BV: Autorun-R
Napsal: 29 srp 2014 06:58
Dobrý den,
mohli byste mi poradit jak to dostat pryč? Je to BV:AutorunE.
Tady je log z ComboFixu:
ComboFix 14-08-28.01 - Hanule 29.08.2014 7:17.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.4001.1493 [GMT 2:00]
Spuštěný z: c:\users\Hanule\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-07-28 do 2014-08-29 )))))))))))))))))))))))))))))))
.
.
2014-08-29 05:23 . 2014-08-29 05:23 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-08-28 12:40 . 2014-08-28 12:40 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{71B0F397-6430-4B5B-B4D4-06C6FFC8E996}\offreg.dll
2014-08-28 12:20 . 2014-08-28 12:20 -------- d-----w- c:\users\Hanule\AppData\Roaming\eCyber
2014-08-28 12:19 . 2014-08-08 06:24 45248 ----a-w- c:\windows\system32\drivers\iSafeKrnlBoot.sys
2014-08-28 12:19 . 2014-08-28 12:19 -------- d-----w- c:\windows\system32\log
2014-08-28 12:18 . 2014-08-29 03:58 -------- d-----w- c:\users\Hanule\AppData\Roaming\iSafe
2014-08-28 04:43 . 2014-08-28 04:43 -------- d-----w- c:\users\Hanule\AppData\Local\Skype
2014-08-28 04:43 . 2014-08-28 05:11 -------- d-----w- c:\users\Hanule\AppData\Roaming\Skype
2014-08-28 04:42 . 2014-08-28 04:42 -------- d-----r- c:\program files (x86)\Skype
2014-08-28 04:42 . 2014-08-28 04:42 -------- d-----w- c:\program files (x86)\Common Files\Skype
2014-08-28 04:42 . 2014-08-28 04:43 -------- d-----w- c:\programdata\Skype
2014-08-26 08:05 . 2014-08-21 03:43 11319192 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{71B0F397-6430-4B5B-B4D4-06C6FFC8E996}\mpengine.dll
2014-08-25 18:08 . 2014-08-25 18:08 -------- d-----w- c:\users\Hanule\AppData\Roaming\vlc
2014-08-25 18:07 . 2014-08-25 18:07 -------- d-----w- c:\program files (x86)\VideoLAN
2014-08-25 10:06 . 2014-08-25 10:06 -------- d-sh--w- c:\users\Hanule\AppData\Local\EmieUserList
2014-08-25 10:06 . 2014-08-25 10:06 -------- d-sh--w- c:\users\Hanule\AppData\Local\EmieSiteList
2014-08-18 07:52 . 2014-08-18 15:36 -------- d-----w- c:\program files (x86)\Mozilla Thunderbird
2014-08-16 14:24 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2014-08-16 14:24 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2014-08-16 14:24 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2014-08-16 14:24 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2014-08-16 14:24 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2014-08-16 14:24 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2014-08-16 14:23 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2014-08-16 14:23 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2014-08-14 04:06 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDTAT.DLL
2014-08-14 04:06 . 2014-07-09 01:31 7168 ----a-w- c:\windows\SysWow64\KBDYAK.DLL
2014-08-14 04:06 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDYAK.DLL
2014-08-14 04:06 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDRU1.DLL
2014-08-14 04:06 . 2014-07-09 02:03 6656 ----a-w- c:\windows\system32\KBDRU.DLL
2014-08-14 04:06 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDBASH.DLL
2014-08-14 04:06 . 2014-07-09 01:31 6656 ----a-w- c:\windows\SysWow64\KBDBASH.DLL
2014-08-14 04:06 . 2014-07-16 03:23 2048 ----a-w- c:\windows\system32\tzres.dll
2014-08-14 04:06 . 2014-07-16 02:46 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2014-08-14 04:02 . 2014-07-14 02:02 1216000 ----a-w- c:\windows\system32\rpcrt4.dll
2014-08-14 04:02 . 2014-07-14 01:40 664064 ----a-w- c:\windows\SysWow64\rpcrt4.dll
2014-08-14 04:02 . 2014-08-07 02:06 529920 ----a-w- c:\windows\system32\aepdu.dll
2014-08-14 04:02 . 2014-08-07 02:01 424448 ----a-w- c:\windows\system32\aeinv.dll
2014-08-12 14:56 . 2014-08-12 14:56 -------- d-----w- c:\program files (x86)\Microsoft Works
2014-08-12 14:54 . 2014-08-12 14:54 -------- d-----w- c:\windows\PCHEALTH
2014-08-12 14:51 . 2014-08-12 14:51 -------- d-----w- c:\program files\Microsoft Office
2014-08-12 14:51 . 2014-08-12 14:51 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 8
2014-08-12 14:50 . 2014-08-12 14:50 -------- d-----w- c:\users\Hanule\AppData\Local\Microsoft Help
2014-08-12 14:50 . 2014-08-12 14:59 -------- d-----w- c:\programdata\Microsoft Help
2014-08-12 14:49 . 2014-08-12 14:49 -------- d-----r- C:\MSOCache
2014-08-03 19:04 . 2014-05-14 16:23 44512 ----a-w- c:\windows\system32\wups2.dll
2014-08-03 19:04 . 2014-05-14 16:23 58336 ----a-w- c:\windows\system32\wuauclt.exe
2014-08-03 19:04 . 2014-05-14 16:23 2477536 ----a-w- c:\windows\system32\wuaueng.dll
2014-08-03 19:04 . 2014-05-14 16:21 2620928 ----a-w- c:\windows\system32\wucltux.dll
2014-08-03 19:03 . 2014-05-14 16:23 38880 ----a-w- c:\windows\system32\wups.dll
2014-08-03 19:03 . 2014-05-14 16:23 36320 ----a-w- c:\windows\SysWow64\wups.dll
2014-08-03 19:03 . 2014-05-14 16:23 700384 ----a-w- c:\windows\system32\wuapi.dll
2014-08-03 19:03 . 2014-05-14 16:23 581600 ----a-w- c:\windows\SysWow64\wuapi.dll
2014-08-03 19:03 . 2014-05-14 16:20 97792 ----a-w- c:\windows\system32\wudriver.dll
2014-08-03 19:03 . 2014-05-14 16:17 92672 ----a-w- c:\windows\SysWow64\wudriver.dll
2014-08-03 19:03 . 2014-05-14 07:23 198600 ----a-w- c:\windows\system32\wuwebv.dll
2014-08-03 19:03 . 2014-05-14 07:23 179656 ----a-w- c:\windows\SysWow64\wuwebv.dll
2014-08-03 19:03 . 2014-05-14 07:20 36864 ----a-w- c:\windows\system32\wuapp.exe
2014-08-03 19:03 . 2014-05-14 07:17 33792 ----a-w- c:\windows\SysWow64\wuapp.exe
2014-08-03 10:51 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2014-08-02 16:39 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2014-08-02 16:39 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2014-08-02 16:39 . 2013-11-23 18:26 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2014-08-02 16:39 . 2013-11-23 17:47 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2014-08-02 16:39 . 2013-12-24 23:09 1987584 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2014-08-02 16:39 . 2013-12-24 22:48 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2014-08-02 16:39 . 2013-11-22 22:48 3928064 ----a-w- c:\windows\system32\d2d1.dll
2014-08-02 16:39 . 2013-11-26 08:16 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll
2014-08-02 16:39 . 2014-02-04 02:32 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-08-02 16:39 . 2014-02-04 02:04 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2014-08-02 16:39 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2014-08-02 16:39 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2014-08-01 15:58 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2014-08-01 15:58 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe
2014-08-01 15:58 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL
2014-08-01 15:58 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL
2014-08-01 15:57 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll
2014-08-01 15:44 . 2014-08-01 15:44 -------- d-----w- c:\windows\Migration
2014-08-01 10:29 . 2014-08-01 10:29 -------- d-----w- c:\users\Hanule\voip
2014-07-30 05:52 . 2014-07-30 05:52 -------- d-----w- c:\users\Hanule\AppData\Roaming\Search Protection
2014-07-30 05:52 . 2014-07-30 05:52 -------- d-----w- c:\programdata\YTD Video Downloader
2014-07-30 05:52 . 2014-07-30 05:52 -------- d-----w- c:\program files (x86)\GreenTree Applications
2014-07-30 05:47 . 2014-07-30 05:47 -------- d-----w- C:\UpdateChromeLinksLogs
2014-07-30 05:47 . 2014-07-30 05:47 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll
2014-07-30 05:47 . 2014-07-30 05:47 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll
2014-07-30 05:47 . 2014-07-30 05:47 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2014-07-30 05:29 . 2014-07-30 05:29 -------- d-----w- c:\users\Hanule\aTubeCatcher
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-08-05 07:20 . 2014-07-16 18:43 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-07-24 04:02 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2014-07-24 04:02 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2014-07-23 09:09 . 2014-07-23 09:05 427360 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-07-23 09:05 . 2014-07-23 09:05 92008 ----a-w- c:\windows\system32\drivers\aswStm.sys
2014-07-23 09:05 . 2014-07-23 09:05 224896 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-07-23 09:05 . 2014-07-23 09:05 1041168 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2014-07-23 09:05 . 2014-07-23 09:05 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-07-23 09:05 . 2014-07-23 09:05 79184 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-07-23 09:05 . 2014-07-23 09:05 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-07-23 09:05 . 2014-07-23 09:05 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-07-23 09:05 . 2014-07-23 09:05 307344 ----a-w- c:\windows\system32\aswBoot.exe
2014-07-23 09:05 . 2014-07-23 09:05 43152 ----a-w- c:\windows\avastSS.scr
2014-07-18 08:51 . 2014-07-18 08:51 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-07-18 08:51 . 2014-07-18 08:51 699056 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-07-16 18:56 . 2014-07-16 18:56 44032 ----a-w- c:\windows\system32\drivers\AmUStor.sys
2014-07-16 18:56 . 2014-07-16 18:56 10752 ----a-w- c:\windows\system32\AmUStor.dll
2014-07-16 18:52 . 2010-08-24 15:55 76912 ----a-w- c:\windows\system32\drivers\L1C62x64.sys
2014-07-16 18:22 . 2010-10-14 22:28 317440 ----a-w- c:\windows\system32\drivers\IntcDAud.sys
2014-07-16 18:22 . 2010-10-14 22:27 14848 ----a-w- c:\windows\system32\IntcDAuC.dll
2014-07-16 18:22 . 2011-01-27 07:05 92672 ----a-w- c:\windows\system32\igfxCoIn_v2291.dll
2014-07-16 18:22 . 2011-02-10 11:49 167960 ----a-w- c:\windows\system32\igfxtray.exe
2014-07-16 18:22 . 2011-02-10 11:48 509976 ----a-w- c:\windows\system32\igfxsrvc.exe
2014-07-16 18:22 . 2011-02-10 11:48 418328 ----a-w- c:\windows\system32\igfxpers.exe
2014-07-16 18:22 . 2011-02-10 11:48 239128 ----a-w- c:\windows\system32\igfxext.exe
2014-07-16 18:22 . 2011-01-27 06:55 960940 ----a-w- c:\windows\system32\igkrng600.bin
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrsky.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrrom.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrhrv.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrslv.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrtrk.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrsve.lrc
2014-07-16 18:22 . 2011-01-27 06:25 285696 ----a-w- c:\windows\system32\igfxrtha.lrc
2014-07-16 18:22 . 2011-01-27 06:25 287232 ----a-w- c:\windows\system32\igfxresn.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrrus.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrptg.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrplk.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrptb.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrnor.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrita.lrc
2014-07-16 18:22 . 2011-01-27 06:25 283648 ----a-w- c:\windows\system32\igfxrjpn.lrc
2014-07-16 18:22 . 2011-01-27 06:25 283136 ----a-w- c:\windows\system32\igfxrkor.lrc
2014-07-16 18:22 . 2011-01-27 06:25 287232 ----a-w- c:\windows\system32\igfxrell.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrhun.lrc
2014-07-16 18:22 . 2011-01-27 06:25 285184 ----a-w- c:\windows\system32\igfxrheb.lrc
2014-07-16 18:22 . 2011-01-27 06:25 287232 ----a-w- c:\windows\system32\igfxrfra.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrdeu.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrfin.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrnld.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrcsy.lrc
2014-07-16 18:22 . 2011-01-27 06:25 285696 ----a-w- c:\windows\system32\igfxrdan.lrc
2014-07-16 18:22 . 2011-01-27 06:25 282624 ----a-w- c:\windows\system32\igfxrcht.lrc
2014-07-16 18:22 . 2011-01-27 06:25 285184 ----a-w- c:\windows\system32\igfxrara.lrc
2014-07-16 18:22 . 2011-01-27 06:25 282624 ----a-w- c:\windows\system32\igfxrchs.lrc
2014-07-16 18:22 . 2011-01-27 06:24 335872 ----a-w- c:\windows\system32\igfxpph.dll
2014-07-16 18:22 . 2011-01-27 06:24 28672 ----a-w- c:\windows\system32\igfxexps.dll
2014-07-16 18:22 . 2011-01-27 06:24 380928 ----a-w- c:\windows\system32\igfxTMM.dll
2014-07-16 18:22 . 2011-01-27 06:24 62464 ----a-w- c:\windows\system32\igfxsrvc.dll
2014-07-16 18:22 . 2011-01-27 06:23 4096 ----a-w- c:\windows\system32\IGFXDEVLib.dll
2014-07-16 18:22 . 2011-01-27 06:23 385024 ----a-w- c:\windows\system32\igfxdev.dll
2014-07-16 18:22 . 2011-01-27 06:22 285696 ----a-w- c:\windows\system32\igfxrenu.lrc
2014-07-16 18:22 . 2011-01-27 06:22 9014784 ----a-w- c:\windows\system32\igfxress.dll
2014-07-16 18:22 . 2011-01-27 06:22 142336 ----a-w- c:\windows\system32\igfxdo.dll
2014-07-16 18:22 . 2011-01-27 06:18 24576 ----a-w- c:\windows\SysWow64\igfxexps32.dll
2014-07-16 18:22 . 2011-01-27 06:17 288768 ----a-w- c:\windows\SysWow64\igfxdv32.dll
2014-07-16 18:22 . 2011-01-27 06:11 95744 ----a-w- c:\windows\system32\iglhcp64.dll
2014-07-16 18:22 . 2011-01-27 06:11 86528 ----a-w- c:\windows\SysWow64\iglhcp32.dll
2014-07-16 18:22 . 2011-01-27 06:11 368640 ----a-w- c:\windows\SysWow64\iglhsip32.dll
2014-07-16 18:22 . 2011-01-27 06:11 364032 ----a-w- c:\windows\system32\iglhsip64.dll
2014-07-16 18:22 . 2011-01-27 06:25 126976 ----a-w- c:\windows\system32\igfxcpl.cpl
2014-07-16 18:22 . 2011-01-27 06:57 7470080 ----a-w- c:\windows\system32\igdumd64.dll
2014-07-16 18:22 . 2011-01-27 06:57 12273408 ----a-w- c:\windows\system32\drivers\igdkmd64.sys
2014-07-16 18:22 . 2011-01-27 06:55 213332 ----a-w- c:\windows\system32\igfcg600m.bin
2014-07-16 18:22 . 2011-01-27 06:51 5689344 ----a-w- c:\windows\SysWow64\igdumd32.dll
2014-07-16 18:22 . 2011-01-27 06:48 575488 ----a-w- c:\windows\SysWow64\igdumdx32.dll
2014-07-16 18:22 . 2011-01-27 06:47 7386112 ----a-w- c:\windows\system32\igd10umd64.dll
2014-07-16 18:22 . 2011-01-27 06:11 142848 ----a-w- c:\windows\SysWow64\igfxcmrt32.dll
2014-07-16 18:22 . 2011-01-27 06:11 122368 ----a-w- c:\windows\system32\igfxcmrt64.dll
2014-07-16 18:22 . 2011-02-10 11:48 391704 ----a-w- c:\windows\system32\hkcmd.exe
2014-07-16 18:22 . 2011-02-10 11:48 4368920 ----a-w- c:\windows\system32\GfxUI.exe
2014-07-16 18:22 . 2011-01-27 06:55 145804 ----a-w- c:\windows\system32\igcompkrng600.bin
2014-07-16 18:22 . 2011-01-27 06:44 6068224 ----a-w- c:\windows\SysWow64\igd10umd32.dll
2014-07-16 18:22 . 2011-01-27 06:38 19591680 ----a-w- c:\windows\system32\ig4icd64.dll
2014-07-16 18:22 . 2011-01-27 06:30 14292992 ----a-w- c:\windows\SysWow64\ig4icd32.dll
2014-07-16 18:22 . 2011-01-27 06:23 109056 ----a-w- c:\windows\system32\hccutils.dll
2014-07-16 18:22 . 2011-01-27 06:23 144896 ----a-w- c:\windows\system32\gfxSrvc.dll
2014-07-16 18:22 . 2011-01-27 06:11 94208 ----a-w- c:\windows\system32\IccLibDll_x64.dll
2014-07-16 18:22 . 2011-02-10 11:48 179736 ----a-w- c:\windows\system32\difx64.exe
2014-06-18 02:18 . 2014-07-25 06:52 692736 ----a-w- c:\windows\system32\osk.exe
2014-06-18 01:51 . 2014-07-25 06:52 646144 ----a-w- c:\windows\SysWow64\osk.exe
2014-06-06 10:10 . 2014-07-25 06:51 624128 ----a-w- c:\windows\system32\qedit.dll
2014-06-06 09:44 . 2014-07-25 06:51 509440 ----a-w- c:\windows\SysWow64\qedit.dll
2014-06-05 14:45 . 2014-07-25 06:45 1460736 ----a-w- c:\windows\system32\lsasrv.dll
2014-06-05 14:26 . 2014-07-25 06:45 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2014-06-05 14:25 . 2014-07-25 06:45 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"icq"="c:\users\Hanule\AppData\Roaming\ICQM\icq.exe" [2014-07-22 34983944]
"SearchProtection"="c:\users\Hanule\AppData\Roaming\Search Protection\SearchProtection.EXE" [2014-08-22 1109352]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"FLxHCIm"="c:\program files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe" [2011-04-08 43008]
"Adobe Creative Cloud"="c:\program files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" [2014-07-03 2694040]
"ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2010-08-17 5732992]
"ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2010-10-07 170624]
"HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-08-03 4085896]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 AMPPALP;Protokol Intel(R) Centrino(R) Bluetooth 3.0 + High Speed;c:\windows\system32\DRIVERS\amppal.sys;c:\windows\SYSNATIVE\DRIVERS\amppal.sys [x]
R3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x]
R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
R3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys;c:\windows\SYSNATIVE\DRIVERS\btmaux.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 PDF Architect 2;PDF Architect 2;c:\program files (x86)\PDF Architect 2\ws.exe;c:\program files (x86)\PDF Architect 2\ws.exe [x]
R3 pdfforge CrashHandler;pdfforge CrashHandler;c:\program files (x86)\PDF Architect 2\crash-handler-ws.exe;c:\program files (x86)\PDF Architect 2\crash-handler-ws.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [x]
S2 AMPPALR3;Intel® Centrino® Bluetooth 3.0 + High Speed Service;c:\program files\Intel\BluetoothHS\BTHSAmpPalService.exe;c:\program files\Intel\BluetoothHS\BTHSAmpPalService.exe [x]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x]
S2 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [x]
S2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [x]
S2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service;c:\program files\Intel\BluetoothHS\BTHSSecurityMgr.exe;c:\program files\Intel\BluetoothHS\BTHSSecurityMgr.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 sxuptp;SXUPTP Driver;c:\windows\system32\DRIVERS\sxuptp.sys;c:\windows\SYSNATIVE\DRIVERS\sxuptp.sys [x]
S3 AMPPAL;Virtuální adaptér Intel(R) Centrino(R) Bluetooth 3.0 + High Speed;c:\windows\system32\DRIVERS\AMPPAL.sys;c:\windows\SYSNATIVE\DRIVERS\AMPPAL.sys [x]
S3 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [x]
S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
S3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver;c:\windows\system32\DRIVERS\FLxHCIc.sys;c:\windows\SYSNATIVE\DRIVERS\FLxHCIc.sys [x]
S3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver;c:\windows\system32\DRIVERS\FLxHCIh.sys;c:\windows\SYSNATIVE\DRIVERS\FLxHCIh.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*Deregistered* - iSafeKrnlKit
*Deregistered* - iSafeKrnlR3
*Deregistered* - iSafeNetFilter
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-08-27 14:18 1096520 ----a-w- c:\program files (x86)\Google\Chrome\Application\37.0.2062.94\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-08-29 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-18 08:51]
.
2014-08-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-23 09:06]
.
2014-08-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-23 09:06]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ AccExtIco1]
@="{AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}"
[HKEY_CLASSES_ROOT\CLSID\{AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}]
2014-06-25 14:51 672416 ----a-w- c:\program files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ AccExtIco2]
@="{853B7E05-C47D-4985-909A-D0DC5C6D7303}"
[HKEY_CLASSES_ROOT\CLSID\{853B7E05-C47D-4985-909A-D0DC5C6D7303}]
2014-06-25 14:51 672416 ----a-w- c:\program files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ AccExtIco3]
@="{42D38F2E-98E9-4382-B546-E24E4D6D04BB}"
[HKEY_CLASSES_ROOT\CLSID\{42D38F2E-98E9-4382-B546-E24E4D6D04BB}]
2014-06-25 14:51 672416 ----a-w- c:\program files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-07-23 09:05 634872 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2014-07-16 167960]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2014-07-16 391704]
"Persistence"="c:\windows\system32\igfxpers.exe" [2014-07-16 418328]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-04-30 2199840]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2014-07-16 324096]
"BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2011-03-30 10372368]
"AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2011-03-13 617120]
"AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2011-03-13 379552]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2014-02-27 558496]
"SC-Print A Msgsrv"="c:\program files\SC-Print A\Msgsrv.exe" [2010-12-13 66560]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://qip.ru/?utm_source=qip2012&utm_medium=cpc&utm_campaign=qip2012_start
uDefault_Search_URL = hxxp://search.qip.ru
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: Interfaces\{62FE8E15-A8B1-4818-B6E7-A783AA3DB6EC}: NameServer = 169.254.1.1
FF - ProfilePath - c:\users\Hanule\AppData\Roaming\Mozilla\Firefox\Profiles\7qgwyjgz.default\
FF - prefs.js: browser.startup.homepage - hxxp://gmail.com/
FF - prefs.js: keyword.URL - hxxps://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=501549&p=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKCU-Run-RESTART_STICKY_NOTES - c:\windows\System32\StikyNot.exe
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
Toolbar-Locked - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-08-29 07:26:09
ComboFix-quarantined-files.txt 2014-08-29 05:26
.
Před spuštěním: Volných bajtů: 577 208 688 640
Po spuštění: Volných bajtů: 577 929 138 176
.
- - End Of File - - 3C95578A07A0C5AFB6099395B7BF6526
A36C5E4F47E84449FF07ED3517B43A31
Děkuju za radu
mohli byste mi poradit jak to dostat pryč? Je to BV:AutorunE.
Tady je log z ComboFixu:
ComboFix 14-08-28.01 - Hanule 29.08.2014 7:17.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.4001.1493 [GMT 2:00]
Spuštěný z: c:\users\Hanule\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-07-28 do 2014-08-29 )))))))))))))))))))))))))))))))
.
.
2014-08-29 05:23 . 2014-08-29 05:23 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-08-28 12:40 . 2014-08-28 12:40 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{71B0F397-6430-4B5B-B4D4-06C6FFC8E996}\offreg.dll
2014-08-28 12:20 . 2014-08-28 12:20 -------- d-----w- c:\users\Hanule\AppData\Roaming\eCyber
2014-08-28 12:19 . 2014-08-08 06:24 45248 ----a-w- c:\windows\system32\drivers\iSafeKrnlBoot.sys
2014-08-28 12:19 . 2014-08-28 12:19 -------- d-----w- c:\windows\system32\log
2014-08-28 12:18 . 2014-08-29 03:58 -------- d-----w- c:\users\Hanule\AppData\Roaming\iSafe
2014-08-28 04:43 . 2014-08-28 04:43 -------- d-----w- c:\users\Hanule\AppData\Local\Skype
2014-08-28 04:43 . 2014-08-28 05:11 -------- d-----w- c:\users\Hanule\AppData\Roaming\Skype
2014-08-28 04:42 . 2014-08-28 04:42 -------- d-----r- c:\program files (x86)\Skype
2014-08-28 04:42 . 2014-08-28 04:42 -------- d-----w- c:\program files (x86)\Common Files\Skype
2014-08-28 04:42 . 2014-08-28 04:43 -------- d-----w- c:\programdata\Skype
2014-08-26 08:05 . 2014-08-21 03:43 11319192 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{71B0F397-6430-4B5B-B4D4-06C6FFC8E996}\mpengine.dll
2014-08-25 18:08 . 2014-08-25 18:08 -------- d-----w- c:\users\Hanule\AppData\Roaming\vlc
2014-08-25 18:07 . 2014-08-25 18:07 -------- d-----w- c:\program files (x86)\VideoLAN
2014-08-25 10:06 . 2014-08-25 10:06 -------- d-sh--w- c:\users\Hanule\AppData\Local\EmieUserList
2014-08-25 10:06 . 2014-08-25 10:06 -------- d-sh--w- c:\users\Hanule\AppData\Local\EmieSiteList
2014-08-18 07:52 . 2014-08-18 15:36 -------- d-----w- c:\program files (x86)\Mozilla Thunderbird
2014-08-16 14:24 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2014-08-16 14:24 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2014-08-16 14:24 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2014-08-16 14:24 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2014-08-16 14:24 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2014-08-16 14:24 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2014-08-16 14:23 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2014-08-16 14:23 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2014-08-14 04:06 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDTAT.DLL
2014-08-14 04:06 . 2014-07-09 01:31 7168 ----a-w- c:\windows\SysWow64\KBDYAK.DLL
2014-08-14 04:06 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDYAK.DLL
2014-08-14 04:06 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDRU1.DLL
2014-08-14 04:06 . 2014-07-09 02:03 6656 ----a-w- c:\windows\system32\KBDRU.DLL
2014-08-14 04:06 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDBASH.DLL
2014-08-14 04:06 . 2014-07-09 01:31 6656 ----a-w- c:\windows\SysWow64\KBDBASH.DLL
2014-08-14 04:06 . 2014-07-16 03:23 2048 ----a-w- c:\windows\system32\tzres.dll
2014-08-14 04:06 . 2014-07-16 02:46 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2014-08-14 04:02 . 2014-07-14 02:02 1216000 ----a-w- c:\windows\system32\rpcrt4.dll
2014-08-14 04:02 . 2014-07-14 01:40 664064 ----a-w- c:\windows\SysWow64\rpcrt4.dll
2014-08-14 04:02 . 2014-08-07 02:06 529920 ----a-w- c:\windows\system32\aepdu.dll
2014-08-14 04:02 . 2014-08-07 02:01 424448 ----a-w- c:\windows\system32\aeinv.dll
2014-08-12 14:56 . 2014-08-12 14:56 -------- d-----w- c:\program files (x86)\Microsoft Works
2014-08-12 14:54 . 2014-08-12 14:54 -------- d-----w- c:\windows\PCHEALTH
2014-08-12 14:51 . 2014-08-12 14:51 -------- d-----w- c:\program files\Microsoft Office
2014-08-12 14:51 . 2014-08-12 14:51 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 8
2014-08-12 14:50 . 2014-08-12 14:50 -------- d-----w- c:\users\Hanule\AppData\Local\Microsoft Help
2014-08-12 14:50 . 2014-08-12 14:59 -------- d-----w- c:\programdata\Microsoft Help
2014-08-12 14:49 . 2014-08-12 14:49 -------- d-----r- C:\MSOCache
2014-08-03 19:04 . 2014-05-14 16:23 44512 ----a-w- c:\windows\system32\wups2.dll
2014-08-03 19:04 . 2014-05-14 16:23 58336 ----a-w- c:\windows\system32\wuauclt.exe
2014-08-03 19:04 . 2014-05-14 16:23 2477536 ----a-w- c:\windows\system32\wuaueng.dll
2014-08-03 19:04 . 2014-05-14 16:21 2620928 ----a-w- c:\windows\system32\wucltux.dll
2014-08-03 19:03 . 2014-05-14 16:23 38880 ----a-w- c:\windows\system32\wups.dll
2014-08-03 19:03 . 2014-05-14 16:23 36320 ----a-w- c:\windows\SysWow64\wups.dll
2014-08-03 19:03 . 2014-05-14 16:23 700384 ----a-w- c:\windows\system32\wuapi.dll
2014-08-03 19:03 . 2014-05-14 16:23 581600 ----a-w- c:\windows\SysWow64\wuapi.dll
2014-08-03 19:03 . 2014-05-14 16:20 97792 ----a-w- c:\windows\system32\wudriver.dll
2014-08-03 19:03 . 2014-05-14 16:17 92672 ----a-w- c:\windows\SysWow64\wudriver.dll
2014-08-03 19:03 . 2014-05-14 07:23 198600 ----a-w- c:\windows\system32\wuwebv.dll
2014-08-03 19:03 . 2014-05-14 07:23 179656 ----a-w- c:\windows\SysWow64\wuwebv.dll
2014-08-03 19:03 . 2014-05-14 07:20 36864 ----a-w- c:\windows\system32\wuapp.exe
2014-08-03 19:03 . 2014-05-14 07:17 33792 ----a-w- c:\windows\SysWow64\wuapp.exe
2014-08-03 10:51 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2014-08-02 16:39 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2014-08-02 16:39 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2014-08-02 16:39 . 2013-11-23 18:26 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2014-08-02 16:39 . 2013-11-23 17:47 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2014-08-02 16:39 . 2013-12-24 23:09 1987584 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2014-08-02 16:39 . 2013-12-24 22:48 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2014-08-02 16:39 . 2013-11-22 22:48 3928064 ----a-w- c:\windows\system32\d2d1.dll
2014-08-02 16:39 . 2013-11-26 08:16 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll
2014-08-02 16:39 . 2014-02-04 02:32 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-08-02 16:39 . 2014-02-04 02:04 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2014-08-02 16:39 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2014-08-02 16:39 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2014-08-01 15:58 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2014-08-01 15:58 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe
2014-08-01 15:58 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL
2014-08-01 15:58 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL
2014-08-01 15:57 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll
2014-08-01 15:44 . 2014-08-01 15:44 -------- d-----w- c:\windows\Migration
2014-08-01 10:29 . 2014-08-01 10:29 -------- d-----w- c:\users\Hanule\voip
2014-07-30 05:52 . 2014-07-30 05:52 -------- d-----w- c:\users\Hanule\AppData\Roaming\Search Protection
2014-07-30 05:52 . 2014-07-30 05:52 -------- d-----w- c:\programdata\YTD Video Downloader
2014-07-30 05:52 . 2014-07-30 05:52 -------- d-----w- c:\program files (x86)\GreenTree Applications
2014-07-30 05:47 . 2014-07-30 05:47 -------- d-----w- C:\UpdateChromeLinksLogs
2014-07-30 05:47 . 2014-07-30 05:47 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll
2014-07-30 05:47 . 2014-07-30 05:47 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll
2014-07-30 05:47 . 2014-07-30 05:47 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2014-07-30 05:29 . 2014-07-30 05:29 -------- d-----w- c:\users\Hanule\aTubeCatcher
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-08-05 07:20 . 2014-07-16 18:43 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-07-24 04:02 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2014-07-24 04:02 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2014-07-23 09:09 . 2014-07-23 09:05 427360 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-07-23 09:05 . 2014-07-23 09:05 92008 ----a-w- c:\windows\system32\drivers\aswStm.sys
2014-07-23 09:05 . 2014-07-23 09:05 224896 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-07-23 09:05 . 2014-07-23 09:05 1041168 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2014-07-23 09:05 . 2014-07-23 09:05 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-07-23 09:05 . 2014-07-23 09:05 79184 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-07-23 09:05 . 2014-07-23 09:05 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-07-23 09:05 . 2014-07-23 09:05 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-07-23 09:05 . 2014-07-23 09:05 307344 ----a-w- c:\windows\system32\aswBoot.exe
2014-07-23 09:05 . 2014-07-23 09:05 43152 ----a-w- c:\windows\avastSS.scr
2014-07-18 08:51 . 2014-07-18 08:51 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-07-18 08:51 . 2014-07-18 08:51 699056 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-07-16 18:56 . 2014-07-16 18:56 44032 ----a-w- c:\windows\system32\drivers\AmUStor.sys
2014-07-16 18:56 . 2014-07-16 18:56 10752 ----a-w- c:\windows\system32\AmUStor.dll
2014-07-16 18:52 . 2010-08-24 15:55 76912 ----a-w- c:\windows\system32\drivers\L1C62x64.sys
2014-07-16 18:22 . 2010-10-14 22:28 317440 ----a-w- c:\windows\system32\drivers\IntcDAud.sys
2014-07-16 18:22 . 2010-10-14 22:27 14848 ----a-w- c:\windows\system32\IntcDAuC.dll
2014-07-16 18:22 . 2011-01-27 07:05 92672 ----a-w- c:\windows\system32\igfxCoIn_v2291.dll
2014-07-16 18:22 . 2011-02-10 11:49 167960 ----a-w- c:\windows\system32\igfxtray.exe
2014-07-16 18:22 . 2011-02-10 11:48 509976 ----a-w- c:\windows\system32\igfxsrvc.exe
2014-07-16 18:22 . 2011-02-10 11:48 418328 ----a-w- c:\windows\system32\igfxpers.exe
2014-07-16 18:22 . 2011-02-10 11:48 239128 ----a-w- c:\windows\system32\igfxext.exe
2014-07-16 18:22 . 2011-01-27 06:55 960940 ----a-w- c:\windows\system32\igkrng600.bin
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrsky.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrrom.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrhrv.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrslv.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrtrk.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrsve.lrc
2014-07-16 18:22 . 2011-01-27 06:25 285696 ----a-w- c:\windows\system32\igfxrtha.lrc
2014-07-16 18:22 . 2011-01-27 06:25 287232 ----a-w- c:\windows\system32\igfxresn.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrrus.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrptg.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrplk.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrptb.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrnor.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrita.lrc
2014-07-16 18:22 . 2011-01-27 06:25 283648 ----a-w- c:\windows\system32\igfxrjpn.lrc
2014-07-16 18:22 . 2011-01-27 06:25 283136 ----a-w- c:\windows\system32\igfxrkor.lrc
2014-07-16 18:22 . 2011-01-27 06:25 287232 ----a-w- c:\windows\system32\igfxrell.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrhun.lrc
2014-07-16 18:22 . 2011-01-27 06:25 285184 ----a-w- c:\windows\system32\igfxrheb.lrc
2014-07-16 18:22 . 2011-01-27 06:25 287232 ----a-w- c:\windows\system32\igfxrfra.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrdeu.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286208 ----a-w- c:\windows\system32\igfxrfin.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrnld.lrc
2014-07-16 18:22 . 2011-01-27 06:25 286720 ----a-w- c:\windows\system32\igfxrcsy.lrc
2014-07-16 18:22 . 2011-01-27 06:25 285696 ----a-w- c:\windows\system32\igfxrdan.lrc
2014-07-16 18:22 . 2011-01-27 06:25 282624 ----a-w- c:\windows\system32\igfxrcht.lrc
2014-07-16 18:22 . 2011-01-27 06:25 285184 ----a-w- c:\windows\system32\igfxrara.lrc
2014-07-16 18:22 . 2011-01-27 06:25 282624 ----a-w- c:\windows\system32\igfxrchs.lrc
2014-07-16 18:22 . 2011-01-27 06:24 335872 ----a-w- c:\windows\system32\igfxpph.dll
2014-07-16 18:22 . 2011-01-27 06:24 28672 ----a-w- c:\windows\system32\igfxexps.dll
2014-07-16 18:22 . 2011-01-27 06:24 380928 ----a-w- c:\windows\system32\igfxTMM.dll
2014-07-16 18:22 . 2011-01-27 06:24 62464 ----a-w- c:\windows\system32\igfxsrvc.dll
2014-07-16 18:22 . 2011-01-27 06:23 4096 ----a-w- c:\windows\system32\IGFXDEVLib.dll
2014-07-16 18:22 . 2011-01-27 06:23 385024 ----a-w- c:\windows\system32\igfxdev.dll
2014-07-16 18:22 . 2011-01-27 06:22 285696 ----a-w- c:\windows\system32\igfxrenu.lrc
2014-07-16 18:22 . 2011-01-27 06:22 9014784 ----a-w- c:\windows\system32\igfxress.dll
2014-07-16 18:22 . 2011-01-27 06:22 142336 ----a-w- c:\windows\system32\igfxdo.dll
2014-07-16 18:22 . 2011-01-27 06:18 24576 ----a-w- c:\windows\SysWow64\igfxexps32.dll
2014-07-16 18:22 . 2011-01-27 06:17 288768 ----a-w- c:\windows\SysWow64\igfxdv32.dll
2014-07-16 18:22 . 2011-01-27 06:11 95744 ----a-w- c:\windows\system32\iglhcp64.dll
2014-07-16 18:22 . 2011-01-27 06:11 86528 ----a-w- c:\windows\SysWow64\iglhcp32.dll
2014-07-16 18:22 . 2011-01-27 06:11 368640 ----a-w- c:\windows\SysWow64\iglhsip32.dll
2014-07-16 18:22 . 2011-01-27 06:11 364032 ----a-w- c:\windows\system32\iglhsip64.dll
2014-07-16 18:22 . 2011-01-27 06:25 126976 ----a-w- c:\windows\system32\igfxcpl.cpl
2014-07-16 18:22 . 2011-01-27 06:57 7470080 ----a-w- c:\windows\system32\igdumd64.dll
2014-07-16 18:22 . 2011-01-27 06:57 12273408 ----a-w- c:\windows\system32\drivers\igdkmd64.sys
2014-07-16 18:22 . 2011-01-27 06:55 213332 ----a-w- c:\windows\system32\igfcg600m.bin
2014-07-16 18:22 . 2011-01-27 06:51 5689344 ----a-w- c:\windows\SysWow64\igdumd32.dll
2014-07-16 18:22 . 2011-01-27 06:48 575488 ----a-w- c:\windows\SysWow64\igdumdx32.dll
2014-07-16 18:22 . 2011-01-27 06:47 7386112 ----a-w- c:\windows\system32\igd10umd64.dll
2014-07-16 18:22 . 2011-01-27 06:11 142848 ----a-w- c:\windows\SysWow64\igfxcmrt32.dll
2014-07-16 18:22 . 2011-01-27 06:11 122368 ----a-w- c:\windows\system32\igfxcmrt64.dll
2014-07-16 18:22 . 2011-02-10 11:48 391704 ----a-w- c:\windows\system32\hkcmd.exe
2014-07-16 18:22 . 2011-02-10 11:48 4368920 ----a-w- c:\windows\system32\GfxUI.exe
2014-07-16 18:22 . 2011-01-27 06:55 145804 ----a-w- c:\windows\system32\igcompkrng600.bin
2014-07-16 18:22 . 2011-01-27 06:44 6068224 ----a-w- c:\windows\SysWow64\igd10umd32.dll
2014-07-16 18:22 . 2011-01-27 06:38 19591680 ----a-w- c:\windows\system32\ig4icd64.dll
2014-07-16 18:22 . 2011-01-27 06:30 14292992 ----a-w- c:\windows\SysWow64\ig4icd32.dll
2014-07-16 18:22 . 2011-01-27 06:23 109056 ----a-w- c:\windows\system32\hccutils.dll
2014-07-16 18:22 . 2011-01-27 06:23 144896 ----a-w- c:\windows\system32\gfxSrvc.dll
2014-07-16 18:22 . 2011-01-27 06:11 94208 ----a-w- c:\windows\system32\IccLibDll_x64.dll
2014-07-16 18:22 . 2011-02-10 11:48 179736 ----a-w- c:\windows\system32\difx64.exe
2014-06-18 02:18 . 2014-07-25 06:52 692736 ----a-w- c:\windows\system32\osk.exe
2014-06-18 01:51 . 2014-07-25 06:52 646144 ----a-w- c:\windows\SysWow64\osk.exe
2014-06-06 10:10 . 2014-07-25 06:51 624128 ----a-w- c:\windows\system32\qedit.dll
2014-06-06 09:44 . 2014-07-25 06:51 509440 ----a-w- c:\windows\SysWow64\qedit.dll
2014-06-05 14:45 . 2014-07-25 06:45 1460736 ----a-w- c:\windows\system32\lsasrv.dll
2014-06-05 14:26 . 2014-07-25 06:45 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2014-06-05 14:25 . 2014-07-25 06:45 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
"icq"="c:\users\Hanule\AppData\Roaming\ICQM\icq.exe" [2014-07-22 34983944]
"SearchProtection"="c:\users\Hanule\AppData\Roaming\Search Protection\SearchProtection.EXE" [2014-08-22 1109352]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"FLxHCIm"="c:\program files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe" [2011-04-08 43008]
"Adobe Creative Cloud"="c:\program files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" [2014-07-03 2694040]
"ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2010-08-17 5732992]
"ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2010-10-07 170624]
"HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-08-03 4085896]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 AMPPALP;Protokol Intel(R) Centrino(R) Bluetooth 3.0 + High Speed;c:\windows\system32\DRIVERS\amppal.sys;c:\windows\SYSNATIVE\DRIVERS\amppal.sys [x]
R3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x]
R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
R3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys;c:\windows\SYSNATIVE\DRIVERS\btmaux.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 PDF Architect 2;PDF Architect 2;c:\program files (x86)\PDF Architect 2\ws.exe;c:\program files (x86)\PDF Architect 2\ws.exe [x]
R3 pdfforge CrashHandler;pdfforge CrashHandler;c:\program files (x86)\PDF Architect 2\crash-handler-ws.exe;c:\program files (x86)\PDF Architect 2\crash-handler-ws.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [x]
S2 AMPPALR3;Intel® Centrino® Bluetooth 3.0 + High Speed Service;c:\program files\Intel\BluetoothHS\BTHSAmpPalService.exe;c:\program files\Intel\BluetoothHS\BTHSAmpPalService.exe [x]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x]
S2 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [x]
S2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [x]
S2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service;c:\program files\Intel\BluetoothHS\BTHSSecurityMgr.exe;c:\program files\Intel\BluetoothHS\BTHSSecurityMgr.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 sxuptp;SXUPTP Driver;c:\windows\system32\DRIVERS\sxuptp.sys;c:\windows\SYSNATIVE\DRIVERS\sxuptp.sys [x]
S3 AMPPAL;Virtuální adaptér Intel(R) Centrino(R) Bluetooth 3.0 + High Speed;c:\windows\system32\DRIVERS\AMPPAL.sys;c:\windows\SYSNATIVE\DRIVERS\AMPPAL.sys [x]
S3 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [x]
S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
S3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver;c:\windows\system32\DRIVERS\FLxHCIc.sys;c:\windows\SYSNATIVE\DRIVERS\FLxHCIc.sys [x]
S3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver;c:\windows\system32\DRIVERS\FLxHCIh.sys;c:\windows\SYSNATIVE\DRIVERS\FLxHCIh.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*Deregistered* - iSafeKrnlKit
*Deregistered* - iSafeKrnlR3
*Deregistered* - iSafeNetFilter
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-08-27 14:18 1096520 ----a-w- c:\program files (x86)\Google\Chrome\Application\37.0.2062.94\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-08-29 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-18 08:51]
.
2014-08-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-23 09:06]
.
2014-08-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-23 09:06]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ AccExtIco1]
@="{AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}"
[HKEY_CLASSES_ROOT\CLSID\{AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}]
2014-06-25 14:51 672416 ----a-w- c:\program files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ AccExtIco2]
@="{853B7E05-C47D-4985-909A-D0DC5C6D7303}"
[HKEY_CLASSES_ROOT\CLSID\{853B7E05-C47D-4985-909A-D0DC5C6D7303}]
2014-06-25 14:51 672416 ----a-w- c:\program files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ AccExtIco3]
@="{42D38F2E-98E9-4382-B546-E24E4D6D04BB}"
[HKEY_CLASSES_ROOT\CLSID\{42D38F2E-98E9-4382-B546-E24E4D6D04BB}]
2014-06-25 14:51 672416 ----a-w- c:\program files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-07-23 09:05 634872 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2014-07-16 167960]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2014-07-16 391704]
"Persistence"="c:\windows\system32\igfxpers.exe" [2014-07-16 418328]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-04-30 2199840]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2014-07-16 324096]
"BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2011-03-30 10372368]
"AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2011-03-13 617120]
"AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2011-03-13 379552]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2014-02-27 558496]
"SC-Print A Msgsrv"="c:\program files\SC-Print A\Msgsrv.exe" [2010-12-13 66560]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://qip.ru/?utm_source=qip2012&utm_medium=cpc&utm_campaign=qip2012_start
uDefault_Search_URL = hxxp://search.qip.ru
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: Interfaces\{62FE8E15-A8B1-4818-B6E7-A783AA3DB6EC}: NameServer = 169.254.1.1
FF - ProfilePath - c:\users\Hanule\AppData\Roaming\Mozilla\Firefox\Profiles\7qgwyjgz.default\
FF - prefs.js: browser.startup.homepage - hxxp://gmail.com/
FF - prefs.js: keyword.URL - hxxps://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=501549&p=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKCU-Run-RESTART_STICKY_NOTES - c:\windows\System32\StikyNot.exe
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
Toolbar-Locked - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-08-29 07:26:09
ComboFix-quarantined-files.txt 2014-08-29 05:26
.
Před spuštěním: Volných bajtů: 577 208 688 640
Po spuštění: Volných bajtů: 577 929 138 176
.
- - End Of File - - 3C95578A07A0C5AFB6099395B7BF6526
A36C5E4F47E84449FF07ED3517B43A31
Děkuju za radu