ComboFix 11-06-15.02 - Martin 15.06.2011 21:44:53.19.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1033.18.1023.692 [GMT 2:00]
Running from: c:\documents and settings\Martin\Desktop\ComboFix.exe
AV: AntiVir Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
FW: ZoneAlarm Firewall *Disabled* {829BDA32-94B3-44F4-8446-F8FCFF809F8B}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\Martin\Application Data\EurekaLog
c:\documents and settings\Martin\Application Data\EurekaLog\EurekaLog.ini
C:\Install.exe
.
.
((((((((((((((((((((((((( Files Created from 2011-05-15 to 2011-06-15 )))))))))))))))))))))))))))))))
.
.
2011-06-15 17:28 . 2011-03-17 23:24 104448 ----a-w- c:\windows\system32\zlcommdb.dll
2011-06-15 17:28 . 2011-03-17 23:24 69120 ----a-w- c:\windows\system32\zlcomm.dll
2011-06-15 17:28 . 2011-06-15 17:28 -------- d-----w- c:\windows\system32\ZoneLabs
2011-06-15 17:28 . 2011-03-17 23:24 1238528 ----a-w- c:\windows\system32\zpeng25.dll
2011-06-15 17:27 . 2011-06-15 17:28 -------- d-----w- c:\program files\Zone Labs
2011-06-15 17:27 . 2011-06-15 19:42 -------- d-----w- c:\windows\Internet Logs
2011-06-15 17:27 . 2011-06-15 18:06 -------- d-----w- c:\windows\system32\NtmsData
2011-06-15 17:26 . 2011-06-15 17:26 -------- d-----w- c:\documents and settings\Martin\Application Data\Avira
2011-06-15 17:21 . 2011-04-01 15:07 61960 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-06-15 17:21 . 2011-04-01 15:07 137656 ----a-w- c:\windows\system32\drivers\avipbb.sys
2011-06-15 17:21 . 2010-06-17 13:27 45416 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2011-06-15 17:21 . 2010-06-17 13:27 22360 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2011-06-15 17:21 . 2011-06-15 17:21 -------- d-----w- c:\program files\Avira
2011-06-15 17:21 . 2011-06-15 17:21 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2011-06-15 08:14 . 2011-06-15 08:14 -------- d-----w- c:\program files\Common Files\Java
2011-06-15 08:14 . 2011-06-15 08:13 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-06-15 08:14 . 2011-06-15 08:13 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-06-15 08:13 . 2011-06-15 08:13 -------- d-----w- c:\program files\Java
2011-06-14 16:29 . 2011-06-15 07:26 -------- d-----w- c:\documents and settings\Martin\Application Data\Darer
2011-06-05 06:20 . 2011-06-05 06:20 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Google
2011-06-05 06:20 . 2011-06-05 08:25 -------- d-----w- c:\program files\Google
2011-06-05 06:20 . 2011-06-05 08:10 -------- d-----w- c:\documents and settings\Martin\Local Settings\Application Data\Google
2011-06-04 06:45 . 2011-06-04 06:45 -------- d-----w- c:\windows\system32\oqhre.dll
2011-06-04 06:28 . 2011-06-04 06:29 -------- d-----w- c:\documents and settings\Martin\Application Data\GetRightToGo
2011-06-03 15:07 . 2011-06-03 15:07 -------- d-----w- c:\documents and settings\Martin\.system32
2011-05-29 12:34 . 2011-06-05 06:25 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2011-05-29 12:28 . 2011-05-29 12:29 -------- d-----w- C:\UsbFix
2011-05-27 12:59 . 2011-05-27 20:23 17480 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys
2011-05-27 12:59 . 2011-05-27 12:59 -------- d-----w- c:\program files\Hitman Pro 3.5
2011-05-27 12:58 . 2011-05-27 12:58 -------- d-----w- c:\documents and settings\All Users\Application Data\Hitman Pro
2011-05-25 14:22 . 2011-06-15 18:27 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-05-23 12:50 . 2004-05-17 06:00 33280 ----a-r- c:\windows\system32\drivers\NVENETFD.sys
2011-05-23 12:50 . 2004-05-17 05:49 198656 ----a-r- c:\windows\system32\fdco1.dll
2011-05-23 12:50 . 2004-05-10 00:53 32256 ----a-r- c:\windows\system32\nvconrm.dll
2011-05-23 12:50 . 2004-05-10 00:52 172032 ----a-w- c:\windows\system32\nvunrm.exe
2011-05-23 12:50 . 2004-05-17 06:00 12928 ----a-r- c:\windows\system32\drivers\nvnetbus.sys
2011-05-23 12:50 . 2004-05-17 06:00 56960 ----a-r- c:\windows\system32\drivers\nvnrm.sys
2011-05-23 12:50 . 2004-05-17 06:00 191232 ----a-r- c:\windows\system32\drivers\nvsnpu.sys
2011-05-23 12:50 . 2004-05-17 05:48 8192 ----a-r- c:\windows\system32\bdco1.dll
2011-05-23 12:18 . 2011-05-23 12:18 -------- d-----w- c:\program files\AMD
2011-05-23 12:18 . 2005-03-09 12:53 36352 ----a-w- c:\windows\system32\drivers\AmdK8.sys
2011-05-23 12:08 . 2011-05-23 12:08 -------- d-----w- c:\windows\system32\wbem\Repository
2011-05-18 09:05 . 2011-05-04 11:54 302080 ----a-w- C:\gmer.exe
2011-05-18 07:58 . 2011-05-18 07:58 -------- d-----w- C:\_OTM
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-06-15 08:52 . 2011-05-29 12:29 1800 ----a-w- C:\UsbFix_Upload_Me_HELL-T2X5CI1VMH.zip
2011-05-28 14:04 . 2010-11-16 14:55 443448 ----a-w- c:\windows\system32\drivers\sptd.sys
2011-04-26 16:49 . 2011-04-08 19:46 137464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-04-26 16:49 . 2011-04-08 19:51 214520 ----a-w- c:\windows\system32\PnkBstrB.xtr
2011-04-26 16:49 . 2011-04-08 19:45 214520 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-04-26 15:55 . 2011-04-08 19:45 75064 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-04-21 18:59 . 2011-04-08 19:46 22328 ----a-w- c:\documents and settings\Martin\Application Data\PnkBstrK.sys
2011-04-18 12:42 . 2011-04-18 12:39 2829 ----a-w- c:\windows\War3Unin.pif
2011-04-18 12:42 . 2011-04-18 12:39 139264 ----a-w- c:\windows\War3Unin.exe
2011-04-08 05:14 . 2011-05-14 06:48 944232 ----a-w- c:\windows\system32\nvdispco3220140.dll
2011-04-08 05:14 . 2011-05-14 06:48 855656 ----a-w- c:\windows\system32\nvgenco322060.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2011-05-17_16.33.31 )))))))))))))))))))))))))))))))))))))))))
.
- 2009-07-11 23:02 . 2009-07-11 23:02 51008 c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_f0ccd4aa\vcomp90.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 51008 c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_f0ccd4aa\vcomp90.dll
- 2007-11-07 01:19 . 2007-11-07 01:19 54272 c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_ecc42bd1\vcomp90.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 54272 c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_ecc42bd1\vcomp90.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 59728 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90rus.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 59728 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90rus.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 42832 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90kor.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 42832 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90kor.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 43344 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90jpn.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 43344 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90jpn.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 61264 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90ita.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 61264 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90ita.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 36688 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90cht.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 36688 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90cht.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 35648 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90chs.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 35648 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90chs.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 62800 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90fra.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 62800 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90fra.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 61760 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90esp.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 61760 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90esp.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 61776 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90esn.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 61776 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90esn.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 53568 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90enu.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 53568 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90enu.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 63296 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90deu.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 63296 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90deu.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 46592 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90kor.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 47104 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90jpn.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 59392 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90ita.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 41984 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90cht.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 41472 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90chs.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 60416 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90fra.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 59392 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90esp.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 59392 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90esn.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 54272 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90enu.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 60928 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_11f3ea3a\mfc90deu.dll
+ 2009-07-11 22:05 . 2009-07-11 22:05 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90u.dll
- 2009-07-11 23:05 . 2009-07-11 23:05 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90u.dll
- 2009-07-11 23:05 . 2009-07-11 23:05 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90.dll
+ 2009-07-11 22:05 . 2009-07-11 22:05 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90.dll
+ 2007-11-06 20:51 . 2007-11-06 20:51 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_a173767a\mfcm90u.dll
+ 2007-11-06 20:51 . 2007-11-06 20:51 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_a173767a\mfcm90.dll
+ 2011-06-15 19:41 . 2011-06-15 19:41 16384 c:\windows\temp\Perflib_Perfdata_4fc.dat
+ 2011-06-15 17:28 . 2011-03-17 23:24 99328 c:\windows\system32\ZoneLabs\zlquarantine.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 70656 c:\windows\system32\ZoneLabs\zatray.exe
+ 2011-06-15 17:28 . 2011-03-17 23:25 21504 c:\windows\system32\ZoneLabs\lib\zsys.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 14336 c:\windows\system32\ZoneLabs\lib\zmenu.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 48640 c:\windows\system32\ZoneLabs\lib\zfde.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 85504 c:\windows\system32\ZoneLabs\lib\ZAlert.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 37376 c:\windows\system32\ZoneLabs\lib\UpdateUI.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 12800 c:\windows\system32\ZoneLabs\lib\oem_1488.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 12800 c:\windows\system32\ZoneLabs\lib\oem_1487.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 12800 c:\windows\system32\ZoneLabs\lib\oem_1486.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 20992 c:\windows\system32\ZoneLabs\lib\oem_1466.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 12800 c:\windows\system32\ZoneLabs\lib\oem_1460.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 10240 c:\windows\system32\ZoneLabs\lib\oem_1454.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 11264 c:\windows\system32\ZoneLabs\lib\oem_1445.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 14336 c:\windows\system32\ZoneLabs\lib\oem_1440.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 12288 c:\windows\system32\ZoneLabs\lib\oem_1413.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 11264 c:\windows\system32\ZoneLabs\lib\oem_1010.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 29184 c:\windows\system32\ZoneLabs\lib\NavBar.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 13312 c:\windows\system32\ZoneLabs\lib\MainLoop.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 35840 c:\windows\system32\ZoneLabs\lib\Alert.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 38912 c:\windows\system32\ZoneLabs\featuremap.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 75776 c:\windows\system32\ZoneLabs\camupd.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 43008 c:\windows\system32\vswmi.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 58368 c:\windows\system32\vsregexp.dll
+ 2011-06-15 17:21 . 2010-06-17 13:27 28520 c:\windows\system32\drivers\ssmdrv.sys
+ 2011-06-15 17:28 . 2011-06-15 17:28 4212 c:\windows\system32\zllictbl.dat
- 2011-04-28 18:38 . 2011-04-28 18:38 5120 c:\windows\Installer\{789289CA-F73A-4A16-A331-54D498CE069F}\Icon789289CA.exe
+ 2011-06-09 16:05 . 2011-06-09 16:05 5120 c:\windows\Installer\{789289CA-F73A-4A16-A331-54D498CE069F}\Icon789289CA.exe
+ 2009-07-11 22:02 . 2009-07-11 22:02 653120 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 569664 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll
+ 2009-07-11 22:05 . 2009-07-11 22:05 225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcm90.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 159032 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_353599c2\atl90.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 159032 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_353599c2\atl90.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 161784 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_312cf0e9\atl90.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 141824 c:\windows\system32\ZoneLabs\zlupdate.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 173056 c:\windows\system32\ZoneLabs\vsvault.dll
+ 2011-06-15 17:27 . 2011-03-17 23:24 211456 c:\windows\system32\ZoneLabs\vsdb.dll
+ 2011-06-15 17:28 . 2007-10-11 14:51 832984 c:\windows\system32\ZoneLabs\updating.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 434688 c:\windows\system32\ZoneLabs\ssleay32.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 135680 c:\windows\system32\ZoneLabs\scheduler.dll
+ 2011-06-15 17:28 . 2009-07-13 21:58 722392 c:\windows\system32\ZoneLabs\qrbase.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 126976 c:\windows\system32\ZoneLabs\lib\zui.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 280064 c:\windows\system32\ZoneLabs\lib\TrayTest.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:25 225792 c:\windows\system32\ZoneLabs\lib\Overview.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 368640 c:\windows\system32\ZoneLabs\lib\LicenseUI.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 184832 c:\windows\system32\ZoneLabs\lib\DashBoard.zip.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 375296 c:\windows\system32\ZoneLabs\lib\ConfigWizard.zip.dll
+ 2011-06-15 17:27 . 2010-02-08 06:41 595432 c:\windows\system32\ZoneLabs\icslta.dll
+ 2011-06-15 17:28 . 2010-11-08 16:58 284136 c:\windows\system32\ZoneLabs\ffapi.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 169984 c:\windows\system32\ZoneLabs\fbl.dll
+ 2011-06-15 17:28 . 2008-03-17 14:52 813568 c:\windows\system32\ZoneLabs\dbghelp.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 110080 c:\windows\system32\vsxml.dll
+ 2011-06-15 17:27 . 2011-03-17 23:24 715264 c:\windows\system32\vsutil.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 302592 c:\windows\system32\vspubapi.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 108032 c:\windows\system32\vsmonapi.dll
+ 2011-06-15 17:27 . 2011-03-17 23:24 228864 c:\windows\system32\vsinit.dll
+ 2011-06-15 17:28 . 2010-05-13 08:02 532224 c:\windows\system32\vsdatant.sys
+ 2011-06-15 17:27 . 2011-03-17 23:24 112128 c:\windows\system32\vsdata.dll
+ 2011-06-15 14:07 . 2011-06-15 14:07 240288 c:\windows\system32\Macromed\Flash\FlashUtil10t_Plugin.exe
+ 2011-06-15 18:27 . 2011-06-15 18:27 240288 c:\windows\system32\Macromed\Flash\FlashUtil10t_ActiveX.exe
+ 2011-06-15 18:27 . 2011-06-15 18:27 321184 c:\windows\system32\Macromed\Flash\FlashUtil10t_ActiveX.dll
+ 2011-06-15 08:14 . 2011-06-15 08:13 157472 c:\windows\system32\javaws.exe
+ 2011-06-15 08:14 . 2011-06-15 08:13 145184 c:\windows\system32\javaw.exe
+ 2011-06-15 08:14 . 2011-06-15 08:13 145184 c:\windows\system32\java.exe
+ 2011-06-14 16:29 . 2011-06-14 16:29 228352 c:\windows\Installer\b5ca5.msi
+ 2011-06-15 08:14 . 2011-06-15 08:14 203776 c:\windows\Installer\3f7025.msi
+ 2011-06-15 08:13 . 2011-06-15 08:13 675840 c:\windows\Installer\3f7020.msi
+ 2009-07-11 22:02 . 2009-07-11 22:02 3780424 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 3780424 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll
- 2009-07-11 23:02 . 2009-07-11 23:02 3765048 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 3765048 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 1162744 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_a173767a\mfc90u.dll
+ 2007-11-06 23:19 . 2007-11-06 23:19 1156600 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_a173767a\mfc90.dll
+ 2011-06-15 17:28 . 2011-03-17 23:24 1790464 c:\windows\system32\ZoneLabs\vsruledb.dll
+ 2011-06-15 17:28 . 2011-03-17 23:26 2435592 c:\windows\system32\ZoneLabs\vsmon.exe
+ 2011-06-15 17:28 . 2011-03-17 23:25 1536512 c:\windows\system32\ZoneLabs\lib\zpy.zip.dll
+ 2011-03-03 14:50 . 2011-05-23 12:08 1234520 c:\windows\system32\Restore\rstrlog.dat
+ 2010-11-15 17:39 . 2011-06-15 14:07 6271136 c:\windows\system32\Macromed\Flash\NPSWF32.dll
+ 2011-06-11 00:48 . 2011-06-11 00:48 3120288 c:\windows\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-01-07 13880424]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-03-28 281768]
"ZoneAlarm Client"="c:\program files\Zone Labs\ZoneAlarm\zlclient.exe" [2011-03-17 1043968]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UserFaultCheck]
c:\windows\system32\dumprep 0 -u [X]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2010-11-15 19:02 932288 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2011-01-30 15:45 35736 ----a-w- c:\programy\Reader 10.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2008-04-14 03:42 15360 ----a-w- c:\windows\system32\ctfmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2011-01-07 17:56 13880424 ----a-w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2011-01-07 17:56 111208 ----a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2010-11-04 06:51 1753192 ----a-w- c:\program files\NVIDIA Corporation\nView\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
2005-05-17 10:48 77824 ----a-r- c:\windows\SOUNDMAN.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Programy\\Skype\\Phone\\Skype.exe"=
"c:\\WINDOWS\\system32\\ZoneLabs\\vsmon.exe"=
"c:\\Programy\\DotAlicious Gaming Client\\client.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"6756:TCP"= 6756:TCP:rvgbebls
.
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [15.6.2011 19:21 136360]
S3 cpuz134;cpuz134;\??\c:\docume~1\Martin\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys --> c:\docume~1\Martin\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys [?]
S3 GGSAFERDriver;GGSAFER Driver;\??\c:\programy\Garena\safedrv.sys --> c:\programy\Garena\safedrv.sys [?]
S4 sptd;sptd;\SystemRoot\\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\\SystemRoot\System32\Drivers\sptd.sys [?]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
fudxls
.
.
------- Supplementary Scan -------
.
uSearchAssistant =
TCP: DhcpNameServer = 195.12.128.1 195.72.0.3
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\Martin\Application Data\Mozilla\Firefox\Profiles\ghya889f.default\
FF - prefs.js: browser.search.selectedEngine - QIP Search
FF - prefs.js: browser.startup.homepage - hxxp://
www.azet.sk/
FF - prefs.js: keyword.URL - hxxp://search.qip.ru/search?from=FF&query=
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2011-06-15 21:49
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
Completion time: 2011-06-15 21:51:47
ComboFix-quarantined-files.txt 2011-06-15 19:51
ComboFix2.txt 2011-06-04 22:54
ComboFix3.txt 2011-06-04 06:41
ComboFix4.txt 2011-06-02 18:01
ComboFix5.txt 2011-06-15 19:43
.
Pre-Run: 69 303 160 832 bytes free
Post-Run: 12 adresárov, 69 353 402 368 voľných bajtov
.
- - End Of File - - 651350662D025CC9B87C8AE6C7680C1D