Stránka 1 z 1

Preventivka

Napsal: 22 bře 2011 13:33
od dodopa
Dobrý deň,mohol by mi prosím vás pozreť log.Nemám žiadne podozrenie ide len o preventívku.Ak bude treba niečo fixnúť v HJT nemusíte písať návod stačí len udať čo mám fixnúť(keďže sám si občas niečo fixnem keď sa mi niečo nezdá)
Ďakujem!

Re: Preventivka

Napsal: 22 bře 2011 14:05
od Roli
Zdravím, klidně se na log z Rsit podívám ale nějak ho tu nevidím :(

Re: Preventivka

Napsal: 22 bře 2011 14:07
od dodopa
Prepáčte,môj omyl píšem píšem a log neskopírujem :D
Logfile of random's system information tool 1.08 (written by random/random)
Run by dodo at 2011-03-22 13:29:57
Systém Microsoft Windows XP Professional Service Pack 3
System drive D: has 858 GB (90%) free of 954 GB
Total RAM: 1279 MB (49% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:30:06, on 22.3.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Alwil Software\Avast5\AvastSvc.exe
D:\Program Files\Alwil Software\Avast5\avastUI.exe
D:\WINDOWS\System32\spool\DRIVERS\W32X86\2\bgsmsnd.exe
D:\Program Files\Skype\Phone\Skype.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
D:\Program Files\Skype\Plugin Manager\skypePM.exe
D:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
D:\WINDOWS\system32\PnkBstrA.exe
D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
D:\WINDOWS\system32\svchost.exe
D:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
D:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
D:\WINDOWS\system32\wscntfy.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Mozilla Firefox\firefox.exe
D:\Program Files\Mozilla Firefox\plugin-container.exe
D:\Preberanie\RSIT.exe
D:\Program Files\trend micro\dodo.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com?o=14780&l=dis
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - D:\Program Files\Ask.com\GenericAskToolbar.dll (file missing)
R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - D:\Program Files\uTorrentBar\tbuTor.dll
R3 - URLSearchHook: Gossiper Toolbar - {0a452a47-c5a8-4854-a237-4b9b06b376f0} - D:\Program Files\Gossiper\tbGoss.dll
O2 - BHO: Gossiper - {0a452a47-c5a8-4854-a237-4b9b06b376f0} - D:\Program Files\Gossiper\tbGoss.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - D:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - D:\Program Files\uTorrentBar\tbuTor.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - D:\Program Files\uTorrentBar\tbuTor.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - D:\Program Files\ConduitEngine\ConduitEngine.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O3 - Toolbar: Gossiper Toolbar - {0a452a47-c5a8-4854-a237-4b9b06b376f0} - D:\Program Files\Gossiper\tbGoss.dll
O4 - HKLM\..\Run: [avast5] "D:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [bgsmsnd.exe] D:\WINDOWS\System32\spool\DRIVERS\W32X86\2\bgsmsnd.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "D:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [Skype] "D:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "D:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [Sony Ericsson PC Companion] "D:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /systray /nologon
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: CurseClientStartup.ccip
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - D:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - D:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - D:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - D:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - D:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - D:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - D:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - D:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe

--
End of file - 7487 bytes

======Scheduled tasks folder======

D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-776561741-682003330-1003Core.job
D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-776561741-682003330-1003UA.job
D:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0a452a47-c5a8-4854-a237-4b9b06b376f0}]
Gossiper Toolbar - D:\Program Files\Gossiper\tbGoss.dll [2010-11-13 3913000]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-01-30 62376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - D:\Program Files\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-11-22 1242504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
uTorrentBar Toolbar - D:\Program Files\uTorrentBar\tbuTor.dll [2010-12-09 3911776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - uTorrentBar Toolbar - D:\Program Files\uTorrentBar\tbuTor.dll [2010-12-09 3911776]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - D:\Program Files\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]
{D4027C7F-154A-4066-A1AD-4243D8127440}
{0a452a47-c5a8-4854-a237-4b9b06b376f0} - Gossiper Toolbar - D:\Program Files\Gossiper\tbGoss.dll [2010-11-13 3913000]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast5"=D:\Program Files\Alwil Software\Avast5\avastUI.exe [2011-02-23 3451496]
"bgsmsnd.exe"=D:\WINDOWS\System32\spool\DRIVERS\W32X86\2\bgsmsnd.exe [2006-06-02 106496]
"KernelFaultCheck"=D:\WINDOWS\system32\dumprep 0 -k []
"AdobeCS4ServiceManager"=D:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=D:\Program Files\Skype\Phone\Skype.exe [2011-01-26 15026056]
"ctfmon.exe"=D:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"AlcoholAutomount"=D:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2010-08-20 33120]
"Sony Ericsson PC Companion"=D:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe [2009-12-08 774144]

D:\Documents and Settings\dodo\Nabídka Start\Programy\Po spuštění
CurseClientStartup.ccip

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
D:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2009-09-03 548352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
D:\WINDOWS\system32\Ati2evxx.dll [2008-08-21 143360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=D:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\WINDOWS\system32\usmt\migwiz.exe"="D:\WINDOWS\system32\usmt\migwiz.exe:*:Enabled:Průvodce přenesením souborů a nastavení"
"D:\Program Files\Opera\opera.exe"="D:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"D:\Program Files\Skype\Plugin Manager\skypePM.exe"="D:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"D:\Program Files\uTorrent\uTorrent.exe"="D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\Garena\Garena.exe"="D:\Program Files\Garena\Garena.exe:*:Enabled:Garena"
"D:\Program Files\Google\Google Earth\client\googleearth.exe"="D:\Program Files\Google\Google Earth\client\googleearth.exe:*:Enabled:Google Earth"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\WINDOWS\system32\rundll32.exe"="D:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"D:\Program Files\GameSpy Arcade\Aphex.exe"="D:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade"
"D:\WINDOWS\system32\dplaysvr.exe"="D:\WINDOWS\system32\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"D:\Program Files\EA GAMES\Battlefield 2\BF2.exe"="D:\Program Files\EA GAMES\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2"
"D:\Program Files\REACTOR\REACTOR.exe"="D:\Program Files\REACTOR\REACTOR.exe:*:Enabled:Reactor Application"
"D:\Program Files\REACTOR\ijjiOptimizer.exe"="D:\Program Files\REACTOR\ijjiOptimizer.exe:*:Enabled:ijjiOptimizer.exe"
"D:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe"="D:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe:*:Enabled:Adobe CSI CS4"
"D:\Documents and Settings\dodo\Local Settings\Apps\2.0\8PHYRXKA.NLD\QCR52LBJ.1LV\curs..tion_eee711038731a406_0004.0000_efb506202a7c3b08\CurseClient.exe"="D:\Documents and Settings\dodo\Local Settings\Apps\2.0\8PHYRXKA.NLD\QCR52LBJ.1LV\curs..tion_eee711038731a406_0004.0000_efb506202a7c3b08\CurseClient.exe:*:Enabled:Curse Client 4.0"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 1 months======

2011-03-22 13:29:56 ----D---- D:\rsit
2011-03-21 16:33:11 ----A---- D:\WINDOWS\system32\npptNT2.sys
2011-03-21 14:08:57 ----D---- D:\ijji
2011-03-19 21:51:37 ----A---- D:\WINDOWS\system32\drivers\aswSnx.sys
2011-03-19 21:49:29 ----D---- D:\WINDOWS\Time Stopper
2011-03-19 21:49:29 ----D---- D:\Program Files\Time Stopper
2011-03-19 15:51:54 ----D---- D:\Documents and Settings\dodo\Data aplikací\vlc
2011-03-19 15:50:22 ----D---- D:\Program Files\VideoLAN
2011-03-16 19:08:41 ----D---- D:\Documents and Settings\dodo\Data aplikací\U3
2011-03-16 18:02:36 ----D---- D:\Documents and Settings\All Users\Data aplikací\FLEXnet
2011-03-16 17:38:30 ----D---- D:\Program Files\Common Files\Adobe AIR
2011-03-16 17:28:17 ----D---- D:\Program Files\Common Files\Macrovision Shared
2011-03-15 18:24:12 ----D---- D:\Program Files\Common Files\INCA Shared
2011-03-15 15:01:53 ----D---- D:\Documents and Settings\dodo\Data aplikací\ijjigame
2011-03-15 14:56:18 ----A---- D:\WINDOWS\system32\ijjiSetup.exe
2011-03-15 14:56:18 ----A---- D:\WINDOWS\system32\ijjiProcessRestarter.exe
2011-03-15 14:56:14 ----D---- D:\Program Files\REACTOR
2011-03-12 10:12:31 ----N---- D:\WINDOWS\system32\spmsg.dll
2011-03-12 10:11:45 ----D---- D:\3ea0c772abf73e46647ae02bae9a8e
2011-03-12 09:56:55 ----RHD---- D:\AHCache
2011-03-09 12:27:31 ----D---- D:\Program Files\Gossiper
2011-03-09 12:27:08 ----D---- D:\Program Files\uTorrent Acceleration Tool
2011-03-08 14:09:58 ----D---- D:\WINDOWS\Minidump
2011-03-07 14:22:44 ----D---- D:\Program Files\AMR Player
2011-03-07 14:12:36 ----D---- D:\Documents and Settings\dodo\Data aplikací\Nokia Multimedia Player
2011-03-07 14:11:48 ----D---- D:\Program Files\Common Files\PCSuite
2011-03-07 14:11:48 ----D---- D:\Program Files\Common Files\Nokia
2011-03-07 14:11:47 ----D---- D:\Program Files\Nokia
2011-03-07 14:05:29 ----A---- D:\WINDOWS\system32\drivers\s1039unic.sys
2011-03-07 14:05:29 ----A---- D:\WINDOWS\system32\drivers\s1039nd5.sys
2011-03-07 14:05:28 ----A---- D:\WINDOWS\system32\drivers\s1039mgmt.sys
2011-03-07 14:05:28 ----A---- D:\WINDOWS\system32\drivers\s1039cr.sys
2011-03-07 14:05:27 ----A---- D:\WINDOWS\system32\drivers\s1039obex.sys
2011-03-07 14:05:27 ----A---- D:\WINDOWS\system32\drivers\s1039mdm.sys
2011-03-07 14:05:27 ----A---- D:\WINDOWS\system32\drivers\s1039mdfl.sys
2011-03-07 14:05:27 ----A---- D:\WINDOWS\system32\drivers\s1039cmnt.sys
2011-03-07 14:05:27 ----A---- D:\WINDOWS\system32\drivers\s1039cm.sys
2011-03-07 14:05:26 ----DC---- D:\WINDOWS\system32\DRVSTORE
2011-03-07 14:05:26 ----A---- D:\WINDOWS\system32\drivers\s1039whnt.sys
2011-03-07 14:05:26 ----A---- D:\WINDOWS\system32\drivers\s1039wh.sys
2011-03-07 14:05:26 ----A---- D:\WINDOWS\system32\drivers\s1039bus.sys
2011-03-07 14:05:16 ----D---- D:\Program Files\Sony Ericsson
2011-03-07 14:05:16 ----D---- D:\Documents and Settings\All Users\Data aplikací\Sony Ericsson
2011-03-07 14:02:06 ----HDC---- D:\WINDOWS\$NtUninstallWMFDist11$
2011-03-07 14:01:10 ----D---- D:\WINDOWS\system32\drivers\UMDF
2011-03-07 14:00:57 ----HDC---- D:\WINDOWS\$NtUninstallWudf01000$
2011-03-06 19:36:15 ----A---- D:\WINDOWS\system32\drivers\PnkBstrK.sys
2011-03-06 19:35:19 ----A---- D:\WINDOWS\system32\PnkBstrB.exe
2011-03-06 19:34:47 ----D---- D:\WINDOWS\system32\LogFiles
2011-03-06 19:34:38 ----A---- D:\WINDOWS\system32\PnkBstrA.exe
2011-03-04 20:22:01 ----D---- D:\Documents and Settings\dodo\Data aplikací\Need for Speed World
2011-03-04 18:32:28 ----HD---- D:\WINDOWS\msdownld.tmp
2011-03-04 18:32:16 ----D---- D:\WINDOWS\Logs
2011-03-04 18:31:45 ----D---- D:\Program Files\Electronic Arts
2011-03-04 18:31:45 ----D---- D:\Documents and Settings\All Users\Data aplikací\Electronic Arts
2011-03-02 14:20:46 ----D---- D:\Program Files\Alcohol Soft
2011-03-02 14:18:52 ----A---- D:\WINDOWS\system32\drivers\sptd.sys
2011-03-01 20:05:32 ----D---- D:\Program Files\EA GAMES
2011-02-28 15:42:47 ----D---- D:\Program Files\ESET
2011-02-27 11:13:11 ----D---- D:\Documents and Settings\dodo\Data aplikací\Help
2011-02-26 15:03:26 ----D---- D:\Program Files\Mozilla Firefox 4.0 Beta 12
2011-02-24 17:25:41 ----D---- D:\Program Files\GameSpy Arcade

======List of files/folders modified in the last 1 months======

2011-03-22 13:30:06 ----D---- D:\Program Files\Trend Micro
2011-03-22 13:30:01 ----D---- D:\WINDOWS\Prefetch
2011-03-22 13:29:37 ----D---- D:\Preberanie
2011-03-22 13:27:24 ----D---- D:\Documents and Settings\dodo\Data aplikací\Skype
2011-03-22 13:23:31 ----D---- D:\WINDOWS\Temp
2011-03-22 13:21:38 ----D---- D:\Documents and Settings\dodo\Data aplikací\skypePM
2011-03-21 21:53:08 ----A---- D:\WINDOWS\SchedLgU.Txt
2011-03-21 18:54:19 ----D---- D:\WINDOWS\system32\drivers
2011-03-21 18:19:51 ----D---- D:\Program Files\Ask.com
2011-03-21 16:33:44 ----D---- D:\WINDOWS\system32
2011-03-21 14:09:06 ----HD---- D:\Program Files\InstallShield Installation Information
2011-03-20 11:18:16 ----D---- D:\WINDOWS
2011-03-19 21:59:58 ----D---- D:\WINDOWS\system32\CatRoot2
2011-03-19 21:49:29 ----RD---- D:\Program Files
2011-03-19 21:48:01 ----D---- D:\Documents and Settings\dodo\Data aplikací\uTorrent
2011-03-19 21:47:50 ----D---- D:\Torrent
2011-03-19 20:34:26 ----D---- D:\Program Files\SUPERAntiSpyware
2011-03-19 18:52:14 ----A---- D:\WINDOWS\NeroDigital.ini
2011-03-18 21:28:02 ----D---- D:\Documents and Settings\dodo\Data aplikací\Adobe
2011-03-16 19:08:59 ----SD---- D:\Documents and Settings\dodo\Data aplikací\Microsoft
2011-03-16 17:58:10 ----SHD---- D:\WINDOWS\Installer
2011-03-16 17:56:49 ----D---- D:\Program Files\Adobe
2011-03-16 17:55:58 ----D---- D:\Documents and Settings\All Users\Data aplikací\Adobe
2011-03-16 17:51:58 ----D---- D:\Program Files\Common Files\Adobe
2011-03-16 17:43:03 ----RSD---- D:\WINDOWS\Fonts
2011-03-16 17:38:30 ----D---- D:\Program Files\Common Files
2011-03-15 19:24:12 ----D---- D:\Hry
2011-03-15 14:56:20 ----SD---- D:\WINDOWS\Downloaded Program Files
2011-03-13 20:01:27 ----D---- D:\WINDOWS\Microsoft.NET
2011-03-13 17:43:11 ----RSD---- D:\WINDOWS\assembly
2011-03-13 10:09:15 ----RSHDC---- D:\WINDOWS\system32\dllcache
2011-03-12 10:50:40 ----D---- D:\WINDOWS\system32\cs-CZ
2011-03-12 10:50:32 ----D---- D:\WINDOWS\system32\XPSViewer
2011-03-12 10:15:02 ----D---- D:\WINDOWS\system32\en-us
2011-03-12 10:13:18 ----HD---- D:\WINDOWS\inf
2011-03-12 10:10:50 ----D---- D:\WINDOWS\WinSxS
2011-03-12 10:09:10 ----A---- D:\WINDOWS\system32\PerfStringBackup.INI
2011-03-08 17:07:31 ----D---- D:\Program Files\AV Vcs 6.0 DIAMOND
2011-03-07 14:06:40 ----D---- D:\WINDOWS\system32\ReinstallBackups
2011-03-07 14:06:08 ----SD---- D:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-03-07 14:02:19 ----D---- D:\Program Files\Windows Media Player
2011-03-05 12:14:13 ----D---- D:\Program Files\Mozilla Firefox
2011-03-05 10:52:12 ----D---- D:\WINDOWS\system32\DirectX
2011-03-04 21:46:46 ----D---- D:\Program Files\Bridge Builder
2011-03-02 11:44:29 ----D---- D:\Documents and Settings\dodo\Data aplikací\PriceGong
2011-02-28 20:46:33 ----D---- D:\Program Files\Garena
2011-02-28 11:14:09 ----D---- D:\WINDOWS\system32\config
2011-02-23 16:04:17 ----A---- D:\WINDOWS\system32\aswBoot.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI VIA; D:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 sptd;sptd; D:\WINDOWS\System32\Drivers\sptd.sys [2011-03-02 436792]
R0 uagp35;Filtr Microsoft AGPv3.5; D:\WINDOWS\system32\DRIVERS\uagp35.sys [2008-04-14 44672]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; D:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 Aavmker4;avast! Asynchronous Virus Monitor; D:\WINDOWS\system32\drivers\Aavmker4.sys [2011-02-23 30680]
R1 aswRdr;aswRdr; D:\WINDOWS\system32\drivers\aswRdr.sys [2011-02-23 25432]
R1 aswSnx;aswSnx; D:\WINDOWS\system32\drivers\aswSnx.sys [2011-02-23 371544]
R1 aswSP;aswSP; D:\WINDOWS\system32\drivers\aswSP.sys [2011-02-23 301528]
R1 aswTdi;avast! Network Shield Support; D:\WINDOWS\system32\drivers\aswTdi.sys [2011-02-23 49240]
R1 intelppm;Řadič procesoru Intel; D:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 SASDIFSV;SASDIFSV; \??\D:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\D:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 SCDEmu;SCDEmu; D:\WINDOWS\system32\drivers\SCDEmu.sys [2010-04-12 59388]
R2 adfs;adfs; D:\WINDOWS\system32\drivers\adfs.sys [2008-08-14 74720]
R2 aswFsBlk;aswFsBlk; D:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-02-23 19544]
R2 aswMon2;avast! Standard Shield Support; D:\WINDOWS\system32\drivers\aswMon2.sys [2011-02-23 102232]
R2 npf;NetGroup Packet Filter Driver; D:\WINDOWS\system32\drivers\npf.sys [2010-01-27 50704]
R3 ALCXSENS;Service for WDM 3D Audio Driver; D:\WINDOWS\system32\drivers\ALCXSENS.SYS [2003-08-14 404736]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); D:\WINDOWS\system32\drivers\ALCXWDM.SYS [2003-08-15 462684]
R3 Arp1394;Protokol 1394 ARP Client; D:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ati2mtag;ati2mtag; D:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2008-08-21 3299840]
R3 Cap713x;Philips Cap713x Video Capture; D:\WINDOWS\system32\DRIVERS\Cap713x.sys [2005-05-04 686080]
R3 hidusb;Ovladač třídy standardu HID; D:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; D:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 NIC1394;1394 Net Driver; D:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; D:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\D:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys []
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; D:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 ao98c5lp;ao98c5lp; D:\WINDOWS\system32\drivers\ao98c5lp.sys []
S3 CCDECODE;Dekodér Closed Caption; D:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 GGSAFERDriver;GGSAFER Driver; \??\D:\Program Files\Garena\safedrv.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; D:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; D:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 s1039bus;Sony Ericsson Device 1039 driver (WDM); D:\WINDOWS\system32\DRIVERS\s1039bus.sys [2009-11-19 98672]
S3 s1039mdfl;Sony Ericsson Device 1039 USB WMC Modem Filter; D:\WINDOWS\system32\DRIVERS\s1039mdfl.sys [2009-11-19 14960]
S3 s1039mdm;Sony Ericsson Device 1039 USB WMC Modem Driver; D:\WINDOWS\system32\DRIVERS\s1039mdm.sys [2009-11-19 124016]
S3 s1039mgmt;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM); D:\WINDOWS\system32\DRIVERS\s1039mgmt.sys [2009-11-19 117872]
S3 s1039nd5;Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS); D:\WINDOWS\system32\DRIVERS\s1039nd5.sys [2009-11-19 25456]
S3 s1039obex;Sony Ericsson Device 1039 USB WMC OBEX Interface; D:\WINDOWS\system32\DRIVERS\s1039obex.sys [2009-11-19 113904]
S3 s1039unic;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM); D:\WINDOWS\system32\DRIVERS\s1039unic.sys [2009-11-19 123504]
S3 SLIP;BDA Slip De-Framer; D:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; D:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; D:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; D:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WpdUsb;WpdUsb; D:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; D:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; D:\WINDOWS\system32\Ati2evxx.exe [2008-08-21 573440]
R2 avast! Antivirus;avast! Antivirus; D:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-02-23 42184]
R2 MDM;Machine Debug Manager; D:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; D:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-08-08 836904]
R2 PnkBstrA;PnkBstrA; D:\WINDOWS\system32\PnkBstrA.exe [2011-03-06 75064]
R2 StarWindServiceAE;StarWind AE Service; D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; D:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe [2010-12-14 1517376]
R2 UxTuneUp;TuneUp Theme Extension; D:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 ATI Smart;ATI Smart; D:\WINDOWS\system32\ati2sgag.exe [2008-08-20 593920]
S2 gupdate;Služba Google Update (gupdate); D:\Program Files\Google\Update\GoogleUpdate.exe [2011-01-31 136176]
S3 aspnet_state;Stavová služba ASP.NET; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-03-16 655624]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; D:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Služba Windows CardSpace; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 NMIndexingService;NMIndexingService; D:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2007-08-03 382248]
S3 npggsvc;nProtect GameGuard Service; D:\WINDOWS\system32\GameMon.des [2011-03-08 3986936]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Preventivka

Napsal: 22 bře 2011 14:28
od Roli
Tyhle zbytečnosti fixni v HJT :

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com?o=14780&l=dis
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - D:\Program Files\ConduitEngine\ConduitEngine.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "D:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')


HJT najdeš zde :

D:\Program Files\trend micro\dodo.exe

Fix znamená že spustíš HJT Obrázek

v okně které se ti otevře klikneš na Do a system scan only

v dalším okně najdeš řádky které jsem ti vypsal,

vedle nich je čtvereček do kterého uděláš zatržítko,

pak klikneš na Fix checked které je vlevo dole,

program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.


Přes Start >> Spustit >> napiš - services.msc >> OK. Najdi službu :

Nero BackItUp Scheduler 3

NMIndexingService


klikni na ni pravým myšítkem, zvol vlastnosti, na další kartě nejprve službu zastav tlačítkem Zastavit a u položky Typ spouštění zvol Zakázáno.


Pak mám dotaz, tohle :

D:\ijji

znáš ?

Re: Preventivka

Napsal: 22 bře 2011 14:42
od dodopa
:arrow: Fixnuté,zakázané!

:arrow: ijji je reactor (client) cez ktorý hrám ich hru A.V.A

Chcem s spýtať či máte skúsenosti s novým antivýrovým programom od firmy G Data.Rozmýšľam o zakúpení keďže sú naňho pozitívne ohlasi (až na falošné poplachy,ktoré zas budú pri každom antiviráku) a aj sa umiesňuje na dobrých pozíciah v testovaní,alebo radšej ostať verný starej známej klasike Avast,Norton,Kaspersky

Zatiaľ ďakujem!

Re: Preventivka

Napsal: 22 bře 2011 15:08
od Roli
dodopa píše:Fixnuté,zakázané!

ijji je reactor (client) cez ktorý hrám ich hru A.V.A
Dobře v tom případě nic špatného nevidím.

dodopa píše:Chcem s spýtať či máte skúsenosti s novým antivýrovým programom od firmy G Data.Rozmýšľam o zakúpení keďže sú naňho pozitívne ohlasi (až na falošné poplachy,ktoré zas budú pri každom antiviráku) a aj sa umiesňuje na dobrých pozíciah v testovaní,alebo radšej ostať verný starej známej klasike Avast,Norton,Kaspersky

Zatiaľ ďakujem!
Zůstal bych u klasiky kterou tam máš což je Avast, jen si ho aktualizuj na novou verzi 6.

Jinak testy AV někde od "stolu" neřeknou téměř nic a sebelepší antivir je o ničem když uživatel nemyslí.

dodopa píše:Zatiaľ ďakujem!
Nemáš zač.

Re: Preventivka

Napsal: 22 bře 2011 15:19
od dodopa
Ok ešte si to premyslím.

Z mojej strany Vám ďakujem za spoluprácu!

Re: Preventivka

Napsal: 22 bře 2011 15:32
od Roli
Není vůbec zač :)