Prosím o kontrolu logu - Avast Enhanced protection mode
Napsal: 26 lis 2011 09:19
Ahoj.
Holka prý chytla na svém PC něco z Facebooku a ten počítač je asi pořádně zavirovaný.
Po pokusu o otevření AVASTu vyskočí u hodin červené okno Avast - Enhanced protection mode.
Prosím o kontrolu logu a o pomoc. Děkuji
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702
Run by Rothová at 9:09:09 on 2011-11-26
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.510.93 [GMT 1:00]
.
AV: avast! antivirus 4.8.1229 [VPS 090429-0] *Enabled/Outdated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Rothová\Dokumenty\soud\TomTom HOME 2\TomTomHOMERunner.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\update.5.0\svchost.exe srv
C:\WINDOWS\update.2\svchost.exe srv
"C:\WINDOWS\update.5.0\svchost.exe" stand
C:\WINDOWS\System32\PAStiSvc.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\Documents and Settings\Rothová\Dokumenty\soud\TomTom HOME 2\TomTomHOMEService.exe
svchost.exe
"C:\WINDOWS\update.2\svchost.exe" stand
"C:\WINDOWS\update.2\svchost.exe" spamer
"C:\WINDOWS\update.2\svchost.exe" spamer
"C:\WINDOWS\update.2\svchost.exe" spamer
"C:\WINDOWS\update.2\svchost.exe" spamer
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\totalcmd\TOTALCMD.EXE
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.seznam.cz/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&s ... f8&oe=utf8
uInternet Connection Wizard,ShellNext = iexplore
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
uURLSearchHooks: H - No File
uURLSearchHooks: H - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: EWPBrowseObject Class: {68f9551e-0411-48e4-9aaf-4bc42a6a46be} - c:\program files\canon\easy-webprint\EWPBrowseLoader.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: QUICKfind BHO Object: {c08df07a-3e49-4e25-9ab0-d3882835f153} - c:\progra~1\textware\quickf~1\plugins\IEHelp.dll
BHO: GretechBHO Class: {f0181c6e-9218-4792-9f3c-e8df52b2f1ac} - c:\program files\gretech\gompicker\GomPickerBHO.dll
TB: Easy-WebPrint: {327c2873-e90d-4c37-aa9d-10ac9baba46c} - c:\program files\canon\easy-webprint\Toolband.dll
TB: Steganos Password Manager Toolbar: {9c65d12d-cf9d-454d-8049-61965d8c6fff} - c:\program files\steganos password manager 12\SPMIEToolbar.dll
TB: {855F3B16-6D32-4FE6-8A56-BBB695989046} - No File
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [TomTomHOME.exe] "c:\documents and settings\rothová\dokumenty\soud\tomtom home 2\TomTomHOMERunner.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [5270354.exe] "c:\docume~1\rothov~1\locals~1\temp\5270354.exe"
mRun: [sysdriver32.exe] "c:\windows\sysdriver32.exe" rezerv
mRun: [sysdriver32_.exe] "c:\windows\sysdriver32_.exe" rezerv
mRun: [1890357.exe] "c:\windows\temp\1890357.exe"
mRun: [6576306.exe] "c:\windows\temp\6576306.exe"
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\alluse~1\nabdka~1\programy\posput~1\mcafee~1.lnk - c:\program files\mcafee security scan\2.0.181\SSScheduler.exe
StartupFolder: c:\docume~1\alluse~1\nabdka~1\programy\posput~1\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
mPolicies-system: EnableSecureUIAPaths = 0 (0x0)
IE: &ICQ Toolbar Search - c:\program files\icqtoolbar\toolbaru.dll/SEARCH.HTML
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
IE: {B863453A-26C3-4e1f-A54D-A2CD196348E9} - c:\program files\icqlite\ICQLite.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {024538B9-3F39-49FF-9503-975F743210FA} - {9C65D12D-CF9D-454d-8049-61965D8C6FFF} - c:\program files\steganos password manager 12\SPMIEToolbar.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{9FED6370-699D-416A-B2C9-2EE6275039E7} : DhcpNameServer = 192.168.1.1
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Notify: AtiExtEvent - Ati2evxx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
LSA: Authentication Packages = msv1_0 nwprovau
.
============= SERVICES / DRIVERS ===============
.
R2 srvbtcclient;srvbtcclient;c:\windows\update.5.0\svchost.exe srv --> c:\windows\update.5.0\svchost.exe srv [?]
R2 srviecheck;srviecheck;c:\windows\update.2\svchost.exe srv --> c:\windows\update.2\svchost.exe srv [?]
R2 TomTomHOMEService;TomTomHOMEService;c:\documents and settings\rothová\dokumenty\soud\tomtom home 2\TomTomHOMEService.exe [2011-3-9 92592]
R3 PSched;Plánovač paketů technologie QoS;c:\windows\system32\drivers\psched.sys [2001-10-25 69120]
S2 gupdate1c9c5b316c755b0;Služba Google Update (gupdate1c9c5b316c755b0);c:\program files\google\update\GoogleUpdate.exe [2009-4-25 133104]
S2 srvsysdriver32;srvsysdriver32;c:\windows\sysdriver32.exe srv --> c:\windows\sysdriver32.exe srv [?]
S3 AME;PC Camera(6029 CIF);c:\windows\system32\drivers\pfc027.sys [2005-2-24 162176]
S3 CoachVid;CoachVid;c:\windows\system32\drivers\CoachVid.sys [2008-10-5 45344]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2009-4-25 133104]
S3 MBAMSwissArmy;MBAMSwissArmy;\??\c:\windows\system32\drivers\mbamswissarmy.sys --> c:\windows\system32\drivers\mbamswissarmy.sys [?]
S3 McComponentHostService;McAfee Security Scan Component Host Service;"c:\program files\mcafee security scan\2.0.181\mcchsvc.exe" --> c:\program files\mcafee security scan\2.0.181\McCHSvc.exe [?]
S3 PAC207;SoC PC-Camer@;c:\windows\system32\drivers\pfc027.sys [2005-2-24 162176]
S3 TrueSight;TrueSight;c:\windows\system32\drivers\TrueSight.sys [2011-11-26 111872]
.
=============== Created Last 30 ================
.
2011-11-26 06:15:52 -------- d-----w- c:\windows\rpcminer
2011-11-26 06:15:52 -------- d-----w- c:\windows\phoenix
2011-11-26 06:13:10 -------- d--h--w- c:\windows\update.2
2011-11-26 06:11:21 -------- d-----w- c:\program files\Loaris
2011-11-26 06:10:15 -------- d--h--w- c:\windows\update.5.0
2011-11-26 06:09:30 257024 ----a-w- c:\windows\sysdriver32_.exe
2011-11-26 06:09:16 257024 ----a-w- c:\windows\sysdriver32.exe
2011-11-26 00:17:35 111872 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2011-11-25 22:53:32 -------- dcsha-r- C:\cmdcons
2011-11-25 22:48:19 256000 ----a-w- c:\windows\PEV.exe
2011-11-25 22:48:19 208896 ----a-w- c:\windows\MBR.exe
2011-11-25 22:48:18 98816 ----a-w- c:\windows\sed.exe
2011-11-25 22:48:18 518144 ----a-w- c:\windows\SWREG.exe
2011-11-25 20:03:54 -------- d-----w- c:\documents and settings\rothová\data aplikací\Malwarebytes
2011-11-25 20:03:36 -------- dc----w- c:\documents and settings\all users\data aplikací\Malwarebytes
2011-11-25 20:03:32 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-11-25 20:03:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-11-25 19:31:09 -------- d-----w- c:\program files\PC Tools Security
2011-11-25 19:31:09 -------- d-----w- c:\program files\common files\PC Tools
2011-11-25 19:29:18 -------- dc----w- c:\documents and settings\all users\data aplikací\PC Tools
2011-10-29 07:05:10 -------- d-----w- c:\program files\AMD APP
2011-10-29 07:05:01 -------- d-----w- c:\program files\ATI
2011-10-29 06:54:24 -------- dc----w- C:\ATI
2011-10-29 06:48:59 -------- d-----w- c:\windows\ufa
2011-10-28 09:07:07 246272 ----a-w- c:\windows\unrar.exe
2011-10-28 09:02:40 -------- d--h--w- c:\windows\update.tray-9-0-lnk
2011-10-28 09:02:40 -------- d--h--w- c:\windows\update.tray-9-0
2011-10-28 09:02:39 -------- d--h--w- c:\windows\update.tray-7-0-lnk
2011-10-28 09:02:39 -------- d--h--w- c:\windows\update.tray-7-0
.
==================== Find3M ====================
.
2011-10-10 14:22:49 692736 ----a-w- c:\windows\system32\inetcomm.dll
2011-09-28 07:06:47 602112 ----a-w- c:\windows\system32\crypt32.dll
2011-09-26 09:41:42 613376 -c--a-w- c:\windows\system32\uiautomationcore.dll
2011-09-26 09:41:42 22528 -c--a-w- c:\windows\system32\oleaccrc.dll
2011-09-26 09:41:20 220160 -c--a-w- c:\windows\system32\oleacc.dll
2011-09-18 07:58:20 737280 -c--a-w- c:\windows\iun6002.exe
2011-09-06 14:10:02 1858944 ----a-w- c:\windows\system32\win32k.sys
2003-10-31 03:38:11 151552 -c--a-w- c:\program files\RunGame.exe
2003-10-31 03:30:12 4000458 -c--a-w- c:\program files\Speed.exe
2002-02-23 10:07:40 4231168 -c--a-w- c:\program files\game.exe
.
============= FINISH: 9:09:25,43 ===============
Holka prý chytla na svém PC něco z Facebooku a ten počítač je asi pořádně zavirovaný.
Po pokusu o otevření AVASTu vyskočí u hodin červené okno Avast - Enhanced protection mode.
Prosím o kontrolu logu a o pomoc. Děkuji
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702
Run by Rothová at 9:09:09 on 2011-11-26
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.510.93 [GMT 1:00]
.
AV: avast! antivirus 4.8.1229 [VPS 090429-0] *Enabled/Outdated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Rothová\Dokumenty\soud\TomTom HOME 2\TomTomHOMERunner.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\update.5.0\svchost.exe srv
C:\WINDOWS\update.2\svchost.exe srv
"C:\WINDOWS\update.5.0\svchost.exe" stand
C:\WINDOWS\System32\PAStiSvc.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\Documents and Settings\Rothová\Dokumenty\soud\TomTom HOME 2\TomTomHOMEService.exe
svchost.exe
"C:\WINDOWS\update.2\svchost.exe" stand
"C:\WINDOWS\update.2\svchost.exe" spamer
"C:\WINDOWS\update.2\svchost.exe" spamer
"C:\WINDOWS\update.2\svchost.exe" spamer
"C:\WINDOWS\update.2\svchost.exe" spamer
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\totalcmd\TOTALCMD.EXE
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.seznam.cz/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&s ... f8&oe=utf8
uInternet Connection Wizard,ShellNext = iexplore
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
uURLSearchHooks: H - No File
uURLSearchHooks: H - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: EWPBrowseObject Class: {68f9551e-0411-48e4-9aaf-4bc42a6a46be} - c:\program files\canon\easy-webprint\EWPBrowseLoader.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: QUICKfind BHO Object: {c08df07a-3e49-4e25-9ab0-d3882835f153} - c:\progra~1\textware\quickf~1\plugins\IEHelp.dll
BHO: GretechBHO Class: {f0181c6e-9218-4792-9f3c-e8df52b2f1ac} - c:\program files\gretech\gompicker\GomPickerBHO.dll
TB: Easy-WebPrint: {327c2873-e90d-4c37-aa9d-10ac9baba46c} - c:\program files\canon\easy-webprint\Toolband.dll
TB: Steganos Password Manager Toolbar: {9c65d12d-cf9d-454d-8049-61965d8c6fff} - c:\program files\steganos password manager 12\SPMIEToolbar.dll
TB: {855F3B16-6D32-4FE6-8A56-BBB695989046} - No File
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [TomTomHOME.exe] "c:\documents and settings\rothová\dokumenty\soud\tomtom home 2\TomTomHOMERunner.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [5270354.exe] "c:\docume~1\rothov~1\locals~1\temp\5270354.exe"
mRun: [sysdriver32.exe] "c:\windows\sysdriver32.exe" rezerv
mRun: [sysdriver32_.exe] "c:\windows\sysdriver32_.exe" rezerv
mRun: [1890357.exe] "c:\windows\temp\1890357.exe"
mRun: [6576306.exe] "c:\windows\temp\6576306.exe"
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\alluse~1\nabdka~1\programy\posput~1\mcafee~1.lnk - c:\program files\mcafee security scan\2.0.181\SSScheduler.exe
StartupFolder: c:\docume~1\alluse~1\nabdka~1\programy\posput~1\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
mPolicies-system: EnableSecureUIAPaths = 0 (0x0)
IE: &ICQ Toolbar Search - c:\program files\icqtoolbar\toolbaru.dll/SEARCH.HTML
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
IE: {B863453A-26C3-4e1f-A54D-A2CD196348E9} - c:\program files\icqlite\ICQLite.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {024538B9-3F39-49FF-9503-975F743210FA} - {9C65D12D-CF9D-454d-8049-61965D8C6FFF} - c:\program files\steganos password manager 12\SPMIEToolbar.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{9FED6370-699D-416A-B2C9-2EE6275039E7} : DhcpNameServer = 192.168.1.1
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Notify: AtiExtEvent - Ati2evxx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
LSA: Authentication Packages = msv1_0 nwprovau
.
============= SERVICES / DRIVERS ===============
.
R2 srvbtcclient;srvbtcclient;c:\windows\update.5.0\svchost.exe srv --> c:\windows\update.5.0\svchost.exe srv [?]
R2 srviecheck;srviecheck;c:\windows\update.2\svchost.exe srv --> c:\windows\update.2\svchost.exe srv [?]
R2 TomTomHOMEService;TomTomHOMEService;c:\documents and settings\rothová\dokumenty\soud\tomtom home 2\TomTomHOMEService.exe [2011-3-9 92592]
R3 PSched;Plánovač paketů technologie QoS;c:\windows\system32\drivers\psched.sys [2001-10-25 69120]
S2 gupdate1c9c5b316c755b0;Služba Google Update (gupdate1c9c5b316c755b0);c:\program files\google\update\GoogleUpdate.exe [2009-4-25 133104]
S2 srvsysdriver32;srvsysdriver32;c:\windows\sysdriver32.exe srv --> c:\windows\sysdriver32.exe srv [?]
S3 AME;PC Camera(6029 CIF);c:\windows\system32\drivers\pfc027.sys [2005-2-24 162176]
S3 CoachVid;CoachVid;c:\windows\system32\drivers\CoachVid.sys [2008-10-5 45344]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2009-4-25 133104]
S3 MBAMSwissArmy;MBAMSwissArmy;\??\c:\windows\system32\drivers\mbamswissarmy.sys --> c:\windows\system32\drivers\mbamswissarmy.sys [?]
S3 McComponentHostService;McAfee Security Scan Component Host Service;"c:\program files\mcafee security scan\2.0.181\mcchsvc.exe" --> c:\program files\mcafee security scan\2.0.181\McCHSvc.exe [?]
S3 PAC207;SoC PC-Camer@;c:\windows\system32\drivers\pfc027.sys [2005-2-24 162176]
S3 TrueSight;TrueSight;c:\windows\system32\drivers\TrueSight.sys [2011-11-26 111872]
.
=============== Created Last 30 ================
.
2011-11-26 06:15:52 -------- d-----w- c:\windows\rpcminer
2011-11-26 06:15:52 -------- d-----w- c:\windows\phoenix
2011-11-26 06:13:10 -------- d--h--w- c:\windows\update.2
2011-11-26 06:11:21 -------- d-----w- c:\program files\Loaris
2011-11-26 06:10:15 -------- d--h--w- c:\windows\update.5.0
2011-11-26 06:09:30 257024 ----a-w- c:\windows\sysdriver32_.exe
2011-11-26 06:09:16 257024 ----a-w- c:\windows\sysdriver32.exe
2011-11-26 00:17:35 111872 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2011-11-25 22:53:32 -------- dcsha-r- C:\cmdcons
2011-11-25 22:48:19 256000 ----a-w- c:\windows\PEV.exe
2011-11-25 22:48:19 208896 ----a-w- c:\windows\MBR.exe
2011-11-25 22:48:18 98816 ----a-w- c:\windows\sed.exe
2011-11-25 22:48:18 518144 ----a-w- c:\windows\SWREG.exe
2011-11-25 20:03:54 -------- d-----w- c:\documents and settings\rothová\data aplikací\Malwarebytes
2011-11-25 20:03:36 -------- dc----w- c:\documents and settings\all users\data aplikací\Malwarebytes
2011-11-25 20:03:32 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-11-25 20:03:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-11-25 19:31:09 -------- d-----w- c:\program files\PC Tools Security
2011-11-25 19:31:09 -------- d-----w- c:\program files\common files\PC Tools
2011-11-25 19:29:18 -------- dc----w- c:\documents and settings\all users\data aplikací\PC Tools
2011-10-29 07:05:10 -------- d-----w- c:\program files\AMD APP
2011-10-29 07:05:01 -------- d-----w- c:\program files\ATI
2011-10-29 06:54:24 -------- dc----w- C:\ATI
2011-10-29 06:48:59 -------- d-----w- c:\windows\ufa
2011-10-28 09:07:07 246272 ----a-w- c:\windows\unrar.exe
2011-10-28 09:02:40 -------- d--h--w- c:\windows\update.tray-9-0-lnk
2011-10-28 09:02:40 -------- d--h--w- c:\windows\update.tray-9-0
2011-10-28 09:02:39 -------- d--h--w- c:\windows\update.tray-7-0-lnk
2011-10-28 09:02:39 -------- d--h--w- c:\windows\update.tray-7-0
.
==================== Find3M ====================
.
2011-10-10 14:22:49 692736 ----a-w- c:\windows\system32\inetcomm.dll
2011-09-28 07:06:47 602112 ----a-w- c:\windows\system32\crypt32.dll
2011-09-26 09:41:42 613376 -c--a-w- c:\windows\system32\uiautomationcore.dll
2011-09-26 09:41:42 22528 -c--a-w- c:\windows\system32\oleaccrc.dll
2011-09-26 09:41:20 220160 -c--a-w- c:\windows\system32\oleacc.dll
2011-09-18 07:58:20 737280 -c--a-w- c:\windows\iun6002.exe
2011-09-06 14:10:02 1858944 ----a-w- c:\windows\system32\win32k.sys
2003-10-31 03:38:11 151552 -c--a-w- c:\program files\RunGame.exe
2003-10-31 03:30:12 4000458 -c--a-w- c:\program files\Speed.exe
2002-02-23 10:07:40 4231168 -c--a-w- c:\program files\game.exe
.
============= FINISH: 9:09:25,43 ===============