Microsoft® Windows Vista™ Ultimate 6.0.6001.1.1250.420.1029.18.2814.2054 [GMT 2:00]
Spuštěný z: H:\ComboFix.exe
AV: ESET NOD32 antivirus system 2.70 *On-access scanning enabled* (Outdated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
* Rezidentní štít AV je zapnutý
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\users\Ladislav\AppData\Local\temp\_isCDEC.exe
c:\users\Ladislav\AppData\Local\temp\{B39902D5-38A2-4630-B031-007912835F59}\_Setup.dll
c:\users\Ladislav\AppData\Local\temp\{B39902D5-38A2-4630-B031-007912835F59}\ISSetup.dll
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-02-28 do 2010-03-30 )))))))))))))))))))))))))))))))
.
2010-03-25 13:59 . 2010-03-25 14:00 -------- d-----w- c:\users\notebook\AppData\Local\VirtualStore
2010-03-25 13:53 . 2010-03-25 13:53 -------- d-----w- c:\program files\CCleaner
2010-03-25 12:51 . 2010-03-25 12:51 52224 ----a-w- c:\users\notebook\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2010-03-25 12:51 . 2010-03-25 12:51 117760 ----a-w- c:\users\notebook\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2010-03-25 12:50 . 2010-03-25 12:50 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2010-03-25 12:50 . 2010-03-25 12:50 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-03-25 12:50 . 2010-03-25 12:50 -------- d-----w- c:\users\notebook\AppData\Roaming\SUPERAntiSpyware.com
2010-03-25 12:50 . 2010-03-25 12:50 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-03-25 12:42 . 2010-03-25 12:42 -------- d-sh--we c:\users\notebook\Soubory cookie
2010-03-20 19:27 . 2010-03-20 19:27 -------- d-----w- c:\program files\XviD
2010-03-19 18:03 . 2010-03-19 18:03 -------- d-----w- C:\TEXCACHE
2010-03-19 17:51 . 2010-03-24 17:54 -------- d-----w- c:\program files\Cenega
2010-03-19 17:46 . 2010-03-19 17:46 -------- d-----w- c:\users\Ladislav\TYPHOON
2010-03-18 19:59 . 2007-06-20 19:46 266088 ----a-w- c:\windows\system32\xactengine2_8.dll
2010-03-18 19:59 . 2007-06-20 19:45 18280 ----a-w- c:\windows\system32\x3daudio1_2.dll
2010-03-18 19:59 . 2007-05-16 15:45 443752 ----a-w- c:\windows\system32\d3dx10_34.dll
2010-03-18 19:59 . 2007-05-16 15:45 1124720 ----a-w- c:\windows\system32\D3DCompiler_34.dll
2010-03-18 19:59 . 2007-05-16 15:45 3497832 ----a-w- c:\windows\system32\d3dx9_34.dll
2010-03-18 19:59 . 2007-04-04 17:55 261480 ----a-w- c:\windows\system32\xactengine2_7.dll
2010-03-18 19:59 . 2007-04-04 17:53 81768 ----a-w- c:\windows\system32\xinput1_3.dll
2010-03-18 19:59 . 2007-03-15 15:57 443752 ----a-w- c:\windows\system32\d3dx10_33.dll
2010-03-18 19:59 . 2007-03-12 15:42 3495784 ----a-w- c:\windows\system32\d3dx9_33.dll
2010-03-18 19:59 . 2007-03-12 15:42 1123696 ----a-w- c:\windows\system32\D3DCompiler_33.dll
2010-03-18 19:59 . 2007-03-05 11:42 15128 ----a-w- c:\windows\system32\x3daudio1_1.dll
2010-03-18 19:33 . 2010-03-20 19:15 -------- d-----w- c:\program files\FlatOut2
2010-03-11 20:24 . 2010-03-11 20:24 -------- d-----w- c:\program files\Common Files\EasyInfo
2010-03-09 19:52 . 2007-01-24 14:27 255848 ----a-w- c:\windows\system32\xactengine2_6.dll
2010-03-09 19:52 . 2006-12-08 11:02 251672 ----a-w- c:\windows\system32\xactengine2_5.dll
2010-03-09 19:52 . 2006-11-29 12:06 440080 ----a-w- c:\windows\system32\d3dx10.dll
2010-03-09 19:52 . 2006-11-29 12:06 3426072 ----a-w- c:\windows\system32\d3dx9_32.dll
2010-03-09 19:52 . 2006-09-28 15:05 237848 ----a-w- c:\windows\system32\xactengine2_4.dll
2010-03-09 19:52 . 2006-07-28 08:30 236824 ----a-w- c:\windows\system32\xactengine2_3.dll
2010-03-09 19:52 . 2006-07-28 08:30 62744 ----a-w- c:\windows\system32\xinput1_2.dll
2010-03-08 18:52 . 2010-03-08 18:52 -------- d-----w- c:\program files\Infogrames
2010-03-07 10:32 . 2010-03-07 10:33 -------- d-----w- c:\users\Ladislav\AppData\Roaming\Nero
2010-03-06 22:13 . 2010-03-06 22:13 -------- d-----w- c:\users\Ladislav\AppData\Local\CyberLink
2010-03-06 21:27 . 2010-03-06 21:27 -------- d-----w- c:\program files\freeloader.com
2010-03-06 21:17 . 2010-03-06 21:30 -------- d-----w- C:\Doupe
2010-03-05 19:09 . 2008-05-21 08:42 1203792 -c--a-w- c:\programdata\Microsoft\Windows\WER\ReportQueue\Report0ffa8a12\ntdll.dll
2010-02-28 17:09 . 2010-02-28 17:23 -------- d-----w- c:\program files\Nero
2010-02-28 17:09 . 2010-02-28 17:13 -------- d-----w- c:\programdata\Nero
2010-02-28 17:09 . 2010-02-28 17:24 -------- d-----w- c:\program files\Common Files\Nero
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-30 12:36 . 2009-06-05 17:42 836 ----a-w- c:\windows\bthservsdp.dat
2010-03-29 18:20 . 2009-01-21 15:57 42524 ----a-w- c:\programdata\nvModes.dat
2010-03-29 18:06 . 2010-03-29 18:06 -------- d-----w- c:\program files\Future Games
2010-03-29 18:06 . 2009-01-21 05:57 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-03-29 15:06 . 2009-01-21 15:48 -------- d-----w- c:\programdata\P4G
2010-03-26 19:06 . 2010-03-26 19:06 52224 ----a-w- c:\users\Ladislav\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2010-03-26 19:06 . 2010-03-26 19:06 117760 ----a-w- c:\users\Ladislav\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2010-03-26 19:06 . 2010-03-26 19:06 -------- d-----w- c:\users\Ladislav\AppData\Roaming\SUPERAntiSpyware.com
2010-03-26 11:34 . 2010-03-26 11:34 -------- d-----w- c:\program files\trend micro
2010-03-25 12:44 . 2010-03-25 12:44 100432 ----a-w- c:\users\notebook\AppData\Local\GDIPFONTCACHEV1.DAT
2010-03-22 15:35 . 2010-02-24 18:58 -------- d-----w- c:\users\Ladislav\AppData\Roaming\Feuerwache
2010-03-11 19:50 . 2010-02-25 21:20 -------- d-----w- c:\program files\Electronic Arts
2010-03-11 19:25 . 2009-06-05 17:40 -------- d-----w- c:\program files\ESET
2010-02-27 21:09 . 2010-02-27 21:09 -------- d-----w- c:\programdata\Electronic Arts
2010-02-27 21:05 . 2010-02-27 21:05 10134 ----a-r- c:\users\Ladislav\AppData\Roaming\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
2010-02-27 21:05 . 2010-02-27 21:05 -------- d-----w- c:\program files\Microsoft WSE
2010-02-26 17:45 . 2010-02-26 17:30 -------- d-----w- c:\program files\Hasičská stanice
2010-02-25 13:12 . 2010-02-25 13:12 -------- d-----w- c:\program files\Cenega Czech
2010-02-25 06:32 . 2009-01-20 20:51 100432 ----a-w- c:\users\Ladislav\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-24 16:39 . 2009-01-21 05:46 -------- d-----w- c:\program files\Port Royale
2010-02-24 16:10 . 2007-01-08 21:15 116204 ----a-w- c:\windows\system32\perfc005.dat
2010-02-24 16:10 . 2007-01-08 21:15 0 ----a-w- c:\windows\system32\perfh005.dat
2010-02-24 16:08 . 2010-02-24 15:56 -------- d-----w- c:\users\Ladislav\AppData\Roaming\DAEMON Tools Lite
2010-02-24 16:00 . 2010-02-24 15:56 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-02-24 16:00 . 2010-02-24 15:59 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2010-02-24 15:59 . 2010-02-24 15:59 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-02-24 15:56 . 2010-02-24 15:55 -------- d-----w- c:\programdata\DAEMON Tools Lite
2010-02-24 15:37 . 2009-01-20 21:56 -------- d-----w- c:\users\Ladislav\AppData\Roaming\GHISLER
2010-02-15 19:31 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-01-25 12:48 . 2010-02-24 15:08 472576 ----a-w- c:\windows\system32\secproc_isv.dll
2010-01-25 12:48 . 2010-02-24 15:08 151040 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2010-01-25 12:48 . 2010-02-24 15:08 151040 ----a-w- c:\windows\system32\secproc_ssp.dll
2010-01-25 12:48 . 2010-02-24 15:08 472064 ----a-w- c:\windows\system32\secproc.dll
2010-01-25 12:45 . 2010-02-24 15:08 329216 ----a-w- c:\windows\system32\msdrm.dll
2010-01-25 08:35 . 2010-02-24 15:08 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2010-01-25 08:35 . 2010-02-24 15:08 523776 ----a-w- c:\windows\system32\RMActivate_isv.exe
2010-01-25 08:34 . 2010-02-24 15:08 511488 ----a-w- c:\windows\system32\RMActivate.exe
2010-01-25 08:34 . 2010-02-24 15:08 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2010-01-23 09:44 . 2010-02-24 15:09 2048 ----a-w- c:\windows\system32\tzres.dll
2010-01-14 10:12 . 2009-10-04 15:14 181120 ------w- c:\windows\system32\MpSigStub.exe
2008-05-21 08:47 . 2008-05-21 08:17 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.
((((((((((((((((((((((((((((( SnapShot@2010-03-25_14.18.13 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-01-20 20:58 . 2010-03-30 12:42 34300 c:\windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2006-11-02 13:03 . 2010-03-30 12:42 66944 c:\windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
+ 2009-01-20 20:52 . 2010-03-30 05:12 10198 c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-416883917-3581302607-2698026578-1000_UserData.bin
+ 2006-11-02 13:00 . 2010-03-30 12:29 16384 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2006-11-02 13:00 . 2010-03-25 13:34 16384 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2006-11-02 13:00 . 2010-03-25 13:34 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2006-11-02 13:00 . 2010-03-30 12:29 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2006-11-02 13:00 . 2010-03-30 12:29 16384 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2006-11-02 13:00 . 2010-03-25 13:34 16384 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-02-24 15:39 . 2010-03-30 12:30 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-02-24 15:39 . 2010-03-25 13:59 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-02-24 15:39 . 2010-03-25 13:59 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2010-02-24 15:39 . 2010-03-30 12:30 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-02-24 15:39 . 2010-03-25 13:59 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-02-24 15:39 . 2010-03-30 12:30 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-03-29 18:10 . 2010-03-29 18:10 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2010-03-18 19:58 . 2010-03-18 19:58 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2010-03-18 19:58 . 2010-03-18 19:58 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2010-03-29 18:10 . 2010-03-29 18:10 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2010-03-25 14:01 . 2010-03-30 12:42 2536 c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-416883917-3581302607-2698026578-1001_UserData.bin
+ 2010-03-30 12:37 . 2010-03-30 12:37 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2010-03-25 14:06 . 2010-03-25 14:06 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-03-30 12:37 . 2010-03-30 12:37 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2010-03-25 14:06 . 2010-03-25 14:06 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-01-21 16:32 . 2010-03-29 15:03 275524 c:\windows\System32\WDI\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2009-01-21 16:28 . 2010-03-28 13:27 208016 c:\windows\System32\WDI\SuspendPerformanceDiagnostics_SystemData_S3.bin
+ 2009-01-20 20:49 . 2010-03-29 17:58 100432 c:\windows\System32\config\systemprofile\AppData\Local\GDIPFONTCACHEV1.DAT
- 2010-03-18 19:58 . 2010-03-18 19:58 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2010-03-29 18:10 . 2010-03-29 18:10 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2010-03-18 19:58 . 2010-03-18 19:58 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2010-03-29 18:10 . 2010-03-29 18:10 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2010-03-29 18:10 . 2010-03-29 18:10 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2010-03-18 19:58 . 2010-03-18 19:58 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2010-03-29 18:10 . 2010-03-29 18:10 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2010-03-18 19:58 . 2010-03-18 19:58 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2010-03-29 18:10 . 2010-03-29 18:10 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
- 2010-03-18 19:58 . 2010-03-18 19:58 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
- 2010-03-18 19:58 . 2010-03-18 19:58 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-03-29 18:10 . 2010-03-29 18:10 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-03-29 18:10 . 2010-03-29 18:10 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
- 2010-03-18 19:58 . 2010-03-18 19:58 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-05-21 1233920]
"WindowsWelcomeCenter"="oobefldr.dll" [2008-05-21 2153472]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2010-01-05 2002160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-05-21 1008184]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"RemoteControl8"="c:\programs\PowerDVD8\PowerDVD8\PDVD8Serv.exe" [2008-03-20 83240]
"PDVD8LanguageShortcut"="c:\programs\PowerDVD8\PowerDVD8\Language\Language.exe" [2007-12-14 50472]
"BDRegion"="c:\program files\Cyberlink\Shared Files\brs.exe" [2008-10-07 75048]
"HControlUser"="c:\program files\ATK Hotkey\HcontrolUser.exe" [2008-01-11 98304]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2008-01-23 7766016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-07-25 13548064]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-07-25 92704]
"RtHDVCpl"="RtHDVCpl.exe" [2008-08-12 6265376]
"SynTPStart"="c:\program files\Synaptics\SynTP\SynTPStart.exe" [2007-08-17 102400]
"ASUS Screen Saver Protector"="c:\windows\AsScrPro.exe" [2009-01-23 3054136]
"ASUS Camera ScreenSaver"="c:\windows\AsScrProlog.exe" [2009-01-23 47672]
"nod32kui"="c:\program files\Eset\nod32kui.exe" [2009-06-05 949376]
c:\users\Ladislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Věýezy obrazovky a spuçtŘnˇ aplikace OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 98632]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 13:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-416883917-3581302607-2698026578-1000]
"EnableNotificationsRef"=dword:00000002
R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-02-24 691696]
R3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [2010-01-05 7408]
S0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\System32\drivers\sfdrv01a.sys [2006-07-05 63352]
S1 nod32drv;nod32drv;c:\windows\system32\drivers\nod32drv.sys [2009-06-05 15424]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-01-05 9968]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.sys [2010-01-05 74480]
S2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};{FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};c:\programs\PowerDVD8\PowerDVD8\000.fcl [2008-10-07 61424]
S3 DCamUSBET;USB2.0 1.3M UVC WebCam;c:\windows\system32\DRIVERS\etDevice.sys [2007-09-06 474624]
S3 FiltUSBET;ET USB Device Lower Filter;c:\windows\system32\DRIVERS\etFilter.sys [2008-02-05 206464]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32v.sys [2008-06-25 44064]
S3 ScanUSBET;ET USB Still Image Capture Device;c:\windows\system32\DRIVERS\etScan.sys [2008-01-31 6528]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
.
Obsah adresáře 'Naplánované úlohy'
2010-03-30 c:\windows\Tasks\User_Feed_Synchronization-{4DE79773-9848-4F6B-AE48-0AC8132E9BD8}.job
- c:\windows\system32\msfeedssync.exe [2008-05-21 08:41]
2010-03-30 c:\windows\Tasks\User_Feed_Synchronization-{85823FC1-1C70-4129-820E-25CCEC2E71E1}.job
- c:\windows\system32\msfeedssync.exe [2008-05-21 08:41]
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
LSP: c:\windows\system32\imon.dll
FF - ProfilePath - c:\users\Ladislav\AppData\Roaming\Mozilla\Firefox\Profiles\0l2zidap.default\
FF - prefs.js: browser.search.selectedEngine - DAEMON Search
FF - prefs.js: browser.startup.homepage - hxxp://
www.seznam.cz
FF - component: c:\users\Ladislav\AppData\Roaming\Mozilla\Firefox\Profiles\0l2zidap.default\extensions\
DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-03-30 14:49
Windows 6.0.6001 Service Pack 1 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}]
"ImagePath"="\??\c:\programs\PowerDVD8\PowerDVD8\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Celkový čas: 2010-03-30 14:53:05
ComboFix-quarantined-files.txt 2010-03-30 12:53
ComboFix2.txt 2010-03-25 16:44
ComboFix3.txt 2010-03-25 15:47
ComboFix4.txt 2010-03-25 14:22
Před spuštěním: Volných bajtů: 36 205 228 032
Po spuštění: Volných bajtů: 36 753 534 976
- - End Of File - - 63D9BFE15D07795CE9DCB8FDB98B7A25