Stránka 1 z 1

při spuštění pc vyskakuje okno IE s reklamou

Napsal: 24 led 2010 21:57
od Grimlok
Logfile of random's system information tool 1.06 (written by random/random)
Run by Sisi at 2010-01-24 21:55:26
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 85 GB (56%) free of 153 GB
Total RAM: 4060 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:55:28, on 24.1.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe
C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Avast Professional 4\ashDisp.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\ICQ6.5\ICQ.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Sisi\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\Sisi.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [HWSetup] "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
O4 - HKLM\..\Run: [SVPWUTIL] "C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe" SVPwUTIL
O4 - HKLM\..\Run: [KeNotify] "C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] //~c:\program files (x86)\adobe\reader 9.0\reader\reader_sl.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
O4 - HKLM\..\Run: [NDSTray.exe] "C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe"
O4 - HKLM\..\Run: [cfFncEnabler.exe] "C:\Program Files (x86)\TOSHIBA\ConfigFree\cfFncEnabler.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\AVASTP~1\ashDisp.exe
O4 - HKLM\..\Run: [Ulead Photo Express Calendar Checker] //~c:\program files (x86)\ulead photo express 5\calcheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F

-39A1E5104020
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: eBay - {76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/710-71511-9400-1/4 (file missing)
O9 - Extra button: Amazon.co.uk - {8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.co.uk/exec/obidos/red ... &site=home (file

missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6.5\ICQ.exe
O13 - Gopher Prefix:
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) -

http://upload.facebook.com/controls/200 ... ader55.cab
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Avast Professional 4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Avast Professional 4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Avast Professional 4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Avast Professional 4\ashWebSv.exe
O23 - Service: TOSHIBA Web Camera Service (camsvc) - TOSHIBA - C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCameraSrv.exe
O23 - Service: ConfigFree Gadget Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: Služba Výstraha HDD SSD TOSHIBA (TOSHIBA HDD SSD Alert Service) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file

missing)

--
End of file - 9957 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HWSetup"=C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [2007-04-16 422400]
"SVPWUTIL"=C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe [2008-11-21 438272]
"KeNotify"=C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [2009-01-13 34088]
"Adobe Reader Speed Launcher"=//~c:\program files (x86)\adobe\reader 9.0\reader\reader_sl.exe []
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-04-21 61440]
"ITSecMng"=C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [2008-12-19 83336]
"ToshibaServiceStation"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [2009-04-01 1283384]
"NDSTray.exe"=C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2009-05-12 299008]
"cfFncEnabler.exe"=C:\Program Files (x86)\TOSHIBA\ConfigFree\cfFncEnabler.exe [2009-03-24 16384]
"avast!"=C:\PROGRA~1\AVASTP~1\ashDisp.exe [2009-11-25 81000]
"Ulead Photo Express Calendar Checker"=//~c:\program files (x86)\ulead photo express 5\calcheck.exe []
"SunJavaUpdateSched"=C:\Program Files (x86)\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"NBKeyScan"=C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2007-12-03 2213160]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe [2009-04-23 691656]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1555968]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2007-12-13 1688872]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"NoActiveDesktopChanges"=
"ForceActiveDesktopOn"=
"BindDirectlyToPropertySetStorage"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{660b2871-bb59-11de-b029-00225fc8743e}]
shell\AutoRun\command - G:\AutoRun.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{90194eb0-db9c-11de-a888-00235afc705d}]
shell\AutoRun\command - D:\Autorun.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{dbafd345-bb23-11de-b18d-00225fc8743e}]
shell\AutoRun\command - D:\WD_Windows_Tools\Setup.exe


======File associations======

.js - edit - C:\Windows\SysWOW64\Notepad.exe %1
.js - open - C:\Windows\SysWOW64\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2010-01-24 21:55:26 ----D---- C:\Program Files (x86)\trend micro
2010-01-24 21:53:29 ----D---- C:\rsit
2010-01-21 19:40:34 ----A---- C:\Windows\system32\mshtml.dll
2010-01-21 19:40:31 ----A---- C:\Windows\system32\ieframe.dll
2010-01-21 19:40:29 ----A---- C:\Windows\system32\iertutil.dll
2010-01-21 19:40:28 ----A---- C:\Windows\system32\urlmon.dll
2010-01-21 19:40:27 ----A---- C:\Windows\system32\wininet.dll
2010-01-21 19:40:26 ----A---- C:\Windows\system32\occache.dll
2010-01-21 19:40:25 ----A---- C:\Windows\system32\msfeeds.dll
2010-01-21 19:40:25 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-21 19:40:24 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-21 19:40:24 ----A---- C:\Windows\system32\ieUnatt.exe
2010-01-21 19:40:24 ----A---- C:\Windows\system32\ieui.dll
2010-01-21 19:40:24 ----A---- C:\Windows\system32\iesysprep.dll
2010-01-21 19:40:24 ----A---- C:\Windows\system32\iepeers.dll
2010-01-21 19:40:23 ----A---- C:\Windows\system32\msfeedssync.exe
2010-01-21 19:40:23 ----A---- C:\Windows\system32\jsproxy.dll
2010-01-21 19:40:23 ----A---- C:\Windows\system32\iesetup.dll
2010-01-21 19:40:23 ----A---- C:\Windows\system32\iernonce.dll
2010-01-21 19:40:23 ----A---- C:\Windows\system32\ie4uinit.exe
2010-01-13 18:28:43 ----A---- C:\Windows\system32\t2embed.dll
2010-01-13 18:28:43 ----A---- C:\Windows\system32\fontsub.dll
2010-01-10 18:30:29 ----A---- C:\Windows\NeroDigital.ini
2010-01-10 12:17:50 ----D---- C:\Users\Sisi\AppData\Roaming\Nero
2010-01-10 12:17:38 ----A---- C:\Windows\Irremote.ini
2010-01-10 12:17:27 ----A---- C:\Windows\system32\MsiExec.exe.log
2010-01-10 12:15:59 ----D---- C:\ProgramData\Nero
2010-01-10 12:15:59 ----D---- C:\Program Files (x86)\Nero
2010-01-10 12:15:59 ----D---- C:\Program Files (x86)\Common Files\Nero
2010-01-01 23:49:47 ----A---- C:\Windows\dd_ATL90SP1_KB973924MSI2B7B.txt
2010-01-01 23:49:46 ----A---- C:\Windows\dd_ATL90SP1_KB973924UI2B7B.txt
2009-12-29 20:43:19 ----A---- C:\Windows\system32\XAudio2_5.dll
2009-12-29 20:43:18 ----A---- C:\Windows\system32\xactengine3_5.dll
2009-12-29 20:43:18 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2009-12-29 20:43:17 ----A---- C:\Windows\system32\d3dx11_42.dll
2009-12-29 20:43:17 ----A---- C:\Windows\system32\d3dcsx_42.dll
2009-12-29 20:43:16 ----A---- C:\Windows\system32\d3dx10_42.dll
2009-12-29 20:43:15 ----A---- C:\Windows\system32\D3DX9_42.dll
2009-12-29 20:43:14 ----A---- C:\Windows\system32\d3dx10_41.dll
2009-12-29 20:43:14 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2009-12-29 20:43:13 ----A---- C:\Windows\system32\XAudio2_4.dll
2009-12-29 20:43:13 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2009-12-29 20:43:13 ----A---- C:\Windows\system32\D3DX9_41.dll
2009-12-29 20:43:12 ----A---- C:\Windows\system32\xactengine3_4.dll
2009-12-29 20:43:12 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2009-12-29 20:43:11 ----A---- C:\Windows\system32\d3dx10_40.dll
2009-12-29 20:43:11 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2009-12-29 20:43:10 ----A---- C:\Windows\system32\XAudio2_3.dll
2009-12-29 20:43:10 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2009-12-29 20:43:10 ----A---- C:\Windows\system32\D3DX9_40.dll
2009-12-29 20:43:09 ----A---- C:\Windows\system32\xactengine3_3.dll
2009-12-29 20:43:08 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2009-12-29 20:43:07 ----A---- C:\Windows\system32\XAudio2_2.dll
2009-12-29 20:43:07 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2009-12-29 20:43:06 ----A---- C:\Windows\system32\xactengine3_2.dll
2009-12-29 20:43:06 ----A---- C:\Windows\system32\d3dx10_39.dll
2009-12-29 20:43:06 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2009-12-29 20:43:05 ----A---- C:\Windows\system32\XAudio2_1.dll
2009-12-29 20:43:05 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2009-12-29 20:43:05 ----A---- C:\Windows\system32\D3DX9_39.dll
2009-12-29 20:43:04 ----A---- C:\Windows\system32\xactengine3_1.dll
2009-12-29 20:43:04 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2009-12-29 20:43:03 ----A---- C:\Windows\system32\D3DX9_38.dll
2009-12-29 20:43:03 ----A---- C:\Windows\system32\d3dx10_38.dll
2009-12-29 20:43:03 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2009-12-29 20:43:02 ----A---- C:\Windows\system32\XAudio2_0.dll
2009-12-29 20:43:02 ----A---- C:\Windows\system32\xactengine3_0.dll
2009-12-29 20:43:01 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2009-12-29 20:43:00 ----A---- C:\Windows\system32\d3dx10_37.dll
2009-12-29 20:43:00 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2009-12-29 20:42:59 ----A---- C:\Windows\system32\D3DX9_37.dll
2009-12-29 20:42:57 ----A---- C:\Windows\system32\xactengine2_10.dll
2009-12-29 20:42:56 ----A---- C:\Windows\system32\d3dx10_36.dll
2009-12-29 20:42:56 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2009-12-29 20:42:55 ----A---- C:\Windows\system32\d3dx9_36.dll
2009-12-29 20:42:52 ----A---- C:\Windows\system32\xactengine2_9.dll
2009-12-29 20:42:51 ----A---- C:\Windows\system32\d3dx10_35.dll
2009-12-29 20:42:51 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2009-12-29 20:42:50 ----A---- C:\Windows\system32\d3dx9_35.dll
2009-12-29 20:42:48 ----A---- C:\Windows\system32\xactengine2_8.dll
2009-12-29 20:42:48 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2009-12-29 20:42:47 ----A---- C:\Windows\system32\d3dx10_34.dll
2009-12-29 20:42:47 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2009-12-29 20:42:46 ----A---- C:\Windows\system32\xinput1_3.dll
2009-12-29 20:42:46 ----A---- C:\Windows\system32\d3dx9_34.dll
2009-12-29 20:42:45 ----A---- C:\Windows\system32\xactengine2_7.dll
2009-12-29 20:42:44 ----A---- C:\Windows\system32\d3dx9_33.dll
2009-12-29 20:42:44 ----A---- C:\Windows\system32\d3dx10_33.dll
2009-12-29 20:42:44 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2009-12-29 20:42:43 ----A---- C:\Windows\system32\xactengine2_6.dll
2009-12-29 20:42:35 ----A---- C:\Windows\system32\xactengine2_5.dll
2009-12-29 20:42:35 ----A---- C:\Windows\system32\d3dx10.dll
2009-12-29 20:42:34 ----A---- C:\Windows\system32\xactengine2_4.dll
2009-12-29 20:42:34 ----A---- C:\Windows\system32\x3daudio1_1.dll
2009-12-29 20:42:33 ----A---- C:\Windows\system32\xinput1_2.dll
2009-12-29 20:42:33 ----A---- C:\Windows\system32\xactengine2_3.dll
2009-12-29 20:42:32 ----A---- C:\Windows\system32\xinput1_1.dll
2009-12-29 20:42:32 ----A---- C:\Windows\system32\xactengine2_2.dll
2009-12-29 20:42:31 ----A---- C:\Windows\system32\xactengine2_1.dll
2009-12-29 20:42:23 ----A---- C:\Windows\system32\d3dx9_30.dll
2009-12-29 20:42:22 ----A---- C:\Windows\system32\xactengine2_0.dll
2009-12-29 20:42:22 ----A---- C:\Windows\system32\x3daudio1_0.dll
2009-12-29 20:42:21 ----A---- C:\Windows\system32\d3dx9_29.dll
2009-12-29 20:42:20 ----A---- C:\Windows\system32\d3dx9_28.dll
2009-12-29 20:42:20 ----A---- C:\Windows\system32\d3dx9_26.dll
2009-12-29 20:42:19 ----A---- C:\Windows\system32\d3dx9_25.dll
2009-12-29 20:42:17 ----A---- C:\Windows\system32\d3dx9_24.dll
2009-12-29 20:40:34 ----HD---- C:\Windows\msdownld.tmp
2009-12-29 20:40:34 ----D---- C:\Windows\system32\directx
2009-12-27 19:35:21 ----D---- C:\Windows\Sun
2009-12-26 12:36:39 ----D---- C:\Windows\system32\spool
2009-12-26 12:36:39 ----D---- C:\Program Files (x86)\Windows Portable Devices
2009-12-26 12:33:08 ----A---- C:\Windows\system32\WMPhoto.dll
2009-12-26 12:33:06 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-12-26 12:33:06 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-12-26 12:33:06 ----A---- C:\Windows\system32\d3d10warp.dll
2009-12-26 12:33:06 ----A---- C:\Windows\system32\d2d1.dll
2009-12-26 12:33:05 ----A---- C:\Windows\system32\XpsRasterService.dll
2009-12-26 12:33:05 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2009-12-26 12:33:05 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-12-26 12:33:05 ----A---- C:\Windows\system32\dxgi.dll
2009-12-26 12:33:05 ----A---- C:\Windows\system32\dxdiagn.dll
2009-12-26 12:33:05 ----A---- C:\Windows\system32\dxdiag.exe
2009-12-26 12:33:05 ----A---- C:\Windows\system32\d3d11.dll
2009-12-26 12:33:05 ----A---- C:\Windows\system32\d3d10level9.dll
2009-12-26 12:33:05 ----A---- C:\Windows\system32\d3d10core.dll
2009-12-26 12:33:05 ----A---- C:\Windows\system32\d3d10_1core.dll
2009-12-26 12:33:04 ----A---- C:\Windows\system32\xpsservices.dll
2009-12-26 12:33:04 ----A---- C:\Windows\system32\XpsPrint.dll
2009-12-26 12:33:04 ----A---- C:\Windows\system32\OpcServices.dll
2009-12-26 12:33:03 ----A---- C:\Windows\system32\DWrite.dll
2009-12-26 12:33:03 ----A---- C:\Windows\system32\d3d10_1.dll
2009-12-26 12:33:03 ----A---- C:\Windows\system32\d3d10.dll
2009-12-26 12:32:39 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2009-12-26 12:32:30 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2009-12-26 12:32:30 ----A---- C:\Windows\system32\wpdshext.dll
2009-12-26 12:32:30 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2009-12-26 12:32:30 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2009-12-26 12:32:29 ----A---- C:\Windows\system32\WPDSp.dll
2009-12-26 12:32:29 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2009-12-26 12:32:29 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-12-26 12:32:29 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-12-26 12:31:39 ----A---- C:\Windows\system32\oleaccrc.dll
2009-12-26 12:31:39 ----A---- C:\Windows\system32\oleacc.dll
2009-12-26 12:31:38 ----A---- C:\Windows\system32\UIAutomationCore.dll
2009-12-26 12:30:37 ----A---- C:\Windows\system32\UIAnimation.dll
2009-12-26 12:30:36 ----A---- C:\Windows\system32\UIRibbonRes.dll
2009-12-26 12:30:35 ----A---- C:\Windows\system32\UIRibbon.dll
2009-12-25 20:53:45 ----D---- C:\Windows\system32\vi-VN
2009-12-25 20:53:45 ----D---- C:\Windows\system32\eu-ES
2009-12-25 20:53:45 ----D---- C:\Windows\system32\ca-ES
2009-12-25 20:20:07 ----A---- C:\Windows\system32\javaws.exe
2009-12-25 20:20:07 ----A---- C:\Windows\system32\javaw.exe
2009-12-25 20:20:07 ----A---- C:\Windows\system32\java.exe

======List of files/folders modified in the last 1 months======

2010-01-24 21:55:32 ----D---- C:\Windows\Prefetch
2010-01-24 21:55:26 ----RD---- C:\Program Files (x86)
2010-01-24 21:55:14 ----D---- C:\Windows\Temp
2010-01-24 20:47:29 ----D---- C:\Windows\System32
2010-01-24 20:47:29 ----D---- C:\Windows\inf
2010-01-24 20:40:30 ----A---- C:\Windows\ntbtlog.txt
2010-01-23 17:03:59 ----SHD---- C:\System Volume Information
2010-01-22 06:24:27 ----D---- C:\Windows\SysWOW64
2010-01-22 06:24:27 ----D---- C:\Windows\system32\migration
2010-01-22 06:24:27 ----D---- C:\Program Files (x86)\Internet Explorer
2010-01-22 05:52:27 ----D---- C:\Windows\winsxs
2010-01-21 19:49:03 ----D---- C:\Users\Sisi\AppData\Roaming\ICQ
2010-01-14 15:02:48 ----SHD---- C:\Windows\Installer
2010-01-14 15:02:46 ----D---- C:\ProgramData\Microsoft Help
2010-01-14 15:01:58 ----D---- C:\Program Files (x86)\Windows Mail
2010-01-10 18:30:29 ----D---- C:\Windows
2010-01-10 12:16:59 ----RSD---- C:\Windows\assembly
2010-01-10 12:15:59 ----HD---- C:\ProgramData
2010-01-10 12:15:59 ----D---- C:\Program Files (x86)\Common Files
2010-01-10 12:15:57 ----D---- C:\Windows\Cursors
2010-01-10 12:11:00 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2010-01-07 16:13:20 ----D---- C:\Program Files (x86)\ICQ6.5
2009-12-26 13:02:13 ----D---- C:\Windows\Microsoft.NET
2009-12-26 12:55:52 ----D---- C:\Windows\rescache
2009-12-26 12:36:40 ----D---- C:\Windows\system32\cs-CZ
2009-12-26 12:36:39 ----RD---- C:\Program Files
2009-12-26 12:36:39 ----D---- C:\Windows\system32\wbem
2009-12-26 12:36:37 ----D---- C:\Windows\system32\uk-UA
2009-12-26 12:36:37 ----D---- C:\Windows\system32\pt-PT
2009-12-26 12:36:37 ----D---- C:\Windows\system32\pt-BR
2009-12-26 12:36:37 ----D---- C:\Windows\system32\pl-PL
2009-12-26 12:36:37 ----D---- C:\Windows\system32\ko-KR
2009-12-26 12:36:37 ----D---- C:\Windows\system32\it-IT
2009-12-26 12:36:37 ----D---- C:\Windows\system32\hu-HU
2009-12-26 12:36:37 ----D---- C:\Windows\system32\hr-HR
2009-12-26 12:36:37 ----D---- C:\Windows\system32\he-IL
2009-12-26 12:36:37 ----D---- C:\Windows\system32\bg-BG
2009-12-26 12:36:36 ----D---- C:\Windows\system32\zh-TW
2009-12-26 12:36:36 ----D---- C:\Windows\system32\zh-HK
2009-12-26 12:36:36 ----D---- C:\Windows\system32\zh-CN
2009-12-26 12:36:36 ----D---- C:\Windows\system32\tr-TR
2009-12-26 12:36:36 ----D---- C:\Windows\system32\th-TH
2009-12-26 12:36:36 ----D---- C:\Windows\system32\sv-SE
2009-12-26 12:36:36 ----D---- C:\Windows\system32\sr-Latn-CS
2009-12-26 12:36:36 ----D---- C:\Windows\system32\sl-SI
2009-12-26 12:36:36 ----D---- C:\Windows\system32\sk-SK
2009-12-26 12:36:36 ----D---- C:\Windows\system32\ru-RU
2009-12-26 12:36:36 ----D---- C:\Windows\system32\ro-RO
2009-12-26 12:36:36 ----D---- C:\Windows\system32\nl-NL
2009-12-26 12:36:36 ----D---- C:\Windows\system32\nb-NO
2009-12-26 12:36:36 ----D---- C:\Windows\system32\lv-LV
2009-12-26 12:36:36 ----D---- C:\Windows\system32\lt-LT
2009-12-26 12:36:36 ----D---- C:\Windows\system32\ja-JP
2009-12-26 12:36:36 ----D---- C:\Windows\system32\fr-FR
2009-12-26 12:36:36 ----D---- C:\Windows\system32\fi-FI
2009-12-26 12:36:36 ----D---- C:\Windows\system32\et-EE
2009-12-26 12:36:36 ----D---- C:\Windows\system32\es-ES
2009-12-26 12:36:36 ----D---- C:\Windows\system32\en-US
2009-12-26 12:36:36 ----D---- C:\Windows\system32\el-GR
2009-12-26 12:36:36 ----D---- C:\Windows\system32\de-DE
2009-12-26 12:36:36 ----D---- C:\Windows\system32\da-DK
2009-12-26 12:36:36 ----D---- C:\Windows\system32\ar-SA
2009-12-25 21:01:13 ----SHD---- C:\Boot
2009-12-25 20:54:41 ----D---- C:\Program Files (x86)\Windows Sidebar
2009-12-25 20:54:41 ----D---- C:\Program Files (x86)\Windows Media Player
2009-12-25 20:54:41 ----D---- C:\Program Files (x86)\Windows Calendar
2009-12-25 20:54:40 ----D---- C:\Windows\servicing
2009-12-25 20:54:40 ----D---- C:\Windows\ehome
2009-12-25 20:54:40 ----D---- C:\Program Files (x86)\Windows Photo Gallery
2009-12-25 20:54:40 ----D---- C:\Program Files (x86)\Common Files\System
2009-12-25 20:54:34 ----D---- C:\Windows\system32\XPSViewer
2009-12-25 20:54:34 ----D---- C:\Windows\system32\oobe
2009-12-25 20:54:33 ----D---- C:\Windows\system32\setup
2009-12-25 20:54:33 ----D---- C:\Windows\system32\cs
2009-12-25 20:54:33 ----D---- C:\Windows\system32\AdvancedInstallers
2009-12-25 20:54:32 ----D---- C:\Windows\system32\SLUI
2009-12-25 20:54:32 ----D---- C:\Windows\system32\manifeststore
2009-12-25 20:54:27 ----D---- C:\Windows\system32\migwiz
2009-12-25 20:54:13 ----D---- C:\Windows\IME
2009-12-25 20:53:52 ----RSD---- C:\Windows\Fonts
2009-12-25 20:53:51 ----D---- C:\Windows\AppPatch
2009-12-25 20:52:36 ----D---- C:\Windows\system32\RTCOM
2009-12-25 20:20:05 ----D---- C:\Program Files (x86)\Java

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys []
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys []
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys []
R1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver; C:\Windows\system32\DRIVERS\rtlprot.sys []
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys []
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys []
R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver; C:\Windows\system32\DRIVERS\TVALZFL.sys []
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
R3 CmBatt;Ovladač baterie Microsoft ACPI Control Method Battery; C:\Windows\system32\DRIVERS\CmBatt.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 ksthunk;Kernel Streaming Thunks; C:\Windows\system32\drivers\ksthunk.sys []
R3 PGEffect;Pangu effect driver; C:\Windows\system32\DRIVERS\pgeffect.sys []
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys []
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh64.sys []
R3 RTL8187B;Síťový adaptér Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0; C:\Windows\system32\DRIVERS\RTL8187B.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys []
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\Windows\system32\DRIVERS\tdcmdpst.sys []
R3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys []
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys []
S3 an9jdxyk;an9jdxyk; C:\Windows\system32\drivers\an9jdxyk.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys []
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys []
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys []
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys []
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys []
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys []
S3 RTSTOR;Realtek USB 2.0 Card Reader; C:\Windows\system32\drivers\RTSTOR64.SYS []
S3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys []
S3 Tosrfcom;Tosrfcom; C:\Windows\system32\drivers\Tosrfcom.sys []
S3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys []
S3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys []
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys []
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys []
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys []
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Avast Professional 4\aswUpdSv.exe [2009-11-25 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Avast Professional 4\ashServ.exe [2009-11-25 138680]
R2 ConfigFree Gadget Service;ConfigFree Gadget Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe [2009-03-06 36864]
R2 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe [2007-12-03 869672]
R2 TMachInfo;TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2009-04-01 62776]
R2 TNaviSrv;TOSHIBA Navi Support Service; C:\Program Files (x86)\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe [2009-03-30 83312]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\Windows\system32\TODDSrv.exe []
R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2009-03-06 488288]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2009-03-17 189808]
R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [2009-04-24 242176]
R2 TOSHIBA HDD SSD Alert Service;Služba Výstraha HDD SSD TOSHIBA ; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2009-03-17 84480]
R2 TPCHSrv;TPCH Service; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2009-04-15 803696]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Avast Professional 4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Avast Professional 4\ashWebSv.exe [2009-11-25 352920]
R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe [2007-12-13 447784]
S3 camsvc;TOSHIBA Web Camera Service; C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCameraSrv.exe [2009-04-16 20544]
S3 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2009-03-30 89920]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\Windows\SysWow64\perfhost.exe [2008-01-21 19968]

-----------------EOF-----------------

Re: při spuštění pc vyskakuje okno IE s reklamou

Napsal: 24 led 2010 22:39
od Rudy
Udělejte sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log.

Re: při spuštění pc vyskakuje okno IE s reklamou

Napsal: 25 led 2010 15:21
od Grimlok
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3634
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18882

25.1.2010 15:20:38
mbam-log-2010-01-25 (15-20-38).txt

Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 96057
Uplynulý čas: 4 minute(s), 10 second(s)

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 1
Infikované hodnoty registru: 0
Infikované datové položky registru: 1
Infikované adresáře: 0
Infikované soubory: 0

Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované klíče registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované datové položky registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)

Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)

Re: při spuštění pc vyskakuje okno IE s reklamou

Napsal: 25 led 2010 19:09
od Rudy
Vše smazáno. Nastala nějaká změna?