Stránka 1 z 1

Vir - pravděpodobně Autorun.inf

Napsal: 06 dub 2011 15:42
od PadiseK
Dobrý den,

bratr si začal stěžovat na rychlost počítače + do toho eset zachytil vir Autorun.inf, tak žádám o pomoc.

Zde LOG.

Logfile of random's system information tool 1.08 (written by random/random)
Run by Petr at 2011-04-06 16:40:13
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 104 GB (76%) free of 137 GB
Total RAM: 2814 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:40:58, on 6.4.2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19019)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ATK Hotkey\HControlUser.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Programy\Opera\opera.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Petr\AppData\Local\Opera\Opera\temporary_downloads\RSIT.exe
C:\Program Files\trend micro\Petr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fotbalzive.ct24.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: GamePlayLabsBHO - {984A9162-8891-4D19-8CFE-17648BB4E1EC} - C:\Users\Petr\AppData\Local\GamePlayLabs Plugin\BHO.dll
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [HControlUser] "C:\Program Files\ATK Hotkey\HcontrolUser.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Programy\Adobe Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\Programy\MICROS~1\Office10\EXCEL.EXE/3000
O15 - Trusted Zone: http://software.kuaiche.com
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: AMD Safely Remove Disk Drive (SafeRemove) - AMD - C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe
O23 - Service: Acronis Try And Decide Service (TryAndDecideService) - Unknown owner - C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe

--
End of file - 5270 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{984A9162-8891-4D19-8CFE-17648BB4E1EC}]
GamePlayLabsBHO Class - C:\Users\Petr\AppData\Local\GamePlayLabs Plugin\BHO.dll [2011-03-08 432640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"HControlUser"=C:\Program Files\ATK Hotkey\HcontrolUser.exe [2008-01-12 98304]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-11-18 2219184]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2011-01-19 2548552]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2011-01-11 1230704]
"Adobe Reader Speed Launcher"=C:\Program Files\Programy\Adobe Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acronis Scheduler2 Service]
C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe [2007-09-14 140568]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AcronisTimounterMonitor]
C:\Program Files\Programy\Acronis True Image Home\TimounterMonitor.exe [2007-09-14 905056]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2009-10-11 33136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATKOSD2]
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2008-07-15 7651328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashGet 3]
C:\Program Files\Programy\FlashGet\Flashget3.exe -minimize []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2008-06-13 6183456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
C:\Windows\Skytel.exe [2007-11-20 1826816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-07 1029416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrueImageMonitor.exe]
C:\Program Files\Programy\Acronis True Image Home\TrueImageMonitor.exe [2007-09-14 2595480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG]
C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\Programy\MICROS~1\Office10\OSA.EXE [2001-02-13 83360]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Windows\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
relog_ap

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Programy\FlashGet\FlashGet3.exe"="C:\Program Files\Programy\FlashGet\FlashGet3.exe:*:Enabled:Flashget3"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2011-04-03 14:09:59 ----D---- C:\Program Files\Common Files\Adobe
2011-03-23 11:59:45 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-03-23 11:59:45 ----A---- C:\Windows\system32\FntCache.dll
2011-03-23 11:59:45 ----A---- C:\Windows\system32\DWrite.dll
2011-03-16 11:57:37 ----A---- C:\Windows\system32\shsvcs.dll
2011-03-15 19:20:43 ----D---- C:\Program Files\Microsoft.NET
2011-03-09 19:01:02 ----A---- C:\Windows\system32\mstscax.dll
2011-03-09 19:01:02 ----A---- C:\Windows\system32\mstsc.exe
2011-03-09 18:55:50 ----A---- C:\Windows\system32\sbe.dll
2011-03-09 18:55:50 ----A---- C:\Windows\system32\EncDec.dll
2011-03-09 18:55:49 ----A---- C:\Windows\system32\sbeio.dll

======List of files/folders modified in the last 1 months======

2011-04-06 16:40:29 ----D---- C:\Program Files\trend micro
2011-04-06 16:40:28 ----D---- C:\Windows\System32
2011-04-06 16:40:28 ----D---- C:\Windows\inf
2011-04-06 16:40:28 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-04-06 16:40:22 ----D---- C:\Windows\Temp
2011-04-06 16:33:37 ----D---- C:\Windows
2011-04-06 10:05:26 ----SHD---- C:\Windows\Installer
2011-04-05 10:11:17 ----D---- C:\Program Files\Programy
2011-04-04 10:37:00 ----A---- C:\Windows\system32\acovcnt.exe
2011-04-03 14:10:28 ----D---- C:\Windows\winsxs
2011-04-03 14:10:26 ----D---- C:\ProgramData\Adobe
2011-04-03 14:09:59 ----D---- C:\Program Files\Common Files
2011-04-03 14:07:38 ----RD---- C:\Program Files
2011-03-31 14:20:30 ----D---- C:\Windows\system32\catroot2
2011-03-24 17:57:57 ----D---- C:\Windows\system32\catroot
2011-03-23 17:19:03 ----D---- C:\Windows\Debug
2011-03-23 16:53:30 ----D---- C:\Windows\Prefetch
2011-03-23 15:21:16 ----D---- C:\Windows\rescache
2011-03-16 11:39:28 ----D---- C:\Windows\Microsoft.NET
2011-03-16 11:39:27 ----RSD---- C:\Windows\assembly
2011-03-15 19:20:50 ----D---- C:\Windows\system32\en-US
2011-03-09 23:31:17 ----A---- C:\Windows\system32\mrt.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ahcix86s;ahcix86s; C:\Windows\system32\DRIVERS\ahcix86s.sys [2008-05-27 173576]
R0 AtiPcie;ATI PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2008-04-28 14352]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2009-10-15 129248]
R0 tdrpman;Acronis Try&Decide and Restore Points filter; C:\Windows\system32\DRIVERS\tdrpman.sys [2009-10-15 368736]
R0 timounter;Acronis True Image Backup Archive Explorer; C:\Windows\system32\DRIVERS\timntr.sys [2009-10-15 441760]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2011-01-19 236600]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2011-01-19 34744]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-07-29 115008]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2011-01-19 80064]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-09-03 137144]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-07-29 96920]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2008-02-16 46592]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
R2 tifsfilter;Acronis True Image FS Filter; C:\Windows\system32\DRIVERS\tifsfilt.sys [2009-10-15 44384]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-03-21 1203776]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-01-26 764416]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-04-30 3551232]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-06-17 2153688]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-06-03 15928]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-21 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-15 7680]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-02 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-07 196400]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-05-13 81960]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2008-05-13 100392]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2008-01-29 29736]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2008-05-13 17320]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-05-02 122368]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [2007-09-14 427288]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2008-03-18 13312]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-03 94208]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-04-29 671744]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-05-27 522792]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2011-01-19 1803224]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-11-18 810144]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 SafeRemove;AMD Safely Remove Disk Drive; C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe [2008-07-07 147456]
R2 TryAndDecideService;Acronis Try And Decide Service; C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe [2007-09-14 492600]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-02-02 135664]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-11-18 33584]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

-----------------EOF-----------------


Děkuji za ochotu :-)

Re: Vir - pravděpodobně Autorun.inf

Napsal: 06 dub 2011 15:53
od vyosek
Zdravim a pekny den preji :)

:arrow: Poprosim i o druhy log z RSIT s nazvem info.txt, je ulozen v c:\rsit

Re: Vir - pravděpodobně Autorun.inf

Napsal: 06 dub 2011 16:06
od PadiseK
Tady je.

info.txt logfile of random's system information tool 1.06 2009-10-21 20:57:44

======Uninstall list======

Acronis True Image Home-->MsiExec.exe /X{E5343B27-55DF-40BD-9FCF-A643C1331E8A}
Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player 9 ActiveX-->C:\Windows\system32\Macromed\Flash\UninstFl.exe -q
Adobe Reader 8.1.2-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81200000003}
Agere Systems HDA Modem-->agrsmdel
ASUS CopyProtect-->MsiExec.exe /I{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}
ASUS Data Security Manager-->C:\Program Files\InstallShield Installation Information\{1C8521E5-5A7B-4A4E-A9CD-AD53116EAEE0}\setup.exe -runfromtemp -l0x0009 -removeonly
ASUS LifeFrame3-->MsiExec.exe /I{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
ASUS Live Update-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}\setup.exe" -l0x9
ASUS Power4Gear Hybrid-->MsiExec.exe /I{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}
ASUS SmartLogon-->MsiExec.exe /I{64452561-169F-4A36-A2FF-B5E118EC65F5}
ASUS Splendid Video Enhancement Technology-->MsiExec.exe /I{0969AF05-4FF6-4C00-9406-43599238DE0D}
Asus_Camera_ScreenSaver-->"C:\Windows\ASUS Camera ScreenSaver Uninstaller.exe"
Atheros Driver Installation Program-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{28006915-2739-4EBE-B5E8-49B25D32EB33}\SETUP.exe" -l0x9 -removeonly
ATK Generic Function Service-->C:\Program Files\InstallShield Installation Information\{D3D54F3E-C5C3-443D-978F-87A72E5616E8}\setup.exe -runfromtemp -l0x0009 -removeonly
ATK Hotkey-->C:\Program Files\InstallShield Installation Information\{3912D529-02BC-4CA8-B5ED-0D0C20EB6003}\SETUP.exe -runfromtemp -l0x0009 -removeonly
ATKOSD2-->MsiExec.exe /I{3B05F2FB-745B-4012-ADF2-439F36B2E70B}
Codec Pack - All In 1 6.0.3.0-->C:\Windows\iun6002.exe "C:\Program Files\Codec Pack - All In 1\irunin.ini"
Dolby Control Center-->MsiExec.exe /I{DE66EFAD-B9CC-4FD4-9157-6C18E5100161}
Express Gate-->MsiExec.exe /I{27D51A76-371D-48B6-B06E-4137A15B7583}
GOM Player-->"C:\Program Files\Programy\GomPlayer\Uninstall.exe"
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Microsoft .NET Framework 3.5 Language Pack SP1 - csy-->MsiExec.exe /I{DD73CA82-EA82-38AA-863D-9A24A018DC96}
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Office XP Professional s aplikací FrontPage-->MsiExec.exe /I{90280405-6000-11D3-8CFE-0050048383C9}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Mozilla Firefox (3.5.3)-->C:\Program Files\Programy\Mozilla Firefox\uninstall\helper.exe
NB Probe-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6324A1EF-CEF4-43E3-8BCD-9EF3F67317FD}\setup.exe" -l0x9
Opera 10.00-->MsiExec.exe /X{2085F05D-24C5-4E27-B7B4-A51DE890FFC9}
Realtek 8169 8168 8101E 8102E Ethernet Driver-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\SETUP.exe -runfromtemp -l0x0009 -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\SETUP.exe" -removeonly
RICOH R5C83x/84x Flash Media Controller Driver Ver.3.55.01-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{59F6A514-9813-47A3-948C-8A155460CC2A}\SETUP.EXE" -l0x9 anything
Safely Remove Disk Drive-->"C:\Program Files\InstallShield Installation Information\{0F97342A-56FA-4E9B-9F58-87DBD9DE9D9A}\setup.exe" -runfromtemp -l0x0409 -removeonly
Safely Remove Disk Drive-->MsiExec.exe /I{0F97342A-56FA-4E9B-9F58-87DBD9DE9D9A}
Sunbelt Personal Firewall-->MsiExec.exe /X{82B1150E-9B37-49FC-83EB-D52197D900D0}
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
USB 2.0 1.3M UVC WebCam-->C:\Windows\Uninstsxga.bat
WIDCOMM Bluetooth Software-->MsiExec.exe /X{03D1988F-469F-4843-8E6E-E5FE9D17889D}
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
WinFlash-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DE10AB76-4756-4913-BE25-55D1C1051F9A}\setup.exe" -l0x9
Wireless Console 2-->C:\Program Files\InstallShield Installation Information\{83F73CB1-7705-49D1-9852-84D839CA2A45}\SETUP.exe -runfromtemp -l0x0009 -removeonly

======Security center information======

FW: Sunbelt Personal Firewall
AS: Windows Defender

======System event log======

Computer Name: Petr-PC
Event Code: 7036
Message: Stav služby Instalace modulů systému Windows byl změněn na: Zastaveno
Record Number: 34697
Source Name: Service Control Manager
Time Written: 20091021183607.000000-000
Event Type: Informace
User:

Computer Name: Petr-PC
Event Code: 10029
Message: Model DCOM spustil službu wercplsupport s argumenty "" za účelem spuštění serveru:
{0E9A7BB5-F699-4D66-8A47-B919F5B6A1DB}
Record Number: 34698
Source Name: Microsoft-Windows-DistributedCOM
Time Written: 20091021183848.000000-000
Event Type: Informace
User:

Computer Name: Petr-PC
Event Code: 7036
Message: Stav služby Podpora ovládacího panelu Hlášení a řešení problémů byl změněn na: Spuštěno
Record Number: 34699
Source Name: Service Control Manager
Time Written: 20091021183849.000000-000
Event Type: Informace
User:

Computer Name: Petr-PC
Event Code: 7036
Message: Stav služby Podpora ovládacího panelu Hlášení a řešení problémů byl změněn na: Zastaveno
Record Number: 34700
Source Name: Service Control Manager
Time Written: 20091021183849.000000-000
Event Type: Informace
User:

Computer Name: Petr-PC
Event Code: 7036
Message: Stav služby Služba WinHTTP WPAD byl změněn na: Zastaveno
Record Number: 34701
Source Name: Service Control Manager
Time Written: 20091021185436.000000-000
Event Type: Informace
User:

=====Application event log=====

Computer Name: Petr-PC
Event Code: 1
Message: Klient Certifikační služby byl úspěšně spuštěn.
Record Number: 1176
Source Name: Microsoft-Windows-CertificateServicesClient
Time Written: 20091021182656.941790-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Petr-PC
Event Code: 10
Message: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Record Number: 1177
Source Name: Microsoft-Windows-WMI
Time Written: 20091021182713.000000-000
Event Type: Chyba
User:

Computer Name: Petr-PC
Event Code: 1
Message: Služba Centrum zabezpečení systému Windows byla spuštěna.
Record Number: 1178
Source Name: SecurityCenter
Time Written: 20091021182810.000000-000
Event Type: Informace
User:

Computer Name: Petr-PC
Event Code: 1001
Message: Čítače výkonu pro službu WmiApRpl (WmiApRpl) byly úspěšně odstraněny. Data záznamu obsahují nové hodnoty položek Last Counter a Last Help systémového registru.
Record Number: 1179
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20091021183232.000000-000
Event Type: Informace
User:

Computer Name: Petr-PC
Event Code: 1000
Message: Čítače výkonu pro službu WmiApRpl (WmiApRpl) byly úspěšně načteny. Data záznamu v datové části obsahují nové indexové hodnoty přiřazené této službě.
Record Number: 1180
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20091021183233.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: Petr-PC
Event Code: 5038
Message: Integrita kódu určila, že hodnota hash bitové kopie souboru není platná. Soubor může být poškozen z důvodu neoprávněné změny, nebo neplatná hodnota hash může ukazovat na potenciální chybu diskového zařízení.

Název souboru: \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
Record Number: 2354
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091021185738.511190-000
Event Type: Selhání auditu
User:

Computer Name: Petr-PC
Event Code: 5038
Message: Integrita kódu určila, že hodnota hash bitové kopie souboru není platná. Soubor může být poškozen z důvodu neoprávněné změny, nebo neplatná hodnota hash může ukazovat na potenciální chybu diskového zařízení.

Název souboru: \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
Record Number: 2355
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091021185738.589190-000
Event Type: Selhání auditu
User:

Computer Name: Petr-PC
Event Code: 5038
Message: Integrita kódu určila, že hodnota hash bitové kopie souboru není platná. Soubor může být poškozen z důvodu neoprávněné změny, nebo neplatná hodnota hash může ukazovat na potenciální chybu diskového zařízení.

Název souboru: \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
Record Number: 2356
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091021185738.651590-000
Event Type: Selhání auditu
User:

Computer Name: Petr-PC
Event Code: 5038
Message: Integrita kódu určila, že hodnota hash bitové kopie souboru není platná. Soubor může být poškozen z důvodu neoprávněné změny, nebo neplatná hodnota hash může ukazovat na potenciální chybu diskového zařízení.

Název souboru: \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
Record Number: 2357
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091021185738.729590-000
Event Type: Selhání auditu
User:

Computer Name: Petr-PC
Event Code: 5038
Message: Integrita kódu určila, že hodnota hash bitové kopie souboru není platná. Soubor může být poškozen z důvodu neoprávněné změny, nebo neplatná hodnota hash může ukazovat na potenciální chybu diskového zařízení.

Název souboru: \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
Record Number: 2358
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091021185738.807590-000
Event Type: Selhání auditu
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PROCESSOR_LEVEL"=17
"PROCESSOR_IDENTIFIER"=x86 Family 17 Model 3 Stepping 1, AuthenticAMD
"PROCESSOR_REVISION"=0301
"NUMBER_OF_PROCESSORS"=2
"TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat
"DFSTRACINGON"=FALSE
"configsetroot"=%SystemRoot%\ConfigSetRoot

-----------------EOF-----------------

Re: Vir - pravděpodobně Autorun.inf

Napsal: 06 dub 2011 18:46
od vyosek
:arrow: Zapojte do PC vsechny USB klice (flashky, ext. disky apod.)

Re: Vir - pravděpodobně Autorun.inf

Napsal: 06 dub 2011 19:23
od PadiseK
############################## | UsbFix 7.014 | [Deletion]

User: Petr (Administrator) # PETR-PC [ASUSTeK Computer Inc. F7Z]
Updated 24/06/10 by El Desaparecido / C_XX
Started at 20:15:29 | 06/04/2011
Website: http://pagesperso-orange.fr/NosTools/index.html
Contact: FindyKill.Contact@gmail.com

CPU: AMD Turion(tm) X2 Dual-Core Mobile RM-70
CPU 2: AMD Turion(tm) X2 Dual-Core Mobile RM-70
Microsoft® Windows Vista™ Home Premium (6.0.6002 32-Bit) # Service Pack 2
Internet Explorer 8.0.6001.19019

Windows Firewall: Disabled /!\
RAM -> 2814 Mb
C:\ (%systemdrive%) -> Fixed drive # 134 Gb (101 Mb free - 76%) [VistaOS] # NTFS
D:\ -> Fixed drive # 89 Gb (16 Mb free - 18%) [DATA] # NTFS
E:\ -> CD-ROM
F:\ -> Removable drive # 4 Gb (17 Mb free - 0%) [PAD1ZZZ'] # FAT32
G:\ -> Removable drive # 7 Gb (1 Mb free - 18%) [PADI] # FAT32
H:\ -> Removable drive # 2 Gb (107 Mb free - 5%) [PADIHO MP3] # FAT32

################## | Files # Infected Folders |


################## | Registry |


################## | Mountpoints2 |


################## | Listing |

[06/04/2011 - 20:18:28 | SHD ] C:\$Recycle.Bin
[18/09/2006 - 23:43:36 | A | 24] C:\autoexec.bat
[23/10/2009 - 17:19:56 | SHD ] C:\Boot
[11/04/2009 - 08:36:36 | RASH | 333257] C:\bootmgr
[17/04/2008 - 12:44:48 | RAS | 8192] C:\BOOTSECT.BAK
[04/04/2007 - 21:50:44 | A | 19] C:\CK21.txt
[18/09/2006 - 23:43:37 | A | 10] C:\config.sys
[02/11/2006 - 15:02:03 | SHD ] C:\Documents and Settings
[17/07/2008 - 15:39:26 | A | 19] C:\DRIVER.20
[11/07/2008 - 08:55:54 | RAH | 1048576] C:\F7ZAS.BIN
[11/10/2009 - 09:09:11 | A | 9] C:\Finish.log
[06/04/2011 - 16:35:27 | ASH | 2951897088] C:\hiberfil.sys
[12/02/2011 - 15:06:57 | D ] C:\Instalačky
[06/04/2011 - 16:35:26 | ASH | 3265675264] C:\pagefile.sys
[21/01/2008 - 04:32:31 | D ] C:\PerfLogs
[07/01/2011 - 14:44:56 | D ] C:\Ploužáky
[07/01/2011 - 14:44:50 | D ] C:\Ploužáky II
[03/04/2011 - 14:07:38 | RD ] C:\Program Files
[02/02/2011 - 14:04:02 | HD ] C:\ProgramData
[18/04/2008 - 00:33:15 | A | 11] C:\RECOVERY.DAT
[11/10/2009 - 08:29:44 | A | 560] C:\RHDSetup.log
[21/10/2009 - 20:57:44 | D ] C:\rsit
[11/10/2009 - 08:32:14 | A | 86] C:\setup.log
[29/12/2010 - 13:42:03 | SHD ] C:\System Volume Information
[11/10/2009 - 08:41:11 | D ] C:\temp
[06/04/2011 - 20:18:28 | D ] C:\UsbFix
[06/04/2011 - 20:15:30 | A | 2371] C:\UsbFix.txt
[29/12/2010 - 14:59:09 | RD ] C:\Users
[19/04/2010 - 22:00:01 | D ] C:\Vzdělávací audionahrávky
[06/04/2011 - 16:33:37 | D ] C:\Windows
[06/04/2011 - 20:18:28 | SHD ] D:\$RECYCLE.BIN
[05/04/2011 - 11:01:57 | D ] D:\Filmy
[04/01/2011 - 21:02:53 | D ] D:\Nicole Scherzinger
[11/02/2011 - 23:48:21 | D ] D:\Notebook-zaloha (Petr)
[27/03/2011 - 14:15:59 | D ] D:\Padiho fotky
[31/03/2011 - 14:53:51 | D ] D:\Padiho hudba
[16/03/2011 - 12:06:31 | D ] D:\Seriály
[17/10/2010 - 21:06:42 | SHD ] D:\System Volume Information
[23/03/2011 - 17:07:34 | D ] D:\Thomas - flash disc - avi films
[15/01/2011 - 14:50:59 | D ] D:\Škola
[24/03/2011 - 22:10:16 | D ] F:\Call of Duty 2_
[16/12/2010 - 15:40:06 | RSHD ] F:\RECYCLER
[30/03/2011 - 18:23:14 | D ] F:\players
[30/03/2011 - 18:23:16 | D ] F:\Patch 1.3
[29/10/2009 - 23:37:52 | A | 75945683] F:\mappack2.iwd
[29/10/2009 - 23:45:14 | A | 84494523] F:\mappack.iwd
[04/01/2011 - 21:25:52 | A | 6024619] F:\mp_vallente.iwd
[07/01/2011 - 23:07:18 | A | 61223] F:\zzz_iw_fix.iwd
[04/01/2011 - 21:25:28 | A | 14682636] F:\zzz_mp_tobruk.iwd
[07/01/2011 - 23:07:12 | A | 13500] F:\zzz_nodustmod_v2.iwd
[12/12/2010 - 16:40:38 | A | 1732] F:\zzz_gp.iwd
[20/06/2010 - 15:37:50 | A | 20595394] F:\KlanBaze_Mappack#1.iwd
[12/09/2006 - 17:03:54 | A | 568460] F:\Call of Duty 2 - v1.0 CZ.exe
[30/12/2009 - 11:41:36 | D ] G:\Tisk
[27/07/2010 - 23:50:10 | D ] G:\Fun
[04/01/2011 - 18:34:38 | D ] G:\Škola (3LS)
[23/02/2011 - 21:09:12 | D ] G:\Bakalářka
[11/03/2011 - 18:51:44 | D ] G:\Různé
[08/02/2011 - 14:48:52 | SHD ] G:\FOUND.000
[01/01/1601 - 02:00:00 | D ] H:\MICIN.DIR
[01/01/2004 - 00:00:00 | D ] H:\LINEIN.DIR
[24/12/2008 - 19:43:34 | D ] H:\Roxette
[24/12/2008 - 20:20:48 | D ] H:\DJ Tiesto
[24/12/2008 - 20:44:46 | D ] H:\Madonna
[03/01/2009 - 15:09:10 | D ] H:\Bryan Adams
[03/01/2009 - 15:11:14 | D ] H:\Scorpions
[03/01/2009 - 14:55:40 | D ] H:\Dirty Dancing
[02/07/2009 - 18:52:02 | D ] H:\Michael Jackson
[13/02/2010 - 11:46:36 | RD ] H:\Vzdelavaci audionahrávky
[20/06/2010 - 11:24:04 | D ] H:\Ploužáky
[13/09/2010 - 08:34:24 | D ] H:\Krystof
[09/02/2011 - 17:19:42 | D ] H:\Tarja Turunen
[30/03/2011 - 21:49:02 | D ] H:\Dance

################## | Vaccin |

C:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX)
D:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX)
F:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX)
G:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX)
H:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX)

################## | E.O.F |

Re: Vir - pravděpodobně Autorun.inf

Napsal: 06 dub 2011 19:37
od vyosek
:arrow: Znovu spusťte Usbfix a zvolte možnost Uninstall.

:arrow: PC by melo byt ciste :wink:

Re: Vir - pravděpodobně Autorun.inf

Napsal: 06 dub 2011 20:34
od PadiseK
Díky za pomoc! :)

Re: Vir - pravděpodobně Autorun.inf

Napsal: 06 dub 2011 20:35
od vyosek
Nemate zac, rad jsem pomohl :) Zase nekdy Obrázek