tuto combofix. urcite im napisem, ale asi az dalsi tyzden, teraz nemam uz moc casu. je uz pc cisty, mozem ho plne pouzivat?
ComboFix 10-02-28.04 - Chambo 01.03.2010 14:46:54.10.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1033.18.2020.1586 [GMT 1:00]
Running from: c:\documents and settings\Chambo\Desktop\ComboFix.exe
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.
((((((((((((((((((((((((( Files Created from 2010-02-01 to 2010-03-01 )))))))))))))))))))))))))))))))
.
2010-03-01 13:47 . 2010-03-01 13:47 -------- d-----w- C:\drivers
2010-03-01 13:46 . 2010-03-01 13:47 19700638 ----a-w- C:\drivers.zip
2010-02-26 20:38 . 2010-02-26 21:06 371776 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\baseq3\cgamex86.dll
2010-02-26 20:37 . 2010-02-26 21:06 187456 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\baseq3\uix86.dll
2010-02-26 20:37 . 2010-02-26 20:37 887856 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\pb\pbcl.dll
2010-02-26 20:37 . 2010-02-26 20:37 57344 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\pb\pbag.dll
2010-02-26 20:37 . 2010-02-26 20:37 2427968 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\baseq3\quakelive.dll
2010-02-26 20:15 . 2010-02-26 20:15 -------- d-----w- c:\documents and settings\Chambo\Application Data\id Software
2010-02-26 20:15 . 2010-02-26 20:15 -------- d-----w- c:\documents and settings\All Users\Application Data\id Software
2010-02-26 19:24 . 2010-03-01 13:37 -------- d--h--r- c:\documents and settings\Chambo\Recent
2010-02-26 19:07 . 2010-02-28 18:15 0 ----a-w- c:\windows\system32\drivers\renamed.sys
2010-02-26 18:46 . 2010-02-26 18:46 84480 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\srlproxy_cyri_4.1.67.0A.dll
2010-02-25 17:56 . 2009-06-09 14:18 1010488 ----a-w- c:\documents and settings\Chambo\Application Data\QIP\Profiles\backup\25.2\361362782\RcvdFiles\Kiwi_392696123\HamachiSetup-1.0.2.5-cz.exe
2010-02-25 17:56 . 2009-03-18 06:31 398336 ----a-w- c:\documents and settings\Chambo\Application Data\QIP\Profiles\backup\25.2\361362782\RcvdFiles\Nancy_455412487\Project1.exe
2010-02-25 17:56 . 2008-11-20 15:29 5488640 ----a-w- c:\documents and settings\Chambo\Application Data\QIP\Profiles\backup\25.2\361362782\RcvdFiles\PetrG_485072087\CoDWaW_LANFixed.exe
2010-02-23 22:18 . 2010-02-27 22:08 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2010-02-23 22:18 . 2010-02-23 22:22 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-02-21 19:24 . 2010-02-21 19:24 -------- d-----w- c:\windows\system32\wbem\Repository
2010-02-21 19:24 . 2010-02-21 19:24 -------- d-----w- c:\program files\BestGameEver
2010-02-21 11:29 . 2010-02-21 11:29 -------- d-----w- c:\program files\XN Resource Editor
2010-02-21 11:18 . 2010-02-21 11:18 -------- d-----w- c:\documents and settings\All Users\Application Data\Martau
2010-02-21 11:18 . 2010-02-21 11:18 -------- d-----w- c:\program files\Total Uninstall 5
2010-02-16 21:40 . 2010-02-16 21:40 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-02-11 03:16 . 2010-02-11 03:16 41872 ----a-w- c:\windows\system32\xfcodec.dll
2010-02-09 19:28 . 2010-02-09 19:28 2434856 ----a-w- c:\windows\system32\pbsvc_bc2.exe
2010-02-07 11:34 . 2010-02-07 11:34 23456 ----a-w- c:\windows\system32\drivers\drvagent32.sys
2010-02-07 11:34 . 2010-02-07 11:34 -------- d-----w- c:\documents and settings\Chambo\Local Settings\Application Data\eSupport.com
2010-02-07 11:31 . 2010-02-07 11:31 -------- d-----w- c:\program files\Lavalys
2010-02-06 11:02 . 2010-02-06 11:02 138240 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_d.dll
2010-02-06 11:02 . 2010-02-06 11:02 138240 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_c.dll
2010-02-06 11:02 . 2010-02-06 11:02 138240 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_b.dll
2010-02-06 11:02 . 2010-02-06 11:02 138240 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_a.dll
2010-02-01 08:41 . 2010-02-01 08:41 -------- d-----w- c:\program files\Common Files\PCSuite
2010-02-01 08:40 . 2010-02-01 08:37 34686912 ----a-w- c:\documents and settings\All Users\Application Data\Installations\{19DC9559-9C20-4A46-A67D-7ECBA52A2788}\Nokia_PC_Suite_slk_web.exe
2010-02-01 08:40 . 2010-02-01 08:40 95232 ----a-w- c:\documents and settings\All Users\Application Data\Installations\{19DC9559-9C20-4A46-A67D-7ECBA52A2788}\Installer\CommonCustomActions\pcswpcsi.exe
2010-02-01 08:40 . 2010-02-01 08:40 8192 ----a-w- c:\documents and settings\All Users\Application Data\Installations\{19DC9559-9C20-4A46-A67D-7ECBA52A2788}\Installer\CommonCustomActions\UninstCCD.exe
2010-02-01 08:40 . 2010-02-01 08:40 61440 ----a-w- c:\documents and settings\All Users\Application Data\Installations\{19DC9559-9C20-4A46-A67D-7ECBA52A2788}\Installer\CommonCustomActions\UninstPCSFEMsi.exe
2010-02-01 08:40 . 2010-02-01 08:40 10240 ----a-w- c:\documents and settings\All Users\Application Data\Installations\{19DC9559-9C20-4A46-A67D-7ECBA52A2788}\Installer\CommonCustomActions\UninstPCS.exe
2010-01-31 22:03 . 2010-02-28 10:18 -------- d-----w- c:\documents and settings\Chambo\Application Data\vlc
2010-01-31 22:02 . 2010-01-31 22:02 -------- d-----w- c:\program files\VideoLAN
2010-01-31 21:43 . 2010-01-31 21:43 0 ----a-w- c:\windows\system32\drivers\nAsmedia.bin
2010-01-31 21:43 . 2010-01-31 21:43 0 ----a-w- c:\windows\system32\drivers\nAdvanced.bin
2010-01-31 21:43 . 2010-01-31 21:43 0 ----a-w- c:\windows\system32\drivers\nVivid.bin
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-01 13:44 . 2008-01-04 09:06 23592960 ----a-w- c:\documents and settings\Chambo\NTUSER.DAT
2010-02-28 16:33 . 2009-11-08 14:40 -------- d-----w- c:\program files\Steam
2010-02-28 16:00 . 2008-01-04 20:58 137464 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-02-28 16:00 . 2008-01-04 20:58 214520 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-02-28 15:18 . 2008-02-20 18:14 -------- d-----w- c:\program files\SwiftKit
2010-02-28 15:18 . 2008-07-01 12:17 69 ----a-w- c:\documents and settings\Chambo\jagex_runescape_preferences.dat
2010-02-28 15:18 . 2009-09-14 14:46 69 ----a-w- c:\documents and settings\Chambo\jagex_runescape_preferences2.dat
2010-02-28 10:18 . 2010-01-31 22:03 -------- d-----w- c:\documents and settings\Chambo\Application Data\vlc
2010-02-27 21:06 . 2008-01-04 20:29 -------- d-----w- c:\documents and settings\Chambo\Application Data\Xfire
2010-02-27 14:32 . 2009-03-09 14:16 -------- d-----w- c:\program files\Cheat Engine
2010-02-26 21:29 . 2010-02-26 21:29 8 ----a-w- c:\documents and settings\LocalService\Application Data\rbuwzv.dat
2010-02-26 21:06 . 2010-02-26 20:38 371776 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\baseq3\cgamex86.dll
2010-02-26 21:06 . 2010-02-26 20:37 187456 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\baseq3\uix86.dll
2010-02-26 20:37 . 2010-02-26 20:37 887856 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\pb\pbcl.dll
2010-02-26 20:37 . 2010-02-26 20:37 57344 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\pb\pbag.dll
2010-02-26 20:37 . 2010-02-26 20:37 2427968 ----a-w- c:\documents and settings\Chambo\Application Data\id Software\quakelive\home\baseq3\quakelive.dll
2010-02-26 20:15 . 2010-02-26 20:15 -------- d-----w- c:\documents and settings\Chambo\Application Data\id Software
2010-02-26 20:15 . 2008-01-26 19:13 2373712 ----a-w- c:\windows\system32\pbsvc.exe
2010-02-26 19:06 . 2009-05-24 13:32 -------- d-----w- c:\program files\MediaCoder iPod Edition
2010-02-26 19:06 . 2010-02-26 19:06 8 ----a-w- c:\documents and settings\NetworkService\Application Data\rbuwzv.dat
2010-02-26 18:46 . 2008-01-16 15:59 -------- d-----w- c:\program files\SystemRequirementsLab
2010-02-26 18:46 . 2010-02-26 18:46 84480 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\srlproxy_cyri_4.1.67.0A.dll
2010-02-26 18:46 . 2008-01-16 15:57 -------- d-----w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab
2010-02-25 17:57 . 2008-09-23 18:36 -------- d-----w- c:\program files\QIP Infium
2010-02-24 21:38 . 2008-01-04 20:29 -------- d-----w- c:\program files\Xfire
2010-02-23 22:24 . 2008-06-08 21:43 -------- d-----w- c:\documents and settings\All Users\Application Data\Lavasoft
2010-02-23 22:24 . 2008-01-04 11:24 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-02-23 22:24 . 2008-01-04 11:24 -------- d-----w- c:\program files\Lavasoft
2010-02-23 22:02 . 2008-11-03 17:51 -------- d-----w- c:\program files\Recuva
2010-02-23 19:00 . 2008-01-04 09:22 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-17 16:12 . 2009-06-12 04:43 664 ----a-w- c:\documents and settings\Chambo\Local Settings\Application Data\d3d9caps.dat
2010-02-17 16:12 . 2008-11-11 20:17 1100 ----a-w- c:\windows\system32\d3d8caps.dat
2010-02-16 21:40 . 2008-01-28 14:59 -------- d-----w- c:\program files\DivX
2010-02-16 16:38 . 2008-07-12 11:25 -------- d-----w- c:\documents and settings\Chambo\Application Data\Winamp
2010-02-11 15:35 . 2008-08-23 12:11 -------- d-----w- c:\program files\Google
2010-02-09 19:32 . 2008-04-06 20:01 -------- d-----w- c:\program files\Electronic Arts
2010-02-09 19:29 . 2008-01-06 16:55 138056 ----a-w- c:\documents and settings\Chambo\Application Data\PnkBstrK.sys
2010-02-09 19:29 . 2008-01-06 16:55 138056 ----a-w- c:\documents and settings\Chambo\Application Data\PnkBstrK.sys
2010-02-09 19:28 . 2008-01-04 20:57 75064 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-02-06 11:02 . 2010-02-06 11:02 138240 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_d.dll
2010-02-06 11:02 . 2010-02-06 11:02 138240 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_c.dll
2010-02-06 11:02 . 2010-02-06 11:02 138240 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_b.dll
2010-02-06 11:02 . 2010-02-06 11:02 138240 ----a-w- c:\documents and settings\Chambo\Application Data\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_a.dll
2010-02-03 16:33 . 2008-06-07 20:22 -------- d-----w- c:\program files\Nokia
2010-02-01 08:41 . 2008-06-07 20:23 -------- d-----w- c:\program files\Common Files\Nokia
2010-02-01 08:40 . 2009-04-16 18:58 -------- d-----w- c:\documents and settings\All Users\Application Data\Installations
2010-02-01 08:37 . 2010-01-26 19:26 -------- d-----w- c:\documents and settings\All Users\Application Data\OviInstallerCache
2010-02-01 08:35 . 2008-06-07 20:23 -------- d-----w- c:\documents and settings\Chambo\Application Data\Nokia
2010-01-31 21:57 . 2009-06-21 19:48 -------- d-----w- c:\program files\TeamViewer
2010-01-31 21:43 . 2010-01-29 23:14 0 ----a-w- c:\windows\system32\drivers\nStandard.bin
2010-01-29 23:43 . 2008-10-03 19:31 -------- d-----w- c:\program files\AGEIA Technologies
2010-01-29 23:43 . 2010-01-29 23:43 -------- d-----w- c:\documents and settings\All Users\Application Data\NVIDIA Corporation
2010-01-29 23:43 . 2010-01-29 23:43 -------- d-----w- c:\program files\NVIDIA Corporation
2010-01-29 14:40 . 2008-12-30 22:42 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-29 14:40 . 2009-05-29 22:14 5115824 ----a-w- c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2010-01-29 14:19 . 2009-02-02 21:25 -------- d-----w- c:\program files\Common Files\DVDVideoSoft
2010-01-28 22:17 . 2010-01-28 22:17 -------- d-----w- c:\program files\Common Files\Apple
2010-01-28 21:33 . 2008-01-04 09:06 -------- d-s---w- c:\documents and settings\Chambo\Application Data\Microsoft
2010-01-28 20:54 . 2008-01-04 09:56 -------- d-----w- c:\program files\ASUS
2010-01-26 23:18 . 2008-01-24 18:24 1617424 ----a-w- c:\documents and settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2010-01-26 21:32 . 2010-01-26 21:32 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
2010-01-26 19:28 . 2010-01-26 19:28 -------- d-----w- c:\program files\PC Connectivity Solution
2010-01-26 19:12 . 2008-01-04 20:11 65024 ----a-w- c:\documents and settings\Chambo\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-01-18 16:31 . 2010-01-18 16:31 0 ---ha-w- c:\windows\system32\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
2010-01-18 16:31 . 2010-01-18 16:31 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_user_01_07_00.Wdf
2010-01-15 19:37 . 2009-12-27 15:37 -------- d-----w- c:\program files\Warcraft III
2010-01-14 14:55 . 2009-02-02 18:56 -------- d-----w- c:\program files\ICQ6.5
2010-01-13 21:02 . 2009-12-27 15:39 99246 ----a-w- c:\windows\War3Unin.dat
2010-01-11 21:17 . 2010-01-11 21:17 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-01-11 21:17 . 2010-01-11 21:17 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-01-11 21:17 . 2010-01-11 21:17 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-01-11 21:17 . 2010-01-11 21:17 13666408 ----a-w- c:\windows\system32\nvcpl.dll
2010-01-11 21:17 . 2010-01-11 21:17 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-01-11 21:17 . 2010-01-11 21:17 81920 ----a-w- c:\windows\system32\nvwddi.dll
2010-01-07 15:07 . 2008-12-31 09:52 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-07 15:07 . 2008-12-31 09:52 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-02 13:25 . 2010-01-02 12:51 -------- d-----w- c:\program files\PFConfig
2009-12-27 17:47 . 2008-11-20 15:41 17480 ----a-w- c:\windows\system32\drivers\hamachi.sys
2009-12-27 15:46 . 2009-12-27 15:39 2829 ----a-w- c:\windows\War3Unin.pif
2009-12-27 15:46 . 2009-12-27 15:39 139264 ----a-w- c:\windows\War3Unin.exe
2009-12-26 10:51 . 2010-03-01 13:48 124976 ----a-w- c:\windows\system32\drivers\SYMEVENT.SYS
2009-12-22 14:56 . 2010-03-01 13:48 30528 ----a-w- c:\windows\system32\drivers\bc_tfish.sys
2009-12-22 14:56 . 2010-03-01 13:48 29632 ----a-w- c:\windows\system32\drivers\bc_serp.sys
2009-12-22 14:56 . 2010-03-01 13:48 44480 ----a-w- c:\windows\system32\drivers\bc_rijn.sys
2009-12-22 14:56 . 2010-03-01 13:48 24384 ----a-w- c:\windows\system32\drivers\bc_rc6.sys
2009-12-22 14:56 . 2010-03-01 13:48 19392 ----a-w- c:\windows\system32\drivers\bc_idea.sys
2009-12-22 14:56 . 2010-03-01 13:48 19264 ----a-w- c:\windows\system32\drivers\bc_gost.sys
2009-12-22 14:55 . 2010-03-01 13:48 29120 ----a-w- c:\windows\system32\drivers\bc_des.sys
2009-12-22 14:55 . 2010-03-01 13:48 32064 ----a-w- c:\windows\system32\drivers\bc_cast.sys
2009-12-22 14:55 . 2010-03-01 13:48 23744 ----a-w- c:\windows\system32\drivers\bc_bfish.sys
2009-12-22 14:55 . 2010-03-01 13:48 23744 ----a-w- c:\windows\system32\drivers\bc_bf448.sys
2009-12-22 14:55 . 2010-03-01 13:48 23744 ----a-w- c:\windows\system32\drivers\bc_bf128.sys
2009-12-22 14:55 . 2010-03-01 13:48 29376 ----a-w- c:\windows\system32\drivers\bc_3des.sys
2009-12-22 11:56 . 2010-03-01 13:48 191040 ----a-w- c:\windows\system32\drivers\bcfnt.sys
2009-12-19 16:05 . 2009-12-19 16:05 3351812 ----a-w- c:\documents and settings\All Users\Application Data\Installations\{4C911A61-39EA-41CC-AB3C-FE3BFFDB5F78}\Installer\CommonCustomActions\msxml6Exec.exe
2009-12-19 16:05 . 2009-12-19 16:05 36864 ----a-w- c:\documents and settings\All Users\Application Data\Installations\{4C911A61-39EA-41CC-AB3C-FE3BFFDB5F78}\Installer\CommonCustomActions\Sleep.exe
2009-12-19 16:05 . 2009-12-19 16:05 3203453 ----a-w- c:\documents and settings\All Users\Application Data\Installations\{4C911A61-39EA-41CC-AB3C-FE3BFFDB5F78}\Installer\CommonCustomActions\vcredistExec.exe
2009-12-19 16:05 . 2009-12-19 16:07 24567912 ----a-w- c:\documents and settings\All Users\Application Data\Installations\{4C911A61-39EA-41CC-AB3C-FE3BFFDB5F78}\NokiaSoftwareUpdaterSetup_cs.exe
2009-12-17 23:25 . 2010-03-01 13:48 26024 ----a-w- c:\windows\system32\drivers\ElbyCDIO.sys
2009-12-15 07:55 . 2010-03-01 13:48 39360 ----a-w- c:\windows\system32\drivers\fsh.sys
.
------- Sigcheck -------
[-] 2004-08-03 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\system32\drivers\atapi.sys
[-] 2004-08-03 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\system32\ReinstallBackups\0008\DriverFiles\i386\atapi.sys
[-] 2004-08-03 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\system32\ReinstallBackups\0009\DriverFiles\i386\atapi.sys
[-] 2004-08-03 . 02000ABF34AF4C218C35D257024807D6 . 14336 . . [5.1.2600.2180] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2001-08-23 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
[-] 2004-08-03 . EBDEE8A2EE5393890A1ACEE971C4C246 . 24576 . . [5.1.2600.2180] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2004-08-03 . 558635D3AF1C7546D26067D5D9B6959E . 182912 . . [5.1.2600.2180] . . c:\windows\system32\drivers\ndis.sys
[-] 2004-08-03 . B78BE402C3F63DD55521F73876951CDD . 574592 . . [5.1.2600.2180] . . c:\windows\system32\drivers\ntfs.sys
[-] 2001-08-23 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
[-] 2004-08-03 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\system32\drivers\tcpip.sys
[-] 2004-08-03 . E3CFCCDDA4EDD1D0DC9168B2E18F27B8 . 77312 . . [5.1.2600.2180] . . c:\windows\system32\browser.dll
[-] 2004-08-03 . 84885F9B82F4D55C6146EBF6065D75D2 . 13312 . . [5.1.2600.2180] . . c:\windows\system32\lsass.exe
[-] 2004-08-03 . DAB9E6C7105D2EF49876FE92C524F565 . 198144 . . [5.1.2600.2180] . . c:\windows\system32\netman.dll
[-] 2004-08-03 . 2C69EC7E5A311334D10DD95F338FCCEA . 382464 . . [6.6.2600.2180] . . c:\windows\system32\qmgr.dll
[-] 2004-08-03 . 5C83A4408604F737717AB96371201680 . 395776 . . [5.1.2600.2180] . . c:\windows\system32\rpcss.dll
[-] 2004-08-03 . C6CE6EEC82F187615D1002BB3BB50ED4 . 108032 . . [5.1.2600.2180] . . c:\windows\system32\services.exe
[-] 2005-06-11 . AD3D9D191AEA7B5445FE1D82FFBB4788 . 57856 . . [5.1.2600.2696] . . c:\windows\SoftwareDistribution\Download\0fd33c77398fa2b50df56456525ef5c3\sp2qfe\spoolsv.exe
[-] 2005-06-10 . DA81EC57ACD4CDC3D4C51CF3D409AF9F . 57856 . . [5.1.2600.2696] . . c:\windows\SoftwareDistribution\Download\0fd33c77398fa2b50df56456525ef5c3\sp2gdr\spoolsv.exe
[-] 2004-08-03 . 7435B108B935E42EA92CA94F59C8E717 . 57856 . . [5.1.2600.2180] . . c:\windows\system32\spoolsv.exe
[-] 2004-08-03 . 01C3346C241652F43AED8E2149881BFE . 502272 . . [5.1.2600.2180] . . c:\windows\system32\winlogon.exe
[-] 2004-08-03 . A77DFB85FAEE49D66C74DA6024EBC69B . 611328 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2004-08-03 . 10654F9DDCEA9C46CFB77554231BE73B . 60416 . . [5.1.2600.2180] . . c:\windows\system32\cryptsvc.dll
[-] 2004-08-03 23:56 . ACD36A2DD7D1E9D8A060AA651DC07E63 . 243200 . . [2001.12.4414.258] . . c:\windows\system32\es.dll
[-] 2004-08-03 . 87CA7CE6469577F059297B9D6556D66D . 110080 . . [5.1.2600.2180] . . c:\windows\system32\imm32.dll
[-] 2004-08-03 . 888190E31455FAD793312F8D087146EB . 983552 . . [5.1.2600.2180] . . c:\windows\system32\kernel32.dll
[-] 2004-08-03 . C2BBD044C741EA4292016C36F718D2E4 . 18944 . . [5.1.2600.2180] . . c:\windows\system32\linkinfo.dll
[-] 2004-08-03 . 74D66B3DE265E8789153414E75175F26 . 22016 . . [5.1.2600.2180] . . c:\windows\system32\lpk.dll
[-] 2004-08-03 . B0FEFA816D61EC66AA765DDF534EAB5E . 343040 . . [7.0.2600.2180] . . c:\windows\system32\msvcrt.dll
[-] 2004-08-03 . 4E74AF063C3271FBEA20DD940CFD1184 . 245248 . . [5.1.2600.2180] . . c:\windows\system32\mswsock.dll
[-] 2004-08-03 . 96353FCECBA774BB8DA74A1C6507015A . 407040 . . [5.1.2600.2180] . . c:\windows\system32\netlogon.dll
[-] 2005-03-02 . 28187802B7C368C0D3AEF7D4C382AABB . 2179456 . . [5.1.2600.2622] . . c:\windows\SoftwareDistribution\Download\dc3b8fb011c281dea1cb7a45f880da78\sp2qfe\ntoskrnl.exe
[-] 2005-03-02 . 4D4CF2C14550A4B7718E94A6E581856E . 2179328 . . [5.1.2600.2622] . . c:\windows\SoftwareDistribution\Download\dc3b8fb011c281dea1cb7a45f880da78\sp2gdr\ntoskrnl.exe
[-] 2004-08-03 . 626309040459C3915997EF98EC1C8D40 . 2148352 . . [5.1.2600.2180] . . c:\windows\system32\ntoskrnl.exe
[-] 2004-08-03 . 1B5F6923ABB450692E9FE0672C897AED . 17408 . . [6.00.2900.2180] . . c:\windows\system32\powrprof.dll
[-] 2004-08-03 . 0F78E27F563F2AAF74B91A49E2ABF19A . 180224 . . [5.1.2600.2180] . . c:\windows\system32\scecli.dll
[-] 2004-08-03 . E8A12A12EA9088B4327D49EDCA3ADD3E . 5120 . . [5.1.2600.2180] . . c:\windows\system32\sfc.dll
[-] 2004-08-03 . 8F078AE4ED187AAABC0A305146DE6716 . 14336 . . [5.1.2600.2180] . . c:\windows\system32\svchost.exe
[-] 2004-08-03 . EB4A4187D74A8EFDCBEA3EA2CB1BDFBD . 246272 . . [5.1.2600.2180] . . c:\windows\system32\tapisrv.dll
[-] 2005-03-02 . 1800F293BCCC8EDE8A70E12B88D80036 . 577024 . . [5.1.2600.2622] . . c:\windows\SoftwareDistribution\Download\dc3b8fb011c281dea1cb7a45f880da78\sp2qfe\user32.dll
[-] 2005-03-02 . DE2DB164BBB35DB061AF0997E4499054 . 577024 . . [5.1.2600.2622] . . c:\windows\SoftwareDistribution\Download\dc3b8fb011c281dea1cb7a45f880da78\sp2gdr\user32.dll
[-] 2004-08-03 . C72661F8552ACE7C5C85E16A3CF505C4 . 577024 . . [5.1.2600.2180] . . c:\windows\system32\user32.dll
[-] 2004-08-03 . 39B1FFB03C2296323832ACBAE50D2AFF . 24576 . . [5.1.2600.2180] . . c:\windows\system32\userinit.exe
[-] 2004-08-03 . 2ED0B7F12A60F90092081C50FA0EC2B2 . 82944 . . [5.1.2600.2180] . . c:\windows\system32\ws2_32.dll
[-] 2004-08-03 . A0732187050030AE399B241436565E64 . 1032192 . . [6.00.2900.2180] . . c:\windows\explorer.exe
[-] 2004-08-03 . A0732187050030AE399B241436565E64 . 1032192 . . [6.00.2900.2180] . . c:\windows\system32\dllcache\explorer.exe
[-] 2004-08-03 . 92BDF74F12D6CBEC43C94D4B7F804838 . 170496 . . [5.1.2600.2180] . . c:\windows\system32\srsvc.dll
[-] 2004-08-03 . 49911DD39E023BB6C45E4E436CFBD297 . 13824 . . [5.1.2600.2180] . . c:\windows\system32\wscntfy.exe
[-] 2004-08-03 . EEF46DAB68229A14DA3D8E73C99E2959 . 129536 . . [5.1.2600.2180] . . c:\windows\system32\xmlprov.dll
[-] 2004-08-03 . 82B24CB70E5944E6E34662205A2A5B78 . 55808 . . [5.1.2600.2180] . . c:\windows\system32\eventlog.dll
[-] 2004-08-03 . 30A609E00BD1D4FFC49D6B5A432BE7F2 . 1580544 . . [5.1.2600.2180] . . c:\windows\system32\sfcfiles.dll
[-] 2004-08-03 . 24232996A38C0B0CF151C2140AE29FC8 . 15360 . . [5.1.2600.2180] . . c:\windows\system32\ctfmon.exe
[-] 2004-08-03 . E7518DC542D3EBDCB80EDD98462C7821 . 134656 . . [6.00.2900.2180] . . c:\windows\system32\shsvcs.dll
[-] 2004-08-03 . 3151427DB7D87107D1C5BE58FAC53960 . 59904 . . [5.1.2600.2180] . . c:\windows\system32\regsvc.dll
[-] 2004-08-03 . 92360854316611F6CC471612213C3D92 . 190976 . . [5.1.2600.2180] . . c:\windows\system32\schedsvc.dll
[-] 2004-08-03 . 4B8D61792F7175BED48859CC18CE4E38 . 71680 . . [5.1.2600.2180] . . c:\windows\system32\ssdpsrv.dll
[-] 2004-08-03 . B60C877D16D9C880B952FDA04ADF16E6 . 295424 . . [5.1.2600.2180] . . c:\windows\system32\termsrv.dll
[-] 2004-08-03 . 9C3C12975C97119412802B181FBEEFFE . 167936 . . [5.1.2600.2180] . . c:\windows\system32\appmgmts.dll
[-] 2001-08-23 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
[-] 2004-08-03 21:39 . 841F385C6CFAF66B58FBD898722BB4F0 . 142464 . . [5.1.2601.2078] . . c:\windows\system32\drivers\aec.sys
[-] 2008-04-14 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\AGP440.SYS
[-] 2004-08-03 . 4448006B6BC60E6C027932CFC38D6855 . 29056 . . [5.1.2600.2180] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2009-11-10 . 14522C1499B146E016359EF216BDDB78 . 35328 . . [5.1.2600.2180] . . c:\windows\system32\iprip.dll
[-] 2001-08-23 15:00 . DDF8D47ACF8FC3FE5F7F2B95C4D4D136 . 924432 . . [4.1.6140] . . c:\windows\system32\mfc40u.dll
[-] 2004-08-03 . 95FD808E4AC22ABA025A7B3EAC0375D2 . 33792 . . [5.1.2600.2180] . . c:\windows\system32\msgsvc.dll
[-] 2006-10-18 20:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll
[-] 2004-08-11 00:45 . A477391B7A8B0A0DAABADB17CF533A4B . 25088 . . [10.0.3790.3646] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll
[-] 2004-08-11 00:45 . A477391B7A8B0A0DAABADB17CF533A4B . 25088 . . [10.0.3790.3646] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll
[-] 2004-08-03 23:56 . C086483E3DBA8C1C0A687EC8D5B3D4C1 . 52224 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll
[-] 2005-03-02 . D8ABA3EAB509627E707A3B14F00FBB6B . 2056832 . . [5.1.2600.2622] . . c:\windows\SoftwareDistribution\Download\dc3b8fb011c281dea1cb7a45f880da78\sp2qfe\ntkrnlpa.exe
[-] 2005-03-02 . 81013F36B21C7F72CF784CC6731E0002 . 2056832 . . [5.1.2600.2622] . . c:\windows\SoftwareDistribution\Download\dc3b8fb011c281dea1cb7a45f880da78\sp2gdr\ntkrnlpa.exe
[-] 2004-08-04 . FB142B7007CA2EEA76966C6C5CC12150 . 2015232 . . [5.1.2600.2180] . . c:\windows\system32\ntkrnlpa.exe
[-] 2004-08-03 23:56 . B62F29C00AC55A761B2E45877D85EA0F . 435200 . . [5.1.2400.2180] . . c:\windows\system32\ntmssvc.dll
[-] 2004-08-03 . 0546477BDE979E33294FE97F6B3DE84A . 185344 . . [5.1.2600.2180] . . c:\windows\system32\upnphost.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-01 153136]
"WhatPulse"="c:\program files\WhatPulse\WhatPulse.exe" [2009-03-12 2763264]
"VisualTaskTips"="c:\program files\VisualTaskTips\VisualTaskTips.exe" [2007-09-05 36352]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-08-08 490952]
"Infium"="c:\program files\QIP Infium\infium.exe" [2010-02-18 5711312]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ipTray.exe"="c:\program files\Intel\IDU\iptray.exe" [2006-12-28 2242328]
"Vistadrv"="c:\program files\VistaDrives\vsdrv.exe" [2006-07-30 121089]
"RTHDCPL"="RTHDCPL.EXE" [2008-12-03 17676288]
"Copperhead"="c:\program files\Razer\Copperhead\razerhid.exe" [2005-11-25 155648]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-05-03 185896]
"Tarantula"="c:\program files\Razer\Tarantula\razerhid.exe" [2007-05-07 159744]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-09-11 2054360]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-01-11 110696]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-01-11 13666408]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-03 15360]
c:\documents and settings\Chambo\Start Menu\Programs\Startup\
SaveSnap.lnk - c:\program files\SaveSnap\SaveSnap.exe [2008-1-5 1264128]
VistaStart.lnk - c:\windows\Resources\Themes\Vista_Anthracite\VistaStart\VistaStart1.3.exe [2006-3-20 510464]
Xfire.lnk - c:\program files\Xfire\xfire.exe [2010-2-11 3207056]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
AdobeUpdate.jar [2009-12-19 57391]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="c:\windows\system32\logonuiX.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0OODBS
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2008-01-11 20:16 39792 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSGamerOSD]
2007-07-12 09:03 380928 ----a-w- c:\program files\ASUS\GamerOSD\GamerOSD.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2008-08-08 12:11 490952 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Infium]
2010-02-18 15:46 5711312 ----a-w- c:\program files\QIP Infium\infium.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2007-03-01 14:57 153136 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OODefragTray]
2007-05-11 01:08 2512392 ----a-w- c:\windows\system32\oodtray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2007-06-29 05:24 286720 ----a-w- c:\program files\QuickTime\QTTask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2009-10-11 03:17 149280 ----a-w- c:\program files\Java\jre6\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"OODefragTray"=c:\windows\system32\oodtray.exe
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe"
"LanguageShortcut"="c:\program files\CyberLink\PowerDVD\Language\Language.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Xfire\\xfire.exe"=
"c:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe"=
"c:\\Program Files\\ICQ6\\ICQ.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Opera\\Opera.exe"=
"c:\\totalcmd\\TOTALCMD.EXE"=
"c:\\Program Files\\Counter-Strike Source\\hl2.exe"=
"c:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\QIP Infium\\infium.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\WINDOWS\\system32\\mmc.exe"=
"c:\\Program Files\\HLSW\\hlsw.exe"=
"c:\\Program Files\\BZFlag2.0.10\\bzflag.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"c:\\Program Files\\Rockstar Games\\Grand Theft Auto IV\\LaunchGTAIV.exe"=
"c:\\Program Files\\Rockstar Games\\Grand Theft Auto IV\\GTAIV.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\Counter-Strike 1.6 V35\\hl.exe"=
"c:\\Program Files\\Counter-Strike 1.6 V35\\hlds.exe"=
"c:\\Program Files\\SopCast\\adv\\SopAdver.exe"=
"c:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe"=
"c:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Electronic Arts\\Battlefield Bad Company 2 - BETA\\BFBC2BetaUpdater.exe"=
"c:\\Program Files\\Electronic Arts\\Battlefield Bad Company 2 - BETA\\BFBC2Game.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4sp.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:*:Disabled:@xpsp2res.dll,-22009
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [11.9.2009 7:23 108792]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [11.9.2009 7:24 735960]
R3 TarFltr;Razer Tarantula USB Keyboard;c:\windows\system32\drivers\UsbFltr.sys [18.8.2008 15:08 45440]
R3 UsbFltr;Razer Copperhead Driver;c:\windows\system32\drivers\copperhd.sys [24.12.2008 21:51 11596]
S0 nkdcrfxx;nkdcrfxx; [x]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [6.1.2008 0:18 717296]
S2 gupdate1c9944afc8f24a0;Google Update Service (gupdate1c9944afc8f24a0);c:\program files\Google\Update\GoogleUpdate.exe [21.2.2009 18:36 133104]
S3 DrvAgent32;DrvAgent32;c:\windows\system32\drivers\drvagent32.sys [7.2.2010 12:34 23456]
S3 HPUATA;HP CD Writer Plus Controller Driver;c:\windows\system32\drivers\hpuata.sys [24.9.2001 4:36 75776]
S3 libusb0;LibUsb-Win32 - Kernel Driver 11/20/2005, 20051120;c:\windows\system32\drivers\libusb0.sys [4.11.2008 16:34 29184]
.
Contents of the 'Scheduled Tasks' folder
2010-03-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-21 17:35]
2010-03-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-21 17:35]
2010-03-01 c:\windows\Tasks\User_Feed_Synchronization-{C55A3084-FECD-4DFA-8105-B61859F6B9F4}.job
- c:\windows\system32\msfeedssync.exe [2007-08-13 02:31]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://
www.sme.sk/
uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
uInternet Settings,ProxyOverride = *.local
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: {FCADF227-CCFC-4B13-A9B5-148D5343D926} = 195.34.133.21,195.34.133.22
DPF: {8A96EAE5-D262-4226-A517-304C88B53F1F} - hxxp://212.55.255.202/access01.cab
FF - ProfilePath - c:\documents and settings\Chambo\Application Data\Mozilla\Firefox\Profiles\7rzxpate.default\
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: browser.startup.homepage - hxxp://hattrick.org/
FF - prefs.js: keyword.URL - hxxp://
www.google.com/search?ie=UTF-8&oe=UTF-8 ... &gfns=1&q=
FF - plugin: c:\documents and settings\All Users\Application Data\id Software\QuakeLive\npquakezero.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: c:\program files\Opera\program\plugins\npdivx32.dll
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "
http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
.
------- File Associations -------
.
txtfile="c:\program files\PSPad editor\PSPad.exe" "%1"
.
- - - - ORPHANS REMOVED - - - -
HKLM-Run-nwiz - nwiz.exe
MSConfigStartUp-NokiaOviSuite2 - c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-03-01 14:53
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-117609710-602609370-839522115-1003\Software\SecuROM\License information*]
"datasecu"=hex:c6,b6,a7,50,85,4e,dc,47,90,f7,d1,1b,61,96,46,48,da,3f,d6,98,4e,
d3,4d,d2,a5,90,50,92,53,1a,36,0f,cb,28,5b,37,95,71,30,ae,8d,54,50,05,ec,25,\
"rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
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
.
Completion time: 2010-03-01 14:55:13
ComboFix-quarantined-files.txt 2010-03-01 13:55
ComboFix2.txt 2010-01-26 23:52
Pre-Run: 18 677 755 904 bytes free
Post-Run: 23 adresárov, 18 672 660 480 voľných bajtov
Current=1 Default=1 Failed=0 LastKnownGood=4 Sets=1,2,3,4
- - End Of File - - CFB996DC128B1F940632A54D3DB80C76