Kontrola po trojanu Win32/Heur + přehřívání grafické karty.
Napsal: 20 kvě 2013 06:42
Dobrý den, instaloval jsem do počítače hru Hidden & Dangerous 2 a antivir mi našel Win32/Heur a dal soubor hd2.exe do virového trezoru.
Hru už se mi nepodařilo spustit.
Počítač se přihlašuje dlouho, ale pak běží relativně stabilně.
Jako druhý problém jsem se všiml, že se mi přehřívá grafická karta.
Je to notebook HP Pavillion dv600 , grafika NV GeForce 8400 GS.
Přikládám výpis z rsitu :
Logfile of random's system information tool 1.06 (written by random/random)
Run by linuxdrak at 2013-05-20 07:29:28
Microsoft Windows 7 Ultimate
System drive C: has 36 GB (40%) free of 90 GB
Total RAM: 2046 MB (49% free)
HijackThis download failed
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2013-05-18 325408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2013-05-18 42272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"=C:\Program Files\AVG\AVG2013\avgui.exe [2012-12-11 3147384]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2013-04-19 18678376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.txt - open - "C:\Program Files\PSPad editor\PSPad.exe" "%1"
======List of files/folders created in the last 1 months======
2013-05-20 07:29:28 ----D---- C:\rsit
2013-05-20 07:29:28 ----D---- C:\Program Files\trend micro
2013-05-19 07:42:38 ----D---- C:\Users\linuxdrak\AppData\Roaming\TrueCrypt
2013-05-18 12:43:11 ----D---- C:\Users\linuxdrak\AppData\Roaming\Skype
2013-05-18 12:43:00 ----RD---- C:\Program Files\Skype
2013-05-18 12:43:00 ----D---- C:\Program Files\Common Files\Skype
2013-05-18 12:42:55 ----D---- C:\ProgramData\Skype
2013-05-18 11:59:12 ----D---- C:\Codemasters
2013-05-18 11:50:59 ----D---- C:\ProgramData\Fraus
2013-05-18 11:49:42 ----D---- C:\ProgramData\Sun
2013-05-18 11:49:39 ----D---- C:\Program Files\Common Files\Java
2013-05-18 11:49:25 ----A---- C:\Windows\system32\deployJava1.dll
2013-05-18 11:49:24 ----A---- C:\Windows\system32\javaws.exe
2013-05-18 11:49:24 ----A---- C:\Windows\system32\javaw.exe
2013-05-18 11:49:24 ----A---- C:\Windows\system32\java.exe
2013-05-18 11:49:10 ----D---- C:\Program Files\Java
2013-05-18 11:42:30 ----D---- C:\Program Files\GeoGebra
2013-05-18 11:42:00 ----D---- C:\Program Files\SMART Technologies Inc
2013-05-18 11:39:05 ----D---- C:\Program Files\Fraus
2013-05-18 11:32:28 ----D---- C:\ProgramData\VerisignIT
2013-05-18 11:32:06 ----D---- C:\Users\linuxdrak\AppData\Roaming\AutorizovanaKonverze.Net
2013-05-18 11:32:06 ----D---- C:\Program Files\Dignita
2013-05-18 09:39:33 ----D---- C:\Program Files\TrueCrypt
2013-05-18 09:38:38 ----D---- C:\Users\linuxdrak\AppData\Roaming\vlc
2013-05-18 09:36:54 ----D---- C:\Program Files\VideoLAN
2013-05-17 22:42:49 ----D---- C:\Windows\temp
2013-05-17 22:42:47 ----A---- C:\ComboFix.txt
2013-05-17 22:41:02 ----SHD---- C:\$RECYCLE.BIN
2013-05-17 22:24:02 ----A---- C:\Windows\zip.exe
2013-05-17 22:24:02 ----A---- C:\Windows\SWSC.exe
2013-05-17 22:24:02 ----A---- C:\Windows\SWREG.exe
2013-05-17 22:24:02 ----A---- C:\Windows\sed.exe
2013-05-17 22:24:02 ----A---- C:\Windows\PEV.exe
2013-05-17 22:24:02 ----A---- C:\Windows\NIRCMD.exe
2013-05-17 22:24:02 ----A---- C:\Windows\MBR.exe
2013-05-17 22:24:02 ----A---- C:\Windows\grep.exe
2013-05-17 22:23:29 ----D---- C:\Qoobox
2013-05-17 22:23:11 ----D---- C:\Windows\erdnt
2013-05-17 21:33:01 ----D---- C:\Windows\pss
2013-05-17 20:52:27 ----A---- C:\Windows\system32\TURegOpt.exe
2013-05-17 20:52:27 ----A---- C:\Windows\system32\authuitu.dll
2013-05-17 20:51:51 ----D---- C:\Users\linuxdrak\AppData\Roaming\AVG
2013-05-17 20:50:41 ----D---- C:\ProgramData\AVG
2013-05-17 20:50:16 ----SHD---- C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2013-05-17 20:35:43 ----D---- C:\Users\linuxdrak\AppData\Roaming\AVG2013
2013-05-17 20:34:43 ----D---- C:\Users\linuxdrak\AppData\Roaming\TuneUp Software
2013-05-17 20:33:04 ----D---- C:\$AVG
2013-05-17 20:33:02 ----D---- C:\ProgramData\AVG2013
2013-05-17 20:19:36 ----D---- C:\ProgramData\MFAData
2013-05-17 12:02:47 ----D---- C:\Users\linuxdrak\AppData\Roaming\GHISLER
2013-05-17 12:02:47 ----D---- C:\Program Files\totalcmd
2013-05-17 08:00:45 ----AD---- C:\zaloha
2013-05-16 09:14:48 ----D---- C:\Program Files\Common Files\Borland Shared
2013-05-16 09:14:47 ----D---- C:\Program Files\Borland
2013-05-16 07:25:13 ----HDC---- C:\ProgramData\{C2A88E6D-FA3D-462B-BDFF-A09B1EFA8FBE}
2013-05-16 07:18:55 ----D---- C:\Program Files\Common Files\Native Instruments
2013-05-16 07:18:55 ----D---- C:\Program Files\Common Files\Digidesign
2013-05-16 07:18:00 ----HDC---- C:\ProgramData\{C78336EC-F2EB-4640-99A4-DFE96581B90B}
2013-05-16 07:17:54 ----D---- C:\ProgramData\Native Instruments
2013-05-16 07:17:54 ----D---- C:\Program Files\Native Instruments
2013-05-15 14:58:10 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-05-15 14:43:51 ----HD---- C:\ProgramData\Common Files
2013-05-15 14:29:18 ----D---- C:\CanoScan
2013-05-15 14:29:18 ----A---- C:\Windows\system32\CNQU110.DLL
2013-05-15 14:29:18 ----A---- C:\Windows\system32\CNQL1213.DLL
2013-05-15 14:00:59 ----D---- C:\Program Files\AVG
2013-05-15 14:00:58 ----D---- C:\ProgramData\avg9
2013-05-15 13:33:12 ----D---- C:\Users\linuxdrak\AppData\Roaming\Foxit Software
2013-05-15 13:33:12 ----D---- C:\Program Files\Foxit Software
2013-05-14 14:44:06 ----D---- C:\Program Files\JSignPdf
2013-05-14 14:42:45 ----D---- C:\Program Files\Common Files\Adobe
2013-05-13 18:15:52 ----D---- C:\Users\linuxdrak\AppData\Roaming\MiKTeX
2013-05-13 18:15:45 ----D---- C:\Users\linuxdrak\AppData\Roaming\LyX2.0
2013-05-13 18:04:18 ----D---- C:\ProgramData\MiKTeX
2013-05-13 18:01:46 ----D---- C:\Program Files\MiKTeX 2.9
2013-05-13 17:59:12 ----D---- C:\Program Files\LyX 2.0
2013-05-13 17:00:55 ----D---- C:\Users\linuxdrak\AppData\Roaming\FreemakeVideoDownloader
2013-05-13 16:28:15 ----A---- C:\Windows\system32\CmdLineExt.dll
2013-05-13 15:34:00 ----D---- C:\Users\linuxdrak\AppData\Roaming\Bioshock2
2013-05-13 15:23:17 ----SHD---- C:\ProgramData\SecuROM
2013-05-13 15:21:51 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-05-13 15:21:51 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-05-13 15:21:48 ----D---- C:\Windows\system32\xlive
2013-05-13 15:21:48 ----D---- C:\Program Files\Microsoft Games for Windows - LIVE
2013-05-13 14:59:29 ----D---- C:\Program Files\2K Games
2013-05-13 03:48:59 ----D---- C:\Users\linuxdrak\AppData\Roaming\NVIDIA
2013-05-13 03:48:43 ----D---- C:\Users\linuxdrak\AppData\Roaming\Google
2013-05-13 03:48:43 ----D---- C:\ProgramData\Google
2013-05-12 23:09:09 ----D---- C:\Windows\Panther
2013-05-12 23:08:56 ----RASH---- C:\BOOTSECT.BAK
2013-05-12 23:08:53 ----D---- C:\Boot
2013-05-12 23:08:36 ----D---- C:\Windows\system32\OEM
2013-05-12 20:57:15 ----D---- C:\Program Files\linguatec
2013-05-12 20:57:15 ----A---- C:\Windows\system32\MFC71u.dll
2013-05-12 20:57:15 ----A---- C:\Windows\system32\MFC71.dll
2013-05-12 20:57:15 -------- C:\Windows\system32\msvcr71.dll
2013-05-12 20:57:15 -------- C:\Windows\system32\msvcp71.dll
2013-05-12 20:52:18 ----D---- C:\Program Files\SuperWebcam
2013-05-12 18:11:22 ----D---- C:\Users\linuxdrak\AppData\Roaming\WB Games
2013-05-12 17:55:00 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-05-12 17:55:00 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-05-12 17:55:00 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\xinput1_3.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\d3dx10.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xinput1_2.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xinput1_1.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-05-12 17:43:41 ----D---- C:\Program Files\WB Games
2013-05-12 17:03:31 ----D---- C:\Users\linuxdrak\AppData\Roaming\Sword
2013-05-12 17:03:31 ----D---- C:\Users\linuxdrak\AppData\Roaming\Bibletime
2013-05-12 17:03:31 ----D---- C:\ProgramData\Sword
2013-05-12 17:02:01 ----HD---- C:\Program Files\InstallShield Installation Information
2013-05-12 17:01:41 ----D---- C:\Program Files\GameSpy Arcade
2013-05-12 16:54:12 ----D---- C:\Program Files\Illusion Softworks
2013-05-12 16:53:00 ----D---- C:\Program Files\Common Files\InstallShield
2013-05-12 16:29:06 ----D---- C:\Program Files\AGEIA Technologies
2013-05-12 16:28:54 ----D---- C:\ProgramData\NVIDIA
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvsvcr.dll
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvsvc.dll
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvshext.dll
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-12 16:28:10 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-12 16:28:02 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvwgf2um.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvopencl.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvoglv32.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvdispgenco3231422.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvdispco3231422.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvd3dum.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvcuvid.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvcuda.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvcompiler.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvapi.dll
2013-05-12 16:24:47 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-12 16:05:04 ----D---- C:\Program Files\BibleTime
2013-05-12 15:51:37 ----D---- C:\Program Files\FlexLoader
2013-05-12 15:51:25 ----D---- C:\System.sav
2013-05-12 15:50:09 ----D---- C:\Users\linuxdrak\AppData\Roaming\FlexLoader.346A729E60C8ACAB5B256CEBF2755FFA037052EC.1
2013-05-12 15:48:58 ----D---- C:\ProgramData\Adobe
2013-05-12 15:48:53 ----D---- C:\Program Files\Common Files\Adobe AIR
2013-05-12 15:48:53 ----D---- C:\Program Files\Adobe
2013-05-12 15:48:40 ----D---- C:\Users\linuxdrak\AppData\Roaming\Macromedia
2013-05-12 15:48:40 ----D---- C:\Users\linuxdrak\AppData\Roaming\Adobe
2013-05-12 15:45:52 ----D---- C:\Program Files\WinPcap
2013-05-12 15:45:40 ----D---- C:\ProgramData\Freemake
2013-05-12 15:45:27 ----D---- C:\Program Files\Freemake
2013-05-12 15:44:42 ----D---- C:\Users\linuxdrak\AppData\Roaming\PSpad
2013-05-12 15:44:35 ----D---- C:\Program Files\PSPad editor
2013-05-12 15:44:23 -------- C:\Windows\system32\MpSigStub.exe
2013-05-12 15:42:48 ----D---- C:\Users\linuxdrak\AppData\Roaming\PDFCreator
2013-05-12 15:42:47 ----A---- C:\Windows\system32\PDFSpooler.exe
2013-05-12 15:42:47 ----A---- C:\Windows\system32\pdfcmnnt.dll
2013-05-12 15:42:46 ----D---- C:\Program Files\PDFCreator
2013-05-12 15:42:46 ----A---- C:\Windows\system32\VB6DE.DLL
2013-05-12 15:42:46 ----A---- C:\Windows\system32\MSMPIDE.DLL
2013-05-12 15:42:46 ----A---- C:\Windows\system32\MSCMCDE.DLL
2013-05-12 15:42:46 ----A---- C:\Windows\system32\MSCC2DE.DLL
2013-05-12 15:42:46 ----A---- C:\Windows\system32\CMDLGDE.DLL
2013-05-12 15:42:11 ----A---- C:\Windows\system32\NVUNINST.EXE
2013-05-12 15:37:42 ----D---- C:\Program Files\CCleaner
2013-05-12 15:36:56 ----D---- C:\Program Files\Microsoft.NET
2013-05-12 15:36:27 ----D---- C:\Program Files\Google
2013-05-12 15:36:21 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-05-12 15:36:21 ----A---- C:\Windows\system32\PresentationHost.exe
2013-05-12 15:36:21 ----A---- C:\Windows\system32\netfxperf.dll
2013-05-12 15:36:21 ----A---- C:\Windows\system32\mscoree.dll
2013-05-12 15:36:21 ----A---- C:\Windows\system32\dfshim.dll
2013-05-12 15:34:02 ----D---- C:\Program Files\PowerISO
2013-05-12 15:33:37 ----D---- C:\Program Files\WinRAR
2013-05-12 15:33:34 ----D---- C:\Users\linuxdrak\AppData\Roaming\WinRAR
2013-05-12 15:32:54 ----D---- C:\Program Files\Microsoft Silverlight
2013-05-12 15:32:45 ----SHD---- C:\Windows\Installer
2013-05-12 15:31:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-05-12 13:30:45 ----A---- C:\Windows\iun6002.exe
2013-05-12 13:30:41 ----D---- C:\Program Files\Codec Pack - All In 1
2013-05-12 13:26:54 ----D---- C:\Users\linuxdrak\AppData\Roaming\Identities
2013-05-12 13:26:24 ----SD---- C:\Users\linuxdrak\AppData\Roaming\Microsoft
2013-05-12 13:26:24 ----D---- C:\Users\linuxdrak\AppData\Roaming\Media Center Programs
2013-05-12 13:23:26 ----D---- C:\Recovery
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Šablony
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Plocha
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Oblíbené položky
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Nabídka Start
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Dokumenty
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Data aplikací
2013-05-12 13:17:28 ----D---- C:\Windows\SoftwareDistribution
2013-05-12 13:13:58 ----D---- C:\Windows\Prefetch
2013-05-12 13:12:31 ----SHD---- C:\System Volume Information
2013-05-12 12:47:41 ----A---- C:\Windows\system32\OC30.DLL
2013-05-12 12:47:40 ----A---- C:\Windows\system32\qtintf70.dll
2013-05-12 12:47:39 ----A---- C:\Windows\system32\VSPELL32.DLL
2013-05-12 12:47:38 ----A---- C:\Windows\system32\VCFIDL32.DLL
2013-05-12 12:47:38 ----A---- C:\Windows\system32\stdvcl32.dll
2013-05-12 12:47:37 ----A---- C:\Windows\system32\VCFIWZ32.DLL
2013-05-12 12:47:36 ----A---- C:\Windows\system32\stdvcl40.dll
2013-05-12 12:47:36 ----A---- C:\Windows\system32\MFCANS32.DLL
2013-04-30 14:07:24 ----AD---- C:\HBPVR
======List of files/folders modified in the last 1 months======
2013-05-20 07:29:28 ----RD---- C:\Program Files
2013-05-20 07:26:43 ----D---- C:\Windows\System32
2013-05-20 07:26:43 ----D---- C:\Windows\inf
2013-05-18 15:02:29 ----D---- C:\Windows\system32\drivers
2013-05-18 12:43:00 ----D---- C:\Program Files\Common Files
2013-05-18 12:42:55 ----D---- C:\ProgramData
2013-05-17 22:42:49 ----D---- C:\Windows
2013-05-17 22:38:00 ----A---- C:\Windows\system.ini
2013-05-17 22:30:42 ----D---- C:\Windows\AppPatch
2013-05-17 20:35:27 ----D---- C:\Windows\system32\Tasks
2013-05-17 20:34:09 ----D---- C:\Windows\system32\DriverStore
2013-05-17 20:34:09 ----D---- C:\Windows\system32\catroot
2013-05-16 11:06:02 ----RD---- C:\Users
2013-05-16 08:18:26 ----D---- C:\Windows\system32\catroot2
2013-05-15 14:30:43 ----RSD---- C:\Windows\Media
2013-05-15 14:30:42 ----D---- C:\Windows\twain_32
2013-05-15 14:22:50 ----D---- C:\Windows\system32\config
2013-05-15 14:05:19 ----D---- C:\Windows\Logs
2013-05-13 16:48:18 ----D---- C:\Windows\system32\wdi
2013-05-13 15:29:19 ----D---- C:\Program Files\Common Files\microsoft shared
2013-05-13 15:28:47 ----SD---- C:\ProgramData\Microsoft
2013-05-13 15:22:33 ----D---- C:\Windows\winsxs
2013-05-13 15:20:19 ----RSD---- C:\Windows\assembly
2013-05-13 15:20:17 ----D---- C:\Windows\Microsoft.NET
2013-05-12 20:53:55 ----D---- C:\Windows\debug
2013-05-12 16:52:37 ----D---- C:\Windows\system32\LogFiles
2013-05-12 16:28:34 ----D---- C:\Windows\Help
2013-05-12 15:45:40 ----D---- C:\Program Files\Internet Explorer
2013-05-12 15:39:45 ----D---- C:\Windows\system32\cs-CZ
2013-05-12 15:36:57 ----D---- C:\Windows\system32\en-US
2013-05-12 15:36:41 ----D---- C:\Windows\Tasks
2013-05-12 15:35:59 ----D---- C:\Windows\system32\restore
2013-05-12 15:35:55 ----D---- C:\Windows\system32\CodeIntegrity
2013-05-12 13:30:23 ----D---- C:\Windows\system32\wbem
2013-05-12 13:24:56 ----D---- C:\Windows\Setup
2013-05-12 13:24:12 ----D---- C:\Windows\rescache
2013-05-12 13:23:25 ----D---- C:\Program Files\Windows NT
2013-05-12 13:18:46 ----D---- C:\Windows\system32\sysprep
2013-05-12 13:15:11 ----D---- C:\Windows\CSC
2013-05-12 12:56:18 ----AD---- C:\aplikace
2013-04-25 08:25:15 ----D---- C:\video
Přikládám výpis ComboFix
ComboFix 13-05-18.04 - linuxdrak 20.05.2013 7:48.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2046.872 [GMT 2:00]
Spuštěný z: c:\users\linuxdrak\Downloads\ComboFix.exe
AV: AVG Internet Security 2013 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2013 *Disabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2013 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-04-20 do 2013-05-20 )))))))))))))))))))))))))))))))
.
.
2013-05-20 05:58 . 2013-05-20 05:58 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-05-20 05:29 . 2013-05-20 05:29 -------- d-----w- C:\rsit
2013-05-20 05:29 . 2013-05-20 05:29 -------- d-----w- c:\program files\trend micro
2013-05-18 10:43 . 2013-05-18 10:43 -------- d-----w- c:\program files\Common Files\Skype
2013-05-18 10:43 . 2013-05-18 10:43 -------- d-----r- c:\program files\Skype
2013-05-18 10:42 . 2013-05-18 10:43 -------- d-----w- c:\programdata\Skype
2013-05-18 09:59 . 2013-05-18 09:59 -------- d-----w- C:\Codemasters
2013-05-18 09:50 . 2013-05-18 09:50 -------- d-----w- c:\programdata\Fraus
2013-05-18 09:49 . 2013-05-18 09:49 -------- d-----w- c:\program files\Common Files\Java
2013-05-18 09:49 . 2013-05-18 09:49 472808 ----a-w- c:\windows\system32\deployJava1.dll
2013-05-18 09:49 . 2013-05-18 09:49 -------- d-----w- c:\program files\Java
2013-05-18 09:42 . 2013-05-18 09:42 -------- d-----w- c:\program files\GeoGebra
2013-05-18 09:42 . 2013-05-18 09:42 -------- d-----w- c:\program files\SMART Technologies Inc
2013-05-18 09:39 . 2013-05-18 09:39 -------- d-----w- c:\program files\Fraus
2013-05-18 09:32 . 2013-05-18 09:33 -------- d-----w- c:\programdata\VerisignIT
2013-05-18 09:32 . 2013-05-18 09:32 -------- d-----w- c:\program files\Dignita
2013-05-18 07:39 . 2013-05-18 07:39 231760 ----a-w- c:\windows\system32\drivers\truecrypt.sys
2013-05-18 07:39 . 2013-05-18 07:39 -------- d-----w- c:\program files\TrueCrypt
2013-05-18 07:36 . 2013-05-18 07:36 -------- d-----w- c:\program files\VideoLAN
2013-05-17 18:52 . 2012-08-23 09:31 32120 ----a-w- c:\windows\system32\TURegOpt.exe
2013-05-17 18:52 . 2012-08-23 09:31 21880 ----a-w- c:\windows\system32\authuitu.dll
2013-05-17 18:50 . 2013-05-17 18:52 -------- d-----w- c:\programdata\AVG
2013-05-17 18:50 . 2013-05-17 18:50 -------- d-sh--w- c:\programdata\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2013-05-17 18:33 . 2013-05-17 18:33 -------- d-----w- C:\$AVG
2013-05-17 18:19 . 2013-05-20 05:30 -------- d-----w- c:\programdata\MFAData
2013-05-17 10:02 . 2013-05-17 10:02 -------- d-----w- c:\program files\totalcmd
2013-05-17 06:00 . 2013-05-17 06:01 -------- d---a-w- C:\zaloha
2013-05-16 07:14 . 2013-05-16 07:15 -------- d-----w- c:\program files\Common Files\Borland Shared
2013-05-16 07:14 . 2013-05-16 07:14 -------- d-----w- c:\program files\Borland
2013-05-16 05:25 . 2013-05-16 05:25 -------- dc-h--w- c:\programdata\{C2A88E6D-FA3D-462B-BDFF-A09B1EFA8FBE}
2013-05-16 05:18 . 2013-05-16 05:19 -------- d-----w- c:\program files\Common Files\Native Instruments
2013-05-16 05:18 . 2013-05-16 05:18 -------- d-----w- c:\program files\Common Files\Digidesign
2013-05-16 05:18 . 2013-05-16 05:18 -------- dc-h--w- c:\programdata\{C78336EC-F2EB-4640-99A4-DFE96581B90B}
2013-05-16 05:17 . 2013-05-16 05:18 -------- d-----w- c:\program files\Native Instruments
2013-05-16 05:17 . 2013-05-16 05:17 -------- d-----w- c:\programdata\Native Instruments
2013-05-15 12:58 . 2013-05-17 19:57 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-05-15 12:43 . 2013-05-15 12:43 -------- d--h--w- c:\programdata\Common Files
2013-05-15 12:29 . 2013-05-15 12:29 -------- d-----w- C:\CanoScan
2013-05-15 12:29 . 2005-06-23 20:17 352256 ----a-w- c:\windows\system32\CNQL1213.DLL
2013-05-15 12:29 . 2005-02-28 11:20 57344 ----a-w- c:\windows\system32\CNQU110.DLL
2013-05-15 12:00 . 2013-05-17 18:51 -------- d-----w- c:\program files\AVG
2013-05-15 12:00 . 2013-05-17 18:26 -------- d-----w- c:\programdata\avg9
2013-05-15 11:33 . 2013-05-15 11:33 -------- d-----w- c:\program files\Foxit Software
2013-05-14 12:44 . 2013-05-14 12:44 -------- d-----w- c:\program files\JSignPdf
2013-05-14 12:42 . 2013-05-14 12:42 -------- d-----w- c:\program files\Common Files\Adobe
2013-05-13 16:04 . 2013-05-13 16:04 -------- d-----w- c:\programdata\MiKTeX
2013-05-13 16:01 . 2013-05-13 16:03 -------- d-----w- c:\program files\MiKTeX 2.9
2013-05-13 15:59 . 2013-05-13 16:09 -------- d-----w- c:\program files\LyX 2.0
2013-05-13 14:28 . 2013-05-13 14:28 108144 ----a-w- c:\windows\system32\CmdLineExt.dll
2013-05-13 13:23 . 2013-05-13 13:23 -------- d-sh--w- c:\programdata\SecuROM
2013-05-13 13:21 . 2009-09-04 15:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2013-05-13 13:21 . 2009-09-04 15:29 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll
2013-05-13 13:21 . 2013-05-13 13:29 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2013-05-13 13:21 . 2013-05-13 13:21 -------- d-----w- c:\windows\system32\xlive
2013-05-13 12:59 . 2013-05-13 14:28 -------- d-----w- c:\program files\2K Games
2013-05-12 21:09 . 2013-05-12 18:53 -------- d-----w- c:\windows\Panther
2013-05-12 21:08 . 2013-05-12 14:18 -------- d-----w- C:\Boot
2013-05-12 21:08 . 2013-05-12 21:08 -------- d-----w- c:\windows\system32\OEM
2013-05-12 18:57 . 2013-05-12 18:57 -------- d-----w- c:\program files\linguatec
2013-05-12 18:57 . 2004-10-11 11:29 499712 ------w- c:\windows\system32\msvcp71.dll
2013-05-12 18:57 . 2004-10-11 11:29 348160 ------w- c:\windows\system32\msvcr71.dll
2013-05-12 18:57 . 2004-10-11 11:29 1060864 ----a-w- c:\windows\system32\MFC71.dll
2013-05-12 18:57 . 2003-03-19 05:12 1047552 ----a-w- c:\windows\system32\MFC71u.dll
2013-05-12 18:52 . 2013-05-12 18:52 -------- d-----w- c:\program files\SuperWebcam
2013-05-12 18:51 . 2006-06-27 06:56 31872 ----a-w- c:\windows\system32\drivers\superwebcam.sys
2013-05-12 15:55 . 2009-03-09 13:27 453456 ----a-w- c:\windows\system32\d3dx10_41.dll
2013-05-12 15:55 . 2009-03-09 13:27 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll
2013-05-12 15:55 . 2009-03-09 13:27 1846632 ----a-w- c:\windows\system32\D3DCompiler_41.dll
2013-05-12 15:43 . 2013-05-12 15:43 -------- d-----w- c:\program files\WB Games
2013-05-12 15:03 . 2013-05-12 15:04 -------- d-----w- c:\programdata\Sword
2013-05-12 15:02 . 2013-05-15 12:29 -------- d--h--w- c:\program files\InstallShield Installation Information
2013-05-12 15:01 . 2013-05-12 15:01 -------- d-----w- c:\program files\GameSpy Arcade
2013-05-12 14:54 . 2013-05-12 14:54 -------- d-----w- c:\program files\Illusion Softworks
2013-05-12 14:53 . 2013-05-15 12:29 -------- d-----w- c:\program files\Common Files\InstallShield
2013-05-12 14:29 . 2013-05-12 14:29 -------- d-----w- c:\program files\AGEIA Technologies
2013-05-12 14:28 . 2013-05-12 14:31 -------- d-----w- c:\programdata\NVIDIA
2013-05-12 14:28 . 2013-05-17 19:44 -------- d-----w- c:\users\UpdatusUser
2013-05-12 14:28 . 2013-03-15 02:59 4119328 ----a-w- c:\windows\system32\nvcpl.dll
2013-05-12 14:28 . 2013-03-15 02:59 3014432 ----a-w- c:\windows\system32\nvsvc.dll
2013-05-12 14:28 . 2013-03-15 02:59 634144 ----a-w- c:\windows\system32\nvvsvc.exe
2013-05-12 14:28 . 2013-03-15 02:59 2555168 ----a-w- c:\windows\system32\nvsvcr.dll
2013-05-12 14:28 . 2013-03-15 02:59 62752 ----a-w- c:\windows\system32\nvshext.dll
2013-05-12 14:28 . 2013-03-15 02:59 223008 ----a-w- c:\windows\system32\nvmctray.dll
2013-05-12 14:28 . 2013-03-15 05:46 53024 ----a-w- c:\windows\system32\OpenCL.dll
2013-05-12 14:28 . 2013-05-12 14:28 -------- d-----w- c:\programdata\NVIDIA Corporation
2013-05-12 14:26 . 2013-03-15 05:46 8952608 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-05-12 14:26 . 2013-03-15 05:46 892704 ----a-w- c:\windows\system32\nvdispgenco3231422.dll
2013-05-12 14:26 . 2013-03-15 05:46 7959000 ----a-w- c:\windows\system32\nvcuda.dll
2013-05-12 14:26 . 2013-03-15 05:46 6271872 ----a-w- c:\windows\system32\nvopencl.dll
2013-05-12 14:26 . 2013-03-15 05:46 2728736 ----a-w- c:\windows\system32\nvcuvid.dll
2013-05-12 14:26 . 2013-03-15 05:46 2539128 ----a-w- c:\windows\system32\nvapi.dll
2013-05-12 14:26 . 2013-03-15 05:46 20542752 ----a-w- c:\windows\system32\nvoglv32.dll
2013-05-12 14:26 . 2013-03-15 05:46 1995552 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-05-12 14:26 . 2013-03-15 05:46 17560352 ----a-w- c:\windows\system32\nvcompiler.dll
2013-05-12 14:26 . 2013-03-15 05:46 15042928 ----a-w- c:\windows\system32\nvd3dum.dll
2013-05-12 14:26 . 2013-03-15 05:46 13088000 ----a-w- c:\windows\system32\nvwgf2um.dll
2013-05-12 14:26 . 2013-03-15 05:46 1012512 ----a-w- c:\windows\system32\nvdispco3231422.dll
2013-05-12 14:24 . 2013-05-12 14:29 -------- d-----w- c:\program files\NVIDIA Corporation
2013-05-12 14:05 . 2013-05-12 14:05 -------- d-----w- c:\program files\BibleTime
2013-05-12 13:51 . 2013-05-12 13:51 -------- d-----w- c:\program files\FlexLoader
2013-05-12 13:51 . 2013-05-12 13:51 -------- d-----w- C:\System.sav
2013-05-12 13:48 . 2013-05-12 13:49 -------- d-----w- c:\program files\Common Files\Adobe AIR
2013-05-12 13:45 . 2013-05-12 13:45 -------- d-----w- c:\program files\WinPcap
2013-05-12 13:45 . 2013-05-13 14:58 -------- d-----w- c:\programdata\Freemake
2013-05-12 13:45 . 2013-04-01 11:17 8013376 ----a-w- c:\program files\Internet Explorer\Microsoft.mshtml.dll
2013-05-12 13:45 . 2013-05-12 14:25 -------- d-----w- c:\program files\Freemake
2013-05-12 13:44 . 2013-05-12 13:44 -------- d-----w- c:\program files\PSPad editor
2013-05-12 13:44 . 2013-04-17 04:31 6906960 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{AD1B0AD3-8920-4D05-A382-55A7C7EE50A9}\mpengine.dll
2013-05-12 13:44 . 2013-05-02 00:06 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-05-12 13:42 . 2005-01-04 21:21 92672 ----a-w- c:\windows\system32\PDFSpooler.exe
2013-05-12 13:42 . 2001-10-28 14:42 116224 ----a-w- c:\windows\system32\pdfcmnnt.dll
2013-05-12 13:42 . 2000-05-22 14:58 647872 ----a-w- c:\windows\system32\MSCOMCT2.OCX
2013-05-12 13:42 . 1999-01-05 20:18 1057552 ----a-w- c:\windows\system32\MSCOMCTL.OCX
2013-05-12 13:42 . 1998-06-23 22:00 137000 ----a-w- c:\windows\system32\MSMAPI32.OCX
2013-05-12 13:42 . 2013-05-12 13:42 -------- d-----w- c:\program files\PDFCreator
2013-05-12 13:42 . 2000-10-02 09:27 125712 ----a-w- c:\windows\system32\VB6DE.DLL
2013-05-12 13:42 . 1998-07-05 22:00 64512 ----a-w- c:\windows\system32\MSCC2DE.DLL
2013-05-12 13:42 . 1998-07-05 22:00 33792 ----a-w- c:\windows\system32\CMDLGDE.DLL
2013-05-12 13:42 . 1998-07-05 22:00 23552 ----a-w- c:\windows\system32\MSMPIDE.DLL
2013-05-12 13:42 . 1998-07-05 22:00 158208 ----a-w- c:\windows\system32\MSCMCDE.DLL
2013-05-12 13:42 . 2007-05-02 07:28 356352 ----a-w- c:\windows\system32\NVUNINST.EXE
2013-05-12 13:37 . 2013-05-16 05:05 -------- d-----w- c:\program files\CCleaner
2013-05-12 13:36 . 2013-05-12 13:36 -------- d-----w- c:\program files\Microsoft.NET
2013-05-12 13:36 . 2013-05-13 02:00 -------- d-----w- c:\program files\Google
2013-05-12 13:36 . 2009-11-25 19:47 49472 ----a-w- c:\windows\system32\netfxperf.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-05-13 13:32 . 2009-08-18 09:30 564632 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2013-05-13 13:31 . 2009-08-18 09:24 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-04-19 18678376]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"="c:\program files\AVG\AVG2013\avgui.exe" [2012-12-11 3147384]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R2 avgfws;AVG Firewall;c:\program files\AVG\AVG2013\avgfws.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
S0 AVGIDSHX;AVGIDSHX;c:\windows\system32\DRIVERS\avgidshx.sys [x]
S0 Avglogx;AVG Logging Driver;c:\windows\system32\DRIVERS\avglogx.sys [x]
S0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys [x]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6x.sys [x]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdriverx.sys [x]
S1 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\avgidsshimx.sys [x]
S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx86.sys [x]
S1 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys [x]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2013\avgidsagent.exe [x]
S2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2013\avgwdsvc.exe [x]
S2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [x]
S2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;c:\program files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
S3 SUPERWEBCAM;SuperWebcam, WDM Virtual Video Capture Device;c:\windows\system32\DRIVERS\superwebcam.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - TRUECRYPT
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-05-12 13:37 1642448 ----a-w- c:\program files\Google\Chrome\Application\26.0.1410.64\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-05-17 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-05-12 13:36]
.
2013-05-17 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-05-12 13:36]
.
.
------- Doplňkový sken -------
.
TCP: DhcpNameServer = 192.168.1.1 10.109.255.51
.
.
------- Asociace souborů -------
.
txtfile="c:\program files\PSPad editor\PSPad.exe" "%1"
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-05-20 08:01:27
ComboFix-quarantined-files.txt 2013-05-20 06:01
ComboFix2.txt 2013-05-17 20:42
.
Před spuštěním: Volných bajtů: 37 971 251 200
Po spuštění: Volných bajtů: 37 696 729 088
.
- - End Of File - - 991A5D9984F3FCD43C8494922B85D66E
Děkuji za radu.
Hru už se mi nepodařilo spustit.
Počítač se přihlašuje dlouho, ale pak běží relativně stabilně.
Jako druhý problém jsem se všiml, že se mi přehřívá grafická karta.
Je to notebook HP Pavillion dv600 , grafika NV GeForce 8400 GS.
Přikládám výpis z rsitu :
Logfile of random's system information tool 1.06 (written by random/random)
Run by linuxdrak at 2013-05-20 07:29:28
Microsoft Windows 7 Ultimate
System drive C: has 36 GB (40%) free of 90 GB
Total RAM: 2046 MB (49% free)
HijackThis download failed
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2013-05-18 325408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2013-05-18 42272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"=C:\Program Files\AVG\AVG2013\avgui.exe [2012-12-11 3147384]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2013-04-19 18678376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.txt - open - "C:\Program Files\PSPad editor\PSPad.exe" "%1"
======List of files/folders created in the last 1 months======
2013-05-20 07:29:28 ----D---- C:\rsit
2013-05-20 07:29:28 ----D---- C:\Program Files\trend micro
2013-05-19 07:42:38 ----D---- C:\Users\linuxdrak\AppData\Roaming\TrueCrypt
2013-05-18 12:43:11 ----D---- C:\Users\linuxdrak\AppData\Roaming\Skype
2013-05-18 12:43:00 ----RD---- C:\Program Files\Skype
2013-05-18 12:43:00 ----D---- C:\Program Files\Common Files\Skype
2013-05-18 12:42:55 ----D---- C:\ProgramData\Skype
2013-05-18 11:59:12 ----D---- C:\Codemasters
2013-05-18 11:50:59 ----D---- C:\ProgramData\Fraus
2013-05-18 11:49:42 ----D---- C:\ProgramData\Sun
2013-05-18 11:49:39 ----D---- C:\Program Files\Common Files\Java
2013-05-18 11:49:25 ----A---- C:\Windows\system32\deployJava1.dll
2013-05-18 11:49:24 ----A---- C:\Windows\system32\javaws.exe
2013-05-18 11:49:24 ----A---- C:\Windows\system32\javaw.exe
2013-05-18 11:49:24 ----A---- C:\Windows\system32\java.exe
2013-05-18 11:49:10 ----D---- C:\Program Files\Java
2013-05-18 11:42:30 ----D---- C:\Program Files\GeoGebra
2013-05-18 11:42:00 ----D---- C:\Program Files\SMART Technologies Inc
2013-05-18 11:39:05 ----D---- C:\Program Files\Fraus
2013-05-18 11:32:28 ----D---- C:\ProgramData\VerisignIT
2013-05-18 11:32:06 ----D---- C:\Users\linuxdrak\AppData\Roaming\AutorizovanaKonverze.Net
2013-05-18 11:32:06 ----D---- C:\Program Files\Dignita
2013-05-18 09:39:33 ----D---- C:\Program Files\TrueCrypt
2013-05-18 09:38:38 ----D---- C:\Users\linuxdrak\AppData\Roaming\vlc
2013-05-18 09:36:54 ----D---- C:\Program Files\VideoLAN
2013-05-17 22:42:49 ----D---- C:\Windows\temp
2013-05-17 22:42:47 ----A---- C:\ComboFix.txt
2013-05-17 22:41:02 ----SHD---- C:\$RECYCLE.BIN
2013-05-17 22:24:02 ----A---- C:\Windows\zip.exe
2013-05-17 22:24:02 ----A---- C:\Windows\SWSC.exe
2013-05-17 22:24:02 ----A---- C:\Windows\SWREG.exe
2013-05-17 22:24:02 ----A---- C:\Windows\sed.exe
2013-05-17 22:24:02 ----A---- C:\Windows\PEV.exe
2013-05-17 22:24:02 ----A---- C:\Windows\NIRCMD.exe
2013-05-17 22:24:02 ----A---- C:\Windows\MBR.exe
2013-05-17 22:24:02 ----A---- C:\Windows\grep.exe
2013-05-17 22:23:29 ----D---- C:\Qoobox
2013-05-17 22:23:11 ----D---- C:\Windows\erdnt
2013-05-17 21:33:01 ----D---- C:\Windows\pss
2013-05-17 20:52:27 ----A---- C:\Windows\system32\TURegOpt.exe
2013-05-17 20:52:27 ----A---- C:\Windows\system32\authuitu.dll
2013-05-17 20:51:51 ----D---- C:\Users\linuxdrak\AppData\Roaming\AVG
2013-05-17 20:50:41 ----D---- C:\ProgramData\AVG
2013-05-17 20:50:16 ----SHD---- C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2013-05-17 20:35:43 ----D---- C:\Users\linuxdrak\AppData\Roaming\AVG2013
2013-05-17 20:34:43 ----D---- C:\Users\linuxdrak\AppData\Roaming\TuneUp Software
2013-05-17 20:33:04 ----D---- C:\$AVG
2013-05-17 20:33:02 ----D---- C:\ProgramData\AVG2013
2013-05-17 20:19:36 ----D---- C:\ProgramData\MFAData
2013-05-17 12:02:47 ----D---- C:\Users\linuxdrak\AppData\Roaming\GHISLER
2013-05-17 12:02:47 ----D---- C:\Program Files\totalcmd
2013-05-17 08:00:45 ----AD---- C:\zaloha
2013-05-16 09:14:48 ----D---- C:\Program Files\Common Files\Borland Shared
2013-05-16 09:14:47 ----D---- C:\Program Files\Borland
2013-05-16 07:25:13 ----HDC---- C:\ProgramData\{C2A88E6D-FA3D-462B-BDFF-A09B1EFA8FBE}
2013-05-16 07:18:55 ----D---- C:\Program Files\Common Files\Native Instruments
2013-05-16 07:18:55 ----D---- C:\Program Files\Common Files\Digidesign
2013-05-16 07:18:00 ----HDC---- C:\ProgramData\{C78336EC-F2EB-4640-99A4-DFE96581B90B}
2013-05-16 07:17:54 ----D---- C:\ProgramData\Native Instruments
2013-05-16 07:17:54 ----D---- C:\Program Files\Native Instruments
2013-05-15 14:58:10 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-05-15 14:43:51 ----HD---- C:\ProgramData\Common Files
2013-05-15 14:29:18 ----D---- C:\CanoScan
2013-05-15 14:29:18 ----A---- C:\Windows\system32\CNQU110.DLL
2013-05-15 14:29:18 ----A---- C:\Windows\system32\CNQL1213.DLL
2013-05-15 14:00:59 ----D---- C:\Program Files\AVG
2013-05-15 14:00:58 ----D---- C:\ProgramData\avg9
2013-05-15 13:33:12 ----D---- C:\Users\linuxdrak\AppData\Roaming\Foxit Software
2013-05-15 13:33:12 ----D---- C:\Program Files\Foxit Software
2013-05-14 14:44:06 ----D---- C:\Program Files\JSignPdf
2013-05-14 14:42:45 ----D---- C:\Program Files\Common Files\Adobe
2013-05-13 18:15:52 ----D---- C:\Users\linuxdrak\AppData\Roaming\MiKTeX
2013-05-13 18:15:45 ----D---- C:\Users\linuxdrak\AppData\Roaming\LyX2.0
2013-05-13 18:04:18 ----D---- C:\ProgramData\MiKTeX
2013-05-13 18:01:46 ----D---- C:\Program Files\MiKTeX 2.9
2013-05-13 17:59:12 ----D---- C:\Program Files\LyX 2.0
2013-05-13 17:00:55 ----D---- C:\Users\linuxdrak\AppData\Roaming\FreemakeVideoDownloader
2013-05-13 16:28:15 ----A---- C:\Windows\system32\CmdLineExt.dll
2013-05-13 15:34:00 ----D---- C:\Users\linuxdrak\AppData\Roaming\Bioshock2
2013-05-13 15:23:17 ----SHD---- C:\ProgramData\SecuROM
2013-05-13 15:21:51 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-05-13 15:21:51 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-05-13 15:21:48 ----D---- C:\Windows\system32\xlive
2013-05-13 15:21:48 ----D---- C:\Program Files\Microsoft Games for Windows - LIVE
2013-05-13 14:59:29 ----D---- C:\Program Files\2K Games
2013-05-13 03:48:59 ----D---- C:\Users\linuxdrak\AppData\Roaming\NVIDIA
2013-05-13 03:48:43 ----D---- C:\Users\linuxdrak\AppData\Roaming\Google
2013-05-13 03:48:43 ----D---- C:\ProgramData\Google
2013-05-12 23:09:09 ----D---- C:\Windows\Panther
2013-05-12 23:08:56 ----RASH---- C:\BOOTSECT.BAK
2013-05-12 23:08:53 ----D---- C:\Boot
2013-05-12 23:08:36 ----D---- C:\Windows\system32\OEM
2013-05-12 20:57:15 ----D---- C:\Program Files\linguatec
2013-05-12 20:57:15 ----A---- C:\Windows\system32\MFC71u.dll
2013-05-12 20:57:15 ----A---- C:\Windows\system32\MFC71.dll
2013-05-12 20:57:15 -------- C:\Windows\system32\msvcr71.dll
2013-05-12 20:57:15 -------- C:\Windows\system32\msvcp71.dll
2013-05-12 20:52:18 ----D---- C:\Program Files\SuperWebcam
2013-05-12 18:11:22 ----D---- C:\Users\linuxdrak\AppData\Roaming\WB Games
2013-05-12 17:55:00 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-05-12 17:55:00 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-05-12 17:55:00 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-05-12 17:54:59 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-05-12 17:54:58 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-05-12 17:54:57 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-05-12 17:54:56 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\xinput1_3.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-05-12 17:54:55 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-05-12 17:54:54 ----A---- C:\Windows\system32\d3dx10.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xinput1_2.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xinput1_1.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-05-12 17:54:53 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-05-12 17:54:52 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-05-12 17:43:41 ----D---- C:\Program Files\WB Games
2013-05-12 17:03:31 ----D---- C:\Users\linuxdrak\AppData\Roaming\Sword
2013-05-12 17:03:31 ----D---- C:\Users\linuxdrak\AppData\Roaming\Bibletime
2013-05-12 17:03:31 ----D---- C:\ProgramData\Sword
2013-05-12 17:02:01 ----HD---- C:\Program Files\InstallShield Installation Information
2013-05-12 17:01:41 ----D---- C:\Program Files\GameSpy Arcade
2013-05-12 16:54:12 ----D---- C:\Program Files\Illusion Softworks
2013-05-12 16:53:00 ----D---- C:\Program Files\Common Files\InstallShield
2013-05-12 16:29:06 ----D---- C:\Program Files\AGEIA Technologies
2013-05-12 16:28:54 ----D---- C:\ProgramData\NVIDIA
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvvsvc.exe
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvsvcr.dll
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvsvc.dll
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvshext.dll
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvmctray.dll
2013-05-12 16:28:37 ----A---- C:\Windows\system32\nvcpl.dll
2013-05-12 16:28:10 ----A---- C:\Windows\system32\OpenCL.dll
2013-05-12 16:28:02 ----D---- C:\ProgramData\NVIDIA Corporation
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvwgf2um.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvopencl.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvoglv32.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvdispgenco3231422.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvdispco3231422.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvd3dum.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvcuvid.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvcuda.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvcompiler.dll
2013-05-12 16:26:41 ----A---- C:\Windows\system32\nvapi.dll
2013-05-12 16:24:47 ----D---- C:\Program Files\NVIDIA Corporation
2013-05-12 16:05:04 ----D---- C:\Program Files\BibleTime
2013-05-12 15:51:37 ----D---- C:\Program Files\FlexLoader
2013-05-12 15:51:25 ----D---- C:\System.sav
2013-05-12 15:50:09 ----D---- C:\Users\linuxdrak\AppData\Roaming\FlexLoader.346A729E60C8ACAB5B256CEBF2755FFA037052EC.1
2013-05-12 15:48:58 ----D---- C:\ProgramData\Adobe
2013-05-12 15:48:53 ----D---- C:\Program Files\Common Files\Adobe AIR
2013-05-12 15:48:53 ----D---- C:\Program Files\Adobe
2013-05-12 15:48:40 ----D---- C:\Users\linuxdrak\AppData\Roaming\Macromedia
2013-05-12 15:48:40 ----D---- C:\Users\linuxdrak\AppData\Roaming\Adobe
2013-05-12 15:45:52 ----D---- C:\Program Files\WinPcap
2013-05-12 15:45:40 ----D---- C:\ProgramData\Freemake
2013-05-12 15:45:27 ----D---- C:\Program Files\Freemake
2013-05-12 15:44:42 ----D---- C:\Users\linuxdrak\AppData\Roaming\PSpad
2013-05-12 15:44:35 ----D---- C:\Program Files\PSPad editor
2013-05-12 15:44:23 -------- C:\Windows\system32\MpSigStub.exe
2013-05-12 15:42:48 ----D---- C:\Users\linuxdrak\AppData\Roaming\PDFCreator
2013-05-12 15:42:47 ----A---- C:\Windows\system32\PDFSpooler.exe
2013-05-12 15:42:47 ----A---- C:\Windows\system32\pdfcmnnt.dll
2013-05-12 15:42:46 ----D---- C:\Program Files\PDFCreator
2013-05-12 15:42:46 ----A---- C:\Windows\system32\VB6DE.DLL
2013-05-12 15:42:46 ----A---- C:\Windows\system32\MSMPIDE.DLL
2013-05-12 15:42:46 ----A---- C:\Windows\system32\MSCMCDE.DLL
2013-05-12 15:42:46 ----A---- C:\Windows\system32\MSCC2DE.DLL
2013-05-12 15:42:46 ----A---- C:\Windows\system32\CMDLGDE.DLL
2013-05-12 15:42:11 ----A---- C:\Windows\system32\NVUNINST.EXE
2013-05-12 15:37:42 ----D---- C:\Program Files\CCleaner
2013-05-12 15:36:56 ----D---- C:\Program Files\Microsoft.NET
2013-05-12 15:36:27 ----D---- C:\Program Files\Google
2013-05-12 15:36:21 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-05-12 15:36:21 ----A---- C:\Windows\system32\PresentationHost.exe
2013-05-12 15:36:21 ----A---- C:\Windows\system32\netfxperf.dll
2013-05-12 15:36:21 ----A---- C:\Windows\system32\mscoree.dll
2013-05-12 15:36:21 ----A---- C:\Windows\system32\dfshim.dll
2013-05-12 15:34:02 ----D---- C:\Program Files\PowerISO
2013-05-12 15:33:37 ----D---- C:\Program Files\WinRAR
2013-05-12 15:33:34 ----D---- C:\Users\linuxdrak\AppData\Roaming\WinRAR
2013-05-12 15:32:54 ----D---- C:\Program Files\Microsoft Silverlight
2013-05-12 15:32:45 ----SHD---- C:\Windows\Installer
2013-05-12 15:31:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-05-12 13:30:45 ----A---- C:\Windows\iun6002.exe
2013-05-12 13:30:41 ----D---- C:\Program Files\Codec Pack - All In 1
2013-05-12 13:26:54 ----D---- C:\Users\linuxdrak\AppData\Roaming\Identities
2013-05-12 13:26:24 ----SD---- C:\Users\linuxdrak\AppData\Roaming\Microsoft
2013-05-12 13:26:24 ----D---- C:\Users\linuxdrak\AppData\Roaming\Media Center Programs
2013-05-12 13:23:26 ----D---- C:\Recovery
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Šablony
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Plocha
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Oblíbené položky
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Nabídka Start
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Dokumenty
2013-05-12 13:23:25 ----SHD---- C:\ProgramData\Data aplikací
2013-05-12 13:17:28 ----D---- C:\Windows\SoftwareDistribution
2013-05-12 13:13:58 ----D---- C:\Windows\Prefetch
2013-05-12 13:12:31 ----SHD---- C:\System Volume Information
2013-05-12 12:47:41 ----A---- C:\Windows\system32\OC30.DLL
2013-05-12 12:47:40 ----A---- C:\Windows\system32\qtintf70.dll
2013-05-12 12:47:39 ----A---- C:\Windows\system32\VSPELL32.DLL
2013-05-12 12:47:38 ----A---- C:\Windows\system32\VCFIDL32.DLL
2013-05-12 12:47:38 ----A---- C:\Windows\system32\stdvcl32.dll
2013-05-12 12:47:37 ----A---- C:\Windows\system32\VCFIWZ32.DLL
2013-05-12 12:47:36 ----A---- C:\Windows\system32\stdvcl40.dll
2013-05-12 12:47:36 ----A---- C:\Windows\system32\MFCANS32.DLL
2013-04-30 14:07:24 ----AD---- C:\HBPVR
======List of files/folders modified in the last 1 months======
2013-05-20 07:29:28 ----RD---- C:\Program Files
2013-05-20 07:26:43 ----D---- C:\Windows\System32
2013-05-20 07:26:43 ----D---- C:\Windows\inf
2013-05-18 15:02:29 ----D---- C:\Windows\system32\drivers
2013-05-18 12:43:00 ----D---- C:\Program Files\Common Files
2013-05-18 12:42:55 ----D---- C:\ProgramData
2013-05-17 22:42:49 ----D---- C:\Windows
2013-05-17 22:38:00 ----A---- C:\Windows\system.ini
2013-05-17 22:30:42 ----D---- C:\Windows\AppPatch
2013-05-17 20:35:27 ----D---- C:\Windows\system32\Tasks
2013-05-17 20:34:09 ----D---- C:\Windows\system32\DriverStore
2013-05-17 20:34:09 ----D---- C:\Windows\system32\catroot
2013-05-16 11:06:02 ----RD---- C:\Users
2013-05-16 08:18:26 ----D---- C:\Windows\system32\catroot2
2013-05-15 14:30:43 ----RSD---- C:\Windows\Media
2013-05-15 14:30:42 ----D---- C:\Windows\twain_32
2013-05-15 14:22:50 ----D---- C:\Windows\system32\config
2013-05-15 14:05:19 ----D---- C:\Windows\Logs
2013-05-13 16:48:18 ----D---- C:\Windows\system32\wdi
2013-05-13 15:29:19 ----D---- C:\Program Files\Common Files\microsoft shared
2013-05-13 15:28:47 ----SD---- C:\ProgramData\Microsoft
2013-05-13 15:22:33 ----D---- C:\Windows\winsxs
2013-05-13 15:20:19 ----RSD---- C:\Windows\assembly
2013-05-13 15:20:17 ----D---- C:\Windows\Microsoft.NET
2013-05-12 20:53:55 ----D---- C:\Windows\debug
2013-05-12 16:52:37 ----D---- C:\Windows\system32\LogFiles
2013-05-12 16:28:34 ----D---- C:\Windows\Help
2013-05-12 15:45:40 ----D---- C:\Program Files\Internet Explorer
2013-05-12 15:39:45 ----D---- C:\Windows\system32\cs-CZ
2013-05-12 15:36:57 ----D---- C:\Windows\system32\en-US
2013-05-12 15:36:41 ----D---- C:\Windows\Tasks
2013-05-12 15:35:59 ----D---- C:\Windows\system32\restore
2013-05-12 15:35:55 ----D---- C:\Windows\system32\CodeIntegrity
2013-05-12 13:30:23 ----D---- C:\Windows\system32\wbem
2013-05-12 13:24:56 ----D---- C:\Windows\Setup
2013-05-12 13:24:12 ----D---- C:\Windows\rescache
2013-05-12 13:23:25 ----D---- C:\Program Files\Windows NT
2013-05-12 13:18:46 ----D---- C:\Windows\system32\sysprep
2013-05-12 13:15:11 ----D---- C:\Windows\CSC
2013-05-12 12:56:18 ----AD---- C:\aplikace
2013-04-25 08:25:15 ----D---- C:\video
Přikládám výpis ComboFix
ComboFix 13-05-18.04 - linuxdrak 20.05.2013 7:48.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2046.872 [GMT 2:00]
Spuštěný z: c:\users\linuxdrak\Downloads\ComboFix.exe
AV: AVG Internet Security 2013 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2013 *Disabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2013 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-04-20 do 2013-05-20 )))))))))))))))))))))))))))))))
.
.
2013-05-20 05:58 . 2013-05-20 05:58 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-05-20 05:29 . 2013-05-20 05:29 -------- d-----w- C:\rsit
2013-05-20 05:29 . 2013-05-20 05:29 -------- d-----w- c:\program files\trend micro
2013-05-18 10:43 . 2013-05-18 10:43 -------- d-----w- c:\program files\Common Files\Skype
2013-05-18 10:43 . 2013-05-18 10:43 -------- d-----r- c:\program files\Skype
2013-05-18 10:42 . 2013-05-18 10:43 -------- d-----w- c:\programdata\Skype
2013-05-18 09:59 . 2013-05-18 09:59 -------- d-----w- C:\Codemasters
2013-05-18 09:50 . 2013-05-18 09:50 -------- d-----w- c:\programdata\Fraus
2013-05-18 09:49 . 2013-05-18 09:49 -------- d-----w- c:\program files\Common Files\Java
2013-05-18 09:49 . 2013-05-18 09:49 472808 ----a-w- c:\windows\system32\deployJava1.dll
2013-05-18 09:49 . 2013-05-18 09:49 -------- d-----w- c:\program files\Java
2013-05-18 09:42 . 2013-05-18 09:42 -------- d-----w- c:\program files\GeoGebra
2013-05-18 09:42 . 2013-05-18 09:42 -------- d-----w- c:\program files\SMART Technologies Inc
2013-05-18 09:39 . 2013-05-18 09:39 -------- d-----w- c:\program files\Fraus
2013-05-18 09:32 . 2013-05-18 09:33 -------- d-----w- c:\programdata\VerisignIT
2013-05-18 09:32 . 2013-05-18 09:32 -------- d-----w- c:\program files\Dignita
2013-05-18 07:39 . 2013-05-18 07:39 231760 ----a-w- c:\windows\system32\drivers\truecrypt.sys
2013-05-18 07:39 . 2013-05-18 07:39 -------- d-----w- c:\program files\TrueCrypt
2013-05-18 07:36 . 2013-05-18 07:36 -------- d-----w- c:\program files\VideoLAN
2013-05-17 18:52 . 2012-08-23 09:31 32120 ----a-w- c:\windows\system32\TURegOpt.exe
2013-05-17 18:52 . 2012-08-23 09:31 21880 ----a-w- c:\windows\system32\authuitu.dll
2013-05-17 18:50 . 2013-05-17 18:52 -------- d-----w- c:\programdata\AVG
2013-05-17 18:50 . 2013-05-17 18:50 -------- d-sh--w- c:\programdata\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2013-05-17 18:33 . 2013-05-17 18:33 -------- d-----w- C:\$AVG
2013-05-17 18:19 . 2013-05-20 05:30 -------- d-----w- c:\programdata\MFAData
2013-05-17 10:02 . 2013-05-17 10:02 -------- d-----w- c:\program files\totalcmd
2013-05-17 06:00 . 2013-05-17 06:01 -------- d---a-w- C:\zaloha
2013-05-16 07:14 . 2013-05-16 07:15 -------- d-----w- c:\program files\Common Files\Borland Shared
2013-05-16 07:14 . 2013-05-16 07:14 -------- d-----w- c:\program files\Borland
2013-05-16 05:25 . 2013-05-16 05:25 -------- dc-h--w- c:\programdata\{C2A88E6D-FA3D-462B-BDFF-A09B1EFA8FBE}
2013-05-16 05:18 . 2013-05-16 05:19 -------- d-----w- c:\program files\Common Files\Native Instruments
2013-05-16 05:18 . 2013-05-16 05:18 -------- d-----w- c:\program files\Common Files\Digidesign
2013-05-16 05:18 . 2013-05-16 05:18 -------- dc-h--w- c:\programdata\{C78336EC-F2EB-4640-99A4-DFE96581B90B}
2013-05-16 05:17 . 2013-05-16 05:18 -------- d-----w- c:\program files\Native Instruments
2013-05-16 05:17 . 2013-05-16 05:17 -------- d-----w- c:\programdata\Native Instruments
2013-05-15 12:58 . 2013-05-17 19:57 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-05-15 12:43 . 2013-05-15 12:43 -------- d--h--w- c:\programdata\Common Files
2013-05-15 12:29 . 2013-05-15 12:29 -------- d-----w- C:\CanoScan
2013-05-15 12:29 . 2005-06-23 20:17 352256 ----a-w- c:\windows\system32\CNQL1213.DLL
2013-05-15 12:29 . 2005-02-28 11:20 57344 ----a-w- c:\windows\system32\CNQU110.DLL
2013-05-15 12:00 . 2013-05-17 18:51 -------- d-----w- c:\program files\AVG
2013-05-15 12:00 . 2013-05-17 18:26 -------- d-----w- c:\programdata\avg9
2013-05-15 11:33 . 2013-05-15 11:33 -------- d-----w- c:\program files\Foxit Software
2013-05-14 12:44 . 2013-05-14 12:44 -------- d-----w- c:\program files\JSignPdf
2013-05-14 12:42 . 2013-05-14 12:42 -------- d-----w- c:\program files\Common Files\Adobe
2013-05-13 16:04 . 2013-05-13 16:04 -------- d-----w- c:\programdata\MiKTeX
2013-05-13 16:01 . 2013-05-13 16:03 -------- d-----w- c:\program files\MiKTeX 2.9
2013-05-13 15:59 . 2013-05-13 16:09 -------- d-----w- c:\program files\LyX 2.0
2013-05-13 14:28 . 2013-05-13 14:28 108144 ----a-w- c:\windows\system32\CmdLineExt.dll
2013-05-13 13:23 . 2013-05-13 13:23 -------- d-sh--w- c:\programdata\SecuROM
2013-05-13 13:21 . 2009-09-04 15:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2013-05-13 13:21 . 2009-09-04 15:29 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll
2013-05-13 13:21 . 2013-05-13 13:29 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2013-05-13 13:21 . 2013-05-13 13:21 -------- d-----w- c:\windows\system32\xlive
2013-05-13 12:59 . 2013-05-13 14:28 -------- d-----w- c:\program files\2K Games
2013-05-12 21:09 . 2013-05-12 18:53 -------- d-----w- c:\windows\Panther
2013-05-12 21:08 . 2013-05-12 14:18 -------- d-----w- C:\Boot
2013-05-12 21:08 . 2013-05-12 21:08 -------- d-----w- c:\windows\system32\OEM
2013-05-12 18:57 . 2013-05-12 18:57 -------- d-----w- c:\program files\linguatec
2013-05-12 18:57 . 2004-10-11 11:29 499712 ------w- c:\windows\system32\msvcp71.dll
2013-05-12 18:57 . 2004-10-11 11:29 348160 ------w- c:\windows\system32\msvcr71.dll
2013-05-12 18:57 . 2004-10-11 11:29 1060864 ----a-w- c:\windows\system32\MFC71.dll
2013-05-12 18:57 . 2003-03-19 05:12 1047552 ----a-w- c:\windows\system32\MFC71u.dll
2013-05-12 18:52 . 2013-05-12 18:52 -------- d-----w- c:\program files\SuperWebcam
2013-05-12 18:51 . 2006-06-27 06:56 31872 ----a-w- c:\windows\system32\drivers\superwebcam.sys
2013-05-12 15:55 . 2009-03-09 13:27 453456 ----a-w- c:\windows\system32\d3dx10_41.dll
2013-05-12 15:55 . 2009-03-09 13:27 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll
2013-05-12 15:55 . 2009-03-09 13:27 1846632 ----a-w- c:\windows\system32\D3DCompiler_41.dll
2013-05-12 15:43 . 2013-05-12 15:43 -------- d-----w- c:\program files\WB Games
2013-05-12 15:03 . 2013-05-12 15:04 -------- d-----w- c:\programdata\Sword
2013-05-12 15:02 . 2013-05-15 12:29 -------- d--h--w- c:\program files\InstallShield Installation Information
2013-05-12 15:01 . 2013-05-12 15:01 -------- d-----w- c:\program files\GameSpy Arcade
2013-05-12 14:54 . 2013-05-12 14:54 -------- d-----w- c:\program files\Illusion Softworks
2013-05-12 14:53 . 2013-05-15 12:29 -------- d-----w- c:\program files\Common Files\InstallShield
2013-05-12 14:29 . 2013-05-12 14:29 -------- d-----w- c:\program files\AGEIA Technologies
2013-05-12 14:28 . 2013-05-12 14:31 -------- d-----w- c:\programdata\NVIDIA
2013-05-12 14:28 . 2013-05-17 19:44 -------- d-----w- c:\users\UpdatusUser
2013-05-12 14:28 . 2013-03-15 02:59 4119328 ----a-w- c:\windows\system32\nvcpl.dll
2013-05-12 14:28 . 2013-03-15 02:59 3014432 ----a-w- c:\windows\system32\nvsvc.dll
2013-05-12 14:28 . 2013-03-15 02:59 634144 ----a-w- c:\windows\system32\nvvsvc.exe
2013-05-12 14:28 . 2013-03-15 02:59 2555168 ----a-w- c:\windows\system32\nvsvcr.dll
2013-05-12 14:28 . 2013-03-15 02:59 62752 ----a-w- c:\windows\system32\nvshext.dll
2013-05-12 14:28 . 2013-03-15 02:59 223008 ----a-w- c:\windows\system32\nvmctray.dll
2013-05-12 14:28 . 2013-03-15 05:46 53024 ----a-w- c:\windows\system32\OpenCL.dll
2013-05-12 14:28 . 2013-05-12 14:28 -------- d-----w- c:\programdata\NVIDIA Corporation
2013-05-12 14:26 . 2013-03-15 05:46 8952608 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-05-12 14:26 . 2013-03-15 05:46 892704 ----a-w- c:\windows\system32\nvdispgenco3231422.dll
2013-05-12 14:26 . 2013-03-15 05:46 7959000 ----a-w- c:\windows\system32\nvcuda.dll
2013-05-12 14:26 . 2013-03-15 05:46 6271872 ----a-w- c:\windows\system32\nvopencl.dll
2013-05-12 14:26 . 2013-03-15 05:46 2728736 ----a-w- c:\windows\system32\nvcuvid.dll
2013-05-12 14:26 . 2013-03-15 05:46 2539128 ----a-w- c:\windows\system32\nvapi.dll
2013-05-12 14:26 . 2013-03-15 05:46 20542752 ----a-w- c:\windows\system32\nvoglv32.dll
2013-05-12 14:26 . 2013-03-15 05:46 1995552 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-05-12 14:26 . 2013-03-15 05:46 17560352 ----a-w- c:\windows\system32\nvcompiler.dll
2013-05-12 14:26 . 2013-03-15 05:46 15042928 ----a-w- c:\windows\system32\nvd3dum.dll
2013-05-12 14:26 . 2013-03-15 05:46 13088000 ----a-w- c:\windows\system32\nvwgf2um.dll
2013-05-12 14:26 . 2013-03-15 05:46 1012512 ----a-w- c:\windows\system32\nvdispco3231422.dll
2013-05-12 14:24 . 2013-05-12 14:29 -------- d-----w- c:\program files\NVIDIA Corporation
2013-05-12 14:05 . 2013-05-12 14:05 -------- d-----w- c:\program files\BibleTime
2013-05-12 13:51 . 2013-05-12 13:51 -------- d-----w- c:\program files\FlexLoader
2013-05-12 13:51 . 2013-05-12 13:51 -------- d-----w- C:\System.sav
2013-05-12 13:48 . 2013-05-12 13:49 -------- d-----w- c:\program files\Common Files\Adobe AIR
2013-05-12 13:45 . 2013-05-12 13:45 -------- d-----w- c:\program files\WinPcap
2013-05-12 13:45 . 2013-05-13 14:58 -------- d-----w- c:\programdata\Freemake
2013-05-12 13:45 . 2013-04-01 11:17 8013376 ----a-w- c:\program files\Internet Explorer\Microsoft.mshtml.dll
2013-05-12 13:45 . 2013-05-12 14:25 -------- d-----w- c:\program files\Freemake
2013-05-12 13:44 . 2013-05-12 13:44 -------- d-----w- c:\program files\PSPad editor
2013-05-12 13:44 . 2013-04-17 04:31 6906960 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{AD1B0AD3-8920-4D05-A382-55A7C7EE50A9}\mpengine.dll
2013-05-12 13:44 . 2013-05-02 00:06 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-05-12 13:42 . 2005-01-04 21:21 92672 ----a-w- c:\windows\system32\PDFSpooler.exe
2013-05-12 13:42 . 2001-10-28 14:42 116224 ----a-w- c:\windows\system32\pdfcmnnt.dll
2013-05-12 13:42 . 2000-05-22 14:58 647872 ----a-w- c:\windows\system32\MSCOMCT2.OCX
2013-05-12 13:42 . 1999-01-05 20:18 1057552 ----a-w- c:\windows\system32\MSCOMCTL.OCX
2013-05-12 13:42 . 1998-06-23 22:00 137000 ----a-w- c:\windows\system32\MSMAPI32.OCX
2013-05-12 13:42 . 2013-05-12 13:42 -------- d-----w- c:\program files\PDFCreator
2013-05-12 13:42 . 2000-10-02 09:27 125712 ----a-w- c:\windows\system32\VB6DE.DLL
2013-05-12 13:42 . 1998-07-05 22:00 64512 ----a-w- c:\windows\system32\MSCC2DE.DLL
2013-05-12 13:42 . 1998-07-05 22:00 33792 ----a-w- c:\windows\system32\CMDLGDE.DLL
2013-05-12 13:42 . 1998-07-05 22:00 23552 ----a-w- c:\windows\system32\MSMPIDE.DLL
2013-05-12 13:42 . 1998-07-05 22:00 158208 ----a-w- c:\windows\system32\MSCMCDE.DLL
2013-05-12 13:42 . 2007-05-02 07:28 356352 ----a-w- c:\windows\system32\NVUNINST.EXE
2013-05-12 13:37 . 2013-05-16 05:05 -------- d-----w- c:\program files\CCleaner
2013-05-12 13:36 . 2013-05-12 13:36 -------- d-----w- c:\program files\Microsoft.NET
2013-05-12 13:36 . 2013-05-13 02:00 -------- d-----w- c:\program files\Google
2013-05-12 13:36 . 2009-11-25 19:47 49472 ----a-w- c:\windows\system32\netfxperf.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-05-13 13:32 . 2009-08-18 09:30 564632 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2013-05-13 13:31 . 2009-08-18 09:24 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-04-19 18678376]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"="c:\program files\AVG\AVG2013\avgui.exe" [2012-12-11 3147384]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R2 avgfws;AVG Firewall;c:\program files\AVG\AVG2013\avgfws.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
S0 AVGIDSHX;AVGIDSHX;c:\windows\system32\DRIVERS\avgidshx.sys [x]
S0 Avglogx;AVG Logging Driver;c:\windows\system32\DRIVERS\avglogx.sys [x]
S0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys [x]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6x.sys [x]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdriverx.sys [x]
S1 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\avgidsshimx.sys [x]
S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx86.sys [x]
S1 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys [x]
S2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2013\avgidsagent.exe [x]
S2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2013\avgwdsvc.exe [x]
S2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [x]
S2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;c:\program files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe [x]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v32.sys [x]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
S3 SUPERWEBCAM;SuperWebcam, WDM Virtual Video Capture Device;c:\windows\system32\DRIVERS\superwebcam.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - TRUECRYPT
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-05-12 13:37 1642448 ----a-w- c:\program files\Google\Chrome\Application\26.0.1410.64\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-05-17 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-05-12 13:36]
.
2013-05-17 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-05-12 13:36]
.
.
------- Doplňkový sken -------
.
TCP: DhcpNameServer = 192.168.1.1 10.109.255.51
.
.
------- Asociace souborů -------
.
txtfile="c:\program files\PSPad editor\PSPad.exe" "%1"
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-05-20 08:01:27
ComboFix-quarantined-files.txt 2013-05-20 06:01
ComboFix2.txt 2013-05-17 20:42
.
Před spuštěním: Volných bajtů: 37 971 251 200
Po spuštění: Volných bajtů: 37 696 729 088
.
- - End Of File - - 991A5D9984F3FCD43C8494922B85D66E
Děkuji za radu.