Hotovo... Můžete mi poradit nějaký opravdu kvalitní (nejlépe free) firewall? Pokud možno v češtině, aby bylo snadné ho nastavit... Hodilo by se mi něco, co kontroluje PC neustále...Děkuji..
ComboFix 08-04-17.1 - Nanina 2008-04-18 20:09:50.1 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.1.1029.18.675 [GMT 2:00]
Running from: c:\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Nanina\Data aplikací\inst.exe
C:\WINDOWS\assys.dll
C:\WINDOWS\ffnsys.dll
C:\WINDOWS\gstcore.dll
C:\WINDOWS\mfnsys.dll
C:\WINDOWS\rsczsys.dll
C:\WINDOWS\snsys.dll
C:\WINDOWS\system32\micr0st.dll
C:\WINDOWS\uawin.dll
.
((((((((((((((((((((((((( Files Created from 2008-03-18 to 2008-04-18 )))))))))))))))))))))))))))))))
.
2008-04-18 20:06 . 2008-04-18 20:06 <DIR> d-------- C:\backups
2008-04-18 20:04 . 2008-04-18 20:04 1,770,815 --a------ C:\ComboFix.exe
2008-04-18 19:53 . 2005-02-16 11:06 218,112 --a------ C:\HijackThis.exe
2008-04-18 13:09 . 2008-04-18 13:09 <DIR> d-------- C:\Program Files\QIP
2008-04-16 17:37 . 2008-04-16 17:45 <DIR> d-------- C:\Downloads
2008-04-15 15:06 . 2008-01-10 13:15 755,027 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-04-15 15:06 . 2008-01-10 13:16 159,839 --a------ C:\WINDOWS\system32\xvidvfw.dll
2008-04-15 04:20 . 2008-04-15 04:20 8 --a------ C:\Documents and Settings\Nanina\Data aplikací\NMM-MetaData.db
2008-04-15 04:20 . 2008-04-15 04:20 8 --a------ C:\Documents and Settings\Nanina\Data aplikací\NMM-MetaData.db
2008-04-15 04:20 . 2008-04-15 04:20 8 --a------ C:\Documents and Settings\Nanina\Data aplikací\NMM-MetaData.db
2008-04-13 10:07 . 2008-04-13 10:23 <DIR> d-------- C:\Program Files\ModTheSims2.com
2008-04-13 06:51 . 2008-04-13 06:51 <DIR> d-------- C:\Program Files\PC Connectivity Solution
2008-04-13 06:51 . 2008-04-13 06:51 <DIR> d-------- C:\Program Files\Common Files\PCSuite
2008-04-13 06:51 . 2007-09-17 15:53 21,632 --a------ C:\WINDOWS\system32\drivers\pccsmcfd.sys
2008-04-07 21:17 . 2004-08-03 23:08 25,600 --a------ C:\WINDOWS\system32\drivers\usbser.sys
2008-04-07 21:17 . 2004-08-03 23:08 25,600 --a--c--- C:\WINDOWS\system32\dllcache\usbser.sys
2008-04-07 21:17 . 2008-04-07 21:17 0 --ah----- C:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-04-07 21:17 . 2008-04-07 21:17 0 --ah----- C:\WINDOWS\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
2008-04-07 21:15 . 2008-04-07 21:15 <DIR> d-------- C:\Program Files\MSXML 6.0
2008-04-07 21:15 . 2007-11-29 10:33 1,419,232 --a------ C:\WINDOWS\system32\wdfcoinstaller01005.dll
2008-04-07 21:15 . 2007-11-29 10:39 95,744 --a------ C:\WINDOWS\system32\nmwcdcocls.dll
2008-04-07 21:15 . 2007-11-29 10:39 19,328 --a------ C:\WINDOWS\system32\drivers\ccdcmbo.sys
2008-04-07 21:15 . 2007-11-29 10:39 16,896 --a------ C:\WINDOWS\system32\drivers\ccdcmb.sys
2008-04-07 21:15 . 2007-11-29 10:39 8,064 --a------ C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys
2008-04-07 21:15 . 2007-11-29 10:39 8,064 --a------ C:\WINDOWS\system32\drivers\usbser_lowerflt.sys
2008-03-29 22:25 . 2008-04-10 13:33 <DIR> d-------- C:\Documents and Settings\BORDEL KUA
2008-03-25 12:21 . 2008-03-25 12:21 <DIR> d-------- C:\Program Files\Rockstar Games
2008-03-25 12:20 . 2008-04-07 08:17 <DIR> d-------- C:\== Image ===
2008-03-21 14:10 . 2008-03-21 14:33 <DIR> d-------- C:\Documents and Settings\Eden
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-16 15:52 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\uTorrent
2008-04-16 15:52 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\uTorrent
2008-04-16 15:52 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\uTorrent
2008-04-15 16:50 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\Vso
2008-04-15 16:50 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\Vso
2008-04-15 16:50 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\Vso
2008-04-15 13:06 --------- d-----w C:\Program Files\K-Lite Codec Pack
2008-04-13 04:51 --------- d-----w C:\Program Files\Common Files\Nokia
2008-04-13 04:50 --------- d-----w C:\Documents and Settings\All Users\Data aplikací\Installations
2008-04-07 19:15 --------- d-----w C:\Program Files\Nokia
2008-03-26 09:01 --------- d-----w C:\Program Files\totalcmd
2008-03-25 10:25 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-03-17 17:14 --------- d-----w C:\Program Files\DVD Flick
2008-03-17 17:14 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\DVD Flick
2008-03-17 17:14 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\DVD Flick
2008-03-17 17:14 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\DVD Flick
2008-03-15 06:23 --------- d-----w C:\Program Files\AllToAVI
2008-03-14 18:12 --------- d-----w C:\Program Files\SMPlayer
2008-03-14 06:52 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\IObit
2008-03-14 06:52 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\IObit
2008-03-14 06:52 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\IObit
2008-03-14 06:51 --------- d-----w C:\Program Files\IObit
2008-03-08 08:33 --------- d-----w C:\Program Files\Common Files\Adobe
2008-03-05 18:44 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\Nokia
2008-03-05 18:44 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\Nokia
2008-03-05 18:44 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\Nokia
2008-03-04 10:33 7,680 ----a-w C:\WINDOWS\system32\ff_vfw.dll
2008-03-02 21:28 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\Talkback
2008-03-02 21:28 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\Talkback
2008-03-02 21:28 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\Talkback
2008-03-02 21:27 99,970 ----a-w C:\WINDOWS\UninstallFirefox.exe
2008-03-02 12:58 69,632 ----a-w C:\WINDOWS\AutoUpdateWin31.dll
2008-03-02 12:58 32,768 ----a-w C:\WINDOWS\AutoUpdateWin33.exe
2008-02-29 20:17 --------- d-----w C:\Program Files\MagicISO
2008-02-28 20:22 --------- d-----w C:\Documents and Settings\LocalService\Data aplikací\Ahead
2008-02-28 09:44 --------- d-----w C:\Program Files\SlySoft
2008-02-23 13:03 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\PC Suite
2008-02-23 13:03 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\PC Suite
2008-02-23 13:03 --------- d-----w C:\Documents and Settings\Nanina\Data aplikací\PC Suite
2008-02-20 06:14 --------- d-----w C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2008-02-01 13:17 90,624 ----a-w C:\WINDOWS\system32\nmwcdcls.dll
2007-12-22 08:39 81,920 ----a-w C:\Documents and Settings\Nanina\Data aplikací\ezpinst.exe
2007-12-22 08:39 81,920 ----a-w C:\Documents and Settings\Nanina\Data aplikací\ezpinst.exe
2007-12-22 08:39 81,920 ----a-w C:\Documents and Settings\Nanina\Data aplikací\ezpinst.exe
2007-12-22 08:39 47,360 ----a-w C:\Documents and Settings\Nanina\Data aplikací\pcouffin.sys
2007-12-22 08:39 47,360 ----a-w C:\Documents and Settings\Nanina\Data aplikací\pcouffin.sys
2007-12-22 08:39 47,360 ----a-w C:\Documents and Settings\Nanina\Data aplikací\pcouffin.sys
2007-09-13 20:47 66,936 --sha-w C:\WINDOWS\hrinfo_0.drv
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-17 15:49 15360]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-09-13 11:12 139264]
"DAEMON Tools Lite"="C:\Programs\DAEMON Tools\daemon.exe" [2007-12-29 14:05 486856]
"PC Suite Tray"="C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" [2008-03-28 11:20 1079296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [2002-10-16 12:24 47104 C:\WINDOWS\SOUNDMAN.EXE]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-29 00:43 8466432]
"nwiz"="nwiz.exe" [2007-06-29 00:43 1626112 C:\WINDOWS\system32\nwiz.exe]
"avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-04-17 13:07 262401]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 16:40 155648]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 00:47 31016]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-06-29 00:43 81920]
"CloneCDElbyCDFL"="C:\Program Files\Elaborate Bytes\CloneCD\ElbyCheck.exe" [2002-11-02 08:33 45056]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-17 15:49 110592 C:\WINDOWS\system32\bthprops.cpl]
"Adobe Reader Speed Launcher"="C:\Programs\Adobe Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 14:06 40048]
"Media Codec Update Service"="C:\Program Files\Essentials Codec Pack\update.exe" [ ]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-17 15:49 15360]
"Nokia.PCSync"="C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2008-03-26 18:41 1232896]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveSearch"= 1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Programs\\QIP\\qip.exe"=
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\WINDOWS\\system32\\dplaysvr.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
R0 avgntmgr;avgntmgr;C:\WINDOWS\system32\DRIVERS\avgntmgr.sys [2008-04-17 13:07]
R1 avgntdd;avgntdd;C:\WINDOWS\system32\DRIVERS\avgntdd.sys [2008-04-17 13:07]
R2 AntiVirScheduler;AntiVir PersonalEdition Classic Scheduler;"C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe" [2008-04-17 13:07]
R3 PSched;Plánovač paketů technologie QoS;C:\WINDOWS\system32\DRIVERS\psched.sys [2004-08-03 23:04]
S3 pccsmcfd;PCCS Mode Change Filter Driver;C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2007-09-17 15:53]
S3 upperdev;upperdev;C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2007-11-29 10:39]
S3 UsbserFilt;UsbserFilt;C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2007-11-29 10:39]
*Newly Created Service* - CATCHME
.
Contents of the 'Scheduled Tasks' folder
"2008-04-18 18:00:00 C:\WINDOWS\Tasks\B1F60F8290A1801E.job"
- c:\docume~1\nanina\dataap~1\roadbe~1\blah software wave.exe
.
**************************************************************************
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-04-18 20:11:36
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
folder error: C:\DOCUME~1\Nanina\LOCALS~1\Temp\
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-04-18 20:13:54
ComboFix-quarantined-files.txt 2008-04-18 18:13:37
Adresářů: 13, Volných bajtů: 27,114,795,008
Adresářů: 18, Volných bajtů: 27,161,812,992