Prosím o kontrolu logu Combo fix
Napsal: 04 črc 2013 13:24
Počítač jede občas na plný výkon bez důvodu. Někdy dochází k tomu, že se nelze připojit na internet (chrom, explorer), ale připojení je funkční.
ComboFix 13-07-03.01 - Pavel 04.07.2013 14:05:39.1.2 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4094.2048 [GMT 2:00]
Spuštěný z: d:\stahovßný web\ComboFix.exe
AV: AVG Internet Security 2013 *Enabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2013 *Enabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2013 *Enabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\prefs.js
c:\users\Pavel\AppData\Local\TempDIR
c:\users\Pavel\AppData\Local\TempDIR\downloader.exe
c:\users\Pavel\AppData\Local\TempDIR\list-bullet.bmp
c:\users\Pavel\AppData\Local\TempDIR\new_Yandex_browser_image.bmp
c:\windows\SysWow64\muzapp.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-06-04 do 2013-07-04 )))))))))))))))))))))))))))))))
.
.
2013-07-04 12:10 . 2013-07-04 12:10 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-07-04 11:27 . 2013-07-04 11:27 -------- d-----w- c:\program files (x86)\KYE
2013-07-04 11:15 . 2013-07-04 11:15 -------- d-----w- c:\users\Pavel\AppData\Roaming\Carambis
2013-06-29 18:40 . 2013-06-29 18:40 -------- d-----w- c:\program files (x86)\PowerISO
2013-06-29 18:40 . 2007-08-07 00:21 57776 ----a-w- c:\windows\system32\drivers\scdemu.sys
2013-06-27 12:10 . 2013-06-27 12:10 -------- d-----w- c:\programdata\Canneverbe Limited
2013-06-27 12:10 . 2013-06-27 12:10 -------- d-----w- c:\users\Pavel\AppData\Roaming\Canneverbe Limited
2013-06-27 12:08 . 2013-06-27 12:08 -------- d-----w- c:\program files (x86)\CDBurnerXP
2013-06-27 12:00 . 2013-06-27 12:00 -------- d-----w- c:\users\Pavel\AppData\Roaming\CD-LabelPrint
2013-06-27 11:58 . 2013-06-27 12:00 -------- d-----w- c:\program files (x86)\CD-LabelPrint
2013-06-20 17:41 . 2013-06-20 17:41 -------- d-----w- c:\program files (x86)\Ashampoo
2013-06-20 17:41 . 2013-06-20 17:41 -------- d-----w- c:\users\Pavel\AppData\Local\Programs
2013-06-20 17:12 . 2013-06-20 17:27 -------- d-----w- c:\users\Pavel\AppData\Roaming\MAGIX
2013-06-20 17:11 . 2013-06-20 17:40 -------- d-----w- c:\program files (x86)\MAGIX
2013-06-20 17:11 . 2013-06-20 17:27 -------- d-----w- c:\programdata\MAGIX
2013-06-20 17:11 . 2013-06-20 17:11 -------- d-----w- c:\program files (x86)\Common Files\MAGIX Services
2013-06-20 17:11 . 2013-06-20 17:11 -------- d-----w- c:\program files (x86)\MSXML 4.0
2013-06-18 03:08 . 2013-06-18 03:08 -------- d-----w- c:\users\Pavel\.android
2013-06-18 03:08 . 2013-06-18 04:20 -------- d-----w- C:\Samsung Galaxy Note2 ToolKit
2013-06-16 08:48 . 2005-09-03 12:45 45056 ----a-w- c:\windows\system32\Interop.ChilkatZip2Lib.dll
2013-06-16 08:48 . 2005-09-03 12:45 1515520 ----a-w- c:\windows\system32\ChilkatZip2.dll
2013-06-16 08:42 . 2013-06-16 08:42 -------- d-----w- c:\program files (x86)\EDDICA
2013-06-12 20:50 . 2013-05-17 01:25 61440 ----a-w- c:\windows\SysWow64\iesetup.dll
2013-06-12 12:19 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-06-11 17:02 . 2013-06-11 17:02 -------- d--h--w- c:\programdata\CanonIJScan
2013-06-11 09:26 . 2013-06-11 09:26 -------- d-----w- c:\program files (x86)\WinSCP
2013-06-11 09:23 . 2013-06-11 09:23 -------- d-----w- C:\ftproot
2013-06-11 09:21 . 2013-06-11 09:21 -------- d-----w- c:\programdata\Cerberus LLC
2013-06-11 09:20 . 2013-06-11 09:20 -------- d-----w- c:\users\Pavel\AppData\Roaming\Cerberus LLC
2013-06-10 03:09 . 2013-06-10 03:09 -------- d-----w- c:\windows\system32\appmgmt
2013-06-09 13:06 . 2013-06-09 13:23 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2013-06-06 06:07 . 2013-06-06 06:07 -------- d-----w- c:\users\Pavel\AppData\Roaming\LavasoftStatistics
2013-06-06 06:07 . 2013-06-06 06:07 -------- d-----w- c:\programdata\Ad-Aware Antivirus
2013-06-06 05:55 . 2013-06-06 08:49 -------- d-----w- c:\program files (x86)\Ad-Aware Antivirus
2013-06-06 05:55 . 2013-06-06 05:55 -------- d-----w- c:\programdata\Lavasoft
2013-06-06 05:54 . 2013-06-06 05:54 -------- d-----w- c:\programdata\Downloaded Installations
2013-06-06 05:53 . 2013-06-06 05:53 14456 ----a-w- c:\windows\system32\drivers\gfibto.sys
2013-06-06 05:53 . 2013-06-06 07:16 -------- d-----w- c:\users\Pavel\AppData\Roaming\Ad-Aware Antivirus
2013-06-06 05:06 . 2013-06-06 05:06 -------- d---a-w- c:\windows\rundll16.exe
2013-06-06 05:06 . 2013-06-06 05:06 -------- d---a-w- c:\windows\logo1_.exe
2013-06-05 17:00 . 2013-06-05 17:00 -------- d-----w- c:\programdata\McAfee
2013-06-05 16:07 . 2013-06-05 16:08 -------- d-----w- c:\program files\trend micro
2013-06-05 14:05 . 2013-06-05 14:43 -------- d-----w- c:\program files (x86)\YTD
2013-06-05 13:45 . 2013-06-05 13:45 -------- d---a-w- c:\windows\VDLL.DLL
2013-06-05 13:45 . 2013-06-05 13:45 -------- d---a-w- c:\windows\SysWow64\runouce.exe
2013-06-05 13:45 . 2013-06-05 13:45 -------- d---a-w- c:\windows\RUNDL132.EXE
2013-06-05 13:45 . 2013-06-05 13:45 -------- d---a-w- c:\windows\logo_1.exe
2013-06-05 13:11 . 2013-06-05 13:11 554240 ----a-w- c:\windows\SysWow64\msvcp80.dll
2013-06-05 13:11 . 2013-06-05 13:11 34048 ----a-w- c:\windows\SysWow64\eEmpty.exe
2013-06-05 13:11 . 2013-06-05 13:11 -------- d-----w- c:\program files (x86)\Common Files\MicroWorld
2013-06-05 13:11 . 2013-06-05 13:11 -------- d-----w- c:\programdata\MicroWorld
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-27 09:14 . 2013-05-30 07:58 45856 ----a-w- c:\windows\system32\drivers\avgtpx64.sys
2013-06-15 06:31 . 2013-05-30 12:33 75825640 ----a-w- c:\windows\system32\MRT.exe
2013-06-06 05:49 . 2013-05-30 10:07 20544 ----a-w- c:\windows\gdrv.sys
2013-06-04 07:15 . 2013-06-04 07:15 708168 ----a-w- c:\windows\system32\WinUSBCoInstaller.dll
2013-06-04 07:15 . 2013-06-04 07:15 103448 ----a-w- c:\windows\system32\drivers\ssudbus.sys
2013-06-04 07:15 . 2013-06-04 07:15 203672 ----a-w- c:\windows\system32\drivers\ssudmdm.sys
2013-06-04 07:15 . 2013-06-04 07:15 1490656 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2013-06-03 03:44 . 2013-06-03 03:44 231376 ----a-w- c:\windows\system32\drivers\truecrypt.sys
2013-06-01 16:28 . 2013-06-01 16:28 95648 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-06-01 16:28 . 2013-06-01 16:29 788896 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-06-01 16:28 . 2013-06-01 16:28 866720 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-06-01 16:11 . 2013-06-01 16:11 51496 ----a-w- c:\windows\system32\drivers\stflt.sys
2013-06-01 15:26 . 2013-06-01 15:26 279136 ----a-w- c:\windows\system32\drivers\afcdp.sys
2013-06-01 15:26 . 2013-06-01 15:26 1263200 ----a-w- c:\windows\system32\drivers\tdrpm273.sys
2013-06-01 15:26 . 2013-06-01 15:26 970336 ----a-w- c:\windows\system32\drivers\timntr.sys
2013-06-01 15:26 . 2013-06-01 15:26 277088 ----a-w- c:\windows\system32\drivers\snapman.sys
2013-05-30 14:08 . 2013-05-30 14:08 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-05-30 14:08 . 2013-05-30 14:08 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-05-30 14:08 . 2013-05-30 14:08 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-05-30 14:08 . 2013-05-30 14:08 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-05-30 14:08 . 2013-05-30 14:08 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-05-30 14:08 . 2013-05-30 14:08 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-05-30 14:08 . 2013-05-30 14:08 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-05-30 14:08 . 2013-05-30 14:08 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-05-30 14:08 . 2013-05-30 14:08 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-05-30 14:08 . 2013-05-30 14:08 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-05-30 14:08 . 2013-05-30 14:08 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-05-30 14:08 . 2013-05-30 14:08 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-05-30 14:08 . 2013-05-30 14:08 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-05-30 14:08 . 2013-05-30 14:08 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-05-30 14:07 . 2013-05-30 14:07 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-05-30 14:07 . 2013-05-30 14:07 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-05-30 14:07 . 2013-05-30 14:07 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-05-30 14:07 . 2013-05-30 14:07 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-05-30 14:07 . 2013-05-30 14:07 81408 ----a-w- c:\windows\system32\icardie.dll
2013-05-30 14:07 . 2013-05-30 14:07 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-05-30 14:07 . 2013-05-30 14:07 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-05-30 14:07 . 2013-05-30 14:07 441856 ----a-w- c:\windows\system32\html.iec
2013-05-30 14:07 . 2013-05-30 14:07 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-05-30 14:07 . 2013-05-30 14:07 216064 ----a-w- c:\windows\system32\msls31.dll
2013-05-30 14:07 . 2013-05-30 14:07 197120 ----a-w- c:\windows\system32\msrating.dll
2013-05-30 14:07 . 2013-05-30 14:07 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-05-30 14:07 . 2013-05-30 14:07 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-05-30 14:07 . 2013-05-30 14:07 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-05-30 14:07 . 2013-05-30 14:07 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-05-30 14:07 . 2013-05-30 14:07 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-05-30 14:07 . 2013-05-30 14:07 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-05-30 14:07 . 2013-05-30 14:07 235008 ----a-w- c:\windows\system32\url.dll
2013-05-30 14:07 . 2013-05-30 14:07 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-05-30 14:07 . 2013-05-30 14:07 102912 ----a-w- c:\windows\system32\inseng.dll
2013-05-30 14:07 . 2013-05-30 14:07 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-05-30 14:07 . 2013-05-30 14:07 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-05-30 14:07 . 2013-05-30 14:07 144896 ----a-w- c:\windows\system32\wextract.exe
2013-05-30 14:07 . 2013-05-30 14:07 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-05-30 14:07 . 2013-05-30 14:07 149504 ----a-w- c:\windows\system32\occache.dll
2013-05-30 14:07 . 2013-05-30 14:07 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-05-30 14:07 . 2013-05-30 14:07 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-05-30 14:07 . 2013-05-30 14:07 13824 ----a-w- c:\windows\system32\mshta.exe
2013-05-30 14:07 . 2013-05-30 14:07 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-05-30 14:07 . 2013-05-30 14:07 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-05-30 14:07 . 2013-05-30 14:07 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-05-30 14:07 . 2013-05-30 14:07 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-05-30 14:07 . 2013-05-30 14:07 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-05-30 14:07 . 2013-05-30 14:07 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-05-30 14:07 . 2013-05-30 14:07 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-05-30 14:06 . 2013-05-30 14:06 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 10752 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2013-05-30 14:06 . 2013-05-30 14:06 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2013-05-30 14:06 . 2013-05-30 14:06 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2013-05-30 14:06 . 2013-05-30 14:06 1682432 ----a-w- c:\windows\system32\XpsPrint.dll
2013-05-30 14:06 . 2013-05-30 14:06 1158144 ----a-w- c:\windows\SysWow64\XpsPrint.dll
2013-05-30 14:06 . 2013-05-30 14:06 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2013-05-30 14:06 . 2013-05-30 14:06 3928064 ----a-w- c:\windows\system32\d2d1.dll
2013-05-30 14:06 . 2013-05-30 14:06 2776576 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2013-05-30 14:06 . 2013-05-30 14:06 2284544 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2013-05-30 14:06 . 2013-05-30 14:06 363008 ----a-w- c:\windows\system32\dxgi.dll
2013-05-30 14:06 . 2013-05-30 14:06 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2013-05-30 14:06 . 2013-05-30 14:06 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll
2013-05-30 14:06 . 2013-05-30 14:06 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll
2013-05-30 14:06 . 2013-05-30 14:06 1247744 ----a-w- c:\windows\SysWow64\DWrite.dll
2013-05-30 14:06 . 2013-05-30 14:06 1175552 ----a-w- c:\windows\system32\FntCache.dll
2013-05-30 14:06 . 2013-05-30 14:06 1080832 ----a-w- c:\windows\SysWow64\d3d10.dll
2013-05-30 14:06 . 2013-05-30 14:06 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2013-06-27 09:14 3055280 ----a-w- c:\program files (x86)\AVG SafeGuard toolbar\15.3.0.11\AVG SafeGuard toolbar_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG SafeGuard toolbar\15.3.0.11\AVG SafeGuard toolbar_toolbar.dll" [2013-06-27 3055280]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG SafeGuard toolbar.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG SafeGuard toolbar.PugiObj]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"5C15FE23AEB342AF49561D34CA158610F3B7D4A6._service_run"="c:\users\Pavel\AppData\Local\Google\Chrome\Application\chrome.exe" [2013-05-23 825808]
"cz.seznam.software.autoupdate"="c:\users\Pavel\AppData\Roaming\Seznam.cz\szninstall.exe" [2013-05-16 1062472]
"cz.seznam.software.szndesktop"="c:\users\Pavel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" [2013-04-12 92664]
"Zoner Photo Studio Autoupdate"="c:\program files\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE" [2012-10-18 752736]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"="c:\program files (x86)\AVG\AVG2013\avgui.exe" [2013-04-28 4408368]
"KiesTrayAgent"="c:\program files (x86)\Samsung\Kies\KiesTrayAgent.exe" [2013-04-23 311152]
"seznam-listicka-distribuce"="c:\program files (x86)\Seznam.cz\distribution\szninstall.exe" [2013-05-16 1062472]
"vProt"="c:\program files (x86)\AVG SafeGuard toolbar\vprot.exe" [2013-06-27 2236080]
"PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2007-08-07 200704]
"BMISR"="c:\program files (x86)\KYE\iLook 1321 V2\BM.exe" [2008-12-05 217088]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"SAOB Monitor"=c:\program files (x86)\Acronis\OnlineBackupStandalone\TrueImageMonitor.exe
"TrueImageMonitor.exe"="c:\program files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe"
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
"vProt"="c:\program files (x86)\AVG SafeGuard toolbar\vprot.exe"
.
R2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2013\avgidsagent.exe;c:\program files (x86)\AVG\AVG2013\avgidsagent.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys;c:\windows\SYSNATIVE\pwdrvio.sys [x]
R3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys;c:\windows\SYSNATIVE\pwdspio.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 GEST Service;GEST Service for program management.;c:\program files (x86)\GIGABYTE\EnergySaver\GSvr.exe;c:\program files (x86)\GIGABYTE\EnergySaver\GSvr.exe [x]
S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsha.sys [x]
S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys;c:\windows\SYSNATIVE\DRIVERS\avgloga.sys [x]
S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgmfx64.sys [x]
S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgrkx64.sys [x]
S0 gfibto;gfibto;c:\windows\system32\drivers\gfibto.sys;c:\windows\SYSNATIVE\drivers\gfibto.sys [x]
S0 tdrpman273;Acronis Try&Decide and Restore Points filter (build 273);c:\windows\system32\DRIVERS\tdrpm273.sys;c:\windows\SYSNATIVE\DRIVERS\tdrpm273.sys [x]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys;c:\windows\SYSNATIVE\DRIVERS\avgfwd6a.sys [x]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsdrivera.sys [x]
S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgldx64.sys [x]
S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys;c:\windows\SYSNATIVE\DRIVERS\avgtdia.sys [x]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys;c:\windows\SYSNATIVE\drivers\avgtpx64.sys [x]
S2 afcdpsrv;Služba Acronis Nonstop Backup;c:\program files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe;c:\program files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 avgfws;AVG Firewall;c:\program files (x86)\AVG\AVG2013\avgfws.exe;c:\program files (x86)\AVG\AVG2013\avgfws.exe [x]
S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2013\avgwdsvc.exe;c:\program files (x86)\AVG\AVG2013\avgwdsvc.exe [x]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [x]
S2 vToolbarUpdater15.3.0;vToolbarUpdater15.3.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe [x]
S3 afcdp;afcdp;c:\windows\system32\DRIVERS\afcdp.sys;c:\windows\SYSNATIVE\DRIVERS\afcdp.sys [x]
S3 RTLE8023x64;Realtek 10/100/1000 PCI-E NIC Family NDIS XP(x64) Driver;c:\windows\system32\DRIVERS\Rtenic64.sys;c:\windows\SYSNATIVE\DRIVERS\Rtenic64.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2013-06-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-552775988-1027842849-890008938-1001Core.job
- c:\users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-30 08:00]
.
2013-06-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-552775988-1027842849-890008938-1001UA.job
- c:\users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-30 08:00]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 112512]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.2.1
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.3.0\ViProtocol.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-07-04 14:12:51
ComboFix-quarantined-files.txt 2013-07-04 12:12
.
Před spuštěním: Volných bajtů: 58 921 922 560
Po spuštění: Volných bajtů: 58 946 629 632
.
- - End Of File - - 4F1EA76F07001E1124ADBB8178C7CDEB
5C616939100B85E558DA92B899A0FC36
ComboFix 13-07-03.01 - Pavel 04.07.2013 14:05:39.1.2 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4094.2048 [GMT 2:00]
Spuštěný z: d:\stahovßný web\ComboFix.exe
AV: AVG Internet Security 2013 *Enabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2013 *Enabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2013 *Enabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\prefs.js
c:\users\Pavel\AppData\Local\TempDIR
c:\users\Pavel\AppData\Local\TempDIR\downloader.exe
c:\users\Pavel\AppData\Local\TempDIR\list-bullet.bmp
c:\users\Pavel\AppData\Local\TempDIR\new_Yandex_browser_image.bmp
c:\windows\SysWow64\muzapp.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-06-04 do 2013-07-04 )))))))))))))))))))))))))))))))
.
.
2013-07-04 12:10 . 2013-07-04 12:10 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-07-04 11:27 . 2013-07-04 11:27 -------- d-----w- c:\program files (x86)\KYE
2013-07-04 11:15 . 2013-07-04 11:15 -------- d-----w- c:\users\Pavel\AppData\Roaming\Carambis
2013-06-29 18:40 . 2013-06-29 18:40 -------- d-----w- c:\program files (x86)\PowerISO
2013-06-29 18:40 . 2007-08-07 00:21 57776 ----a-w- c:\windows\system32\drivers\scdemu.sys
2013-06-27 12:10 . 2013-06-27 12:10 -------- d-----w- c:\programdata\Canneverbe Limited
2013-06-27 12:10 . 2013-06-27 12:10 -------- d-----w- c:\users\Pavel\AppData\Roaming\Canneverbe Limited
2013-06-27 12:08 . 2013-06-27 12:08 -------- d-----w- c:\program files (x86)\CDBurnerXP
2013-06-27 12:00 . 2013-06-27 12:00 -------- d-----w- c:\users\Pavel\AppData\Roaming\CD-LabelPrint
2013-06-27 11:58 . 2013-06-27 12:00 -------- d-----w- c:\program files (x86)\CD-LabelPrint
2013-06-20 17:41 . 2013-06-20 17:41 -------- d-----w- c:\program files (x86)\Ashampoo
2013-06-20 17:41 . 2013-06-20 17:41 -------- d-----w- c:\users\Pavel\AppData\Local\Programs
2013-06-20 17:12 . 2013-06-20 17:27 -------- d-----w- c:\users\Pavel\AppData\Roaming\MAGIX
2013-06-20 17:11 . 2013-06-20 17:40 -------- d-----w- c:\program files (x86)\MAGIX
2013-06-20 17:11 . 2013-06-20 17:27 -------- d-----w- c:\programdata\MAGIX
2013-06-20 17:11 . 2013-06-20 17:11 -------- d-----w- c:\program files (x86)\Common Files\MAGIX Services
2013-06-20 17:11 . 2013-06-20 17:11 -------- d-----w- c:\program files (x86)\MSXML 4.0
2013-06-18 03:08 . 2013-06-18 03:08 -------- d-----w- c:\users\Pavel\.android
2013-06-18 03:08 . 2013-06-18 04:20 -------- d-----w- C:\Samsung Galaxy Note2 ToolKit
2013-06-16 08:48 . 2005-09-03 12:45 45056 ----a-w- c:\windows\system32\Interop.ChilkatZip2Lib.dll
2013-06-16 08:48 . 2005-09-03 12:45 1515520 ----a-w- c:\windows\system32\ChilkatZip2.dll
2013-06-16 08:42 . 2013-06-16 08:42 -------- d-----w- c:\program files (x86)\EDDICA
2013-06-12 20:50 . 2013-05-17 01:25 61440 ----a-w- c:\windows\SysWow64\iesetup.dll
2013-06-12 12:19 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-06-11 17:02 . 2013-06-11 17:02 -------- d--h--w- c:\programdata\CanonIJScan
2013-06-11 09:26 . 2013-06-11 09:26 -------- d-----w- c:\program files (x86)\WinSCP
2013-06-11 09:23 . 2013-06-11 09:23 -------- d-----w- C:\ftproot
2013-06-11 09:21 . 2013-06-11 09:21 -------- d-----w- c:\programdata\Cerberus LLC
2013-06-11 09:20 . 2013-06-11 09:20 -------- d-----w- c:\users\Pavel\AppData\Roaming\Cerberus LLC
2013-06-10 03:09 . 2013-06-10 03:09 -------- d-----w- c:\windows\system32\appmgmt
2013-06-09 13:06 . 2013-06-09 13:23 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2013-06-06 06:07 . 2013-06-06 06:07 -------- d-----w- c:\users\Pavel\AppData\Roaming\LavasoftStatistics
2013-06-06 06:07 . 2013-06-06 06:07 -------- d-----w- c:\programdata\Ad-Aware Antivirus
2013-06-06 05:55 . 2013-06-06 08:49 -------- d-----w- c:\program files (x86)\Ad-Aware Antivirus
2013-06-06 05:55 . 2013-06-06 05:55 -------- d-----w- c:\programdata\Lavasoft
2013-06-06 05:54 . 2013-06-06 05:54 -------- d-----w- c:\programdata\Downloaded Installations
2013-06-06 05:53 . 2013-06-06 05:53 14456 ----a-w- c:\windows\system32\drivers\gfibto.sys
2013-06-06 05:53 . 2013-06-06 07:16 -------- d-----w- c:\users\Pavel\AppData\Roaming\Ad-Aware Antivirus
2013-06-06 05:06 . 2013-06-06 05:06 -------- d---a-w- c:\windows\rundll16.exe
2013-06-06 05:06 . 2013-06-06 05:06 -------- d---a-w- c:\windows\logo1_.exe
2013-06-05 17:00 . 2013-06-05 17:00 -------- d-----w- c:\programdata\McAfee
2013-06-05 16:07 . 2013-06-05 16:08 -------- d-----w- c:\program files\trend micro
2013-06-05 14:05 . 2013-06-05 14:43 -------- d-----w- c:\program files (x86)\YTD
2013-06-05 13:45 . 2013-06-05 13:45 -------- d---a-w- c:\windows\VDLL.DLL
2013-06-05 13:45 . 2013-06-05 13:45 -------- d---a-w- c:\windows\SysWow64\runouce.exe
2013-06-05 13:45 . 2013-06-05 13:45 -------- d---a-w- c:\windows\RUNDL132.EXE
2013-06-05 13:45 . 2013-06-05 13:45 -------- d---a-w- c:\windows\logo_1.exe
2013-06-05 13:11 . 2013-06-05 13:11 554240 ----a-w- c:\windows\SysWow64\msvcp80.dll
2013-06-05 13:11 . 2013-06-05 13:11 34048 ----a-w- c:\windows\SysWow64\eEmpty.exe
2013-06-05 13:11 . 2013-06-05 13:11 -------- d-----w- c:\program files (x86)\Common Files\MicroWorld
2013-06-05 13:11 . 2013-06-05 13:11 -------- d-----w- c:\programdata\MicroWorld
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-27 09:14 . 2013-05-30 07:58 45856 ----a-w- c:\windows\system32\drivers\avgtpx64.sys
2013-06-15 06:31 . 2013-05-30 12:33 75825640 ----a-w- c:\windows\system32\MRT.exe
2013-06-06 05:49 . 2013-05-30 10:07 20544 ----a-w- c:\windows\gdrv.sys
2013-06-04 07:15 . 2013-06-04 07:15 708168 ----a-w- c:\windows\system32\WinUSBCoInstaller.dll
2013-06-04 07:15 . 2013-06-04 07:15 103448 ----a-w- c:\windows\system32\drivers\ssudbus.sys
2013-06-04 07:15 . 2013-06-04 07:15 203672 ----a-w- c:\windows\system32\drivers\ssudmdm.sys
2013-06-04 07:15 . 2013-06-04 07:15 1490656 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2013-06-03 03:44 . 2013-06-03 03:44 231376 ----a-w- c:\windows\system32\drivers\truecrypt.sys
2013-06-01 16:28 . 2013-06-01 16:28 95648 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-06-01 16:28 . 2013-06-01 16:29 788896 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-06-01 16:28 . 2013-06-01 16:28 866720 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-06-01 16:11 . 2013-06-01 16:11 51496 ----a-w- c:\windows\system32\drivers\stflt.sys
2013-06-01 15:26 . 2013-06-01 15:26 279136 ----a-w- c:\windows\system32\drivers\afcdp.sys
2013-06-01 15:26 . 2013-06-01 15:26 1263200 ----a-w- c:\windows\system32\drivers\tdrpm273.sys
2013-06-01 15:26 . 2013-06-01 15:26 970336 ----a-w- c:\windows\system32\drivers\timntr.sys
2013-06-01 15:26 . 2013-06-01 15:26 277088 ----a-w- c:\windows\system32\drivers\snapman.sys
2013-05-30 14:08 . 2013-05-30 14:08 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-05-30 14:08 . 2013-05-30 14:08 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-05-30 14:08 . 2013-05-30 14:08 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-05-30 14:08 . 2013-05-30 14:08 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-05-30 14:08 . 2013-05-30 14:08 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-05-30 14:08 . 2013-05-30 14:08 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-05-30 14:08 . 2013-05-30 14:08 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-05-30 14:08 . 2013-05-30 14:08 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-05-30 14:08 . 2013-05-30 14:08 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-05-30 14:08 . 2013-05-30 14:08 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-05-30 14:08 . 2013-05-30 14:08 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-05-30 14:08 . 2013-05-30 14:08 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-05-30 14:08 . 2013-05-30 14:08 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-05-30 14:08 . 2013-05-30 14:08 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-05-30 14:07 . 2013-05-30 14:07 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-05-30 14:07 . 2013-05-30 14:07 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-05-30 14:07 . 2013-05-30 14:07 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-05-30 14:07 . 2013-05-30 14:07 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-05-30 14:07 . 2013-05-30 14:07 81408 ----a-w- c:\windows\system32\icardie.dll
2013-05-30 14:07 . 2013-05-30 14:07 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-05-30 14:07 . 2013-05-30 14:07 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-05-30 14:07 . 2013-05-30 14:07 441856 ----a-w- c:\windows\system32\html.iec
2013-05-30 14:07 . 2013-05-30 14:07 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-05-30 14:07 . 2013-05-30 14:07 216064 ----a-w- c:\windows\system32\msls31.dll
2013-05-30 14:07 . 2013-05-30 14:07 197120 ----a-w- c:\windows\system32\msrating.dll
2013-05-30 14:07 . 2013-05-30 14:07 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-05-30 14:07 . 2013-05-30 14:07 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-05-30 14:07 . 2013-05-30 14:07 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-05-30 14:07 . 2013-05-30 14:07 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-05-30 14:07 . 2013-05-30 14:07 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-05-30 14:07 . 2013-05-30 14:07 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-05-30 14:07 . 2013-05-30 14:07 235008 ----a-w- c:\windows\system32\url.dll
2013-05-30 14:07 . 2013-05-30 14:07 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-05-30 14:07 . 2013-05-30 14:07 102912 ----a-w- c:\windows\system32\inseng.dll
2013-05-30 14:07 . 2013-05-30 14:07 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-05-30 14:07 . 2013-05-30 14:07 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-05-30 14:07 . 2013-05-30 14:07 144896 ----a-w- c:\windows\system32\wextract.exe
2013-05-30 14:07 . 2013-05-30 14:07 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-05-30 14:07 . 2013-05-30 14:07 149504 ----a-w- c:\windows\system32\occache.dll
2013-05-30 14:07 . 2013-05-30 14:07 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-05-30 14:07 . 2013-05-30 14:07 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-05-30 14:07 . 2013-05-30 14:07 13824 ----a-w- c:\windows\system32\mshta.exe
2013-05-30 14:07 . 2013-05-30 14:07 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-05-30 14:07 . 2013-05-30 14:07 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-05-30 14:07 . 2013-05-30 14:07 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-05-30 14:07 . 2013-05-30 14:07 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-05-30 14:07 . 2013-05-30 14:07 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-05-30 14:07 . 2013-05-30 14:07 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-05-30 14:07 . 2013-05-30 14:07 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-05-30 14:06 . 2013-05-30 14:06 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 10752 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-05-30 14:06 . 2013-05-30 14:06 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2013-05-30 14:06 . 2013-05-30 14:06 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2013-05-30 14:06 . 2013-05-30 14:06 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2013-05-30 14:06 . 2013-05-30 14:06 1682432 ----a-w- c:\windows\system32\XpsPrint.dll
2013-05-30 14:06 . 2013-05-30 14:06 1158144 ----a-w- c:\windows\SysWow64\XpsPrint.dll
2013-05-30 14:06 . 2013-05-30 14:06 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2013-05-30 14:06 . 2013-05-30 14:06 3928064 ----a-w- c:\windows\system32\d2d1.dll
2013-05-30 14:06 . 2013-05-30 14:06 2776576 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2013-05-30 14:06 . 2013-05-30 14:06 2284544 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2013-05-30 14:06 . 2013-05-30 14:06 363008 ----a-w- c:\windows\system32\dxgi.dll
2013-05-30 14:06 . 2013-05-30 14:06 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2013-05-30 14:06 . 2013-05-30 14:06 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll
2013-05-30 14:06 . 2013-05-30 14:06 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll
2013-05-30 14:06 . 2013-05-30 14:06 1247744 ----a-w- c:\windows\SysWow64\DWrite.dll
2013-05-30 14:06 . 2013-05-30 14:06 1175552 ----a-w- c:\windows\system32\FntCache.dll
2013-05-30 14:06 . 2013-05-30 14:06 1080832 ----a-w- c:\windows\SysWow64\d3d10.dll
2013-05-30 14:06 . 2013-05-30 14:06 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2013-06-27 09:14 3055280 ----a-w- c:\program files (x86)\AVG SafeGuard toolbar\15.3.0.11\AVG SafeGuard toolbar_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG SafeGuard toolbar\15.3.0.11\AVG SafeGuard toolbar_toolbar.dll" [2013-06-27 3055280]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG SafeGuard toolbar.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG SafeGuard toolbar.PugiObj]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"5C15FE23AEB342AF49561D34CA158610F3B7D4A6._service_run"="c:\users\Pavel\AppData\Local\Google\Chrome\Application\chrome.exe" [2013-05-23 825808]
"cz.seznam.software.autoupdate"="c:\users\Pavel\AppData\Roaming\Seznam.cz\szninstall.exe" [2013-05-16 1062472]
"cz.seznam.software.szndesktop"="c:\users\Pavel\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" [2013-04-12 92664]
"Zoner Photo Studio Autoupdate"="c:\program files\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE" [2012-10-18 752736]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"="c:\program files (x86)\AVG\AVG2013\avgui.exe" [2013-04-28 4408368]
"KiesTrayAgent"="c:\program files (x86)\Samsung\Kies\KiesTrayAgent.exe" [2013-04-23 311152]
"seznam-listicka-distribuce"="c:\program files (x86)\Seznam.cz\distribution\szninstall.exe" [2013-05-16 1062472]
"vProt"="c:\program files (x86)\AVG SafeGuard toolbar\vprot.exe" [2013-06-27 2236080]
"PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2007-08-07 200704]
"BMISR"="c:\program files (x86)\KYE\iLook 1321 V2\BM.exe" [2008-12-05 217088]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"SAOB Monitor"=c:\program files (x86)\Acronis\OnlineBackupStandalone\TrueImageMonitor.exe
"TrueImageMonitor.exe"="c:\program files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe"
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
"vProt"="c:\program files (x86)\AVG SafeGuard toolbar\vprot.exe"
.
R2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2013\avgidsagent.exe;c:\program files (x86)\AVG\AVG2013\avgidsagent.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys;c:\windows\SYSNATIVE\pwdrvio.sys [x]
R3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys;c:\windows\SYSNATIVE\pwdspio.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 GEST Service;GEST Service for program management.;c:\program files (x86)\GIGABYTE\EnergySaver\GSvr.exe;c:\program files (x86)\GIGABYTE\EnergySaver\GSvr.exe [x]
S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsha.sys [x]
S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys;c:\windows\SYSNATIVE\DRIVERS\avgloga.sys [x]
S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgmfx64.sys [x]
S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgrkx64.sys [x]
S0 gfibto;gfibto;c:\windows\system32\drivers\gfibto.sys;c:\windows\SYSNATIVE\drivers\gfibto.sys [x]
S0 tdrpman273;Acronis Try&Decide and Restore Points filter (build 273);c:\windows\system32\DRIVERS\tdrpm273.sys;c:\windows\SYSNATIVE\DRIVERS\tdrpm273.sys [x]
S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys;c:\windows\SYSNATIVE\DRIVERS\avgfwd6a.sys [x]
S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsdrivera.sys [x]
S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgldx64.sys [x]
S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys;c:\windows\SYSNATIVE\DRIVERS\avgtdia.sys [x]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys;c:\windows\SYSNATIVE\drivers\avgtpx64.sys [x]
S2 afcdpsrv;Služba Acronis Nonstop Backup;c:\program files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe;c:\program files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 avgfws;AVG Firewall;c:\program files (x86)\AVG\AVG2013\avgfws.exe;c:\program files (x86)\AVG\AVG2013\avgfws.exe [x]
S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2013\avgwdsvc.exe;c:\program files (x86)\AVG\AVG2013\avgwdsvc.exe [x]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [x]
S2 vToolbarUpdater15.3.0;vToolbarUpdater15.3.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe [x]
S3 afcdp;afcdp;c:\windows\system32\DRIVERS\afcdp.sys;c:\windows\SYSNATIVE\DRIVERS\afcdp.sys [x]
S3 RTLE8023x64;Realtek 10/100/1000 PCI-E NIC Family NDIS XP(x64) Driver;c:\windows\system32\DRIVERS\Rtenic64.sys;c:\windows\SYSNATIVE\DRIVERS\Rtenic64.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys;c:\program files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2013-06-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-552775988-1027842849-890008938-1001Core.job
- c:\users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-30 08:00]
.
2013-06-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-552775988-1027842849-890008938-1001UA.job
- c:\users\Pavel\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-30 08:00]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 112512]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.2.1
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.3.0\ViProtocol.dll
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-07-04 14:12:51
ComboFix-quarantined-files.txt 2013-07-04 12:12
.
Před spuštěním: Volných bajtů: 58 921 922 560
Po spuštění: Volných bajtů: 58 946 629 632
.
- - End Of File - - 4F1EA76F07001E1124ADBB8178C7CDEB
5C616939100B85E558DA92B899A0FC36