procim o kontrolu combof.
Napsal: 07 úno 2011 10:18
ComboFix 11-02-06.01 - Jura 07.02.2011 9:46.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3036.1790 [GMT 1:00]
Spuštěný z: c:\users\Jura\Desktop\ComboFix.exe
AV: TrustPort Antivirus *Disabled/Updated* {C3AD9610-D79C-79A3-8C7B-CAB50B3AA5DC}
FW: TrustPort Personal Firewall *Enabled* {FB961735-9DF3-78FB-A724-6380F5E9E2A7}
SP: TrustPort Antivirus *Disabled/Updated* {78CC77F4-F1A6-762D-B6CB-F1C770BDEF61}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
Nakažená kopie c:\windows\System32\autochk.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6001.18000_none_e1f3ed49c1c122ef\autochk.exe
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-01-07 do 2011-02-07 )))))))))))))))))))))))))))))))
.
2011-02-07 05:04 . 2011-01-25 07:48 38456 ----a-w- c:\windows\system32\drivers\tdifw.sys
2011-02-07 05:03 . 2011-01-25 07:47 35896 ----a-w- c:\windows\system32\drivers\avasdmft.sys
2011-02-07 05:03 . 2011-02-07 05:04 -------- d-----w- c:\program files\TrustPort
2011-02-07 05:03 . 2011-01-25 07:49 33632 ----a-w- c:\windows\system32\drivers\tpsec.sys
2011-02-06 18:02 . 2011-01-07 13:54 149456 ----a-w- c:\windows\SGDetectionTool.dll0213.old
2011-02-06 18:02 . 2011-01-07 13:54 2000848 ----a-w- c:\windows\PCTBDCore.dll0213.old
2011-02-06 18:02 . 2011-01-07 13:54 767952 ----a-w- c:\windows\BDTSupport.dll0213.old
2011-02-06 16:28 . 2011-02-06 22:34 -------- d-----w- c:\programdata\PC Tools
2011-02-06 13:24 . 2011-02-06 13:24 -------- d-----w- C:\temp
2011-02-06 13:21 . 2008-02-15 15:35 102400 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\lxbkpp5c.dll
2011-02-06 11:06 . 2011-01-20 09:39 5890896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{9C6EC40E-6E2C-4048-99AC-55B06FBA2B78}\mpengine.dll
2011-02-06 07:56 . 2011-02-06 07:56 -------- d-----w- c:\program files\VS Revo Group
2011-02-05 13:50 . 2011-02-05 14:10 -------- d-----w- c:\program files\Windows Live Safety Center
2011-02-05 07:33 . 2010-11-01 23:03 1448448 ----a-w- c:\windows\system32\inetcpl.cpl
2011-02-05 07:33 . 2010-11-01 22:59 2381824 ----a-w- c:\windows\system32\mshtml.tlb
2011-02-04 22:02 . 2010-09-01 07:30 94208 ----a-w- c:\program files\Internet Explorer\cs\iediag.resources.dll
2011-02-04 21:50 . 2010-08-17 23:54 280064 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-02-04 21:50 . 2010-08-17 23:54 135680 ----a-w- c:\windows\system32\XpsRasterService.dll
2011-02-04 21:50 . 2010-08-17 23:52 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2011-02-04 21:50 . 2010-08-17 23:51 357376 ----a-w- c:\windows\system32\MFHEAACdec.dll
2011-02-04 21:50 . 2010-08-17 23:51 261632 ----a-w- c:\windows\system32\mfreadwrite.dll
2011-02-04 21:50 . 2010-08-17 23:51 302592 ----a-w- c:\windows\system32\mfmp4src.dll
2011-02-04 21:50 . 2010-08-17 23:50 680960 ----a-w- c:\windows\system32\d2d1.dll
2011-02-04 21:50 . 2010-08-17 23:49 1174528 ----a-w- c:\windows\system32\d3d10warp.dll
2011-02-04 21:50 . 2010-08-17 23:49 1068032 ----a-w- c:\windows\system32\DWrite.dll
2011-02-04 21:50 . 2010-08-17 23:49 797184 ----a-w- c:\windows\system32\FntCache.dll
2011-02-04 21:50 . 2010-08-17 23:48 161280 ----a-w- c:\windows\system32\d3d10_1.dll
2011-02-04 21:50 . 2010-08-17 23:48 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2011-02-04 21:15 . 2011-02-04 21:15 -------- d-----w- c:\program files\Feedback Tool
2011-02-04 16:30 . 2011-02-04 16:39 -------- d-----w- c:\program files\ICQ7.4
2011-02-04 05:17 . 2011-02-04 05:17 -------- d-----w- c:\program files\MSXML 4.0
2011-02-03 15:03 . 2011-02-03 15:03 -------- d-----w- c:\programdata\Sunbelt
2011-02-03 10:18 . 2011-02-03 10:18 -------- d-----w- c:\programdata\LightScribe
2011-02-03 10:04 . 2011-02-03 10:04 -------- d-----w- c:\program files\uTorrent
2011-02-03 08:08 . 2011-02-03 08:08 -------- d-----w- C:\pebuilder3110a
2011-02-03 07:41 . 2011-02-03 07:41 -------- d-----w- c:\users\Public\CyberLink
2011-02-03 07:36 . 2011-02-03 07:41 -------- d-----w- c:\programdata\CyberLink
2011-02-03 07:34 . 2011-02-03 07:34 -------- d-----w- c:\program files\Common Files\LightScribe
2011-02-03 07:33 . 2007-03-22 20:28 1053232 ------w- c:\windows\system32\MFC71u.dll
2011-02-03 07:33 . 2007-03-22 20:28 1066544 ------w- c:\windows\system32\MFC71.dll
2011-02-03 07:33 . 2007-03-22 20:28 353840 ------w- c:\windows\system32\msvcr71.dll
2011-02-03 07:33 . 2007-03-22 20:27 505392 ------w- c:\windows\system32\msvcp71.dll
2011-02-03 07:33 . 2011-02-03 07:37 -------- d-----w- c:\program files\CyberLink
2011-02-03 06:52 . 2011-02-03 06:52 -------- d-----w- c:\program files\Windows Portable Devices
2011-02-03 06:50 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe
2011-02-03 06:39 . 2010-05-04 19:13 231424 ----a-w- c:\windows\system32\msshsq.dll
2011-02-03 06:25 . 2011-02-03 06:26 -------- d-----w- c:\program files\OpenOffice.org 3
2011-02-03 06:07 . 2011-02-03 06:07 -------- d-----w- c:\program files\VideoLAN
2011-02-03 05:22 . 2011-02-07 05:04 -------- d-----w- c:\program files\Common Files\TrustPort
2011-02-03 05:13 . 2011-02-03 05:13 -------- d-----w- c:\program files\Common Files\Adobe
2011-02-03 05:11 . 2011-02-03 05:11 -------- d-----w- c:\program files\Common Files\Adobe AIR
2011-02-03 05:10 . 2011-02-03 05:10 -------- d-----w- c:\windows\system32\Macromed
2011-02-03 04:57 . 2011-02-03 04:58 -------- d-----w- c:\windows\system32\ca-ES
2011-02-03 04:57 . 2011-02-03 04:58 -------- d-----w- c:\windows\system32\eu-ES
2011-02-03 04:57 . 2011-02-03 04:58 -------- d-----w- c:\windows\system32\vi-VN
2011-02-03 04:45 . 2011-02-03 04:45 -------- d-----w- c:\windows\system32\EventProviders
2011-02-03 04:43 . 2009-04-11 06:32 223208 ----a-w- c:\windows\system32\drivers\netio.sys
2011-02-03 04:42 . 2009-04-11 06:28 83968 ----a-w- c:\windows\system32\wbem\wmiutils.dll
2011-02-03 04:42 . 2009-04-11 06:28 744448 ----a-w- c:\windows\system32\wbem\wbemcore.dll
2011-02-03 04:42 . 2009-04-11 06:28 30208 ----a-w- c:\windows\system32\wbem\wbemprox.dll
2011-02-03 04:42 . 2009-04-11 06:28 265728 ----a-w- c:\windows\system32\wbem\repdrvfs.dll
2011-02-03 04:42 . 2009-04-11 06:28 189440 ----a-w- c:\windows\system32\wbem\mofd.dll
2011-02-03 04:42 . 2009-04-11 06:28 614912 ----a-w- c:\windows\system32\wbem\fastprox.dll
2011-02-03 04:42 . 2009-04-11 06:28 265728 ----a-w- c:\windows\system32\wbem\esscli.dll
2011-02-03 04:42 . 2009-04-11 06:28 705536 ----a-w- c:\windows\system32\SmiEngine.dll
2011-02-03 04:42 . 2009-04-11 06:28 218624 ----a-w- c:\windows\system32\wdscore.dll
2011-02-03 04:42 . 2009-04-11 06:27 130560 ----a-w- c:\windows\system32\PkgMgr.exe
2011-02-03 04:42 . 2009-04-11 06:28 247808 ----a-w- c:\windows\system32\drvstore.dll
2011-02-03 04:11 . 2009-08-24 11:36 377344 ----a-w- c:\windows\system32\winhttp.dll
2011-02-03 04:11 . 2010-09-06 16:20 125952 ----a-w- c:\windows\system32\srvsvc.dll
2011-02-03 04:11 . 2010-09-06 16:19 17920 ----a-w- c:\windows\system32\netevent.dll
2011-02-03 04:11 . 2010-09-06 13:45 304128 ----a-w- c:\windows\system32\drivers\srv.sys
2011-02-03 04:11 . 2010-09-06 13:45 145408 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-02-03 04:11 . 2010-09-06 13:45 102400 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-02-03 04:11 . 2010-05-27 20:08 739328 ----a-w- c:\windows\system32\inetcomm.dll
2011-02-03 03:59 . 2011-02-03 03:59 -------- d-----w- c:\program files\Microsoft.NET
2011-02-03 03:58 . 2009-11-08 09:55 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-02-03 03:58 . 2009-11-08 09:55 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-02-03 03:58 . 2009-11-08 09:55 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-02-03 03:58 . 2009-11-08 09:55 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-02-03 03:58 . 2009-11-08 09:55 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-02-03 01:33 . 2009-02-11 09:11 329752 ----a-w- c:\windows\system32\drivers\iaStor.sys
2011-02-03 01:30 . 2009-03-17 07:40 1048576 ------w- C:\K50IJ.BIN
2011-02-03 01:30 . 2009-03-17 07:35 1048576 ------w- C:\K40IJ.BIN
2011-02-03 01:30 . 2008-11-03 07:03 13880 ----a-w- c:\windows\system32\drivers\kbfiltr.sys
2011-02-03 01:30 . 2008-12-24 08:39 14392 ----a-w- c:\windows\system32\drivers\ATKACPI.sys
2011-02-03 01:04 . 2011-02-02 17:42 -------- d-----w- c:\windows\system32\Lang
2011-02-03 01:04 . 2006-11-02 14:21 319456 ----a-w- c:\windows\system32\difxapi.dll
2011-02-03 01:01 . 2011-02-02 17:42 -------- d-----w- c:\program files\Intel
2011-02-03 01:01 . 2008-07-16 08:05 53248 ----a-w- c:\windows\system32\CSVer.dll
2011-02-03 01:01 . 2011-02-03 01:01 -------- d-----w- C:\Intel
2011-02-02 20:11 . 2008-05-27 04:59 18904 ----a-w- c:\windows\system32\StructuredQuerySchemaTrivial.bin
2011-02-02 20:09 . 2011-02-02 20:09 -------- d-----w- c:\windows\system32\x64
2011-02-02 20:04 . 2009-10-23 17:10 714240 ----a-w- c:\windows\system32\timedate.cpl
2011-02-02 19:41 . 2011-02-07 08:34 44544 ----a-w- c:\windows\system32\agremove.exe
2011-02-02 18:57 . 2010-10-19 09:41 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-02-02 18:48 . 2010-02-12 10:48 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-02-02 18:28 . 2010-10-19 04:27 7680 ----a-w- c:\program files\Internet Explorer\iecompat.dll
2011-02-02 18:26 . 2009-01-08 01:20 355832 ----a-w- c:\program files\Internet Explorer\pdm.dll
2011-02-02 18:26 . 2009-01-08 01:20 265720 ----a-w- c:\program files\Internet Explorer\msdbg2.dll
2011-02-02 18:21 . 2010-02-20 23:06 24064 ----a-w- c:\windows\system32\nshhttp.dll
2011-02-02 18:21 . 2010-02-20 23:05 30720 ----a-w- c:\windows\system32\httpapi.dll
2011-02-02 18:21 . 2010-02-20 20:53 411648 ----a-w- c:\windows\system32\drivers\http.sys
2011-02-02 18:18 . 2009-08-14 13:49 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2011-02-02 18:17 . 2009-12-23 11:33 172032 ----a-w- c:\windows\system32\wintrust.dll
2011-02-02 18:16 . 2010-01-29 15:40 1616384 ----a-w- c:\program files\Windows Mail\msoe.dll
2011-02-02 18:16 . 2010-08-17 14:11 128000 ----a-w- c:\windows\system32\spoolsv.exe
2011-02-02 18:16 . 2010-04-05 17:02 317952 ----a-w- c:\windows\system32\MP4SDECD.DLL
2011-02-02 18:16 . 2009-04-23 12:15 784896 ----a-w- c:\windows\system32\rpcrt4.dll
2011-02-02 18:16 . 2010-06-28 17:00 1316864 ----a-w- c:\windows\system32\ole32.dll
2011-02-02 18:16 . 2010-06-28 14:54 339968 ----a-w- c:\program files\Windows NT\Accessories\wordpad.exe
2011-02-02 18:16 . 2010-04-16 16:46 502272 ----a-w- c:\windows\system32\usp10.dll
2011-02-02 18:16 . 2010-10-12 15:53 33280 ----a-w- c:\program files\Windows Mail\wabfind.dll
2011-02-02 18:16 . 2010-10-12 13:41 66048 ----a-w- c:\program files\Windows Mail\wabmig.exe
2011-02-02 18:16 . 2010-10-12 13:41 515584 ----a-w- c:\program files\Windows Mail\wab.exe
2011-02-02 18:16 . 2010-08-26 16:37 157184 ----a-w- c:\windows\system32\t2embed.dll
2011-02-02 18:16 . 2009-06-10 11:42 160256 ----a-w- c:\windows\system32\wkssvc.dll
2011-02-02 18:13 . 2009-10-07 11:36 243712 ----a-w- c:\windows\system32\rastls.dll
2011-02-02 18:07 . 2009-12-04 18:30 12288 ----a-w- c:\windows\system32\tsbyuv.dll
2011-02-02 18:07 . 2009-12-04 18:29 1314816 ----a-w- c:\windows\system32\quartz.dll
2011-02-02 18:07 . 2009-12-04 18:28 22528 ----a-w- c:\windows\system32\msyuv.dll
2011-02-02 18:07 . 2009-12-04 18:28 31744 ----a-w- c:\windows\system32\msvidc32.dll
2011-02-02 18:07 . 2009-12-04 18:28 13312 ----a-w- c:\windows\system32\msrle32.dll
2011-02-02 18:07 . 2009-12-04 18:28 123904 ----a-w- c:\windows\system32\msvfw32.dll
2011-02-02 18:07 . 2009-12-04 18:28 82944 ----a-w- c:\windows\system32\mciavi32.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-23 12:36 . 2008-12-23 12:36 106496 ----a-w- c:\program files\Common Files\CPInstallAction.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SRS Premium Sound"="c:\program files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe" [2009-03-19 3261688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun"="c:\program files\AmIcoSingLun\AmIcoSinglun.exe" [2008-09-30 237568]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-03-06 424352]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-08-25 136216]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-08-25 171032]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-08-25 170520]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2010-11-10 35736]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-11-10 932288]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2008-07-18 104936]
"P2Go_Menu"="c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-06-13 210216]
"lxbkbmgr.exe"="c:\program files\Lexmark X1100 Series\lxbkbmgr.exe" [2008-02-28 74408]
"AntivirusCommunicatorAgent"="c:\program files\TrustPort\Antivirus\bin\avcom.exe" [2011-01-25 772664]
"TrustPortTray"="c:\program files\Common Files\TrustPort\Bin\tptray.exe" [2011-01-25 703032]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
2009-03-23 06:52 17149952 ----a-r- c:\program files\VIA\VIAudioi\VDeck\VDECK.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wireless Console 3]
2009-02-06 15:13 1593344 ----a-w- c:\program files\ASUS\Wireless Console 3\wcourier.exe
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3 ASUSProcObsrv;ASUS Process Creation/Termination Observer;e:\i386\AsProcOb.sys [x]
R3 avas_service;TrustPort Antivirus On-Access Scanner Agent;c:\program files\TrustPort\Antivirus\bin\avas.exe [2011-01-25 494136]
R3 avasdmft;TrustPort Antivirus On-Access Scanner (W2K/XP) MF;c:\windows\system32\DRIVERS\avasdmft.sys [2011-01-25 35896]
R3 dsio;TrustPort Raw IO Driver;c:\program files\Common Files\TrustPort\bin\dsio.sys [2011-01-25 14904]
R3 gozer;TrustPort Personal GTW;c:\program files\TrustPort\Antivirus\bin\gozer.exe [2011-01-25 485944]
S0 lullaby;lullaby;c:\windows\system32\DRIVERS\lullaby.sys [2008-05-29 15416]
S0 rpcnetp;rpcnetp; [x]
S2 lxbk_device;lxbk_device;c:\windows\system32\lxbkcoms.exe [2008-02-19 537256]
S3 avss_service;TrustPort Antivirus Service Scanner Provider;c:\program files\TrustPort\Antivirus\bin\avss.exe [2011-01-25 289336]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2009-03-13 140800]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 09:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: {{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - c:\program files\ICQ7.4\ICQ.exe
TCP: {C58F6D5A-E951-4B50-9031-D62C23BD2712} = 195.146.100.100,195.146.100.5
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-02-07 09:57
Windows 6.0.6002 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
c:\windows\TEMP\TMP00000004913F7AC5CDE6B1A7 524288 bytes
sken byl úspešně dokončen
skryté soubory: 1
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\AUDIODG.EXE
c:\windows\system32\WLANExt.exe
c:\program files\ASUS\ASUS CopyProtect\aspg.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\windows\System32\rpcnetp.exe
c:\program files\ASUS\NB Probe\SPM\spmgr.exe
c:\program files\Common Files\TrustPort\bin\tpmgma.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conime.exe
c:\windows\system32\igfxsrvc.exe
.
**************************************************************************
.
Celkový čas: 2011-02-07 10:02:28 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-02-07 09:02
Před spuštěním: Volných bajtů: 130 613 501 952
Po spuštění: Volných bajtů: 130 551 418 880
- - End Of File - - F76C5449836DFEF6B4FA52AABDB9488E
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3036.1790 [GMT 1:00]
Spuštěný z: c:\users\Jura\Desktop\ComboFix.exe
AV: TrustPort Antivirus *Disabled/Updated* {C3AD9610-D79C-79A3-8C7B-CAB50B3AA5DC}
FW: TrustPort Personal Firewall *Enabled* {FB961735-9DF3-78FB-A724-6380F5E9E2A7}
SP: TrustPort Antivirus *Disabled/Updated* {78CC77F4-F1A6-762D-B6CB-F1C770BDEF61}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
Nakažená kopie c:\windows\System32\autochk.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.0.6001.18000_none_e1f3ed49c1c122ef\autochk.exe
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-01-07 do 2011-02-07 )))))))))))))))))))))))))))))))
.
2011-02-07 05:04 . 2011-01-25 07:48 38456 ----a-w- c:\windows\system32\drivers\tdifw.sys
2011-02-07 05:03 . 2011-01-25 07:47 35896 ----a-w- c:\windows\system32\drivers\avasdmft.sys
2011-02-07 05:03 . 2011-02-07 05:04 -------- d-----w- c:\program files\TrustPort
2011-02-07 05:03 . 2011-01-25 07:49 33632 ----a-w- c:\windows\system32\drivers\tpsec.sys
2011-02-06 18:02 . 2011-01-07 13:54 149456 ----a-w- c:\windows\SGDetectionTool.dll0213.old
2011-02-06 18:02 . 2011-01-07 13:54 2000848 ----a-w- c:\windows\PCTBDCore.dll0213.old
2011-02-06 18:02 . 2011-01-07 13:54 767952 ----a-w- c:\windows\BDTSupport.dll0213.old
2011-02-06 16:28 . 2011-02-06 22:34 -------- d-----w- c:\programdata\PC Tools
2011-02-06 13:24 . 2011-02-06 13:24 -------- d-----w- C:\temp
2011-02-06 13:21 . 2008-02-15 15:35 102400 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\lxbkpp5c.dll
2011-02-06 11:06 . 2011-01-20 09:39 5890896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{9C6EC40E-6E2C-4048-99AC-55B06FBA2B78}\mpengine.dll
2011-02-06 07:56 . 2011-02-06 07:56 -------- d-----w- c:\program files\VS Revo Group
2011-02-05 13:50 . 2011-02-05 14:10 -------- d-----w- c:\program files\Windows Live Safety Center
2011-02-05 07:33 . 2010-11-01 23:03 1448448 ----a-w- c:\windows\system32\inetcpl.cpl
2011-02-05 07:33 . 2010-11-01 22:59 2381824 ----a-w- c:\windows\system32\mshtml.tlb
2011-02-04 22:02 . 2010-09-01 07:30 94208 ----a-w- c:\program files\Internet Explorer\cs\iediag.resources.dll
2011-02-04 21:50 . 2010-08-17 23:54 280064 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-02-04 21:50 . 2010-08-17 23:54 135680 ----a-w- c:\windows\system32\XpsRasterService.dll
2011-02-04 21:50 . 2010-08-17 23:52 979456 ----a-w- c:\windows\system32\MFH264Dec.dll
2011-02-04 21:50 . 2010-08-17 23:51 357376 ----a-w- c:\windows\system32\MFHEAACdec.dll
2011-02-04 21:50 . 2010-08-17 23:51 261632 ----a-w- c:\windows\system32\mfreadwrite.dll
2011-02-04 21:50 . 2010-08-17 23:51 302592 ----a-w- c:\windows\system32\mfmp4src.dll
2011-02-04 21:50 . 2010-08-17 23:50 680960 ----a-w- c:\windows\system32\d2d1.dll
2011-02-04 21:50 . 2010-08-17 23:49 1174528 ----a-w- c:\windows\system32\d3d10warp.dll
2011-02-04 21:50 . 2010-08-17 23:49 1068032 ----a-w- c:\windows\system32\DWrite.dll
2011-02-04 21:50 . 2010-08-17 23:49 797184 ----a-w- c:\windows\system32\FntCache.dll
2011-02-04 21:50 . 2010-08-17 23:48 161280 ----a-w- c:\windows\system32\d3d10_1.dll
2011-02-04 21:50 . 2010-08-17 23:48 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2011-02-04 21:15 . 2011-02-04 21:15 -------- d-----w- c:\program files\Feedback Tool
2011-02-04 16:30 . 2011-02-04 16:39 -------- d-----w- c:\program files\ICQ7.4
2011-02-04 05:17 . 2011-02-04 05:17 -------- d-----w- c:\program files\MSXML 4.0
2011-02-03 15:03 . 2011-02-03 15:03 -------- d-----w- c:\programdata\Sunbelt
2011-02-03 10:18 . 2011-02-03 10:18 -------- d-----w- c:\programdata\LightScribe
2011-02-03 10:04 . 2011-02-03 10:04 -------- d-----w- c:\program files\uTorrent
2011-02-03 08:08 . 2011-02-03 08:08 -------- d-----w- C:\pebuilder3110a
2011-02-03 07:41 . 2011-02-03 07:41 -------- d-----w- c:\users\Public\CyberLink
2011-02-03 07:36 . 2011-02-03 07:41 -------- d-----w- c:\programdata\CyberLink
2011-02-03 07:34 . 2011-02-03 07:34 -------- d-----w- c:\program files\Common Files\LightScribe
2011-02-03 07:33 . 2007-03-22 20:28 1053232 ------w- c:\windows\system32\MFC71u.dll
2011-02-03 07:33 . 2007-03-22 20:28 1066544 ------w- c:\windows\system32\MFC71.dll
2011-02-03 07:33 . 2007-03-22 20:28 353840 ------w- c:\windows\system32\msvcr71.dll
2011-02-03 07:33 . 2007-03-22 20:27 505392 ------w- c:\windows\system32\msvcp71.dll
2011-02-03 07:33 . 2011-02-03 07:37 -------- d-----w- c:\program files\CyberLink
2011-02-03 06:52 . 2011-02-03 06:52 -------- d-----w- c:\program files\Windows Portable Devices
2011-02-03 06:50 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe
2011-02-03 06:39 . 2010-05-04 19:13 231424 ----a-w- c:\windows\system32\msshsq.dll
2011-02-03 06:25 . 2011-02-03 06:26 -------- d-----w- c:\program files\OpenOffice.org 3
2011-02-03 06:07 . 2011-02-03 06:07 -------- d-----w- c:\program files\VideoLAN
2011-02-03 05:22 . 2011-02-07 05:04 -------- d-----w- c:\program files\Common Files\TrustPort
2011-02-03 05:13 . 2011-02-03 05:13 -------- d-----w- c:\program files\Common Files\Adobe
2011-02-03 05:11 . 2011-02-03 05:11 -------- d-----w- c:\program files\Common Files\Adobe AIR
2011-02-03 05:10 . 2011-02-03 05:10 -------- d-----w- c:\windows\system32\Macromed
2011-02-03 04:57 . 2011-02-03 04:58 -------- d-----w- c:\windows\system32\ca-ES
2011-02-03 04:57 . 2011-02-03 04:58 -------- d-----w- c:\windows\system32\eu-ES
2011-02-03 04:57 . 2011-02-03 04:58 -------- d-----w- c:\windows\system32\vi-VN
2011-02-03 04:45 . 2011-02-03 04:45 -------- d-----w- c:\windows\system32\EventProviders
2011-02-03 04:43 . 2009-04-11 06:32 223208 ----a-w- c:\windows\system32\drivers\netio.sys
2011-02-03 04:42 . 2009-04-11 06:28 83968 ----a-w- c:\windows\system32\wbem\wmiutils.dll
2011-02-03 04:42 . 2009-04-11 06:28 744448 ----a-w- c:\windows\system32\wbem\wbemcore.dll
2011-02-03 04:42 . 2009-04-11 06:28 30208 ----a-w- c:\windows\system32\wbem\wbemprox.dll
2011-02-03 04:42 . 2009-04-11 06:28 265728 ----a-w- c:\windows\system32\wbem\repdrvfs.dll
2011-02-03 04:42 . 2009-04-11 06:28 189440 ----a-w- c:\windows\system32\wbem\mofd.dll
2011-02-03 04:42 . 2009-04-11 06:28 614912 ----a-w- c:\windows\system32\wbem\fastprox.dll
2011-02-03 04:42 . 2009-04-11 06:28 265728 ----a-w- c:\windows\system32\wbem\esscli.dll
2011-02-03 04:42 . 2009-04-11 06:28 705536 ----a-w- c:\windows\system32\SmiEngine.dll
2011-02-03 04:42 . 2009-04-11 06:28 218624 ----a-w- c:\windows\system32\wdscore.dll
2011-02-03 04:42 . 2009-04-11 06:27 130560 ----a-w- c:\windows\system32\PkgMgr.exe
2011-02-03 04:42 . 2009-04-11 06:28 247808 ----a-w- c:\windows\system32\drvstore.dll
2011-02-03 04:11 . 2009-08-24 11:36 377344 ----a-w- c:\windows\system32\winhttp.dll
2011-02-03 04:11 . 2010-09-06 16:20 125952 ----a-w- c:\windows\system32\srvsvc.dll
2011-02-03 04:11 . 2010-09-06 16:19 17920 ----a-w- c:\windows\system32\netevent.dll
2011-02-03 04:11 . 2010-09-06 13:45 304128 ----a-w- c:\windows\system32\drivers\srv.sys
2011-02-03 04:11 . 2010-09-06 13:45 145408 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-02-03 04:11 . 2010-09-06 13:45 102400 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-02-03 04:11 . 2010-05-27 20:08 739328 ----a-w- c:\windows\system32\inetcomm.dll
2011-02-03 03:59 . 2011-02-03 03:59 -------- d-----w- c:\program files\Microsoft.NET
2011-02-03 03:58 . 2009-11-08 09:55 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-02-03 03:58 . 2009-11-08 09:55 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-02-03 03:58 . 2009-11-08 09:55 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-02-03 03:58 . 2009-11-08 09:55 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-02-03 03:58 . 2009-11-08 09:55 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-02-03 01:33 . 2009-02-11 09:11 329752 ----a-w- c:\windows\system32\drivers\iaStor.sys
2011-02-03 01:30 . 2009-03-17 07:40 1048576 ------w- C:\K50IJ.BIN
2011-02-03 01:30 . 2009-03-17 07:35 1048576 ------w- C:\K40IJ.BIN
2011-02-03 01:30 . 2008-11-03 07:03 13880 ----a-w- c:\windows\system32\drivers\kbfiltr.sys
2011-02-03 01:30 . 2008-12-24 08:39 14392 ----a-w- c:\windows\system32\drivers\ATKACPI.sys
2011-02-03 01:04 . 2011-02-02 17:42 -------- d-----w- c:\windows\system32\Lang
2011-02-03 01:04 . 2006-11-02 14:21 319456 ----a-w- c:\windows\system32\difxapi.dll
2011-02-03 01:01 . 2011-02-02 17:42 -------- d-----w- c:\program files\Intel
2011-02-03 01:01 . 2008-07-16 08:05 53248 ----a-w- c:\windows\system32\CSVer.dll
2011-02-03 01:01 . 2011-02-03 01:01 -------- d-----w- C:\Intel
2011-02-02 20:11 . 2008-05-27 04:59 18904 ----a-w- c:\windows\system32\StructuredQuerySchemaTrivial.bin
2011-02-02 20:09 . 2011-02-02 20:09 -------- d-----w- c:\windows\system32\x64
2011-02-02 20:04 . 2009-10-23 17:10 714240 ----a-w- c:\windows\system32\timedate.cpl
2011-02-02 19:41 . 2011-02-07 08:34 44544 ----a-w- c:\windows\system32\agremove.exe
2011-02-02 18:57 . 2010-10-19 09:41 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-02-02 18:48 . 2010-02-12 10:48 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-02-02 18:28 . 2010-10-19 04:27 7680 ----a-w- c:\program files\Internet Explorer\iecompat.dll
2011-02-02 18:26 . 2009-01-08 01:20 355832 ----a-w- c:\program files\Internet Explorer\pdm.dll
2011-02-02 18:26 . 2009-01-08 01:20 265720 ----a-w- c:\program files\Internet Explorer\msdbg2.dll
2011-02-02 18:21 . 2010-02-20 23:06 24064 ----a-w- c:\windows\system32\nshhttp.dll
2011-02-02 18:21 . 2010-02-20 23:05 30720 ----a-w- c:\windows\system32\httpapi.dll
2011-02-02 18:21 . 2010-02-20 20:53 411648 ----a-w- c:\windows\system32\drivers\http.sys
2011-02-02 18:18 . 2009-08-14 13:49 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2011-02-02 18:17 . 2009-12-23 11:33 172032 ----a-w- c:\windows\system32\wintrust.dll
2011-02-02 18:16 . 2010-01-29 15:40 1616384 ----a-w- c:\program files\Windows Mail\msoe.dll
2011-02-02 18:16 . 2010-08-17 14:11 128000 ----a-w- c:\windows\system32\spoolsv.exe
2011-02-02 18:16 . 2010-04-05 17:02 317952 ----a-w- c:\windows\system32\MP4SDECD.DLL
2011-02-02 18:16 . 2009-04-23 12:15 784896 ----a-w- c:\windows\system32\rpcrt4.dll
2011-02-02 18:16 . 2010-06-28 17:00 1316864 ----a-w- c:\windows\system32\ole32.dll
2011-02-02 18:16 . 2010-06-28 14:54 339968 ----a-w- c:\program files\Windows NT\Accessories\wordpad.exe
2011-02-02 18:16 . 2010-04-16 16:46 502272 ----a-w- c:\windows\system32\usp10.dll
2011-02-02 18:16 . 2010-10-12 15:53 33280 ----a-w- c:\program files\Windows Mail\wabfind.dll
2011-02-02 18:16 . 2010-10-12 13:41 66048 ----a-w- c:\program files\Windows Mail\wabmig.exe
2011-02-02 18:16 . 2010-10-12 13:41 515584 ----a-w- c:\program files\Windows Mail\wab.exe
2011-02-02 18:16 . 2010-08-26 16:37 157184 ----a-w- c:\windows\system32\t2embed.dll
2011-02-02 18:16 . 2009-06-10 11:42 160256 ----a-w- c:\windows\system32\wkssvc.dll
2011-02-02 18:13 . 2009-10-07 11:36 243712 ----a-w- c:\windows\system32\rastls.dll
2011-02-02 18:07 . 2009-12-04 18:30 12288 ----a-w- c:\windows\system32\tsbyuv.dll
2011-02-02 18:07 . 2009-12-04 18:29 1314816 ----a-w- c:\windows\system32\quartz.dll
2011-02-02 18:07 . 2009-12-04 18:28 22528 ----a-w- c:\windows\system32\msyuv.dll
2011-02-02 18:07 . 2009-12-04 18:28 31744 ----a-w- c:\windows\system32\msvidc32.dll
2011-02-02 18:07 . 2009-12-04 18:28 13312 ----a-w- c:\windows\system32\msrle32.dll
2011-02-02 18:07 . 2009-12-04 18:28 123904 ----a-w- c:\windows\system32\msvfw32.dll
2011-02-02 18:07 . 2009-12-04 18:28 82944 ----a-w- c:\windows\system32\mciavi32.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-23 12:36 . 2008-12-23 12:36 106496 ----a-w- c:\program files\Common Files\CPInstallAction.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SRS Premium Sound"="c:\program files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe" [2009-03-19 3261688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AmIcoSinglun"="c:\program files\AmIcoSingLun\AmIcoSinglun.exe" [2008-09-30 237568]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-03-06 424352]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-08-25 136216]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-08-25 171032]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-08-25 170520]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2010-11-10 35736]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-11-10 932288]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2008-07-18 104936]
"P2Go_Menu"="c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-06-13 210216]
"lxbkbmgr.exe"="c:\program files\Lexmark X1100 Series\lxbkbmgr.exe" [2008-02-28 74408]
"AntivirusCommunicatorAgent"="c:\program files\TrustPort\Antivirus\bin\avcom.exe" [2011-01-25 772664]
"TrustPortTray"="c:\program files\Common Files\TrustPort\Bin\tptray.exe" [2011-01-25 703032]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer1"=wdmaud.drv
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
2009-03-23 06:52 17149952 ----a-r- c:\program files\VIA\VIAudioi\VDeck\VDECK.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wireless Console 3]
2009-02-06 15:13 1593344 ----a-w- c:\program files\ASUS\Wireless Console 3\wcourier.exe
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3 ASUSProcObsrv;ASUS Process Creation/Termination Observer;e:\i386\AsProcOb.sys [x]
R3 avas_service;TrustPort Antivirus On-Access Scanner Agent;c:\program files\TrustPort\Antivirus\bin\avas.exe [2011-01-25 494136]
R3 avasdmft;TrustPort Antivirus On-Access Scanner (W2K/XP) MF;c:\windows\system32\DRIVERS\avasdmft.sys [2011-01-25 35896]
R3 dsio;TrustPort Raw IO Driver;c:\program files\Common Files\TrustPort\bin\dsio.sys [2011-01-25 14904]
R3 gozer;TrustPort Personal GTW;c:\program files\TrustPort\Antivirus\bin\gozer.exe [2011-01-25 485944]
S0 lullaby;lullaby;c:\windows\system32\DRIVERS\lullaby.sys [2008-05-29 15416]
S0 rpcnetp;rpcnetp; [x]
S2 lxbk_device;lxbk_device;c:\windows\system32\lxbkcoms.exe [2008-02-19 537256]
S3 avss_service;TrustPort Antivirus Service Scanner Provider;c:\program files\TrustPort\Antivirus\bin\avss.exe [2011-01-25 289336]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2009-03-13 140800]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 09:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: {{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - c:\program files\ICQ7.4\ICQ.exe
TCP: {C58F6D5A-E951-4B50-9031-D62C23BD2712} = 195.146.100.100,195.146.100.5
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-02-07 09:57
Windows 6.0.6002 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
c:\windows\TEMP\TMP00000004913F7AC5CDE6B1A7 524288 bytes
sken byl úspešně dokončen
skryté soubory: 1
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\AUDIODG.EXE
c:\windows\system32\WLANExt.exe
c:\program files\ASUS\ASUS CopyProtect\aspg.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\windows\System32\rpcnetp.exe
c:\program files\ASUS\NB Probe\SPM\spmgr.exe
c:\program files\Common Files\TrustPort\bin\tpmgma.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conime.exe
c:\windows\system32\igfxsrvc.exe
.
**************************************************************************
.
Celkový čas: 2011-02-07 10:02:28 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-02-07 09:02
Před spuštěním: Volných bajtů: 130 613 501 952
Po spuštění: Volných bajtů: 130 551 418 880
- - End Of File - - F76C5449836DFEF6B4FA52AABDB9488E