Combofix a vypnuti diskove jednotky
Napsal: 07 dub 2010 10:26
Dobry den,
dokazal by mi nekdo poradit a vyresit muj problem? Spustil jsem combofix, log prikladam. Po dokonceni testu, ale nevidim svoji diskovou jednotku HD na Ecku. Reseni jsem nenasel ani ve spravci zarizeni ci obnove dat. Navic cely system se chova velice opozdene.. Nevi nekdo, jak znovu zviditelnit HD a pokud mozno, tak abych mohl jeste pouzit data na nem ulozena?
Predem dekuji Ztiw
ComboFix 10-04-06.01 - milwi-pc 07.04.2010 10:02:31.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.959.635 [GMT 2:00]
Spuštěný z: d:\install\KittyFix.exe
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\milwi-pc\Local Settings\Temporary Internet Files\SLOVA.WAV
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_SSHNAS
((((((((((((((((((((((((( Soubory vytvořené od 2010-03-07 do 2010-04-07 )))))))))))))))))))))))))))))))
.
2010-04-04 12:02 . 2010-04-04 16:52 -------- d-----w- c:\program files\TuneUp Utilities 2010
2010-04-03 15:58 . 2010-04-03 15:58 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-04-02 23:15 . 2010-04-02 23:15 -------- d-----w- c:\program files\Vypínač na dobrou noc
2010-03-30 07:13 . 2010-03-30 07:13 -------- d-----w- c:\program files\Seagate
2010-03-30 07:09 . 2010-03-30 07:09 -------- d-----w- c:\program files\Active Data Recovery Services
2010-03-23 15:51 . 2010-04-03 19:36 -------- d-----w- C:\Temp
2010-03-10 23:11 . 2009-10-23 15:28 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-06 18:32 . 2008-09-01 22:56 -------- d-----w- c:\program files\Zoom Player
2010-04-05 13:34 . 2008-09-02 00:07 -------- d-----w- c:\program files\TrackMania Nations ESWC
2010-04-03 15:58 . 2008-09-02 12:20 -------- d-----w- c:\program files\SpeedFan
2010-03-30 07:07 . 2008-09-01 22:17 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-03-11 12:36 . 2004-08-17 15:49 832512 ----a-w- c:\windows\system32\wininet.dll
2010-03-11 12:36 . 2004-08-17 15:49 78336 ----a-w- c:\windows\system32\ieencode.dll
2010-03-11 12:36 . 2004-08-17 15:49 17408 ----a-w- c:\windows\system32\corpol.dll
2008-12-21 15:17 . 2008-09-01 23:15 67688 ----a-w- c:\program files\mozilla firefox\components\jar50.dll
2008-12-21 15:17 . 2008-09-01 23:15 54368 ----a-w- c:\program files\mozilla firefox\components\jsd3250.dll
2008-12-21 15:17 . 2008-09-01 23:15 34944 ----a-w- c:\program files\mozilla firefox\components\myspell.dll
2008-12-21 15:17 . 2008-09-01 23:15 46712 ----a-w- c:\program files\mozilla firefox\components\spellchk.dll
2008-12-21 15:17 . 2008-09-01 23:15 172136 ----a-w- c:\program files\mozilla firefox\components\xpinstal.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-03-22_16.20.12 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-11 18:54 . 2009-07-11 18:54 65536 c:\windows\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e79c4723\vcomp.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80KOR.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80JPN.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80ITA.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 45056 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80CHT.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 40960 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80CHS.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80FRA.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80ESP.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 57344 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80ENU.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 65536 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80DEU.dll
+ 2009-07-11 23:07 . 2009-07-11 23:07 57856 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\mfcm80u.dll
+ 2009-07-11 23:19 . 2009-07-11 23:19 69632 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\mfcm80.dll
+ 2009-07-11 17:41 . 2009-07-11 17:41 97280 c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.dll
+ 2010-04-07 08:23 . 2010-04-07 08:23 16384 c:\windows\Temp\Perflib_Perfdata_624.dat
- 2008-09-01 23:05 . 2008-07-08 12:59 18296 c:\windows\system32\spmsg.dll
+ 2008-09-01 23:05 . 2009-05-26 11:40 18296 c:\windows\system32\spmsg.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 44544 c:\windows\system32\pngfilt.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 44544 c:\windows\system32\pngfilt.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 52224 c:\windows\system32\msfeedsbs.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 52224 c:\windows\system32\msfeedsbs.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 27648 c:\windows\system32\jsproxy.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 27648 c:\windows\system32\jsproxy.dll
+ 2007-08-13 17:39 . 2010-03-10 13:17 13824 c:\windows\system32\ieudinit.exe
- 2007-08-13 17:39 . 2009-12-31 15:32 13824 c:\windows\system32\ieudinit.exe
- 2004-08-17 15:49 . 2010-01-05 09:58 44544 c:\windows\system32\iernonce.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 44544 c:\windows\system32\iernonce.dll
+ 2004-08-17 15:49 . 2010-03-10 13:17 70656 c:\windows\system32\ie4uinit.exe
- 2004-08-17 15:49 . 2009-12-31 15:32 70656 c:\windows\system32\ie4uinit.exe
+ 2007-08-13 17:36 . 2010-03-11 12:36 63488 c:\windows\system32\icardie.dll
- 2007-08-13 17:36 . 2010-01-05 09:57 63488 c:\windows\system32\icardie.dll
- 2007-08-13 17:36 . 2010-01-05 09:58 44544 c:\windows\system32\dllcache\pngfilt.dll
+ 2007-08-13 17:36 . 2010-03-11 12:36 44544 c:\windows\system32\dllcache\pngfilt.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 52224 c:\windows\system32\dllcache\msfeedsbs.dll
- 2010-01-01 16:22 . 2010-01-05 09:58 52224 c:\windows\system32\dllcache\msfeedsbs.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 27648 c:\windows\system32\dllcache\jsproxy.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 27648 c:\windows\system32\dllcache\jsproxy.dll
+ 2010-01-01 16:22 . 2010-03-10 13:17 13824 c:\windows\system32\dllcache\ieudinit.exe
- 2010-01-01 16:22 . 2009-12-31 15:32 13824 c:\windows\system32\dllcache\ieudinit.exe
- 2007-08-13 17:39 . 2010-01-05 09:58 44544 c:\windows\system32\dllcache\iernonce.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 44544 c:\windows\system32\dllcache\iernonce.dll
+ 2009-12-19 11:47 . 2010-03-11 12:36 78336 c:\windows\system32\dllcache\ieencode.dll
- 2009-12-19 11:47 . 2010-01-05 09:57 78336 c:\windows\system32\dllcache\ieencode.dll
+ 2007-08-13 17:39 . 2010-03-10 13:17 70656 c:\windows\system32\dllcache\ie4uinit.exe
- 2007-08-13 17:39 . 2009-12-31 15:32 70656 c:\windows\system32\dllcache\ie4uinit.exe
+ 2010-01-01 16:22 . 2010-03-11 12:36 63488 c:\windows\system32\dllcache\icardie.dll
- 2010-01-01 16:22 . 2010-01-05 09:57 63488 c:\windows\system32\dllcache\icardie.dll
- 2007-08-13 17:42 . 2010-01-05 09:57 17408 c:\windows\system32\dllcache\corpol.dll
+ 2007-08-13 17:42 . 2010-03-11 12:36 17408 c:\windows\system32\dllcache\corpol.dll
+ 2010-04-03 15:59 . 2010-04-03 15:59 11264 c:\windows\Installer\{98613C99-1399-416C-A07C-1EE1C585D872}\Icon98613C992.exe
+ 2010-03-31 22:31 . 2010-01-05 09:58 44544 c:\windows\ie7updates\KB980182-IE7\pngfilt.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 52224 c:\windows\ie7updates\KB980182-IE7\msfeedsbs.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 27648 c:\windows\ie7updates\KB980182-IE7\jsproxy.dll
+ 2010-03-31 22:31 . 2009-12-31 15:32 13824 c:\windows\ie7updates\KB980182-IE7\ieudinit.exe
+ 2010-03-31 22:31 . 2010-01-05 09:58 44544 c:\windows\ie7updates\KB980182-IE7\iernonce.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 78336 c:\windows\ie7updates\KB980182-IE7\ieencode.dll
+ 2010-03-31 22:31 . 2009-12-31 15:32 70656 c:\windows\ie7updates\KB980182-IE7\ie4uinit.exe
+ 2010-03-31 22:31 . 2010-01-05 09:57 63488 c:\windows\ie7updates\KB980182-IE7\icardie.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 17408 c:\windows\ie7updates\KB980182-IE7\corpol.dll
+ 2009-07-11 23:12 . 2009-07-11 23:12 632656 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll
+ 2009-07-11 23:09 . 2009-07-11 23:09 554832 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcp80.dll
+ 2009-07-11 23:08 . 2009-07-11 23:08 479232 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcm80.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 233472 c:\windows\system32\webcheck.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 233472 c:\windows\system32\webcheck.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 105984 c:\windows\system32\url.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 105984 c:\windows\system32\url.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 102912 c:\windows\system32\occache.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 102912 c:\windows\system32\occache.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 671232 c:\windows\system32\mstime.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 671232 c:\windows\system32\mstime.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 193024 c:\windows\system32\msrating.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 193024 c:\windows\system32\msrating.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 477696 c:\windows\system32\mshtmled.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 477696 c:\windows\system32\mshtmled.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 459264 c:\windows\system32\msfeeds.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 459264 c:\windows\system32\msfeeds.dll
+ 2007-08-13 17:34 . 2010-03-11 12:36 268288 c:\windows\system32\iertutil.dll
- 2007-08-13 17:34 . 2010-01-05 09:58 268288 c:\windows\system32\iertutil.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 192512 c:\windows\system32\iepeers.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 192512 c:\windows\system32\iepeers.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 385024 c:\windows\system32\iedkcs32.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 385024 c:\windows\system32\iedkcs32.dll
+ 2007-07-11 11:27 . 2010-03-11 12:36 380928 c:\windows\system32\ieapfltr.dll
- 2007-07-11 11:27 . 2010-01-05 09:57 380928 c:\windows\system32\ieapfltr.dll
+ 2001-10-25 16:00 . 2010-02-23 05:18 161792 c:\windows\system32\ieakui.dll
- 2001-10-25 16:00 . 2009-12-18 13:04 161792 c:\windows\system32\ieakui.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 230400 c:\windows\system32\ieaksie.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 230400 c:\windows\system32\ieaksie.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 153088 c:\windows\system32\ieakeng.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 153088 c:\windows\system32\ieakeng.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 133120 c:\windows\system32\extmgr.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 133120 c:\windows\system32\extmgr.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 214528 c:\windows\system32\dxtrans.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 214528 c:\windows\system32\dxtrans.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 347136 c:\windows\system32\dxtmsft.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 347136 c:\windows\system32\dxtmsft.dll
+ 2009-10-29 05:26 . 2010-03-11 12:36 832512 c:\windows\system32\dllcache\wininet.dll
- 2009-10-29 05:26 . 2010-01-05 09:58 832512 c:\windows\system32\dllcache\wininet.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 233472 c:\windows\system32\dllcache\webcheck.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 233472 c:\windows\system32\dllcache\webcheck.dll
+ 2007-08-13 17:44 . 2010-03-11 12:36 105984 c:\windows\system32\dllcache\url.dll
- 2007-08-13 17:44 . 2010-01-05 09:58 105984 c:\windows\system32\dllcache\url.dll
- 2007-08-13 17:44 . 2010-01-05 09:58 102912 c:\windows\system32\dllcache\occache.dll
+ 2007-08-13 17:44 . 2010-03-11 12:36 102912 c:\windows\system32\dllcache\occache.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 671232 c:\windows\system32\dllcache\mstime.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 671232 c:\windows\system32\dllcache\mstime.dll
- 2007-08-13 17:44 . 2010-01-05 09:58 193024 c:\windows\system32\dllcache\msrating.dll
+ 2007-08-13 17:44 . 2010-03-11 12:36 193024 c:\windows\system32\dllcache\msrating.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 477696 c:\windows\system32\dllcache\mshtmled.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 477696 c:\windows\system32\dllcache\mshtmled.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 459264 c:\windows\system32\dllcache\msfeeds.dll
- 2010-01-01 16:22 . 2010-01-05 09:58 459264 c:\windows\system32\dllcache\msfeeds.dll
- 2007-08-13 17:43 . 2009-12-18 13:05 634648 c:\windows\system32\dllcache\iexplore.exe
+ 2007-08-13 17:43 . 2010-02-23 05:20 634648 c:\windows\system32\dllcache\iexplore.exe
- 2010-01-01 16:22 . 2010-01-05 09:58 268288 c:\windows\system32\dllcache\iertutil.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 268288 c:\windows\system32\dllcache\iertutil.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 192512 c:\windows\system32\dllcache\iepeers.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 192512 c:\windows\system32\dllcache\iepeers.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 385024 c:\windows\system32\dllcache\iedkcs32.dll
- 2007-08-13 17:39 . 2010-01-05 09:57 385024 c:\windows\system32\dllcache\iedkcs32.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 380928 c:\windows\system32\dllcache\ieapfltr.dll
- 2010-01-01 16:22 . 2010-01-05 09:57 380928 c:\windows\system32\dllcache\ieapfltr.dll
+ 2001-10-25 16:00 . 2010-02-23 05:18 161792 c:\windows\system32\dllcache\ieakui.dll
- 2001-10-25 16:00 . 2009-12-18 13:04 161792 c:\windows\system32\dllcache\ieakui.dll
- 2007-08-13 17:39 . 2010-01-05 09:57 230400 c:\windows\system32\dllcache\ieaksie.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 230400 c:\windows\system32\dllcache\ieaksie.dll
- 2007-08-13 17:39 . 2010-01-05 09:57 153088 c:\windows\system32\dllcache\ieakeng.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 153088 c:\windows\system32\dllcache\ieakeng.dll
- 2007-08-13 17:54 . 2010-01-05 09:57 133120 c:\windows\system32\dllcache\extmgr.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 133120 c:\windows\system32\dllcache\extmgr.dll
- 2007-08-13 17:35 . 2010-01-05 09:57 214528 c:\windows\system32\dllcache\dxtrans.dll
+ 2007-08-13 17:35 . 2010-03-11 12:36 214528 c:\windows\system32\dllcache\dxtrans.dll
+ 2007-08-13 17:35 . 2010-03-11 12:36 347136 c:\windows\system32\dllcache\dxtmsft.dll
- 2007-08-13 17:35 . 2010-01-05 09:57 347136 c:\windows\system32\dllcache\dxtmsft.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 124928 c:\windows\system32\dllcache\advpack.dll
- 2007-08-13 17:39 . 2010-01-05 09:57 124928 c:\windows\system32\dllcache\advpack.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 124928 c:\windows\system32\advpack.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 124928 c:\windows\system32\advpack.dll
+ 2010-03-30 07:12 . 2010-03-30 07:12 424960 c:\windows\Installer\303904.msi
+ 2010-04-03 15:59 . 2010-04-03 15:59 584704 c:\windows\Installer\10b986.msi
+ 2010-03-31 22:31 . 2010-01-05 09:58 832512 c:\windows\ie7updates\KB980182-IE7\wininet.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 233472 c:\windows\ie7updates\KB980182-IE7\webcheck.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 105984 c:\windows\ie7updates\KB980182-IE7\url.dll
+ 2010-03-31 22:31 . 2009-05-26 11:40 391032 c:\windows\ie7updates\KB980182-IE7\spuninst\updspapi.dll
+ 2010-03-31 22:31 . 2009-05-26 11:40 233848 c:\windows\ie7updates\KB980182-IE7\spuninst\spuninst.exe
+ 2010-03-31 22:31 . 2010-01-05 09:58 102912 c:\windows\ie7updates\KB980182-IE7\occache.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 671232 c:\windows\ie7updates\KB980182-IE7\mstime.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 193024 c:\windows\ie7updates\KB980182-IE7\msrating.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 477696 c:\windows\ie7updates\KB980182-IE7\mshtmled.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 459264 c:\windows\ie7updates\KB980182-IE7\msfeeds.dll
+ 2010-03-31 22:31 . 2009-12-18 13:05 634648 c:\windows\ie7updates\KB980182-IE7\iexplore.exe
+ 2010-03-31 22:31 . 2010-01-05 09:58 268288 c:\windows\ie7updates\KB980182-IE7\iertutil.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 192512 c:\windows\ie7updates\KB980182-IE7\iepeers.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 385024 c:\windows\ie7updates\KB980182-IE7\iedkcs32.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 380928 c:\windows\ie7updates\KB980182-IE7\ieapfltr.dll
+ 2010-03-31 22:31 . 2009-12-18 13:04 161792 c:\windows\ie7updates\KB980182-IE7\ieakui.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 230400 c:\windows\ie7updates\KB980182-IE7\ieaksie.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 153088 c:\windows\ie7updates\KB980182-IE7\ieakeng.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 133120 c:\windows\ie7updates\KB980182-IE7\extmgr.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 214528 c:\windows\ie7updates\KB980182-IE7\dxtrans.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 347136 c:\windows\ie7updates\KB980182-IE7\dxtmsft.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 124928 c:\windows\ie7updates\KB980182-IE7\advpack.dll
+ 2009-07-11 18:46 . 2009-07-11 18:46 1093120 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\mfc80u.dll
+ 2009-07-11 18:46 . 2009-07-11 18:46 1105920 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\mfc80.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 1168384 c:\windows\system32\urlmon.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 1168384 c:\windows\system32\urlmon.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 3599872 c:\windows\system32\mshtml.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 6067200 c:\windows\system32\ieframe.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 6067200 c:\windows\system32\ieframe.dll
- 2009-10-29 05:26 . 2010-01-05 09:58 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2009-10-29 05:26 . 2010-03-11 12:36 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2009-10-29 18:56 . 2010-03-11 12:36 3599872 c:\windows\system32\dllcache\mshtml.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 6067200 c:\windows\system32\dllcache\ieframe.dll
- 2010-01-01 16:22 . 2010-01-05 09:58 6067200 c:\windows\system32\dllcache\ieframe.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 1168384 c:\windows\ie7updates\KB980182-IE7\urlmon.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 3599360 c:\windows\ie7updates\KB980182-IE7\mshtml.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 6067200 c:\windows\ie7updates\KB980182-IE7\ieframe.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"eyeBeam SIP Client"="c:\program files\CounterPath\X-Lite\x-lite.exe" [2009-12-16 23216128]
"Zion++"="d:\install\Zion++ Blue 2.02\Zion++.exe" [2006-03-12 3911680]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"d:\\Install\\Zion++ Blue 2.02\\Zion++.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\WIP Miranda IM 1.7.7\\miranda32.exe"=
"c:\\Program Files\\TrackMania Nations ESWC\\TmNationsESWC.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"c:\\totalcmd\\TOTALCMD.EXE"=
"c:\\Program Files\\Wolfram Research\\Mathematica\\5.2\\Mathematica.exe"=
"c:\\Program Files\\Wolfram Research\\Mathematica\\5.2\\MathKernel.exe"=
"c:\\Program Files\\Wolfram Research\\Mathematica\\5.2\\math.exe"=
"c:\\Program Files\\InterVideo\\DVD7\\WinDVD.exe"=
"c:\\Program Files\\Cerberus\\Cerberus.exe"=
"c:\\Program Files\\Java\\jre1.6.0_07\\bin\\java.exe"=
"c:\\Program Files\\Java\\jdk1.5.0_07\\bin\\java.exe"=
"c:\\Program Files\\Java\\jdk1.5.0_07\\jre\\bin\\java.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"d:\\Hry\\broodwar\\starcraft.exe"=
"c:\\Program Files\\CounterPath\\X-Lite\\x-lite.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"7000:TCP"= 7000:TCP:war3
"7000:UDP"= 7000:UDP:war3
S1 4d8a1da7;4d8a1da7;c:\windows\system32\drivers\4d8a1da7.sys [12.6.2009 12:04 0]
S2 FlexService;Remote Connections Service;"c:\program files\RapidBIT\cisvc.exe" --> c:\program files\RapidBIT\cisvc.exe [?]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [3.9.2008 14:34 691696]
.
Obsah adresáře 'Naplánované úlohy'
2010-04-01 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2006-08-29 12:21]
.
.
------- Doplňkový sken -------
.
FF - ProfilePath - c:\documents and settings\milwi-pc\Data aplikací\Mozilla\Firefox\Profiles\92y62wpi.default\
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - component: c:\program files\Mozilla Firefox\components\xpinstal.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
.
------- Asociace souborů -------
.
.scr=AutoCADScriptFile
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-04-07 10:24
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'explorer.exe'(3872)
c:\program files\Haali\MatroskaSplitter\mmfinfo.dll
c:\program files\Haali\MatroskaSplitter\mkunicode.dll
c:\program files\Common Files\Ahead\Lib\NeroDigitalExt.dll
c:\program files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\NOTEPAD.EXE
.
**************************************************************************
.
Celkový čas: 2010-04-07 10:33:43 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-04-07 08:33
ComboFix2.txt 2009-12-20 01:47
Před spuštěním: Volných bajtů: 23 149 854 720
Po spuštění: Volných bajtů: 23 188 418 560
Current=3 Default=3 Failed=0 LastKnownGood=8 Sets=1,2,3,4,5,6,7,8
- - End Of File - - 3A0318331C50EA27719237AE449876B9
dokazal by mi nekdo poradit a vyresit muj problem? Spustil jsem combofix, log prikladam. Po dokonceni testu, ale nevidim svoji diskovou jednotku HD na Ecku. Reseni jsem nenasel ani ve spravci zarizeni ci obnove dat. Navic cely system se chova velice opozdene.. Nevi nekdo, jak znovu zviditelnit HD a pokud mozno, tak abych mohl jeste pouzit data na nem ulozena?
Predem dekuji Ztiw
ComboFix 10-04-06.01 - milwi-pc 07.04.2010 10:02:31.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.959.635 [GMT 2:00]
Spuštěný z: d:\install\KittyFix.exe
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\milwi-pc\Local Settings\Temporary Internet Files\SLOVA.WAV
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_SSHNAS
((((((((((((((((((((((((( Soubory vytvořené od 2010-03-07 do 2010-04-07 )))))))))))))))))))))))))))))))
.
2010-04-04 12:02 . 2010-04-04 16:52 -------- d-----w- c:\program files\TuneUp Utilities 2010
2010-04-03 15:58 . 2010-04-03 15:58 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-04-02 23:15 . 2010-04-02 23:15 -------- d-----w- c:\program files\Vypínač na dobrou noc
2010-03-30 07:13 . 2010-03-30 07:13 -------- d-----w- c:\program files\Seagate
2010-03-30 07:09 . 2010-03-30 07:09 -------- d-----w- c:\program files\Active Data Recovery Services
2010-03-23 15:51 . 2010-04-03 19:36 -------- d-----w- C:\Temp
2010-03-10 23:11 . 2009-10-23 15:28 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-06 18:32 . 2008-09-01 22:56 -------- d-----w- c:\program files\Zoom Player
2010-04-05 13:34 . 2008-09-02 00:07 -------- d-----w- c:\program files\TrackMania Nations ESWC
2010-04-03 15:58 . 2008-09-02 12:20 -------- d-----w- c:\program files\SpeedFan
2010-03-30 07:07 . 2008-09-01 22:17 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-03-11 12:36 . 2004-08-17 15:49 832512 ----a-w- c:\windows\system32\wininet.dll
2010-03-11 12:36 . 2004-08-17 15:49 78336 ----a-w- c:\windows\system32\ieencode.dll
2010-03-11 12:36 . 2004-08-17 15:49 17408 ----a-w- c:\windows\system32\corpol.dll
2008-12-21 15:17 . 2008-09-01 23:15 67688 ----a-w- c:\program files\mozilla firefox\components\jar50.dll
2008-12-21 15:17 . 2008-09-01 23:15 54368 ----a-w- c:\program files\mozilla firefox\components\jsd3250.dll
2008-12-21 15:17 . 2008-09-01 23:15 34944 ----a-w- c:\program files\mozilla firefox\components\myspell.dll
2008-12-21 15:17 . 2008-09-01 23:15 46712 ----a-w- c:\program files\mozilla firefox\components\spellchk.dll
2008-12-21 15:17 . 2008-09-01 23:15 172136 ----a-w- c:\program files\mozilla firefox\components\xpinstal.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-03-22_16.20.12 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-11 18:54 . 2009-07-11 18:54 65536 c:\windows\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e79c4723\vcomp.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80KOR.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80JPN.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80ITA.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 45056 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80CHT.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 40960 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80CHS.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80FRA.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80ESP.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 57344 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80ENU.dll
+ 2009-07-11 18:32 . 2009-07-11 18:32 65536 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80DEU.dll
+ 2009-07-11 23:07 . 2009-07-11 23:07 57856 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\mfcm80u.dll
+ 2009-07-11 23:19 . 2009-07-11 23:19 69632 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\mfcm80.dll
+ 2009-07-11 17:41 . 2009-07-11 17:41 97280 c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.dll
+ 2010-04-07 08:23 . 2010-04-07 08:23 16384 c:\windows\Temp\Perflib_Perfdata_624.dat
- 2008-09-01 23:05 . 2008-07-08 12:59 18296 c:\windows\system32\spmsg.dll
+ 2008-09-01 23:05 . 2009-05-26 11:40 18296 c:\windows\system32\spmsg.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 44544 c:\windows\system32\pngfilt.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 44544 c:\windows\system32\pngfilt.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 52224 c:\windows\system32\msfeedsbs.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 52224 c:\windows\system32\msfeedsbs.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 27648 c:\windows\system32\jsproxy.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 27648 c:\windows\system32\jsproxy.dll
+ 2007-08-13 17:39 . 2010-03-10 13:17 13824 c:\windows\system32\ieudinit.exe
- 2007-08-13 17:39 . 2009-12-31 15:32 13824 c:\windows\system32\ieudinit.exe
- 2004-08-17 15:49 . 2010-01-05 09:58 44544 c:\windows\system32\iernonce.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 44544 c:\windows\system32\iernonce.dll
+ 2004-08-17 15:49 . 2010-03-10 13:17 70656 c:\windows\system32\ie4uinit.exe
- 2004-08-17 15:49 . 2009-12-31 15:32 70656 c:\windows\system32\ie4uinit.exe
+ 2007-08-13 17:36 . 2010-03-11 12:36 63488 c:\windows\system32\icardie.dll
- 2007-08-13 17:36 . 2010-01-05 09:57 63488 c:\windows\system32\icardie.dll
- 2007-08-13 17:36 . 2010-01-05 09:58 44544 c:\windows\system32\dllcache\pngfilt.dll
+ 2007-08-13 17:36 . 2010-03-11 12:36 44544 c:\windows\system32\dllcache\pngfilt.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 52224 c:\windows\system32\dllcache\msfeedsbs.dll
- 2010-01-01 16:22 . 2010-01-05 09:58 52224 c:\windows\system32\dllcache\msfeedsbs.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 27648 c:\windows\system32\dllcache\jsproxy.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 27648 c:\windows\system32\dllcache\jsproxy.dll
+ 2010-01-01 16:22 . 2010-03-10 13:17 13824 c:\windows\system32\dllcache\ieudinit.exe
- 2010-01-01 16:22 . 2009-12-31 15:32 13824 c:\windows\system32\dllcache\ieudinit.exe
- 2007-08-13 17:39 . 2010-01-05 09:58 44544 c:\windows\system32\dllcache\iernonce.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 44544 c:\windows\system32\dllcache\iernonce.dll
+ 2009-12-19 11:47 . 2010-03-11 12:36 78336 c:\windows\system32\dllcache\ieencode.dll
- 2009-12-19 11:47 . 2010-01-05 09:57 78336 c:\windows\system32\dllcache\ieencode.dll
+ 2007-08-13 17:39 . 2010-03-10 13:17 70656 c:\windows\system32\dllcache\ie4uinit.exe
- 2007-08-13 17:39 . 2009-12-31 15:32 70656 c:\windows\system32\dllcache\ie4uinit.exe
+ 2010-01-01 16:22 . 2010-03-11 12:36 63488 c:\windows\system32\dllcache\icardie.dll
- 2010-01-01 16:22 . 2010-01-05 09:57 63488 c:\windows\system32\dllcache\icardie.dll
- 2007-08-13 17:42 . 2010-01-05 09:57 17408 c:\windows\system32\dllcache\corpol.dll
+ 2007-08-13 17:42 . 2010-03-11 12:36 17408 c:\windows\system32\dllcache\corpol.dll
+ 2010-04-03 15:59 . 2010-04-03 15:59 11264 c:\windows\Installer\{98613C99-1399-416C-A07C-1EE1C585D872}\Icon98613C992.exe
+ 2010-03-31 22:31 . 2010-01-05 09:58 44544 c:\windows\ie7updates\KB980182-IE7\pngfilt.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 52224 c:\windows\ie7updates\KB980182-IE7\msfeedsbs.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 27648 c:\windows\ie7updates\KB980182-IE7\jsproxy.dll
+ 2010-03-31 22:31 . 2009-12-31 15:32 13824 c:\windows\ie7updates\KB980182-IE7\ieudinit.exe
+ 2010-03-31 22:31 . 2010-01-05 09:58 44544 c:\windows\ie7updates\KB980182-IE7\iernonce.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 78336 c:\windows\ie7updates\KB980182-IE7\ieencode.dll
+ 2010-03-31 22:31 . 2009-12-31 15:32 70656 c:\windows\ie7updates\KB980182-IE7\ie4uinit.exe
+ 2010-03-31 22:31 . 2010-01-05 09:57 63488 c:\windows\ie7updates\KB980182-IE7\icardie.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 17408 c:\windows\ie7updates\KB980182-IE7\corpol.dll
+ 2009-07-11 23:12 . 2009-07-11 23:12 632656 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll
+ 2009-07-11 23:09 . 2009-07-11 23:09 554832 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcp80.dll
+ 2009-07-11 23:08 . 2009-07-11 23:08 479232 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcm80.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 233472 c:\windows\system32\webcheck.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 233472 c:\windows\system32\webcheck.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 105984 c:\windows\system32\url.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 105984 c:\windows\system32\url.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 102912 c:\windows\system32\occache.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 102912 c:\windows\system32\occache.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 671232 c:\windows\system32\mstime.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 671232 c:\windows\system32\mstime.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 193024 c:\windows\system32\msrating.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 193024 c:\windows\system32\msrating.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 477696 c:\windows\system32\mshtmled.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 477696 c:\windows\system32\mshtmled.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 459264 c:\windows\system32\msfeeds.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 459264 c:\windows\system32\msfeeds.dll
+ 2007-08-13 17:34 . 2010-03-11 12:36 268288 c:\windows\system32\iertutil.dll
- 2007-08-13 17:34 . 2010-01-05 09:58 268288 c:\windows\system32\iertutil.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 192512 c:\windows\system32\iepeers.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 192512 c:\windows\system32\iepeers.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 385024 c:\windows\system32\iedkcs32.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 385024 c:\windows\system32\iedkcs32.dll
+ 2007-07-11 11:27 . 2010-03-11 12:36 380928 c:\windows\system32\ieapfltr.dll
- 2007-07-11 11:27 . 2010-01-05 09:57 380928 c:\windows\system32\ieapfltr.dll
+ 2001-10-25 16:00 . 2010-02-23 05:18 161792 c:\windows\system32\ieakui.dll
- 2001-10-25 16:00 . 2009-12-18 13:04 161792 c:\windows\system32\ieakui.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 230400 c:\windows\system32\ieaksie.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 230400 c:\windows\system32\ieaksie.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 153088 c:\windows\system32\ieakeng.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 153088 c:\windows\system32\ieakeng.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 133120 c:\windows\system32\extmgr.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 133120 c:\windows\system32\extmgr.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 214528 c:\windows\system32\dxtrans.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 214528 c:\windows\system32\dxtrans.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 347136 c:\windows\system32\dxtmsft.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 347136 c:\windows\system32\dxtmsft.dll
+ 2009-10-29 05:26 . 2010-03-11 12:36 832512 c:\windows\system32\dllcache\wininet.dll
- 2009-10-29 05:26 . 2010-01-05 09:58 832512 c:\windows\system32\dllcache\wininet.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 233472 c:\windows\system32\dllcache\webcheck.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 233472 c:\windows\system32\dllcache\webcheck.dll
+ 2007-08-13 17:44 . 2010-03-11 12:36 105984 c:\windows\system32\dllcache\url.dll
- 2007-08-13 17:44 . 2010-01-05 09:58 105984 c:\windows\system32\dllcache\url.dll
- 2007-08-13 17:44 . 2010-01-05 09:58 102912 c:\windows\system32\dllcache\occache.dll
+ 2007-08-13 17:44 . 2010-03-11 12:36 102912 c:\windows\system32\dllcache\occache.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 671232 c:\windows\system32\dllcache\mstime.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 671232 c:\windows\system32\dllcache\mstime.dll
- 2007-08-13 17:44 . 2010-01-05 09:58 193024 c:\windows\system32\dllcache\msrating.dll
+ 2007-08-13 17:44 . 2010-03-11 12:36 193024 c:\windows\system32\dllcache\msrating.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 477696 c:\windows\system32\dllcache\mshtmled.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 477696 c:\windows\system32\dllcache\mshtmled.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 459264 c:\windows\system32\dllcache\msfeeds.dll
- 2010-01-01 16:22 . 2010-01-05 09:58 459264 c:\windows\system32\dllcache\msfeeds.dll
- 2007-08-13 17:43 . 2009-12-18 13:05 634648 c:\windows\system32\dllcache\iexplore.exe
+ 2007-08-13 17:43 . 2010-02-23 05:20 634648 c:\windows\system32\dllcache\iexplore.exe
- 2010-01-01 16:22 . 2010-01-05 09:58 268288 c:\windows\system32\dllcache\iertutil.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 268288 c:\windows\system32\dllcache\iertutil.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 192512 c:\windows\system32\dllcache\iepeers.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 192512 c:\windows\system32\dllcache\iepeers.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 385024 c:\windows\system32\dllcache\iedkcs32.dll
- 2007-08-13 17:39 . 2010-01-05 09:57 385024 c:\windows\system32\dllcache\iedkcs32.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 380928 c:\windows\system32\dllcache\ieapfltr.dll
- 2010-01-01 16:22 . 2010-01-05 09:57 380928 c:\windows\system32\dllcache\ieapfltr.dll
+ 2001-10-25 16:00 . 2010-02-23 05:18 161792 c:\windows\system32\dllcache\ieakui.dll
- 2001-10-25 16:00 . 2009-12-18 13:04 161792 c:\windows\system32\dllcache\ieakui.dll
- 2007-08-13 17:39 . 2010-01-05 09:57 230400 c:\windows\system32\dllcache\ieaksie.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 230400 c:\windows\system32\dllcache\ieaksie.dll
- 2007-08-13 17:39 . 2010-01-05 09:57 153088 c:\windows\system32\dllcache\ieakeng.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 153088 c:\windows\system32\dllcache\ieakeng.dll
- 2007-08-13 17:54 . 2010-01-05 09:57 133120 c:\windows\system32\dllcache\extmgr.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 133120 c:\windows\system32\dllcache\extmgr.dll
- 2007-08-13 17:35 . 2010-01-05 09:57 214528 c:\windows\system32\dllcache\dxtrans.dll
+ 2007-08-13 17:35 . 2010-03-11 12:36 214528 c:\windows\system32\dllcache\dxtrans.dll
+ 2007-08-13 17:35 . 2010-03-11 12:36 347136 c:\windows\system32\dllcache\dxtmsft.dll
- 2007-08-13 17:35 . 2010-01-05 09:57 347136 c:\windows\system32\dllcache\dxtmsft.dll
+ 2007-08-13 17:39 . 2010-03-11 12:36 124928 c:\windows\system32\dllcache\advpack.dll
- 2007-08-13 17:39 . 2010-01-05 09:57 124928 c:\windows\system32\dllcache\advpack.dll
- 2004-08-17 15:49 . 2010-01-05 09:57 124928 c:\windows\system32\advpack.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 124928 c:\windows\system32\advpack.dll
+ 2010-03-30 07:12 . 2010-03-30 07:12 424960 c:\windows\Installer\303904.msi
+ 2010-04-03 15:59 . 2010-04-03 15:59 584704 c:\windows\Installer\10b986.msi
+ 2010-03-31 22:31 . 2010-01-05 09:58 832512 c:\windows\ie7updates\KB980182-IE7\wininet.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 233472 c:\windows\ie7updates\KB980182-IE7\webcheck.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 105984 c:\windows\ie7updates\KB980182-IE7\url.dll
+ 2010-03-31 22:31 . 2009-05-26 11:40 391032 c:\windows\ie7updates\KB980182-IE7\spuninst\updspapi.dll
+ 2010-03-31 22:31 . 2009-05-26 11:40 233848 c:\windows\ie7updates\KB980182-IE7\spuninst\spuninst.exe
+ 2010-03-31 22:31 . 2010-01-05 09:58 102912 c:\windows\ie7updates\KB980182-IE7\occache.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 671232 c:\windows\ie7updates\KB980182-IE7\mstime.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 193024 c:\windows\ie7updates\KB980182-IE7\msrating.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 477696 c:\windows\ie7updates\KB980182-IE7\mshtmled.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 459264 c:\windows\ie7updates\KB980182-IE7\msfeeds.dll
+ 2010-03-31 22:31 . 2009-12-18 13:05 634648 c:\windows\ie7updates\KB980182-IE7\iexplore.exe
+ 2010-03-31 22:31 . 2010-01-05 09:58 268288 c:\windows\ie7updates\KB980182-IE7\iertutil.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 192512 c:\windows\ie7updates\KB980182-IE7\iepeers.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 385024 c:\windows\ie7updates\KB980182-IE7\iedkcs32.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 380928 c:\windows\ie7updates\KB980182-IE7\ieapfltr.dll
+ 2010-03-31 22:31 . 2009-12-18 13:04 161792 c:\windows\ie7updates\KB980182-IE7\ieakui.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 230400 c:\windows\ie7updates\KB980182-IE7\ieaksie.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 153088 c:\windows\ie7updates\KB980182-IE7\ieakeng.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 133120 c:\windows\ie7updates\KB980182-IE7\extmgr.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 214528 c:\windows\ie7updates\KB980182-IE7\dxtrans.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 347136 c:\windows\ie7updates\KB980182-IE7\dxtmsft.dll
+ 2010-03-31 22:31 . 2010-01-05 09:57 124928 c:\windows\ie7updates\KB980182-IE7\advpack.dll
+ 2009-07-11 18:46 . 2009-07-11 18:46 1093120 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\mfc80u.dll
+ 2009-07-11 18:46 . 2009-07-11 18:46 1105920 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\mfc80.dll
- 2004-08-17 15:49 . 2010-01-05 09:58 1168384 c:\windows\system32\urlmon.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 1168384 c:\windows\system32\urlmon.dll
+ 2004-08-17 15:49 . 2010-03-11 12:36 3599872 c:\windows\system32\mshtml.dll
+ 2007-08-13 17:54 . 2010-03-11 12:36 6067200 c:\windows\system32\ieframe.dll
- 2007-08-13 17:54 . 2010-01-05 09:58 6067200 c:\windows\system32\ieframe.dll
- 2009-10-29 05:26 . 2010-01-05 09:58 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2009-10-29 05:26 . 2010-03-11 12:36 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2009-10-29 18:56 . 2010-03-11 12:36 3599872 c:\windows\system32\dllcache\mshtml.dll
+ 2010-01-01 16:22 . 2010-03-11 12:36 6067200 c:\windows\system32\dllcache\ieframe.dll
- 2010-01-01 16:22 . 2010-01-05 09:58 6067200 c:\windows\system32\dllcache\ieframe.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 1168384 c:\windows\ie7updates\KB980182-IE7\urlmon.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 3599360 c:\windows\ie7updates\KB980182-IE7\mshtml.dll
+ 2010-03-31 22:31 . 2010-01-05 09:58 6067200 c:\windows\ie7updates\KB980182-IE7\ieframe.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"eyeBeam SIP Client"="c:\program files\CounterPath\X-Lite\x-lite.exe" [2009-12-16 23216128]
"Zion++"="d:\install\Zion++ Blue 2.02\Zion++.exe" [2006-03-12 3911680]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"d:\\Install\\Zion++ Blue 2.02\\Zion++.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\WIP Miranda IM 1.7.7\\miranda32.exe"=
"c:\\Program Files\\TrackMania Nations ESWC\\TmNationsESWC.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"c:\\totalcmd\\TOTALCMD.EXE"=
"c:\\Program Files\\Wolfram Research\\Mathematica\\5.2\\Mathematica.exe"=
"c:\\Program Files\\Wolfram Research\\Mathematica\\5.2\\MathKernel.exe"=
"c:\\Program Files\\Wolfram Research\\Mathematica\\5.2\\math.exe"=
"c:\\Program Files\\InterVideo\\DVD7\\WinDVD.exe"=
"c:\\Program Files\\Cerberus\\Cerberus.exe"=
"c:\\Program Files\\Java\\jre1.6.0_07\\bin\\java.exe"=
"c:\\Program Files\\Java\\jdk1.5.0_07\\bin\\java.exe"=
"c:\\Program Files\\Java\\jdk1.5.0_07\\jre\\bin\\java.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"d:\\Hry\\broodwar\\starcraft.exe"=
"c:\\Program Files\\CounterPath\\X-Lite\\x-lite.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"7000:TCP"= 7000:TCP:war3
"7000:UDP"= 7000:UDP:war3
S1 4d8a1da7;4d8a1da7;c:\windows\system32\drivers\4d8a1da7.sys [12.6.2009 12:04 0]
S2 FlexService;Remote Connections Service;"c:\program files\RapidBIT\cisvc.exe" --> c:\program files\RapidBIT\cisvc.exe [?]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [3.9.2008 14:34 691696]
.
Obsah adresáře 'Naplánované úlohy'
2010-04-01 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2006-08-29 12:21]
.
.
------- Doplňkový sken -------
.
FF - ProfilePath - c:\documents and settings\milwi-pc\Data aplikací\Mozilla\Firefox\Profiles\92y62wpi.default\
FF - prefs.js: browser.startup.homepage - www.seznam.cz
FF - component: c:\program files\Mozilla Firefox\components\xpinstal.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
.
------- Asociace souborů -------
.
.scr=AutoCADScriptFile
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-04-07 10:24
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'explorer.exe'(3872)
c:\program files\Haali\MatroskaSplitter\mmfinfo.dll
c:\program files\Haali\MatroskaSplitter\mkunicode.dll
c:\program files\Common Files\Ahead\Lib\NeroDigitalExt.dll
c:\program files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\NOTEPAD.EXE
.
**************************************************************************
.
Celkový čas: 2010-04-07 10:33:43 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-04-07 08:33
ComboFix2.txt 2009-12-20 01:47
Před spuštěním: Volných bajtů: 23 149 854 720
Po spuštění: Volných bajtů: 23 188 418 560
Current=3 Default=3 Failed=0 LastKnownGood=8 Sets=1,2,3,4,5,6,7,8
- - End Of File - - 3A0318331C50EA27719237AE449876B9