Vírus z Facebooku :(
Napsal: 22 črc 2011 13:30
Dobrý den prajem všetkým 
Dostal som vírus z facebooku z toho videa ktoré sa šíri... =/ potreboval by som pomoc.. Ďakujem
Logfile of random's system information tool 1.09 (written by random/random)
Run by katka at 2011-07-22 14:26:32
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 889 MB (3%) free of 30 GB
Total RAM: 1535 MB (58% free)
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-1659004503-839522115-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-1659004503-839522115-1003UA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\katka\Data aplikací\Mozilla\Firefox\Profiles\w1g0p13y.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.google.sk/"
prefs.js - "extensions.enabledItems" - "{6236BA26-C117-4007-928C-DE0716C7FA82}:1.0.2, {DDABDBA1-2377-4A30-A027-25697B99E254}:3.1, {6236BA26-C117-4007-928C-DE0716C7FA99}:1.0.1, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, jqs@sun.com:1.0, {63414328-3ab4-2c84-6c41-5a473c4b2ff7}:1.0, {6236BA26-C117-4007-928C-DE0716C7FA80}:1.0.24, {6236BA26-C117-4007-928C-DE0716C7FA96}:1.0.6, {7b13ec3e-999a-4b70-b9cb-2617b8323822}:2.5.8.6, {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.1.20091029021655, {8675f4b3-2f19-11ed-2d6b-0800600c0a16}:1.0, {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.9, {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}:6.0.25, {8675f4b3-2f19-11ed-2d6b-0800600c0a17}:1.0, {c8f71e5b-88f8-42a7-98bb-e4c506161de9}:0.4, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.10, nasanightlaunch@example.com:0.6.20100805"
prefs.js - "keyword.URL" - "http://search.icq.com/search/afe_result ... r=1.1.9&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6]
"Description"=Yahoo Messenger State Plugin
"Path"=C:\Program Files\Yahoo!\Shared\npYState.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.0.3]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc;version=0.8.6d]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files\VideoLAN\VLC\npvlc.dll
c:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
c:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
compreg.dat
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
xpti.dat
c:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
c:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
C:\Documents and Settings\katka\Data aplikací\Mozilla\Firefox\Profiles\w1g0p13y.default\extensions\
nasanightlaunch@example.com
{6236BA26-C117-4007-928C-DE0716C7FA80}
{6236BA26-C117-4007-928C-DE0716C7FA82}
{6236BA26-C117-4007-928C-DE0716C7FA96}
{6236BA26-C117-4007-928C-DE0716C7FA99}
{63414328-3ab4-2c84-6c41-5a473c4b2ff7}
{635abd67-4fe9-1b23-4f01-e679fa7484c1}
{7b13ec3e-999a-4b70-b9cb-2617b8323822}
{800b5000-a755-47e1-992b-48a1c1357f07}
{8675f4b3-2f19-11ed-2d6b-0800600c0a16}
{8675f4b3-2f19-11ed-2d6b-0800600c0a17}
{c8f71e5b-88f8-42a7-98bb-e4c506161de9}
{DDABDBA1-2377-4A30-A027-25697B99E254}
{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}
C:\Documents and Settings\katka\Data aplikací\Mozilla\Firefox\Profiles\w1g0p13y.default\searchplugins\
icqplugin.xml
web-search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll [2010-10-15 1372472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-09-27 1250696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-04-14 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-04-14 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
SingleInstance Class - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2010-10-15 163128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - D:\PROGRA~1\PCTRAN~1\webie.dll [2004-05-13 319488]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll [2010-10-15 1372472]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-09-06 1048888]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-04-04 16120832]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-08-11 7630848]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-08-11 86016]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-01-07 253672]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe /hide /waitservice []
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"wxpdrv"=C:\WINDOWS\services32.exe [2011-07-21 1178112]
"tray_ico"= []
"tray_ico0"=C:\WINDOWS\update.tray-9-0\svchost.exe [2011-07-21 1178112]
"tray_ico1"=C:\WINDOWS\update.tray-3-0\svchost.exe [2011-07-21 1178112]
"tray_ico2"=C:\WINDOWS\update.tray-2-0\svchost.exe [2011-07-21 1178112]
"tray_ico3"= []
"tray_ico4"= []
"7825190.exe"=C:\DOCUME~1\katka\LOCALS~1\Temp\7825190.exe [2011-07-21 245760]
"sysdriver32.exe"=C:\WINDOWS\sysdriver32.exe [2011-07-22 249344]
"sysdriver32_.exe"=C:\WINDOWS\sysdriver32_.exe [2011-07-22 249344]
"w_distrib.exe"=C:\WINDOWS\update.3\svchost.exe [2011-07-21 278528]
"l1rezerv.exe"=C:\WINDOWS\l1rezerv.exe [2011-07-21 115200]
"38886836-loader2.exe"=C:\DOCUME~1\katka\LOCALS~1\Temp\38886836-loader2.exe [2011-07-21 245760]
"86747674-loader2.exe"=C:\DOCUME~1\katka\LOCALS~1\Temp\86747674-loader2.exe [2011-07-22 249344]
"5682606.exe"=C:\WINDOWS\TEMP\5682606.exe [2011-07-22 249344]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"WIAWizardMenu"=C:\WINDOWS\system32\sti_ci.dll [2004-08-17 136704]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2006-11-16 139264]
"Google Update"=C:\Documents and Settings\katka\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-02-09 135664]
"Messenger (Yahoo!)"=C:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe [2010-06-01 5252408]
"ICQ"=C:\Program Files\ICQ7.4\ICQ.exe [2011-04-15 119608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\WINDOWS\system32\Macromed\Flash\FlashUtil10k_Plugin.exe [2010-10-18 232912]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Adobe Reader Speed Launch.lnk - D:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
Adobe Reader Synchronizer.lnk - D:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
McAfee Security Scan.lnk - C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe
C:\Documents and Settings\katka\Nabídka Start\Programy\Po spuštění
CurseClientStartup.ccip
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\ICQ6.5\ICQ.exe"="D:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Internet Explorer\IEXPLORE.EXE"="C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Enabled:Internet Explorer"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"D:\Program Files\totalcmd\TOTALCMD.EXE"="D:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"D:\Program Files\Opera\opera.exe"="D:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"D:\Program Files\Counter-Strike 1.6\hl.exe"="D:\Program Files\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Program Files\Counter-Strike Source\hl2.exe"="D:\Program Files\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"D:\Tibor\World of Warcraft\WoW-3.1.3.9947-to-3.2.0.10192-enUS-downloader.exe"="D:\Tibor\World of Warcraft\WoW-3.1.3.9947-to-3.2.0.10192-enUS-downloader.exe:*:Enabled:Blizzard Downloader"
"D:\Tibor\World of Warcraft\Launcher.exe"="D:\Tibor\World of Warcraft\Launcher.exe:*:Enabled:Blizzard Launcher"
"C:\Program Files\Java\jre6\bin\java.exe"="C:\Program Files\Java\jre6\bin\java.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Documents and Settings\katka\Local Settings\Apps\2.0\BVORTGJY.BR5\61V3VLHV.6G1\curs..tion_eee711038731a406_0004.0000_1430d97334050788\CurseClient.exe"="C:\Documents and Settings\katka\Local Settings\Apps\2.0\BVORTGJY.BR5\61V3VLHV.6G1\curs..tion_eee711038731a406_0004.0000_1430d97334050788\CurseClient.exe:*:Enabled:Curse Client 4.0"
"C:\Program Files\Counter-Strike 1.6\hl.exe"="C:\Program Files\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Documents and Settings\katka\Local Settings\Temp\Rar$EX00.906\teamspeak3-server_win32\ts3server_win32.exe"="C:\Documents and Settings\katka\Local Settings\Temp\Rar$EX00.906\teamspeak3-server_win32\ts3server_win32.exe:*:Enabled:TeamSpeak 3 Server"
"C:\Program Files\Xfire\Xfire.exe"="C:\Program Files\Xfire\Xfire.exe:*:Enabled:Xfire"
"D:\World of Warcraft\Launcher.exe"="D:\World of Warcraft\Launcher.exe:*:Enabled:Launcher.exe"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Documents and Settings\katka\Plocha\Left 4 Dead 2\left4dead2.exe"="C:\Documents and Settings\katka\Plocha\Left 4 Dead 2\left4dead2.exe:*:Enabled:left4dead2"
"C:\Documents and Settings\katka\Plocha\Left 4 Dead 2\srcds.exe"="C:\Documents and Settings\katka\Plocha\Left 4 Dead 2\srcds.exe:*:Enabled:srcds"
"C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe"="C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe:*:Enabled:aTube Catcher to download and convert videos."
"D:\Program Files\Left 4 Dead\left4dead.exe"="D:\Program Files\Left 4 Dead\left4dead.exe:*:Enabled:left4dead"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Program Files\Warcraft III\Warcraft III.exe"="D:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III"
"D:\Program Files\Warcraft III\War3.exe"="D:\Program Files\Warcraft III\War3.exe:*:Enabled:Warcraft III"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Program Files\EA Games\Need For Speed Underground\Speed.exe"="D:\Program Files\EA Games\Need For Speed Underground\Speed.exe:*:Enabled:Speed"
"C:\Program Files\Steam\steamapps\mafcool\counter-strike\hl.exe"="C:\Program Files\Steam\steamapps\mafcool\counter-strike\hl.exe:*:Enabled:Counter-Strike"
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\Program Files\ICQ7.4\ICQ.exe"="C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4"
"C:\Program Files\Steam\steamapps\dome370\counter-strike\hl.exe"="C:\Program Files\Steam\steamapps\dome370\counter-strike\hl.exe:*:Enabled:Counter-Strike"
"C:\Documents and Settings\katka\Dokumenty\Downloads\Flash-Player.exe"="C:\Documents and Settings\katka\Dokumenty\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\katka\Dokumenty\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"C:\WINDOWS\update.tray-3-0\svchost.exe"="C:\WINDOWS\update.tray-3-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-3-0\svchost.exe"
"C:\WINDOWS\update.tray-9-0\svchost.exe"="C:\WINDOWS\update.tray-9-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-9-0\svchost.exe"
"C:\WINDOWS\update.tray-2-0\svchost.exe"="C:\WINDOWS\update.tray-2-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-2-0\svchost.exe"
"C:\WINDOWS\update.3\svchost.exe"="C:\WINDOWS\update.3\svchost.exe:*:Enabled:C:\WINDOWS\update.3\svchost.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\Program Files\ICQ7.4\ICQ.exe"="C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"msacm.lhacm"=lhacm.acm
"VIDC.FMVC"=fmcodec.dll
"MSVideo8"=VfWWDM32.dll
======List of files/folders created in the last 1 month======
2011-07-22 14:26:32 ----D---- C:\rsit
2011-07-22 14:26:32 ----D---- C:\Program Files\trend micro
2011-07-22 14:21:46 ----A---- C:\WINDOWS\sysdriver32_.exe
2011-07-22 14:21:32 ----A---- C:\WINDOWS\sysdriver32.exe
2011-07-21 18:45:00 ----D---- C:\WINDOWS\ufa
2011-07-21 18:45:00 ----D---- C:\WINDOWS\rpcminer
2011-07-21 18:45:00 ----D---- C:\WINDOWS\phoenix
2011-07-21 16:40:54 ----A---- C:\WINDOWS\l1rezerv.exe
2011-07-21 16:40:49 ----A---- C:\WINDOWS\bitcoind.exe
2011-07-21 16:40:43 ----A---- C:\WINDOWS\btc_iplist.txt
2011-07-21 16:39:43 ----HD---- C:\WINDOWS\update.4.1
2011-07-21 16:38:35 ----A---- C:\WINDOWS\w_distrib_iplist.txt
2011-07-21 16:38:07 ----HD---- C:\WINDOWS\update.3
2011-07-21 16:38:06 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-07-21 16:37:34 ----A---- C:\WINDOWS\unrar.exe
2011-07-21 16:37:26 ----HD---- C:\WINDOWS\update.5.0
2011-07-21 16:37:16 ----A---- C:\WINDOWS\iplist.txt
2011-07-21 15:51:08 ----A---- C:\WINDOWS\front_ip_list.txt
2011-07-21 15:24:40 ----D---- C:\WINDOWS\av_ico
2011-07-21 15:23:41 ----HD---- C:\WINDOWS\update.1
2011-07-21 15:23:40 ----HD---- C:\WINDOWS\update.tray-9-0-lnk
2011-07-21 15:23:40 ----HD---- C:\WINDOWS\update.tray-9-0
2011-07-21 15:23:40 ----HD---- C:\WINDOWS\update.tray-2-0-lnk
2011-07-21 15:23:40 ----HD---- C:\WINDOWS\update.tray-2-0
2011-07-21 15:23:39 ----HD---- C:\WINDOWS\update.tray-3-0-lnk
2011-07-21 15:23:39 ----HD---- C:\WINDOWS\update.tray-3-0
2011-07-21 15:13:35 ----A---- C:\WINDOWS\winlog-ids.txt
2011-07-21 15:13:34 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-07-21 15:13:30 ----A---- C:\WINDOWS\services32.exe
2011-07-04 10:54:28 ----D---- C:\Program Files\3GPplayer2011
2011-07-04 10:37:35 ----D---- C:\WINDOWS\system32\madll
2011-07-04 10:37:30 ----D---- C:\Program Files\Abdio
======List of files/folders modified in the last 1 month======
2011-07-22 14:26:32 ----RD---- C:\Program Files
2011-07-22 14:23:05 ----D---- C:\WINDOWS\Temp
2011-07-22 14:21:46 ----D---- C:\WINDOWS
2011-07-22 14:19:21 ----D---- C:\WINDOWS\system32\drivers
2011-07-21 18:59:17 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-21 17:05:49 ----D---- C:\WINDOWS\ime
2011-07-21 16:45:11 ----D---- C:\WINDOWS\system32
2011-07-21 16:41:35 ----SHD---- C:\System Volume Information
2011-07-21 16:41:35 ----D---- C:\WINDOWS\system32\Restore
2011-07-21 15:42:57 ----D---- C:\WINDOWS\Prefetch
2011-07-21 15:40:38 ----D---- C:\WINDOWS\pchealth
2011-07-21 15:37:31 ----A---- C:\boot.ini
2011-07-21 15:36:16 ----D---- C:\Program Files\McAfee Security Scan
2011-07-19 11:01:44 ----D---- C:\WINDOWS\Minidump
2011-07-18 19:50:00 ----A---- C:\WINDOWS\NeroDigital.ini
2011-07-17 19:58:07 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-16 07:34:13 ----D---- C:\Documents and Settings\katka\Data aplikací\ICQ
2011-07-15 19:16:32 ----D---- C:\WINDOWS\system32\DirectX
2011-07-15 19:16:31 ----RSD---- C:\WINDOWS\assembly
2011-07-15 07:56:55 ----D---- C:\Documents and Settings\katka\Data aplikací\Skype
2011-07-15 06:59:18 ----D---- C:\Documents and Settings\katka\Data aplikací\skypePM
2011-07-11 10:43:32 ----D---- C:\Program Files\Steam
2011-07-06 19:40:42 ----D---- C:\Program Files\Common Files\Adobe
2011-07-04 10:58:27 ----D---- C:\Program Files\Common Files\DVDVideoSoft
2011-07-04 10:52:18 ----D---- C:\Program Files\3GPplayer2010

Dostal som vírus z facebooku z toho videa ktoré sa šíri... =/ potreboval by som pomoc.. Ďakujem

Logfile of random's system information tool 1.09 (written by random/random)
Run by katka at 2011-07-22 14:26:32
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 889 MB (3%) free of 30 GB
Total RAM: 1535 MB (58% free)
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-1659004503-839522115-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-1659004503-839522115-1003UA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\katka\Data aplikací\Mozilla\Firefox\Profiles\w1g0p13y.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.google.sk/"
prefs.js - "extensions.enabledItems" - "{6236BA26-C117-4007-928C-DE0716C7FA82}:1.0.2, {DDABDBA1-2377-4A30-A027-25697B99E254}:3.1, {6236BA26-C117-4007-928C-DE0716C7FA99}:1.0.1, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, jqs@sun.com:1.0, {63414328-3ab4-2c84-6c41-5a473c4b2ff7}:1.0, {6236BA26-C117-4007-928C-DE0716C7FA80}:1.0.24, {6236BA26-C117-4007-928C-DE0716C7FA96}:1.0.6, {7b13ec3e-999a-4b70-b9cb-2617b8323822}:2.5.8.6, {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.1.20091029021655, {8675f4b3-2f19-11ed-2d6b-0800600c0a16}:1.0, {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.9, {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}:6.0.25, {8675f4b3-2f19-11ed-2d6b-0800600c0a17}:1.0, {c8f71e5b-88f8-42a7-98bb-e4c506161de9}:0.4, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.10, nasanightlaunch@example.com:0.6.20100805"
prefs.js - "keyword.URL" - "http://search.icq.com/search/afe_result ... r=1.1.9&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6]
"Description"=Yahoo Messenger State Plugin
"Path"=C:\Program Files\Yahoo!\Shared\npYState.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.0.3]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc;version=0.8.6d]
"Description"=VLC Multimedia Plugin
"Path"=D:\Program Files\VideoLAN\VLC\npvlc.dll
c:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
c:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
compreg.dat
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
xpti.dat
c:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
c:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
C:\Documents and Settings\katka\Data aplikací\Mozilla\Firefox\Profiles\w1g0p13y.default\extensions\
nasanightlaunch@example.com
{6236BA26-C117-4007-928C-DE0716C7FA80}
{6236BA26-C117-4007-928C-DE0716C7FA82}
{6236BA26-C117-4007-928C-DE0716C7FA96}
{6236BA26-C117-4007-928C-DE0716C7FA99}
{63414328-3ab4-2c84-6c41-5a473c4b2ff7}
{635abd67-4fe9-1b23-4f01-e679fa7484c1}
{7b13ec3e-999a-4b70-b9cb-2617b8323822}
{800b5000-a755-47e1-992b-48a1c1357f07}
{8675f4b3-2f19-11ed-2d6b-0800600c0a16}
{8675f4b3-2f19-11ed-2d6b-0800600c0a17}
{c8f71e5b-88f8-42a7-98bb-e4c506161de9}
{DDABDBA1-2377-4A30-A027-25697B99E254}
{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}
C:\Documents and Settings\katka\Data aplikací\Mozilla\Firefox\Profiles\w1g0p13y.default\searchplugins\
icqplugin.xml
web-search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll [2010-10-15 1372472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-09-27 1250696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-04-14 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-04-14 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
SingleInstance Class - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2010-10-15 163128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - D:\PROGRA~1\PCTRAN~1\webie.dll [2004-05-13 319488]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll [2010-10-15 1372472]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-09-06 1048888]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-04-04 16120832]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-08-11 7630848]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-08-11 86016]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-01-07 253672]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe /hide /waitservice []
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"wxpdrv"=C:\WINDOWS\services32.exe [2011-07-21 1178112]
"tray_ico"= []
"tray_ico0"=C:\WINDOWS\update.tray-9-0\svchost.exe [2011-07-21 1178112]
"tray_ico1"=C:\WINDOWS\update.tray-3-0\svchost.exe [2011-07-21 1178112]
"tray_ico2"=C:\WINDOWS\update.tray-2-0\svchost.exe [2011-07-21 1178112]
"tray_ico3"= []
"tray_ico4"= []
"7825190.exe"=C:\DOCUME~1\katka\LOCALS~1\Temp\7825190.exe [2011-07-21 245760]
"sysdriver32.exe"=C:\WINDOWS\sysdriver32.exe [2011-07-22 249344]
"sysdriver32_.exe"=C:\WINDOWS\sysdriver32_.exe [2011-07-22 249344]
"w_distrib.exe"=C:\WINDOWS\update.3\svchost.exe [2011-07-21 278528]
"l1rezerv.exe"=C:\WINDOWS\l1rezerv.exe [2011-07-21 115200]
"38886836-loader2.exe"=C:\DOCUME~1\katka\LOCALS~1\Temp\38886836-loader2.exe [2011-07-21 245760]
"86747674-loader2.exe"=C:\DOCUME~1\katka\LOCALS~1\Temp\86747674-loader2.exe [2011-07-22 249344]
"5682606.exe"=C:\WINDOWS\TEMP\5682606.exe [2011-07-22 249344]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"WIAWizardMenu"=C:\WINDOWS\system32\sti_ci.dll [2004-08-17 136704]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2006-11-16 139264]
"Google Update"=C:\Documents and Settings\katka\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-02-09 135664]
"Messenger (Yahoo!)"=C:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe [2010-06-01 5252408]
"ICQ"=C:\Program Files\ICQ7.4\ICQ.exe [2011-04-15 119608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\WINDOWS\system32\Macromed\Flash\FlashUtil10k_Plugin.exe [2010-10-18 232912]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Adobe Reader Speed Launch.lnk - D:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
Adobe Reader Synchronizer.lnk - D:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
McAfee Security Scan.lnk - C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe
C:\Documents and Settings\katka\Nabídka Start\Programy\Po spuštění
CurseClientStartup.ccip
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\ICQ6.5\ICQ.exe"="D:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Internet Explorer\IEXPLORE.EXE"="C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Enabled:Internet Explorer"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"D:\Program Files\totalcmd\TOTALCMD.EXE"="D:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"D:\Program Files\Opera\opera.exe"="D:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"D:\Program Files\Counter-Strike 1.6\hl.exe"="D:\Program Files\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Program Files\Counter-Strike Source\hl2.exe"="D:\Program Files\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"D:\Tibor\World of Warcraft\WoW-3.1.3.9947-to-3.2.0.10192-enUS-downloader.exe"="D:\Tibor\World of Warcraft\WoW-3.1.3.9947-to-3.2.0.10192-enUS-downloader.exe:*:Enabled:Blizzard Downloader"
"D:\Tibor\World of Warcraft\Launcher.exe"="D:\Tibor\World of Warcraft\Launcher.exe:*:Enabled:Blizzard Launcher"
"C:\Program Files\Java\jre6\bin\java.exe"="C:\Program Files\Java\jre6\bin\java.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Documents and Settings\katka\Local Settings\Apps\2.0\BVORTGJY.BR5\61V3VLHV.6G1\curs..tion_eee711038731a406_0004.0000_1430d97334050788\CurseClient.exe"="C:\Documents and Settings\katka\Local Settings\Apps\2.0\BVORTGJY.BR5\61V3VLHV.6G1\curs..tion_eee711038731a406_0004.0000_1430d97334050788\CurseClient.exe:*:Enabled:Curse Client 4.0"
"C:\Program Files\Counter-Strike 1.6\hl.exe"="C:\Program Files\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Documents and Settings\katka\Local Settings\Temp\Rar$EX00.906\teamspeak3-server_win32\ts3server_win32.exe"="C:\Documents and Settings\katka\Local Settings\Temp\Rar$EX00.906\teamspeak3-server_win32\ts3server_win32.exe:*:Enabled:TeamSpeak 3 Server"
"C:\Program Files\Xfire\Xfire.exe"="C:\Program Files\Xfire\Xfire.exe:*:Enabled:Xfire"
"D:\World of Warcraft\Launcher.exe"="D:\World of Warcraft\Launcher.exe:*:Enabled:Launcher.exe"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Documents and Settings\katka\Plocha\Left 4 Dead 2\left4dead2.exe"="C:\Documents and Settings\katka\Plocha\Left 4 Dead 2\left4dead2.exe:*:Enabled:left4dead2"
"C:\Documents and Settings\katka\Plocha\Left 4 Dead 2\srcds.exe"="C:\Documents and Settings\katka\Plocha\Left 4 Dead 2\srcds.exe:*:Enabled:srcds"
"C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe"="C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe:*:Enabled:aTube Catcher to download and convert videos."
"D:\Program Files\Left 4 Dead\left4dead.exe"="D:\Program Files\Left 4 Dead\left4dead.exe:*:Enabled:left4dead"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Program Files\Warcraft III\Warcraft III.exe"="D:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III"
"D:\Program Files\Warcraft III\War3.exe"="D:\Program Files\Warcraft III\War3.exe:*:Enabled:Warcraft III"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Program Files\EA Games\Need For Speed Underground\Speed.exe"="D:\Program Files\EA Games\Need For Speed Underground\Speed.exe:*:Enabled:Speed"
"C:\Program Files\Steam\steamapps\mafcool\counter-strike\hl.exe"="C:\Program Files\Steam\steamapps\mafcool\counter-strike\hl.exe:*:Enabled:Counter-Strike"
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\Program Files\ICQ7.4\ICQ.exe"="C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4"
"C:\Program Files\Steam\steamapps\dome370\counter-strike\hl.exe"="C:\Program Files\Steam\steamapps\dome370\counter-strike\hl.exe:*:Enabled:Counter-Strike"
"C:\Documents and Settings\katka\Dokumenty\Downloads\Flash-Player.exe"="C:\Documents and Settings\katka\Dokumenty\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\katka\Dokumenty\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"C:\WINDOWS\update.tray-3-0\svchost.exe"="C:\WINDOWS\update.tray-3-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-3-0\svchost.exe"
"C:\WINDOWS\update.tray-9-0\svchost.exe"="C:\WINDOWS\update.tray-9-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-9-0\svchost.exe"
"C:\WINDOWS\update.tray-2-0\svchost.exe"="C:\WINDOWS\update.tray-2-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-2-0\svchost.exe"
"C:\WINDOWS\update.3\svchost.exe"="C:\WINDOWS\update.3\svchost.exe:*:Enabled:C:\WINDOWS\update.3\svchost.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\Program Files\ICQ7.4\ICQ.exe"="C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"msacm.lhacm"=lhacm.acm
"VIDC.FMVC"=fmcodec.dll
"MSVideo8"=VfWWDM32.dll
======List of files/folders created in the last 1 month======
2011-07-22 14:26:32 ----D---- C:\rsit
2011-07-22 14:26:32 ----D---- C:\Program Files\trend micro
2011-07-22 14:21:46 ----A---- C:\WINDOWS\sysdriver32_.exe
2011-07-22 14:21:32 ----A---- C:\WINDOWS\sysdriver32.exe
2011-07-21 18:45:00 ----D---- C:\WINDOWS\ufa
2011-07-21 18:45:00 ----D---- C:\WINDOWS\rpcminer
2011-07-21 18:45:00 ----D---- C:\WINDOWS\phoenix
2011-07-21 16:40:54 ----A---- C:\WINDOWS\l1rezerv.exe
2011-07-21 16:40:49 ----A---- C:\WINDOWS\bitcoind.exe
2011-07-21 16:40:43 ----A---- C:\WINDOWS\btc_iplist.txt
2011-07-21 16:39:43 ----HD---- C:\WINDOWS\update.4.1
2011-07-21 16:38:35 ----A---- C:\WINDOWS\w_distrib_iplist.txt
2011-07-21 16:38:07 ----HD---- C:\WINDOWS\update.3
2011-07-21 16:38:06 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-07-21 16:37:34 ----A---- C:\WINDOWS\unrar.exe
2011-07-21 16:37:26 ----HD---- C:\WINDOWS\update.5.0
2011-07-21 16:37:16 ----A---- C:\WINDOWS\iplist.txt
2011-07-21 15:51:08 ----A---- C:\WINDOWS\front_ip_list.txt
2011-07-21 15:24:40 ----D---- C:\WINDOWS\av_ico
2011-07-21 15:23:41 ----HD---- C:\WINDOWS\update.1
2011-07-21 15:23:40 ----HD---- C:\WINDOWS\update.tray-9-0-lnk
2011-07-21 15:23:40 ----HD---- C:\WINDOWS\update.tray-9-0
2011-07-21 15:23:40 ----HD---- C:\WINDOWS\update.tray-2-0-lnk
2011-07-21 15:23:40 ----HD---- C:\WINDOWS\update.tray-2-0
2011-07-21 15:23:39 ----HD---- C:\WINDOWS\update.tray-3-0-lnk
2011-07-21 15:23:39 ----HD---- C:\WINDOWS\update.tray-3-0
2011-07-21 15:13:35 ----A---- C:\WINDOWS\winlog-ids.txt
2011-07-21 15:13:34 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-07-21 15:13:30 ----A---- C:\WINDOWS\services32.exe
2011-07-04 10:54:28 ----D---- C:\Program Files\3GPplayer2011
2011-07-04 10:37:35 ----D---- C:\WINDOWS\system32\madll
2011-07-04 10:37:30 ----D---- C:\Program Files\Abdio
======List of files/folders modified in the last 1 month======
2011-07-22 14:26:32 ----RD---- C:\Program Files
2011-07-22 14:23:05 ----D---- C:\WINDOWS\Temp
2011-07-22 14:21:46 ----D---- C:\WINDOWS
2011-07-22 14:19:21 ----D---- C:\WINDOWS\system32\drivers
2011-07-21 18:59:17 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-21 17:05:49 ----D---- C:\WINDOWS\ime
2011-07-21 16:45:11 ----D---- C:\WINDOWS\system32
2011-07-21 16:41:35 ----SHD---- C:\System Volume Information
2011-07-21 16:41:35 ----D---- C:\WINDOWS\system32\Restore
2011-07-21 15:42:57 ----D---- C:\WINDOWS\Prefetch
2011-07-21 15:40:38 ----D---- C:\WINDOWS\pchealth
2011-07-21 15:37:31 ----A---- C:\boot.ini
2011-07-21 15:36:16 ----D---- C:\Program Files\McAfee Security Scan
2011-07-19 11:01:44 ----D---- C:\WINDOWS\Minidump
2011-07-18 19:50:00 ----A---- C:\WINDOWS\NeroDigital.ini
2011-07-17 19:58:07 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-16 07:34:13 ----D---- C:\Documents and Settings\katka\Data aplikací\ICQ
2011-07-15 19:16:32 ----D---- C:\WINDOWS\system32\DirectX
2011-07-15 19:16:31 ----RSD---- C:\WINDOWS\assembly
2011-07-15 07:56:55 ----D---- C:\Documents and Settings\katka\Data aplikací\Skype
2011-07-15 06:59:18 ----D---- C:\Documents and Settings\katka\Data aplikací\skypePM
2011-07-11 10:43:32 ----D---- C:\Program Files\Steam
2011-07-06 19:40:42 ----D---- C:\Program Files\Common Files\Adobe
2011-07-04 10:58:27 ----D---- C:\Program Files\Common Files\DVDVideoSoft
2011-07-04 10:52:18 ----D---- C:\Program Files\3GPplayer2010