER.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Copernic 2001 Pro 5.01 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Counter-Strike Source Strike 2 Mod Retail JAVA 240x320 by RLYEH.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Crocodile ICT v501 DateCode 20041216 WinALL Cracked by ARN.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\CS-ExcelDiff v1.1.58.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Daily Inventory v4.7.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Dance eJay v4.0 No-CD Crack.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\DarkStar One v1.0 +15 TRAINER.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Deepsky 99.1.0.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Digital Camera Essential Tools for Adobe Photoshop 1.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Directory Compare v2.01 by ViRiLiTY.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Domovoi v1.0 Multilanguage.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\DropIcon 2 x for Mac.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\DVD95Copy Pro v3.4.1.43 Multilingual by DVT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\DVDInfoPro HD v5.02 by BEAN.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\DX Lines 1.00.3 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Easy MOV Converter v1.2.39 by GZKS.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\EDGE Diagrammer v4.1 build 1749.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Elecard AVC PlugIn for MPEG Player v1.2.60331 WinALL Incl Keygen by ViRiLiTY.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\EmEditor v3.22 by MadBob.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Emoticons Mail v2.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\emu8086 4.02 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\end note 6 for Mac (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\ENotebook v3.1 WinAll Cracked by LMi.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\EximiousSoft GIF Creator v3.35 Incl Keymaker by ARN.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\FAB SMS Addin for Microsoft Outlook 1.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\FairStars Audio Converter 1.11 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\FaxAmatic 9.34.01 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Feedback Filter v2.60 German Incl Keymaker by ACME.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\File Recover v6.2.0.20 Multilanguage by FFF.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Filord 1.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\FinePrint v4.72.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Flash Slideshow Generator 2.1.6.2.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Flash2X Wallpaper Maker v1.1.0 Datecode 061707 Incl Keymaker by ARN.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\FlashGet v0.96a by TNT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\flashtext 1.1 keygen by TSRh.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\FloatSaver 2.61.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\ForwardMail 3.54 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\FotoSlate v3.0.1.26 by HTBTeam.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Fun Talk v1.1 Cracked by HERETiC.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Futuremark 3DMark06 v1.0.2 by FFF.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\G-Bee v1.3 by dBrAiN.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\GameHouse Mahjongg Investigations Under Suspicion v1.0.0.1 by BalCrNepal.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\GameHouse Pakoombo Serial by BalCrNepal.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Gamehouse Roller Rush 1.0 for Mac (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Garden Australia Screen Saver 1.0 keygen.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Gem Thief v1.1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\GH Super Jigsaw Puzzle Geddes Garden 1.1.9.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\GoGo CD To MP3 Ripper v1.4.5.4 by EXPLOSiON.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Golden Nuggets Retail for SymbianOS S60v2 JAVA by RLYEH.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Ham Helper 1.2 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\HiFiSoft RM Audio Converter v1.00 Keygen Only by EXPLOSiON.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Hkvstore ASPMaker v5.2.0.0 Incl Keymaker by ZWT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\HomeGauge v2.7.030830.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\HTMLCompact 2.0.0.1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\ChmDecompiler v1.40 build 270.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Ice Blue Antarctica.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Ideal Administration Advanced 5.31 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\IES QuickRWall v1.50.0009 Incl Keymaker by AGAiN.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Illustrate! v5.10 build 1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Image Browser Arctic 4.2 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Imaginet Finger Clix v2.1 build 343 Retail for Pocket PC ARM 2003-2005 by RLYEH.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\InBloom Shop Software 2.0.57.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\InstantServers IsMail v1.8.86 by ZWT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Instyler Ex-it! v1.5.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Intel Fortran Compiler v10.0.025 LINUX by TBE.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Internet Connection Counter v5.2 by diablo2oo2.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\iOrgSoft DVD to MP4 Converter 3.1.8.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\IP-Tools v2.07 by YR.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\IT Office Calculator 1.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\JPEmail 1.01.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Keyboard Guardian 1.1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\KeyPass 2.5.0 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Koala Term 3.3 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Konvertor v3.72.4 by DJiNN.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\KoolMoves v5.2.5 Retail Incl Keymaker by ZWT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Kylom Finanz v2.00 for SymbianOS S60.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\LAGO Multi-product Keygen v2.03.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Lan Bridge 1.35.2 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Lydia v3.3.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Map Designer 1.2.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Maze Magic 1.0 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Meedio Essentials v1.29 WinALL CRACKED by LUCiD.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\MemMonster 2001 Gold Edition Regfile.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Microangelo v5.56 by N-GeN.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\MindManager 4.0 Standard Edition by AmoK.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\MiniSetup Utility 1.3.7.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\mirosoft windows xp home edition (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Modified File Backup 9.43.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Modified File Backup v7.19t by AT4RE.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\MP3 To CD Plus 1.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\MPS JavaScript Editor 2000 v2.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Multi Clipboard v.m9.49.01 by SND.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\N-Ball v2.2 by TLG.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\NewsReactor v1.0.8936 Keygen And Patch Only by EXPLOSiON.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\O'Basic 97 v97.0.33 build 07.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Outlook Backup Assistant v1.0.2.28 German.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\P3App Retail for PocketPC by RLYEH.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PC Security v6.4 by SND.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PC Soccer 3.05.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PCAdresszz Server v3.02 German by ViRiLiTY.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PDF Optimizer 2.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PE-MU 3.30 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\phatware phatpad 2.0 pocket pc and pc keygen by TSRh.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Phobia Dictionary v1.0.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Photo-Brush v2.1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Photo Collage Maker v1.55 by REVENGE.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PicDownloader v4.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Pocketkai Auto Softreset .NET v1.3 Retail Multilanguage for Pocket PC.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Poise 1.0.10.4 patch.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PopUpKiller and DialerDetector 2.2.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PowerTCP Zip Compression for .NET 1.0.0 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PrimaSoft Car Organizer Deluxe v1.8 by Eclipse.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Printety ICT 1.02 CrAcKed.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\ProcWatch 1.1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Property Cafe v2.0 by diGERATi.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\PTGui v3.5.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\QBIIFUI 1.00 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Quake 2 No-CD Patch.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\RaimaRadio v2.16 by SND.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Record Playing Music On Computer Software 7.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Reflexive Arcade ALL Games Unlock Patch v2.0 Fixed by Hack ThE PaRaDiSe.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Registry Studio 1.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\RZUpload 1.01 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\S2 Zoop v1.0 by TBE.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Safari Adventures in Africa NoCD Crack by TNT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\SafeApp Software Registry Helper v1.1.326 by TE.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\SBSH Papyrus v1.4.02 Retail for SymbianOS7 S60 by RLYEH.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Scrabble 1.XX for Pocket PC (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Search Easy 1.01.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Shadow Defender v1.1.0.315 32Bit by AT4RE.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Sims 2 - Open for Business 1.0 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Site Translator 1.60.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\SkelaXin RAM Booster PRO v1.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\SmashTown Junk Yard v1.04 PLUS 1 TRAINER by PiZZA.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\SMTPTo v2.00.0104.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\SocketTools Secure Scripting Edition 6.00.6000 keygen.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\SoftCopy v2.1.1 Incl Keygen by Lz0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Sony DVD Architect v3.0b by SSG.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\SoundEditor 6.2.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\SP VIDEO 3.02.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Spy-CD 4.21 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Steganos Internet Anonym v2.06.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Strategic Command v1.03 [ENGLISH] No-CD Fixed EXE 1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Super Screensaver Builder Standard 6.2.006 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Surfsup Retail JAVA Nokia 3510i by RLYEH.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Sybase DBLibrary Access Library for DBTools h 3.1.1 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Sygate Office Network v4.2.803 by Distinct.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Systweak Boost XP v2.0 by ZWT.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Tachyon The Fringe (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Tavrida Phone 1.52 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\TealPoint TealAlias v1.20 for PalmOS.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\TetFun 2000 v1.9.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\The Font Creator Program 3.1.3 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\The Sims 2 Teen Style Stuff.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Total Commander Universal Pro Activator.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Trespasser 11 CD-Copy.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\tune up utilities 2004 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Typing Assistant v2.2 by PSC.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Ultra Lingua English Definitions and Thesaurus 4.4.0 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Understand for Ada 1.4.225 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Understand for Java v1.4.368 SOLARIS by Lz0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\URLmaster 3.1 by DBC.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\URLmaster 3.1 by TMG.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\VideoLive Mail 4.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Virtual Print Server 1.0.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\VisionLab Studio 1.005.014.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\VTrain 4.50 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\VuePrint 8.0-key.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Web Confidential Pro 1.1.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Windows Help Maker II.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\WinChanger 2000 4.0 (Serial).zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\WWWhack v1.946.103.2.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\XaraX v1.0a Crack.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Xchat v2.8.7e by FFF.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Xrgomics TenGO Keyboard v2.00 for Pocket PC 2003 2005.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Zen Garden v1.0 Retail for iPhone (3G) iPod Touch by RLYEH.zip
c:\documents and settings\uzivatel\Data aplikací\m\shared\Zero Trace 1.0 (Serial).zip
c:\documents and settings\uzivatel\Dokumenty\cc_20100219_1208.reg
c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
c:\windows\mdelk.exe
c:\windows\system32\srosa2.sys
c:\windows\system32\wfsintwq.sys
c:\windows\wintems.exe

.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_SROSA
-------\Legacy_SROSA
-------\Legacy_SK9OU0S
-------\Service_sK9Ou0s


((((((((((((((((((((((((( Soubory vytvořené od 2010-02-22 do 2010-03-22 )))))))))))))))))))))))))))))))
.

2010-03-22 13:35 . 2010-03-22 13:36 -------- d-----w- C:\tygr.com
2010-03-19 14:41 . 2010-03-22 07:38 1622 ----a-w- C:\UsbFix_Upload_Me_MARTIN.zip
2010-03-19 14:33 . 2010-03-22 07:38 -------- d-----w- C:\UsbFix
2010-03-19 10:55 . 2010-03-19 11:07 -------- d-----w- c:\program files\trend micro
2010-03-19 10:55 . 2010-03-19 10:56 -------- d-----w- C:\rsit
2010-03-16 09:54 . 2010-03-16 09:54 -------- d-----w- C:\VundoFix Backups
2010-03-16 09:31 . 2010-03-16 09:31 -------- d-----w- c:\windows\system32\drivers\zaloha
2010-03-11 09:31 . 2010-03-11 09:31 -------- d-----w- c:\program files\IObit
2010-03-11 09:31 . 2010-03-11 09:31 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-03-11 09:24 . 2010-03-19 11:03 -------- d-----w- c:\program files\Lark Anti-Spyware
2010-03-10 12:56 . 2010-03-10 13:00 -------- d-----w- c:\program files\Typing Invaders
2010-03-10 06:44 . 2009-10-23 15:28 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-03-01 12:47 . 2010-03-01 12:47 -------- d-----w- c:\program files\Common Files\Adobe

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-19 11:02 . 2009-09-16 11:32 -------- d-----w- c:\program files\SlySoft
2010-02-06 10:36 . 2006-10-20 10:18 -------- d-----w- c:\program files\Google
2010-01-25 06:55 . 2009-10-08 12:35 -------- d-----w- c:\program files\Microsoft Silverlight
2010-01-22 06:42 . 2006-03-02 12:00 77872 ----a-w- c:\windows\system32\perfc005.dat
2010-01-22 06:42 . 2006-03-02 12:00 428750 ----a-w- c:\windows\system32\perfh005.dat
2010-01-05 09:58 . 2006-03-02 12:00 832512 ----a-w- c:\windows\system32\wininet.dll
2010-01-05 09:57 . 2006-03-02 12:00 78336 ----a-w- c:\windows\system32\ieencode.dll
2010-01-05 09:57 . 2006-03-02 12:00 17408 ------w- c:\windows\system32\corpol.dll
2009-12-31 16:50 . 2006-03-02 12:00 353792 ----a-w- c:\windows\system32\drivers\srv.sys
2006-03-09 08:17 . 2007-09-21 11:14 37768 -c--a-r- c:\program files\wceusbsh.sys
2008-04-14 03:21 . 2006-03-02 12:00 551936 --sh--w- c:\windows\system32\oleaut32.dll
2008-04-14 03:22 . 2006-03-02 12:00 12288 --sh--w- c:\windows\system32\regsvr32.exe
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\\Phone\Skype.exe" [2009-10-09 25623336]
"ICQ"="c:\program files\ICQ6.5\ICQ.exe" [2009-11-16 172792]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2010-03-11 2156368]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-11-28 8523776]
"nwiz"="nwiz.exe" [2007-11-28 1626112]
"SkyTel"="SkyTel.EXE" [2006-05-16 2879488]
"DAEMON Tools-1033"="c:\program files\D-Tools\daemon.exe" [2004-08-22 81920]
"NeroCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"StatusClient"="c:\program files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe" [2002-12-16 36864]
"TomcatStartup"="c:\program files\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe" [2003-03-31 155648]
"QuickTime Task"="c:\program files\K-Lite Codec Pack\QuickTime\qttask.exe" [2007-12-06 155648]
"Gainward"="c:\windows\TBPanel.exe" [2007-11-27 2189864]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2007-11-28 81920]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 110592]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2006-03-02 208952]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2006-03-02 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168]
"OODefragTray"="c:\windows\system32\oodtray.exe" [2007-05-11 2512392]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-10-11 149280]
"TrojanScanner"="c:\program files\Trojan Remover\Trjscan.exe" [2010-03-22 1070984]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
"RTHDCPL"="RTHDCPL.EXE" [2006-05-18 16207872]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\uzivatel\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Outlook Express.lnk - c:\program files\Outlook Express\msimn.exe [2006-10-17 60416]
Total Commander.lnk - c:\program files\TOTALCMD\TOTALCMD.EXE [2003-11-17 732160]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth Manager.lnk - c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe [2007-2-2 2756608]
DUSuperControler.lnk - c:\program files\DU Super Controler\DUSuperControler.exe [2004-1-20 724992]
ImageFox.lnk - c:\windows\Installer\{92E64C51-5096-442F-9A44-61CB2941391D}\NewShortcut1.exe [2006-10-18 45056]
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"HonorAutoRunSetting"= 0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"HonorAutoRunSetting"= 0 (0x0)

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0OODBS\0pgdfgsvc C 1

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Hewlett-Packard\\Toolbox2.0\\Javasoft\\JRE\\1.3.1\\bin\\javaw.exe"=
"c:\\Program Files\\DSS\\CM3000\\phone.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Install\\eMule\\emule.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\totalcmd\\TOTALCMD.EXE"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"4662:TCP"= 4662:TCP:Porty
"4662:UDP"= 4662:UDP:porty 2

R0 d347bus;d347bus;c:\windows\system32\drivers\d347bus.sys [19-X-2006 7:18 155136]
R0 d347prt;d347prt;c:\windows\system32\drivers\d347prt.sys [19-X-2006 7:18 5248]
R3 HomeQOS;HomeQOS Miniport;c:\windows\system32\drivers\homeqos.sys [20-I-2004 21:09 36096]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [06-II-2010 11:36 135664]
.
Obsah adresáře 'Naplánované úlohy'

2010-03-22 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-06 10:36]

2010-03-22 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-06 10:36]

2007-08-30 c:\windows\Tasks\HPFRU Task 2003-06-24 19:40ewlett-Packard2003-06-24 19:40p officejet 7100 series2889F2163A36016833EE17BCE444564664912314162980031.job
- c:\program files\Hewlett-Packard\AiO\Shared\bin\hpqfrucl.exe [2003-06-25 00:10]

2143-07-30 c:\windows\Tasks\User_Feed_Synchronization-{B45F05A0-7EB7-4525-90BC-0FB799E08947}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 09:58]
.
.
------- Doplňkový sken -------
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&s ... f8&oe=utf8
uInternet Settings,ProxyOverride = <local>
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
TCP: {5700BC50-E7AC-49BC-9789-94EDCB6DD936} = 10.0.0.138
DPF: {8739DA95-2E66-4A11-9F63-2F5808C7C31F} - hxxp://10.0.0.100/WebCamX.cab
DPF: {CEEFE929-741C-4323-B7FE-C17CA6DA3A01} - hxxp://88.146.134.53:5550/WebCamX.cab
FF - ProfilePath - c:\documents and settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\8nqqbr4e.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=utf-8&fr=megaup&p=
FF - prefs.js: network.proxy.type - 2
FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin2.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin3.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin4.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin5.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

HKCU-Run-swg - c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-22 14:49
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MySql]
"ImagePath"="C:/PROGRA~1/PHPHOM~1/mysql/bin/mysqld-nt.exe"

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MySql]
"ImagePath"="C:/PROGRA~1/PHPHOM~1/mysql/bin/mysqld-nt.exe"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
"OODEFRAG10.00.00.01WORKSTATION"="EC76B7189741641679CF5268F786CCF842685EAA4AF7B889DE3AB30778A12CB88ED8A9380B3B0008AE82681D735DB9024D83C29B5688EE0D3CE22A54F681C0803EE2A7ACA1765F9944D36E9CB1FA20B0B1B4795AA54BA5C83FA1B946BDEB956CDC94D036B28ADD59B0786608743B0EFDA30584840081BAC475760396BE26772F6D0407CC7A605A4893B914B1E04E91587694296A95BF8F7B0DF26DB2D04B3B711AD6FEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CA6A0AC4980AC7933A6A0AC4980AC7933A6171C11EC38DE3D8EDD5E5BE2F6E667D931E2E41A980ACCEB203CA34193666CF50526A9C2455FD17C69CD8E63BA3AD564BA03A10F974BBC27C151031375DBF50DE9B60DDE09A9A97D4B690860256C1EDE1D233A688573E3FEDF89B81EE9CE5919E41F960B058AF9E1264357ACB4787DA3E247BB1F148A4A6F1F1458CED2BFB6D85CD3FE43669A9748373BF6F4042F9ED6C85C0631E93B913CD784C59283D2C3CF6333D008CF17EB157399B869A086C05BBC2FCD20A2D36BEA98523C5C444E47C4C67D6ADBD4E074F00286BEBE0C1AB45BE5721E724E489F46235947A3D0209EC38356FEC67FFD43473E0E01ADBCA662C31BBB51B06E2E885B6CD7CBE1D8D7B81ACC489454CB157BC837244CF21D8EC246EA0797E9FAC2977D9E717D1680A91B5D89BC8694AAF359E8319C3FCF0BD7E457933278ADDDE14EC2172F66C3E0EB5D63D307831A810D27E02431CD87D8AAEAB00BFECB13F6114404E6F9E470051B2CC6F9588EFD2AF248AB3AFE4063CAD60B4E7894BC341AF425E0D3A3AA276DD748677F4CFE5AF060310AD408B2301DCC8EF23AFD4DAD8C5AB0BAD75EBC760D66046899DC7D5116B06A01053213BEFDA4D523DF2752210A2E3838204075F04D2DC931B3EB8B834F66935795C4A7638C1651A7AE64F3B54306A5428D4783AD8AB8156D6CBD799AC6A55B9A7EEE07F6E180880D1DEB3013D71772883751E6C712B9F589947A6F4298378819F1421CD687641527D9D8D667E13C2E7DE4A2F55C2B83913CB5AD67A8D407F368D1B228627969A48745278CE46AF4FC5515615B8F8C0D9EFA8749B18202280B5F369B3EFDAB58FA8AF13CCAC17263140CF81A140761F36B007A20EE88984ECE1CEBB74693841E6D4AAADB5E366B4FC15E76BBF2EDCAF656CB30EB97F38552557D702B7C10DBCE662B6BB2E7013CA2E24F27991C725C7AD4A17F4876852932C6A7F779EE62811FE35063CD5BE2C06D6BA4D8EA09489E86EE08F1362901DA0DE082E90D0380B6E87822F89E0222C76163E80BCC8A250D46BF4AC71A24AEE028F33BE2B37062B2AA4BCF437EF809945665EA75BBBF44180A7A78F23BAB59796DE7C1B29DC2851D85154A10A531E35DC7203B021D1FE3A2"
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'explorer.exe'(1348)
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\oodag.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
c:\windows\system32\RUNDLL32.EXE
c:\windows\system32\rundll32.exe
c:\windows\RTHDCPL.EXE
c:\program files\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtBty.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
c:\program files\Microsoft Office\Office10\EXCEL.EXE
c:\windows\system32\HPBPRO.EXE
.
**************************************************************************
.
Celkový čas: 2010-03-22 14:55:10 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-03-22 13:55

Před spuštěním: 7 462 682 624
Po spuštění: 7 532 965 888

- - End Of File - - CC1FD402DF02E06D98B951DC27501ACB

Jeanuss
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 19 bře 2010 11:50

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#17 Příspěvek od Jeanuss »

Po combofixu jsem postřehl zatím dvě změny. Už mi funguje na postiženém PC tento threed. Předtím prohlížeč automaticky spadl. Musel jsem pročítat na vedlješím PC. Funguje např i hledání slova Hijackthis. Prohlížeče už nepadají. Nic dalšího jsem nezkoušel.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#18 Příspěvek od motji »

Nevadí, combofix svou práci odvedl :) . Bála jsem se, že ho bude blokovat jako avenger, ale vyšlo to :)

:arrow: Otestujte na http://www.virustotal.com
c:\program files\wceusbsh.sys
-Do okénka zkopírujte cestu k souboru , pokud napíše, že soubor byl už testován, dejte otestovat znovu.
-Sem vložte link s výsledky.

:arrow: Tyto porty znáte, máte otevřené schválně?
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"4662:TCP"= 4662:TCP:Porty
"4662:UDP"= 4662:UDP:porty 2


:arrow: Jak to ted vypadá s počítačem? Ještě uděláme nějaké kontrolní skeny, jestli po té potvoře něco nezůstalo, budou trošku náročnější na čas :roll: .

:arrow: Z toho, co combofix smazal - je něco co znáte? Pod ostatními výmazy - jsou tam soubory v zipu - znáte je?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Jeanuss
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 19 bře 2010 11:50

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#19 Příspěvek od Jeanuss »

Link s výsledky:
http://www.virustotal.com/cs/analisis/e ... 1269266699

Porty 4662 mám otevřeny pro eMuli, kterou zřídka použiju.

Teď to vypadá ok. Nod se podařilo nainstalovat. Spybot přeinstaluju.
Používal jsem outlook, a po napadení se při po odeslání zprávy vždy vytížil prcesor na 100% asi na 10-15 sekund. Nyní už se zpráva odešle hned.
Jinak prakticky vše fungovalo normálně, krom těch odstavených programů.

Kontroly provedeme. Ve 4 musím pryč, budu tady zase zítra.

99 % těch smazaných zipů mi nic neříká.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#20 Příspěvek od motji »

Fajn, zipy necháme v karanténě combofixu, ptala jsem se spíš proto, kdyby měl combofix nějakou falešnou detekci a smazal něco, co potřebujete.
Až budete mít čas, provedte tohle:

:arrow: Odzkoušejte Nouzový režim, pokud nejde, zkuste znovu opravu programem, jak jsem psala výše a nahlaste výsledek.


:arrow: Stáhněte Gmer http://www.viry.cz/forum/viewtopic.php?f=29&t=62878
- rozbalte a spusťte
-proběhne sken, po skončení se otevře okno s výsledky, kliknete na Save a tím si uložíte log,který sem vložíte

-Podle návodu v odkazu proveďte druhý sken a log sem také vložte.


:arrow: Stahněte z mého podpisu AVPTOOl http://www.viry.cz/forum/viewtopic.php?f=29&t=58179

-Podle návodu nainstalujte a proveďte sken
-co najde nechejte léčit, mazat
-sken může trvat několik hodin
-vložte zde log z výsledky
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Jeanuss
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 19 bře 2010 11:50

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#21 Příspěvek od Jeanuss »

První scan Gmeru v1.0.12 (jako jediný z těch 5-ti odkazů fungoval jak má. Ostatní se spustily jen na cca 2 sekundy a samy se zavřely nebo se nezavřely, ale v pravém sloupci se dalo zaškrtnout pouze SERVICES, REGISTRY a FILES):

GMER 1.0.12.12011 - http://www.gmer.net
Rootkit scan 2010-03-22 15:53:57
Windows 5.1.2600 Service Pack 3


---- System - GMER 1.0.12 ----

SSDT d347bus.sys ZwEnumerateKey
SSDT d347bus.sys ZwEnumerateValueKey

---- Devices - GMER 1.0.12 ----

Device \FileSystem\Ntfs \Ntfs IRP_MJ_READ 86F18FB0

---- Modules - GMER 1.0.12 ----

Module _________ F7319000

---- EOF - GMER 1.0.12 ----

Log druhého scanu je zde:

http://leteckaposta.cz/578486057

Po rozbalení má přes 7 MB, tak jsem ho raději nahrál zabalený na leteckou poštu.

Log z AVPToolu pošlu zítra.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#22 Příspěvek od motji »

:shock:
:arrow: Stáhněte
http://rootrepeal.googlepages.com/RootRepeal.zip
-Stáhněte,rozbalte a spusťte
-vyberte záložku Files, klikněte na Scan,
-proběhne sken, po něm klikněte na Save Report , tím se uloží log, který zkopírujete sem

-postupně vyberte všechny záložky a udělejte skeny.

Stačí i zítra :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Jeanuss
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 19 bře 2010 11:50

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#23 Příspěvek od Jeanuss »

Log z AVPToolu:

Autoscan: completed 14 hours ago (events: 257, objects: 328808, time: 02:06:10)
22-III-2010 16:22:53 Task started
22-III-2010 16:28:40 Detected: MultiPacked.Multi.Generic C:\Program Files\TOTALCMD\TOTALCMD.EXE/VGCrypt
22-III-2010 16:35:45 Detected: HEUR:Trojan.Win32.Generic C:\Documents and Settings\uzivatel\Data aplikací\m\data.oct
22-III-2010 16:54:37 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\drivers\winupgro.exe.vir
22-III-2010 16:54:40 Detected: Trojan.Win32.Lebag.xp C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\drivers\downld\104203.exe.vir
22-III-2010 16:54:49 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\1st Security Agent v2.1 by SirCrack.zip.vir/crac.exe
22-III-2010 16:54:55 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\1st Security Agent with 1st Screen Lock v7.3 by ViRiLiTY.zip.vir/install_patch.exe
22-III-2010 16:54:58 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\32bit Web Browser 9.24.01.zip.vir/install_patch.exe
22-III-2010 16:55:02 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\A.I.M.S Retail JAVA by RLYEH.zip.vir/keygen.exe
22-III-2010 16:55:06 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Acoustica MixCraft v3.0x by SND.zip.vir/install_patch.exe
22-III-2010 16:55:10 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Active MPEG Video Converter 1.9.3.zip.vir/setup.exe
22-III-2010 16:55:14 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Adaware Away v2.2.8.7 Multilingual WinALL Regged by DVT.zip.vir/key_generator.exe
22-III-2010 16:55:20 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\AdLib eXpress Server v2.9.0.zip.vir/install_crack.exe
22-III-2010 16:55:25 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Advanced VBA Password Recovery 1.32 (Serial).zip.vir/install_crack.exe
22-III-2010 16:55:30 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\AlarmWorks 2.3.0.zip.vir/install_patch.exe
22-III-2010 16:55:35 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Alexandra Ledermann 3 v1.0 [FRENCH] No-CD Fixed EXE.zip.vir/key_generator.exe
22-III-2010 16:55:40 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\AlgoLab Raster to Vector Conversion Toolkit 2.82.zip.vir/key_generator.exe
22-III-2010 16:55:44 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Altdo 3GP to AVI WMV DVD Converter&Burner 6.1 keygen.zip.vir/serial.exe
22-III-2010 16:55:48 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\AltN MDaemon Pro 6.5.1 Release.zip.vir/key_gen.exe
22-III-2010 16:55:52 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Amiable FlexiSIGNPRO v7.6v2.0776 Incl KeyMaker and Patch by DVT.zip.vir/key_gen.exe
22-III-2010 16:55:57 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Amigo DVD Ripper 2.8.85.zip.vir/setup.exe
22-III-2010 16:56:01 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Amor Video Joiner v2.8.8.5 by AT4RE.zip.vir/run.exe
22-III-2010 16:56:06 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\AnFX 4.9.5 (Serial).zip.vir/setup.exe
22-III-2010 16:56:11 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\ArmorTools v7.3 by CiM.zip.vir/keygen.exe
22-III-2010 16:56:17 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Ascential DataStage v7.5.1a Server WinALL Regged by iNFECTED.zip.vir/install_crack.exe
22-III-2010 16:56:21 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Audiofan Wave to MP3 Converter v1.1 by RED.zip.vir/install.exe
22-III-2010 16:56:26 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\AutoInstall 1.20 (Serial).zip.vir/key_generator.exe
22-III-2010 16:56:35 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Azores Screensaver 1.0 (Serial).zip.vir/run.exe
22-III-2010 16:56:39 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Backup to CDRW 5.0.89.zip.vir/key_generator.exe
22-III-2010 16:56:43 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Bad Mojo Redux GERMAN NoCD by TNT.zip.vir/serial.exe
22-III-2010 16:56:51 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Bapsoft CrossNums v1.4 for PalmOS5.zip.vir/key_generator.exe
22-III-2010 16:56:56 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Batch It! 1.2h.zip.vir/serial.exe
22-III-2010 16:56:59 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Bibliographix Pro v6.0.01 Multilanguage by TBE.zip.vir/setup.exe
22-III-2010 16:57:04 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\BIN to ISO Converter v2.0 32 bit.zip.vir/crac.exe
22-III-2010 16:57:08 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Bizimg Foggy Autumn 1.0.0.1.zip.vir/patch.exe
22-III-2010 16:57:12 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\BobCADCAM v19.5.1 by SHOCK.zip.vir/key_gen.exe
22-III-2010 16:57:16 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Bootmanager BOOTSTAR v7.28.zip.vir/key_generator.exe
22-III-2010 16:57:25 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Briz AVI Splitter v2.11 by Lz0.zip.vir/keygen.exe
22-III-2010 16:57:30 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\BWMeter v1.8.1.zip.vir/keygen.exe
22-III-2010 16:57:33 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Cabinet Manager 99 v2.5.zip.vir/keygen.exe
22-III-2010 16:57:36 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Caricature de Loftstory Screensaver by PC.zip.vir/crac.exe
22-III-2010 16:57:39 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\CatStudio v3.1 WinALL Incl Keygen by BM.zip.vir/run.exe
22-III-2010 16:57:42 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\CD2HTML v4.x.zip.vir/run.exe
22-III-2010 16:57:45 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\ChmDecompiler v1.40 build 270.zip.vir/install_crack.exe
22-III-2010 16:57:47 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\cimema 4D 10 for Mac (Serial).zip.vir/install_crack.exe
22-III-2010 16:57:50 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Cleaner 5.1.1.zip.vir/setup.exe
22-III-2010 16:57:53 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\ClickTyper 1.0 for Mac.zip.vir/install_patch.exe
22-III-2010 16:57:56 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Clock Tower 3D Screensaver 1.2.zip.vir/key_generator.exe
22-III-2010 16:58:00 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\CLOX 2000.6.00.02.zip.vir/patch.exe
22-III-2010 16:58:07 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Color7 Music Editor 6.2.9 CrAcKed.zip.vir/key_generator.exe
22-III-2010 16:58:10 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Com 6.9.9.30 (Serial).zip.vir/run.exe
22-III-2010 16:58:14 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Command and Conquer 3 Tiberium Wars Kane Edition.zip.vir/install_patch.exe
22-III-2010 16:58:16 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\ComponentOne DocToHelp 6.0.95 (Serial).zip.vir/keygen.exe
22-III-2010 16:58:19 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Contenta MRW Converter 4.8.zip.vir/crac.exe
22-III-2010 16:58:24 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Cool Music Converter v7.4.3.60 by LUCiFER.zip.vir/setup.exe
22-III-2010 16:58:30 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Copernic 2001 Pro 5.01 (Serial).zip.vir/install.exe
22-III-2010 16:58:33 Detected: HEUR:Backdoor.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\drivers\winupgro.exe.vir
22-III-2010 16:58:33 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Counter-Strike Source Strike 2 Mod Retail JAVA 240x320 by RLYEH.zip.vir/install.exe
22-III-2010 16:58:37 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Crocodile ICT v501 DateCode 20041216 WinALL Cracked by ARN.zip.vir/run.exe
22-III-2010 16:58:40 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\CS-ExcelDiff v1.1.58.zip.vir/key_gen.exe
22-III-2010 16:58:41 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Daily Inventory v4.7.0.zip.vir/install_crack.exe
22-III-2010 16:58:42 Deleted: Trojan.Win32.Lebag.xp C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\drivers\downld\104203.exe.vir
22-III-2010 16:58:45 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Dance eJay v4.0 No-CD Crack.zip.vir/crac.exe
22-III-2010 16:58:45 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\DarkStar One v1.0 +15 TRAINER.zip.vir/install_patch.exe
22-III-2010 16:58:46 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Deepsky 99.1.0.0.zip.vir/key_gen.exe
22-III-2010 16:58:52 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Digital Camera Essential Tools for Adobe Photoshop 1.0.zip.vir/serial.exe
22-III-2010 16:58:57 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Directory Compare v2.01 by ViRiLiTY.zip.vir/install_crack.exe
22-III-2010 16:58:59 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Domovoi v1.0 Multilanguage.zip.vir/crac.exe
22-III-2010 16:59:03 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\DVD95Copy Pro v3.4.1.43 Multilingual by DVT.zip.vir/install_crack.exe
22-III-2010 16:59:03 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\DropIcon 2 x for Mac.zip.vir/install.exe
22-III-2010 16:59:04 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\DVDInfoPro HD v5.02 by BEAN.zip.vir/key_generator.exe
22-III-2010 16:59:12 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\DX Lines 1.00.3 (Serial).zip.vir/key_generator.exe
22-III-2010 16:59:12 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Easy MOV Converter v1.2.39 by GZKS.zip.vir/serial.exe
22-III-2010 16:59:12 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\EDGE Diagrammer v4.1 build 1749.zip.vir/key_gen.exe
22-III-2010 16:59:19 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Elecard AVC PlugIn for MPEG Player v1.2.60331 WinALL Incl Keygen by ViRiLiTY.zip.vir/patch.exe
22-III-2010 16:59:20 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Emoticons Mail v2.0.zip.vir/crac.exe
22-III-2010 16:59:25 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\EmEditor v3.22 by MadBob.zip.vir/patch.exe
22-III-2010 16:59:29 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\emu8086 4.02 (Serial).zip.vir/patch.exe
22-III-2010 16:59:30 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\end note 6 for Mac (Serial).zip.vir/run.exe
22-III-2010 16:59:31 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\ENotebook v3.1 WinAll Cracked by LMi.zip.vir/keygen.exe
22-III-2010 16:59:36 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\EximiousSoft GIF Creator v3.35 Incl Keymaker by ARN.zip.vir/setup.exe
22-III-2010 16:59:37 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\FAB SMS Addin for Microsoft Outlook 1.0.zip.vir/setup.exe
22-III-2010 16:59:39 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\FairStars Audio Converter 1.11 (Serial).zip.vir/patch.exe
22-III-2010 16:59:42 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\FaxAmatic 9.34.01 (Serial).zip.vir/install.exe
22-III-2010 16:59:44 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Feedback Filter v2.60 German Incl Keymaker by ACME.zip.vir/run.exe
22-III-2010 16:59:44 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\File Recover v6.2.0.20 Multilanguage by FFF.zip.vir/serial.exe
22-III-2010 16:59:49 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Filord 1.0.zip.vir/setup.exe
22-III-2010 16:59:49 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\FinePrint v4.72.zip.vir/keygen.exe
22-III-2010 16:59:53 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Flash Slideshow Generator 2.1.6.2.zip.vir/crac.exe
22-III-2010 16:59:55 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Flash2X Wallpaper Maker v1.1.0 Datecode 061707 Incl Keymaker by ARN.zip.vir/install_patch.exe
22-III-2010 16:59:55 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\FlashGet v0.96a by TNT.zip.vir/run.exe
22-III-2010 17:00:02 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\flashtext 1.1 keygen by TSRh.zip.vir/setup.exe
22-III-2010 17:00:02 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\FloatSaver 2.61.zip.vir/patch.exe
22-III-2010 17:00:03 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\ForwardMail 3.54 (Serial).zip.vir/install_patch.exe
22-III-2010 17:00:07 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\FotoSlate v3.0.1.26 by HTBTeam.zip.vir/key_generator.exe
22-III-2010 17:00:08 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Fun Talk v1.1 Cracked by HERETiC.zip.vir/setup.exe
22-III-2010 17:00:12 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Futuremark 3DMark06 v1.0.2 by FFF.zip.vir/key_generator.exe
22-III-2010 17:00:13 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\G-Bee v1.3 by dBrAiN.zip.vir/install.exe
22-III-2010 17:00:14 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\GameHouse Mahjongg Investigations Under Suspicion v1.0.0.1 by BalCrNepal.zip.vir/run.exe
22-III-2010 17:00:17 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\GameHouse Pakoombo Serial by BalCrNepal.zip.vir/patch.exe
22-III-2010 17:00:20 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Gamehouse Roller Rush 1.0 for Mac (Serial).zip.vir/key_generator.exe
22-III-2010 17:00:21 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Garden Australia Screen Saver 1.0 keygen.zip.vir/install_patch.exe
22-III-2010 17:00:23 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Gem Thief v1.1.zip.vir/install.exe
22-III-2010 17:00:27 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\GH Super Jigsaw Puzzle Geddes Garden 1.1.9.0.zip.vir/key_gen.exe
22-III-2010 17:00:28 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Golden Nuggets Retail for SymbianOS S60v2 JAVA by RLYEH.zip.vir/run.exe
22-III-2010 17:00:28 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\GoGo CD To MP3 Ripper v1.4.5.4 by EXPLOSiON.zip.vir/key_generator.exe
22-III-2010 17:00:36 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\HiFiSoft RM Audio Converter v1.00 Keygen Only by EXPLOSiON.zip.vir/install.exe
22-III-2010 17:00:36 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Ham Helper 1.2 (Serial).zip.vir/crac.exe
22-III-2010 17:00:36 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Hkvstore ASPMaker v5.2.0.0 Incl Keymaker by ZWT.zip.vir/crac.exe
22-III-2010 17:00:41 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\HomeGauge v2.7.030830.zip.vir/key_gen.exe
22-III-2010 17:00:43 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\HTMLCompact 2.0.0.1.zip.vir/install_crack.exe
22-III-2010 17:00:43 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Ice Blue Antarctica.zip.vir/setup.exe
22-III-2010 17:00:49 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Ideal Administration Advanced 5.31 (Serial).zip.vir/key_generator.exe
22-III-2010 17:00:50 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\IES QuickRWall v1.50.0009 Incl Keymaker by AGAiN.zip.vir/install_patch.exe
22-III-2010 17:00:51 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Illustrate! v5.10 build 1.zip.vir/install_crack.exe
22-III-2010 17:00:55 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Image Browser Arctic 4.2 (Serial).zip.vir/keygen.exe
22-III-2010 17:00:56 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\InBloom Shop Software 2.0.57.zip.vir/key_gen.exe
22-III-2010 17:00:56 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Imaginet Finger Clix v2.1 build 343 Retail for Pocket PC ARM 2003-2005 by RLYEH.zip.vir/key_gen.exe
22-III-2010 17:00:59 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\InstantServers IsMail v1.8.86 by ZWT.zip.vir/crac.exe
22-III-2010 17:01:03 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Instyler Ex-it! v1.5.zip.vir/crac.exe
22-III-2010 17:01:04 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Intel Fortran Compiler v10.0.025 LINUX by TBE.zip.vir/install.exe
22-III-2010 17:01:05 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Internet Connection Counter v5.2 by diablo2oo2.zip.vir/key_gen.exe
22-III-2010 17:01:11 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\IP-Tools v2.07 by YR.zip.vir/run.exe
22-III-2010 17:01:11 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\iOrgSoft DVD to MP4 Converter 3.1.8.zip.vir/serial.exe
22-III-2010 17:01:11 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\IT Office Calculator 1.0.zip.vir/run.exe
22-III-2010 17:01:17 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\JPEmail 1.01.zip.vir/crac.exe
22-III-2010 17:01:18 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Keyboard Guardian 1.1.zip.vir/key_gen.exe
22-III-2010 17:01:19 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\KeyPass 2.5.0 (Serial).zip.vir/serial.exe
22-III-2010 17:01:23 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Koala Term 3.3 (Serial).zip.vir/install.exe
22-III-2010 17:01:26 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Konvertor v3.72.4 by DJiNN.zip.vir/install_crack.exe
22-III-2010 17:01:26 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\KoolMoves v5.2.5 Retail Incl Keymaker by ZWT.zip.vir/setup.exe
22-III-2010 17:01:29 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Kylom Finanz v2.00 for SymbianOS S60.zip.vir/install.exe
22-III-2010 17:01:33 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\LAGO Multi-product Keygen v2.03.zip.vir/serial.exe
22-III-2010 17:01:33 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Lan Bridge 1.35.2 (Serial).zip.vir/setup.exe
22-III-2010 17:01:36 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Lydia v3.3.zip.vir/key_generator.exe
22-III-2010 17:01:37 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Map Designer 1.2.zip.vir/keygen.exe
22-III-2010 17:01:40 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Maze Magic 1.0 (Serial).zip.vir/key_generator.exe
22-III-2010 17:01:42 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Meedio Essentials v1.29 WinALL CRACKED by LUCiD.zip.vir/install_patch.exe
22-III-2010 17:01:43 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\MemMonster 2001 Gold Edition Regfile.zip.vir/key_generator.exe
22-III-2010 17:01:47 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Microangelo v5.56 by N-GeN.zip.vir/setup.exe
22-III-2010 17:01:47 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\MindManager 4.0 Standard Edition by AmoK.zip.vir/serial.exe
22-III-2010 17:01:49 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\MiniSetup Utility 1.3.7.zip.vir/keygen.exe
22-III-2010 17:01:54 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Modified File Backup 9.43.zip.vir/run.exe
22-III-2010 17:01:54 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\mirosoft windows xp home edition (Serial).zip.vir/install.exe
22-III-2010 17:01:55 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Modified File Backup v7.19t by AT4RE.zip.vir/install.exe
22-III-2010 17:02:00 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\MP3 To CD Plus 1.0.zip.vir/key_gen.exe
22-III-2010 17:02:01 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\MPS JavaScript Editor 2000 v2.0.zip.vir/key_gen.exe
22-III-2010 17:02:02 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Multi Clipboard v.m9.49.01 by SND.zip.vir/key_gen.exe
22-III-2010 17:02:07 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\N-Ball v2.2 by TLG.zip.vir/run.exe
22-III-2010 17:02:07 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\NewsReactor v1.0.8936 Keygen And Patch Only by EXPLOSiON.zip.vir/keygen.exe
22-III-2010 17:02:08 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\O'Basic 97 v97.0.33 build 07.zip.vir/crac.exe
22-III-2010 17:02:15 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Outlook Backup Assistant v1.0.2.28 German.zip.vir/install_crack.exe
22-III-2010 17:02:15 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\P3App Retail for PocketPC by RLYEH.zip.vir/keygen.exe
22-III-2010 17:02:17 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PC Security v6.4 by SND.zip.vir/crac.exe
22-III-2010 17:02:21 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PC Soccer 3.05.zip.vir/install_crack.exe
22-III-2010 17:02:22 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PCAdresszz Server v3.02 German by ViRiLiTY.zip.vir/install_patch.exe
22-III-2010 17:02:24 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PDF Optimizer 2.0.zip.vir/key_generator.exe
22-III-2010 17:02:26 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PE-MU 3.30 (Serial).zip.vir/run.exe
22-III-2010 17:02:29 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\phatware phatpad 2.0 pocket pc and pc keygen by TSRh.zip.vir/key_gen.exe
22-III-2010 17:02:31 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Phobia Dictionary v1.0.0.zip.vir/install_patch.exe
22-III-2010 17:02:32 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Photo Collage Maker v1.55 by REVENGE.zip.vir/serial.exe
22-III-2010 17:02:35 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Photo-Brush v2.1.zip.vir/key_gen.exe
22-III-2010 17:02:37 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PicDownloader v4.0.zip.vir/install_crack.exe
22-III-2010 17:02:39 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Pocketkai Auto Softreset .NET v1.3 Retail Multilanguage for Pocket PC.zip.vir/keygen.exe
22-III-2010 17:02:42 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Poise 1.0.10.4 patch.zip.vir/install.exe
22-III-2010 17:02:44 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PopUpKiller and DialerDetector 2.2.zip.vir/keygen.exe
22-III-2010 17:02:47 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PowerTCP Zip Compression for .NET 1.0.0 (Serial).zip.vir/key_gen.exe
22-III-2010 17:02:48 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PrimaSoft Car Organizer Deluxe v1.8 by Eclipse.zip.vir/keygen.exe
22-III-2010 17:02:50 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Printety ICT 1.02 CrAcKed.zip.vir/patch.exe
22-III-2010 17:02:54 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Property Cafe v2.0 by diGERATi.zip.vir/serial.exe
22-III-2010 17:02:54 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\ProcWatch 1.1.zip.vir/install.exe
22-III-2010 17:02:57 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\PTGui v3.5.zip.vir/install.exe
22-III-2010 17:03:01 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Quake 2 No-CD Patch.zip.vir/key_gen.exe
22-III-2010 17:03:01 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\QBIIFUI 1.00 (Serial).zip.vir/setup.exe
22-III-2010 17:03:03 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\RaimaRadio v2.16 by SND.zip.vir/install.exe
22-III-2010 17:03:09 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Record Playing Music On Computer Software 7.0.zip.vir/keygen.exe
22-III-2010 17:03:09 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Registry Studio 1.0.zip.vir/install_crack.exe
22-III-2010 17:03:09 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Reflexive Arcade ALL Games Unlock Patch v2.0 Fixed by Hack ThE PaRaDiSe.zip.vir/keygen.exe
22-III-2010 17:03:16 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\RZUpload 1.01 (Serial).zip.vir/keygen.exe
22-III-2010 17:03:16 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Safari Adventures in Africa NoCD Crack by TNT.zip.vir/key_generator.exe
22-III-2010 17:03:17 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\S2 Zoop v1.0 by TBE.zip.vir/install.exe
22-III-2010 17:03:22 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\SafeApp Software Registry Helper v1.1.326 by TE.zip.vir/patch.exe
22-III-2010 17:03:23 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\SBSH Papyrus v1.4.02 Retail for SymbianOS7 S60 by RLYEH.zip.vir/install.exe
22-III-2010 17:03:23 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Scrabble 1.XX for Pocket PC (Serial).zip.vir/patch.exe
22-III-2010 17:03:30 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Search Easy 1.01.zip.vir/setup.exe
22-III-2010 17:03:30 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Shadow Defender v1.1.0.315 32Bit by AT4RE.zip.vir/serial.exe
22-III-2010 17:03:30 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Sims 2 - Open for Business 1.0 (Serial).zip.vir/crac.exe
22-III-2010 17:03:37 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Site Translator 1.60.zip.vir/key_gen.exe
22-III-2010 17:03:37 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\SkelaXin RAM Booster PRO v1.0.zip.vir/keygen.exe
22-III-2010 17:03:37 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\SmashTown Junk Yard v1.04 PLUS 1 TRAINER by PiZZA.zip.vir/serial.exe
22-III-2010 17:03:44 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\SocketTools Secure Scripting Edition 6.00.6000 keygen.zip.vir/install.exe
22-III-2010 17:03:44 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\SoftCopy v2.1.1 Incl Keygen by Lz0.zip.vir/patch.exe
22-III-2010 17:03:45 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\SMTPTo v2.00.0104.zip.vir/serial.exe
22-III-2010 17:03:51 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Sony DVD Architect v3.0b by SSG.zip.vir/install_patch.exe
22-III-2010 17:03:51 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\SoundEditor 6.2.zip.vir/install_crack.exe
22-III-2010 17:03:51 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\SP VIDEO 3.02.zip.vir/run.exe
22-III-2010 17:03:58 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Spy-CD 4.21 (Serial).zip.vir/crac.exe
22-III-2010 17:03:58 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Steganos Internet Anonym v2.06.zip.vir/run.exe
22-III-2010 17:03:58 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Strategic Command v1.03 [ENGLISH] No-CD Fixed EXE 1.zip.vir/setup.exe
22-III-2010 17:04:05 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Super Screensaver Builder Standard 6.2.006 (Serial).zip.vir/install_patch.exe
22-III-2010 17:04:05 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Sybase DBLibrary Access Library for DBTools h 3.1.1 (Serial).zip.vir/run.exe
22-III-2010 17:04:05 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Surfsup Retail JAVA Nokia 3510i by RLYEH.zip.vir/install_patch.exe
22-III-2010 17:04:10 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Sygate Office Network v4.2.803 by Distinct.zip.vir/setup.exe
22-III-2010 17:04:11 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Systweak Boost XP v2.0 by ZWT.zip.vir/install_patch.exe
22-III-2010 17:04:12 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Tachyon The Fringe (Serial).zip.vir/setup.exe
22-III-2010 17:04:19 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\TealPoint TealAlias v1.20 for PalmOS.zip.vir/keygen.exe
22-III-2010 17:04:19 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Tavrida Phone 1.52 (Serial).zip.vir/crac.exe
22-III-2010 17:04:19 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\TetFun 2000 v1.9.zip.vir/run.exe
22-III-2010 17:04:23 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\The Font Creator Program 3.1.3 (Serial).zip.vir/crac.exe
22-III-2010 17:04:24 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\The Sims 2 Teen Style Stuff.zip.vir/run.exe
22-III-2010 17:04:27 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Total Commander Universal Pro Activator.zip.vir/install_crack.exe
22-III-2010 17:04:29 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Trespasser 11 CD-Copy.zip.vir/run.exe
22-III-2010 17:04:31 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\tune up utilities 2004 (Serial).zip.vir/install_patch.exe
22-III-2010 17:04:34 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Typing Assistant v2.2 by PSC.zip.vir/crac.exe
22-III-2010 17:04:35 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Ultra Lingua English Definitions and Thesaurus 4.4.0 (Serial).zip.vir/install.exe
22-III-2010 17:04:39 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Understand for Ada 1.4.225 (Serial).zip.vir/install_crack.exe
22-III-2010 17:04:39 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Understand for Java v1.4.368 SOLARIS by Lz0.zip.vir/key_generator.exe
22-III-2010 17:04:41 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\URLmaster 3.1 by DBC.zip.vir/setup.exe
22-III-2010 17:04:45 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\URLmaster 3.1 by TMG.zip.vir/keygen.exe
22-III-2010 17:04:45 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\VideoLive Mail 4.0.zip.vir/install_patch.exe
22-III-2010 17:04:47 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Virtual Print Server 1.0.zip.vir/serial.exe
22-III-2010 17:04:50 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\VisionLab Studio 1.005.014.zip.vir/install.exe
22-III-2010 17:04:53 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\VTrain 4.50 (Serial).zip.vir/install_crack.exe
22-III-2010 17:04:54 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\VuePrint 8.0-key.zip.vir/patch.exe
22-III-2010 17:04:56 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Web Confidential Pro 1.1.zip.vir/key_gen.exe
22-III-2010 17:05:01 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Windows Help Maker II.zip.vir/install_crack.exe
22-III-2010 17:05:01 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\WinChanger 2000 4.0 (Serial).zip.vir/install.exe
22-III-2010 17:05:04 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\WWWhack v1.946.103.2.zip.vir/install_patch.exe
22-III-2010 17:05:08 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\XaraX v1.0a Crack.zip.vir/keygen.exe
22-III-2010 17:05:09 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Xchat v2.8.7e by FFF.zip.vir/run.exe
22-III-2010 17:05:13 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Xrgomics TenGO Keyboard v2.00 for Pocket PC 2003 2005.zip.vir/crac.exe
22-III-2010 17:05:14 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Zen Garden v1.0 Retail for iPhone (3G) iPod Touch by RLYEH.zip.vir/serial.exe
22-III-2010 17:05:16 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Documents and Settings\uzivatel\Data aplikací\m\shared\Zero Trace 1.0 (Serial).zip.vir/keygen.exe
22-III-2010 17:05:20 Detected: Trojan.Win32.Lebag.xp C:\Qoobox\Quarantine\C\WINDOWS\wintems.exe.vir
22-III-2010 17:05:20 Detected: Trojan.Win32.Lebag.xp C:\Qoobox\Quarantine\C\WINDOWS\mdelk.exe.vir
22-III-2010 17:05:20 Detected: HEUR:Trojan.Win32.Generic C:\Qoobox\Quarantine\C\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe.vir
22-III-2010 17:05:39 Detected: HEUR:Backdoor.Win32.Generic C:\Qoobox\Quarantine\C\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe.vir
22-III-2010 17:05:43 Detected: Trojan-Downloader.Win32.Bagle.avs C:\Qoobox\Quarantine\C\WINDOWS\system32\wfsintwq.sys.vir
22-III-2010 17:05:47 Cannot be deleted: Trojan-Downloader.Win32.Bagle.avs C:\Qoobox\Quarantine\C\WINDOWS\system32\wfsintwq.sys.vir Object not found
22-III-2010 17:05:49 Deleted: Trojan.Win32.Lebag.xp C:\Qoobox\Quarantine\C\WINDOWS\wintems.exe.vir
22-III-2010 17:05:50 Deleted: Trojan.Win32.Lebag.xp C:\Qoobox\Quarantine\C\WINDOWS\mdelk.exe.vir
22-III-2010 17:06:15 Detected: Trojan.Win32.Lebag.xp C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000189.exe
22-III-2010 17:06:16 Detected: HEUR:Trojan.Win32.Generic C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000350.exe
22-III-2010 17:06:16 Detected: HEUR:Trojan.Win32.Generic C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000349.exe
22-III-2010 17:06:17 Detected: HEUR:Backdoor.Win32.Generic C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000350.exe
22-III-2010 17:06:17 Detected: HEUR:Backdoor.Win32.Generic C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000349.exe
22-III-2010 17:06:21 Detected: Trojan.Win32.Lebag.xp C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000351.exe
22-III-2010 17:06:22 Detected: Trojan.Win32.Lebag.xp C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000353.exe
22-III-2010 17:06:27 Deleted: Trojan.Win32.Lebag.xp C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000189.exe
22-III-2010 17:06:33 Deleted: Trojan.Win32.Lebag.xp C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000351.exe
22-III-2010 17:06:35 Deleted: Trojan.Win32.Lebag.xp C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP1\A0000353.exe
22-III-2010 17:06:35 Detected: MultiPacked.Multi.Generic C:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP2\A0000650.EXE/VGCrypt
22-III-2010 18:07:17 Detected: MultiPacked.Multi.Generic D:\Install\Copy\TOTALCMD\TOTALCMD.EXE/VGCrypt
22-III-2010 18:18:38 Detected: Trojan-Dropper.Win32.Delf.fl D:\Install\Photoshop 9 CZ\Adobe Photoshop CS2 CZ.ISO/Goodies/PROGRAMS & EXTRA STUFF/WinZip 9.0.6224-SR1.zip/WinZip 9.0.6224-SR1/WinZip-KEY-GEN.exe/ASPack
22-III-2010 18:18:38 Untreated: Trojan-Dropper.Win32.Delf.fl D:\Install\Photoshop 9 CZ\Adobe Photoshop CS2 CZ.ISO/Goodies/PROGRAMS & EXTRA STUFF/WinZip 9.0.6224-SR1.zip/WinZip 9.0.6224-SR1/WinZip-KEY-GEN.exe/ASPack Write not supported
22-III-2010 18:24:51 Detected: MultiPacked.Multi.Generic D:\System Volume Information\_restore{37BA5CB3-1285-4F53-A045-C8A24F1AE006}\RP2\A0000653.EXE/VGCrypt
22-III-2010 18:29:03 Task completed

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#24 Příspěvek od motji »

AVPtool našel akorát to, co už smazal combofix.

S počítačem to ted vypadá jak?


:arrow: Odinstalujte combofix přes Start - Spustit
- zkopírujte do okénka:

ComboFix /Uninstall

-stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.


***********


:arrow: Stáhněte T-Cleaner
http://sweb.cz/Marinus/T-Cleaner.exe

-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir



***********


:arrow: Z mého podpisu stahněte Ccleaner
- nainstalujte, při výběru, co se má nainstalovat, dejte pryč fajfku u instalace yahoo toolbaru

Obrázekzáložka čistič
- nechejte v levém sloupečku zatrhnuté vše jak je, klikněte na analyzovat
- po analýze klikněte na Spustit Ccleaner

Obrázekzáložka Registry
- klikněte na hledej problémy
- pak klikněte na opravit vybrané problémy -- udělat zálohu registrů - nemusíte
- kliknete opravit všechny problémy :arrow: ok :arrow: zavřít

Obrázek Záložka Nástroje
- zde můžete odinstalovat programy. Je to důkladnější odinstalace než u přidat/odebrat programy ve Windows.

Ccleaner - čistič doporučuji používat, krásně pročistí pc od dočasných souborů.
Registry pročistí třeba po odinstalaci nějakého programu.


***********



:arrow: Stahněte OTC a použijte
http://oldtimer.geekstogo.com/OTC.exe
-vyčistí tempy a po použitých programech



***********

:arrow: Vložte nový log ze RSIT a řekněte co počítač, jak se chová, už je vše v pořádku?

Můžete ještě udělat ty logy z rootrepealu?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Jeanuss
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 19 bře 2010 11:50

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#25 Příspěvek od Jeanuss »

RootRepeal na začátku scanu u Files píše u disku C: Could not read the boot sector. Try adjusting the Disk Access Level in the Options dialog, a u disku D: Error - could not inti. MFT runlist!
Toto píše u levelů Lowes, Middle a High. U levelu Special po zaškrtnutí disků a stlačení OK naskočí modrá smrt, kde mimo těch vět, které se vždy opakují je jen Stop: 0000 ...... Jestli je důležitá, napíšu ji přesně. Nepíše to nic o žádném file.sys apod.


U hidden services to píše chybu: Could not read system registry! Please contact the author!

zde jsou logy z ostatních záložek, které šly spustit:
http://leteckaposta.cz/618912280

PC se zatím chová normálně. Jdu na ten další postup.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#26 Příspěvek od motji »

Omlouvám se, musím od počítače, logy z rootrepealu projdu později, zatím jsem se dívala jen zběžně.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Jeanuss
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 19 bře 2010 11:50

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#27 Příspěvek od Jeanuss »

Tak jsem vše dočistil a vše se chová normálně. Pokud bych měl ještě něco udělat, napište.

Zatím mockrát děkuji za Vaši pomoc.

Jeanuss
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 19 bře 2010 11:50

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#28 Příspěvek od Jeanuss »

Zapomněl jsem ještě na ten nový log z RSITu. Zde je:

Logfile of random's system information tool 1.06 (written by random/random)
Run by uzivatel at 2010-03-23 11:22:59
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 7 GB (30%) free of 25 GB
Total RAM: 1023 MB (30% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:23:17, on 23-III-2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16981)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\D-Tools\daemon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe
C:\WINDOWS\TBPanel.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\oodtray.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files\DU Super Controler\DUSuperControler.exe
C:\Program Files\DU Super Controler\DUSuperControler.exe
C:\Program Files\ACD Systems\ImageFox\ImageFox.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtBty.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\Program Files\Microsoft Office\Office10\EXCEL.EXE
C:\Program Files\Opera\opera.exe
C:\totalcmd\TOTALCMD.EXE
C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\Opera\Opera\profile\cache4\temporary_download\RSIT.exe
C:\Program Files\trend micro\uzivatel.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - (no file)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [StatusClient] C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe /auto
O4 - HKLM\..\Run: [TomcatStartup] C:\Program Files\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\K-Lite Codec Pack\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Gainward] C:\WINDOWS\TBPanel.exe /A
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [OODefragTray] C:\WINDOWS\system32\oodtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe /boot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6.5\ICQ.exe" silent
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [BrowserChoice] "C:\WINDOWS\system32\browserchoice.exe" /run
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Outlook Express.lnk = C:\Program Files\Outlook Express\msimn.exe
O4 - Startup: _uninst_setup_9.0.0.722_22.03.2010_16-46.exe.lnk = C:\Documents and Settings\uzivatel\Local Settings\temp\_uninst_setup_9.0.0.722_22.03.2010_16-46.exe.bat
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: DUSuperControler.lnk = C:\Program Files\DU Super Controler\DUSuperControler.exe
O4 - Global Startup: ImageFox.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 2483441515
O16 - DPF: {8739DA95-2E66-4A11-9F63-2F5808C7C31F} (WebCamX Control) - http://10.0.0.100/WebCamX.cab
O16 - DPF: {CEEFE929-741C-4323-B7FE-C17CA6DA3A01} (WebCamX Control) - http://88.146.134.53:5550/WebCamX.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{5700BC50-E7AC-49BC-9789-94EDCB6DD936}: NameServer = 10.0.0.138
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apache2 - Advanced Micro Devices - (no file)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Machine Debug Manager (MDM) - Unknown owner - C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe (file missing)
O23 - Service: MySql - Unknown owner - C:/PROGRA~1/PHPHOM~1/mysql/bin/mysqld-nt.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 11300 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\HPFRU Task #Hewlett-Packard#hp officejet 7100 series#1162980031.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{B45F05A0-7EB7-4525-90BC-0FB799E08947}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-08-04 1586472]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-02-06 279664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll [2010-02-06 812528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-10-11 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{E0E899AB-F487-11D5-8D29-0050BA6940E3}
{4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C}

{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-02-06 279664]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2007-11-28 8523776]
"nwiz"=nwiz.exe /install []
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"DAEMON Tools-1033"=C:\Program Files\D-Tools\daemon.exe [2004-08-22 81920]
"NeroCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"StatusClient"=C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe [2002-12-16 36864]
"TomcatStartup"=C:\Program Files\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe [2003-03-31 155648]
"QuickTime Task"=C:\Program Files\K-Lite Codec Pack\QuickTime\qttask.exe [2007-12-06 155648]
"Gainward"=C:\WINDOWS\TBPanel.exe [2007-11-27 2189864]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2007-11-28 81920]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2006-03-02 208952]
"MSPY2002"=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2006-03-02 59392]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2006-03-02 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2006-03-02 455168]
"OODefragTray"=C:\WINDOWS\system32\oodtray.exe [2007-05-11 2512392]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"TrojanScanner"=C:\Program Files\Trojan Remover\Trjscan.exe [2010-03-22 1070984]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-18 16207872]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-02-26 2140880]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\\Phone\Skype.exe [2009-10-09 25623336]
"ICQ"=C:\Program Files\ICQ6.5\ICQ.exe [2009-11-16 172792]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"BrowserChoice"=C:\WINDOWS\system32\browserchoice.exe [2010-02-12 293376]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth Manager.lnk - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
DUSuperControler.lnk - C:\Program Files\DU Super Controler\DUSuperControler.exe
ImageFox.lnk - C:\WINDOWS\Installer\{92E64C51-5096-442F-9A44-61CB2941391D}\NewShortcut1.exe
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE

C:\Documents and Settings\uzivatel\Nabídka Start\Programy\Po spuštění
Outlook Express.lnk - C:\Program Files\Outlook Express\msimn.exe
_uninst_setup_9.0.0.722_22.03.2010_16-46.exe.lnk - C:\Documents and Settings\uzivatel\Local Settings\temp\_uninst_setup_9.0.0.722_22.03.2010_16-46.exe.bat

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"HonorAutoRunSetting"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Program Files\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe"="C:\Program Files\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe:*:Enabled:javaw"
"C:\Program Files\DSS\CM3000\phone.exe"="C:\Program Files\DSS\CM3000\phone.exe:*:Enabled:phone"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Install\eMule\emule.exe"="C:\Install\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath "

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 1 months======

2010-03-23 11:23:00 ----D---- C:\Program Files\trend micro
2010-03-23 11:22:59 ----D---- C:\rsit
2010-03-23 10:22:30 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-03-23 10:13:30 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-03-23 09:49:27 ----D---- C:\Program Files\CCleaner
2010-03-23 09:33:44 ----A---- C:\RootRepeal report 03-23-10 (09-33-44).txt
2010-03-23 09:33:01 ----A---- C:\RootRepeal report 03-23-10 (09-33-01).txt
2010-03-23 09:12:30 ----D---- C:\WINDOWS\Minidump
2010-03-22 16:12:53 ----SHD---- C:\RECYCLER
2010-03-22 15:30:23 ----D---- C:\WINDOWS\CSC
2010-03-22 15:13:29 ----D---- C:\Program Files\ESET
2010-03-22 14:39:03 ----D---- C:\tygr.com20247t
2010-03-22 14:36:17 ----A---- C:\Boot.bak
2010-03-22 14:36:13 ----RASHD---- C:\cmdcons
2010-03-22 14:35:09 ----D---- C:\tygr.com
2010-03-22 08:28:10 ----A---- C:\SAFEBOOT_REPAIR.TXT
2010-03-19 15:41:57 ----RAD---- C:\autorun.inf
2010-03-19 11:49:16 ----D---- C:\Program Files\HijackThis
2010-03-17 17:38:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2010-03-17 17:25:26 ----HD---- C:\Documents and Settings\uzivatel\Data aplikací\m
2010-03-16 09:58:02 ----D---- C:\WINDOWS\pss
2010-03-11 10:31:56 ----D---- C:\Program Files\IObit
2010-03-11 10:31:56 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\IObit
2010-03-11 10:24:50 ----D---- C:\Program Files\Lark Anti-Spyware
2010-03-10 14:31:42 ----A---- C:\WINDOWS\ban_list.txt
2010-03-10 14:28:04 ----HD---- C:\Documents and Settings\uzivatel\Data aplikací\drivers
2010-03-10 13:56:11 ----D---- C:\Program Files\Typing Invaders
2010-03-10 13:03:24 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-03-01 13:47:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-03-01 13:47:05 ----D---- C:\Program Files\Common Files\Adobe
2010-02-24 13:00:18 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$

======List of files/folders modified in the last 1 months======

2143-03-29 10:55:44 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\ACD Systems
2010-03-23 11:23:06 ----D---- C:\WINDOWS\Prefetch
2010-03-23 11:23:00 ----RD---- C:\Program Files
2010-03-23 11:23:00 ----D---- C:\WINDOWS\Temp
2010-03-23 11:19:40 ----A---- C:\WINDOWS\DFC.INI
2010-03-23 10:26:33 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\Skype
2010-03-23 10:25:59 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\ICQ
2010-03-23 10:25:28 ----D---- C:\WINDOWS
2010-03-23 10:23:52 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-03-23 10:22:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2010-03-23 10:22:42 ----HD---- C:\WINDOWS\inf
2010-03-23 10:22:42 ----D---- C:\WINDOWS\system32
2010-03-23 10:22:38 ----D---- C:\WINDOWS\system32\CatRoot2
2010-03-23 09:59:55 ----D---- C:\WINDOWS\system32\drivers
2010-03-23 09:52:24 ----D---- C:\Program Files\Mozilla Firefox
2010-03-23 09:41:24 ----SHD---- C:\System Volume Information
2010-03-23 09:41:24 ----D---- C:\WINDOWS\system32\Restore
2010-03-23 09:30:24 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\ImageFox
2010-03-23 08:49:52 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\skypePM
2010-03-22 16:12:54 ----D---- C:\WINDOWS\Debug
2010-03-22 15:30:28 ----D---- C:\Documents and Settings
2010-03-22 15:13:57 ----SHD---- C:\WINDOWS\Installer
2010-03-22 14:48:30 ----A---- C:\WINDOWS\system.ini
2010-03-22 14:47:10 ----D---- C:\WINDOWS\system32\config
2010-03-22 14:44:55 ----D---- C:\WINDOWS\AppPatch
2010-03-22 14:44:55 ----D---- C:\Program Files\Common Files
2010-03-22 14:36:17 ----RASH---- C:\boot.ini
2010-03-22 13:14:11 ----AC---- C:\WINDOWS\WINTRAN.INI
2010-03-22 13:14:07 ----AC---- C:\WINDOWS\STXKBDTC.INI
2010-03-22 08:28:09 ----D---- C:\WINDOWS\repair
2010-03-19 15:49:12 ----D---- C:\Program Files\Outlook Express
2010-03-19 12:53:04 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2010-03-19 12:02:09 ----D---- C:\Program Files\SlySoft
2010-03-19 09:22:30 ----AC---- C:\WINDOWS\nero.INI
2010-03-11 09:17:39 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\Lavasoft
2010-03-10 13:03:30 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-03-10 13:03:28 ----D---- C:\Program Files\Movie Maker
2010-03-10 13:03:12 ----HD---- C:\WINDOWS\$hf_mig$
2010-03-02 06:30:12 ----A---- C:\WINDOWS\system32\MRT.exe
2010-03-01 16:50:03 ----D---- C:\WINDOWS\system32\oodag
2010-03-01 13:47:05 ----D---- C:\Program Files\Adobe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK8;AMD Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 36352]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-02-26 114984]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2010-02-26 95872]
R1 Tosrfcom;Bluetooth RFCOMM; C:\WINDOWS\System32\Drivers\tosrfcom.sys [2005-08-01 64896]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2010-02-26 139192]
R2 irda;Protokol IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192]
R2 TBPanel;TBPanel; C:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HomeQOS;HomeQOS Miniport; C:\WINDOWS\system32\DRIVERS\homeqos.sys [2004-01-20 36096]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-16 4275712]
R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688]
R3 mf;mf; C:\WINDOWS\system32\DRIVERS\mf.sys [2008-04-13 63744]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2007-11-28 7429088]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-02-17 34176]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-02-17 13056]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 toshidpt;Bluetooth HID Port; C:\WINDOWS\system32\drivers\Toshidpt.sys [2005-07-11 3712]
R3 tosporte;Bluetooth COM Port; C:\WINDOWS\system32\DRIVERS\tosporte.sys [2006-10-10 41600]
R3 tosrfbd;Bluetooth RFBUS; C:\WINDOWS\system32\DRIVERS\tosrfbd.sys [2007-01-12 113792]
R3 tosrfbnp;Bluetooth RFBNEP; C:\WINDOWS\System32\Drivers\tosrfbnp.sys [2006-11-20 36480]
R3 Tosrfhid;Bluetooth RFHID; C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys [2007-01-24 73728]
R3 tosrfnds;Bluetooth Personal Area Network; C:\WINDOWS\system32\DRIVERS\tosrfnds.sys [2005-01-06 18612]
R3 tosrfusb;Bluetooth USB Controller; C:\WINDOWS\system32\DRIVERS\tosrfusb.sys [2007-01-12 40576]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
S3 Cardex;Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 dot4;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2008-04-13 206976]
S3 Dot4Print;Ovladač třídy tiskárny standardu IEEE-1284.4; C:\WINDOWS\system32\DRIVERS\Dot4Prt.sys [2001-08-17 12928]
S3 Dot4Scan;Scan Class Driver for IEEE-1284.4; C:\WINDOWS\system32\DRIVERS\Dot4Scan.sys [2001-08-17 8704]
S3 dot4usb;Dot4USB Filter Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2001-10-24 23808]
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 motmodem;Motorola USB CDC ACM Driver; C:\WINDOWS\system32\DRIVERS\motmodem.sys [2007-02-27 21504]
S3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2006-11-15 47360]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 TosRfSnd;Bluetooth Audio; C:\WINDOWS\system32\drivers\tosrfsnd.sys [2007-01-22 53376]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;Motorola A1000 USB Modem Driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2008-04-13 26112]
S3 usbsermpt;Motorola USB Modem Driver for MPT; C:\WINDOWS\system32\DRIVERS\usbsermpt.sys [2007-08-23 22768]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-03-09 37768]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-02-26 810120]
R2 Irmon;Sledování infračerveného přenosu; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-10-11 153376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2007-11-28 155716]
R2 O&O Defrag;O&O Defrag; C:\WINDOWS\system32\oodag.exe [2007-05-11 1050120]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2007-02-02 118784]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-06 135664]
S2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe []
S2 MySql;MySql; C:/PROGRA~1/PHPHOM~1/mysql/bin/mysqld-nt.exe []
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-02-26 33560]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-03 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2002-08-01 65536]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#29 Příspěvek od motji »

U rootrepealu záložka Drivers a files spustit nešla?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Jeanuss
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 19 bře 2010 11:50

Re: Nejde nainstalovat Nod32, HijackThis, nejde spustit Spybot..

#30 Příspěvek od Jeanuss »

U Files mi to teď hodilo chybu: Attempt to read from address: 0x00c1a400

Drivers jsem předtím přeskočil. Log je zde:

ROOTREPEAL (c) AD, 2007-2009
==================================================
Scan Start Time: 2010/03/23 14:24
Program Version: Version 1.3.5.0
Windows Version: Windows XP SP3
==================================================

Drivers
-------------------
Name:
Image Path:
Address: 0xF7319000 Size: 98304 File Visible: No Signed: -
Status: -

Name:
Image Path:
Address: 0x00000000 Size: 0 File Visible: No Signed: -
Status: -

Name: ACPI.sys
Image Path: ACPI.sys
Address: 0xF7387000 Size: 188288 File Visible: - Signed: -
Status: -

Name: ACPI_HAL
Image Path: \Driver\ACPI_HAL
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

Name: afd.sys
Image Path: C:\WINDOWS\System32\drivers\afd.sys
Address: 0xBA2D7000 Size: 138496 File Visible: - Signed: -
Status: -

Name: AmdK8.sys
Image Path: C:\WINDOWS\system32\DRIVERS\AmdK8.sys
Address: 0xF76CC000 Size: 57344 File Visible: - Signed: -
Status: -

Name: ATMFD.DLL
Image Path: C:\WINDOWS\System32\ATMFD.DLL
Address: 0xBFFA0000 Size: 286720 File Visible: - Signed: -
Status: -

Name: audstub.sys
Image Path: C:\WINDOWS\system32\DRIVERS\audstub.sys
Address: 0xF7C1A000 Size: 3072 File Visible: - Signed: -
Status: -

Name: Beep.SYS
Image Path: C:\WINDOWS\System32\Drivers\Beep.SYS
Address: 0xF7A36000 Size: 4224 File Visible: - Signed: -
Status: -

Name: BOOTVID.dll
Image Path: C:\WINDOWS\system32\BOOTVID.dll
Address: 0xF78EC000 Size: 12288 File Visible: - Signed: -
Status: -

Name: Cdfs.SYS
Image Path: C:\WINDOWS\System32\Drivers\Cdfs.SYS
Address: 0xBACE5000 Size: 63744 File Visible: - Signed: -
Status: -

Name: cdrom.sys
Image Path: C:\WINDOWS\system32\DRIVERS\cdrom.sys
Address: 0xF6553000 Size: 62976 File Visible: - Signed: -
Status: -

Name: CLASSPNP.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\CLASSPNP.SYS
Address: 0xF751C000 Size: 53248 File Visible: - Signed: -
Status: -

Name: d347bus.sys
Image Path: d347bus.sys
Address: 0xF73B5000 Size: 155136 File Visible: - Signed: -
Status: -

Name: d347prt.sys
Image Path: d347prt.sys
Address: 0xF79E2000 Size: 5248 File Visible: - Signed: -
Status: -

Name: disk.sys
Image Path: disk.sys
Address: 0xF750C000 Size: 36352 File Visible: - Signed: -
Status: -

Name: dmio.sys
Image Path: dmio.sys
Address: 0xF7331000 Size: 153856 File Visible: - Signed: -
Status: -

Name: dmload.sys
Image Path: dmload.sys
Address: 0xF79E0000 Size: 5888 File Visible: - Signed: -
Status: -

Name: drmk.sys
Image Path: C:\WINDOWS\system32\drivers\drmk.sys
Address: 0xF75CC000 Size: 61440 File Visible: - Signed: -
Status: -

Name: dump_nvata.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_nvata.sys
Address: 0xB8147000 Size: 102400 File Visible: No Signed: -
Status: -

Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xF7A80000 Size: 8192 File Visible: No Signed: -
Status: -

Name: Dxapi.sys
Image Path: C:\WINDOWS\System32\drivers\Dxapi.sys
Address: 0xBA1A2000 Size: 12288 File Visible: - Signed: -
Status: -

Name: dxg.sys
Image Path: C:\WINDOWS\System32\drivers\dxg.sys
Address: 0xBF9C4000 Size: 73728 File Visible: - Signed: -
Status: -

Name: dxgthk.sys
Image Path: C:\WINDOWS\System32\drivers\dxgthk.sys
Address: 0xF7B44000 Size: 4096 File Visible: - Signed: -
Status: -

Name: eamon.sys
Image Path: C:\WINDOWS\system32\DRIVERS\eamon.sys
Address: 0xB7C35000 Size: 794624 File Visible: - Signed: -
Status: -

Name: ehdrv.sys
Image Path: C:\WINDOWS\system32\DRIVERS\ehdrv.sys
Address: 0xEE043000 Size: 126976 File Visible: - Signed: -
Status: -

Name: epfwtdir.sys
Image Path: C:\WINDOWS\system32\DRIVERS\epfwtdir.sys
Address: 0xBA2F9000 Size: 98304 File Visible: - Signed: -
Status: -

Name: Fips.SYS
Image Path: C:\WINDOWS\System32\Drivers\Fips.SYS
Address: 0xBAD7A000 Size: 44544 File Visible: - Signed: -
Status: -

Name: fltmgr.sys
Image Path: fltmgr.sys
Address: 0xF72C8000 Size: 129792 File Visible: - Signed: -
Status: -

Name: Fs_Rec.SYS
Image Path: C:\WINDOWS\System32\Drivers\Fs_Rec.SYS
Address: 0xF7A34000 Size: 7936 File Visible: - Signed: -
Status: -

Name: ftdisk.sys
Image Path: ftdisk.sys
Address: 0xF7357000 Size: 125184 File Visible: - Signed: -
Status: -

Name: hal.dll
Image Path: C:\WINDOWS\system32\hal.dll
Address: 0x806D0000 Size: 131840 File Visible: - Signed: -
Status: -

Name: HDAudBus.sys
Image Path: C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
Address: 0xF522F000 Size: 163840 File Visible: - Signed: -
Status: -

Name: HIDCLASS.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\HIDCLASS.SYS
Address: 0xBAD5A000 Size: 36864 File Visible: - Signed: -
Status: -

Name: HIDPARSE.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\HIDPARSE.SYS
Address: 0xF6428000 Size: 28672 File Visible: - Signed: -
Status: -

Name: hidusb.sys
Image Path: C:\WINDOWS\system32\DRIVERS\hidusb.sys
Address: 0xF12E6000 Size: 10368 File Visible: - Signed: -
Status: -

Name: homeqos.sys
Image Path: C:\WINDOWS\system32\DRIVERS\homeqos.sys
Address: 0xF5E6A000 Size: 36096 File Visible: - Signed: -
Status: -

Name: HTTP.sys
Image Path: C:\WINDOWS\System32\Drivers\HTTP.sys
Address: 0xB716F000 Size: 265728 File Visible: - Signed: -
Status: -

Name: i8042prt.sys
Image Path: C:\WINDOWS\system32\DRIVERS\i8042prt.sys
Address: 0xF76EC000 Size: 52096 File Visible: - Signed: -
Status: -

Name: imapi.sys
Image Path: C:\WINDOWS\system32\DRIVERS\imapi.sys
Address: 0xF6563000 Size: 42112 File Visible: - Signed: -
Status: -

Name: ipnat.sys
Image Path: C:\WINDOWS\system32\DRIVERS\ipnat.sys
Address: 0xBA216000 Size: 152832 File Visible: - Signed: -
Status: -

Name: ipsec.sys
Image Path: C:\WINDOWS\system32\DRIVERS\ipsec.sys
Address: 0xBA392000 Size: 75264 File Visible: - Signed: -
Status: -

Name: irda.sys
Image Path: C:\WINDOWS\system32\DRIVERS\irda.sys
Address: 0xB7BA7000 Size: 88192 File Visible: - Signed: -
Status: -

Name: irenum.sys
Image Path: C:\WINDOWS\system32\DRIVERS\irenum.sys
Address: 0xF717C000 Size: 11264 File Visible: - Signed: -
Status: -

Name: irsir.sys
Image Path: C:\WINDOWS\system32\DRIVERS\irsir.sys
Address: 0xF77AC000 Size: 18688 File Visible: - Signed: -
Status: -

Name: isapnp.sys
Image Path: isapnp.sys
Address: 0xF74DC000 Size: 37248 File Visible: - Signed: -
Status: -

Name: kbdclass.sys
Image Path: C:\WINDOWS\system32\DRIVERS\kbdclass.sys
Address: 0xF77B4000 Size: 24576 File Visible: - Signed: -
Status: -

Name: KDCOM.DLL
Image Path: C:\WINDOWS\system32\KDCOM.DLL
Address: 0xF79DC000 Size: 8192 File Visible: - Signed: -
Status: -

Name: kmixer.sys
Image Path: C:\WINDOWS\system32\drivers\kmixer.sys
Address: 0xB6017000 Size: 172416 File Visible: - Signed: -
Status: -

Name: ks.sys
Image Path: C:\WINDOWS\system32\DRIVERS\ks.sys
Address: 0xF5257000 Size: 143360 File Visible: - Signed: -
Status: -

Name: KSecDD.sys
Image Path: KSecDD.sys
Address: 0xF729F000 Size: 92928 File Visible: - Signed: -
Status: -

Name: mf.sys
Image Path: C:\WINDOWS\system32\DRIVERS\mf.sys
Address: 0xF5E8A000 Size: 63744 File Visible: - Signed: -
Status: -

Name: mnmdd.SYS
Image Path: C:\WINDOWS\System32\Drivers\mnmdd.SYS
Address: 0xF7A4C000 Size: 4224 File Visible: - Signed: -
Status: -

Name: mouclass.sys
Image Path: C:\WINDOWS\system32\DRIVERS\mouclass.sys
Address: 0xF77BC000 Size: 23040 File Visible: - Signed: -
Status: -

Name: mouhid.sys
Image Path: C:\WINDOWS\system32\DRIVERS\mouhid.sys
Address: 0xF12E2000 Size: 12160 File Visible: - Signed: -
Status: -

Name: MountMgr.sys
Image Path: MountMgr.sys
Address: 0xF74EC000 Size: 42368 File Visible: - Signed: -
Status: -

Name: mrxdav.sys
Image Path: C:\WINDOWS\system32\DRIVERS\mrxdav.sys
Address: 0xB790D000 Size: 180608 File Visible: - Signed: -
Status: -

Name: mrxsmb.sys
Image Path: C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
Address: 0xBA23C000 Size: 455424 File Visible: - Signed: -
Status: -

Name: Msfs.SYS
Image Path: C:\WINDOWS\System32\Drivers\Msfs.SYS
Address: 0xF6440000 Size: 19072 File Visible: - Signed: -
Status: -

Name: msgpc.sys
Image Path: C:\WINDOWS\system32\DRIVERS\msgpc.sys
Address: 0xF5E2A000 Size: 35072 File Visible: - Signed: -
Status: -

Name: mssmbios.sys
Image Path: C:\WINDOWS\system32\DRIVERS\mssmbios.sys
Address: 0xF6E46000 Size: 15488 File Visible: - Signed: -
Status: -

Name: Mup.sys
Image Path: Mup.sys
Address: 0xF71B8000 Size: 105344 File Visible: - Signed: -
Status: -

Name: NDIS.sys
Image Path: NDIS.sys
Address: 0xF71D2000 Size: 182656 File Visible: - Signed: -
Status: -

Name: ndistapi.sys
Image Path: C:\WINDOWS\system32\DRIVERS\ndistapi.sys
Address: 0xF6E6A000 Size: 10112 File Visible: - Signed: -
Status: -

Name: ndiswan.sys
Image Path: C:\WINDOWS\system32\DRIVERS\ndiswan.sys
Address: 0xF5196000 Size: 91520 File Visible: - Signed: -
Status: -

Name: NDProxy.SYS
Image Path: C:\WINDOWS\System32\Drivers\NDProxy.SYS
Address: 0xF772C000 Size: 40576 File Visible: - Signed: -
Status: -

Name: netbios.sys
Image Path: C:\WINDOWS\system32\DRIVERS\netbios.sys
Address: 0xBAD9A000 Size: 34688 File Visible: - Signed: -
Status: -

Name: netbt.sys
Image Path: C:\WINDOWS\system32\DRIVERS\netbt.sys
Address: 0xBA311000 Size: 162816 File Visible: - Signed: -
Status: -

Name: Npfs.SYS
Image Path: C:\WINDOWS\System32\Drivers\Npfs.SYS
Address: 0xF6438000 Size: 30848 File Visible: - Signed: -
Status: -

Name: Ntfs.sys
Image Path: Ntfs.sys
Address: 0xF71FF000 Size: 574976 File Visible: - Signed: -
Status: -

Name: ntkrnlpa.exe
Image Path: C:\WINDOWS\system32\ntkrnlpa.exe
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

Name: Null.SYS
Image Path: C:\WINDOWS\System32\Drivers\Null.SYS
Address: 0xF7B37000 Size: 2944 File Visible: - Signed: -
Status: -

Name: nv4_disp.dll
Image Path: C:\WINDOWS\System32\nv4_disp.dll
Address: 0xBF9D6000 Size: 5771264 File Visible: - Signed: -
Status: -

Name: nv4_mini.sys
Image Path: C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
Address: 0xF56F4000 Size: 7429088 File Visible: - Signed: -
Status: -

Name: nvata.sys
Image Path: nvata.sys
Address: 0xF7300000 Size: 100736 File Visible: - Signed: -
Status: -

Name: NVENETFD.sys
Image Path: C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
Address: 0xF5E0A000 Size: 34176 File Visible: - Signed: -
Status: -

Name: nvnetbus.sys
Image Path: C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
Address: 0xF7980000 Size: 13056 File Visible: - Signed: -
Status: -

Name: NVNRM.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\NVNRM.SYS
Address: 0xF51E4000 Size: 307200 File Visible: - Signed: -
Status: -

Name: NVSNPU.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\NVSNPU.SYS
Address: 0xF51AD000 Size: 225280 File Visible: - Signed: -
Status: -

Name: parport.sys
Image Path: C:\WINDOWS\system32\DRIVERS\parport.sys
Address: 0xF56CC000 Size: 80000 File Visible: - Signed: -
Status: -

Name: PartMgr.sys
Image Path: PartMgr.sys
Address: 0xF7764000 Size: 19712 File Visible: - Signed: -
Status: -

Name: ParVdm.SYS
Image Path: C:\WINDOWS\System32\Drivers\ParVdm.SYS
Address: 0xF7A86000 Size: 6784 File Visible: - Signed: -
Status: -

Name: pci.sys
Image Path: pci.sys
Address: 0xF7376000 Size: 68736 File Visible: - Signed: -
Status: -

Name: pciide.sys
Image Path: pciide.sys
Address: 0xF7AA4000 Size: 3328 File Visible: - Signed: -
Status: -

Name: PCIIDEX.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\PCIIDEX.SYS
Address: 0xF775C000 Size: 28672 File Visible: - Signed: -
Status: -

Name: PnpManager
Image Path: \Driver\PnpManager
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

Name: portcls.sys
Image Path: C:\WINDOWS\system32\drivers\portcls.sys
Address: 0xEF294000 Size: 147456 File Visible: - Signed: -
Status: -

Name: psched.sys
Image Path: C:\WINDOWS\system32\DRIVERS\psched.sys
Address: 0xF5185000 Size: 69120 File Visible: - Signed: -
Status: -

Name: ptilink.sys
Image Path: C:\WINDOWS\system32\DRIVERS\ptilink.sys
Address: 0xF781C000 Size: 17792 File Visible: - Signed: -
Status: -

Name: PxHelp20.sys
Image Path: PxHelp20.sys
Address: 0xF752C000 Size: 35648 File Visible: - Signed: -
Status: -

Name: rasacd.sys
Image Path: C:\WINDOWS\system32\DRIVERS\rasacd.sys
Address: 0xF512D000 Size: 8832 File Visible: - Signed: -
Status: -

Name: rasirda.sys
Image Path: C:\WINDOWS\system32\DRIVERS\rasirda.sys
Address: 0xF780C000 Size: 19584 File Visible: - Signed: -
Status: -

Name: rasl2tp.sys
Image Path: C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
Address: 0xF5E5A000 Size: 51328 File Visible: - Signed: -
Status: -

Name: raspppoe.sys
Image Path: C:\WINDOWS\system32\DRIVERS\raspppoe.sys
Address: 0xF5E4A000 Size: 41472 File Visible: - Signed: -
Status: -

Name: raspptp.sys
Image Path: C:\WINDOWS\system32\DRIVERS\raspptp.sys
Address: 0xF5E3A000 Size: 48384 File Visible: - Signed: -
Status: -

Name: raspti.sys
Image Path: C:\WINDOWS\system32\DRIVERS\raspti.sys
Address: 0xF7824000 Size: 16512 File Visible: - Signed: -
Status: -

Name: RAW
Image Path: \FileSystem\RAW
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

Name: rdbss.sys
Image Path: C:\WINDOWS\system32\DRIVERS\rdbss.sys
Address: 0xBA2AC000 Size: 175744 File Visible: - Signed: -
Status: -

Name: RDPCDD.sys
Image Path: C:\WINDOWS\System32\DRIVERS\RDPCDD.sys
Address: 0xF7A4E000 Size: 4224 File Visible: - Signed: -
Status: -

Name: rdpdr.sys
Image Path: C:\WINDOWS\system32\DRIVERS\rdpdr.sys
Address: 0xF5155000 Size: 196224 File Visible: - Signed: -
Status: -

Name: redbook.sys
Image Path: C:\WINDOWS\system32\DRIVERS\redbook.sys
Address: 0xF5E9A000 Size: 58496 File Visible: - Signed: -
Status: -

Name: rootrepeal.sys
Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys
Address: 0xEF1E3000 Size: 49152 File Visible: No Signed: -
Status: -

Name: RtkHDAud.sys
Image Path: C:\WINDOWS\system32\drivers\RtkHDAud.sys
Address: 0xEF2B8000 Size: 4435968 File Visible: - Signed: -
Status: -

Name: SCSIPORT.SYS
Image Path: C:\WINDOWS\System32\Drivers\SCSIPORT.SYS
Address: 0xF72E8000 Size: 98304 File Visible: - Signed: -
Status: -

Name: serenum.sys
Image Path: C:\WINDOWS\system32\DRIVERS\serenum.sys
Address: 0xF7180000 Size: 15744 File Visible: - Signed: -
Status: -

Name: serial.sys
Image Path: C:\WINDOWS\system32\DRIVERS\serial.sys
Address: 0xF76DC000 Size: 64256 File Visible: - Signed: -
Status: -

Name: sr.sys
Image Path: sr.sys
Address: 0xF72B6000 Size: 73344 File Visible: - Signed: -
Status: -

Name: srv.sys
Image Path: C:\WINDOWS\system32\DRIVERS\srv.sys
Address: 0xB7816000 Size: 353792 File Visible: - Signed: -
Status: -

Name: swenum.sys
Image Path: C:\WINDOWS\system32\DRIVERS\swenum.sys
Address: 0xF7A18000 Size: 4352 File Visible: - Signed: -
Status: -

Name: sysaudio.sys
Image Path: C:\WINDOWS\system32\drivers\sysaudio.sys
Address: 0xF763C000 Size: 60800 File Visible: - Signed: -
Status: -

Name: TBPanel.SYS
Image Path: C:\WINDOWS\System32\Drivers\TBPanel.SYS
Address: 0xF7A88000 Size: 4800 File Visible: - Signed: -
Status: -

Name: tcpip.sys
Image Path: C:\WINDOWS\system32\DRIVERS\tcpip.sys
Address: 0xBA339000 Size: 361600 File Visible: - Signed: -
Status: -

Name: TDI.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\TDI.SYS
Address: 0xF7814000 Size: 20480 File Visible: - Signed: -
Status: -

Name: termdd.sys
Image Path: C:\WINDOWS\system32\DRIVERS\termdd.sys
Address: 0xF5E1A000 Size: 40704 File Visible: - Signed: -
Status: -

Name: Toshidpt.sys
Image Path: C:\WINDOWS\system32\drivers\Toshidpt.sys
Address: 0xF7BCE000 Size: 3712 File Visible: - Signed: -
Status: -

Name: tosporte.sys
Image Path: C:\WINDOWS\system32\DRIVERS\tosporte.sys
Address: 0xF771C000 Size: 41600 File Visible: - Signed: -
Status: -

Name: tosrfbd.sys
Image Path: C:\WINDOWS\system32\DRIVERS\tosrfbd.sys
Address: 0xBA1D2000 Size: 113792 File Visible: - Signed: -
Status: -

Name: tosrfbnp.sys
Image Path: C:\WINDOWS\System32\Drivers\tosrfbnp.sys
Address: 0xBAD25000 Size: 36480 File Visible: - Signed: -
Status: -

Name: tosrfcom.sys
Image Path: C:\WINDOWS\System32\Drivers\tosrfcom.sys
Address: 0xF5E7A000 Size: 64896 File Visible: - Signed: -
Status: -

Name: Tosrfhid.sys
Image Path: C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys
Address: 0xBA170000 Size: 73728 File Visible: - Signed: -
Status: -

Name: tosrfnds.sys
Image Path: C:\WINDOWS\system32\DRIVERS\tosrfnds.sys
Address: 0xF6420000 Size: 17504 File Visible: - Signed: -
Status: -

Name: tosrfusb.sys
Image Path: C:\WINDOWS\system32\DRIVERS\tosrfusb.sys
Address: 0xBAD35000 Size: 40576 File Visible: - Signed: -
Status: -

Name: update.sys
Image Path: C:\WINDOWS\system32\DRIVERS\update.sys
Address: 0xF50CF000 Size: 384768 File Visible: - Signed: -
Status: -

Name: USBD.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\USBD.SYS
Address: 0xF7A2E000 Size: 8192 File Visible: - Signed: -
Status: -

Name: usbehci.sys
Image Path: C:\WINDOWS\system32\DRIVERS\usbehci.sys
Address: 0xF7804000 Size: 30208 File Visible: - Signed: -
Status: -

Name: usbhub.sys
Image Path: C:\WINDOWS\system32\DRIVERS\usbhub.sys
Address: 0xF75BC000 Size: 59520 File Visible: - Signed: -
Status: -

Name: usbohci.sys
Image Path: C:\WINDOWS\system32\DRIVERS\usbohci.sys
Address: 0xF77C4000 Size: 17152 File Visible: - Signed: -
Status: -

Name: USBPORT.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\USBPORT.SYS
Address: 0xF56A8000 Size: 147456 File Visible: - Signed: -
Status: -

Name: vga.sys
Image Path: C:\WINDOWS\System32\drivers\vga.sys
Address: 0xEB005000 Size: 20992 File Visible: - Signed: -
Status: -

Name: VIDEOPRT.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\VIDEOPRT.SYS
Address: 0xF56E0000 Size: 81920 File Visible: - Signed: -
Status: -

Name: VolSnap.sys
Image Path: VolSnap.sys
Address: 0xF74FC000 Size: 52480 File Visible: - Signed: -
Status: -

Name: wanarp.sys
Image Path: C:\WINDOWS\system32\DRIVERS\wanarp.sys
Address: 0xBAD6A000 Size: 34560 File Visible: - Signed: -
Status: -

Name: watchdog.sys
Image Path: C:\WINDOWS\System32\watchdog.sys
Address: 0xBA3D5000 Size: 20480 File Visible: - Signed: -
Status: -

Name: wdmaud.sys
Image Path: C:\WINDOWS\system32\drivers\wdmaud.sys
Address: 0xB7ACA000 Size: 83072 File Visible: - Signed: -
Status: -

Name: Win32k
Image Path: \Driver\Win32k
Address: 0xBF800000 Size: 1851392 File Visible: - Signed: -
Status: -

Name: win32k.sys
Image Path: C:\WINDOWS\System32\win32k.sys
Address: 0xBF800000 Size: 1851392 File Visible: - Signed: -
Status: -

Name: WMILIB.SYS
Image Path: C:\WINDOWS\system32\DRIVERS\WMILIB.SYS
Address: 0xF79DE000 Size: 8192 File Visible: - Signed: -
Status: -

Name: WMIxWDM
Image Path: \Driver\WMIxWDM
Address: 0x804D7000 Size: 2068224 File Visible: - Signed: -
Status: -

Name: WudfPf.sys
Image Path: WudfPf.sys
Address: 0xF728C000 Size: 77568 File Visible: - Signed: -
Status: -

Odpovědět