ComboFix 10-07-15.05 - Pavka 17.07.2010 10:48:42.4.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3327.2837 [GMT 2:00]
Spuštěný z: c:\documents and settings\Pavka\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Pavka\Plocha\CFScript.txt
AV: avast! antivirus 4.8.1368 [VPS 100716-1] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
file zipped: c:\documents and settings\Pavka\Data aplikací\IIF1i.txt
file zipped: c:\documents and settings\Pavka\Nabídka Start\Programy\Po spuštění\syscron.exe
file zipped: C:\sam.tmp
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\All Users\Data aplikací\58428431
c:\documents and settings\Pavka\Data aplikací\IIF1i.txt
c:\documents and settings\Pavka\Nabídka Start\Programy\Po spuštění\syscron.exe
c:\program files\Dealio
c:\program files\Dealio\DealioAU.exe
c:\program files\Dealio\kb124\Dealio Deskbar.exe
c:\program files\Dealio\kb124\res\as_sidebar.html
c:\program files\Dealio\kb124\res\blank.gif
c:\program files\Dealio\kb124\res\deal_report.jpg
c:\program files\Dealio\kb124\res\DealioSearch.html
c:\program files\Dealio\kb124\res\deals-endcap.gif
c:\program files\Dealio\kb124\res\deals-leftcap.gif
c:\program files\Dealio\kb124\res\ebay_login.jpg
c:\program files\Dealio\kb124\res\endcap22-bg.png
c:\program files\Dealio\kb124\res\endcap22-left.png
c:\program files\Dealio\kb124\res\endcap22-right-arrow.png
c:\program files\Dealio\kb124\res\endcap22-right.png
c:\program files\Dealio\kb124\res\err_mainwindow.html
c:\program files\Dealio\kb124\res\err_sidebar.html
c:\program files\Dealio\kb124\res\err_toolbar.html
c:\program files\Dealio\kb124\res\ErrorPageTemplate.css
c:\program files\Dealio\kb124\res\global_scripts.js
c:\program files\Dealio\kb124\res\headerbgthin.jpg
c:\program files\Dealio\kb124\res\help.gif
c:\program files\Dealio\kb124\res\logo.png
c:\program files\Dealio\kb124\res\logo_over.png
c:\program files\Dealio\kb124\res\man_toolbar.html
c:\program files\Dealio\kb124\res\man_toolbar.js
c:\program files\Dealio\kb124\res\pill_bg.gif
c:\program files\Dealio\kb124\res\post-this-deal.gif
c:\program files\Dealio\kb124\res\post-this-deal_over.gif
c:\program files\Dealio\kb124\res\scripts.js
c:\program files\Dealio\kb124\res\scroller.js
c:\program files\Dealio\kb124\res\search-chevron.gif
c:\program files\Dealio\kb124\res\search_bg_blink.gif
c:\program files\Dealio\kb124\res\separator.gif
c:\program files\Dealio\kb124\res\settings.gif
c:\program files\Dealio\kb124\res\settings_over.gif
c:\program files\Dealio\kb124\res\sidebar.html
c:\program files\Dealio\kb124\res\steals_bg.gif
c:\program files\Dealio\kb124\res\tab_icon.png
c:\program files\Dealio\kb124\res\tabdata.js
c:\program files\Dealio\kb124\res\tablib.js
c:\program files\Dealio\kb124\res\tabwelcome_en.html
c:\program files\Dealio\kb124\res\toolbar_background.gif
c:\program files\Dealio\kb124\res\yahoo_search.gif
c:\program files\Dealio\kb124\rules\index.1.80.39
c:\program files\Dealio\kb124\rules\rules.1.10.76
c:\program files\Dealio\kb124\rules\rules.1.109.43
c:\program files\Dealio\kb124\rules\rules.1.110.43
c:\program files\Dealio\kb124\rules\rules.1.12.52
c:\program files\Dealio\kb124\rules\rules.1.13.58
c:\program files\Dealio\kb124\rules\rules.1.130.58
c:\program files\Dealio\kb124\rules\rules.1.135.50
c:\program files\Dealio\kb124\rules\rules.1.153.44
c:\program files\Dealio\kb124\rules\rules.1.155.43
c:\program files\Dealio\kb124\rules\rules.1.156.49
c:\program files\Dealio\kb124\rules\rules.1.16.60
c:\program files\Dealio\kb124\rules\rules.1.161.52
c:\program files\Dealio\kb124\rules\rules.1.178.66
c:\program files\Dealio\kb124\rules\rules.1.184.55
c:\program files\Dealio\kb124\rules\rules.1.188.52
c:\program files\Dealio\kb124\rules\rules.1.189.45
c:\program files\Dealio\kb124\rules\rules.1.196.43
c:\program files\Dealio\kb124\rules\rules.1.198.56
c:\program files\Dealio\kb124\rules\rules.1.199.43
c:\program files\Dealio\kb124\rules\rules.1.200.53
c:\program files\Dealio\kb124\rules\rules.1.201.43
c:\program files\Dealio\kb124\rules\rules.1.202.43
c:\program files\Dealio\kb124\rules\rules.1.203.71
c:\program files\Dealio\kb124\rules\rules.1.205.62
c:\program files\Dealio\kb124\rules\rules.1.213.71
c:\program files\Dealio\kb124\rules\rules.1.214.49
c:\program files\Dealio\kb124\rules\rules.1.215.43
c:\program files\Dealio\kb124\rules\rules.1.216.67
c:\program files\Dealio\kb124\rules\rules.1.217.67
c:\program files\Dealio\kb124\rules\rules.1.218.52
c:\program files\Dealio\kb124\rules\rules.1.219.43
c:\program files\Dealio\kb124\rules\rules.1.220.43
c:\program files\Dealio\kb124\rules\rules.1.221.57
c:\program files\Dealio\kb124\rules\rules.1.222.43
c:\program files\Dealio\kb124\rules\rules.1.223.68
c:\program files\Dealio\kb124\rules\rules.1.226.68
c:\program files\Dealio\kb124\rules\rules.1.227.43
c:\program files\Dealio\kb124\rules\rules.1.228.62
c:\program files\Dealio\kb124\rules\rules.1.229.76
c:\program files\Dealio\kb124\rules\rules.1.23.63
c:\program files\Dealio\kb124\rules\rules.1.239.43
c:\program files\Dealio\kb124\rules\rules.1.24.43
c:\program files\Dealio\kb124\rules\rules.1.240.43
c:\program files\Dealio\kb124\rules\rules.1.241.43
c:\program files\Dealio\kb124\rules\rules.1.242.43
c:\program files\Dealio\kb124\rules\rules.1.243.77
c:\program files\Dealio\kb124\rules\rules.1.244.63
c:\program files\Dealio\kb124\rules\rules.1.245.43
c:\program files\Dealio\kb124\rules\rules.1.247.43
c:\program files\Dealio\kb124\rules\rules.1.248.43
c:\program files\Dealio\kb124\rules\rules.1.249.43
c:\program files\Dealio\kb124\rules\rules.1.250.43
c:\program files\Dealio\kb124\rules\rules.1.251.43
c:\program files\Dealio\kb124\rules\rules.1.252.43
c:\program files\Dealio\kb124\rules\rules.1.253.43
c:\program files\Dealio\kb124\rules\rules.1.254.43
c:\program files\Dealio\kb124\rules\rules.1.255.43
c:\program files\Dealio\kb124\rules\rules.1.256.43
c:\program files\Dealio\kb124\rules\rules.1.257.43
c:\program files\Dealio\kb124\rules\rules.1.279.43
c:\program files\Dealio\kb124\rules\rules.1.28.58
c:\program files\Dealio\kb124\rules\rules.1.282.75
c:\program files\Dealio\kb124\rules\rules.1.283.43
c:\program files\Dealio\kb124\rules\rules.1.284.43
c:\program files\Dealio\kb124\rules\rules.1.289.67
c:\program files\Dealio\kb124\rules\rules.1.290.62
c:\program files\Dealio\kb124\rules\rules.1.291.61
c:\program files\Dealio\kb124\rules\rules.1.296.43
c:\program files\Dealio\kb124\rules\rules.1.297.43
c:\program files\Dealio\kb124\rules\rules.1.304.43
c:\program files\Dealio\kb124\rules\rules.1.307.43
c:\program files\Dealio\kb124\rules\rules.1.308.75
c:\program files\Dealio\kb124\rules\rules.1.31.47
c:\program files\Dealio\kb124\rules\rules.1.310.46
c:\program files\Dealio\kb124\rules\rules.1.311.43
c:\program files\Dealio\kb124\rules\rules.1.315.43
c:\program files\Dealio\kb124\rules\rules.1.316.43
c:\program files\Dealio\kb124\rules\rules.1.317.43
c:\program files\Dealio\kb124\rules\rules.1.318.43
c:\program files\Dealio\kb124\rules\rules.1.319.49
c:\program files\Dealio\kb124\rules\rules.1.32.48
c:\program files\Dealio\kb124\rules\rules.1.334.44
c:\program files\Dealio\kb124\rules\rules.1.335.60
c:\program files\Dealio\kb124\rules\rules.1.336.44
c:\program files\Dealio\kb124\rules\rules.1.337.44
c:\program files\Dealio\kb124\rules\rules.1.338.75
c:\program files\Dealio\kb124\rules\rules.1.339.47
c:\program files\Dealio\kb124\rules\rules.1.34.43
c:\program files\Dealio\kb124\rules\rules.1.340.47
c:\program files\Dealio\kb124\rules\rules.1.341.47
c:\program files\Dealio\kb124\rules\rules.1.349.50
c:\program files\Dealio\kb124\rules\rules.1.35.48
c:\program files\Dealio\kb124\rules\rules.1.350.50
c:\program files\Dealio\kb124\rules\rules.1.351.51
c:\program files\Dealio\kb124\rules\rules.1.352.77
c:\program files\Dealio\kb124\rules\rules.1.353.51
c:\program files\Dealio\kb124\rules\rules.1.354.51
c:\program files\Dealio\kb124\rules\rules.1.357.62
c:\program files\Dealio\kb124\rules\rules.1.358.52
c:\program files\Dealio\kb124\rules\rules.1.359.52
c:\program files\Dealio\kb124\rules\rules.1.360.53
c:\program files\Dealio\kb124\rules\rules.1.361.54
c:\program files\Dealio\kb124\rules\rules.1.362.68
c:\program files\Dealio\kb124\rules\rules.1.363.58
c:\program files\Dealio\kb124\rules\rules.1.364.54
c:\program files\Dealio\kb124\rules\rules.1.365.53
c:\program files\Dealio\kb124\rules\rules.1.367.56
c:\program files\Dealio\kb124\rules\rules.1.368.58
c:\program files\Dealio\kb124\rules\rules.1.369.55
c:\program files\Dealio\kb124\rules\rules.1.370.80
c:\program files\Dealio\kb124\rules\rules.1.371.56
c:\program files\Dealio\kb124\rules\rules.1.372.57
c:\program files\Dealio\kb124\rules\rules.1.373.55
c:\program files\Dealio\kb124\rules\rules.1.375.56
c:\program files\Dealio\kb124\rules\rules.1.376.57
c:\program files\Dealio\kb124\rules\rules.1.377.55
c:\program files\Dealio\kb124\rules\rules.1.378.65
c:\program files\Dealio\kb124\rules\rules.1.384.58
c:\program files\Dealio\kb124\rules\rules.1.386.71
c:\program files\Dealio\kb124\rules\rules.1.387.59
c:\program files\Dealio\kb124\rules\rules.1.388.59
c:\program files\Dealio\kb124\rules\rules.1.389.59
c:\program files\Dealio\kb124\rules\rules.1.390.60
c:\program files\Dealio\kb124\rules\rules.1.391.78
c:\program files\Dealio\kb124\rules\rules.1.392.60
c:\program files\Dealio\kb124\rules\rules.1.393.60
c:\program files\Dealio\kb124\rules\rules.1.394.60
c:\program files\Dealio\kb124\rules\rules.1.396.61
c:\program files\Dealio\kb124\rules\rules.1.397.61
c:\program files\Dealio\kb124\rules\rules.1.398.60
c:\program files\Dealio\kb124\rules\rules.1.399.60
c:\program files\Dealio\kb124\rules\rules.1.403.61
c:\program files\Dealio\kb124\rules\rules.1.404.63
c:\program files\Dealio\kb124\rules\rules.1.405.61
c:\program files\Dealio\kb124\rules\rules.1.406.61
c:\program files\Dealio\kb124\rules\rules.1.407.76
c:\program files\Dealio\kb124\rules\rules.1.408.63
c:\program files\Dealio\kb124\rules\rules.1.409.61
c:\program files\Dealio\kb124\rules\rules.1.412.62
c:\program files\Dealio\kb124\rules\rules.1.413.62
c:\program files\Dealio\kb124\rules\rules.1.414.62
c:\program files\Dealio\kb124\rules\rules.1.415.62
c:\program files\Dealio\kb124\rules\rules.1.416.62
c:\program files\Dealio\kb124\rules\rules.1.417.62
c:\program files\Dealio\kb124\rules\rules.1.418.62
c:\program files\Dealio\kb124\rules\rules.1.419.62
c:\program files\Dealio\kb124\rules\rules.1.420.62
c:\program files\Dealio\kb124\rules\rules.1.421.62
c:\program files\Dealio\kb124\rules\rules.1.423.77
c:\program files\Dealio\kb124\rules\rules.1.424.63
c:\program files\Dealio\kb124\rules\rules.1.425.63
c:\program files\Dealio\kb124\rules\rules.1.426.63
c:\program files\Dealio\kb124\rules\rules.1.427.63
c:\program files\Dealio\kb124\rules\rules.1.428.65
c:\program files\Dealio\kb124\rules\rules.1.429.63
c:\program files\Dealio\kb124\rules\rules.1.430.63
c:\program files\Dealio\kb124\rules\rules.1.432.65
c:\program files\Dealio\kb124\rules\rules.1.433.64
c:\program files\Dealio\kb124\rules\rules.1.434.65
c:\program files\Dealio\kb124\rules\rules.1.435.64
c:\program files\Dealio\kb124\rules\rules.1.436.76
c:\program files\Dealio\kb124\rules\rules.1.437.64
c:\program files\Dealio\kb124\rules\rules.1.438.71
c:\program files\Dealio\kb124\rules\rules.1.439.71
c:\program files\Dealio\kb124\rules\rules.1.440.75
c:\program files\Dealio\kb124\rules\rules.1.442.73
c:\program files\Dealio\kb124\rules\rules.1.443.73
c:\program files\Dealio\kb124\rules\rules.1.444.73
c:\program files\Dealio\kb124\rules\rules.1.445.68
c:\program files\Dealio\kb124\rules\rules.1.446.69
c:\program files\Dealio\kb124\rules\rules.1.450.67
c:\program files\Dealio\kb124\rules\rules.1.451.67
c:\program files\Dealio\kb124\rules\rules.1.452.68
c:\program files\Dealio\kb124\rules\rules.1.453.68
c:\program files\Dealio\kb124\rules\rules.1.454.69
c:\program files\Dealio\kb124\rules\rules.1.456.69
c:\program files\Dealio\kb124\rules\rules.1.457.75
c:\program files\Dealio\kb124\rules\rules.1.458.70
c:\program files\Dealio\kb124\rules\rules.1.459.70
c:\program files\Dealio\kb124\rules\rules.1.460.69
c:\program files\Dealio\kb124\rules\rules.1.462.74
c:\program files\Dealio\kb124\rules\rules.1.463.69
c:\program files\Dealio\kb124\rules\rules.1.464.70
c:\program files\Dealio\kb124\rules\rules.1.465.68
c:\program files\Dealio\kb124\rules\rules.1.468.70
c:\program files\Dealio\kb124\rules\rules.1.469.70
c:\program files\Dealio\kb124\rules\rules.1.470.70
c:\program files\Dealio\kb124\rules\rules.1.471.73
c:\program files\Dealio\kb124\rules\rules.1.472.70
c:\program files\Dealio\kb124\rules\rules.1.478.74
c:\program files\Dealio\kb124\rules\rules.1.479.73
c:\program files\Dealio\kb124\rules\rules.1.480.68
c:\program files\Dealio\kb124\rules\rules.1.481.71
c:\program files\Dealio\kb124\rules\rules.1.482.74
c:\program files\Dealio\kb124\rules\rules.1.49.67
c:\program files\Dealio\kb124\rules\rules.1.50.43
c:\program files\Dealio\kb124\rules\rules.1.500.71
c:\program files\Dealio\kb124\rules\rules.1.501.74
c:\program files\Dealio\kb124\rules\rules.1.502.71
c:\program files\Dealio\kb124\rules\rules.1.51.69
c:\program files\Dealio\kb124\rules\rules.1.52.72
c:\program files\Dealio\kb124\rules\rules.1.520.76
c:\program files\Dealio\kb124\rules\rules.1.521.76
c:\program files\Dealio\kb124\rules\rules.1.522.76
c:\program files\Dealio\kb124\rules\rules.1.53.51
c:\program files\Dealio\kb124\rules\rules.1.531.76
c:\program files\Dealio\kb124\rules\rules.1.532.75
c:\program files\Dealio\kb124\rules\rules.1.533.77
c:\program files\Dealio\kb124\rules\rules.1.534.75
c:\program files\Dealio\kb124\rules\rules.1.54.47
c:\program files\Dealio\kb124\rules\rules.1.55.45
c:\program files\Dealio\kb124\rules\rules.1.56.69
c:\program files\Dealio\kb124\rules\rules.1.57.43
c:\program files\Dealio\kb124\rules\rules.1.58.47
c:\program files\Dealio\kb124\rules\rules.1.591.79
c:\program files\Dealio\kb124\rules\rules.1.592.79
c:\program files\Dealio\kb124\rules\rules.1.593.76
c:\program files\Dealio\kb124\rules\rules.1.594.77
c:\program files\Dealio\kb124\rules\rules.1.595.76
c:\program files\Dealio\kb124\rules\rules.1.608.78
c:\program files\Dealio\kb124\rules\rules.1.610.80
c:\program files\Dealio\kb124\rules\rules.1.611.79
c:\program files\Dealio\kb124\rules\rules.1.614.79
c:\program files\Dealio\kb124\rules\rules.1.617.79
c:\program files\Dealio\kb124\rules\rules.1.624.80
c:\program files\Dealio\kb124\rules\rules.1.63.57
c:\program files\Dealio\kb124\rules\rules.1.640.80
c:\program files\Dealio\kb124\rules\rules.1.641.80
c:\program files\Dealio\kb124\rules\rules.1.66.47
c:\program files\Dealio\kb124\rules\rules.1.70.75
c:\program files\Dealio\kb124\rules\rules.1.71.43
C:\sam.tmp
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_SETUPNTGLM7X
-------\Service_SetupNTGLM7X
((((((((((((((((((((((((( Soubory vytvořené od 2010-06-17 do 2010-07-17 )))))))))))))))))))))))))))))))
.
2010-07-16 20:50 . 2010-07-16 20:50 217180 ----a-w- c:\windows\system32\nvdrsdb0.bin
2010-07-16 20:50 . 2010-07-16 20:50 1 ----a-w- c:\windows\system32\nvdrssel.bin
2010-07-16 20:50 . 2010-07-16 20:50 217180 ----a-w- c:\windows\system32\nvdrsdb1.bin
2010-07-16 20:50 . 2010-07-16 20:51 -------- d-----w- c:\program files\NVIDIA Corporation
2010-07-16 20:50 . 2010-06-07 23:57 61440 ----a-w- c:\windows\system32\OpenCL.dll
2010-07-16 20:50 . 2010-06-07 23:57 2632296 ----a-w- c:\windows\system32\nvcuvenc.dll
2010-07-16 20:50 . 2010-06-07 23:57 2165352 ----a-w- c:\windows\system32\nvcuvid.dll
2010-07-16 20:50 . 2010-06-07 23:57 4554752 ----a-w- c:\windows\system32\nvcuda.dll
2010-07-16 20:50 . 2010-06-07 23:57 2186342 ----a-w- c:\windows\system32\nvdata.bin
2010-07-16 20:50 . 2010-06-07 23:57 10256384 ----a-w- c:\windows\system32\nvcompiler.dll
2010-07-16 20:49 . 2010-07-16 20:49 -------- d-----w- C:\NVIDIA
2010-07-16 19:18 . 2010-07-16 21:53 -------- d-----w- C:\rsit
2010-07-16 19:18 . 2010-07-16 19:19 -------- d-----w- c:\program files\trend micro
2010-07-14 15:42 . 2010-06-14 14:31 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-06-17 09:15 . 2010-06-17 09:19 -------- d-----w- c:\program files\ICQ7.2
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-15 17:02 . 2007-08-11 22:29 137464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-07-15 17:02 . 2007-08-11 22:29 214520 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-07-11 23:16 . 2007-12-13 18:18 -------- d-----w- c:\program files\AstraScan Scanner
2010-07-11 20:02 . 2007-08-11 14:57 196608 ----a-w- c:\windows\system32\drivers\nStandard.bin
2010-06-27 15:52 . 2001-10-25 12:00 505816 ----a-w- c:\windows\system32\perfh005.dat
2010-06-27 15:52 . 2001-10-25 12:00 109466 ----a-w- c:\windows\system32\perfc005.dat
2010-06-17 13:42 . 2009-01-26 12:16 -------- d-----w- c:\program files\ICQ6Toolbar
2010-06-17 09:15 . 2007-08-11 14:50 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-06-15 21:02 . 2008-08-04 15:18 -------- d-----w- c:\program files\Avast4
2010-06-14 14:31 . 2007-08-11 14:29 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2010-06-10 23:36 . 2010-06-10 23:33 -------- d-----w- c:\program files\MediaCoder
2010-06-07 23:57 . 2007-08-11 14:56 600680 ----a-w- c:\windows\system32\nvudisp.exe
2010-06-07 23:57 . 2007-04-12 15:44 6300544 ----a-w- c:\windows\system32\nv4_disp.dll
2010-06-07 23:57 . 2007-04-12 15:44 232040 ----a-w- c:\windows\system32\nvcodins.dll
2010-06-07 23:57 . 2007-04-12 15:44 232040 ----a-w- c:\windows\system32\nvcod.dll
2010-06-07 23:57 . 2007-04-12 15:44 15192064 ----a-w- c:\windows\system32\nvoglnt.dll
2010-06-07 23:57 . 2007-04-12 15:44 1359872 ----a-w- c:\windows\system32\nvapi.dll
2010-06-07 23:57 . 2007-04-12 15:44 10531200 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-06-06 14:34 . 2010-06-06 14:34 -------- d-----w- c:\program files\MSECache
2010-06-06 14:08 . 2009-07-10 15:20 -------- d-----w- c:\program files\Microsoft Silverlight
2010-05-28 10:58 . 2007-08-11 14:55 600680 ----a-w- c:\windows\system32\NVUNINST.EXE
2010-05-06 10:35 . 2004-08-17 13:49 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 08:09 . 2004-08-17 13:44 1851264 ----a-w- c:\windows\system32\win32k.sys
2010-04-20 05:32 . 2004-08-17 13:48 285696 ----a-w- c:\windows\system32\atmfd.dll
2004-10-01 14:00 . 2007-08-14 14:48 40960 ----a-w- c:\program files\Uninstall_CDS.exe
2008-03-09 14:29 . 2008-03-09 14:29 0 --sh--w- c:\windows\S32096763.tmp
.
((((((((((((((((((((((((((((( SnapShot@2010-07-14_12.36.01 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-07-17 09:05 . 2010-07-17 09:05 16384 c:\windows\Temp\Perflib_Perfdata_b00.dat
+ 2010-07-17 09:05 . 2010-07-17 09:05 16384 c:\windows\Temp\Perflib_Perfdata_824.dat
+ 2010-07-17 09:04 . 2010-07-17 09:04 16384 c:\windows\Temp\Perflib_Perfdata_720.dat
+ 2010-06-07 15:35 . 2010-06-07 15:35 81920 c:\windows\system32\nvwddi.dll
- 2007-04-12 15:44 . 2007-04-12 15:44 81920 c:\windows\system32\nvwddi.dll
+ 2007-08-12 18:43 . 2010-07-14 15:48 23040 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\unbndico.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 23040 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\unbndico.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 61440 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\pubs.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 61440 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\pubs.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 27136 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 27136 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 11264 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\mspicons.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 11264 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\mspicons.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 86016 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\inficon.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 86016 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\inficon.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 12288 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\cagicon.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 12288 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 4096 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\opwicon.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 4096 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2010-06-07 15:35 . 2010-06-07 15:35 154728 c:\windows\system32\nvsvc32.exe
+ 2010-06-07 15:35 . 2010-06-07 15:35 126976 c:\windows\system32\nvrszht.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 229376 c:\windows\system32\nvrszhc.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 258048 c:\windows\system32\nvrstr.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 253952 c:\windows\system32\nvrsth.dll
- 2007-04-12 15:44 . 2007-04-12 15:44 253952 c:\windows\system32\nvrssv.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 253952 c:\windows\system32\nvrssv.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 258048 c:\windows\system32\nvrssl.dll
- 2007-04-12 15:44 . 2007-04-12 15:44 258048 c:\windows\system32\nvrssk.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 258048 c:\windows\system32\nvrssk.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 270336 c:\windows\system32\nvrsru.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 270336 c:\windows\system32\nvrsptb.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 274432 c:\windows\system32\nvrspt.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 258048 c:\windows\system32\nvrspl.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 253952 c:\windows\system32\nvrsno.dll
- 2007-04-12 15:44 . 2007-04-12 15:44 253952 c:\windows\system32\nvrsno.dll
- 2007-04-12 15:44 . 2007-04-12 15:44 274432 c:\windows\system32\nvrsnl.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 274432 c:\windows\system32\nvrsnl.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 266240 c:\windows\system32\nvrsko.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 270336 c:\windows\system32\nvrsja.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 282624 c:\windows\system32\nvrsit.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 262144 c:\windows\system32\nvrshu.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 331776 c:\windows\system32\nvrshe.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 286720 c:\windows\system32\nvrsfr.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 249856 c:\windows\system32\nvrsfi.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 274432 c:\windows\system32\nvrsesm.dll
- 2007-04-12 15:44 . 2007-04-12 15:44 274432 c:\windows\system32\nvrsesm.dll
- 2007-04-12 15:44 . 2007-04-12 15:44 282624 c:\windows\system32\nvrses.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 282624 c:\windows\system32\nvrses.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 249856 c:\windows\system32\nvrseng.dll
- 2007-04-12 15:44 . 2007-04-12 15:44 282624 c:\windows\system32\nvrsel.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 282624 c:\windows\system32\nvrsel.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 278528 c:\windows\system32\nvrsde.dll
- 2007-04-12 15:44 . 2007-04-12 15:44 253952 c:\windows\system32\nvrsda.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 253952 c:\windows\system32\nvrsda.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 249856 c:\windows\system32\nvrscs.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 335872 c:\windows\system32\nvrsar.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 110696 c:\windows\system32\nvmctray.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 277608 c:\windows\system32\nvmccs.dll
+ 2010-06-07 15:35 . 2010-06-07 15:35 145000 c:\windows\system32\nvcolor.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 409600 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\xlicons.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 409600 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\xlicons.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 286720 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\wordicon.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 286720 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\wordicon.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 249856 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\pptico.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 249856 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\pptico.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 794624 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\outicon.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 794624 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\outicon.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 135168 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 135168 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2007-08-12 18:43 . 2010-06-13 01:00 593920 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\accicons.exe
+ 2007-08-12 18:43 . 2010-07-14 15:48 593920 c:\windows\Installer\{90110405-6000-11D3-8CFE-0150048383C9}\accicons.exe
+ 2007-04-19 12:01 . 2007-04-19 12:01 238424 c:\windows\Installer\$PatchCache$\Managed\5040110900063D11C8EF10054038389C\11.0.8173\MSCDM.DLL
+ 2007-01-16 18:32 . 2007-01-16 18:32 136032 c:\windows\Installer\$PatchCache$\Managed\5040110900063D11C8EF10054038389C\11.0.8173\MSAEXP30.DLL
+ 2007-04-19 11:54 . 2007-04-19 11:54 169312 c:\windows\Installer\$PatchCache$\Managed\5040110900063D11C8EF10054038389C\11.0.8173\ACCWIZ.DLL
+ 2007-04-12 15:44 . 2010-06-07 23:57 6300544 c:\windows\system32\dllcache\nv4_disp.dll
+ 2010-05-25 09:45 . 2010-05-25 09:45 8445440 c:\windows\Installer\6e0c5.msp
+ 2010-06-11 15:55 . 2010-06-11 15:55 1827328 c:\windows\Installer\6e0ad.msp
+ 2010-06-30 20:52 . 2010-06-30 20:52 5522944 c:\windows\Installer\6e093.msp
+ 2010-07-16 20:51 . 2010-07-16 20:51 1604096 c:\windows\Installer\14e7144.msi
+ 2007-05-10 11:43 . 2007-05-10 11:43 6688096 c:\windows\Installer\$PatchCache$\Managed\5040110900063D11C8EF10054038389C\11.0.8173\MSACCESS.EXE
+ 2010-06-07 15:35 . 2010-06-07 15:35 13902440 c:\windows\system32\nvcpl.dll
+ 2007-08-11 15:41 . 2010-07-02 19:39 34045896 c:\windows\system32\MRT.exe
+ 2007-04-12 15:44 . 2010-06-07 23:57 10531200 c:\windows\system32\dllcache\nv4_mini.sys
+ 2010-06-11 15:52 . 2010-06-11 15:52 45542912 c:\windows\Installer\6e0ae.msp
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\\Phone\Skype.exe" [2010-03-09 26100520]
"OM2_Monitor"="c:\program files\OLYMPUS\OLYMPUS Master 2\MMonitor.exe" [2007-09-04 95536]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-14 68856]
"ICQ"="c:\program files\ICQ7.2\ICQ.exe" [2010-06-17 133368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-03-21 16126464]
"GamerOSD"="c:\program files\ASUS\GamerOSD\GamerOSD.exe" [2007-02-14 380928]
"VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2006-04-29 94208]
"avast!"="c:\progra~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"tsnpstd3"="c:\windows\tsnpstd3.exe" [2006-06-19 262144]
"snpstd3"="c:\windows\vsnpstd3.exe" [2006-05-12 831488]
"USBToolTip"="c:\progra~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe" [2007-02-20 199752]
"RemoteControl"="c:\program files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe" [2004-11-02 32768]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-09-01 282624]
"OM2_Monitor"="c:\program files\OLYMPUS\OLYMPUS Master 2\FirstStart.exe" [2007-09-04 54576]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-06-07 110696]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-06-07 13902440]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Acrobat Assistant.lnk - c:\program files\Adobe\Acrobat 6.0 CE\Distillr\acrotray.exe [2003-7-17 217180]
Adobe Gamma Loader.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2007-8-12 113664]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoStartMenuSubFolders"= 0 (0x0)
"NoCommonGroups"= 0 (0x0)
"NoPrinters"= 0 (0x0)
"NoRecentDocsNetHood"= 0 (0x0)
"NoChangeAnimation"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Action Manager 32.lnk]
backup=c:\windows\pss\Action Manager 32.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^Pavka^Nabídka Start^Programy^Po spuštění^Picture Motion Browser Media Check Tool.lnk]
backup=c:\windows\pss\Picture Motion Browser Media Check Tool.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
2002-11-03 19:53 188416 ----a-w- c:\windows\system32\spool\drivers\w32x86\3\hpztsb07.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSLauncher]
2007-08-02 14:30 3096576 ----a-w- c:\program files\Nokia\Nokia Software Launcher\NSLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerBar]
2004-04-21 09:26 86016 ------w- c:\program files\CyberLink DVD Solution\Multimedia Launcher\PowerBar.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2006-09-01 14:57 282624 ----a-w- c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2004-11-02 19:24 32768 ----a-w- c:\program files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2010-03-09 09:02 26100520 ----a-r- c:\program files\Skype\Phone\Skype.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2007-08-14 19:29 68856 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" -atboottime
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe"=
"c:\\Program Files\\Pinnacle\\Studio 11\\programs\\RM.exe"=
"c:\\Program Files\\Pinnacle\\Studio 11\\programs\\Studio.exe"=
"c:\\Program Files\\Pinnacle\\Studio 11\\programs\\PMSRegisterFile.exe"=
"c:\\Program Files\\Pinnacle\\Studio 11\\programs\\umi.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Pinnacle\\Studio 12\\Programs\\RM.exe"=
"c:\\Program Files\\Pinnacle\\Studio 12\\Programs\\Studio.exe"=
"c:\\Program Files\\Pinnacle\\Studio 12\\Programs\\umi.exe"=
"c:\\Program Files\\YouTube Batch Downloader\\bin\\utdman.exe"=
"c:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Eurekr.com\\1-Click YouTube Batch Downloader\\bin\\utdman.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [4.8.2008 17:18 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [4.8.2008 17:18 20560]
R2 extradrv;Extra Driver;c:\windows\system32\drivers\extradrv.sys [5.11.2005 13:44 36352]
R2 FortiSslvpnDaemon;FortiClient SSL VPN;c:\windows\system32\FortiSSLVPNdaemon.exe [9.3.2009 16:07 518688]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [26.1.2009 14:16 246520]
R3 pppop;PPPoP WAN Adapter;c:\windows\system32\drivers\pppop.sys [3.2.2009 12:43 36384]
S0 Winbk68;Winbk68;c:\windows\system32\Drivers\Winbk68.sys --> c:\windows\system32\Drivers\Winbk68.sys [?]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [21.10.2007 14:26 639224]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2009-11-20 13:28 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
2010-07-16 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2006\SystemOptimizer.exe [2006-10-05 12:17]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://
www.seznam.cz/
uInternet Settings,ProxyServer = 127.0.0.1:81
uInternet Settings,ProxyOverride = local
uSearchAssistant = hxxp://
www.google.com/ie
uSearchURL,(Default) = hxxp://
www.google.com/search?q=%s
IE: Compare Prices with &Dealio - c:\documents and settings\Pavka\Data aplikací\Dealio\kb124\res\DealioSearch.html
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: {{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - c:\program files\ICQ7.2\ICQ.exe
DPF: {AE2B937E-EA7D-4A8D-888C-B68D7F72A3C4} - hxxp://asp08.photoprintit.de/microsite/4860/defaults/activex/ips/IPSUploader4.cab
DPF: {D71F9A27-723E-4B8B-B428-B725E47CBA3E} - hxxp://imikimi.com/download/imikimi_plugin_0.5.1.cab
DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} - hxxp://asp01.photoprintit.de/microsite/4860/defaults/activex/IPSUploader.cab
DPF: {F9740CE7-2A72-46DA-ACC3-E819FA57F3E1} - hxxps://
www.vzp.cz/IISIPortal/docroot/podatelna ... Signer.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
HKLM-Run-nwiz - c:\program files\NVIDIA Corporation\nView\nwiz.exe
AddRemove-NVIDIA nView Desktop Manager - c:\program files\NVIDIA Corporation\nView\nViewSetup.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-07-17 11:05
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer,
http://www.gmer.net
device: opened successfully
user: MBR read successfully
called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll >>UNKNOWN [0xFCD44EC5]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0xf616bf28
\Driver\ACPI -> ACPI.sys @ 0xf60becb8
\Driver\atapi -> atapi.sys @ 0xf6050852
IoDeviceObjectType -> DeleteProcedure -> ntoskrnl.exe @ 0xe0c9810a
ParseProcedure -> ntoskrnl.exe @ 0xe0c29f7a
\Device\Harddisk0\DR0 -> DeleteProcedure -> ntoskrnl.exe @ 0xe0c9810a
ParseProcedure -> ntoskrnl.exe @ 0xe0c29f7a
NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC -> SendCompleteHandler -> NDIS.sys @ 0xf5f49bb0
PacketIndicateHandler -> NDIS.sys @ 0xf5f56a21
SendHandler -> NDIS.sys @ 0xf5f3487b
user & kernel MBR OK
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-776561741-2139871995-839522115-1003\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'explorer.exe'(2972)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Avast4\aswUpdSv.exe
c:\program files\Avast4\ashServ.exe
c:\windows\ATKKBService.exe
c:\windows\RTHDCPL.EXE
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
c:\program files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\program files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
c:\program files\Avast4\ashMaiSv.exe
c:\program files\Avast4\ashWebSv.exe
.
**************************************************************************
.
Celkový čas: 2010-07-17 11:13:20 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-07-17 09:13
ComboFix2.txt 2010-07-16 14:56
ComboFix3.txt 2010-07-15 16:27
ComboFix4.txt 2010-07-14 12:38
Před spuštěním: Volných bajtů: 22 830 657 536
Po spuštění: Volných bajtů: 22 818 189 312
- - End Of File - - 9A47C1F1BCFDC7F76AB3965199B12821