Preventivka a dotaz
Napsal: 13 úno 2013 20:08
Ahoj, při používání počítače mi zamrazilo při uvědomění si, že je zde šance, že vzhledem k tomu, že mám webkameru, mě nějaký ten vir sleduje. No mě i manželku popadl šlak, moc tomu nerozumíme a oba máme sklony k úzkostem
Tudíž jsem ihned udělal docela zbrkle scan MWAV chtěl bych se zeptat, jestli mám čistý počítač
Ještě jednou se omlouvám, počítačům opravdu ani jeden nerozumíme a raději se obrátíme na odborníky. Mohl by mi teda někdo vysvětlit, jaká je šance, že se člověku třeba skrz internet někdo dostane do NTB a je schopen sledovat skrz jeho webkameru co dělá ? děkuji!!!
)
13 II 2013 17:28:55 - **********************************************************
13 II 2013 17:28:55 - MWAV - eScanAV AntiVirus Toolkit.
13 II 2013 17:28:55 - Copyright © MicroWorld Technologies
13 II 2013 17:28:55 - **********************************************************
13 II 2013 17:28:55 - Source: C:\DOCUME~1\HONZAK~1\DOKUME~1\STAENS~1\mwav.exe
13 II 2013 17:28:55 - Version 12.0.245 (C:\DOCUMENTS AND SETTINGS\HONZA KOPEJTKO\LOCAL SETTINGS\TEMP\MEXE.COM)
13 II 2013 17:28:55 - Log File: C:\Documents and Settings\HONZA KOPEJTKO\Local Settings\Temp\MWAV.LOG
13 II 2013 17:28:55 - MWAV Registered: TRUE
13 II 2013 17:28:55 - User Account: HONZA KOPEJTKO (Administrator Mode)
13 II 2013 17:28:55 - OS Type: Windows Workstation
13 II 2013 17:28:55 - OS: Windows XP [OS Install Date: 11 Apr 2011 17:00:50]
13 II 2013 17:28:55 - Ver: Service Pack 3 (Build 2600)
13 II 2013 17:28:55 - System Up Time: 1 Hour, 50 Minutes, 23 Seconds
13 II 2013 17:28:55 - Parent Process Name : C:\Documents and Settings\HONZA KOPEJTKO\Dokumenty\Stažené soubory\mwav.exe
13 II 2013 17:28:55 - Windows Root Folder: C:\WINDOWS
13 II 2013 17:28:55 - Windows Sys32 Folder: C:\WINDOWS\system32
13 II 2013 17:28:56 - DHCP NameServer: 10.0.0.138
13 II 2013 17:28:56 - Interface0 DHCPNameServer: 10.0.0.138
13 II 2013 17:28:56 - Local Fixed Drives: c:\,d:\
13 II 2013 17:28:56 - MWAV Mode: Scan and Clean files (for viruses, adware and spyware)
13 II 2013 17:28:56 - [CREATED ZIP FILE: C:\Documents and Settings\HONZA KOPEJTKO\Local Settings\Temp\pinfect.zip]
13 II 2013 17:28:56 - ****** Files/Folders created/modified during last fortnight in Windows and ROOT Folder ******
13 II 2013 17:28:57 - C:\WINDOWS\system32\FlashPlayerApp.exe (697712), 10-Feb-2013, Adobe Systems Incorporated, Adobe Flash Player Control Panel Applet
13 II 2013 17:28:58 - C:\WINDOWS\system32\FlashPlayerCPLApp.cpl (74096), 10-Feb-2013, Adobe Systems Incorporated, Adobe Flash Player Control Panel Applet
13 II 2013 17:28:58 - C:\WINDOWS\system32\FlashPlayerInstaller.exe (16365936), 10-Feb-2013, Adobe Systems Incorporated, Adobe® Flash® Player Installer/Uninstaller
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\bdc.exe (182792), 13-Feb-2013, BitDefender, BitDefender Console Scanner
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\bdfltlib2k.dll (231944), 13-Feb-2013, MicroWorld Technologies Inc., eScan for Windows
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\encdec.dll (223528), 13-Feb-2013, MicroWorld Technologies Inc., eScan/MailScan/eConceal
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\erootdrv.sys (22920), 13-Feb-2013, MicroWorld Technologies Inc., eScan/MWAV
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\mexe.com (760168), 13-Feb-2013, MicroWorld Technologies Inc., MicroWorld AntiVirus Toolkit Utility (MWAV)
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\msvclnt.dll (249128), 13-Feb-2013, MicroWorld Technologies Inc., MailScan
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\mwavdwnl.exe (931112), 13-Feb-2013, MicroWorld Technologies Inc., eScan
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\MWAVSCAN.COM (760168), 13-Feb-2013, MicroWorld Technologies Inc., MicroWorld AntiVirus Toolkit Utility (MWAV)
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\red32.dll (11048), 13-Feb-2013, Microsoft Corporation, Microsoft® Windows® Operating System
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\Reload.exe (184104), 13-Feb-2013, MicroWorld Technologies Inc., eScan for Windows
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\setpriv.exe (82216), 13-Feb-2013, MicroWorld Technologies Inc., eScan AntiVirus Toolkit Utility
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\trufos.dll (353792), 13-Feb-2013, MicroWorld Technologies Inc., eScan for Windows
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\unregx.exe (93480), 13-Feb-2013, MicroWorld Technologies Inc., MicroWorld AntiVirus Toolkit Utility
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\viewtcp.exe (576296), 13-Feb-2013, MicroWorld Technologies Inc., ViewTCP
13 II 2013 17:28:58 - C:\WINDOWS\$hf_mig$, 12-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\$NtUninstallWdf01009$, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\$NtUninstallXPSEPSCLP$, 12-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\Fonts, 11-Apr-2011 [SR] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\inf, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\system32\dllcache, 11-Apr-2011 [HSR] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\system32\Microsoft, 11-Apr-2011 [S] [Folder]
13 II 2013 17:28:58 - C:\MSOCache, 12-Apr-2011 [HR] [Folder]
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\plugins, 13-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\plugtmp-10, 11-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\plugtmp-11, 12-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\plugtmp-9, 11-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\Microsoft, 11-Apr-2011 [S] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Data aplikací, 11-Apr-2011 [HR] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Local Settings, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Okolní síť, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Okolní tiskárny, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Recent, 17-Jul-2012 [HR] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\SendTo, 11-Apr-2011 [HR] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\UserData, 01-Jan-2013 [S] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Šablony, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\Microsoft, 11-Apr-2011 [S] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\MicroWorld, 13-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\..\Data aplikací, 11-Apr-2011 [HR] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\..\DRM, 11-Apr-2011 [HS] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\..\Šablony, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Program Files\WindowsUpdate, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - *********************************************************************************************
13 II 2013 17:28:58 - Latest Date of files inside MWAV: Mon Jun 18 13:59:57 2012.
13 II 2013 17:28:58 - Plugins FileCount: 916 Sign Version: 7.42646
13 II 2013 17:29:00 - ** Changed Value of "HKEY_CLASSES_ROOT\.htm" from "FirefoxHTML" to "htmlfile"
13 II 2013 17:29:00 - ** Changed Value of "HKEY_CLASSES_ROOT\.html" from "FirefoxHTML" to "htmlfile"
13 II 2013 17:29:00 - Loading/Creating FileScan Database C:\Documents and Settings\All Users\Data aplikací\MicroWorld\MWAV\ESCANDBX.MDB [Log: C:\Documents and Settings\HONZA KOPEJTKO\Local Settings\Temp\ESCANDB.LOG]
13 II 2013 17:29:01 - Loaded/Created FileScan Database...
13 II 2013 17:29:01 - Loading AV Library [DB]...
13 II 2013 17:29:21 - ArchiveScan: DISABLED
13 II 2013 17:29:27 - AV Library Loaded [DB-DIRECT].
13 II 2013 17:29:27 - MWAV doing self scanning...
13 II 2013 17:29:27 - MWAV files are clean.
13 II 2013 17:30:43 - ArchiveScan: DISABLED
13 II 2013 17:30:43 - Virus Database Date: 18 Jun 2012
13 II 2013 17:30:43 - Virus Database Count: 7305297
13 II 2013 17:30:49 - Downloading AntiVirus and Anti-Spyware Databases...
13 II 2013 17:50:22 - Update Successful...
13 II 2013 17:56:10 - Indexed Spyware Databases Successfully Created...
13 II 2013 17:56:12 - Old Sign Version: 7.42646 New Sign Version: 7.45419
13 II 2013 17:56:47 - Reload of AntiVirus Signatures successfully done.
13 II 2013 17:56:47 - Virus Database Date: 13 Feb 2013
13 II 2013 17:56:47 - Virus Database Count: 8752790
13 II 2013 17:59:11 - **********************************************************
13 II 2013 17:59:11 - MWAV - eScanAV AntiVirus Toolkit.
13 II 2013 17:59:11 - Copyright © MicroWorld Technologies
13 II 2013 17:59:11 -
13 II 2013 17:59:11 - Support: support@escanav.com
13 II 2013 17:59:11 - Web: http://www.escanav.com
13 II 2013 17:59:11 - **********************************************************
13 II 2013 17:59:11 - Version 12.0.245[DB] (C:\DOCUMENTS AND SETTINGS\HONZA KOPEJTKO\LOCAL SETTINGS\TEMP\MEXE.COM)
13 II 2013 17:59:11 - Log File: C:\Documents and Settings\HONZA KOPEJTKO\Local Settings\Temp\MWAV.LOG
13 II 2013 17:59:12 - User Account: HONZA KOPEJTKO (Administrator Mode)
13 II 2013 17:59:12 - Parent Process Name : C:\Documents and Settings\HONZA KOPEJTKO\Dokumenty\Stažené soubory\mwav.exe
13 II 2013 17:59:12 - Windows Root Folder: C:\WINDOWS
13 II 2013 17:59:12 - Windows Sys32 Folder: C:\WINDOWS\system32
13 II 2013 17:59:12 - OS: Windows XP [OS Install Date: 11 Apr 2011 17:00:50]
13 II 2013 17:59:12 - Ver: Service Pack 3 (Build 2600)
13 II 2013 17:59:12 - Latest Date of files inside MWAV: Mon Jun 18 13:59:57 2012.
13 II 2013 17:59:12 - Plugins FileCount: 937 Sign Version: 7.45419
13 II 2013 17:59:18 - Options Selected by User:
13 II 2013 17:59:18 - Memory Check: Enabled
13 II 2013 17:59:18 - Registry Check: Enabled
13 II 2013 17:59:18 - StartUp Folder Check: Enabled
13 II 2013 17:59:18 - System Folder Check: Enabled
13 II 2013 17:59:18 - Services Check: Enabled
13 II 2013 17:59:18 - Scan Spyware: Enabled
13 II 2013 17:59:18 - Scan Archives: Disabled
13 II 2013 17:59:18 - Drive Check: Disabled
13 II 2013 17:59:18 - All Drive Check :Enabled
13 II 2013 17:59:18 - Folder Check: Disabled
13 II 2013 17:59:18 - SCAN: All_Files
13 II 2013 17:59:18 - MWAV Mode: Scan and Clean files (for viruses, adware and spyware)
13 II 2013 17:59:18 - Scanning DNS Records...
13 II 2013 17:59:18 - Scanning Master Boot Record (Kernel)...
13 II 2013 17:59:19 - ***** Scanning Memory Files *****
13 II 2013 17:59:54 - ***** Scanning Registry Files *****
13 II 2013 18:00:06 - ***** Scanning StartUp Folders *****
13 II 2013 18:00:14 - ***** Scanning Service Files *****
13 II 2013 18:00:17 - ERROR(2)!!! Invalid Entry System32\Drivers\frmupgr.sys. Action Taken: Removing HKLM\SYSTEM\CurrentControlSet\Services\DFUBTUSB.
13 II 2013 18:00:17 - ERROR(2)!!! Invalid Entry \??\C:\WINDOWS\system32\drivers\EagleNT.sys. Action Taken: Removing HKLM\SYSTEM\CurrentControlSet\Services\EagleNT.
13 II 2013 18:00:18 - ERROR(2)!!! Invalid Entry system32\DRIVERS\ewusbdev.sys. Action Taken: Removing HKLM\SYSTEM\CurrentControlSet\Services\hwusbdev.
13 II 2013 18:00:22 - ERROR(2)!!! Invalid Entry C:\Program Files\Nero\Nero 7\InCD\NBHRegInCDSrv.exe. Action Taken: Removing HKLM\SYSTEM\CurrentControlSet\Services\NeroRegInCDSrv.
13 II 2013 18:00:27 - ***** Scanning Registry and File system for Adware/Spyware *****
13 II 2013 18:00:27 - Loading Spyware Signatures from new External Database [Name: C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\spydb.avs, Size: 463354]...
13 II 2013 18:00:27 - Indexed Spyware Databases Successfully Created...
13 II 2013 18:00:37 - ***** Scanning Registry Files *****
13 II 2013 18:00:38 - Scanning File C:\Program Files\WinRAR 3.61 Multi\rarext.dll (????)
13 II 2013 18:00:39 - ***** Scanning System32 Folders *****
13 II 2013 18:03:52 - ***** Scanning All Drives *****
13 II 2013 18:03:52 - ***** C:,D: *****
13 II 2013 18:03:52 - Scanning C:\ Drive
13 II 2013 18:25:52 - C:\WINDOWS\SoftwareDistribution\DataStore\DataStore.edb not Scanned. Possibly password protected...
13 II 2013 18:25:52 - C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\default not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\SAM not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\SECURITY not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\software not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\system not Scanned. Possibly password protected...
13 II 2013 18:29:41 - Scanning D:\ Drive
13 II 2013 18:32:12 - ***** Checking for specific ITW Viruses *****
13 II 2013 18:32:12 - ***** Scanning complete. *****
13 II 2013 18:32:12 - Total Objects Scanned: 112022
13 II 2013 18:32:12 - Total Critical Objects: 0
13 II 2013 18:32:12 - Total Disinfected Objects: 0
13 II 2013 18:32:12 - Total Objects Renamed: 0
13 II 2013 18:32:12 - Total Deleted Objects: 0
13 II 2013 18:32:12 - Total Errors: 4
13 II 2013 18:32:12 - Time Elapsed: 00:32:56
13 II 2013 18:32:12 - Virus Database Date: 13 Feb 2013
13 II 2013 18:32:12 - Virus Database Count: 8752790
13 II 2013 18:32:12 - Scan Completed.

Tudíž jsem ihned udělal docela zbrkle scan MWAV chtěl bych se zeptat, jestli mám čistý počítač


13 II 2013 17:28:55 - **********************************************************
13 II 2013 17:28:55 - MWAV - eScanAV AntiVirus Toolkit.
13 II 2013 17:28:55 - Copyright © MicroWorld Technologies
13 II 2013 17:28:55 - **********************************************************
13 II 2013 17:28:55 - Source: C:\DOCUME~1\HONZAK~1\DOKUME~1\STAENS~1\mwav.exe
13 II 2013 17:28:55 - Version 12.0.245 (C:\DOCUMENTS AND SETTINGS\HONZA KOPEJTKO\LOCAL SETTINGS\TEMP\MEXE.COM)
13 II 2013 17:28:55 - Log File: C:\Documents and Settings\HONZA KOPEJTKO\Local Settings\Temp\MWAV.LOG
13 II 2013 17:28:55 - MWAV Registered: TRUE
13 II 2013 17:28:55 - User Account: HONZA KOPEJTKO (Administrator Mode)
13 II 2013 17:28:55 - OS Type: Windows Workstation
13 II 2013 17:28:55 - OS: Windows XP [OS Install Date: 11 Apr 2011 17:00:50]
13 II 2013 17:28:55 - Ver: Service Pack 3 (Build 2600)
13 II 2013 17:28:55 - System Up Time: 1 Hour, 50 Minutes, 23 Seconds
13 II 2013 17:28:55 - Parent Process Name : C:\Documents and Settings\HONZA KOPEJTKO\Dokumenty\Stažené soubory\mwav.exe
13 II 2013 17:28:55 - Windows Root Folder: C:\WINDOWS
13 II 2013 17:28:55 - Windows Sys32 Folder: C:\WINDOWS\system32
13 II 2013 17:28:56 - DHCP NameServer: 10.0.0.138
13 II 2013 17:28:56 - Interface0 DHCPNameServer: 10.0.0.138
13 II 2013 17:28:56 - Local Fixed Drives: c:\,d:\
13 II 2013 17:28:56 - MWAV Mode: Scan and Clean files (for viruses, adware and spyware)
13 II 2013 17:28:56 - [CREATED ZIP FILE: C:\Documents and Settings\HONZA KOPEJTKO\Local Settings\Temp\pinfect.zip]
13 II 2013 17:28:56 - ****** Files/Folders created/modified during last fortnight in Windows and ROOT Folder ******
13 II 2013 17:28:57 - C:\WINDOWS\system32\FlashPlayerApp.exe (697712), 10-Feb-2013, Adobe Systems Incorporated, Adobe Flash Player Control Panel Applet
13 II 2013 17:28:58 - C:\WINDOWS\system32\FlashPlayerCPLApp.cpl (74096), 10-Feb-2013, Adobe Systems Incorporated, Adobe Flash Player Control Panel Applet
13 II 2013 17:28:58 - C:\WINDOWS\system32\FlashPlayerInstaller.exe (16365936), 10-Feb-2013, Adobe Systems Incorporated, Adobe® Flash® Player Installer/Uninstaller
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\bdc.exe (182792), 13-Feb-2013, BitDefender, BitDefender Console Scanner
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\bdfltlib2k.dll (231944), 13-Feb-2013, MicroWorld Technologies Inc., eScan for Windows
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\encdec.dll (223528), 13-Feb-2013, MicroWorld Technologies Inc., eScan/MailScan/eConceal
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\erootdrv.sys (22920), 13-Feb-2013, MicroWorld Technologies Inc., eScan/MWAV
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\mexe.com (760168), 13-Feb-2013, MicroWorld Technologies Inc., MicroWorld AntiVirus Toolkit Utility (MWAV)
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\msvclnt.dll (249128), 13-Feb-2013, MicroWorld Technologies Inc., MailScan
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\mwavdwnl.exe (931112), 13-Feb-2013, MicroWorld Technologies Inc., eScan
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\MWAVSCAN.COM (760168), 13-Feb-2013, MicroWorld Technologies Inc., MicroWorld AntiVirus Toolkit Utility (MWAV)
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\red32.dll (11048), 13-Feb-2013, Microsoft Corporation, Microsoft® Windows® Operating System
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\Reload.exe (184104), 13-Feb-2013, MicroWorld Technologies Inc., eScan for Windows
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\setpriv.exe (82216), 13-Feb-2013, MicroWorld Technologies Inc., eScan AntiVirus Toolkit Utility
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\trufos.dll (353792), 13-Feb-2013, MicroWorld Technologies Inc., eScan for Windows
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\unregx.exe (93480), 13-Feb-2013, MicroWorld Technologies Inc., MicroWorld AntiVirus Toolkit Utility
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\viewtcp.exe (576296), 13-Feb-2013, MicroWorld Technologies Inc., ViewTCP
13 II 2013 17:28:58 - C:\WINDOWS\$hf_mig$, 12-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\$NtUninstallWdf01009$, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\$NtUninstallXPSEPSCLP$, 12-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\Fonts, 11-Apr-2011 [SR] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\inf, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\system32\dllcache, 11-Apr-2011 [HSR] [Folder]
13 II 2013 17:28:58 - C:\WINDOWS\system32\Microsoft, 11-Apr-2011 [S] [Folder]
13 II 2013 17:28:58 - C:\MSOCache, 12-Apr-2011 [HR] [Folder]
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\plugins, 13-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\plugtmp-10, 11-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\plugtmp-11, 12-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\plugtmp-9, 11-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\Microsoft, 11-Apr-2011 [S] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Data aplikací, 11-Apr-2011 [HR] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Local Settings, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Okolní síť, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Okolní tiskárny, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Recent, 17-Jul-2012 [HR] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\SendTo, 11-Apr-2011 [HR] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\UserData, 01-Jan-2013 [S] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\HONZA KOPEJTKO\Data aplikací\..\Šablony, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\Microsoft, 11-Apr-2011 [S] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\MicroWorld, 13-Feb-2013 [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\..\Data aplikací, 11-Apr-2011 [HR] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\..\DRM, 11-Apr-2011 [HS] [Folder]
13 II 2013 17:28:58 - C:\Documents and Settings\All Users\Data aplikací\..\Šablony, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - C:\Program Files\WindowsUpdate, 11-Apr-2011 [H] [Folder]
13 II 2013 17:28:58 - *********************************************************************************************
13 II 2013 17:28:58 - Latest Date of files inside MWAV: Mon Jun 18 13:59:57 2012.
13 II 2013 17:28:58 - Plugins FileCount: 916 Sign Version: 7.42646
13 II 2013 17:29:00 - ** Changed Value of "HKEY_CLASSES_ROOT\.htm" from "FirefoxHTML" to "htmlfile"
13 II 2013 17:29:00 - ** Changed Value of "HKEY_CLASSES_ROOT\.html" from "FirefoxHTML" to "htmlfile"
13 II 2013 17:29:00 - Loading/Creating FileScan Database C:\Documents and Settings\All Users\Data aplikací\MicroWorld\MWAV\ESCANDBX.MDB [Log: C:\Documents and Settings\HONZA KOPEJTKO\Local Settings\Temp\ESCANDB.LOG]
13 II 2013 17:29:01 - Loaded/Created FileScan Database...
13 II 2013 17:29:01 - Loading AV Library [DB]...
13 II 2013 17:29:21 - ArchiveScan: DISABLED
13 II 2013 17:29:27 - AV Library Loaded [DB-DIRECT].
13 II 2013 17:29:27 - MWAV doing self scanning...
13 II 2013 17:29:27 - MWAV files are clean.
13 II 2013 17:30:43 - ArchiveScan: DISABLED
13 II 2013 17:30:43 - Virus Database Date: 18 Jun 2012
13 II 2013 17:30:43 - Virus Database Count: 7305297
13 II 2013 17:30:49 - Downloading AntiVirus and Anti-Spyware Databases...
13 II 2013 17:50:22 - Update Successful...
13 II 2013 17:56:10 - Indexed Spyware Databases Successfully Created...
13 II 2013 17:56:12 - Old Sign Version: 7.42646 New Sign Version: 7.45419
13 II 2013 17:56:47 - Reload of AntiVirus Signatures successfully done.
13 II 2013 17:56:47 - Virus Database Date: 13 Feb 2013
13 II 2013 17:56:47 - Virus Database Count: 8752790
13 II 2013 17:59:11 - **********************************************************
13 II 2013 17:59:11 - MWAV - eScanAV AntiVirus Toolkit.
13 II 2013 17:59:11 - Copyright © MicroWorld Technologies
13 II 2013 17:59:11 -
13 II 2013 17:59:11 - Support: support@escanav.com
13 II 2013 17:59:11 - Web: http://www.escanav.com
13 II 2013 17:59:11 - **********************************************************
13 II 2013 17:59:11 - Version 12.0.245[DB] (C:\DOCUMENTS AND SETTINGS\HONZA KOPEJTKO\LOCAL SETTINGS\TEMP\MEXE.COM)
13 II 2013 17:59:11 - Log File: C:\Documents and Settings\HONZA KOPEJTKO\Local Settings\Temp\MWAV.LOG
13 II 2013 17:59:12 - User Account: HONZA KOPEJTKO (Administrator Mode)
13 II 2013 17:59:12 - Parent Process Name : C:\Documents and Settings\HONZA KOPEJTKO\Dokumenty\Stažené soubory\mwav.exe
13 II 2013 17:59:12 - Windows Root Folder: C:\WINDOWS
13 II 2013 17:59:12 - Windows Sys32 Folder: C:\WINDOWS\system32
13 II 2013 17:59:12 - OS: Windows XP [OS Install Date: 11 Apr 2011 17:00:50]
13 II 2013 17:59:12 - Ver: Service Pack 3 (Build 2600)
13 II 2013 17:59:12 - Latest Date of files inside MWAV: Mon Jun 18 13:59:57 2012.
13 II 2013 17:59:12 - Plugins FileCount: 937 Sign Version: 7.45419
13 II 2013 17:59:18 - Options Selected by User:
13 II 2013 17:59:18 - Memory Check: Enabled
13 II 2013 17:59:18 - Registry Check: Enabled
13 II 2013 17:59:18 - StartUp Folder Check: Enabled
13 II 2013 17:59:18 - System Folder Check: Enabled
13 II 2013 17:59:18 - Services Check: Enabled
13 II 2013 17:59:18 - Scan Spyware: Enabled
13 II 2013 17:59:18 - Scan Archives: Disabled
13 II 2013 17:59:18 - Drive Check: Disabled
13 II 2013 17:59:18 - All Drive Check :Enabled
13 II 2013 17:59:18 - Folder Check: Disabled
13 II 2013 17:59:18 - SCAN: All_Files
13 II 2013 17:59:18 - MWAV Mode: Scan and Clean files (for viruses, adware and spyware)
13 II 2013 17:59:18 - Scanning DNS Records...
13 II 2013 17:59:18 - Scanning Master Boot Record (Kernel)...
13 II 2013 17:59:19 - ***** Scanning Memory Files *****
13 II 2013 17:59:54 - ***** Scanning Registry Files *****
13 II 2013 18:00:06 - ***** Scanning StartUp Folders *****
13 II 2013 18:00:14 - ***** Scanning Service Files *****
13 II 2013 18:00:17 - ERROR(2)!!! Invalid Entry System32\Drivers\frmupgr.sys. Action Taken: Removing HKLM\SYSTEM\CurrentControlSet\Services\DFUBTUSB.
13 II 2013 18:00:17 - ERROR(2)!!! Invalid Entry \??\C:\WINDOWS\system32\drivers\EagleNT.sys. Action Taken: Removing HKLM\SYSTEM\CurrentControlSet\Services\EagleNT.
13 II 2013 18:00:18 - ERROR(2)!!! Invalid Entry system32\DRIVERS\ewusbdev.sys. Action Taken: Removing HKLM\SYSTEM\CurrentControlSet\Services\hwusbdev.
13 II 2013 18:00:22 - ERROR(2)!!! Invalid Entry C:\Program Files\Nero\Nero 7\InCD\NBHRegInCDSrv.exe. Action Taken: Removing HKLM\SYSTEM\CurrentControlSet\Services\NeroRegInCDSrv.
13 II 2013 18:00:27 - ***** Scanning Registry and File system for Adware/Spyware *****
13 II 2013 18:00:27 - Loading Spyware Signatures from new External Database [Name: C:\DOCUME~1\HONZAK~1\LOCALS~1\Temp\spydb.avs, Size: 463354]...
13 II 2013 18:00:27 - Indexed Spyware Databases Successfully Created...
13 II 2013 18:00:37 - ***** Scanning Registry Files *****
13 II 2013 18:00:38 - Scanning File C:\Program Files\WinRAR 3.61 Multi\rarext.dll (????)
13 II 2013 18:00:39 - ***** Scanning System32 Folders *****
13 II 2013 18:03:52 - ***** Scanning All Drives *****
13 II 2013 18:03:52 - ***** C:,D: *****
13 II 2013 18:03:52 - Scanning C:\ Drive
13 II 2013 18:25:52 - C:\WINDOWS\SoftwareDistribution\DataStore\DataStore.edb not Scanned. Possibly password protected...
13 II 2013 18:25:52 - C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\default not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\SAM not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\SECURITY not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\software not Scanned. Possibly password protected...
13 II 2013 18:26:14 - C:\WINDOWS\system32\config\system not Scanned. Possibly password protected...
13 II 2013 18:29:41 - Scanning D:\ Drive
13 II 2013 18:32:12 - ***** Checking for specific ITW Viruses *****
13 II 2013 18:32:12 - ***** Scanning complete. *****
13 II 2013 18:32:12 - Total Objects Scanned: 112022
13 II 2013 18:32:12 - Total Critical Objects: 0
13 II 2013 18:32:12 - Total Disinfected Objects: 0
13 II 2013 18:32:12 - Total Objects Renamed: 0
13 II 2013 18:32:12 - Total Deleted Objects: 0
13 II 2013 18:32:12 - Total Errors: 4
13 II 2013 18:32:12 - Time Elapsed: 00:32:56
13 II 2013 18:32:12 - Virus Database Date: 13 Feb 2013
13 II 2013 18:32:12 - Virus Database Count: 8752790
13 II 2013 18:32:12 - Scan Completed.