ComboFix 10-05-15.03 - J-O-H-N-Y 16.05.2010 17:11:54.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.1023.442 [GMT 2:00]
Spuštěný z: c:\documents and settings\J-O-H-N-Y\Plocha\ComboFix.exe
AV: Norton Internet Security *On-access scanning disabled* (Updated) {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton Internet Security *enabled* {7C21A4C9-F61F-4AC4-B722-A6E19C16F220}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\auto.exe
c:\documents and settings\J-O-H-N-Y\Dokumenty\cc_20100515_170143.reg
c:\documents and settings\J-O-H-N-Y\Dokumenty\cc_20100515_170542.reg
c:\program files\Automated Content Enhancer
c:\program files\Automated Content Enhancer\4.1.0.5050\ACECommon.dll
c:\program files\Automated Content Enhancer\4.1.0.5050\ACEIeaddon.dll
c:\program files\Automated Content Enhancer\4.1.0.5050\ACEIEAddOnSub.dll
c:\program files\Automated Content Enhancer\4.1.0.5050\ACEIEAddOnSubL.dll
c:\program files\Automated Content Enhancer\4.1.0.5050\acepx.exe
c:\program files\Automated Content Enhancer\4.1.0.5050\Data\config.md
c:\program files\Automated Content Enhancer\4.1.0.5050\FF\components\ACEFFAddOn.dll
c:\program files\Automated Content Enhancer\4.1.0.5050\FF\components\ACEFFAddOn.xpt
c:\program files\Automated Content Enhancer\4.1.0.5050\FF\components\ACEFFHelperComponent.js
c:\program files\Automated Content Enhancer\4.1.0.5050\FF\chrome.manifest
c:\program files\Automated Content Enhancer\4.1.0.5050\FF\chrome\ACEAddOn.jar
c:\program files\Automated Content Enhancer\4.1.0.5050\FF\chrome\content\ACEAddOn.js
c:\program files\Automated Content Enhancer\4.1.0.5050\FF\chrome\content\ACEAddOn.xul
c:\program files\Automated Content Enhancer\4.1.0.5050\FF\install.rdf
c:\program files\Automated Content Enhancer\4.1.0.5050\unins000.dat
c:\program files\Automated Content Enhancer\4.1.0.5050\unins000.exe
c:\program files\Customized Platform Advancer
c:\program files\Customized Platform Advancer\3.1.0.1520\CPACommon.dll
c:\program files\Customized Platform Advancer\3.1.0.1520\CPAHelper.exe
c:\program files\Customized Platform Advancer\3.1.0.1520\CPAIEAddOnSub.dll
c:\program files\Customized Platform Advancer\3.1.0.1520\CPAIEAddOnSubL.dll
c:\program files\Customized Platform Advancer\3.1.0.1520\Data\config.md
c:\program files\Customized Platform Advancer\3.1.0.1520\FF\components\CPAFFAddOn.dll
c:\program files\Customized Platform Advancer\3.1.0.1520\FF\components\CPAFFAddOn.xpt
c:\program files\Customized Platform Advancer\3.1.0.1520\FF\components\CPAFFHelperComponent.js
c:\program files\Customized Platform Advancer\3.1.0.1520\FF\chrome.manifest
c:\program files\Customized Platform Advancer\3.1.0.1520\FF\chrome\content\CPAAddOn.js
c:\program files\Customized Platform Advancer\3.1.0.1520\FF\chrome\content\CPAAddOn.xul
c:\program files\Customized Platform Advancer\3.1.0.1520\FF\chrome\CPAAddOn.jar
c:\program files\Customized Platform Advancer\3.1.0.1520\FF\install.rdf
c:\program files\Customized Platform Advancer\3.1.0.1520\unins000.dat
c:\program files\Customized Platform Advancer\3.1.0.1520\unins000.exe
c:\program files\Internet Saving Optimizer
c:\program files\Media Access Startup
c:\program files\Media Access Startup\1.5.0.850\Data\config.md
c:\program files\Media Access Startup\1.5.0.850\FF\components\HPFFAddOn.dll
c:\program files\Media Access Startup\1.5.0.850\FF\components\HPFFAddOn.xpt
c:\program files\Media Access Startup\1.5.0.850\FF\components\HPFFHelperComponent.js
c:\program files\Media Access Startup\1.5.0.850\FF\chrome.manifest
c:\program files\Media Access Startup\1.5.0.850\FF\chrome\content\HPAddOn.js
c:\program files\Media Access Startup\1.5.0.850\FF\chrome\content\HPAddOn.xul
c:\program files\Media Access Startup\1.5.0.850\FF\chrome\HPAddOn.jar
c:\program files\Media Access Startup\1.5.0.850\FF\install.rdf
c:\program files\Media Access Startup\1.5.0.850\hppx.exe
c:\program files\Media Access Startup\1.5.0.850\MAHelper.exe
c:\program files\Media Access Startup\1.5.0.850\unins000.dat
c:\program files\Media Access Startup\1.5.0.850\unins000.exe
c:\program files\MyWebSearch
c:\program files\MyWebSearch\bar\9.bin\MWSOESTB.DLL
c:\program files\SafeFighter Software
c:\program files\Web Search Operator
c:\program files\Web Search Operator\3.1.0.1800\Data\config.md
c:\program files\Web Search Operator\3.1.0.1800\FF\components\WSOFFAddOn.dll
c:\program files\Web Search Operator\3.1.0.1800\FF\components\WSOFFAddOn.xpt
c:\program files\Web Search Operator\3.1.0.1800\FF\components\WSOFFHelperComponent.js
c:\program files\Web Search Operator\3.1.0.1800\FF\chrome.manifest
c:\program files\Web Search Operator\3.1.0.1800\FF\chrome\content\WSOAddOn.js
c:\program files\Web Search Operator\3.1.0.1800\FF\chrome\content\WSOAddOn.xul
c:\program files\Web Search Operator\3.1.0.1800\FF\chrome\WSOAddOn.jar
c:\program files\Web Search Operator\3.1.0.1800\FF\install.rdf
c:\program files\Web Search Operator\3.1.0.1800\unins000.dat
c:\program files\Web Search Operator\3.1.0.1800\unins000.exe
c:\program files\Web Search Operator\3.1.0.1800\wsO.dll
c:\program files\Web Search Operator\3.1.0.1800\WSOCommon.dll
c:\program files\Web Search Operator\3.1.0.1800\wsopx.exe
c:\windows\10005zi9us7235.cpl
c:\windows\10914z9oj68f5.dll
c:\windows\11024n9t-a-vi5us44z.dll
c:\windows\112z3not-a-5irus29f9.dll
c:\windows\11438notza-virus9655.ocx
c:\windows\11530hackzoo5619.exe
c:\windows\116w5r9zaa.cpl
c:\windows\11962ha5kto9l27cz.ocx
c:\windows\122z9vir9s50d.dll
c:\windows\12585not9a-vzrus219.bin
c:\windows\12809zroj2959.dll
c:\windows\1319addwar51183z.cpl
c:\windows\13499nzt-a5virus549.ocx
c:\windows\13569vi5zs4c5.exe
c:\windows\136165ackzoo933d.dll
c:\windows\13z11s59mbot712.bin
c:\windows\13z289p5mbot46.exe
c:\windows\13z5wo9m352.dll
c:\windows\13zeth9e52787.ocx
c:\windows\14506n9t-a5virus2z2.dll
c:\windows\149espzr5e2877.dll
c:\windows\15389zacktool79f.ocx
c:\windows\15412viru53ez9.ocx
c:\windows\15529spambot5z5.ocx
c:\windows\15650zacktoo93b2.dll
c:\windows\158cspa9sz394.exe
c:\windows\15965viruz3a4.dll
c:\windows\15z9s5eal23359.cpl
c:\windows\16480tr9j5za.exe
c:\windows\1668zhief5809.bin
c:\windows\172679ot-a-zirus195.ocx
c:\windows\17459zor9d6.ocx
c:\windows\17556virus39cz.dll
c:\windows\18239pzmbot9a5.cpl
c:\windows\18350not-a9vi5usz72.cpl
c:\windows\18536trzj994.exe
c:\windows\185519pambot7z3.ocx
c:\windows\185z9ir1258.bin
c:\windows\18659sp5z14.ocx
c:\windows\1875addware30z49.ocx
c:\windows\18895h9cktooz154.dll
c:\windows\19453zir5s46.ocx
c:\windows\194759acktzol22b.dll
c:\windows\1948695rm6dz.cpl
c:\windows\1951virus35z.ocx
c:\windows\195385p96z6.cpl
c:\windows\19612no5-a-virus389z.bin
c:\windows\19858hzckt5ol3ec.ocx
c:\windows\1a59spywarz229.dll
c:\windows\1b7sparse5z39.cpl
c:\windows\1b91d59nloazer1296.cpl
c:\windows\1bfadown9zade51527.ocx
c:\windows\1e95zteal179.ocx
c:\windows\1faedownl5ad9z747.cpl
c:\windows\1z124sp5mbot95d.ocx
c:\windows\20065wormz39.exe
c:\windows\20156sp9mbzt457.dll
c:\windows\20517zorm9f2.exe
c:\windows\20900hz9ktoo515a.cpl
c:\windows\209z695y2d2.ocx
c:\windows\20e5baczdoor9655.exe
c:\windows\20z905p9mbot594.exe
c:\windows\20zcthi5f2970.exe
c:\windows\21652hack9zol35a.exe
c:\windows\22135zroj59b.ocx
c:\windows\2247595z2e7.dll
c:\windows\22594s5yzb9.cpl
c:\windows\231z9tro951b.dll
c:\windows\2399s5e9l28z5.exe
c:\windows\23dbthzea592543.dll
c:\windows\23fzvir19495.ocx
c:\windows\242939irzs758.cpl
c:\windows\24759spy4z8.cpl
c:\windows\24992tr5j460z.exe
c:\windows\24c89t5al3228z.exe
c:\windows\25493noz-a-virus672.cpl
c:\windows\25635spazbo9e9.cpl
c:\windows\257709pazbotb4.ocx
c:\windows\257z8sp965e.cpl
c:\windows\25899sp9zdb.dll
c:\windows\25931spambot7z29.ocx
c:\windows\259495zambot58.bin
c:\windows\25977wz5m1d1.ocx
c:\windows\259cbackdozr2449.dll
c:\windows\2616vi5zs2459.cpl
c:\windows\26285wo5m769z.dll
c:\windows\26355ziru95cd.bin
c:\windows\27139viruz504.bin
c:\windows\283449ot-a-virus375z.exe
c:\windows\28399hack5oolz55.bin
c:\windows\283z8t9o510e.bin
c:\windows\28549spy5z5.bin
c:\windows\2887659t-a-vzrus75f.exe
c:\windows\29032tr5j4z6.bin
c:\windows\29038spy55z5.dll
c:\windows\2903viz2395.bin
c:\windows\29051spambo5dz.dll
c:\windows\29398wozm514.ocx
c:\windows\29527t5oj50z.dll
c:\windows\29535tro974z.dll
c:\windows\295z9irus3bf.exe
c:\windows\29862t5oj7zb9.cpl
c:\windows\298cspazs521559.ocx
c:\windows\29918v5ruz21e.exe
c:\windows\2a2dspyw5re193z.exe
c:\windows\2a595aczdoor1386.dll
c:\windows\2b69zhr5at20819.exe
c:\windows\2b7zddwa5e3519.cpl
c:\windows\2e459ackdozr1313.dll
c:\windows\2z322troj759.cpl
c:\windows\2z535virus599.ocx
c:\windows\2z743no95a-virus3e8.dll
c:\windows\2z8st5al1289.exe
c:\windows\2z989virus2105.dll
c:\windows\30153worz139.ocx
c:\windows\30573sp95zot7a1.exe
c:\windows\3097sp5rsz451.cpl
c:\windows\31096s5ambotz90.ocx
c:\windows\32050haz9tool175.bin
c:\windows\323es9ar5e27z9.ocx
c:\windows\32439virusz599.dll
c:\windows\3259wormz56.bin
c:\windows\326z1not-a-vi9us3a5.dll
c:\windows\32d9thz5f291.dll
c:\windows\32e4ad5ware399z.exe
c:\windows\332759y7z8.exe
c:\windows\33fa9ir3195z.dll
c:\windows\341aspzware2859.exe
c:\windows\3527threzt5955.ocx
c:\windows\35513spzmbot159.ocx
c:\windows\35699troj990z.bin
c:\windows\35a5s9ezl2738.dll
c:\windows\35d7spzrse9694.ocx
c:\windows\35dcthi9fz888.exe
c:\windows\35e2t5reaz9658.cpl
c:\windows\3665hacztool739.ocx
c:\windows\36909acktzol454.dll
c:\windows\3691sp5r9e66z.dll
c:\windows\3849zteal5504.dll
c:\windows\38e9spyz9re551.exe
c:\windows\39258spzmbot495.ocx
c:\windows\392aback5oorz25.bin
c:\windows\395aspyw5re19z8.bin
c:\windows\39605hacktozl6c5.dll
c:\windows\39bcad5ware1z60.exe
c:\windows\39bf59eal15z.exe
c:\windows\3ba5st9al965z.ocx
c:\windows\3e50downl9aderz635.exe
c:\windows\3e5eaddwa9e1532z.ocx
c:\windows\3f1b9pywaz52472.bin
c:\windows\3fa9bazkdoor2059.bin
c:\windows\3fc9stezl5836.bin
c:\windows\3ff9spzrse3152.dll
c:\windows\3za6s5yware9152.exe
c:\windows\4119stz5l9829.bin
c:\windows\4120sparse5z949.exe
c:\windows\415s5y59z.bin
c:\windows\4167t9reat6587z.dll
c:\windows\4175hiz93226.cpl
c:\windows\4206hackz9ol2995.cpl
c:\windows\4249szy9ac5.exe
c:\windows\42csparse5069z.ocx
c:\windows\4308t9zj750.cpl
c:\windows\431e9zw5loader58.exe
c:\windows\436zspyw9r51619.ocx
c:\windows\449fdown5oader3z63.ocx
c:\windows\4685thre5t3z859.cpl
c:\windows\473z9ackdoo53110.exe
c:\windows\474fthreaz85539.cpl
c:\windows\475spz51f9.exe
c:\windows\47865a9kdozr2096.dll
c:\windows\479z9te5l216.dll
c:\windows\49f2t9iefz529.cpl
c:\windows\4a38virz559.cpl
c:\windows\4azbvir50279.cpl
c:\windows\4c5fz9ea53254.dll
c:\windows\4ccdaddwa9ez9215.ocx
c:\windows\4e25dow9loadzr2416.exe
c:\windows\4ea2ba5kdo9rz258.bin
c:\windows\4f85ad9warz824.bin
c:\windows\4ff5addzare9951.ocx
c:\windows\4fzbspyw9r51486.exe
c:\windows\5066th9eaz18095.bin
c:\windows\50z6tr5jc9.ocx
c:\windows\51489ir655z.exe
c:\windows\5193back9oor297z.ocx
c:\windows\5215orz2219.cpl
c:\windows\52459iez2209.exe
c:\windows\52695ownlozder3150.ocx
c:\windows\5304hack9zol55a.bin
c:\windows\539espyware525z.exe
c:\windows\53z1back9oor842.dll
c:\windows\5455zacktool29c.bin
c:\windows\545cthrezt18994.ocx
c:\windows\5482adzware982.cpl
c:\windows\54b0tz5ef29999.dll
c:\windows\5527s9y42z.dll
c:\windows\552fspa9se1096z.ocx
c:\windows\5535downlozde9527.cpl
c:\windows\554eth5efz399.cpl
c:\windows\55519hiez759.exe
c:\windows\558bspar9z1657.bin
c:\windows\5590thizf5668.cpl
c:\windows\55c6zir1986.exe
c:\windows\55dzs9eal5014.bin
c:\windows\5626z9orm170.ocx
c:\windows\56z5t9reat29452.cpl
c:\windows\57885pamb9t345z.ocx
c:\windows\5799downloade52352z.ocx
c:\windows\5823zownloa9er24885.exe
c:\windows\5835s9yzbf.cpl
c:\windows\5869spyzff.cpl
c:\windows\58zspar9e188.bin
c:\windows\590c95r2018z.bin
c:\windows\5929vi57z0.ocx
c:\windows\5930viz2154.ocx
c:\windows\59472virus39fz.cpl
c:\windows\59502vizus597.exe
c:\windows\596et5rzat13885.cpl
c:\windows\5990backdoorz948.exe
c:\windows\5995pambzt1e79.exe
c:\windows\59b4zddwar5607.cpl
c:\windows\59c0vir1556z.cpl
c:\windows\59e1spyware1234z.cpl
c:\windows\5a2cadzware9141.ocx
c:\windows\5a92zi51862.bin
c:\windows\5a9cdzw9loader289.ocx
c:\windows\5b79t9reat2z247.exe
c:\windows\5bdzdow9loader2610.dll
c:\windows\5c4aviz1529.bin
c:\windows\5c56thr9at167z3.ocx
c:\windows\5cfdo5nl9ader1z45.ocx
c:\windows\5d95a9dware570z.exe
c:\windows\5e81downlzader3977.dll
c:\windows\5ef1threat3023z9.cpl
c:\windows\5eth9efz15.dll
c:\windows\5f229zckdoo5713.bin
c:\windows\5f35stea92965z.ocx
c:\windows\5f5adown9oaderz161.ocx
c:\windows\5f5dspywarez5799.ocx
c:\windows\5f95vir51z7.ocx
c:\windows\5z576w9rm409.cpl
c:\windows\5z728v9rus497.dll
c:\windows\5z75irus193.dll
c:\windows\5z809acktool6f5.ocx
c:\windows\5z999orm117.cpl
c:\windows\5z99sp5rse956.ocx
c:\windows\6025sze5l499.exe
c:\windows\60z2not-a-v5rus9cd.ocx
c:\windows\6247spam59t5z2.ocx
c:\windows\6265zir697.bin
c:\windows\6273virus9z5.cpl
c:\windows\62baviz925.dll
c:\windows\6469zparse5114.cpl
c:\windows\64839pam5zt6f2.cpl
c:\windows\64cbdzw9loader1057.bin
c:\windows\6547noz-a-vir5s4049.ocx
c:\windows\655cz9ars52182.cpl
c:\windows\65bzt9ief745.cpl
c:\windows\6705orm7z9.bin
c:\windows\675zt9reat26910.cpl
c:\windows\67c4ba9kdozr11475.bin
c:\windows\685dspy9zre2941.bin
c:\windows\6956zpywa9e1927.cpl
c:\windows\6973addwzre26505.cpl
c:\windows\69e8s5zal2554.ocx
c:\windows\6a29spyware1z35.dll
c:\windows\6abdspzwa9e5453.bin
c:\windows\6b79thrzat4965.exe
c:\windows\6d97zddware7865.ocx
c:\windows\6e5ethi9z26595.exe
c:\windows\6f19downloader3558z.ocx
c:\windows\6za259reat8306.dll
c:\windows\7016thre5t95z85.ocx
c:\windows\7170sza95otb1.dll
c:\windows\72zbad95are2909.bin
c:\windows\7466t5rezt19589.bin
c:\windows\75089parse10z4.cpl
c:\windows\7517vir559z.ocx
c:\windows\7519virzs735.exe
c:\windows\751az5ars92130.ocx
c:\windows\752adz5a9e2466.exe
c:\windows\76185dzware9349.exe
c:\windows\76b4backd9or51z8.dll
c:\windows\770fz5ie9645.bin
c:\windows\77bfth9eat754z.ocx
c:\windows\77c5a9dwarz2539.ocx
c:\windows\7915downloade9z319.cpl
c:\windows\797cadzware31575.ocx
c:\windows\79czba9kd5or803.bin
c:\windows\79ethr5atz5873.bin
c:\windows\79z5tr9j250.cpl
c:\windows\7a54tzi9f2942.exe
c:\windows\7a96addzare2665.bin
c:\windows\7d2bviz5579.dll
c:\windows\7d5fspzwa9e5466.dll
c:\windows\7de59teal191z.cpl
c:\windows\7e80ad5wa9e146z.cpl
c:\windows\7f10downlo5zer3192.exe
c:\windows\7f3cdoznloa5er2799.dll
c:\windows\7f58thzef9577.bin
c:\windows\8629not5a-vz9us598.cpl
c:\windows\909thre5t2760z.bin
c:\windows\91605spzmb5t63b.cpl
c:\windows\919015pz6cc.ocx
c:\windows\9196addware1579z.dll
c:\windows\9413not-a-v95us6cz.ocx
c:\windows\9575addware2713z.cpl
c:\windows\958addwarez295.bin
c:\windows\95d1tzrea570.exe
c:\windows\9644zspy5735.ocx
c:\windows\9740zpy59.ocx
c:\windows\9759thief6z5.ocx
c:\windows\97635trzj7b5.exe
c:\windows\97955troj6z9.exe
c:\windows\9797vz5us85.cpl
c:\windows\98302s5amzot2ef.cpl
c:\windows\9a73spyware3056z.bin
c:\windows\9besz5ware870.dll
c:\windows\9c5vzr545.cpl
c:\windows\9csteal20z5.dll
c:\windows\9ef0sze5l23.dll
c:\windows\9ezaaddwa5e2617.bin
c:\windows\9z38vi5us656.dll
c:\windows\9z57no5-a-virus547.exe
c:\windows\b5t9rzat1351.cpl
c:\windows\bdezh9eat15593.bin
c:\windows\c9zb5ck9oor1405.ocx
c:\windows\cz1thr5at31964.ocx
c:\windows\d63adzware91925.dll
c:\windows\ee8v59z53.bin
c:\windows\ef9s5arsz317.ocx
c:\windows\f575zd9are2345.ocx
c:\windows\f90zackd5or859.exe
c:\windows\system32\10905vz9us155.cpl
c:\windows\system32\115835orm8z9.exe
c:\windows\system32\116z5worm1bf9.dll
c:\windows\system32\117z5spamb9t36a.dll
c:\windows\system32\1190bzckdoor325.exe
c:\windows\system32\1226zh9eat54340.dll
c:\windows\system32\1227zddware27559.dll
c:\windows\system32\12570hzckt5ol559.exe
c:\windows\system32\126745zrm99.dll
c:\windows\system32\127bspar9e505z.bin
c:\windows\system32\1285spz39c5.exe
c:\windows\system32\131z8ha5k9ool7ac.ocx
c:\windows\system32\13304wor915az.bin
c:\windows\system32\13395zpam9ot134.ocx
c:\windows\system32\1349thzeat25897.dll
c:\windows\system32\136spyza95805.bin
c:\windows\system32\13734hazktool935.bin
c:\windows\system32\13904hackz5ol69c9.ocx
c:\windows\system32\1441spa9se5z49.exe
c:\windows\system32\1449t5iefz983.exe
c:\windows\system32\14529spazbot7f9.bin
c:\windows\system32\14563wo9m2fz.bin
c:\windows\system32\145zthief2089.bin
c:\windows\system32\14961spyz5d5.bin
c:\windows\system32\150479ozm3e8.dll
c:\windows\system32\1526zsp9mbot5a1.ocx
c:\windows\system32\15315viru991z.bin
c:\windows\system32\155469zoj511.dll
c:\windows\system32\15629hiez1540.ocx
c:\windows\system32\15693tro529z.dll
c:\windows\system32\15903s5ambot6z2.ocx
c:\windows\system32\15951trojz159.ocx
c:\windows\system32\15999spazbot31a.cpl
c:\windows\system32\159caddwzre1932.ocx
c:\windows\system32\15aaddw9re21z55.exe
c:\windows\system32\163889pa5zot345.cpl
c:\windows\system32\16499sp548z.dll
c:\windows\system32\16b15hief13z79.cpl
c:\windows\system32\16z6wo5m955.ocx
c:\windows\system32\17339hack5zol3d7.ocx
c:\windows\system32\1755zhacktool12b9.dll
c:\windows\system32\17757t9ojzee.bin
c:\windows\system32\1777z9r20835.ocx
c:\windows\system32\1783dowzlo5de91977.exe
c:\windows\system32\17884wo95380z.exe
c:\windows\system32\1794zspy554.bin
c:\windows\system32\17957not-a-viruz2b8.cpl
c:\windows\system32\17ec95zeat28700.ocx
c:\windows\system32\180829py5cz.dll
c:\windows\system32\18344no9-a-viz5s758.dll
c:\windows\system32\18893vir5s98z.bin
c:\windows\system32\189az5ief3001.bin
c:\windows\system32\18z16viru53ad9.ocx
c:\windows\system32\19035t5ojz90.exe
c:\windows\system32\19282not-5-virusz9.exe
c:\windows\system32\195559py59ez.dll
c:\windows\system32\19663hac5tozl24d.exe
c:\windows\system32\197bth5ef15z0.cpl
c:\windows\system32\19927zirus6f5.cpl
c:\windows\system32\19z92not-a-vir5s272.exe
c:\windows\system32\19zavir52479.ocx
c:\windows\system32\1ad95ownloadzr691.exe
c:\windows\system32\1bszars52898.ocx
c:\windows\system32\1c39st5alz599.cpl
c:\windows\system32\1dd5szy9are289.ocx
c:\windows\system32\1e5bvir289z.exe
c:\windows\system32\1fc15zi9f1547.ocx
c:\windows\system32\1z8669py365.exe
c:\windows\system32\2000not-a-viru51b9z.cpl
c:\windows\system32\2033zp5269.cpl
c:\windows\system32\20595iruszf.dll
c:\windows\system32\205azh9eat5504.ocx
c:\windows\system32\206455irzs198.cpl
c:\windows\system32\20791s9ambotz95.dll
c:\windows\system32\209155pyzf3.ocx
c:\windows\system32\20956zroj5359.exe
c:\windows\system32\20980szy51.ocx
c:\windows\system32\209cszyware1175.cpl
c:\windows\system32\20b9th5zf1029.dll
c:\windows\system32\20z16spy9b85.cpl
c:\windows\system32\213319pambotz59.cpl
c:\windows\system32\21ba9ackdooz5165.ocx
c:\windows\system32\220565ot-a-viz9s122.exe
c:\windows\system32\229z0not-a9viru55fd.cpl
c:\windows\system32\22z94w5r9797.dll
c:\windows\system32\22z995acktool5b9.dll
c:\windows\system32\2351z9pambot61f.bin
c:\windows\system32\23660not-a-v5r9s4d2z.cpl
c:\windows\system32\23769no5-a-vzrus685.exe
c:\windows\system32\238s5y9aze114.cpl
c:\windows\system32\23945hacktozl1ac.ocx
c:\windows\system32\23962v59us7zb.cpl
c:\windows\system32\23z03w5rm5899.bin
c:\windows\system32\24305tr9z702.exe
c:\windows\system32\2485wo5mz9.exe
c:\windows\system32\24e5steal1039z.exe
c:\windows\system32\24z95sp5mbot3dd.exe
c:\windows\system32\25559no5-a-viruz51.dll
c:\windows\system32\2557backdoo998z.dll
c:\windows\system32\25945tzoj389.cpl
c:\windows\system32\25adz9dware227.bin
c:\windows\system32\25cbthre9z19577.bin
c:\windows\system32\25z98s9y55.bin
c:\windows\system32\25zback9oor5265.bin
c:\windows\system32\261c5h9efz53.exe
c:\windows\system32\2625z95t-a-virus42a.bin
c:\windows\system32\265789irusz07.bin
c:\windows\system32\2659ztroj52.cpl
c:\windows\system32\265eazdw5re16679.exe
c:\windows\system32\26802sp5mzot60a9.exe
c:\windows\system32\26977hacz9ool195.bin
c:\windows\system32\26z76hac9tool77c5.dll
c:\windows\system32\27189not-a-vir5s94z.dll
c:\windows\system32\27365spyz39.ocx
c:\windows\system32\27519worm29z.bin
c:\windows\system32\27903hzcktool5265.cpl
c:\windows\system32\27998spamzot4b95.cpl
c:\windows\system32\28205spaz5ot984.bin
c:\windows\system32\28459hac5zool5ed.cpl
c:\windows\system32\28619zorm551.cpl
c:\windows\system32\28894spy56z.exe
c:\windows\system32\28cdaddwa591z11.exe
c:\windows\system32\28z7w5rm6a19.exe
c:\windows\system32\29030sp9m5ot7zd.dll
c:\windows\system32\29103spa5bot797z.ocx
c:\windows\system32\2912sparze5176.dll
c:\windows\system32\29333wo5mzd8.bin
c:\windows\system32\2945zspy35b.dll
c:\windows\system32\295975pamzot2d9.cpl
c:\windows\system32\296005ormz2.exe
c:\windows\system32\299zdownloa9er405.dll
c:\windows\system32\2a9zv5r395.dll
c:\windows\system32\2b9tzreat8558.exe
c:\windows\system32\2bfbaz95oor1567.ocx
c:\windows\system32\2e02downl5aze91608.ocx
c:\windows\system32\2e2est9zl15945.bin
c:\windows\system32\2ec89zdware5678.ocx
c:\windows\system32\2ez0thief5559.exe
c:\windows\system32\2z455spambot9fd5.bin
c:\windows\system32\2z993spy15f.exe
c:\windows\system32\30035zpyac9.ocx
c:\windows\system32\305689irus606z.exe
c:\windows\system32\3091z5ambot507.dll
c:\windows\system32\30e5spywzr93162.cpl
c:\windows\system32\30z05spambot789.exe
c:\windows\system32\31065ha9ktzol225.ocx
c:\windows\system32\31504sz9mbot779.bin
c:\windows\system32\31527tro95z2.ocx
c:\windows\system32\319135ackt9olze8.cpl
c:\windows\system32\31959troj5z5.dll
c:\windows\system32\31z70wo95600.dll
c:\windows\system32\32567zac9toolc0.dll
c:\windows\system32\3265spywa9e612z.exe
c:\windows\system32\32z42worm5295.bin
c:\windows\system32\33a5zi91245.ocx
c:\windows\system32\34195hreatz0607.cpl
c:\windows\system32\3463downlza9er24225.bin
c:\windows\system32\3515th9ez95.dll
c:\windows\system32\3537dow9lozder5056.cpl
c:\windows\system32\3546spyw9re1054z.dll
c:\windows\system32\354edow5l9zder880.bin
c:\windows\system32\354eth9eatz6191.dll
c:\windows\system32\358spyware293z.dll
c:\windows\system32\37f4bac5zoor10869.bin
c:\windows\system32\38c5spzrse2979.bin
c:\windows\system32\38z59hief2036.bin
c:\windows\system32\3900sparsez514.ocx
c:\windows\system32\394avir54z6.cpl
c:\windows\system32\3964zsp5mbot693.bin
c:\windows\system32\398downloadez2745.dll
c:\windows\system32\3a2cback5oor43z9.bin
c:\windows\system32\3b0zspy95re3256.bin
c:\windows\system32\3bb3za95door3190.dll
c:\windows\system32\3bz0vir95505.exe
c:\windows\system32\3f8f5parse792z.cpl
c:\windows\system32\41afz59199.bin
c:\windows\system32\42fzdownloade95904.dll
c:\windows\system32\4413st5zl3049.dll
c:\windows\system32\4569spyzare2399.bin
c:\windows\system32\459csparse2z96.cpl
c:\windows\system32\45b6vir9z65.cpl
c:\windows\system32\45e5sparsez94.cpl
c:\windows\system32\4697spy5ez.ocx
c:\windows\system32\473spz5se19169.dll
c:\windows\system32\475bbackdoz91415.cpl
c:\windows\system32\47a2t9r5at10z26.cpl
c:\windows\system32\47z3thr9a5996.dll
c:\windows\system32\4b58addwz9e1632.bin
c:\windows\system32\4b5bad9wzre963.exe
c:\windows\system32\4d1bsteal6z95.dll
c:\windows\system32\4d35vzr9223.bin
c:\windows\system32\4edz5ddware16919.cpl
c:\windows\system32\4f795ir2960z.bin
c:\windows\system32\4f94vir158z.bin
c:\windows\system32\4ff9add59ze2387.cpl
c:\windows\system32\4z09thr5at3058.exe
c:\windows\system32\4z5fbackdo9r1273.bin
c:\windows\system32\4z9fvi52244.ocx
c:\windows\system32\4zd9th5ef1134.cpl
c:\windows\system32\50192zacktool5fd9.dll
c:\windows\system32\5039hacktozl20d5.exe
c:\windows\system32\509e9pywzre1608.ocx
c:\windows\system32\5124szarse23595.ocx
c:\windows\system32\5168t9rezt4974.bin
c:\windows\system32\51737not-z-virus795.cpl
c:\windows\system32\5197z5ckdo9r1026.exe
c:\windows\system32\51d5zpy9are1608.bin
c:\windows\system32\51z6thr5at90564.exe
c:\windows\system32\5241ztea9855.cpl
c:\windows\system32\52428spamzot5f9.dll
c:\windows\system32\529athiefz092.ocx
c:\windows\system32\52z29trojb9.ocx
c:\windows\system32\53110hackzool9ec.bin
c:\windows\system32\53z5thie91594.bin
c:\windows\system32\54b85ackdooz1998.bin
c:\windows\system32\550z7virus692.bin
c:\windows\system32\5519spywzre2309.bin
c:\windows\system32\5538thz9f1925.dll
c:\windows\system32\55475roz12c9.exe
c:\windows\system32\5556vzrus298.dll
c:\windows\system32\558abackdoor90z6.ocx
c:\windows\system32\55974wormz72.exe
c:\windows\system32\5597spar5z3274.ocx
c:\windows\system32\55e1z9ief20965.dll
c:\windows\system32\55z3spy6389.exe
c:\windows\system32\562znot-a-v9rus6b5.bin
c:\windows\system32\56885pamb9tz5e.bin
c:\windows\system32\569cbzckdoo92777.bin
c:\windows\system32\56b9downlo9derz557.ocx
c:\windows\system32\5723ad9war5727z.exe
c:\windows\system32\57525o9mz.bin
c:\windows\system32\5839trzj497.ocx
c:\windows\system32\58683wozm3419.bin
c:\windows\system32\5889addwa5z1812.ocx
c:\windows\system32\5905trojz5f9.ocx
c:\windows\system32\5911down5oadez3160.ocx
c:\windows\system32\59369irz5217.exe
c:\windows\system32\5955trzj50e.cpl
c:\windows\system32\59f0vir284z9.ocx
c:\windows\system32\59z7thi9f719.cpl
c:\windows\system32\5a9fbackdoor1410z.dll
c:\windows\system32\5b9zthrea58773.exe
c:\windows\system32\5bcfsteal93z4.dll
c:\windows\system32\5dzfthr5at99410.exe
c:\windows\system32\5eeedownzoader4059.cpl
c:\windows\system32\5ef3spy5arz8089.ocx
c:\windows\system32\5fbds9eaz19765.bin
c:\windows\system32\5fcdzhre9t32256.exe
c:\windows\system32\5z357spa9bot4a7.ocx
c:\windows\system32\5z898s9ambot4ec.bin
c:\windows\system32\614ebackdoo9z025.bin
c:\windows\system32\61z5virus595.cpl
c:\windows\system32\62545ozm1549.cpl
c:\windows\system32\6352backzoor5392.cpl
c:\windows\system32\63afsp59are206z.bin
c:\windows\system32\6541t5reatz9244.exe
c:\windows\system32\659doz5loader1693.exe
c:\windows\system32\659zhreat249675.exe
c:\windows\system32\659zthreat4765.exe
c:\windows\system32\662eba9kdoor3z5.exe
c:\windows\system32\6777vi59s3z5.exe
c:\windows\system32\6920down9oazer1504.cpl
c:\windows\system32\692fthie5349z.exe
c:\windows\system32\6949addwaze559.exe
c:\windows\system32\69zfbackdo5r1117.cpl
c:\windows\system32\6a4zsteal1095.exe
c:\windows\system32\6b95th5eatz4558.dll
c:\windows\system32\6c4dzackdoor5090.ocx
c:\windows\system32\6d92sze5l1305.exe
c:\windows\system32\6e09thzeat13245.exe
c:\windows\system32\6fz1d5wnl9ader2546.bin
c:\windows\system32\6z3fvir30529.bin
c:\windows\system32\6z4dbac5do9r931.ocx
c:\windows\system32\6zd5down9oader1325.bin
c:\windows\system32\6ze3ba5kdo9r1170.ocx
c:\windows\system32\7059nzt-a-vir9s7df.cpl
c:\windows\system32\71295ac9tool1c1z.bin
c:\windows\system32\723dt5rzat19845.bin
c:\windows\system32\7334sz9605.ocx
c:\windows\system32\738dbaczd5or1896.cpl
c:\windows\system32\7516hazkto9l254.bin
c:\windows\system32\75f2z9arse1358.cpl
c:\windows\system32\75zc5ir9715.bin
c:\windows\system32\7655virz945.bin
c:\windows\system32\76699o5z4ce.bin
c:\windows\system32\7795roz560.cpl
c:\windows\system32\783spzw9re2756.bin
c:\windows\system32\791zvir5479.bin
c:\windows\system32\7988s9y5zre455.dll
c:\windows\system32\79fabackd5orz0.dll
c:\windows\system32\7a82stzal5869.cpl
c:\windows\system32\7b71downlozd5r9921.bin
c:\windows\system32\7bf1back59oz1960.exe
c:\windows\system32\7c78dzwnlo9de51993.bin
c:\windows\system32\7d955hrezt2542.dll
c:\windows\system32\7dz5v9r1906.dll
c:\windows\system32\7ees95zare1612.ocx
c:\windows\system32\7z2f5pyware15239.ocx
c:\windows\system32\7z6bbackd5or3975.exe
c:\windows\system32\7zc9thr5at9189.bin
c:\windows\system32\7zcbaddwa5e2099.exe
c:\windows\system32\7zddsp9rse2580.bin
c:\windows\system32\8090spaz5ot496.dll
c:\windows\system32\81859pyaz.bin
c:\windows\system32\8456wo9z183.exe
c:\windows\system32\8463n95za-virus2c8.exe
c:\windows\system32\88z9ddware1599.ocx
c:\windows\system32\89975rzj4f9.bin
c:\windows\system32\8z65worm9c.dll
c:\windows\system32\901005py13z.dll
c:\windows\system32\9030vizus579.ocx
c:\windows\system32\90fds5azse1557.bin
c:\windows\system32\91255pambot242z.dll
c:\windows\system32\91499hacktoolz65.cpl
c:\windows\system32\915ztroj642.dll
c:\windows\system32\9287not-azvirus5959.bin
c:\windows\system32\92asteal3z5.cpl
c:\windows\system32\94f4spazse5450.bin
c:\windows\system32\95055trzj315.bin
c:\windows\system32\95107sp5mbot4z7.cpl
c:\windows\system32\9518sparse24z3.bin
c:\windows\system32\952wz9m104.exe
c:\windows\system32\9559hreat16205z.dll
c:\windows\system32\955avir263z.bin
c:\windows\system32\95a9thief1081z.bin
c:\windows\system32\95e6vir82z.bin
c:\windows\system32\95f2virz527.bin
c:\windows\system32\95z6spy399.ocx
c:\windows\system32\95z9spa9bot56c.ocx
c:\windows\system32\965ezparse5411.cpl
c:\windows\system32\9680h5ckzool7d69.cpl
c:\windows\system32\96dfth5ef240z.cpl
c:\windows\system32\98380troj5zc5.cpl
c:\windows\system32\9872vizus456.cpl
c:\windows\system32\9895hackt5oz99a.exe
c:\windows\system32\98z55not-a-virus34.bin
c:\windows\system32\9a3ethizf2561.dll
c:\windows\system32\9b38backd5or20z.bin
c:\windows\system32\9czasp5ware2221.exe
c:\windows\system32\9d35backzoor2750.cpl
c:\windows\system32\9eb95ir1188z.bin
c:\windows\system32\9eedspar5z1258.ocx
c:\windows\system32\9f18spy5arez52.exe
c:\windows\system32\9z0155acktool78c.exe
c:\windows\system32\9z0855roj94.bin
c:\windows\system32\9z0backdoor8135.ocx
c:\windows\system32\9z92not-a-virus559.cpl
c:\windows\system32\a95download9z2504.bin
c:\windows\system32\ac7th5ez913673.exe
c:\windows\system32\ad8downloade9z54.dll
c:\windows\system32\c5es59al24z1.ocx
c:\windows\system32\c75zd9ware4915.bin
c:\windows\system32\d9ddownlo5zer1119.cpl
c:\windows\system32\d9dsp9zse27555.bin
c:\windows\system32\d9zstea51104.ocx
c:\windows\system32\e59downloaderz827.exe
c:\windows\system32\f159hreat1718z.dll
c:\windows\system32\f20thre9t15598z.cpl
c:\windows\system32\z0536h9cktool7c8.ocx
c:\windows\system32\z05eth9ef232.cpl
c:\windows\system32\z152t59j534.cpl
c:\windows\system32\z17dthr9at24995.exe
c:\windows\system32\z186threat9854.exe
c:\windows\system32\z195ackdoor348.ocx
c:\windows\system32\z30t95ef446.bin
c:\windows\system32\z3471spy9b5.cpl
c:\windows\system32\z449backdoor15355.bin
c:\windows\system32\z53dthi9f658.exe
c:\windows\system32\z5545hacktool589.cpl
c:\windows\system32\z556vir20579.exe
c:\windows\system32\z6509wo5m424.bin
c:\windows\system32\z83esteal9567.dll
c:\windows\system32\z84059ief2580.cpl
c:\windows\system32\z9173w5rm19b.dll
c:\windows\system32\z93vir3504.dll
c:\windows\system32\za949ackdo5r45.bin
c:\windows\system32\zad8spy9ar51113.ocx
c:\windows\system32\zce1downloader9593.dll
c:\windows\system32\zd4csp9rs55.cpl
c:\windows\system32\zdc59hreat30889.exe
c:\windows\system32\zea5threat29973.exe
c:\windows\system32\zef5vir1729.ocx
c:\windows\z3787spa5b9t3fe.dll
c:\windows\z45099orm7c7.dll
c:\windows\z4829troj58c.bin
c:\windows\z522not-a-viru5d69.ocx
c:\windows\z551s9yware428.cpl
c:\windows\z555w9rm701.bin
c:\windows\z698thie52951.exe
c:\windows\z6a5s9arse1588.cpl
c:\windows\z745worm942.dll
c:\windows\z7c59d5ware2453.dll
c:\windows\z9382ha5ktoolde.cpl
c:\windows\z9554v9r5s5c5.cpl
c:\windows\z95dvir481.bin
c:\windows\z9970spambot4a5.dll
c:\windows\zc245teal2879.cpl
c:\windows\zce2s5ea914.dll
c:\windows\zd8b5teal16749.cpl
c:\windows\zf59backdoor558.bin
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-04-16 do 2010-05-16 )))))))))))))))))))))))))))))))
.
2010-05-16 11:48 . 2010-05-16 11:48 -------- d-----w- c:\windows\LastGood
2010-05-16 11:48 . 2009-10-22 11:54 37392 ----a-w- c:\windows\system32\drivers\89861832.sys
2010-05-16 11:48 . 2009-10-09 21:31 315408 ----a-w- c:\windows\system32\drivers\8986183.sys
2010-05-16 11:48 . 2009-09-25 15:59 128016 ----a-w- c:\windows\system32\drivers\89861831.sys
2010-05-16 05:35 . 2010-05-16 05:35 -------- d-----w- c:\documents and settings\LocalService\Plocha
2010-05-15 17:33 . 2010-05-16 08:02 7168 ----a-w- c:\windows\system32\drivers\uti3mtk2.sys
2010-05-15 15:36 . 2009-10-09 21:31 315408 ----a-w- c:\windows\system32\drivers\2152973.sys
2010-05-14 16:01 . 2010-05-14 16:01 -------- d-----w- c:\windows\system32\drivers\NSS
2010-05-14 16:01 . 2010-05-14 16:01 -------- d-----w- c:\program files\Norton Security Scan
2010-05-12 04:00 . 2010-05-12 04:00 -------- d--h--w- c:\windows\$hf_mig$
2010-05-06 17:22 . 2010-05-06 17:22 -------- d-----r- c:\documents and settings\J-O-H-N-Y\Nabídka Start
2010-05-06 16:23 . 2010-03-30 21:38 20968 ----a-w- c:\windows\system32\drivers\cpuz133_x32.sys
2010-05-02 19:33 . 2010-05-02 19:35 7562568 ----a-w- c:\program files\Opera_964_int_Setup.exe
2010-05-02 08:27 . 2010-05-02 08:32 13019280 ----a-w- C:\Opera_1053_int_Setup.exe
2010-04-27 10:33 . 2010-04-27 10:33 -------- d-----w- c:\program files\1C Company
2010-04-21 08:03 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-04-17 15:30 . 2001-10-24 10:25 99328 -c--a-w- c:\windows\system32\dllcache\srusd.dll
2010-04-17 15:30 . 2001-10-24 10:25 99328 ----a-w- c:\windows\system32\srusd.dll
2010-04-17 15:30 . 2001-10-24 10:02 6784 -c--a-w- c:\windows\system32\dllcache\serscan.sys
2010-04-17 15:30 . 2001-10-24 10:02 6784 ----a-w- c:\windows\system32\drivers\serscan.sys
2010-04-17 15:30 . 2001-10-24 10:24 71680 -c--a-w- c:\windows\system32\dllcache\fnfilter.dll
2010-04-17 15:30 . 2001-10-24 10:24 71680 ----a-w- c:\windows\system32\fnfilter.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-09 07:51 . 2006-03-02 12:00 47206 ----a-w- c:\windows\system32\perfc005.dat
2010-05-09 07:51 . 2006-03-02 12:00 312970 ----a-w- c:\windows\system32\perfh005.dat
2010-05-06 19:12 . 2009-12-20 15:43 -------- d-----w- c:\program files\Activision
2010-05-06 17:51 . 2007-02-09 14:52 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2010-05-06 17:05 . 2009-11-15 05:22 -------- d-----w- c:\program files\HottieStar Toolbar
2010-05-06 04:27 . 2010-05-06 04:27 2136885 ----a-w- c:\program files\kluci 034.jpg
2010-05-02 20:03 . 2009-05-25 19:31 -------- d-----w- c:\program files\Opera
2010-04-11 15:30 . 2009-09-01 14:27 -------- d-----w- c:\program files\DivX
2010-04-02 09:04 . 2006-12-23 14:18 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-04-02 09:04 . 2010-04-02 09:04 -------- d-----w- c:\program files\Rockstar Games
2010-03-10 06:17 . 2006-03-02 12:00 420352 ----a-w- c:\windows\system32\vbscript.dll
2010-02-25 06:18 . 2006-03-02 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-02-24 13:11 . 2006-03-02 12:00 455680 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-02-22 16:05 . 2010-02-22 16:05 127034 ------r- c:\windows\bwUnin-8.1.1.50-8876480SL.exe
2010-02-17 12:09 . 2006-03-02 12:00 2192128 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-02-16 19:09 . 2004-08-17 15:45 2068992 ----a-w- c:\windows\system32\ntkrnlpa.exe
2008-07-24 16:46 . 2008-07-24 16:45 455966 -c--a-w- c:\program files\cc_20080724_1845.reg
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-05-18 39408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\program files\Java\j2re1.4.2_04\bin\jusched.exe" [2004-02-22 32881]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"WheelMouse"="c:\program files\A4Tech\Mouse\Amoumain.exe" [2007-05-15 204800]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-10-04 8491008]
"nwiz"="nwiz.exe" [2007-10-04 1626112]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2007-10-04 81920]
"SoundMan"="SOUNDMAN.EXE" [2006-08-03 577536]
"Adobe Photo Downloader"="c:\program files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe" [2007-03-09 63712]
"Adobe Reader Speed Launcher"="c:\adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-04-04 36272]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\T-o-m-a-s\Nabˇdka Start\Programy\Po spuçtŘnˇ\
OpenOffice.org 2.0.lnk - c:\program files\OpenOffice.org 2.0\program\quickstart.exe [2006-6-28 393216]
c:\documents and settings\J-O-H-N-Y\Nabˇdka Start\Programy\Po spuçtŘnˇ\
setup_9.0.0.722_16.05.2010_13-27.lnk - c:\documents and settings\J-O-H-N-Y\Plocha\Virus Removal Tool\setup_9.0.0.722_16.05.2010_13-27\startup.exe [2010-5-16 72208]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Logitech Desktop Messenger.lnk - c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2010-2-22 67128]
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2010-2-22 688128]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SymEFA.sys]
@="FSFilter Activity Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKLM\~\startupfolder\C:^Documents and Settings^J-O-H-N-Y^Nabídka Start^Programy^Po spuštění^VirtuaGirl HD.LNK]
path=c:\documents and settings\J-O-H-N-Y\Nabídka Start\Programy\Po spuštění\VirtuaGirl HD.LNK
backup=c:\windows\pss\VirtuaGirl HD.LNKStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
2008-04-14 03:22 1695232 ------w- c:\program files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Simon and Schuster\\Real War Rogue States\\rsclient.exe"=
"c:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"15278:TCP"= 15278:TCP:*:Disabled:BitComet 15278 TCP
"15278:UDP"= 15278:UDP:*:Disabled:BitComet 15278 UDP
"3724:TCP"= 3724:TCP:Blizzard Downloader: 3724
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
"AllowInboundEchoRequest"= 1 (0x1)
"AllowInboundTimestampRequest"= 1 (0x1)
R0 89861832;89861832 Boot Guard Driver;c:\windows\system32\drivers\89861832.sys [16.5.2010 13:48 37392]
R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NIS\1008000.029\SymEFA.sys [3.2.2010 19:13 310320]
R1 89861831;89861831;c:\windows\system32\drivers\89861831.sys [16.5.2010 13:48 128016]
R1 BHDrvx86;Symantec Heuristics Driver;c:\windows\system32\drivers\NIS\1008000.029\BHDrvx86.sys [3.2.2010 19:13 259632]
R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\NIS\1008000.029\cchpx86.sys [3.2.2010 19:12 482432]
R1 IDSxpx86;IDSxpx86;c:\documents and settings\All Users\Data aplikací\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20100505.001\IDSXpx86.sys [8.5.2010 6:02 329592]
R1 setup_9.0.0.722_16.05.2010_13-27drv;setup_9.0.0.722_16.05.2010_13-27drv;c:\windows\system32\drivers\8986183.sys [16.5.2010 13:48 315408]
R2 cpuz133;cpuz133;c:\windows\system32\drivers\cpuz133_x32.sys [6.5.2010 18:23 20968]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [10.3.2009 13:49 222456]
R2 Norton Internet Security;Norton Internet Security;c:\program files\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe [3.2.2010 19:13 117640]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2.5.2010 7:54 102448]
S1 prodrv03;Star Force copy protection driver v3;c:\windows\system32\drivers\prodrv03.sys [23.12.2006 21:39 115968]
S3 Amps2prt;A4Tech PS/2 Port Mouse Driver;c:\windows\system32\drivers\Amps2prt.sys [9.5.2006 18:27 13824]
S3 uti3mtk2;AVZ Kernel Driver;c:\windows\system32\drivers\uti3mtk2.sys [15.5.2010 19:33 7168]
--- Ostatní služby/ovladače v paměti ---
*NewlyCreated* - 89861831
*NewlyCreated* - 89861832
*NewlyCreated* - SETUP_9.0.0.722_16.05.2010_13-27DRV
*Deregistered* - fxtdypog
.
Obsah adresáře 'Naplánované úlohy'
2010-05-14 c:\windows\Tasks\Norton Security Scan for J-O-H-N-Y.job
- c:\program files\Norton Security Scan\Norton Security Scan\Engine\2.7.3.34\Nss.exe [2010-05-14 16:01]
2010-05-16 c:\windows\Tasks\User_Feed_Synchronization-{3EBC8E45-B673-409E-B6A8-39CD28DB869A}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
2010-05-16 c:\windows\Tasks\User_Feed_Synchronization-{D16A776A-452B-4C18-A5F6-B3F8C0AF5170}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.gametop.com/?utm_source=OstrichRunner&utm_medium=start
mSearch Bar = hxxp://
www.google.com/ie
uSearchAssistant = hxxp://
www.google.com/ie
uSearchURL,(Default) = hxxp://
www.google.com/search?q=%s
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Stáhnout odkaz s použitím BitCometu - c:\program files\BitComet\BitComet.exe/AddLink.htm
IE: Stáhnout všechna videa s použitím BitCometu - c:\program files\BitComet\BitComet.exe/AddVideo.htm
IE: Stáhnout všechny odkazy s použitím BitCometu - c:\program files\BitComet\BitComet.exe/AddAllLink.htm
TCP: {ABD1FD42-0011-486C-A9D8-08698785EC69} = 10.0.0.1
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
FF - ProfilePath - c:\documents and settings\J-O-H-N-Y\Data aplikací\Mozilla\Firefox\Profiles\n4u7d9kw.default\
FF - prefs.js: browser.search.selectedEngine - HottieStar Toolbar
FF - prefs.js: browser.startup.homepage - hxxp://
www.theprizeday.com/today.php|http://ho ... inder.com/
FF - component: c:\documents and settings\All Users\Data aplikací\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn\components\coFFPlgn.dll
FF - component: c:\documents and settings\All Users\Data aplikací\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\IPSFFPlgn\components\IPSFFPl.dll
FF - plugin: c:\adobe\Reader 9.0\Reader\browser\nppdf32.dll
FF - plugin: c:\program files\Java\j2re1.4.2_04\bin\NPJava11.dll
FF - plugin: c:\program files\Java\j2re1.4.2_04\bin\NPJava12.dll
FF - plugin: c:\program files\Java\j2re1.4.2_04\bin\NPJava13.dll
FF - plugin: c:\program files\Java\j2re1.4.2_04\bin\NPJava14.dll
FF - plugin: c:\program files\Java\j2re1.4.2_04\bin\NPJava32.dll
FF - plugin: c:\program files\Java\j2re1.4.2_04\bin\NPJPI142_04.dll
FF - plugin: c:\program files\Java\j2re1.4.2_04\bin\NPOJI610.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\NPMyWebS.dll
FF - plugin: c:\program files\Opera\program\plugins\npdrmv2.dll
FF - plugin: c:\program files\Opera\program\plugins\nppdf32.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
WebBrowser-{0388BA0C-C7F1-4E6A-BD7A-B59623F33363} - (no file)
MSConfigStartUp-Adobe Photo Downloader - c:\program files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
MSConfigStartUp-My Web Search Bar - c:\progra~1\MYWEBS~1\bar\9.bin\MWSBAR.DLL
AddRemove-{16B6279B-9FF5-41fb-8BF9-404324F5DD1F}}_is1 - c:\program files\Media Access Startup\1.5.0.850\unins000.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-05-16 17:23
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Norton Internet Security]
"ImagePath"="\"c:\program files\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe\" /s \"Norton Internet Security\" /m \"c:\program files\Norton Internet Security\Engine\16.8.0.41\diMaster.dll\" /prefetch:1"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-796845957-2000478354-725345543-1003\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
Celkový čas: 2010-05-16 17:27:26
ComboFix-quarantined-files.txt 2010-05-16 15:27
Před spuštěním: Volných bajtů: 38 088 949 760
Po spuštění: Volných bajtů: 38 787 604 480
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
- - End Of File - - AB00C697B4D30B3266DA39FFA29B0EE4