Stránka 1 z 1

McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 11:27
od Michi-san
Zde je log ohledně toho McAfee. Děkuji za pomoc a ochotu :)

Logfile of random's system information tool 1.09 (written by random/random)
Run by Oliczech at 2013-05-21 12:04:18
Microsoft Windows 7 Starter Service Pack 1
System drive C: has 46 GB (45%) free of 102 GB
Total RAM: 1014 MB (25% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:04:37, on 21.5.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16576)
Boot mode: Normal

Running processes:
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\windows\system32\taskhost.exe
C:\Program Files\ASUS\Eee Docking\Eee Docking.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\ASUS\APRP\aprp.exe
C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\windows\system32\igfxsrvc.exe
C:\Program Files\COMODO\COMODO Internet Security\cis.exe
C:\Users\Oliczech\Downloads\RSIT.exe
C:\Program Files\trend micro\Oliczech.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/?rlz=1W4CHBA_csCZ520
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [HotkeyMon] AsusSender.exe C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe
O4 - HKLM\..\Run: [HotkeyService] AsusSender.exe C:\Program Files\EeePC\HotkeyService\HotkeyService.exe
O4 - HKLM\..\Run: [SuperHybridEngine] AsusSender.exe C:\Program Files\EeePC\SHE\SuperHybridEngine.exe
O4 - HKLM\..\Run: [CapsHook] AsusSender.exe C:\Program Files\EeePC\CapsHook\CapsHook.exe
O4 - HKLM\..\Run: [Eee Docking] C:\Program Files\ASUS\Eee Docking\Eee Docking.exe autorun
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ASUSPRP] C:\Program Files\ASUS\APRP\APRP.EXE
O4 - HKLM\..\Run: [SynAsusAcpi] %ProgramFiles%\Synaptics\SynTP\SynAsusAcpi.exe
O4 - HKLM\..\Run: [IgfxTray] C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - Global Startup: AsusVibeLauncher.lnk = C:\Program Files\ASUS\AsusVibe\AsusVibeLauncher.exe
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - (no file)
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{367D9EBA-EEC7-41D3-9CD7-90A75CC42F4C}: NameServer = 8.26.56.26,156.154.70.22
O17 - HKLM\System\CCS\Services\Tcpip\..\{A5787F6B-C3A0-4969-93CB-7A3E6BEE527A}: NameServer = 8.26.56.26,156.154.70.22
O17 - HKLM\System\CS1\Services\Tcpip\..\{367D9EBA-EEC7-41D3-9CD7-90A75CC42F4C}: NameServer = 8.26.56.26,156.154.70.22
O17 - HKLM\System\CS2\Services\Tcpip\..\{367D9EBA-EEC7-41D3-9CD7-90A75CC42F4C}: NameServer = 8.26.56.26,156.154.70.22
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Asus Launcher Service (AsusService) - Unknown owner - C:\Windows\System32\AsusService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

--
End of file - 6839 bytes

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Oliczech\AppData\Roaming\Mozilla\Firefox\Profiles\97579zxv.default

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.202 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF32_11_7_700_202.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@kingsfot.com/npkws]
"Description"=npkws
"Path"=C:\Program Files\kingsoft\kingsoft antivirus\npkws.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08 77424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-04-04 462752]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-04-04 171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HotkeyMon"=AsusSender.exe C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe []
"HotkeyService"=AsusSender.exe C:\Program Files\EeePC\HotkeyService\HotkeyService.exe []
"SuperHybridEngine"=AsusSender.exe C:\Program Files\EeePC\SHE\SuperHybridEngine.exe []
"CapsHook"=AsusSender.exe C:\Program Files\EeePC\CapsHook\CapsHook.exe []
"Eee Docking"=C:\Program Files\ASUS\Eee Docking\Eee Docking.exe [2010-06-10 414384]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-04-27 9177632]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-11-19 1594664]
"ASUSPRP"=C:\Program Files\ASUS\APRP\APRP.EXE [2010-12-22 2018032]
"SynAsusAcpi"=C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [2009-11-19 83240]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-04-20 142104]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-04-20 174360]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-04-20 150808]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2013-04-15 3012816]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2013-05-08 41056]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
AsusVibeLauncher.lnk - C:\Program Files\ASUS\AsusVibe\AsusVibeLauncher.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\SYSTEM32\igfxdev.dll [2011-04-11 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.siren"=sirenacm.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-05-21 12:04:19 ----D---- C:\Program Files\trend micro
2013-05-21 12:04:18 ----D---- C:\rsit
2013-05-17 12:51:56 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-05-16 00:19:43 ----A---- C:\windows\system32\jscript.dll
2013-05-16 00:19:41 ----A---- C:\windows\system32\jscript9.dll
2013-05-16 00:19:39 ----A---- C:\windows\system32\jsproxy.dll
2013-05-16 00:19:38 ----A---- C:\windows\system32\iesetup.dll
2013-05-16 00:19:37 ----A---- C:\windows\system32\ieui.dll
2013-05-16 00:19:34 ----A---- C:\windows\system32\msfeeds.dll
2013-05-16 00:19:34 ----A---- C:\windows\system32\iernonce.dll
2013-05-16 00:19:34 ----A---- C:\windows\system32\ie4uinit.exe
2013-05-16 00:19:33 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-05-16 00:19:32 ----A---- C:\windows\system32\iesysprep.dll
2013-05-16 00:19:31 ----A---- C:\windows\system32\urlmon.dll
2013-05-16 00:19:28 ----A---- C:\windows\system32\iertutil.dll
2013-05-16 00:19:17 ----A---- C:\windows\system32\wininet.dll
2013-05-16 00:19:11 ----A---- C:\windows\system32\ieframe.dll
2013-05-16 00:19:00 ----A---- C:\windows\system32\mshtml.dll
2013-05-16 00:01:57 ----A---- C:\windows\system32\wwansvc.dll
2013-05-16 00:01:57 ----A---- C:\windows\system32\wwanprotdim.dll
2013-05-16 00:01:55 ----A---- C:\windows\system32\win32k.sys
2013-05-16 00:01:39 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-05-16 00:01:38 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2013-05-16 00:01:21 ----A---- C:\windows\system32\shell32.dll
2013-05-16 00:01:20 ----A---- C:\windows\system32\consent.exe
2013-05-16 00:01:19 ----A---- C:\windows\system32\shdocvw.dll
2013-05-16 00:01:19 ----A---- C:\windows\system32\authui.dll
2013-05-16 00:01:18 ----A---- C:\windows\system32\appinfo.dll
2013-04-29 23:39:53 ----D---- C:\Users\Oliczech\AppData\Roaming\vlc
2013-04-29 23:37:32 ----D---- C:\Program Files\VideoLAN
2013-04-24 06:52:39 ----D---- C:\ProgramData\Shared Space
2013-04-24 04:09:17 ----A---- C:\windows\system32\drivers\ntfs.sys
2013-04-23 10:12:45 ----D---- C:\Program Files\Common Files\Java
2013-04-23 10:12:01 ----A---- C:\windows\system32\WindowsAccessBridge.dll
2013-04-23 10:12:01 ----A---- C:\windows\system32\javaw.exe
2013-04-23 10:12:01 ----A---- C:\windows\system32\java.exe

======List of files/folders modified in the last 1 month======

9999-12-24 10:05:40 ----D---- C:\windows\Tasks
9999-12-24 10:05:40 ----D---- C:\windows\system32\wfp
9999-12-24 10:05:40 ----D---- C:\windows\system32\DriverStore
9999-12-24 10:05:38 ----D---- C:\windows\AppCompat
9999-12-24 10:05:38 ----D---- C:\Program Files\Metin2
9999-12-24 10:05:32 ----D---- C:\windows\system32\wbem
9999-12-24 10:05:31 ----D---- C:\windows\registration
2013-05-21 12:04:23 ----D---- C:\windows\Temp
2013-05-21 12:04:19 ----RD---- C:\Program Files
2013-05-21 12:00:56 ----D---- C:\windows\System32
2013-05-21 12:00:56 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-05-21 12:00:55 ----D---- C:\windows\inf
2013-05-21 11:57:37 ----D---- C:\windows\system32\catroot2
2013-05-21 11:56:59 ----D---- C:\windows\system32\config
2013-05-21 11:46:20 ----D---- C:\Windows
2013-05-21 11:44:32 ----D---- C:\Users\Oliczech\AppData\Roaming\Media Player Classic
2013-05-21 10:47:54 ----SHD---- C:\System Volume Information
2013-05-20 21:13:19 ----D---- C:\windows\system32\drivers
2013-05-17 12:53:07 ----D---- C:\Users\Oliczech\AppData\Roaming\Mozilla
2013-05-17 12:51:46 ----D---- C:\Program Files\Mozilla Firefox
2013-05-17 12:42:33 ----D---- C:\windows\debug
2013-05-17 12:36:21 ----SHD---- C:\windows\Installer
2013-05-17 12:36:18 ----SHD---- C:\Config.Msi
2013-05-17 12:29:44 ----D---- C:\Program Files\Common Files\Adobe AIR
2013-05-16 21:34:08 ----D---- C:\windows\Microsoft.NET
2013-05-16 21:34:06 ----RSD---- C:\windows\assembly
2013-05-16 00:27:47 ----D---- C:\windows\winsxs
2013-05-16 00:24:14 ----D---- C:\windows\AppPatch
2013-05-16 00:24:14 ----D---- C:\Program Files\Internet Explorer
2013-05-16 00:24:13 ----D---- C:\windows\system32\cs-CZ
2013-05-16 00:20:28 ----D---- C:\windows\system32\catroot
2013-05-16 00:11:57 ----D---- C:\windows\Prefetch
2013-05-16 00:06:59 ----A---- C:\windows\system32\MRT.exe
2013-05-15 19:34:29 ----A---- C:\windows\system32\FlashPlayerApp.exe
2013-05-13 16:24:16 ----D---- C:\windows\system32\Tasks
2013-05-10 02:49:25 ----D---- C:\temp
2013-05-09 10:58:28 ----A---- C:\windows\system32\aswBoot.exe
2013-05-02 02:06:08 ----N---- C:\windows\system32\MpSigStub.exe
2013-04-24 06:52:39 ----HD---- C:\ProgramData
2013-04-23 16:04:10 ----A---- C:\windows\system32\guard32.dll
2013-04-23 10:12:45 ----D---- C:\Program Files\Common Files
2013-04-23 10:12:01 ----D---- C:\Program Files\Java

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\windows\system32\drivers\aswRvrt.sys [2013-05-09 49376]
R0 aswVmm;aswVmm; C:\windows\system32\drivers\aswVmm.sys [2013-05-09 174664]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-06-08 435736]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 AsUpIO;AsUpIO; C:\windows\system32\drivers\AsUpIO.sys [2010-03-31 11520]
R1 aswRdr;aswRdr; C:\windows\System32\Drivers\aswrdr2.sys [2013-05-09 61680]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2013-05-09 765736]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2013-05-09 368944]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2013-05-09 56080]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\windows\System32\DRIVERS\cmderd.sys [2013-04-15 20072]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\windows\system32\DRIVERS\cmdguard.sys [2013-04-15 581912]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\windows\System32\DRIVERS\cmdhlp.sys [2013-04-15 43728]
R1 inspect;COMODO Internet Security Firewall Driver; C:\windows\system32\DRIVERS\inspect.sys [2013-04-25 84928]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2013-05-09 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [2013-05-09 66336]
R2 irda;IrDA Protocol; C:\windows\system32\DRIVERS\irda.sys [2009-07-14 96768]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2011-04-11 4815872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHDA.sys [2010-04-27 3084256]
R3 kbfiltr;Keyboard Filter; C:\windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 13880]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x86.sys [2010-08-24 68208]
R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver; C:\windows\system32\DRIVERS\rtl8192se.sys [2010-07-02 1015912]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2009-11-19 230448]
S2 Parvdm;Parvdm; C:\windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athr.sys [2009-10-05 1221632]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys []
S3 btwavdt;Bluetooth AVDT; C:\windows\system32\DRIVERS\btwavdt.sys []
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys []
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys []
S3 EagleNT;EagleNT; \??\C:\windows\system32\drivers\EagleNT.sys []
S3 EagleXNt;EagleXNt; \??\C:\windows\system32\drivers\EagleXNt.sys []
S3 fssfltr;FssFltr; C:\windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 MosIrUsb;MosIrUsb.sys; C:\windows\system32\DRIVERS\MosIrUsb.sys [2007-10-11 22016]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;Filtr SIS sběrnice AGP; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TOO;TOO; \??\C:\Program Files\ASUS\LiveUpdate\genport.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2012-08-23 49664]
S3 viaagp;Filtr VIA sběrnice AGP; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AsusService;Asus Launcher Service; C:\Windows\System32\AsusService.exe [2009-08-19 219136]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2013-04-25 4443912]
R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\windows\system32\svchost.exe [2009-07-14 20992]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-22 1710464]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-15 256904]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2013-04-15 127184]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-05-12 117144]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 51040]

-----------------EOF-----------------

Re: McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 17:56
od Rudy
McAfee security scan není v logu vidět, což znamená, že jsou tam už jen zbytky. Zkuste Startmenu>přík. řádek>(napsat) regedit>Enter. Podle návodu: http://forum.viry.cz/viewtopic.php?f=46&t=2791 smažte vše, co souvisí s McAfee. Zavřete regedit a restartujte PC.

Re: McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 19:06
od Michi-san
Popravdě se bojím v registrech hrabat, když tomu nerozumím, tak se chci zeptat, zda stačí jen smazat složky McAfee, které v pc mám a pak například přes CCleaner domazat ten registr? Moc celou věc nechápu, co po mně teď chcete, o to víc se bojím s tím něco dělat.
Pokud bych smazala jen ty složky, byl by nějaký problém s pc, kdyby ten registr zůstal takový, jaký je (a já se v něm tedy nehrabala) ?

Re: McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 19:56
od Rudy
Pokud smažete složky, program zmizí, ale zřejmě ne korektně Po otevření regeditu kliknete na Úpravy>najít a do okénka zadáte McAfee. Kliknete na >Najít další<. Nalezený klíč se označí modře. Kliknete na něj pravým myšítkem a dáte odstranit. V odkazu je to popsáno dostatečně. Pokud odstraníte pouze adresáře, může pak systém vypisovat různé hlášky, jako že McAfee nelze nalézt, apod.

Re: McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 20:38
od Michi-san
Jak to tak vidím, je to na mě přeci jen složitější než jsem si myslela. Proto bych to radši tedy nechala být tak, jak to je. Říkal jste, že nevadí, pokud by v pc zůstal, ano? Je to ověřená firma? McAfee totiž moc neznám, tak by mě zajímalo zda to není škodlivé. Pokud škodlivý není a nevadí, že ho v pc mám (nebo jen ty složky), nechala bych to tedy tak. Omlouvám se, že jsem Vás obtěžovala ve Vašem volném čase. Pokud škodlivý není a nevadí, že je v pc (a nehrozí nějaký problém), tak bych to opravdu radši nechala takhle být, než svou neschopností v pc něco pokazila. Prosím, nezlobte se a ještě jednou se omlouvám a děkuji za Vaši pomoc a trpělivost

Re: McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 20:46
od Rudy
Škodlivý určitě není, McAfee je renomovaný výrobce antivirových programů. Toto je jejich free skener a oni si asi takhle dělají reklamu.

Re: McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 20:55
od Michi-san
Dobře, tak se v něm nebudu rýpat a nechám to tak jak to je. Jen se ještě zeptám s prominutím na takový hloupý dotaz, ale nevím zda je to normální: Mám Comodo FW a jsem s ním spokojená. Aktualizoval se mi ale jen nějaký čas od instalování, teď už nějakých 22 dní ne. Nevadí to nebo je to nějaký problém? Zkoušela jsem hledat i na jejich fóru, ale asi ne pořádně, jelikož jsem nic nenašla. Jinak ale funguje tak jak má, akorát se neaktualizuje, ruční aktualizace stále hlásí, že je program aktuální. Ptám se hlavně kvůli tomu, že se mi kdysi po aktualizaci "porouchal" a musela jsem jeho odstranění řešit v jednom tématu s Vaším kolegou. Obávám se, aby se to nestalo znova.
Jinak ale Comodo FW jede naprosto v pořádku a jsem s ním spokojená, jen u těch aktualizací si nevím rady. Automatickou aktualizaci mám v nastavení zapnutou a nastavenou na jeden den

Re: McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 21:13
od Rudy
FW nepotřebuje časté akturlizace (není to antivir, který funguje na základě databáze virů). Takže nic se neděje.

Re: McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 21:17
od Michi-san
Dobře. Děkuji za pomoc, ochotu a Vaší trpělivost a přeji krásný zbytek dne a dobrou noc :)

Re: McAfee - Log pro Rudyho

Napsal: 21 kvě 2013 21:20
od Rudy
Nemáte zač a dobrou noc! :)