
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
dalsi blbec co se nachytal - vir FB
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
dalsi blbec co se nachytal - vir FB
Logfile of random's system information tool 1.09 (written by random/random)
Run by frajer-smoula at 2011-07-26 17:42:16
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 5 GB (7%) free of 76 GB
Total RAM: 3071 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:42:29, on 26.7.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Users\frajer-smoula\Desktop\NPE.exe
C:\Program Files\trend micro\frajer-smoula.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... tbid=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.crawler.com/homepage.aspx?tbid=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: &Crawler Toolbar Helper - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: &Crawler Toolbar Helper - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: &Crawler Toolbar - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [70486382-loader2.exe] "C:\Users\FRAJER~1\AppData\Local\Temp\70486382-loader2.exe"
O4 - HKLM\..\Run: [7450136.exe] "C:\Windows\TEMP\7450136.exe"
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Syncables] C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe
O4 - HKCU\..\Run: [AutoStartNPSAgent] C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-156553736-788906822-3014006816-1005\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-156553736-788906822-3014006816-1005\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Game Jackal Server (GJService) - Unknown owner - C:\Program Files (x86)\SlySoft\Game Jackal v4\Server.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files (x86)\Spyware Terminator\sp_rsser.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update Center Service (UpdateCenterService) - NVIDIA - C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14388 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
winlogon.exe
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe"
"C:\Program Files (x86)\SlySoft\Game Jackal v4\Server.exe"
taskeng.exe {0A4C28C0-468E-44BB-A7FB-696BDA631E8B}
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe" /StartService
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"C:\Program Files (x86)\Spyware Terminator\sp_rsser.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe" /StartService
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe"
"C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesApp64.exe" /TUStart /pid:2732
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe" -autorun
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\diMaster.dll" /prefetch:1
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe" /c /a /s UserSession
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.Exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
"C:\Program Files (x86)\Opera\opera.exe" -unelevate
"C:\Users\frajer-smoula\Desktop\NPE.exe"
"C:\Users\frajer-smoula\APPDATA\LOCAL\OPERA\OPERA\TEMPORARY_DOWNLOADS\RSITX64.EXE"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-09-16 346736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2010-09-16 318960]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-23 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]
&Crawler Toolbar Helper - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll [2011-07-14 1237240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll [2008-12-08 61792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll [2011-04-29 436152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL [2011-03-31 210872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-09-16 256112]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2010-09-16 761840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2010-09-16 458736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-09-16 346736]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll [2011-04-21 1535808]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-09-16 256112]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2011-04-21 1000768]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]
{4B3803EA-5230-4DC3-A7FC-33638F3D3542} - &Crawler Toolbar - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll [2011-07-14 1237240]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll [2011-04-29 436152]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ASUS WebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-09-30 621440]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-09-02 323584]
"fssui"=C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe [2008-12-08 453984]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"Syncables"=C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe [2010-04-05 370480]
"AutoStartNPSAgent"=C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe [2010-07-04 95576]
"SpywareTerminatorUpdate"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [2011-07-26 3318784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-09-16 3054136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-21 9639424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-05-26 15147400]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Syncables]
C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe [2010-04-05 370480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-09-16 2429]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2009-10-27 6998656]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2009-08-20 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
"NPSStartup"= []
"70486382-loader2.exe"=C:\Users\FRAJER~1\AppData\Local\Temp\70486382-loader2.exe []
"7450136.exe"=C:\Windows\TEMP\7450136.exe [2011-07-26 495616]
"SpywareTerminator"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2011-07-26 2557440]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2011-07-26 17:42:16 ----D---- C:\rsit
2011-07-26 17:42:16 ----D---- C:\Program Files\trend micro
2011-07-26 16:25:51 ----A---- C:\Windows\system32\drivers\SMR200.dat
2011-07-26 16:25:50 ----A---- C:\Windows\system32\drivers\SMR200.SYS
2011-07-26 16:20:34 ----RA---- C:\Windows\system32\drivers\SymIMV.sys
2011-07-26 14:51:52 ----D---- C:\Program Files\Symantec
2011-07-26 14:51:52 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-07-26 14:51:52 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2011-07-26 14:50:31 ----D---- C:\Windows\system32\drivers\NISx64
2011-07-26 14:50:28 ----D---- C:\Program Files (x86)\Norton Internet Security
2011-07-26 14:35:02 ----D---- C:\ProgramData\MFAData
2011-07-26 13:54:29 ----D---- C:\Program Files (x86)\Crawler
2011-07-26 13:54:25 ----D---- C:\Users\frajer-smoula\AppData\Roaming\Spyware Terminator
2011-07-26 13:54:23 ----D---- C:\ProgramData\Spyware Terminator
2011-07-26 13:54:23 ----D---- C:\Program Files (x86)\Spyware Terminator
2011-07-26 13:40:38 ----D---- C:\Users\frajer-smoula\AppData\Roaming\Tific
2011-07-26 10:36:55 ----A---- C:\Windows\iecheck_iplist.txt
2011-07-26 10:36:11 ----HD---- C:\Windows\update.2
2011-07-26 10:32:35 ----D---- C:\Windows\ufa
2011-07-26 10:32:35 ----D---- C:\Windows\rpcminer
2011-07-26 10:32:35 ----D---- C:\Windows\phoenix
2011-07-26 10:31:55 ----A---- C:\Windows\btc_client_iplist.txt
2011-07-26 10:31:38 ----A---- C:\Windows\unrar.exe
2011-07-26 10:30:15 ----HD---- C:\Windows\update.5.0
2011-07-26 10:29:03 ----A---- C:\Windows\iplist.txt
2011-07-26 10:10:42 ----HD---- C:\Windows\PIF
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bwhnt.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bwh.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bmdm.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bmdfl.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bcmnt.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bcm.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bbus.sys
2011-07-24 20:31:14 ----D---- C:\ProgramData\Samsung
2011-07-24 20:30:44 ----A---- C:\Windows\SYSWOW64\FsExService64.Exe
2011-07-24 20:30:44 ----A---- C:\Windows\SYSWOW64\drivers\TFsExDisk.Sys
2011-07-24 20:30:43 ----A---- C:\Windows\system32\FsExService64.exe
2011-07-24 20:30:43 ----A---- C:\Windows\system32\drivers\TFsExDisk.sys
2011-07-24 20:30:13 ----D---- C:\Users\frajer-smoula\AppData\Roaming\Samsung
2011-07-24 20:29:16 ----D---- C:\Program Files (x86)\MarkAny
2011-07-24 20:29:04 ----D---- C:\Program Files (x86)\Samsung
2011-07-24 20:19:57 ----HD---- C:\ProgramData\.syncID
2011-07-23 06:29:57 ----D---- C:\Program Files (x86)\NosTale(CZ)
2011-07-14 20:49:20 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2011-07-14 20:49:20 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2011-07-14 20:49:20 ----A---- C:\Windows\system32\d3dx10_40.dll
2011-07-14 20:49:20 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2011-07-14 20:49:18 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2011-07-14 20:49:18 ----A---- C:\Windows\system32\D3DX9_40.dll
2011-07-14 10:07:26 ----D---- C:\Users\frajer-smoula\AppData\Roaming\XRay Engine
2011-07-13 17:48:30 ----A---- C:\Windows\system32\KernelBase.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-07-13 17:48:29 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbohci.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbd.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-07-13 17:48:03 ----A---- C:\Windows\system32\win32k.sys
2011-07-13 17:47:56 ----A---- C:\Windows\SYSWOW64\esent.dll
2011-07-13 17:47:56 ----A---- C:\Windows\system32\fsutil.exe
2011-07-13 17:47:56 ----A---- C:\Windows\system32\esent.dll
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\storport.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\nvstor.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\nvraid.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\amdxata.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\amdsata.sys
2011-07-13 17:47:55 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2011-07-13 17:47:55 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-07-13 17:47:46 ----A---- C:\Windows\system32\wow64win.dll
2011-07-13 17:47:46 ----A---- C:\Windows\system32\kernel32.dll
2011-07-13 17:47:46 ----A---- C:\Windows\system32\conhost.exe
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\wow32.dll
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\setup16.exe
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\instnm.exe
2011-07-13 17:47:45 ----A---- C:\Windows\system32\wow64cpu.dll
2011-07-13 17:47:45 ----A---- C:\Windows\system32\wow64.dll
2011-07-13 17:47:45 ----A---- C:\Windows\system32\winsrv.dll
2011-07-13 17:47:45 ----A---- C:\Windows\system32\ntvdm64.dll
2011-07-13 17:47:44 ----A---- C:\Windows\SYSWOW64\user.exe
2011-07-12 23:45:55 ----A---- C:\Windows\system32\drivers\lirsgt.sys
2011-07-12 23:45:55 ----A---- C:\Windows\system32\drivers\atksgt.sys
2011-07-12 17:58:17 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2011-07-12 17:58:17 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2011-07-12 17:58:17 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2011-07-12 17:58:17 ----A---- C:\Windows\system32\XAudio2_7.dll
2011-07-12 17:58:17 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2011-07-12 17:58:17 ----A---- C:\Windows\system32\xactengine3_7.dll
2011-07-12 17:58:16 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2011-07-12 17:58:16 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2011-07-12 17:58:16 ----A---- C:\Windows\system32\d3dcsx_43.dll
2011-07-12 17:58:16 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2011-07-12 17:58:15 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2011-07-12 17:58:15 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2011-07-12 17:58:15 ----A---- C:\Windows\system32\d3dx11_43.dll
2011-07-12 17:58:15 ----A---- C:\Windows\system32\d3dx10_43.dll
2011-07-12 17:58:14 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2011-07-12 17:58:14 ----A---- C:\Windows\system32\D3DX9_43.dll
2011-07-12 17:58:13 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2011-07-12 17:58:13 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2011-07-12 17:58:13 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2011-07-12 17:58:13 ----A---- C:\Windows\system32\XAudio2_6.dll
2011-07-12 17:58:13 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2011-07-12 17:58:13 ----A---- C:\Windows\system32\xactengine3_6.dll
2011-07-12 17:58:12 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2011-07-12 17:58:12 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2011-07-12 17:58:11 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2011-07-12 17:58:11 ----A---- C:\Windows\system32\XAudio2_5.dll
2011-07-12 17:58:10 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2011-07-12 17:58:10 ----A---- C:\Windows\system32\xactengine3_5.dll
2011-07-12 17:58:09 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\system32\d3dx11_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\system32\d3dx10_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\system32\d3dcsx_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-07-12 17:58:08 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2011-07-12 17:58:08 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-07-12 17:58:07 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\system32\D3DX9_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\system32\d3dx10_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2011-07-12 17:58:05 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2011-07-12 17:58:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2011-07-12 17:58:05 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2011-07-12 17:58:05 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2011-07-12 17:58:05 ----A---- C:\Windows\system32\XAudio2_4.dll
2011-07-12 17:58:05 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2011-07-12 17:58:05 ----A---- C:\Windows\system32\xactengine3_4.dll
2011-07-12 17:58:05 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2011-07-12 17:58:03 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2011-07-12 17:58:03 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2011-07-12 17:58:03 ----A---- C:\Windows\system32\XAudio2_3.dll
2011-07-12 17:58:03 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2011-07-12 17:58:02 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2011-07-12 17:58:02 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2011-07-12 17:58:02 ----A---- C:\Windows\system32\xactengine3_3.dll
2011-07-12 17:58:02 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2011-07-12 17:58:01 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2011-07-12 17:58:01 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2011-07-12 17:58:01 ----A---- C:\Windows\system32\XAudio2_2.dll
2011-07-12 17:58:01 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2011-07-12 17:58:00 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2011-07-12 17:58:00 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\system32\xactengine3_2.dll
2011-07-12 17:58:00 ----A---- C:\Windows\system32\D3DX9_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\system32\d3dx10_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2011-07-12 17:57:59 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2011-07-12 17:57:59 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2011-07-12 17:57:59 ----A---- C:\Windows\system32\XAudio2_1.dll
2011-07-12 17:57:59 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2011-07-12 17:57:58 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2011-07-12 17:57:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2011-07-12 17:57:58 ----A---- C:\Windows\system32\xactengine3_1.dll
2011-07-12 17:57:58 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2011-07-12 17:57:57 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\system32\D3DX9_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\system32\d3dx10_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2011-07-12 17:57:56 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2011-07-12 17:57:56 ----A---- C:\Windows\system32\XAudio2_0.dll
2011-07-12 17:57:55 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2011-07-12 17:57:55 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2011-07-12 17:57:55 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2011-07-12 17:57:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2011-07-12 17:57:55 ----A---- C:\Windows\system32\xactengine3_0.dll
2011-07-12 17:57:55 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2011-07-12 17:57:55 ----A---- C:\Windows\system32\d3dx10_37.dll
2011-07-12 17:57:55 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2011-07-12 17:57:54 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2011-07-12 17:57:54 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2011-07-12 17:57:54 ----A---- C:\Windows\system32\xactengine2_10.dll
2011-07-12 17:57:54 ----A---- C:\Windows\system32\D3DX9_37.dll
2011-07-12 17:57:53 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2011-07-12 17:57:53 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2011-07-12 17:57:53 ----A---- C:\Windows\system32\d3dx10_36.dll
2011-07-12 17:57:53 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2011-07-12 17:57:52 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2011-07-12 17:57:52 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2011-07-12 17:57:52 ----A---- C:\Windows\system32\xactengine2_9.dll
2011-07-12 17:57:52 ----A---- C:\Windows\system32\d3dx9_36.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\xactengine2_8.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\xactengine2_7.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\d3dx10_33.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2011-07-12 17:57:49 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2011-07-12 17:57:49 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2011-07-12 17:57:49 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2011-07-12 17:57:49 ----A---- C:\Windows\system32\xactengine2_6.dll
2011-07-12 17:57:49 ----A---- C:\Windows\system32\x3daudio1_1.dll
2011-07-12 17:57:49 ----A---- C:\Windows\system32\d3dx9_33.dll
2011-07-12 17:57:48 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2011-07-12 17:57:48 ----A---- C:\Windows\system32\d3dx10.dll
2011-07-12 17:49:12 ----D---- C:\Windows\SYSWOW64\directx
2011-07-12 17:07:27 ----D---- C:\Users\frajer-smoula\AppData\Roaming\DivX
2011-07-12 15:12:12 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2011-07-10 19:45:41 ----D---- C:\ProgramData\PCSettings
2011-07-01 23:47:01 ----A---- C:\Windows\SYSWOW64\aptmp.exe
2011-07-01 22:35:07 ----D---- C:\Program Files (x86)\Illusion Softworks
2011-07-01 22:30:39 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2011-07-01 22:30:25 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2011-07-01 22:30:14 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2011-07-01 22:29:52 ----D---- C:\Users\frajer-smoula\AppData\Roaming\DAEMON Tools Lite
2011-07-01 22:29:52 ----D---- C:\ProgramData\DAEMON Tools Lite
2011-07-01 22:12:19 ----A---- C:\Windows\SYSWOW64\CmdLineExt03.dll
2011-07-01 21:33:50 ----A---- C:\Windows\DIIUnin.dat
2011-07-01 21:33:45 ----A---- C:\Windows\DIIUnin.pif
2011-07-01 21:33:45 ----A---- C:\Windows\DIIUnin.exe
2011-07-01 21:33:23 ----D---- C:\Program Files\Diablo II
2011-07-01 20:48:30 ----A---- C:\Windows\SYSWOW64\GEARAspi.dll
2011-07-01 20:48:30 ----A---- C:\Windows\system32\GEARAspi64.dll
2011-07-01 20:48:30 ----A---- C:\Windows\system32\drivers\GEARAspiWDM.sys
2011-07-01 20:48:02 ----D---- C:\Windows\system32\drivers\NBRTWizardx64
2011-07-01 20:48:02 ----D---- C:\Program Files (x86)\Norton Bootable Recovery Tool Wizard
2011-07-01 16:49:45 ----D---- C:\Windows\Minidump
2011-06-30 10:31:45 ----AH---- C:\ProgramData\ezsidmv.dat
2011-06-30 10:31:38 ----D---- C:\Users\frajer-smoula\AppData\Roaming\skypePM
2011-06-30 10:31:37 ----D---- C:\ProgramData\Skype Extras
2011-06-30 10:29:30 ----D---- C:\Users\frajer-smoula\AppData\Roaming\Skype
2011-06-30 10:29:10 ----RD---- C:\Program Files (x86)\Skype
2011-06-30 10:29:04 ----D---- C:\ProgramData\Skype
2011-06-29 17:16:36 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2011-06-29 17:16:36 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2011-06-29 17:16:36 ----A---- C:\Windows\SYSWOW64\devobj.dll
2011-06-29 17:16:36 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2011-06-29 17:16:36 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-06-29 17:16:34 ----A---- C:\Windows\system32\tquery.dll
2011-06-29 17:16:34 ----A---- C:\Windows\system32\mssrch.dll
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\tquery.dll
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\mssph.dll
2011-06-29 17:16:33 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-06-29 17:16:33 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-06-29 17:16:33 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-06-29 17:16:33 ----A---- C:\Windows\system32\mssvp.dll
2011-06-29 17:16:33 ----A---- C:\Windows\system32\mssphtb.dll
2011-06-29 17:16:33 ----A---- C:\Windows\system32\mssph.dll
2011-06-29 17:16:32 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2011-06-29 17:16:32 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2011-06-29 17:16:32 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2011-06-29 17:16:32 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2011-06-29 17:16:32 ----A---- C:\Windows\system32\msscntrs.dll
2011-06-28 22:15:43 ----D---- C:\Windows\SYSWOW64\custom matrices
2011-06-28 22:15:36 ----D---- C:\Windows\SYSWOW64\QuickTime
2011-06-28 22:15:36 ----D---- C:\Windows\SYSWOW64\C2MP
2011-06-28 18:50:55 ----A---- C:\Windows\system32\nvexpBar.dll
2011-06-28 18:50:55 ----A---- C:\Windows\system32\msvcr71.dll
2011-06-28 18:50:55 ----A---- C:\Windows\system32\msvcp71.dll
2011-06-28 18:50:55 ----A---- C:\Windows\system32\MFC71.dll
2011-06-27 17:42:06 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2011-06-27 17:41:22 ----A---- C:\Windows\system32\easyupdatusapiu64.dll
2011-06-27 17:41:07 ----D---- C:\ProgramData\NVIDIA Corporation
2011-06-27 17:40:11 ----A---- C:\Windows\system32\nvhdap64.dll
2011-06-27 17:40:11 ----A---- C:\Windows\system32\nvhdagenco642040.dll
2011-06-27 17:40:11 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\OpenCL.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvoglv64.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvgenco642090.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvdispco6420150.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvcuvid.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvcuvenc.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvcuda.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvcompiler.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2011-06-27 17:39:13 ----D---- C:\Program Files\NVIDIA Corporation
2011-06-27 17:31:00 ----D---- C:\NVIDIA
======List of files/folders modified in the last 1 month======
2011-07-26 22:50:15 ----D---- C:\Windows\system32\LogFiles
2011-07-26 17:42:16 ----RD---- C:\Program Files
2011-07-26 17:41:28 ----D---- C:\Windows\Temp
2011-07-26 16:25:51 ----D---- C:\Windows\system32\drivers
2011-07-26 16:20:34 ----D---- C:\Windows\inf
2011-07-26 16:20:30 ----D---- C:\Windows\system32\catroot
2011-07-26 16:20:29 ----D---- C:\Windows\system32\DriverStore
2011-07-26 16:18:41 ----SHD---- C:\Windows\Installer
2011-07-26 16:18:27 ----D---- C:\Program Files (x86)\Opera
2011-07-26 15:18:43 ----D---- C:\Windows\system32\config
2011-07-26 15:13:55 ----D---- C:\Windows\system32\Tasks
2011-07-26 15:12:19 ----D---- C:\Windows\system32\NDF
2011-07-26 15:09:33 ----D---- C:\Windows
2011-07-26 15:09:15 ----SHD---- C:\System Volume Information
2011-07-26 15:09:05 ----A---- C:\Windows\system32\AutoRunFilter.ini
2011-07-26 15:07:33 ----D---- C:\ProgramData\NVIDIA
2011-07-26 14:51:52 ----D---- C:\Program Files\Common Files
2011-07-26 14:50:28 ----RD---- C:\Program Files (x86)
2011-07-26 14:50:28 ----D---- C:\ProgramData\Norton
2011-07-26 14:50:25 ----D---- C:\ProgramData\NortonInstaller
2011-07-26 14:50:17 ----D---- C:\Program Files (x86)\NortonInstaller
2011-07-26 14:43:20 ----A---- C:\Windows\system32\ServiceFilter.ini
2011-07-26 14:42:28 ----D---- C:\Windows\System32
2011-07-26 14:35:02 ----HD---- C:\ProgramData
2011-07-26 13:47:43 ----D---- C:\Windows\SysWOW64
2011-07-26 13:41:46 ----D---- C:\Windows\Prefetch
2011-07-26 13:35:35 ----D---- C:\ProgramData\Adobe
2011-07-26 10:36:33 ----D---- C:\Windows\system32\drivers\etc
2011-07-24 20:36:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-07-24 20:32:24 ----D---- C:\Windows\system32\catroot2
2011-07-24 20:30:44 ----D---- C:\Windows\SYSWOW64\drivers
2011-07-24 20:29:55 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2011-07-24 20:29:52 ----D---- C:\Windows\winsxs
2011-07-21 22:12:49 ----D---- C:\Users\frajer-smoula\AppData\Roaming\uTorrent
2011-07-21 22:12:47 ----D---- C:\Windows\Logs
2011-07-19 09:24:46 ----A---- C:\Windows\system32\acovcnt.exe
2011-07-17 00:57:25 ----D---- C:\Users\frajer-smoula\AppData\Roaming\SoftGrid Client
2011-07-14 20:48:54 ----RSD---- C:\Windows\assembly
2011-07-14 14:39:20 ----D---- C:\Windows\rescache
2011-07-14 10:19:21 ----D---- C:\Windows\debug
2011-07-14 00:40:58 ----D---- C:\Windows\SYSWOW64\cs-CZ
2011-07-14 00:40:58 ----D---- C:\Windows\system32\cs-CZ
2011-07-14 00:40:57 ----D---- C:\Windows\AppPatch
2011-07-13 17:55:47 ----A---- C:\Windows\system32\MRT.exe
2011-07-12 17:59:20 ----SD---- C:\ProgramData\Microsoft
2011-07-12 17:59:10 ----D---- C:\Program Files (x86)\Microsoft
2011-07-01 23:41:37 ----D---- C:\ProgramData\Partner
2011-07-01 23:06:11 ----SD---- C:\Users\frajer-smoula\AppData\Roaming\Microsoft
2011-07-01 20:48:29 ----DC---- C:\Windows\system32\DRVSTORE
2011-06-30 10:29:11 ----D---- C:\Program Files (x86)\Common Files
2011-06-29 18:34:43 ----SHD---- C:\$Recycle.Bin
2011-06-29 17:38:10 ----RSD---- C:\Windows\Fonts
2011-06-27 17:42:07 ----RD---- C:\Users
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvstor64;nvstor64; C:\Windows\system32\DRIVERS\nvstor64.sys [2010-04-27 244328]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SMR200;Symantec SMR Utility Service 2.0.0; C:\Windows\System32\drivers\SMR200.SYS [2011-07-26 96376]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1206000.01D\SYMDS64.SYS [2011-01-27 450680]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1206000.01D\SYMEFA64.SYS [2011-03-15 912504]
R1 BHDrvx64;BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20100810.004\BHDrvx64.sys [2010-08-09 945200]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2011-07-26 481912]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20100706.002\IDSVia64.sys [2010-06-27 463408]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1206000.01D\SRTSPX64.SYS [2011-03-31 40568]
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys [2011-03-31 43640]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1206000.01D\Ironx64.SYS [2011-01-27 171128]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\NISx64\1206000.01D\SYMNETS.SYS [2011-03-22 382584]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2011-07-12 88480]
R2 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2011-07-12 46400]
R2 NVR0FLASHDev;NVR0FLASHDev; \??\C:\Windows\nvflsh64.sys [2009-01-07 40992]
R2 sp_rsdrv2;Spyware Terminator Driver Filter; C:\Windows\system32\DRIVERS\stflt.sys [2010-07-07 50696]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-07-01 254528]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-10-15 117760]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 34152]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-22 2229280]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 Maplom;Maplom; C:\Windows\system32\drivers\Maplom.sys [2010-09-15 34240]
R3 MaplomL;MaplomL; C:\Windows\system32\drivers\MaplomL.sys [2010-09-15 58304]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\VirusDefs\20110725.037\ENG64.SYS [2011-07-26 117880]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\VirusDefs\20110725.037\EX64.SYS [2011-07-26 2011768]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2011-05-10 174184]
R3 NVR0Dev;NVR0Dev; \??\C:\Windows\nvoclk64.sys [2009-01-06 40480]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2009-06-28 28704]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-06-23 344680]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2009-12-02 721768]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2009-12-02 269672]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2009-12-02 25960]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2009-12-02 22376]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\NISx64\1206000.01D\SRTSP64.SYS [2011-03-31 744568]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2011-07-26 174200]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856]
S0 prohlp02;StarForce Protection Helper Driver v2; C:\Windows\System32\drivers\prohlp02.sys []
S0 prosync1;StarForce Protection Synchronization Driver v1; C:\Windows\System32\drivers\prosync1.sys []
S0 sfhlp01;StarForce Protection Helper Driver; C:\Windows\System32\drivers\sfhlp01.sys []
S1 prodrv06;StarForce Protection Environment Driver v6; C:\Windows\System32\drivers\prodrv06.sys []
S3 EraserUtilDrvI11;EraserUtilDrvI11; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrvI11.sys [2011-07-26 136824]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-17 359552]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-11-10 96896]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
R2 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
R2 GJService;Game Jackal Server; C:\Program Files (x86)\SlySoft\Game Jackal v4\Server.exe [2010-09-18 2063808]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe [2011-04-17 130008]
R2 nTuneService;Performance Service; C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe [2009-01-06 255008]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-05-21 1016936]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-05-21 2214504]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2011-06-08 66872]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-02-25 249648]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files (x86)\Spyware Terminator\sp_rsser.exe [2011-07-26 948775]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-05-20 378472]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-06-06 2026304]
R2 UpdateCenterService;Update Center Service; C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe [2009-01-07 169504]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 135664]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 135664]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-09-16 182768]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-06-07 1255736]
-----------------EOF-----------------
Run by frajer-smoula at 2011-07-26 17:42:16
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 5 GB (7%) free of 76 GB
Total RAM: 3071 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:42:29, on 26.7.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Users\frajer-smoula\Desktop\NPE.exe
C:\Program Files\trend micro\frajer-smoula.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... tbid=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.crawler.com/homepage.aspx?tbid=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: &Crawler Toolbar Helper - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: &Crawler Toolbar Helper - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: &Crawler Toolbar - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [70486382-loader2.exe] "C:\Users\FRAJER~1\AppData\Local\Temp\70486382-loader2.exe"
O4 - HKLM\..\Run: [7450136.exe] "C:\Windows\TEMP\7450136.exe"
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Syncables] C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe
O4 - HKCU\..\Run: [AutoStartNPSAgent] C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-156553736-788906822-3014006816-1005\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-156553736-788906822-3014006816-1005\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Game Jackal Server (GJService) - Unknown owner - C:\Program Files (x86)\SlySoft\Game Jackal v4\Server.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe
O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files (x86)\Spyware Terminator\sp_rsser.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update Center Service (UpdateCenterService) - NVIDIA - C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14388 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
winlogon.exe
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe"
"C:\Program Files (x86)\SlySoft\Game Jackal v4\Server.exe"
taskeng.exe {0A4C28C0-468E-44BB-A7FB-696BDA631E8B}
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe"
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe" /StartService
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"C:\Program Files (x86)\Spyware Terminator\sp_rsser.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe" /StartService
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
"C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe"
"C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesApp64.exe" /TUStart /pid:2732
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
ATKOSD.exe
KBFiltr.exe
WDC.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe" -autorun
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\diMaster.dll" /prefetch:1
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe" /c /a /s UserSession
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.Exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
"C:\Program Files (x86)\Opera\opera.exe" -unelevate
"C:\Users\frajer-smoula\Desktop\NPE.exe"
"C:\Users\frajer-smoula\APPDATA\LOCAL\OPERA\OPERA\TEMPORARY_DOWNLOADS\RSITX64.EXE"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-09-16 346736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2010-09-16 318960]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-23 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]
&Crawler Toolbar Helper - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll [2011-07-14 1237240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll [2008-12-08 61792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll [2011-04-29 436152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\IPS\IPSBHO.DLL [2011-03-31 210872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-09-16 256112]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2010-09-16 761840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2010-09-16 458736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-09-16 346736]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll [2011-04-21 1535808]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-09-16 256112]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2011-04-21 1000768]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]
{4B3803EA-5230-4DC3-A7FC-33638F3D3542} - &Crawler Toolbar - C:\PROGRA~2\Crawler\Toolbar\ctbr.dll [2011-07-14 1237240]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\coIEPlg.dll [2011-04-29 436152]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ASUS WebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-09-30 621440]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-09-02 323584]
"fssui"=C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe [2008-12-08 453984]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"Syncables"=C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe [2010-04-05 370480]
"AutoStartNPSAgent"=C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe [2010-07-04 95576]
"SpywareTerminatorUpdate"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [2011-07-26 3318784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-09-16 3054136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-21 9639424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-05-26 15147400]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Syncables]
C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe [2010-04-05 370480]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-09-16 2429]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2009-10-27 6998656]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2009-08-20 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
"NPSStartup"= []
"70486382-loader2.exe"=C:\Users\FRAJER~1\AppData\Local\Temp\70486382-loader2.exe []
"7450136.exe"=C:\Windows\TEMP\7450136.exe [2011-07-26 495616]
"SpywareTerminator"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2011-07-26 2557440]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2011-07-26 17:42:16 ----D---- C:\rsit
2011-07-26 17:42:16 ----D---- C:\Program Files\trend micro
2011-07-26 16:25:51 ----A---- C:\Windows\system32\drivers\SMR200.dat
2011-07-26 16:25:50 ----A---- C:\Windows\system32\drivers\SMR200.SYS
2011-07-26 16:20:34 ----RA---- C:\Windows\system32\drivers\SymIMV.sys
2011-07-26 14:51:52 ----D---- C:\Program Files\Symantec
2011-07-26 14:51:52 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-07-26 14:51:52 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2011-07-26 14:50:31 ----D---- C:\Windows\system32\drivers\NISx64
2011-07-26 14:50:28 ----D---- C:\Program Files (x86)\Norton Internet Security
2011-07-26 14:35:02 ----D---- C:\ProgramData\MFAData
2011-07-26 13:54:29 ----D---- C:\Program Files (x86)\Crawler
2011-07-26 13:54:25 ----D---- C:\Users\frajer-smoula\AppData\Roaming\Spyware Terminator
2011-07-26 13:54:23 ----D---- C:\ProgramData\Spyware Terminator
2011-07-26 13:54:23 ----D---- C:\Program Files (x86)\Spyware Terminator
2011-07-26 13:40:38 ----D---- C:\Users\frajer-smoula\AppData\Roaming\Tific
2011-07-26 10:36:55 ----A---- C:\Windows\iecheck_iplist.txt
2011-07-26 10:36:11 ----HD---- C:\Windows\update.2
2011-07-26 10:32:35 ----D---- C:\Windows\ufa
2011-07-26 10:32:35 ----D---- C:\Windows\rpcminer
2011-07-26 10:32:35 ----D---- C:\Windows\phoenix
2011-07-26 10:31:55 ----A---- C:\Windows\btc_client_iplist.txt
2011-07-26 10:31:38 ----A---- C:\Windows\unrar.exe
2011-07-26 10:30:15 ----HD---- C:\Windows\update.5.0
2011-07-26 10:29:03 ----A---- C:\Windows\iplist.txt
2011-07-26 10:10:42 ----HD---- C:\Windows\PIF
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bwhnt.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bwh.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bmdm.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bmdfl.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bcmnt.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bcm.sys
2011-07-24 20:31:50 ----A---- C:\Windows\system32\drivers\ss_bbus.sys
2011-07-24 20:31:14 ----D---- C:\ProgramData\Samsung
2011-07-24 20:30:44 ----A---- C:\Windows\SYSWOW64\FsExService64.Exe
2011-07-24 20:30:44 ----A---- C:\Windows\SYSWOW64\drivers\TFsExDisk.Sys
2011-07-24 20:30:43 ----A---- C:\Windows\system32\FsExService64.exe
2011-07-24 20:30:43 ----A---- C:\Windows\system32\drivers\TFsExDisk.sys
2011-07-24 20:30:13 ----D---- C:\Users\frajer-smoula\AppData\Roaming\Samsung
2011-07-24 20:29:16 ----D---- C:\Program Files (x86)\MarkAny
2011-07-24 20:29:04 ----D---- C:\Program Files (x86)\Samsung
2011-07-24 20:19:57 ----HD---- C:\ProgramData\.syncID
2011-07-23 06:29:57 ----D---- C:\Program Files (x86)\NosTale(CZ)
2011-07-14 20:49:20 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2011-07-14 20:49:20 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2011-07-14 20:49:20 ----A---- C:\Windows\system32\d3dx10_40.dll
2011-07-14 20:49:20 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2011-07-14 20:49:18 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2011-07-14 20:49:18 ----A---- C:\Windows\system32\D3DX9_40.dll
2011-07-14 10:07:26 ----D---- C:\Users\frajer-smoula\AppData\Roaming\XRay Engine
2011-07-13 17:48:30 ----A---- C:\Windows\system32\KernelBase.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-07-13 17:48:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-07-13 17:48:29 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbohci.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbd.sys
2011-07-13 17:48:06 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-07-13 17:48:03 ----A---- C:\Windows\system32\win32k.sys
2011-07-13 17:47:56 ----A---- C:\Windows\SYSWOW64\esent.dll
2011-07-13 17:47:56 ----A---- C:\Windows\system32\fsutil.exe
2011-07-13 17:47:56 ----A---- C:\Windows\system32\esent.dll
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\storport.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\nvstor.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\nvraid.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\amdxata.sys
2011-07-13 17:47:56 ----A---- C:\Windows\system32\drivers\amdsata.sys
2011-07-13 17:47:55 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2011-07-13 17:47:55 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-07-13 17:47:46 ----A---- C:\Windows\system32\wow64win.dll
2011-07-13 17:47:46 ----A---- C:\Windows\system32\kernel32.dll
2011-07-13 17:47:46 ----A---- C:\Windows\system32\conhost.exe
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\wow32.dll
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\setup16.exe
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-07-13 17:47:45 ----A---- C:\Windows\SYSWOW64\instnm.exe
2011-07-13 17:47:45 ----A---- C:\Windows\system32\wow64cpu.dll
2011-07-13 17:47:45 ----A---- C:\Windows\system32\wow64.dll
2011-07-13 17:47:45 ----A---- C:\Windows\system32\winsrv.dll
2011-07-13 17:47:45 ----A---- C:\Windows\system32\ntvdm64.dll
2011-07-13 17:47:44 ----A---- C:\Windows\SYSWOW64\user.exe
2011-07-12 23:45:55 ----A---- C:\Windows\system32\drivers\lirsgt.sys
2011-07-12 23:45:55 ----A---- C:\Windows\system32\drivers\atksgt.sys
2011-07-12 17:58:17 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2011-07-12 17:58:17 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2011-07-12 17:58:17 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2011-07-12 17:58:17 ----A---- C:\Windows\system32\XAudio2_7.dll
2011-07-12 17:58:17 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2011-07-12 17:58:17 ----A---- C:\Windows\system32\xactengine3_7.dll
2011-07-12 17:58:16 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2011-07-12 17:58:16 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2011-07-12 17:58:16 ----A---- C:\Windows\system32\d3dcsx_43.dll
2011-07-12 17:58:16 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2011-07-12 17:58:15 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2011-07-12 17:58:15 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2011-07-12 17:58:15 ----A---- C:\Windows\system32\d3dx11_43.dll
2011-07-12 17:58:15 ----A---- C:\Windows\system32\d3dx10_43.dll
2011-07-12 17:58:14 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2011-07-12 17:58:14 ----A---- C:\Windows\system32\D3DX9_43.dll
2011-07-12 17:58:13 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2011-07-12 17:58:13 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2011-07-12 17:58:13 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2011-07-12 17:58:13 ----A---- C:\Windows\system32\XAudio2_6.dll
2011-07-12 17:58:13 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2011-07-12 17:58:13 ----A---- C:\Windows\system32\xactengine3_6.dll
2011-07-12 17:58:12 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2011-07-12 17:58:12 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2011-07-12 17:58:11 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2011-07-12 17:58:11 ----A---- C:\Windows\system32\XAudio2_5.dll
2011-07-12 17:58:10 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2011-07-12 17:58:10 ----A---- C:\Windows\system32\xactengine3_5.dll
2011-07-12 17:58:09 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\system32\d3dx11_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\system32\d3dx10_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\system32\d3dcsx_42.dll
2011-07-12 17:58:09 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-07-12 17:58:08 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2011-07-12 17:58:08 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-07-12 17:58:07 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\system32\D3DX9_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\system32\d3dx10_41.dll
2011-07-12 17:58:07 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2011-07-12 17:58:05 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2011-07-12 17:58:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2011-07-12 17:58:05 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2011-07-12 17:58:05 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2011-07-12 17:58:05 ----A---- C:\Windows\system32\XAudio2_4.dll
2011-07-12 17:58:05 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2011-07-12 17:58:05 ----A---- C:\Windows\system32\xactengine3_4.dll
2011-07-12 17:58:05 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2011-07-12 17:58:03 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2011-07-12 17:58:03 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2011-07-12 17:58:03 ----A---- C:\Windows\system32\XAudio2_3.dll
2011-07-12 17:58:03 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2011-07-12 17:58:02 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2011-07-12 17:58:02 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2011-07-12 17:58:02 ----A---- C:\Windows\system32\xactengine3_3.dll
2011-07-12 17:58:02 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2011-07-12 17:58:01 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2011-07-12 17:58:01 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2011-07-12 17:58:01 ----A---- C:\Windows\system32\XAudio2_2.dll
2011-07-12 17:58:01 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2011-07-12 17:58:00 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2011-07-12 17:58:00 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\system32\xactengine3_2.dll
2011-07-12 17:58:00 ----A---- C:\Windows\system32\D3DX9_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\system32\d3dx10_39.dll
2011-07-12 17:58:00 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2011-07-12 17:57:59 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2011-07-12 17:57:59 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2011-07-12 17:57:59 ----A---- C:\Windows\system32\XAudio2_1.dll
2011-07-12 17:57:59 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2011-07-12 17:57:58 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2011-07-12 17:57:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2011-07-12 17:57:58 ----A---- C:\Windows\system32\xactengine3_1.dll
2011-07-12 17:57:58 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2011-07-12 17:57:57 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\system32\D3DX9_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\system32\d3dx10_38.dll
2011-07-12 17:57:57 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2011-07-12 17:57:56 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2011-07-12 17:57:56 ----A---- C:\Windows\system32\XAudio2_0.dll
2011-07-12 17:57:55 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2011-07-12 17:57:55 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2011-07-12 17:57:55 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2011-07-12 17:57:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2011-07-12 17:57:55 ----A---- C:\Windows\system32\xactengine3_0.dll
2011-07-12 17:57:55 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2011-07-12 17:57:55 ----A---- C:\Windows\system32\d3dx10_37.dll
2011-07-12 17:57:55 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2011-07-12 17:57:54 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2011-07-12 17:57:54 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2011-07-12 17:57:54 ----A---- C:\Windows\system32\xactengine2_10.dll
2011-07-12 17:57:54 ----A---- C:\Windows\system32\D3DX9_37.dll
2011-07-12 17:57:53 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2011-07-12 17:57:53 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2011-07-12 17:57:53 ----A---- C:\Windows\system32\d3dx10_36.dll
2011-07-12 17:57:53 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2011-07-12 17:57:52 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2011-07-12 17:57:52 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2011-07-12 17:57:52 ----A---- C:\Windows\system32\xactengine2_9.dll
2011-07-12 17:57:52 ----A---- C:\Windows\system32\d3dx9_36.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2011-07-12 17:57:51 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\xactengine2_8.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\xactengine2_7.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\d3dx10_33.dll
2011-07-12 17:57:51 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2011-07-12 17:57:49 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2011-07-12 17:57:49 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2011-07-12 17:57:49 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2011-07-12 17:57:49 ----A---- C:\Windows\system32\xactengine2_6.dll
2011-07-12 17:57:49 ----A---- C:\Windows\system32\x3daudio1_1.dll
2011-07-12 17:57:49 ----A---- C:\Windows\system32\d3dx9_33.dll
2011-07-12 17:57:48 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2011-07-12 17:57:48 ----A---- C:\Windows\system32\d3dx10.dll
2011-07-12 17:49:12 ----D---- C:\Windows\SYSWOW64\directx
2011-07-12 17:07:27 ----D---- C:\Users\frajer-smoula\AppData\Roaming\DivX
2011-07-12 15:12:12 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2011-07-10 19:45:41 ----D---- C:\ProgramData\PCSettings
2011-07-01 23:47:01 ----A---- C:\Windows\SYSWOW64\aptmp.exe
2011-07-01 22:35:07 ----D---- C:\Program Files (x86)\Illusion Softworks
2011-07-01 22:30:39 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2011-07-01 22:30:25 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2011-07-01 22:30:14 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2011-07-01 22:29:52 ----D---- C:\Users\frajer-smoula\AppData\Roaming\DAEMON Tools Lite
2011-07-01 22:29:52 ----D---- C:\ProgramData\DAEMON Tools Lite
2011-07-01 22:12:19 ----A---- C:\Windows\SYSWOW64\CmdLineExt03.dll
2011-07-01 21:33:50 ----A---- C:\Windows\DIIUnin.dat
2011-07-01 21:33:45 ----A---- C:\Windows\DIIUnin.pif
2011-07-01 21:33:45 ----A---- C:\Windows\DIIUnin.exe
2011-07-01 21:33:23 ----D---- C:\Program Files\Diablo II
2011-07-01 20:48:30 ----A---- C:\Windows\SYSWOW64\GEARAspi.dll
2011-07-01 20:48:30 ----A---- C:\Windows\system32\GEARAspi64.dll
2011-07-01 20:48:30 ----A---- C:\Windows\system32\drivers\GEARAspiWDM.sys
2011-07-01 20:48:02 ----D---- C:\Windows\system32\drivers\NBRTWizardx64
2011-07-01 20:48:02 ----D---- C:\Program Files (x86)\Norton Bootable Recovery Tool Wizard
2011-07-01 16:49:45 ----D---- C:\Windows\Minidump
2011-06-30 10:31:45 ----AH---- C:\ProgramData\ezsidmv.dat
2011-06-30 10:31:38 ----D---- C:\Users\frajer-smoula\AppData\Roaming\skypePM
2011-06-30 10:31:37 ----D---- C:\ProgramData\Skype Extras
2011-06-30 10:29:30 ----D---- C:\Users\frajer-smoula\AppData\Roaming\Skype
2011-06-30 10:29:10 ----RD---- C:\Program Files (x86)\Skype
2011-06-30 10:29:04 ----D---- C:\ProgramData\Skype
2011-06-29 17:16:36 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2011-06-29 17:16:36 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2011-06-29 17:16:36 ----A---- C:\Windows\SYSWOW64\devobj.dll
2011-06-29 17:16:36 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2011-06-29 17:16:36 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-06-29 17:16:34 ----A---- C:\Windows\system32\tquery.dll
2011-06-29 17:16:34 ----A---- C:\Windows\system32\mssrch.dll
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\tquery.dll
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2011-06-29 17:16:33 ----A---- C:\Windows\SYSWOW64\mssph.dll
2011-06-29 17:16:33 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-06-29 17:16:33 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-06-29 17:16:33 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-06-29 17:16:33 ----A---- C:\Windows\system32\mssvp.dll
2011-06-29 17:16:33 ----A---- C:\Windows\system32\mssphtb.dll
2011-06-29 17:16:33 ----A---- C:\Windows\system32\mssph.dll
2011-06-29 17:16:32 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2011-06-29 17:16:32 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2011-06-29 17:16:32 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2011-06-29 17:16:32 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2011-06-29 17:16:32 ----A---- C:\Windows\system32\msscntrs.dll
2011-06-28 22:15:43 ----D---- C:\Windows\SYSWOW64\custom matrices
2011-06-28 22:15:36 ----D---- C:\Windows\SYSWOW64\QuickTime
2011-06-28 22:15:36 ----D---- C:\Windows\SYSWOW64\C2MP
2011-06-28 18:50:55 ----A---- C:\Windows\system32\nvexpBar.dll
2011-06-28 18:50:55 ----A---- C:\Windows\system32\msvcr71.dll
2011-06-28 18:50:55 ----A---- C:\Windows\system32\msvcp71.dll
2011-06-28 18:50:55 ----A---- C:\Windows\system32\MFC71.dll
2011-06-27 17:42:06 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2011-06-27 17:41:22 ----A---- C:\Windows\system32\easyupdatusapiu64.dll
2011-06-27 17:41:07 ----D---- C:\ProgramData\NVIDIA Corporation
2011-06-27 17:40:11 ----A---- C:\Windows\system32\nvhdap64.dll
2011-06-27 17:40:11 ----A---- C:\Windows\system32\nvhdagenco642040.dll
2011-06-27 17:40:11 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2011-06-27 17:40:08 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\OpenCL.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvoglv64.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvgenco642090.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvdispco6420150.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvcuvid.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvcuvenc.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvcuda.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\nvcompiler.dll
2011-06-27 17:40:08 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2011-06-27 17:39:13 ----D---- C:\Program Files\NVIDIA Corporation
2011-06-27 17:31:00 ----D---- C:\NVIDIA
======List of files/folders modified in the last 1 month======
2011-07-26 22:50:15 ----D---- C:\Windows\system32\LogFiles
2011-07-26 17:42:16 ----RD---- C:\Program Files
2011-07-26 17:41:28 ----D---- C:\Windows\Temp
2011-07-26 16:25:51 ----D---- C:\Windows\system32\drivers
2011-07-26 16:20:34 ----D---- C:\Windows\inf
2011-07-26 16:20:30 ----D---- C:\Windows\system32\catroot
2011-07-26 16:20:29 ----D---- C:\Windows\system32\DriverStore
2011-07-26 16:18:41 ----SHD---- C:\Windows\Installer
2011-07-26 16:18:27 ----D---- C:\Program Files (x86)\Opera
2011-07-26 15:18:43 ----D---- C:\Windows\system32\config
2011-07-26 15:13:55 ----D---- C:\Windows\system32\Tasks
2011-07-26 15:12:19 ----D---- C:\Windows\system32\NDF
2011-07-26 15:09:33 ----D---- C:\Windows
2011-07-26 15:09:15 ----SHD---- C:\System Volume Information
2011-07-26 15:09:05 ----A---- C:\Windows\system32\AutoRunFilter.ini
2011-07-26 15:07:33 ----D---- C:\ProgramData\NVIDIA
2011-07-26 14:51:52 ----D---- C:\Program Files\Common Files
2011-07-26 14:50:28 ----RD---- C:\Program Files (x86)
2011-07-26 14:50:28 ----D---- C:\ProgramData\Norton
2011-07-26 14:50:25 ----D---- C:\ProgramData\NortonInstaller
2011-07-26 14:50:17 ----D---- C:\Program Files (x86)\NortonInstaller
2011-07-26 14:43:20 ----A---- C:\Windows\system32\ServiceFilter.ini
2011-07-26 14:42:28 ----D---- C:\Windows\System32
2011-07-26 14:35:02 ----HD---- C:\ProgramData
2011-07-26 13:47:43 ----D---- C:\Windows\SysWOW64
2011-07-26 13:41:46 ----D---- C:\Windows\Prefetch
2011-07-26 13:35:35 ----D---- C:\ProgramData\Adobe
2011-07-26 10:36:33 ----D---- C:\Windows\system32\drivers\etc
2011-07-24 20:36:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-07-24 20:32:24 ----D---- C:\Windows\system32\catroot2
2011-07-24 20:30:44 ----D---- C:\Windows\SYSWOW64\drivers
2011-07-24 20:29:55 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2011-07-24 20:29:52 ----D---- C:\Windows\winsxs
2011-07-21 22:12:49 ----D---- C:\Users\frajer-smoula\AppData\Roaming\uTorrent
2011-07-21 22:12:47 ----D---- C:\Windows\Logs
2011-07-19 09:24:46 ----A---- C:\Windows\system32\acovcnt.exe
2011-07-17 00:57:25 ----D---- C:\Users\frajer-smoula\AppData\Roaming\SoftGrid Client
2011-07-14 20:48:54 ----RSD---- C:\Windows\assembly
2011-07-14 14:39:20 ----D---- C:\Windows\rescache
2011-07-14 10:19:21 ----D---- C:\Windows\debug
2011-07-14 00:40:58 ----D---- C:\Windows\SYSWOW64\cs-CZ
2011-07-14 00:40:58 ----D---- C:\Windows\system32\cs-CZ
2011-07-14 00:40:57 ----D---- C:\Windows\AppPatch
2011-07-13 17:55:47 ----A---- C:\Windows\system32\MRT.exe
2011-07-12 17:59:20 ----SD---- C:\ProgramData\Microsoft
2011-07-12 17:59:10 ----D---- C:\Program Files (x86)\Microsoft
2011-07-01 23:41:37 ----D---- C:\ProgramData\Partner
2011-07-01 23:06:11 ----SD---- C:\Users\frajer-smoula\AppData\Roaming\Microsoft
2011-07-01 20:48:29 ----DC---- C:\Windows\system32\DRVSTORE
2011-06-30 10:29:11 ----D---- C:\Program Files (x86)\Common Files
2011-06-29 18:34:43 ----SHD---- C:\$Recycle.Bin
2011-06-29 17:38:10 ----RSD---- C:\Windows\Fonts
2011-06-27 17:42:07 ----RD---- C:\Users
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvstor64;nvstor64; C:\Windows\system32\DRIVERS\nvstor64.sys [2010-04-27 244328]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SMR200;Symantec SMR Utility Service 2.0.0; C:\Windows\System32\drivers\SMR200.SYS [2011-07-26 96376]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1206000.01D\SYMDS64.SYS [2011-01-27 450680]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1206000.01D\SYMEFA64.SYS [2011-03-15 912504]
R1 BHDrvx64;BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20100810.004\BHDrvx64.sys [2010-08-09 945200]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2011-07-26 481912]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20100706.002\IDSVia64.sys [2010-06-27 463408]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1206000.01D\SRTSPX64.SYS [2011-03-31 40568]
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys [2011-03-31 43640]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1206000.01D\Ironx64.SYS [2011-01-27 171128]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\NISx64\1206000.01D\SYMNETS.SYS [2011-03-22 382584]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2011-07-12 88480]
R2 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2011-07-12 46400]
R2 NVR0FLASHDev;NVR0FLASHDev; \??\C:\Windows\nvflsh64.sys [2009-01-07 40992]
R2 sp_rsdrv2;Spyware Terminator Driver Filter; C:\Windows\system32\DRIVERS\stflt.sys [2010-07-07 50696]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-07-01 254528]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-10-15 117760]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 34152]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-22 2229280]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 Maplom;Maplom; C:\Windows\system32\drivers\Maplom.sys [2010-09-15 34240]
R3 MaplomL;MaplomL; C:\Windows\system32\drivers\MaplomL.sys [2010-09-15 58304]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\VirusDefs\20110725.037\ENG64.SYS [2011-07-26 117880]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\VirusDefs\20110725.037\EX64.SYS [2011-07-26 2011768]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2011-05-10 174184]
R3 NVR0Dev;NVR0Dev; \??\C:\Windows\nvoclk64.sys [2009-01-06 40480]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2009-06-28 28704]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-06-23 344680]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2009-12-02 721768]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2009-12-02 269672]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2009-12-02 25960]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2009-12-02 22376]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-06-05 1806400]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\NISx64\1206000.01D\SRTSP64.SYS [2011-03-31 744568]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2011-07-26 174200]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856]
S0 prohlp02;StarForce Protection Helper Driver v2; C:\Windows\System32\drivers\prohlp02.sys []
S0 prosync1;StarForce Protection Synchronization Driver v1; C:\Windows\System32\drivers\prosync1.sys []
S0 sfhlp01;StarForce Protection Helper Driver; C:\Windows\System32\drivers\sfhlp01.sys []
S1 prodrv06;StarForce Protection Environment Driver v6; C:\Windows\System32\drivers\prodrv06.sys []
S3 EraserUtilDrvI11;EraserUtilDrvI11; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrvI11.sys [2011-07-26 136824]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-17 359552]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-11-10 96896]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
R2 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
R2 GJService;Game Jackal Server; C:\Program Files (x86)\SlySoft\Game Jackal v4\Server.exe [2010-09-18 2063808]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe [2011-04-17 130008]
R2 nTuneService;Performance Service; C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe [2009-01-06 255008]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-05-21 1016936]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-05-21 2214504]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2011-06-08 66872]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-02-25 249648]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files (x86)\Spyware Terminator\sp_rsser.exe [2011-07-26 948775]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-05-20 378472]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-06-06 2026304]
R2 UpdateCenterService;Update Center Service; C:\Program Files (x86)\NVIDIA Corporation\System Update\UpdateCenterService.exe [2009-01-07 169504]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 135664]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 135664]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-09-16 182768]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-06-07 1255736]
-----------------EOF-----------------
Re: dalsi blbec co se nachytal - vir FB
Zdravim a pekny vecer preji
Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com
Aplikujte exeHelper by Raktor
Aplikujte RogueKiller
Jeste znovu RogueKiller ale nyni s moznosti 3 a pote jeste jednou s moznosti 4
RKill, eXeHelper i RogueKiller by mely udelat logy, vlozte mi je sem


- Pokud ho havet blokuje, pouzijte jeden z nasledujicich
motji píše: Rkill EXE:
http://download.bleepingcomputer.com/grinler/rkill.exe
Rkill SCR:
http://download.bleepingcomputer.com/grinler/rkill.scr
Rkill PIF:
http://download.bleepingcomputer.com/grinler/rkill.pif - Ulozte nejlepena plochu a ukoncete vsechny aplikace (jinak to udela RKill za Vas)
- Spustte tradicne dvojklikem - program probehne temer okamzite a ukonci i svou cinnost
- RKill ukonci vsechny ne-systemove procesy - tedy i procesy, pod kterymi bezi havet
- Ted nerestartujte PC - prisli byste o ucinek RKillu

- Linky ke stazeni
- COM soubor http://vyosek.ic.cz/BE/exeHelper.com
- SCR soubor http://vyosek.ic.cz/BE/exeHelper.scr
- Utilitu staci spustit jako Spravce (klik pravym mysidlem), probehne oprava a vznikne log exehelperlog.txt

stell píše: pouzijes RogueKiller>.spustis>>stlac 2> [enter] log vloz sem
http://www.viry.cz/forum/viewtopic.php? ... 05#p981205


Re: dalsi blbec co se nachytal - vir FB
dobry vecer
ridil jsem se pokyny, ktere jste mi napsal ten 1.program rkill fungoval spustil se a hodil mi log, ale bohuzel u toho 2.programu exeHelper by Raktor se normalně spusti ale u Checking for numerical processes... mi to vyhodi hlasku, ze program prestal pracovat a sem vyzvan abych ukoncil program.
ridil jsem se pokyny, ktere jste mi napsal ten 1.program rkill fungoval spustil se a hodil mi log, ale bohuzel u toho 2.programu exeHelper by Raktor se normalně spusti ale u Checking for numerical processes... mi to vyhodi hlasku, ze program prestal pracovat a sem vyzvan abych ukoncil program.
Re: dalsi blbec co se nachytal - vir FB
Pokracujte tedy RogueKillerem
Re: dalsi blbec co se nachytal - vir FB
tady jsou ty logy
This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.
Rkill was run on 26.07.2011 at 18:01:22.
Operating System: Windows 7 Home Premium
Processes terminated by Rkill or while it was running:
Rkill completed on 26.07.2011 at 18:01:42.
exeHelper by Raktor
Build 20100414
Run at 18:12:53 on 07/26/11
Now searching...
Checking for numerical processes...
RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User: frajer-smoula [Admin rights]
Mode: Remove -- Date : 07/26/2011 20:49:35
Bad processes: 0
Registry Entries: 2
[HJ] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0)
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)
HOSTS File:
127.0.0.1 localhost
127.0.0.1 vkontakte.ru
127.0.0.1 www.vkontakte.ru
127.0.0.1 login.vk.com
127.0.0.1 vk.com
127.0.0.1 www.vk.com
127.0.0.1 odnoklassniki.ru
127.0.0.1 www.odnoklassniki.ru
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
[...]
Finished : << RKreport[1].txt >>
RKreport[1].txt
RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User: frajer-smoula [Admin rights]
Mode: HOSTSFix -- Date : 07/26/2011 20:52:41
Bad processes: 0
HOSTS File:
127.0.0.1 localhost
127.0.0.1 vkontakte.ru
127.0.0.1 www.vkontakte.ru
127.0.0.1 login.vk.com
127.0.0.1 vk.com
127.0.0.1 www.vk.com
127.0.0.1 odnoklassniki.ru
127.0.0.1 www.odnoklassniki.ru
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
[...]
Resetted HOSTS:
127.0.0.1 localhost
Finished : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt
RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User: frajer-smoula [Admin rights]
Mode: ProxyFix -- Date : 07/26/2011 20:53:21
Bad processes: 0
Registry Entries: 0
Finished : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt
This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.
Rkill was run on 26.07.2011 at 18:01:22.
Operating System: Windows 7 Home Premium
Processes terminated by Rkill or while it was running:
Rkill completed on 26.07.2011 at 18:01:42.
exeHelper by Raktor
Build 20100414
Run at 18:12:53 on 07/26/11
Now searching...
Checking for numerical processes...
RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User: frajer-smoula [Admin rights]
Mode: Remove -- Date : 07/26/2011 20:49:35
Bad processes: 0
Registry Entries: 2
[HJ] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0)
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)
HOSTS File:
127.0.0.1 localhost
127.0.0.1 vkontakte.ru
127.0.0.1 www.vkontakte.ru
127.0.0.1 login.vk.com
127.0.0.1 vk.com
127.0.0.1 www.vk.com
127.0.0.1 odnoklassniki.ru
127.0.0.1 www.odnoklassniki.ru
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
[...]
Finished : << RKreport[1].txt >>
RKreport[1].txt
RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User: frajer-smoula [Admin rights]
Mode: HOSTSFix -- Date : 07/26/2011 20:52:41
Bad processes: 0
HOSTS File:
127.0.0.1 localhost
127.0.0.1 vkontakte.ru
127.0.0.1 www.vkontakte.ru
127.0.0.1 login.vk.com
127.0.0.1 vk.com
127.0.0.1 www.vk.com
127.0.0.1 odnoklassniki.ru
127.0.0.1 www.odnoklassniki.ru
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
[...]
Resetted HOSTS:
127.0.0.1 localhost
Finished : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt
RogueKiller V5.2.8 [07/23/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html
Operating System: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User: frajer-smoula [Admin rights]
Mode: ProxyFix -- Date : 07/26/2011 20:53:21
Bad processes: 0
Registry Entries: 0
Finished : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt
Re: dalsi blbec co se nachytal - vir FB
Vyborne, pujdeme dale
PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe

PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK

- Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
- Pokud mate Win XP spustte pod uctem Spravce\Administratora
- Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
- Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
- Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
- Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
- Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
- Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
- Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
Re: dalsi blbec co se nachytal - vir FB
ComboFix 11-07-26.03 - frajer-smoula 26.07.2011 21:10:29.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.1318 [GMT 2:00]
Spuštěný z: c:\users\frajer-smoula\Desktop\ComboFix.exe
AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
SP: Norton Internet Security *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\FullRemove.exe
c:\users\frajer-smoula\AppData\Roaming\Microsoft\Windows\Recent\Alien 7 Theme Preview.url
c:\windows\btc_client_iplist.txt
c:\windows\geoiplist
c:\windows\geoiplist.rar
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\phoenix.rar
c:\windows\rpcminer.rar
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\SysWow64\aptmp.exe
c:\windows\ufa.rar
c:\windows\update.2
c:\windows\update.2\svchost.exe
c:\windows\update.5.0
c:\windows\update.5.0\svchost.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-26 do 2011-07-26 )))))))))))))))))))))))))))))))
.
.
2011-07-26 19:24 . 2011-07-26 19:24 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-26 19:09 . 2011-07-26 19:09 -------- d-----w- C:\32788R22FWJFW
2011-07-26 15:42 . 2011-07-26 15:42 -------- d-----w- C:\rsit
2011-07-26 15:42 . 2011-07-26 15:42 -------- d-----w- c:\program files\trend micro
2011-07-26 14:20 . 2011-03-31 03:04 43640 ----a-r- c:\windows\system32\drivers\SymIMV.sys
2011-07-26 12:51 . 2011-07-26 12:57 -------- d-----w- c:\program files\Symantec
2011-07-26 12:51 . 2011-07-26 12:57 174200 ----a-w- c:\windows\system32\drivers\SYMEVENT64x86.SYS
2011-07-26 12:51 . 2011-07-26 12:51 -------- d-----w- c:\program files\Common Files\Symantec Shared
2011-07-26 12:50 . 2011-07-26 13:08 -------- d-----w- c:\windows\system32\drivers\NISx64
2011-07-26 12:50 . 2011-07-26 12:50 -------- d-----w- c:\program files (x86)\Norton Internet Security
2011-07-26 12:49 . 2011-07-13 04:53 8578896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{EB3EB86D-8877-4F63-9685-5DA01C710F95}\mpengine.dll
2011-07-26 12:35 . 2011-07-26 12:35 -------- d-----w- c:\programdata\MFAData
2011-07-26 11:54 . 2011-07-26 11:54 -------- d-----w- c:\program files (x86)\Crawler
2011-07-26 11:54 . 2011-07-26 19:01 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Spyware Terminator
2011-07-26 11:54 . 2011-07-26 19:00 -------- d-----w- c:\program files (x86)\Spyware Terminator
2011-07-26 11:54 . 2011-07-26 12:46 -------- d-----w- c:\programdata\Spyware Terminator
2011-07-26 11:40 . 2011-07-26 11:40 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Tific
2011-07-26 11:40 . 2011-07-26 11:40 -------- d-----w- c:\users\frajer-smoula\AppData\Local\Symantec
2011-07-26 08:32 . 2011-07-26 08:32 -------- d-----w- c:\windows\rpcminer
2011-07-26 08:32 . 2011-07-26 08:32 -------- d-----w- c:\windows\ufa
2011-07-26 08:32 . 2011-07-26 08:32 -------- d-----w- c:\windows\phoenix
2011-07-26 08:31 . 2011-07-26 08:32 246272 ----a-w- c:\windows\unrar.exe
2011-07-26 08:10 . 2011-07-26 08:10 -------- d--h--w- c:\windows\PIF
2011-07-24 18:31 . 2010-04-27 02:25 18944 ----a-w- c:\windows\system32\drivers\ss_bmdfl.sys
2011-07-24 18:31 . 2010-04-27 02:25 161280 ----a-w- c:\windows\system32\drivers\ss_bmdm.sys
2011-07-24 18:28 . 2011-07-24 18:28 -------- d-----w- c:\users\frajer-smoula\AppData\Local\Downloaded Installations
2011-07-24 18:19 . 2011-07-24 18:19 -------- d--h--w- c:\programdata\.syncID
2011-07-23 04:29 . 2011-07-23 17:27 -------- d-----w- c:\program files (x86)\NosTale(CZ)
2011-07-14 18:49 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2011-07-14 08:07 . 2011-07-14 08:07 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\XRay Engine
2011-07-13 15:47 . 2011-03-11 06:41 189824 ----a-w- c:\windows\system32\drivers\storport.sys
2011-07-12 21:45 . 2011-07-12 21:49 88480 ----a-w- c:\windows\system32\drivers\atksgt.sys
2011-07-12 21:45 . 2011-07-12 21:49 46400 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2011-07-12 15:57 . 2008-05-30 12:19 511496 ----a-w- c:\windows\system32\XAudio2_1.dll
2011-07-12 15:07 . 2011-07-12 15:07 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\DivX
2011-07-12 13:12 . 2011-07-12 13:12 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2011-07-10 17:45 . 2011-07-10 17:45 -------- d-----w- c:\programdata\PCSettings
2011-07-01 21:06 . 2011-07-01 21:06 49152 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ProgramMenuShortcut6.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ProgramMenuShortcut8.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\NewShortcut1_1.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\NewShortcut1.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ARPPRODUCTICON.exe
2011-07-01 20:35 . 2011-07-01 20:35 -------- d-----w- c:\program files (x86)\Illusion Softworks
2011-07-01 20:30 . 2011-07-01 20:30 254528 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2011-07-01 20:30 . 2011-07-01 20:30 -------- d-----w- c:\program files (x86)\DAEMON Tools Toolbar
2011-07-01 20:30 . 2011-07-01 20:30 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite
2011-07-01 20:29 . 2011-07-01 20:31 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\DAEMON Tools Lite
2011-07-01 20:29 . 2011-07-01 20:29 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-07-01 20:12 . 2011-07-01 20:12 43520 ----a-w- c:\windows\SysWow64\CmdLineExt03.dll
2011-07-01 19:33 . 2011-07-01 19:33 94208 ----a-w- c:\windows\DIIUnin.exe
2011-07-01 19:33 . 2011-07-01 19:33 2829 ----a-w- c:\windows\DIIUnin.pif
2011-07-01 19:33 . 2011-07-06 18:24 -------- d-----w- c:\program files\Diablo II
2011-07-01 18:48 . 2010-08-21 03:59 125872 ----a-w- c:\windows\system32\GEARAspi64.dll
2011-07-01 18:48 . 2010-08-21 03:59 106928 ----a-w- c:\windows\SysWow64\GEARAspi.dll
2011-07-01 18:48 . 2009-05-18 08:47 34152 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-07-01 18:48 . 2011-07-01 18:48 -------- d-----w- c:\windows\system32\drivers\NBRTWizardx64
2011-07-01 18:48 . 2011-07-01 18:48 -------- d-----w- c:\program files (x86)\Norton Bootable Recovery Tool Wizard
2011-07-01 17:59 . 2011-07-26 16:03 -------- d-----w- c:\users\frajer-smoula\AppData\Local\NPE
2011-06-30 08:31 . 2011-07-26 14:05 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\skypePM
2011-06-30 08:31 . 2011-07-26 13:35 -------- d-----w- c:\programdata\Skype Extras
2011-06-30 08:29 . 2011-07-26 16:03 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----w- c:\program files (x86)\Common Files\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----r- c:\program files (x86)\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----w- c:\programdata\Skype
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\custom matrices
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\C2MP
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\QuickTime
2011-06-28 16:50 . 2008-06-20 21:11 978944 ----a-w- c:\windows\system32\msvcp71.dll
2011-06-28 16:50 . 2008-06-20 21:11 520192 ----a-w- c:\windows\system32\msvcr71.dll
2011-06-28 16:50 . 2008-06-20 21:11 1524736 ----a-w- c:\windows\system32\MFC71.dll
2011-06-28 16:50 . 2008-06-04 08:15 388640 ----a-w- c:\windows\system32\nvexpBar.dll
2011-06-28 16:50 . 2011-06-28 16:54 -------- d-----w- c:\users\frajer-smoula\AppData\Local\NVIDIA Corporation
2011-06-27 15:42 . 2011-06-27 15:42 -------- d-----w- c:\users\UpdatusUser
2011-06-27 15:42 . 2011-06-28 16:51 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2011-06-27 15:41 . 2011-05-21 06:01 739432 ----a-w- c:\windows\system32\easyupdatusapiu64.dll
2011-06-27 15:41 . 2011-06-27 15:41 -------- d-----w- c:\programdata\NVIDIA Corporation
2011-06-27 15:39 . 2011-06-27 20:31 -------- d-----w- c:\program files\NVIDIA Corporation
2011-06-27 15:31 . 2011-06-28 16:49 -------- d-----w- C:\NVIDIA
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-26 08:20 . 2011-06-07 14:20 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-07-19 07:24 . 2011-06-18 19:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2011-06-22 21:27 . 2011-06-22 19:08 2829 ----a-w- c:\windows\War3Unin.pif
2011-06-22 21:27 . 2011-06-22 19:08 139264 ----a-w- c:\windows\War3Unin.exe
2011-06-12 21:45 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2011-06-12 21:45 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2011-06-09 08:06 . 2011-06-09 08:06 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2011-06-09 08:06 . 2011-06-09 08:06 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2011-06-09 08:06 . 2011-06-09 08:06 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2011-06-09 08:06 . 2011-06-09 08:06 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2011-06-09 08:06 . 2011-06-09 08:06 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2011-06-09 08:06 . 2011-06-09 08:06 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2011-06-09 08:06 . 2011-06-09 08:06 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2011-06-09 08:06 . 2011-06-09 08:06 367104 ----a-w- c:\windows\SysWow64\html.iec
2011-06-09 08:06 . 2011-06-09 08:06 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2011-06-09 08:06 . 2011-06-09 08:06 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2011-06-09 08:06 . 2011-06-09 08:06 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2011-06-09 08:06 . 2011-06-09 08:06 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2011-06-09 08:06 . 2011-06-09 08:06 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2011-06-09 08:06 . 2011-06-09 08:06 1126912 ----a-w- c:\windows\SysWow64\wininet.dll
2011-06-09 08:06 . 2011-06-09 08:06 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2011-06-09 08:06 . 2011-06-09 08:06 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-06-09 08:06 . 2011-06-09 08:06 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2011-06-09 08:06 . 2011-06-09 08:06 222208 ----a-w- c:\windows\system32\msls31.dll
2011-06-09 08:06 . 2011-06-09 08:06 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2011-06-09 08:06 . 2011-06-09 08:06 1389056 ----a-w- c:\windows\system32\wininet.dll
2011-06-09 08:06 . 2011-06-09 08:06 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2011-06-09 08:06 . 2011-06-09 08:06 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2011-06-09 08:06 . 2011-06-09 08:06 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-06-09 08:06 . 2011-06-09 08:06 85504 ----a-w- c:\windows\system32\iesetup.dll
2011-06-09 08:06 . 2011-06-09 08:06 76800 ----a-w- c:\windows\system32\tdc.ocx
2011-06-09 08:06 . 2011-06-09 08:06 603648 ----a-w- c:\windows\system32\vbscript.dll
2011-06-09 08:06 . 2011-06-09 08:06 49664 ----a-w- c:\windows\system32\imgutil.dll
2011-06-09 08:06 . 2011-06-09 08:06 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-06-09 08:06 . 2011-06-09 08:06 448512 ----a-w- c:\windows\system32\html.iec
2011-06-09 08:06 . 2011-06-09 08:06 30720 ----a-w- c:\windows\system32\licmgr10.dll
2011-06-09 08:06 . 2011-06-09 08:06 173056 ----a-w- c:\windows\system32\ieUnatt.exe
2011-06-09 08:06 . 2011-06-09 08:06 165888 ----a-w- c:\windows\system32\iexpress.exe
2011-06-09 08:06 . 2011-06-09 08:06 160256 ----a-w- c:\windows\system32\wextract.exe
2011-06-09 08:06 . 2011-06-09 08:06 1492992 ----a-w- c:\windows\system32\inetcpl.cpl
2011-06-09 08:06 . 2011-06-09 08:06 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-06-09 08:06 . 2011-06-09 08:06 12288 ----a-w- c:\windows\system32\mshta.exe
2011-06-09 08:06 . 2011-06-09 08:06 114176 ----a-w- c:\windows\system32\admparse.dll
2011-06-09 08:06 . 2011-06-09 08:06 111616 ----a-w- c:\windows\system32\iesysprep.dll
2011-06-08 12:29 . 2011-06-08 12:29 103736 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2011-06-08 12:29 . 2011-06-08 12:29 669184 ----a-w- c:\windows\SysWow64\pbsvc.exe
2011-06-08 12:29 . 2011-06-08 12:29 66872 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2011-06-06 21:30 . 2011-06-06 21:31 737280 ----a-w- c:\windows\iun6002.exe
2011-06-06 16:29 . 2011-06-23 18:30 34624 ----a-w- c:\windows\system32\TURegOpt.exe
2011-06-06 16:24 . 2011-06-23 18:30 25920 ----a-w- c:\windows\system32\authuitu.dll
2011-06-06 16:24 . 2011-06-23 18:30 21312 ----a-w- c:\windows\SysWow64\authuitu.dll
2011-06-06 16:24 . 2011-06-23 18:30 36160 ----a-w- c:\windows\system32\uxtuneup.dll
2011-06-06 16:23 . 2011-06-23 18:30 29504 ----a-w- c:\windows\SysWow64\uxtuneup.dll
2011-06-03 05:57 . 2011-07-13 15:47 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2011-05-24 17:14 . 2011-06-07 11:33 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-05-21 06:01 . 2009-12-11 16:15 61544 ----a-w- c:\windows\system32\nvshext.dll
2011-05-21 06:01 . 2009-12-11 07:15 6300776 ----a-w- c:\windows\system32\nvcpl.dll
2011-05-21 06:01 . 2009-12-11 07:15 326760 ----a-w- c:\windows\system32\nvhotkey.dll
2011-05-21 06:01 . 2009-12-11 07:15 3040872 ----a-w- c:\windows\system32\nvsvc64.dll
2011-05-21 06:01 . 2009-12-11 07:15 2560616 ----a-w- c:\windows\system32\nvsvcr.dll
2011-05-21 06:01 . 2009-12-11 07:15 117864 ----a-w- c:\windows\system32\nvmctray.dll
2011-05-21 06:01 . 2009-12-11 07:15 1016936 ----a-w- c:\windows\system32\nvvsvc.exe
2011-05-21 06:01 . 2009-12-10 23:15 8863336 ----a-w- c:\windows\system32\nvwgf2umx.dll
2011-05-21 06:01 . 2009-12-10 23:15 2644584 ----a-w- c:\windows\system32\nvapi64.dll
2011-05-21 06:01 . 2009-12-10 23:15 2335848 ----a-w- c:\windows\SysWow64\nvapi.dll
2011-05-21 06:01 . 2009-12-10 23:15 15223912 ----a-w- c:\windows\system32\nvd3dumx.dll
2011-05-20 20:35 . 2011-05-20 20:35 304744 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2011-05-03 05:29 . 2011-06-16 18:39 976896 ----a-w- c:\windows\system32\inetcomm.dll
2011-05-03 04:30 . 2011-06-16 18:39 741376 ----a-w- c:\windows\SysWow64\inetcomm.dll
2011-05-02 23:35 . 2011-05-02 23:35 4399080 ----a-w- c:\windows\system32\ffmpeg.dll
2011-05-02 23:17 . 2011-05-02 23:17 1454705 ----a-w- c:\windows\system32\ffmpegmt.dll
2011-05-02 23:11 . 2011-05-02 23:11 4785664 ----a-w- c:\windows\system32\ffdshow.ax
2011-05-02 23:05 . 2011-05-02 23:05 3661824 ----a-w- c:\windows\SysWow64\ffdshow.ax
2011-05-02 22:30 . 2011-05-02 22:30 1144147 ----a-w- c:\windows\SysWow64\ffmpegmt.dll
2011-05-02 22:27 . 2011-05-02 22:27 3935545 ----a-w- c:\windows\SysWow64\ffmpeg.dll
2011-05-02 20:23 . 2011-05-02 20:23 324096 ----a-w- c:\windows\SysWow64\TomsMoComp_ff.dll
2011-05-02 20:19 . 2011-05-02 20:19 100352 ----a-w- c:\windows\SysWow64\ff_wmv9.dll
2011-05-02 20:19 . 2011-05-02 20:19 80896 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2011-05-02 19:54 . 2011-05-02 19:54 116224 ----a-w- c:\windows\system32\ff_wmv9.dll
2011-05-02 19:54 . 2011-05-02 19:54 155136 ----a-w- c:\windows\system32\ff_libmad.dll
2011-05-02 19:54 . 2011-05-02 19:54 105472 ----a-w- c:\windows\system32\ff_liba52.dll
2011-05-02 19:54 . 2011-05-02 19:54 1533440 ----a-w- c:\windows\system32\ff_samplerate.dll
2011-05-02 19:54 . 2011-05-02 19:54 222720 ----a-w- c:\windows\system32\ff_libdts.dll
2011-05-02 19:53 . 2011-05-02 19:53 168448 ----a-w- c:\windows\system32\ff_unrar.dll
2011-05-02 19:52 . 2011-05-02 19:52 347136 ----a-w- c:\windows\system32\ff_libfaad2.dll
2011-05-02 19:52 . 2011-05-02 19:52 190464 ----a-w- c:\windows\system32\libmpeg2_ff.dll
2011-05-02 19:52 . 2011-05-02 19:52 477184 ----a-w- c:\windows\system32\ff_kernelDeint.dll
2011-05-02 19:34 . 2011-05-02 19:34 621568 ----a-w- c:\windows\system32\TomsMoComp_ff.dll
2011-04-29 03:06 . 2011-06-16 18:39 467456 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-29 03:05 . 2011-06-16 18:39 410112 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-29 03:05 . 2011-06-16 18:39 168448 ----a-w- c:\windows\system32\drivers\srvnet.sys
2003-05-23 13:56 . 2011-06-25 22:40 41472 ------w- c:\program files (x86)\DrvMgt.dll
2003-05-23 13:56 . 2011-06-25 22:40 12400 ------w- c:\program files (x86)\SECDRV.SYS
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2010-12-09 11:51 3911776 ----a-w- c:\program files (x86)\ConduitEngine\ConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files (x86)\ConduitEngine\ConduitEngine.dll" [2010-12-09 3911776]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-01-20 1305408]
"Syncables"="c:\program files (x86)\syncables\syncables desktop\Syncables.exe" [2010-04-05 370480]
"AutoStartNPSAgent"="c:\program files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe" [2010-07-04 95576]
"SpywareTerminatorUpdate"="c:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe" [2011-07-26 3318784]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"Boingo Wi-Fi"="c:\program files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk" [2010-09-16 2429]
"ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2009-10-27 6998656]
"ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2009-08-20 170624]
"HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-06-08 37296]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
FancyStart daemon.lnk - c:\windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe [2010-9-16 12862]
SRS Premium Sound.lnk - c:\windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe [2010-9-16 156952]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 135664]
R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 135664]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NISx64\1206000.01D\SYMDS64.SYS [x]
S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NISx64\1206000.01D\SYMEFA64.SYS [x]
S1 BHDrvx64;BHDrvx64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20100810.004\BHDrvx64.sys [2010-08-09 945200]
S1 IDSVia64;IDSVia64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20100706.002\IDSVia64.sys [2010-06-27 463408]
S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NISx64\1206000.01D\Ironx64.SYS [x]
S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\NISx64\1206000.01D\SYMNETS.SYS [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [x]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
S2 GJService;Game Jackal Server;c:\program files (x86)\SlySoft\Game Jackal v4\Server.exe [2010-09-18 2063808]
S2 NIS;Norton Internet Security;c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe [2011-04-17 130008]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-05-21 2214504]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
S2 sp_rsdrv2;Spyware Terminator Driver Filter;c:\windows\system32\DRIVERS\stflt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-05-20 378472]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-06-06 2026304]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-07-26 136824]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x]
S3 MaplomL;MaplomL; [x]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 19:09]
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 19:09]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B]
@="{6D4133E5-0742-4ADC-8A8C-9303440F7190}"
[HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}]
2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O]
@="{64174815-8D98-4CE6-8646-4C039977D808}"
[HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}]
2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ASUS WebStorage"="c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe" [2010-03-16 1754448]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-09-30 621440]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-09-01 323584]
"fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2008-12-08 453984]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.crawler.com/homepage.aspx?tbid=60327
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Crawler Search - tbr:iemenu
TCP: DhcpNameServer = 10.0.0.138
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~2\Crawler\Toolbar\ctbr.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKLM-Run-NPSStartup - (no file)
Toolbar-Locked - (no file)
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
AddRemove-ASUS_Screensaver - c:\windows\system32\ASUS_Screensaver.scr
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\NIS]
"ImagePath"="\"c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe\" /s \"NIS\" /m \"c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\diMaster.dll\" /prefetch:1"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10u_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10u_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE
c:\program files (x86)\ASUS\SmartLogon\sensorsrv.exe
c:\program files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
.
**************************************************************************
.
Celkový čas: 2011-07-26 21:48:30 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-26 19:48
.
Před spuštěním: 5 826 400 256
Po spuštění: 6 045 589 504
.
- - End Of File - - 7E336F865ED6B7A6BA6A41CB327A7360
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.1318 [GMT 2:00]
Spuštěný z: c:\users\frajer-smoula\Desktop\ComboFix.exe
AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
SP: Norton Internet Security *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\FullRemove.exe
c:\users\frajer-smoula\AppData\Roaming\Microsoft\Windows\Recent\Alien 7 Theme Preview.url
c:\windows\btc_client_iplist.txt
c:\windows\geoiplist
c:\windows\geoiplist.rar
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\phoenix.rar
c:\windows\rpcminer.rar
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\SysWow64\aptmp.exe
c:\windows\ufa.rar
c:\windows\update.2
c:\windows\update.2\svchost.exe
c:\windows\update.5.0
c:\windows\update.5.0\svchost.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-26 do 2011-07-26 )))))))))))))))))))))))))))))))
.
.
2011-07-26 19:24 . 2011-07-26 19:24 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-26 19:09 . 2011-07-26 19:09 -------- d-----w- C:\32788R22FWJFW
2011-07-26 15:42 . 2011-07-26 15:42 -------- d-----w- C:\rsit
2011-07-26 15:42 . 2011-07-26 15:42 -------- d-----w- c:\program files\trend micro
2011-07-26 14:20 . 2011-03-31 03:04 43640 ----a-r- c:\windows\system32\drivers\SymIMV.sys
2011-07-26 12:51 . 2011-07-26 12:57 -------- d-----w- c:\program files\Symantec
2011-07-26 12:51 . 2011-07-26 12:57 174200 ----a-w- c:\windows\system32\drivers\SYMEVENT64x86.SYS
2011-07-26 12:51 . 2011-07-26 12:51 -------- d-----w- c:\program files\Common Files\Symantec Shared
2011-07-26 12:50 . 2011-07-26 13:08 -------- d-----w- c:\windows\system32\drivers\NISx64
2011-07-26 12:50 . 2011-07-26 12:50 -------- d-----w- c:\program files (x86)\Norton Internet Security
2011-07-26 12:49 . 2011-07-13 04:53 8578896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{EB3EB86D-8877-4F63-9685-5DA01C710F95}\mpengine.dll
2011-07-26 12:35 . 2011-07-26 12:35 -------- d-----w- c:\programdata\MFAData
2011-07-26 11:54 . 2011-07-26 11:54 -------- d-----w- c:\program files (x86)\Crawler
2011-07-26 11:54 . 2011-07-26 19:01 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Spyware Terminator
2011-07-26 11:54 . 2011-07-26 19:00 -------- d-----w- c:\program files (x86)\Spyware Terminator
2011-07-26 11:54 . 2011-07-26 12:46 -------- d-----w- c:\programdata\Spyware Terminator
2011-07-26 11:40 . 2011-07-26 11:40 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Tific
2011-07-26 11:40 . 2011-07-26 11:40 -------- d-----w- c:\users\frajer-smoula\AppData\Local\Symantec
2011-07-26 08:32 . 2011-07-26 08:32 -------- d-----w- c:\windows\rpcminer
2011-07-26 08:32 . 2011-07-26 08:32 -------- d-----w- c:\windows\ufa
2011-07-26 08:32 . 2011-07-26 08:32 -------- d-----w- c:\windows\phoenix
2011-07-26 08:31 . 2011-07-26 08:32 246272 ----a-w- c:\windows\unrar.exe
2011-07-26 08:10 . 2011-07-26 08:10 -------- d--h--w- c:\windows\PIF
2011-07-24 18:31 . 2010-04-27 02:25 18944 ----a-w- c:\windows\system32\drivers\ss_bmdfl.sys
2011-07-24 18:31 . 2010-04-27 02:25 161280 ----a-w- c:\windows\system32\drivers\ss_bmdm.sys
2011-07-24 18:28 . 2011-07-24 18:28 -------- d-----w- c:\users\frajer-smoula\AppData\Local\Downloaded Installations
2011-07-24 18:19 . 2011-07-24 18:19 -------- d--h--w- c:\programdata\.syncID
2011-07-23 04:29 . 2011-07-23 17:27 -------- d-----w- c:\program files (x86)\NosTale(CZ)
2011-07-14 18:49 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2011-07-14 08:07 . 2011-07-14 08:07 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\XRay Engine
2011-07-13 15:47 . 2011-03-11 06:41 189824 ----a-w- c:\windows\system32\drivers\storport.sys
2011-07-12 21:45 . 2011-07-12 21:49 88480 ----a-w- c:\windows\system32\drivers\atksgt.sys
2011-07-12 21:45 . 2011-07-12 21:49 46400 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2011-07-12 15:57 . 2008-05-30 12:19 511496 ----a-w- c:\windows\system32\XAudio2_1.dll
2011-07-12 15:07 . 2011-07-12 15:07 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\DivX
2011-07-12 13:12 . 2011-07-12 13:12 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2011-07-10 17:45 . 2011-07-10 17:45 -------- d-----w- c:\programdata\PCSettings
2011-07-01 21:06 . 2011-07-01 21:06 49152 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ProgramMenuShortcut6.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ProgramMenuShortcut8.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\NewShortcut1_1.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\NewShortcut1.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ARPPRODUCTICON.exe
2011-07-01 20:35 . 2011-07-01 20:35 -------- d-----w- c:\program files (x86)\Illusion Softworks
2011-07-01 20:30 . 2011-07-01 20:30 254528 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2011-07-01 20:30 . 2011-07-01 20:30 -------- d-----w- c:\program files (x86)\DAEMON Tools Toolbar
2011-07-01 20:30 . 2011-07-01 20:30 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite
2011-07-01 20:29 . 2011-07-01 20:31 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\DAEMON Tools Lite
2011-07-01 20:29 . 2011-07-01 20:29 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-07-01 20:12 . 2011-07-01 20:12 43520 ----a-w- c:\windows\SysWow64\CmdLineExt03.dll
2011-07-01 19:33 . 2011-07-01 19:33 94208 ----a-w- c:\windows\DIIUnin.exe
2011-07-01 19:33 . 2011-07-01 19:33 2829 ----a-w- c:\windows\DIIUnin.pif
2011-07-01 19:33 . 2011-07-06 18:24 -------- d-----w- c:\program files\Diablo II
2011-07-01 18:48 . 2010-08-21 03:59 125872 ----a-w- c:\windows\system32\GEARAspi64.dll
2011-07-01 18:48 . 2010-08-21 03:59 106928 ----a-w- c:\windows\SysWow64\GEARAspi.dll
2011-07-01 18:48 . 2009-05-18 08:47 34152 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-07-01 18:48 . 2011-07-01 18:48 -------- d-----w- c:\windows\system32\drivers\NBRTWizardx64
2011-07-01 18:48 . 2011-07-01 18:48 -------- d-----w- c:\program files (x86)\Norton Bootable Recovery Tool Wizard
2011-07-01 17:59 . 2011-07-26 16:03 -------- d-----w- c:\users\frajer-smoula\AppData\Local\NPE
2011-06-30 08:31 . 2011-07-26 14:05 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\skypePM
2011-06-30 08:31 . 2011-07-26 13:35 -------- d-----w- c:\programdata\Skype Extras
2011-06-30 08:29 . 2011-07-26 16:03 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----w- c:\program files (x86)\Common Files\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----r- c:\program files (x86)\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----w- c:\programdata\Skype
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\custom matrices
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\C2MP
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\QuickTime
2011-06-28 16:50 . 2008-06-20 21:11 978944 ----a-w- c:\windows\system32\msvcp71.dll
2011-06-28 16:50 . 2008-06-20 21:11 520192 ----a-w- c:\windows\system32\msvcr71.dll
2011-06-28 16:50 . 2008-06-20 21:11 1524736 ----a-w- c:\windows\system32\MFC71.dll
2011-06-28 16:50 . 2008-06-04 08:15 388640 ----a-w- c:\windows\system32\nvexpBar.dll
2011-06-28 16:50 . 2011-06-28 16:54 -------- d-----w- c:\users\frajer-smoula\AppData\Local\NVIDIA Corporation
2011-06-27 15:42 . 2011-06-27 15:42 -------- d-----w- c:\users\UpdatusUser
2011-06-27 15:42 . 2011-06-28 16:51 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2011-06-27 15:41 . 2011-05-21 06:01 739432 ----a-w- c:\windows\system32\easyupdatusapiu64.dll
2011-06-27 15:41 . 2011-06-27 15:41 -------- d-----w- c:\programdata\NVIDIA Corporation
2011-06-27 15:39 . 2011-06-27 20:31 -------- d-----w- c:\program files\NVIDIA Corporation
2011-06-27 15:31 . 2011-06-28 16:49 -------- d-----w- C:\NVIDIA
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-26 08:20 . 2011-06-07 14:20 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-07-19 07:24 . 2011-06-18 19:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2011-06-22 21:27 . 2011-06-22 19:08 2829 ----a-w- c:\windows\War3Unin.pif
2011-06-22 21:27 . 2011-06-22 19:08 139264 ----a-w- c:\windows\War3Unin.exe
2011-06-12 21:45 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2011-06-12 21:45 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2011-06-09 08:06 . 2011-06-09 08:06 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2011-06-09 08:06 . 2011-06-09 08:06 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2011-06-09 08:06 . 2011-06-09 08:06 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2011-06-09 08:06 . 2011-06-09 08:06 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2011-06-09 08:06 . 2011-06-09 08:06 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2011-06-09 08:06 . 2011-06-09 08:06 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2011-06-09 08:06 . 2011-06-09 08:06 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2011-06-09 08:06 . 2011-06-09 08:06 367104 ----a-w- c:\windows\SysWow64\html.iec
2011-06-09 08:06 . 2011-06-09 08:06 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2011-06-09 08:06 . 2011-06-09 08:06 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2011-06-09 08:06 . 2011-06-09 08:06 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2011-06-09 08:06 . 2011-06-09 08:06 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2011-06-09 08:06 . 2011-06-09 08:06 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2011-06-09 08:06 . 2011-06-09 08:06 1126912 ----a-w- c:\windows\SysWow64\wininet.dll
2011-06-09 08:06 . 2011-06-09 08:06 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2011-06-09 08:06 . 2011-06-09 08:06 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-06-09 08:06 . 2011-06-09 08:06 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2011-06-09 08:06 . 2011-06-09 08:06 222208 ----a-w- c:\windows\system32\msls31.dll
2011-06-09 08:06 . 2011-06-09 08:06 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2011-06-09 08:06 . 2011-06-09 08:06 1389056 ----a-w- c:\windows\system32\wininet.dll
2011-06-09 08:06 . 2011-06-09 08:06 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2011-06-09 08:06 . 2011-06-09 08:06 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2011-06-09 08:06 . 2011-06-09 08:06 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-06-09 08:06 . 2011-06-09 08:06 85504 ----a-w- c:\windows\system32\iesetup.dll
2011-06-09 08:06 . 2011-06-09 08:06 76800 ----a-w- c:\windows\system32\tdc.ocx
2011-06-09 08:06 . 2011-06-09 08:06 603648 ----a-w- c:\windows\system32\vbscript.dll
2011-06-09 08:06 . 2011-06-09 08:06 49664 ----a-w- c:\windows\system32\imgutil.dll
2011-06-09 08:06 . 2011-06-09 08:06 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-06-09 08:06 . 2011-06-09 08:06 448512 ----a-w- c:\windows\system32\html.iec
2011-06-09 08:06 . 2011-06-09 08:06 30720 ----a-w- c:\windows\system32\licmgr10.dll
2011-06-09 08:06 . 2011-06-09 08:06 173056 ----a-w- c:\windows\system32\ieUnatt.exe
2011-06-09 08:06 . 2011-06-09 08:06 165888 ----a-w- c:\windows\system32\iexpress.exe
2011-06-09 08:06 . 2011-06-09 08:06 160256 ----a-w- c:\windows\system32\wextract.exe
2011-06-09 08:06 . 2011-06-09 08:06 1492992 ----a-w- c:\windows\system32\inetcpl.cpl
2011-06-09 08:06 . 2011-06-09 08:06 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-06-09 08:06 . 2011-06-09 08:06 12288 ----a-w- c:\windows\system32\mshta.exe
2011-06-09 08:06 . 2011-06-09 08:06 114176 ----a-w- c:\windows\system32\admparse.dll
2011-06-09 08:06 . 2011-06-09 08:06 111616 ----a-w- c:\windows\system32\iesysprep.dll
2011-06-08 12:29 . 2011-06-08 12:29 103736 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2011-06-08 12:29 . 2011-06-08 12:29 669184 ----a-w- c:\windows\SysWow64\pbsvc.exe
2011-06-08 12:29 . 2011-06-08 12:29 66872 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2011-06-06 21:30 . 2011-06-06 21:31 737280 ----a-w- c:\windows\iun6002.exe
2011-06-06 16:29 . 2011-06-23 18:30 34624 ----a-w- c:\windows\system32\TURegOpt.exe
2011-06-06 16:24 . 2011-06-23 18:30 25920 ----a-w- c:\windows\system32\authuitu.dll
2011-06-06 16:24 . 2011-06-23 18:30 21312 ----a-w- c:\windows\SysWow64\authuitu.dll
2011-06-06 16:24 . 2011-06-23 18:30 36160 ----a-w- c:\windows\system32\uxtuneup.dll
2011-06-06 16:23 . 2011-06-23 18:30 29504 ----a-w- c:\windows\SysWow64\uxtuneup.dll
2011-06-03 05:57 . 2011-07-13 15:47 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2011-05-24 17:14 . 2011-06-07 11:33 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-05-21 06:01 . 2009-12-11 16:15 61544 ----a-w- c:\windows\system32\nvshext.dll
2011-05-21 06:01 . 2009-12-11 07:15 6300776 ----a-w- c:\windows\system32\nvcpl.dll
2011-05-21 06:01 . 2009-12-11 07:15 326760 ----a-w- c:\windows\system32\nvhotkey.dll
2011-05-21 06:01 . 2009-12-11 07:15 3040872 ----a-w- c:\windows\system32\nvsvc64.dll
2011-05-21 06:01 . 2009-12-11 07:15 2560616 ----a-w- c:\windows\system32\nvsvcr.dll
2011-05-21 06:01 . 2009-12-11 07:15 117864 ----a-w- c:\windows\system32\nvmctray.dll
2011-05-21 06:01 . 2009-12-11 07:15 1016936 ----a-w- c:\windows\system32\nvvsvc.exe
2011-05-21 06:01 . 2009-12-10 23:15 8863336 ----a-w- c:\windows\system32\nvwgf2umx.dll
2011-05-21 06:01 . 2009-12-10 23:15 2644584 ----a-w- c:\windows\system32\nvapi64.dll
2011-05-21 06:01 . 2009-12-10 23:15 2335848 ----a-w- c:\windows\SysWow64\nvapi.dll
2011-05-21 06:01 . 2009-12-10 23:15 15223912 ----a-w- c:\windows\system32\nvd3dumx.dll
2011-05-20 20:35 . 2011-05-20 20:35 304744 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2011-05-03 05:29 . 2011-06-16 18:39 976896 ----a-w- c:\windows\system32\inetcomm.dll
2011-05-03 04:30 . 2011-06-16 18:39 741376 ----a-w- c:\windows\SysWow64\inetcomm.dll
2011-05-02 23:35 . 2011-05-02 23:35 4399080 ----a-w- c:\windows\system32\ffmpeg.dll
2011-05-02 23:17 . 2011-05-02 23:17 1454705 ----a-w- c:\windows\system32\ffmpegmt.dll
2011-05-02 23:11 . 2011-05-02 23:11 4785664 ----a-w- c:\windows\system32\ffdshow.ax
2011-05-02 23:05 . 2011-05-02 23:05 3661824 ----a-w- c:\windows\SysWow64\ffdshow.ax
2011-05-02 22:30 . 2011-05-02 22:30 1144147 ----a-w- c:\windows\SysWow64\ffmpegmt.dll
2011-05-02 22:27 . 2011-05-02 22:27 3935545 ----a-w- c:\windows\SysWow64\ffmpeg.dll
2011-05-02 20:23 . 2011-05-02 20:23 324096 ----a-w- c:\windows\SysWow64\TomsMoComp_ff.dll
2011-05-02 20:19 . 2011-05-02 20:19 100352 ----a-w- c:\windows\SysWow64\ff_wmv9.dll
2011-05-02 20:19 . 2011-05-02 20:19 80896 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2011-05-02 19:54 . 2011-05-02 19:54 116224 ----a-w- c:\windows\system32\ff_wmv9.dll
2011-05-02 19:54 . 2011-05-02 19:54 155136 ----a-w- c:\windows\system32\ff_libmad.dll
2011-05-02 19:54 . 2011-05-02 19:54 105472 ----a-w- c:\windows\system32\ff_liba52.dll
2011-05-02 19:54 . 2011-05-02 19:54 1533440 ----a-w- c:\windows\system32\ff_samplerate.dll
2011-05-02 19:54 . 2011-05-02 19:54 222720 ----a-w- c:\windows\system32\ff_libdts.dll
2011-05-02 19:53 . 2011-05-02 19:53 168448 ----a-w- c:\windows\system32\ff_unrar.dll
2011-05-02 19:52 . 2011-05-02 19:52 347136 ----a-w- c:\windows\system32\ff_libfaad2.dll
2011-05-02 19:52 . 2011-05-02 19:52 190464 ----a-w- c:\windows\system32\libmpeg2_ff.dll
2011-05-02 19:52 . 2011-05-02 19:52 477184 ----a-w- c:\windows\system32\ff_kernelDeint.dll
2011-05-02 19:34 . 2011-05-02 19:34 621568 ----a-w- c:\windows\system32\TomsMoComp_ff.dll
2011-04-29 03:06 . 2011-06-16 18:39 467456 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-29 03:05 . 2011-06-16 18:39 410112 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-29 03:05 . 2011-06-16 18:39 168448 ----a-w- c:\windows\system32\drivers\srvnet.sys
2003-05-23 13:56 . 2011-06-25 22:40 41472 ------w- c:\program files (x86)\DrvMgt.dll
2003-05-23 13:56 . 2011-06-25 22:40 12400 ------w- c:\program files (x86)\SECDRV.SYS
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2010-12-09 11:51 3911776 ----a-w- c:\program files (x86)\ConduitEngine\ConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files (x86)\ConduitEngine\ConduitEngine.dll" [2010-12-09 3911776]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-01-20 1305408]
"Syncables"="c:\program files (x86)\syncables\syncables desktop\Syncables.exe" [2010-04-05 370480]
"AutoStartNPSAgent"="c:\program files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe" [2010-07-04 95576]
"SpywareTerminatorUpdate"="c:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe" [2011-07-26 3318784]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"Boingo Wi-Fi"="c:\program files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk" [2010-09-16 2429]
"ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2009-10-27 6998656]
"ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2009-08-20 170624]
"HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-06-08 37296]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
FancyStart daemon.lnk - c:\windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe [2010-9-16 12862]
SRS Premium Sound.lnk - c:\windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe [2010-9-16 156952]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 135664]
R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 135664]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NISx64\1206000.01D\SYMDS64.SYS [x]
S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NISx64\1206000.01D\SYMEFA64.SYS [x]
S1 BHDrvx64;BHDrvx64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20100810.004\BHDrvx64.sys [2010-08-09 945200]
S1 IDSVia64;IDSVia64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20100706.002\IDSVia64.sys [2010-06-27 463408]
S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NISx64\1206000.01D\Ironx64.SYS [x]
S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\NISx64\1206000.01D\SYMNETS.SYS [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [x]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
S2 GJService;Game Jackal Server;c:\program files (x86)\SlySoft\Game Jackal v4\Server.exe [2010-09-18 2063808]
S2 NIS;Norton Internet Security;c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe [2011-04-17 130008]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-05-21 2214504]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
S2 sp_rsdrv2;Spyware Terminator Driver Filter;c:\windows\system32\DRIVERS\stflt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-05-20 378472]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-06-06 2026304]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-07-26 136824]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x]
S3 MaplomL;MaplomL; [x]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 19:09]
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-16 19:09]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B]
@="{6D4133E5-0742-4ADC-8A8C-9303440F7190}"
[HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}]
2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O]
@="{64174815-8D98-4CE6-8646-4C039977D808}"
[HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}]
2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ASUS WebStorage"="c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe" [2010-03-16 1754448]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-09-30 621440]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-09-01 323584]
"fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2008-12-08 453984]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.crawler.com/homepage.aspx?tbid=60327
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Crawler Search - tbr:iemenu
TCP: DhcpNameServer = 10.0.0.138
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~2\Crawler\Toolbar\ctbr.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKLM-Run-NPSStartup - (no file)
Toolbar-Locked - (no file)
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
AddRemove-ASUS_Screensaver - c:\windows\system32\ASUS_Screensaver.scr
AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\NIS]
"ImagePath"="\"c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe\" /s \"NIS\" /m \"c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\diMaster.dll\" /prefetch:1"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10u_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10u_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10u.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE
c:\program files (x86)\ASUS\SmartLogon\sensorsrv.exe
c:\program files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
.
**************************************************************************
.
Celkový čas: 2011-07-26 21:48:30 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-26 19:48
.
Před spuštěním: 5 826 400 256
Po spuštění: 6 045 589 504
.
- - End Of File - - 7E336F865ED6B7A6BA6A41CB327A7360
Re: dalsi blbec co se nachytal - vir FB



- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
KillAll:: Folder:: c:\windows\rpcminer c:\windows\ufa c:\windows\phoenix c:\windows\av_ico File:: c:\windows\unrar.exe c:\windows\Tasks\GoogleUpdateTaskMachineCore.job c:\windows\Tasks\GoogleUpdateTaskMachineUA.job Registry:: [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"=- "Adobe Reader Speed Launcher"=- Driver:: MaplomL gupdate gupdatem DDS:: uStart Page = hxxp://www.crawler.com/homepage.aspx?tbid=60327 RegLock:: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\PCW\Security] AtJob:: Reboot::
- Ulozte vytvoreny TXT jako CFScript.txt
- Pretahnete vytvoreny CFScript.txt nad Combofix a pustte (viz obrazek nize)
- Po aplikaci skriptu (a pripadnem restartu) na Vas vypadne log, jeho obsah sem vlozte

Re: dalsi blbec co se nachytal - vir FB
kdyz chci pretahnout ten .txt soubor na ten combofix objevi se hlaska
Pokus pouzit neplatnou operaci na klic registru,ktery je oznacen pro odsraneni.
Mam tedy napred spustit combofix a pak nasledne do nej vlozit ten .txt soubor ?
Pokus pouzit neplatnou operaci na klic registru,ktery je oznacen pro odsraneni.
Mam tedy napred spustit combofix a pak nasledne do nej vlozit ten .txt soubor ?
Re: dalsi blbec co se nachytal - vir FB
Restartuijte PC
Vytvorte znocvu CFScript a pretahnete jej nad ComboFix (pitomec.com)
Vytvorte znocvu CFScript a pretahnete jej nad ComboFix (pitomec.com)
Re: dalsi blbec co se nachytal - vir FB
ComboFix 11-07-26.03 - frajer-smoula 26.07.2011 22:33:26.2.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.1482 [GMT 2:00]
Spuštěný z: c:\users\frajer-smoula\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\frajer-smoula\Desktop\CFScript.txt
AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
SP: Norton Internet Security *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\unrar.exe"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\phoenix
c:\windows\phoenix\kernels\phatk\__init__.py
c:\windows\phoenix\kernels\phatk\__init__.pyc
c:\windows\phoenix\kernels\phatk\BFIPatcher.py
c:\windows\phoenix\kernels\phatk\BFIPatcher.pyc
c:\windows\phoenix\kernels\phatk\kernel.cl
c:\windows\phoenix\kernels\poclbm\__init__.py
c:\windows\phoenix\kernels\poclbm\__init__.pyc
c:\windows\phoenix\kernels\poclbm\BFIPatcher.py
c:\windows\phoenix\kernels\poclbm\BFIPatcher.pyc
c:\windows\phoenix\kernels\poclbm\kernel.cl
c:\windows\phoenix\phoenix.exe
c:\windows\rpcminer
c:\windows\rpcminer\bitcoinminercuda_10.cubin
c:\windows\rpcminer\bitcoinminercuda_11.cubin
c:\windows\rpcminer\bitcoinminercuda_20.cubin
c:\windows\rpcminer\bitcoinmineropencl.cl
c:\windows\rpcminer\cudart32_32_16.dll
c:\windows\rpcminer\curllib.dll
c:\windows\rpcminer\libeay32.dll
c:\windows\rpcminer\libsasl.dll
c:\windows\rpcminer\openldap.dll
c:\windows\rpcminer\rpcminer-4way.exe
c:\windows\rpcminer\rpcminer-cpu.exe
c:\windows\rpcminer\rpcminer-cuda.exe
c:\windows\rpcminer\rpcminer-opencl.exe
c:\windows\rpcminer\ssleay32.dll
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\ufa
c:\windows\ufa\ufa.exe
c:\windows\unrar.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_MaplomL
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-26 do 2011-07-26 )))))))))))))))))))))))))))))))
.
.
2011-07-26 20:46 . 2011-07-26 20:46 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-26 15:42 . 2011-07-26 15:42 -------- d-----w- C:\rsit
2011-07-26 15:42 . 2011-07-26 15:42 -------- d-----w- c:\program files\trend micro
2011-07-26 14:20 . 2011-03-31 03:04 43640 ----a-r- c:\windows\system32\drivers\SymIMV.sys
2011-07-26 12:51 . 2011-07-26 12:57 -------- d-----w- c:\program files\Symantec
2011-07-26 12:51 . 2011-07-26 12:57 174200 ----a-w- c:\windows\system32\drivers\SYMEVENT64x86.SYS
2011-07-26 12:51 . 2011-07-26 12:51 -------- d-----w- c:\program files\Common Files\Symantec Shared
2011-07-26 12:50 . 2011-07-26 13:08 -------- d-----w- c:\windows\system32\drivers\NISx64
2011-07-26 12:50 . 2011-07-26 12:50 -------- d-----w- c:\program files (x86)\Norton Internet Security
2011-07-26 12:49 . 2011-07-13 04:53 8578896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{EB3EB86D-8877-4F63-9685-5DA01C710F95}\mpengine.dll
2011-07-26 12:35 . 2011-07-26 12:35 -------- d-----w- c:\programdata\MFAData
2011-07-26 11:54 . 2011-07-26 11:54 -------- d-----w- c:\program files (x86)\Crawler
2011-07-26 11:54 . 2011-07-26 19:01 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Spyware Terminator
2011-07-26 11:54 . 2011-07-26 19:00 -------- d-----w- c:\program files (x86)\Spyware Terminator
2011-07-26 11:54 . 2011-07-26 12:46 -------- d-----w- c:\programdata\Spyware Terminator
2011-07-26 11:40 . 2011-07-26 11:40 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Tific
2011-07-26 11:40 . 2011-07-26 11:40 -------- d-----w- c:\users\frajer-smoula\AppData\Local\Symantec
2011-07-26 08:10 . 2011-07-26 08:10 -------- d--h--w- c:\windows\PIF
2011-07-24 18:31 . 2010-04-27 02:25 18944 ----a-w- c:\windows\system32\drivers\ss_bmdfl.sys
2011-07-24 18:31 . 2010-04-27 02:25 161280 ----a-w- c:\windows\system32\drivers\ss_bmdm.sys
2011-07-24 18:28 . 2011-07-24 18:28 -------- d-----w- c:\users\frajer-smoula\AppData\Local\Downloaded Installations
2011-07-24 18:19 . 2011-07-24 18:19 -------- d--h--w- c:\programdata\.syncID
2011-07-23 04:29 . 2011-07-23 17:27 -------- d-----w- c:\program files (x86)\NosTale(CZ)
2011-07-14 18:49 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2011-07-14 08:07 . 2011-07-14 08:07 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\XRay Engine
2011-07-13 15:47 . 2011-03-11 06:41 189824 ----a-w- c:\windows\system32\drivers\storport.sys
2011-07-12 21:45 . 2011-07-12 21:49 88480 ----a-w- c:\windows\system32\drivers\atksgt.sys
2011-07-12 21:45 . 2011-07-12 21:49 46400 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2011-07-12 15:57 . 2008-05-30 12:19 511496 ----a-w- c:\windows\system32\XAudio2_1.dll
2011-07-12 15:07 . 2011-07-12 15:07 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\DivX
2011-07-12 13:12 . 2011-07-12 13:12 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2011-07-10 17:45 . 2011-07-10 17:45 -------- d-----w- c:\programdata\PCSettings
2011-07-01 21:06 . 2011-07-01 21:06 49152 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ProgramMenuShortcut6.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ProgramMenuShortcut8.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\NewShortcut1_1.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\NewShortcut1.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ARPPRODUCTICON.exe
2011-07-01 20:35 . 2011-07-01 20:35 -------- d-----w- c:\program files (x86)\Illusion Softworks
2011-07-01 20:30 . 2011-07-01 20:30 254528 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2011-07-01 20:30 . 2011-07-01 20:30 -------- d-----w- c:\program files (x86)\DAEMON Tools Toolbar
2011-07-01 20:30 . 2011-07-01 20:30 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite
2011-07-01 20:29 . 2011-07-01 20:31 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\DAEMON Tools Lite
2011-07-01 20:29 . 2011-07-01 20:29 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-07-01 20:12 . 2011-07-01 20:12 43520 ----a-w- c:\windows\SysWow64\CmdLineExt03.dll
2011-07-01 19:33 . 2011-07-01 19:33 94208 ----a-w- c:\windows\DIIUnin.exe
2011-07-01 19:33 . 2011-07-01 19:33 2829 ----a-w- c:\windows\DIIUnin.pif
2011-07-01 19:33 . 2011-07-06 18:24 -------- d-----w- c:\program files\Diablo II
2011-07-01 18:48 . 2010-08-21 03:59 125872 ----a-w- c:\windows\system32\GEARAspi64.dll
2011-07-01 18:48 . 2010-08-21 03:59 106928 ----a-w- c:\windows\SysWow64\GEARAspi.dll
2011-07-01 18:48 . 2009-05-18 08:47 34152 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-07-01 18:48 . 2011-07-01 18:48 -------- d-----w- c:\windows\system32\drivers\NBRTWizardx64
2011-07-01 18:48 . 2011-07-01 18:48 -------- d-----w- c:\program files (x86)\Norton Bootable Recovery Tool Wizard
2011-07-01 17:59 . 2011-07-26 16:03 -------- d-----w- c:\users\frajer-smoula\AppData\Local\NPE
2011-06-30 08:31 . 2011-07-26 14:05 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\skypePM
2011-06-30 08:31 . 2011-07-26 13:35 -------- d-----w- c:\programdata\Skype Extras
2011-06-30 08:29 . 2011-07-26 16:03 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----w- c:\program files (x86)\Common Files\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----r- c:\program files (x86)\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----w- c:\programdata\Skype
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\custom matrices
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\C2MP
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\QuickTime
2011-06-28 16:50 . 2008-06-20 21:11 978944 ----a-w- c:\windows\system32\msvcp71.dll
2011-06-28 16:50 . 2008-06-20 21:11 520192 ----a-w- c:\windows\system32\msvcr71.dll
2011-06-28 16:50 . 2008-06-20 21:11 1524736 ----a-w- c:\windows\system32\MFC71.dll
2011-06-28 16:50 . 2008-06-04 08:15 388640 ----a-w- c:\windows\system32\nvexpBar.dll
2011-06-28 16:50 . 2011-06-28 16:54 -------- d-----w- c:\users\frajer-smoula\AppData\Local\NVIDIA Corporation
2011-06-27 15:42 . 2011-06-27 15:42 -------- d-----w- c:\users\UpdatusUser
2011-06-27 15:42 . 2011-06-28 16:51 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2011-06-27 15:41 . 2011-05-21 06:01 739432 ----a-w- c:\windows\system32\easyupdatusapiu64.dll
2011-06-27 15:41 . 2011-06-27 15:41 -------- d-----w- c:\programdata\NVIDIA Corporation
2011-06-27 15:39 . 2011-06-27 20:31 -------- d-----w- c:\program files\NVIDIA Corporation
2011-06-27 15:31 . 2011-06-28 16:49 -------- d-----w- C:\NVIDIA
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-26 08:20 . 2011-06-07 14:20 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-07-19 07:24 . 2011-06-18 19:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2011-06-22 21:27 . 2011-06-22 19:08 2829 ----a-w- c:\windows\War3Unin.pif
2011-06-22 21:27 . 2011-06-22 19:08 139264 ----a-w- c:\windows\War3Unin.exe
2011-06-12 21:45 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2011-06-12 21:45 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2011-06-09 08:06 . 2011-06-09 08:06 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2011-06-09 08:06 . 2011-06-09 08:06 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2011-06-09 08:06 . 2011-06-09 08:06 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2011-06-09 08:06 . 2011-06-09 08:06 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2011-06-09 08:06 . 2011-06-09 08:06 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2011-06-09 08:06 . 2011-06-09 08:06 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2011-06-09 08:06 . 2011-06-09 08:06 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2011-06-09 08:06 . 2011-06-09 08:06 367104 ----a-w- c:\windows\SysWow64\html.iec
2011-06-09 08:06 . 2011-06-09 08:06 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2011-06-09 08:06 . 2011-06-09 08:06 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2011-06-09 08:06 . 2011-06-09 08:06 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2011-06-09 08:06 . 2011-06-09 08:06 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2011-06-09 08:06 . 2011-06-09 08:06 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2011-06-09 08:06 . 2011-06-09 08:06 1126912 ----a-w- c:\windows\SysWow64\wininet.dll
2011-06-09 08:06 . 2011-06-09 08:06 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2011-06-09 08:06 . 2011-06-09 08:06 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-06-09 08:06 . 2011-06-09 08:06 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2011-06-09 08:06 . 2011-06-09 08:06 222208 ----a-w- c:\windows\system32\msls31.dll
2011-06-09 08:06 . 2011-06-09 08:06 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2011-06-09 08:06 . 2011-06-09 08:06 1389056 ----a-w- c:\windows\system32\wininet.dll
2011-06-09 08:06 . 2011-06-09 08:06 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2011-06-09 08:06 . 2011-06-09 08:06 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2011-06-09 08:06 . 2011-06-09 08:06 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-06-09 08:06 . 2011-06-09 08:06 85504 ----a-w- c:\windows\system32\iesetup.dll
2011-06-09 08:06 . 2011-06-09 08:06 76800 ----a-w- c:\windows\system32\tdc.ocx
2011-06-09 08:06 . 2011-06-09 08:06 603648 ----a-w- c:\windows\system32\vbscript.dll
2011-06-09 08:06 . 2011-06-09 08:06 49664 ----a-w- c:\windows\system32\imgutil.dll
2011-06-09 08:06 . 2011-06-09 08:06 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-06-09 08:06 . 2011-06-09 08:06 448512 ----a-w- c:\windows\system32\html.iec
2011-06-09 08:06 . 2011-06-09 08:06 30720 ----a-w- c:\windows\system32\licmgr10.dll
2011-06-09 08:06 . 2011-06-09 08:06 173056 ----a-w- c:\windows\system32\ieUnatt.exe
2011-06-09 08:06 . 2011-06-09 08:06 165888 ----a-w- c:\windows\system32\iexpress.exe
2011-06-09 08:06 . 2011-06-09 08:06 160256 ----a-w- c:\windows\system32\wextract.exe
2011-06-09 08:06 . 2011-06-09 08:06 1492992 ----a-w- c:\windows\system32\inetcpl.cpl
2011-06-09 08:06 . 2011-06-09 08:06 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-06-09 08:06 . 2011-06-09 08:06 12288 ----a-w- c:\windows\system32\mshta.exe
2011-06-09 08:06 . 2011-06-09 08:06 114176 ----a-w- c:\windows\system32\admparse.dll
2011-06-09 08:06 . 2011-06-09 08:06 111616 ----a-w- c:\windows\system32\iesysprep.dll
2011-06-08 12:29 . 2011-06-08 12:29 103736 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2011-06-08 12:29 . 2011-06-08 12:29 669184 ----a-w- c:\windows\SysWow64\pbsvc.exe
2011-06-08 12:29 . 2011-06-08 12:29 66872 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2011-06-06 21:30 . 2011-06-06 21:31 737280 ----a-w- c:\windows\iun6002.exe
2011-06-06 16:29 . 2011-06-23 18:30 34624 ----a-w- c:\windows\system32\TURegOpt.exe
2011-06-06 16:24 . 2011-06-23 18:30 25920 ----a-w- c:\windows\system32\authuitu.dll
2011-06-06 16:24 . 2011-06-23 18:30 21312 ----a-w- c:\windows\SysWow64\authuitu.dll
2011-06-06 16:24 . 2011-06-23 18:30 36160 ----a-w- c:\windows\system32\uxtuneup.dll
2011-06-06 16:23 . 2011-06-23 18:30 29504 ----a-w- c:\windows\SysWow64\uxtuneup.dll
2011-06-03 05:57 . 2011-07-13 15:47 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2011-05-24 17:14 . 2011-06-07 11:33 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-05-21 06:01 . 2009-12-11 16:15 61544 ----a-w- c:\windows\system32\nvshext.dll
2011-05-21 06:01 . 2009-12-11 07:15 6300776 ----a-w- c:\windows\system32\nvcpl.dll
2011-05-21 06:01 . 2009-12-11 07:15 326760 ----a-w- c:\windows\system32\nvhotkey.dll
2011-05-21 06:01 . 2009-12-11 07:15 3040872 ----a-w- c:\windows\system32\nvsvc64.dll
2011-05-21 06:01 . 2009-12-11 07:15 2560616 ----a-w- c:\windows\system32\nvsvcr.dll
2011-05-21 06:01 . 2009-12-11 07:15 117864 ----a-w- c:\windows\system32\nvmctray.dll
2011-05-21 06:01 . 2009-12-11 07:15 1016936 ----a-w- c:\windows\system32\nvvsvc.exe
2011-05-21 06:01 . 2009-12-10 23:15 8863336 ----a-w- c:\windows\system32\nvwgf2umx.dll
2011-05-21 06:01 . 2009-12-10 23:15 2644584 ----a-w- c:\windows\system32\nvapi64.dll
2011-05-21 06:01 . 2009-12-10 23:15 2335848 ----a-w- c:\windows\SysWow64\nvapi.dll
2011-05-21 06:01 . 2009-12-10 23:15 15223912 ----a-w- c:\windows\system32\nvd3dumx.dll
2011-05-20 20:35 . 2011-05-20 20:35 304744 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2011-05-03 05:29 . 2011-06-16 18:39 976896 ----a-w- c:\windows\system32\inetcomm.dll
2011-05-03 04:30 . 2011-06-16 18:39 741376 ----a-w- c:\windows\SysWow64\inetcomm.dll
2011-05-02 23:35 . 2011-05-02 23:35 4399080 ----a-w- c:\windows\system32\ffmpeg.dll
2011-05-02 23:17 . 2011-05-02 23:17 1454705 ----a-w- c:\windows\system32\ffmpegmt.dll
2011-05-02 23:11 . 2011-05-02 23:11 4785664 ----a-w- c:\windows\system32\ffdshow.ax
2011-05-02 23:05 . 2011-05-02 23:05 3661824 ----a-w- c:\windows\SysWow64\ffdshow.ax
2011-05-02 22:30 . 2011-05-02 22:30 1144147 ----a-w- c:\windows\SysWow64\ffmpegmt.dll
2011-05-02 22:27 . 2011-05-02 22:27 3935545 ----a-w- c:\windows\SysWow64\ffmpeg.dll
2011-05-02 20:23 . 2011-05-02 20:23 324096 ----a-w- c:\windows\SysWow64\TomsMoComp_ff.dll
2011-05-02 20:19 . 2011-05-02 20:19 100352 ----a-w- c:\windows\SysWow64\ff_wmv9.dll
2011-05-02 20:19 . 2011-05-02 20:19 80896 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2011-05-02 19:54 . 2011-05-02 19:54 116224 ----a-w- c:\windows\system32\ff_wmv9.dll
2011-05-02 19:54 . 2011-05-02 19:54 155136 ----a-w- c:\windows\system32\ff_libmad.dll
2011-05-02 19:54 . 2011-05-02 19:54 105472 ----a-w- c:\windows\system32\ff_liba52.dll
2011-05-02 19:54 . 2011-05-02 19:54 1533440 ----a-w- c:\windows\system32\ff_samplerate.dll
2011-05-02 19:54 . 2011-05-02 19:54 222720 ----a-w- c:\windows\system32\ff_libdts.dll
2011-05-02 19:53 . 2011-05-02 19:53 168448 ----a-w- c:\windows\system32\ff_unrar.dll
2011-05-02 19:52 . 2011-05-02 19:52 347136 ----a-w- c:\windows\system32\ff_libfaad2.dll
2011-05-02 19:52 . 2011-05-02 19:52 190464 ----a-w- c:\windows\system32\libmpeg2_ff.dll
2011-05-02 19:52 . 2011-05-02 19:52 477184 ----a-w- c:\windows\system32\ff_kernelDeint.dll
2011-05-02 19:34 . 2011-05-02 19:34 621568 ----a-w- c:\windows\system32\TomsMoComp_ff.dll
2011-04-29 03:06 . 2011-06-16 18:39 467456 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-29 03:05 . 2011-06-16 18:39 410112 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-29 03:05 . 2011-06-16 18:39 168448 ----a-w- c:\windows\system32\drivers\srvnet.sys
2003-05-23 13:56 . 2011-06-25 22:40 41472 ------w- c:\program files (x86)\DrvMgt.dll
2003-05-23 13:56 . 2011-06-25 22:40 12400 ------w- c:\program files (x86)\SECDRV.SYS
.
.
((((((((((((((((((((((((((((( SnapShot@2011-07-26_19.29.49 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-07-26 20:48 . 2011-07-26 20:48 13384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat
- 2011-07-26 19:26 . 2011-07-26 19:26 13384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat
- 2009-07-14 04:54 . 2011-07-26 19:27 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2011-07-26 20:49 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2011-07-26 19:27 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-07-26 20:49 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2011-07-26 19:27 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2011-07-26 20:49 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-09-16 19:19 . 2011-07-26 20:28 40624 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2011-07-26 20:28 38614 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2011-06-06 05:34 . 2011-07-26 20:28 9972 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-156553736-788906822-3014006816-1001_UserData.bin
- 2011-07-26 19:27 . 2011-07-26 19:27 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2011-07-26 20:49 . 2011-07-26 20:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2011-07-26 19:27 . 2011-07-26 19:27 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-07-26 20:49 . 2011-07-26 20:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2009-07-14 05:01 . 2011-07-26 19:26 229036 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2011-07-26 20:48 229036 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2011-06-09 08:55 . 2011-07-26 20:48 2092840 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-156553736-788906822-3014006816-1001-8192.dat
- 2011-06-09 08:55 . 2011-07-26 19:26 2092840 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-156553736-788906822-3014006816-1001-8192.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2010-12-09 11:51 3911776 ----a-w- c:\program files (x86)\ConduitEngine\ConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files (x86)\ConduitEngine\ConduitEngine.dll" [2010-12-09 3911776]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-01-20 1305408]
"Syncables"="c:\program files (x86)\syncables\syncables desktop\Syncables.exe" [2010-04-05 370480]
"AutoStartNPSAgent"="c:\program files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe" [2010-07-04 95576]
"SpywareTerminatorUpdate"="c:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe" [2011-07-26 3318784]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"Boingo Wi-Fi"="c:\program files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk" [2010-09-16 2429]
"ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2009-10-27 6998656]
"ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2009-08-20 170624]
"HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
FancyStart daemon.lnk - c:\windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe [2010-9-16 12862]
SRS Premium Sound.lnk - c:\windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe [2010-9-16 156952]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NISx64\1206000.01D\SYMDS64.SYS [x]
S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NISx64\1206000.01D\SYMEFA64.SYS [x]
S1 BHDrvx64;BHDrvx64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20100810.004\BHDrvx64.sys [2010-08-09 945200]
S1 IDSVia64;IDSVia64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20100706.002\IDSVia64.sys [2010-06-27 463408]
S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NISx64\1206000.01D\Ironx64.SYS [x]
S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\NISx64\1206000.01D\SYMNETS.SYS [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [x]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
S2 GJService;Game Jackal Server;c:\program files (x86)\SlySoft\Game Jackal v4\Server.exe [2010-09-18 2063808]
S2 NIS;Norton Internet Security;c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe [2011-04-17 130008]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-05-21 2214504]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
S2 sp_rsdrv2;Spyware Terminator Driver Filter;c:\windows\system32\DRIVERS\stflt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-05-20 378472]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-06-06 2026304]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-07-26 136824]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856]
.
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B]
@="{6D4133E5-0742-4ADC-8A8C-9303440F7190}"
[HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}]
2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O]
@="{64174815-8D98-4CE6-8646-4C039977D808}"
[HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}]
2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"combofix"="c:\combofix\CF1947.cfxxe" [X]
"ASUS WebStorage"="c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe" [2010-03-16 1754448]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-09-30 621440]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-09-01 323584]
"fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2008-12-08 453984]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Crawler Search - tbr:iemenu
TCP: DhcpNameServer = 10.0.0.138
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~2\Crawler\Toolbar\ctbr.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\NIS]
"ImagePath"="\"c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe\" /s \"NIS\" /m \"c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\diMaster.dll\" /prefetch:1"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\ASUS\SmartLogon\sensorsrv.exe
c:\program files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
.
**************************************************************************
.
Celkový čas: 2011-07-26 23:10:58 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-26 21:10
ComboFix2.txt 2011-07-26 19:48
.
Před spuštěním: 6 021 005 312
Po spuštění: 5 797 322 752
.
- - End Of File - - E0051915E435AB9091EA239500C67AFC
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3071.1482 [GMT 2:00]
Spuštěný z: c:\users\frajer-smoula\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\frajer-smoula\Desktop\CFScript.txt
AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
SP: Norton Internet Security *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\unrar.exe"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\phoenix
c:\windows\phoenix\kernels\phatk\__init__.py
c:\windows\phoenix\kernels\phatk\__init__.pyc
c:\windows\phoenix\kernels\phatk\BFIPatcher.py
c:\windows\phoenix\kernels\phatk\BFIPatcher.pyc
c:\windows\phoenix\kernels\phatk\kernel.cl
c:\windows\phoenix\kernels\poclbm\__init__.py
c:\windows\phoenix\kernels\poclbm\__init__.pyc
c:\windows\phoenix\kernels\poclbm\BFIPatcher.py
c:\windows\phoenix\kernels\poclbm\BFIPatcher.pyc
c:\windows\phoenix\kernels\poclbm\kernel.cl
c:\windows\phoenix\phoenix.exe
c:\windows\rpcminer
c:\windows\rpcminer\bitcoinminercuda_10.cubin
c:\windows\rpcminer\bitcoinminercuda_11.cubin
c:\windows\rpcminer\bitcoinminercuda_20.cubin
c:\windows\rpcminer\bitcoinmineropencl.cl
c:\windows\rpcminer\cudart32_32_16.dll
c:\windows\rpcminer\curllib.dll
c:\windows\rpcminer\libeay32.dll
c:\windows\rpcminer\libsasl.dll
c:\windows\rpcminer\openldap.dll
c:\windows\rpcminer\rpcminer-4way.exe
c:\windows\rpcminer\rpcminer-cpu.exe
c:\windows\rpcminer\rpcminer-cuda.exe
c:\windows\rpcminer\rpcminer-opencl.exe
c:\windows\rpcminer\ssleay32.dll
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\ufa
c:\windows\ufa\ufa.exe
c:\windows\unrar.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_MaplomL
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-26 do 2011-07-26 )))))))))))))))))))))))))))))))
.
.
2011-07-26 20:46 . 2011-07-26 20:46 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-26 15:42 . 2011-07-26 15:42 -------- d-----w- C:\rsit
2011-07-26 15:42 . 2011-07-26 15:42 -------- d-----w- c:\program files\trend micro
2011-07-26 14:20 . 2011-03-31 03:04 43640 ----a-r- c:\windows\system32\drivers\SymIMV.sys
2011-07-26 12:51 . 2011-07-26 12:57 -------- d-----w- c:\program files\Symantec
2011-07-26 12:51 . 2011-07-26 12:57 174200 ----a-w- c:\windows\system32\drivers\SYMEVENT64x86.SYS
2011-07-26 12:51 . 2011-07-26 12:51 -------- d-----w- c:\program files\Common Files\Symantec Shared
2011-07-26 12:50 . 2011-07-26 13:08 -------- d-----w- c:\windows\system32\drivers\NISx64
2011-07-26 12:50 . 2011-07-26 12:50 -------- d-----w- c:\program files (x86)\Norton Internet Security
2011-07-26 12:49 . 2011-07-13 04:53 8578896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{EB3EB86D-8877-4F63-9685-5DA01C710F95}\mpengine.dll
2011-07-26 12:35 . 2011-07-26 12:35 -------- d-----w- c:\programdata\MFAData
2011-07-26 11:54 . 2011-07-26 11:54 -------- d-----w- c:\program files (x86)\Crawler
2011-07-26 11:54 . 2011-07-26 19:01 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Spyware Terminator
2011-07-26 11:54 . 2011-07-26 19:00 -------- d-----w- c:\program files (x86)\Spyware Terminator
2011-07-26 11:54 . 2011-07-26 12:46 -------- d-----w- c:\programdata\Spyware Terminator
2011-07-26 11:40 . 2011-07-26 11:40 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Tific
2011-07-26 11:40 . 2011-07-26 11:40 -------- d-----w- c:\users\frajer-smoula\AppData\Local\Symantec
2011-07-26 08:10 . 2011-07-26 08:10 -------- d--h--w- c:\windows\PIF
2011-07-24 18:31 . 2010-04-27 02:25 18944 ----a-w- c:\windows\system32\drivers\ss_bmdfl.sys
2011-07-24 18:31 . 2010-04-27 02:25 161280 ----a-w- c:\windows\system32\drivers\ss_bmdm.sys
2011-07-24 18:28 . 2011-07-24 18:28 -------- d-----w- c:\users\frajer-smoula\AppData\Local\Downloaded Installations
2011-07-24 18:19 . 2011-07-24 18:19 -------- d--h--w- c:\programdata\.syncID
2011-07-23 04:29 . 2011-07-23 17:27 -------- d-----w- c:\program files (x86)\NosTale(CZ)
2011-07-14 18:49 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2011-07-14 18:49 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2011-07-14 08:07 . 2011-07-14 08:07 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\XRay Engine
2011-07-13 15:47 . 2011-03-11 06:41 189824 ----a-w- c:\windows\system32\drivers\storport.sys
2011-07-12 21:45 . 2011-07-12 21:49 88480 ----a-w- c:\windows\system32\drivers\atksgt.sys
2011-07-12 21:45 . 2011-07-12 21:49 46400 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2011-07-12 15:57 . 2008-05-30 12:19 511496 ----a-w- c:\windows\system32\XAudio2_1.dll
2011-07-12 15:07 . 2011-07-12 15:07 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\DivX
2011-07-12 13:12 . 2011-07-12 13:12 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2011-07-10 17:45 . 2011-07-10 17:45 -------- d-----w- c:\programdata\PCSettings
2011-07-01 21:06 . 2011-07-01 21:06 49152 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ProgramMenuShortcut6.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ProgramMenuShortcut8.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\NewShortcut1_1.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\NewShortcut1.exe
2011-07-01 21:06 . 2011-07-01 21:06 45056 ----a-r- c:\users\frajer-smoula\AppData\Roaming\Microsoft\Installer\{83437081-8186-4F63-BD39-4BE8A691E055}\ARPPRODUCTICON.exe
2011-07-01 20:35 . 2011-07-01 20:35 -------- d-----w- c:\program files (x86)\Illusion Softworks
2011-07-01 20:30 . 2011-07-01 20:30 254528 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2011-07-01 20:30 . 2011-07-01 20:30 -------- d-----w- c:\program files (x86)\DAEMON Tools Toolbar
2011-07-01 20:30 . 2011-07-01 20:30 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite
2011-07-01 20:29 . 2011-07-01 20:31 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\DAEMON Tools Lite
2011-07-01 20:29 . 2011-07-01 20:29 -------- d-----w- c:\programdata\DAEMON Tools Lite
2011-07-01 20:12 . 2011-07-01 20:12 43520 ----a-w- c:\windows\SysWow64\CmdLineExt03.dll
2011-07-01 19:33 . 2011-07-01 19:33 94208 ----a-w- c:\windows\DIIUnin.exe
2011-07-01 19:33 . 2011-07-01 19:33 2829 ----a-w- c:\windows\DIIUnin.pif
2011-07-01 19:33 . 2011-07-06 18:24 -------- d-----w- c:\program files\Diablo II
2011-07-01 18:48 . 2010-08-21 03:59 125872 ----a-w- c:\windows\system32\GEARAspi64.dll
2011-07-01 18:48 . 2010-08-21 03:59 106928 ----a-w- c:\windows\SysWow64\GEARAspi.dll
2011-07-01 18:48 . 2009-05-18 08:47 34152 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-07-01 18:48 . 2011-07-01 18:48 -------- d-----w- c:\windows\system32\drivers\NBRTWizardx64
2011-07-01 18:48 . 2011-07-01 18:48 -------- d-----w- c:\program files (x86)\Norton Bootable Recovery Tool Wizard
2011-07-01 17:59 . 2011-07-26 16:03 -------- d-----w- c:\users\frajer-smoula\AppData\Local\NPE
2011-06-30 08:31 . 2011-07-26 14:05 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\skypePM
2011-06-30 08:31 . 2011-07-26 13:35 -------- d-----w- c:\programdata\Skype Extras
2011-06-30 08:29 . 2011-07-26 16:03 -------- d-----w- c:\users\frajer-smoula\AppData\Roaming\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----w- c:\program files (x86)\Common Files\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----r- c:\program files (x86)\Skype
2011-06-30 08:29 . 2011-06-30 08:29 -------- d-----w- c:\programdata\Skype
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\custom matrices
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\C2MP
2011-06-28 20:15 . 2011-06-28 20:15 -------- d-----w- c:\windows\SysWow64\QuickTime
2011-06-28 16:50 . 2008-06-20 21:11 978944 ----a-w- c:\windows\system32\msvcp71.dll
2011-06-28 16:50 . 2008-06-20 21:11 520192 ----a-w- c:\windows\system32\msvcr71.dll
2011-06-28 16:50 . 2008-06-20 21:11 1524736 ----a-w- c:\windows\system32\MFC71.dll
2011-06-28 16:50 . 2008-06-04 08:15 388640 ----a-w- c:\windows\system32\nvexpBar.dll
2011-06-28 16:50 . 2011-06-28 16:54 -------- d-----w- c:\users\frajer-smoula\AppData\Local\NVIDIA Corporation
2011-06-27 15:42 . 2011-06-27 15:42 -------- d-----w- c:\users\UpdatusUser
2011-06-27 15:42 . 2011-06-28 16:51 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2011-06-27 15:41 . 2011-05-21 06:01 739432 ----a-w- c:\windows\system32\easyupdatusapiu64.dll
2011-06-27 15:41 . 2011-06-27 15:41 -------- d-----w- c:\programdata\NVIDIA Corporation
2011-06-27 15:39 . 2011-06-27 20:31 -------- d-----w- c:\program files\NVIDIA Corporation
2011-06-27 15:31 . 2011-06-28 16:49 -------- d-----w- C:\NVIDIA
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-26 08:20 . 2011-06-07 14:20 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-07-19 07:24 . 2011-06-18 19:51 45056 ----a-w- c:\windows\system32\acovcnt.exe
2011-06-22 21:27 . 2011-06-22 19:08 2829 ----a-w- c:\windows\War3Unin.pif
2011-06-22 21:27 . 2011-06-22 19:08 139264 ----a-w- c:\windows\War3Unin.exe
2011-06-12 21:45 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2011-06-12 21:45 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2011-06-09 08:06 . 2011-06-09 08:06 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2011-06-09 08:06 . 2011-06-09 08:06 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2011-06-09 08:06 . 2011-06-09 08:06 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2011-06-09 08:06 . 2011-06-09 08:06 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2011-06-09 08:06 . 2011-06-09 08:06 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2011-06-09 08:06 . 2011-06-09 08:06 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2011-06-09 08:06 . 2011-06-09 08:06 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2011-06-09 08:06 . 2011-06-09 08:06 367104 ----a-w- c:\windows\SysWow64\html.iec
2011-06-09 08:06 . 2011-06-09 08:06 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2011-06-09 08:06 . 2011-06-09 08:06 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2011-06-09 08:06 . 2011-06-09 08:06 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2011-06-09 08:06 . 2011-06-09 08:06 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2011-06-09 08:06 . 2011-06-09 08:06 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2011-06-09 08:06 . 2011-06-09 08:06 1126912 ----a-w- c:\windows\SysWow64\wininet.dll
2011-06-09 08:06 . 2011-06-09 08:06 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2011-06-09 08:06 . 2011-06-09 08:06 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-06-09 08:06 . 2011-06-09 08:06 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2011-06-09 08:06 . 2011-06-09 08:06 222208 ----a-w- c:\windows\system32\msls31.dll
2011-06-09 08:06 . 2011-06-09 08:06 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2011-06-09 08:06 . 2011-06-09 08:06 1389056 ----a-w- c:\windows\system32\wininet.dll
2011-06-09 08:06 . 2011-06-09 08:06 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2011-06-09 08:06 . 2011-06-09 08:06 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2011-06-09 08:06 . 2011-06-09 08:06 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-06-09 08:06 . 2011-06-09 08:06 85504 ----a-w- c:\windows\system32\iesetup.dll
2011-06-09 08:06 . 2011-06-09 08:06 76800 ----a-w- c:\windows\system32\tdc.ocx
2011-06-09 08:06 . 2011-06-09 08:06 603648 ----a-w- c:\windows\system32\vbscript.dll
2011-06-09 08:06 . 2011-06-09 08:06 49664 ----a-w- c:\windows\system32\imgutil.dll
2011-06-09 08:06 . 2011-06-09 08:06 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-06-09 08:06 . 2011-06-09 08:06 448512 ----a-w- c:\windows\system32\html.iec
2011-06-09 08:06 . 2011-06-09 08:06 30720 ----a-w- c:\windows\system32\licmgr10.dll
2011-06-09 08:06 . 2011-06-09 08:06 173056 ----a-w- c:\windows\system32\ieUnatt.exe
2011-06-09 08:06 . 2011-06-09 08:06 165888 ----a-w- c:\windows\system32\iexpress.exe
2011-06-09 08:06 . 2011-06-09 08:06 160256 ----a-w- c:\windows\system32\wextract.exe
2011-06-09 08:06 . 2011-06-09 08:06 1492992 ----a-w- c:\windows\system32\inetcpl.cpl
2011-06-09 08:06 . 2011-06-09 08:06 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-06-09 08:06 . 2011-06-09 08:06 12288 ----a-w- c:\windows\system32\mshta.exe
2011-06-09 08:06 . 2011-06-09 08:06 114176 ----a-w- c:\windows\system32\admparse.dll
2011-06-09 08:06 . 2011-06-09 08:06 111616 ----a-w- c:\windows\system32\iesysprep.dll
2011-06-08 12:29 . 2011-06-08 12:29 103736 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2011-06-08 12:29 . 2011-06-08 12:29 669184 ----a-w- c:\windows\SysWow64\pbsvc.exe
2011-06-08 12:29 . 2011-06-08 12:29 66872 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2011-06-06 21:30 . 2011-06-06 21:31 737280 ----a-w- c:\windows\iun6002.exe
2011-06-06 16:29 . 2011-06-23 18:30 34624 ----a-w- c:\windows\system32\TURegOpt.exe
2011-06-06 16:24 . 2011-06-23 18:30 25920 ----a-w- c:\windows\system32\authuitu.dll
2011-06-06 16:24 . 2011-06-23 18:30 21312 ----a-w- c:\windows\SysWow64\authuitu.dll
2011-06-06 16:24 . 2011-06-23 18:30 36160 ----a-w- c:\windows\system32\uxtuneup.dll
2011-06-06 16:23 . 2011-06-23 18:30 29504 ----a-w- c:\windows\SysWow64\uxtuneup.dll
2011-06-03 05:57 . 2011-07-13 15:47 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2011-05-24 17:14 . 2011-06-07 11:33 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-05-21 06:01 . 2009-12-11 16:15 61544 ----a-w- c:\windows\system32\nvshext.dll
2011-05-21 06:01 . 2009-12-11 07:15 6300776 ----a-w- c:\windows\system32\nvcpl.dll
2011-05-21 06:01 . 2009-12-11 07:15 326760 ----a-w- c:\windows\system32\nvhotkey.dll
2011-05-21 06:01 . 2009-12-11 07:15 3040872 ----a-w- c:\windows\system32\nvsvc64.dll
2011-05-21 06:01 . 2009-12-11 07:15 2560616 ----a-w- c:\windows\system32\nvsvcr.dll
2011-05-21 06:01 . 2009-12-11 07:15 117864 ----a-w- c:\windows\system32\nvmctray.dll
2011-05-21 06:01 . 2009-12-11 07:15 1016936 ----a-w- c:\windows\system32\nvvsvc.exe
2011-05-21 06:01 . 2009-12-10 23:15 8863336 ----a-w- c:\windows\system32\nvwgf2umx.dll
2011-05-21 06:01 . 2009-12-10 23:15 2644584 ----a-w- c:\windows\system32\nvapi64.dll
2011-05-21 06:01 . 2009-12-10 23:15 2335848 ----a-w- c:\windows\SysWow64\nvapi.dll
2011-05-21 06:01 . 2009-12-10 23:15 15223912 ----a-w- c:\windows\system32\nvd3dumx.dll
2011-05-20 20:35 . 2011-05-20 20:35 304744 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2011-05-03 05:29 . 2011-06-16 18:39 976896 ----a-w- c:\windows\system32\inetcomm.dll
2011-05-03 04:30 . 2011-06-16 18:39 741376 ----a-w- c:\windows\SysWow64\inetcomm.dll
2011-05-02 23:35 . 2011-05-02 23:35 4399080 ----a-w- c:\windows\system32\ffmpeg.dll
2011-05-02 23:17 . 2011-05-02 23:17 1454705 ----a-w- c:\windows\system32\ffmpegmt.dll
2011-05-02 23:11 . 2011-05-02 23:11 4785664 ----a-w- c:\windows\system32\ffdshow.ax
2011-05-02 23:05 . 2011-05-02 23:05 3661824 ----a-w- c:\windows\SysWow64\ffdshow.ax
2011-05-02 22:30 . 2011-05-02 22:30 1144147 ----a-w- c:\windows\SysWow64\ffmpegmt.dll
2011-05-02 22:27 . 2011-05-02 22:27 3935545 ----a-w- c:\windows\SysWow64\ffmpeg.dll
2011-05-02 20:23 . 2011-05-02 20:23 324096 ----a-w- c:\windows\SysWow64\TomsMoComp_ff.dll
2011-05-02 20:19 . 2011-05-02 20:19 100352 ----a-w- c:\windows\SysWow64\ff_wmv9.dll
2011-05-02 20:19 . 2011-05-02 20:19 80896 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2011-05-02 19:54 . 2011-05-02 19:54 116224 ----a-w- c:\windows\system32\ff_wmv9.dll
2011-05-02 19:54 . 2011-05-02 19:54 155136 ----a-w- c:\windows\system32\ff_libmad.dll
2011-05-02 19:54 . 2011-05-02 19:54 105472 ----a-w- c:\windows\system32\ff_liba52.dll
2011-05-02 19:54 . 2011-05-02 19:54 1533440 ----a-w- c:\windows\system32\ff_samplerate.dll
2011-05-02 19:54 . 2011-05-02 19:54 222720 ----a-w- c:\windows\system32\ff_libdts.dll
2011-05-02 19:53 . 2011-05-02 19:53 168448 ----a-w- c:\windows\system32\ff_unrar.dll
2011-05-02 19:52 . 2011-05-02 19:52 347136 ----a-w- c:\windows\system32\ff_libfaad2.dll
2011-05-02 19:52 . 2011-05-02 19:52 190464 ----a-w- c:\windows\system32\libmpeg2_ff.dll
2011-05-02 19:52 . 2011-05-02 19:52 477184 ----a-w- c:\windows\system32\ff_kernelDeint.dll
2011-05-02 19:34 . 2011-05-02 19:34 621568 ----a-w- c:\windows\system32\TomsMoComp_ff.dll
2011-04-29 03:06 . 2011-06-16 18:39 467456 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-29 03:05 . 2011-06-16 18:39 410112 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-29 03:05 . 2011-06-16 18:39 168448 ----a-w- c:\windows\system32\drivers\srvnet.sys
2003-05-23 13:56 . 2011-06-25 22:40 41472 ------w- c:\program files (x86)\DrvMgt.dll
2003-05-23 13:56 . 2011-06-25 22:40 12400 ------w- c:\program files (x86)\SECDRV.SYS
.
.
((((((((((((((((((((((((((((( SnapShot@2011-07-26_19.29.49 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-07-26 20:48 . 2011-07-26 20:48 13384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat
- 2011-07-26 19:26 . 2011-07-26 19:26 13384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat
- 2009-07-14 04:54 . 2011-07-26 19:27 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2011-07-26 20:49 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2011-07-26 19:27 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-07-26 20:49 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2011-07-26 19:27 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2011-07-26 20:49 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-09-16 19:19 . 2011-07-26 20:28 40624 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2011-07-26 20:28 38614 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2011-06-06 05:34 . 2011-07-26 20:28 9972 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-156553736-788906822-3014006816-1001_UserData.bin
- 2011-07-26 19:27 . 2011-07-26 19:27 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2011-07-26 20:49 . 2011-07-26 20:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2011-07-26 19:27 . 2011-07-26 19:27 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-07-26 20:49 . 2011-07-26 20:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2009-07-14 05:01 . 2011-07-26 19:26 229036 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2011-07-26 20:48 229036 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2011-06-09 08:55 . 2011-07-26 20:48 2092840 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-156553736-788906822-3014006816-1001-8192.dat
- 2011-06-09 08:55 . 2011-07-26 19:26 2092840 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-156553736-788906822-3014006816-1001-8192.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2010-12-09 11:51 3911776 ----a-w- c:\program files (x86)\ConduitEngine\ConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files (x86)\ConduitEngine\ConduitEngine.dll" [2010-12-09 3911776]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-01-20 1305408]
"Syncables"="c:\program files (x86)\syncables\syncables desktop\Syncables.exe" [2010-04-05 370480]
"AutoStartNPSAgent"="c:\program files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe" [2010-07-04 95576]
"SpywareTerminatorUpdate"="c:\program files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe" [2011-07-26 3318784]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"Boingo Wi-Fi"="c:\program files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk" [2010-09-16 2429]
"ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2009-10-27 6998656]
"ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2009-08-20 170624]
"HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
FancyStart daemon.lnk - c:\windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe [2010-9-16 12862]
SRS Premium Sound.lnk - c:\windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe [2010-9-16 156952]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NISx64\1206000.01D\SYMDS64.SYS [x]
S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NISx64\1206000.01D\SYMEFA64.SYS [x]
S1 BHDrvx64;BHDrvx64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20100810.004\BHDrvx64.sys [2010-08-09 945200]
S1 IDSVia64;IDSVia64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20100706.002\IDSVia64.sys [2010-06-27 463408]
S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NISx64\1206000.01D\Ironx64.SYS [x]
S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\NISx64\1206000.01D\SYMNETS.SYS [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [x]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
S2 GJService;Game Jackal Server;c:\program files (x86)\SlySoft\Game Jackal v4\Server.exe [2010-09-18 2063808]
S2 NIS;Norton Internet Security;c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe [2011-04-17 130008]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-05-21 2214504]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
S2 sp_rsdrv2;Spyware Terminator Driver Filter;c:\windows\system32\DRIVERS\stflt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-05-20 378472]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-06-06 2026304]
S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-07-26 136824]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856]
.
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B]
@="{6D4133E5-0742-4ADC-8A8C-9303440F7190}"
[HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}]
2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O]
@="{64174815-8D98-4CE6-8646-4C039977D808}"
[HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}]
2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"combofix"="c:\combofix\CF1947.cfxxe" [X]
"ASUS WebStorage"="c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe" [2010-03-16 1754448]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-09-30 621440]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-09-01 323584]
"fssui"="c:\program files (x86)\Windows Live\Family Safety\fsui.exe" [2008-12-08 453984]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Crawler Search - tbr:iemenu
TCP: DhcpNameServer = 10.0.0.138
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~2\Crawler\Toolbar\ctbr.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\NIS]
"ImagePath"="\"c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\ccSvcHst.exe\" /s \"NIS\" /m \"c:\program files (x86)\Norton Internet Security\Engine\18.6.0.29\diMaster.dll\" /prefetch:1"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\ASUS\SmartLogon\sensorsrv.exe
c:\program files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
.
**************************************************************************
.
Celkový čas: 2011-07-26 23:10:58 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-26 21:10
ComboFix2.txt 2011-07-26 19:48
.
Před spuštěním: 6 021 005 312
Po spuštění: 5 797 322 752
.
- - End Of File - - E0051915E435AB9091EA239500C67AFC
Re: dalsi blbec co se nachytal - vir FB
Jak se chova PC 

Re: dalsi blbec co se nachytal - vir FB
vypada celkem v poradku mam este neco udelat ? este se chci zeptat muzu pak na ucet na fb ? ikdyz je podle vseho infikovany ? nemuzu si ho pak zase pouhym nactenim tohoto uctu zase natahnout zpatky ?
Re: dalsi blbec co se nachytal - vir FB
Tak jeste uklidime
Odinstalujte Combofix
T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner (viz muj podpis)
Panel čistič
Na FB pak muzete bez obav, PC je ciste...Pokud zas nebudete klikat pokud vam to zase dojde, tak v poradku
Napiste co PC


- Prejmenujte ComboFix na Uninstall
- Spustte jej
- Tohle smaze Combofix a jeho slozky

- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy


Re: dalsi blbec co se nachytal - vir FB
vypada to ze je vsechno v poradku
i stranka fb se mi nacetla a zatim nepozoruji zadny odchylky od normalu je sice pravda ze se mi zasekne pocitac ale to bylo uz driv kvuli vadnemu ovladaci na graficke karte a nemuzu tento problem zatim nijak odstranit uz sem vyzkousel nekolik ovladacu a zatim bezvysledne aniz bych musel preinstalovat OS. Jinak dekuju za pomoct 

