Stránka 1 z 1

Facebook vir (prosím o kontrolu logu)

Napsal: 27 říj 2011 23:05
od mojzma
Logfile of random's system information tool 1.09 (written by random/random)
Run by Michaela at 2011-10-27 23:55:36
Microsoft Windows 7 Starter Service Pack 1
System drive C: has 246 GB (84%) free of 292 GB
Total RAM: 1012 MB (43% free)

HijackThis download failed

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1984498578-2152136057-4046080582-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1984498578-2152136057-4046080582-1000UA.job
C:\Windows\tasks\Packard Bell Registration - Reminder Recall task.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files\Bluetooth Suite\IEPlugIn.dll [2011-01-21 60576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-11-06 283160]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-02-11 10025576]
"Norton Online Backup"=C:\Program Files\Symantec\Norton Online Backup\NOBuClient.exe [2010-06-02 966488]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-01-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-01-11 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-01-11 150552]
"LManager"=C:\Program Files\Launch Manager\LManager.exe [2011-03-14 1081424]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-10-08 1934632]
"AtherosBtStack"=C:\Program Files\Bluetooth Suite\BtvStack.exe [2011-01-21 490656]
"AthBtTray"=C:\Program Files\Bluetooth Suite\AthBtTray.exe [2011-01-21 302240]
"Power Management"=C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [2011-02-23 715368]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-07-29 497648]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-10-11 14940040]
"Google Update"=C:\Users\Michaela\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-16 136176]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-10-24 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"midi1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2011-10-27 23:55:39 ----D---- C:\Program Files\trend micro
2011-10-27 23:55:36 ----D---- C:\rsit
2011-10-27 22:31:42 ----D---- C:\Windows\Minidump
2011-10-27 17:11:41 ----HD---- C:\Windows\update.1
2011-10-23 10:55:58 ----A---- C:\Windows\system32\sho819F.tmp
2011-10-22 20:44:32 ----A---- C:\Windows\system32\sho31FB.tmp
2011-10-16 11:09:01 ----A---- C:\Windows\system32\sho930C.tmp
2011-10-15 14:19:18 ----A---- C:\Windows\system32\sho9731.tmp
2011-10-14 17:45:05 ----A---- C:\Windows\system32\sho22AC.tmp
2011-10-13 19:02:35 ----A---- C:\Windows\system32\shoDB03.tmp
2011-10-10 21:04:28 ----A---- C:\Windows\system32\sho5BB8.tmp
2011-10-08 23:31:36 ----A---- C:\Windows\system32\shoBF8A.tmp
2011-10-08 11:43:15 ----A---- C:\Windows\ntbtlog.txt
2011-10-08 00:35:28 ----A---- C:\Windows\system32\shoF3EF.tmp
2011-10-04 18:21:51 ----A---- C:\Windows\system32\shoE12A.tmp
2011-10-02 13:49:21 ----A---- C:\Windows\system32\sho69CB.tmp
2011-10-01 13:43:12 ----A---- C:\Windows\system32\shoB01E.tmp

======List of files/folders modified in the last 1 month======

2011-10-28 08:29:14 ----D---- C:\Windows\Tasks
2011-10-28 08:29:14 ----D---- C:\Windows\system32\wfp
2011-10-28 08:29:14 ----D---- C:\Windows\system32\Tasks
2011-10-28 08:29:14 ----D---- C:\Windows\system32\NDF
2011-10-28 08:29:14 ----D---- C:\Windows\system32\DriverStore
2011-10-28 08:29:14 ----D---- C:\Windows\system32\catroot2
2011-10-28 08:29:14 ----D---- C:\Windows\System32
2011-10-28 08:29:13 ----D---- C:\Windows\inf
2011-10-28 08:29:13 ----D---- C:\Program Files\Microsoft Security Client
2011-10-28 08:29:11 ----D---- C:\Windows\system32\wbem
2011-10-28 08:29:11 ----D---- C:\Windows\registration
2011-10-28 08:27:21 ----SHD---- C:\System Volume Information
2011-10-28 08:27:21 ----D---- C:\Windows\Logs
2011-10-28 08:26:26 ----D---- C:\Windows\system32\LogFiles
2011-10-27 23:55:39 ----RD---- C:\Program Files
2011-10-27 23:55:07 ----D---- C:\Windows\Temp
2011-10-27 23:31:27 ----D---- C:\Windows\system32\config
2011-10-27 22:45:33 ----SD---- C:\Users\Michaela\AppData\Roaming\Microsoft
2011-10-27 22:32:18 ----D---- C:\Users\Michaela\AppData\Roaming\Skype
2011-10-27 22:31:42 ----D---- C:\Windows
2011-10-23 22:08:52 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-10-09 14:08:06 ----D---- C:\Windows\Prefetch
2011-10-01 12:17:45 ----D---- C:\Windows\system32\wdi
2011-09-28 20:23:40 ----D---- C:\ProgramData\Adobe
2011-09-28 20:21:25 ----D---- C:\Users\Michaela\AppData\Roaming\Adobe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2010-11-06 354840]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R1 MpKsl2a4ce9ee;MpKsl2a4ce9ee; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{DEDF807D-D26C-457D-A2F6-5792BDCF21FF}\MpKsl2a4ce9ee.sys [2011-10-27 28752]
R1 MpKsl985fa48b;MpKsl985fa48b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{95BC9CF1-9AA4-484F-A1DE-54D7B1505E5C}\MpKsl985fa48b.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2010-07-15 1906024]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2011-01-21 24736]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2010-10-24 4807168]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-02-11 3396136]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 43392]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 65024]
R3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2011-03-07 252520]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2010-12-28 327784]
R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2009-12-02 550760]
R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2009-12-02 195944]
R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2009-12-02 21864]
R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2009-12-02 19304]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-10-08 1314736]
S1 MpKsl04fbf3a1;MpKsl04fbf3a1; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{61CDDC1A-EC88-4C6F-B88A-E92B4B590FC1}\MpKsl04fbf3a1.sys []
S1 MpKsl0cbfe5c3;MpKsl0cbfe5c3; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6F191994-276F-4DCF-9C8D-A04E070E6F5B}\MpKsl0cbfe5c3.sys []
S1 MpKsl12356f9c;MpKsl12356f9c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6278209F-2A10-4A7B-A49D-37B6B6CB2EA0}\MpKsl12356f9c.sys []
S1 MpKsl14d66377;MpKsl14d66377; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EA37C03C-80F5-465E-BBAC-4C5FF8B9957F}\MpKsl14d66377.sys []
S1 MpKsl1682f934;MpKsl1682f934; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2EAAAA7F-8692-450A-BF4E-3C33AC438693}\MpKsl1682f934.sys []
S1 MpKsl18f870cc;MpKsl18f870cc; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EA37C03C-80F5-465E-BBAC-4C5FF8B9957F}\MpKsl18f870cc.sys []
S1 MpKsl1f124337;MpKsl1f124337; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{24655B9F-80D6-42B9-807A-50C769CF58A3}\MpKsl1f124337.sys []
S1 MpKsl23276c2f;MpKsl23276c2f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0610317D-5920-4ECD-8775-A256D839D253}\MpKsl23276c2f.sys []
S1 MpKsl23d7daa0;MpKsl23d7daa0; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E6C7B9F6-17D6-4F8B-B7A5-FF510EB56467}\MpKsl23d7daa0.sys []
S1 MpKsl25238fe1;MpKsl25238fe1; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0610317D-5920-4ECD-8775-A256D839D253}\MpKsl25238fe1.sys []
S1 MpKsl2ef17e7d;MpKsl2ef17e7d; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A62F9472-FBE9-4CF2-88BF-CACEDF2EC0CA}\MpKsl2ef17e7d.sys []
S1 MpKsl32d9468f;MpKsl32d9468f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A75F12F5-6C9F-4686-82B1-804CF55220C0}\MpKsl32d9468f.sys []
S1 MpKsl396947af;MpKsl396947af; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2110301D-8DAB-436F-9764-C0F23045642F}\MpKsl396947af.sys []
S1 MpKsl3da8435e;MpKsl3da8435e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EA37C03C-80F5-465E-BBAC-4C5FF8B9957F}\MpKsl3da8435e.sys []
S1 MpKsl4310b9bf;MpKsl4310b9bf; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2EAAAA7F-8692-450A-BF4E-3C33AC438693}\MpKsl4310b9bf.sys []
S1 MpKsl438f29b9;MpKsl438f29b9; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{88550E64-1FEC-49C6-A864-DBA2BCF9AA3B}\MpKsl438f29b9.sys []
S1 MpKsl47e779a8;MpKsl47e779a8; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6278209F-2A10-4A7B-A49D-37B6B6CB2EA0}\MpKsl47e779a8.sys []
S1 MpKsl49b3203f;MpKsl49b3203f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{24C65DB3-DA31-457F-8B65-02F0B41EE085}\MpKsl49b3203f.sys []
S1 MpKsl4a0b1551;MpKsl4a0b1551; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A75F12F5-6C9F-4686-82B1-804CF55220C0}\MpKsl4a0b1551.sys []
S1 MpKsl55e2f05b;MpKsl55e2f05b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{4C2C3C48-CF7C-4E42-946B-FF7E26771778}\MpKsl55e2f05b.sys []
S1 MpKsl600ae168;MpKsl600ae168; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0610317D-5920-4ECD-8775-A256D839D253}\MpKsl600ae168.sys []
S1 MpKsl6c98b1fa;MpKsl6c98b1fa; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{95BC9CF1-9AA4-484F-A1DE-54D7B1505E5C}\MpKsl6c98b1fa.sys []
S1 MpKsl7138104b;MpKsl7138104b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{872BE6D0-A566-402F-A83E-6AA8E57503F3}\MpKsl7138104b.sys []
S1 MpKsl762b13f6;MpKsl762b13f6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A62F9472-FBE9-4CF2-88BF-CACEDF2EC0CA}\MpKsl762b13f6.sys []
S1 MpKsl76bdbaf4;MpKsl76bdbaf4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2110301D-8DAB-436F-9764-C0F23045642F}\MpKsl76bdbaf4.sys []
S1 MpKsl77f67d32;MpKsl77f67d32; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{24655B9F-80D6-42B9-807A-50C769CF58A3}\MpKsl77f67d32.sys []
S1 MpKsl82aa3f92;MpKsl82aa3f92; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{24655B9F-80D6-42B9-807A-50C769CF58A3}\MpKsl82aa3f92.sys []
S1 MpKsl8f27d3d5;MpKsl8f27d3d5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0610317D-5920-4ECD-8775-A256D839D253}\MpKsl8f27d3d5.sys []
S1 MpKsl902fa54c;MpKsl902fa54c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{61CDDC1A-EC88-4C6F-B88A-E92B4B590FC1}\MpKsl902fa54c.sys []
S1 MpKsl9f098103;MpKsl9f098103; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{872BE6D0-A566-402F-A83E-6AA8E57503F3}\MpKsl9f098103.sys []
S1 MpKsla5c8ada6;MpKsla5c8ada6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A75F12F5-6C9F-4686-82B1-804CF55220C0}\MpKsla5c8ada6.sys []
S1 MpKslae0ef57f;MpKslae0ef57f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{CA6A20BC-9663-4E63-A789-CDC951C02861}\MpKslae0ef57f.sys []
S1 MpKslb8e0c32e;MpKslb8e0c32e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A62F9472-FBE9-4CF2-88BF-CACEDF2EC0CA}\MpKslb8e0c32e.sys []
S1 MpKslb9356dcc;MpKslb9356dcc; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{24655B9F-80D6-42B9-807A-50C769CF58A3}\MpKslb9356dcc.sys []
S1 MpKslb94f14fc;MpKslb94f14fc; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{88550E64-1FEC-49C6-A864-DBA2BCF9AA3B}\MpKslb94f14fc.sys []
S1 MpKslbce642e0;MpKslbce642e0; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{24C65DB3-DA31-457F-8B65-02F0B41EE085}\MpKslbce642e0.sys []
S1 MpKslc27b45c7;MpKslc27b45c7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{4C2C3C48-CF7C-4E42-946B-FF7E26771778}\MpKslc27b45c7.sys []
S1 MpKslc9415987;MpKslc9415987; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E611091C-8082-47AB-813A-CB04CC6980F9}\MpKslc9415987.sys []
S1 MpKslca067c2d;MpKslca067c2d; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0F5299FB-813A-4F4B-BF5D-0D968F9686EB}\MpKslca067c2d.sys []
S1 MpKsld9e18b8b;MpKsld9e18b8b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{88550E64-1FEC-49C6-A864-DBA2BCF9AA3B}\MpKsld9e18b8b.sys []
S1 MpKsleb7f320d;MpKsleb7f320d; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{CF884343-7837-4BFE-A2FA-BD4B712F36B1}\MpKsleb7f320d.sys []
S1 MpKslee747784;MpKslee747784; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A75F12F5-6C9F-4686-82B1-804CF55220C0}\MpKslee747784.sys []
S1 MpKslf069f03f;MpKslf069f03f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{CA6A20BC-9663-4E63-A789-CDC951C02861}\MpKslf069f03f.sys []
S1 MpKslf77be1a9;MpKslf77be1a9; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EA37C03C-80F5-465E-BBAC-4C5FF8B9957F}\MpKslf77be1a9.sys []
S1 MpKslfc91ee84;MpKslfc91ee84; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2EAAAA7F-8692-450A-BF4E-3C33AC438693}\MpKslfc91ee84.sys []
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2011-01-21 34976]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2011-01-21 258720]
S3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2011-01-21 175776]
S3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2011-01-21 49312]
S3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2011-01-21 141088]
S3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2011-01-21 241824]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 ivusb;Initio Driver for USB Default Controller; C:\Windows\system32\DRIVERS\ivusb.sys [2010-07-29 25112]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9; c:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [2010-09-30 169408]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 AtherosSvc;AtherosSvc; C:\Program Files\Bluetooth Suite\adminservice.exe [2011-01-21 72864]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files\Launch Manager\dsiwmis.exe [2011-03-14 352336]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [2011-02-23 739944]
R2 GREGService;GREGService; C:\Program Files\Packard Bell\Registration\GREGsvc.exe [2010-01-08 23584]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-11-06 13336]
R2 IconMan_R;IconMan_R; C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2011-03-07 1755136]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2011-01-31 244624]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
R2 NOBU;Norton Online Backup; C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe [2010-06-02 2057560]
R2 sftlist;Application Virtualization Client; C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 208944]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
S3 GamesAppService;GamesAppService; C:\Program Files\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2009-11-19 4640000]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 51040]

-----------------EOF-----------------

Re: Facebook vir (prosím o kontrolu logu)

Napsal: 27 říj 2011 23:59
od motji
Hezký večer :)

:arrow: Stáhněte Roguekiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
-ukončete všechny spuštěné programy
-spusťte program, pro visty/win 7 spustte pravým tlačítkem myši - jako správce
-použijte volbu 2 - enter
-pak použijte postupně i volby 3,4,5
-vložte zde logy



:arrow: Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken

NIC NEMAZAT :!:
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.