Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

PC plne skodliveho software

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Odpovědět
Zpráva
Autor
Uživatelský avatar
Milanco
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 377
Registrován: 19 led 2009 13:30
Kontaktovat uživatele:

PC plne skodliveho software

#1 Příspěvek od Milanco »

Dobry den, pozrite sa prosim na toto PC je plne skodliveho software, tu je log z RSIT:

Logfile of random's system information tool 1.08 (written by random/random)
Run by uzivatel at 2010-07-06 10:23:35
Systém Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 122 GB (51%) free of 238 GB
Total RAM: 2047 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:23:51, on 6.7.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\windows\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\windows\system32\spoolsv.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\windows\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\windows\RTHDCPL.EXE
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\windows\system32\RUNDLL32.EXE
C:\WINDOWS\vVX1000.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\windows\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\windows\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\windows\System32\svchost.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\windows\system32\NOTEPAD.EXE
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\uzivatel\Desktop\RSIT.exe
C:\Program Files\trend micro\uzivatel.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1392740
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.live.com/sphome.aspx
O2 - BHO: CashBackAssistant - {00F5B5BA-E3C2-4b70-BF51-42A557914FAD} - C:\Program Files\Nice Prosper\CashBackAssistant\CashBackAssistantIE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: NP Helper Class - {35B8D58C-B0CB-46b0-BA64-05B3804E4E86} - (no file)
O2 - BHO: UrlHelper Class - {6D023EBF-70B8-45A6-9ED5-556515FA0FE4} - C:\Program Files\BearShare Applications\BearShare MediaBar\BearShareIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: System Search Dispatcher - {CDBFB47B-58A8-4111-BF95-06178DCE326D} - (no file)
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\BSMediaBar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [CTFMON.EXE] C:\windows\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\uzivatel\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Secunia PSI.lnk = C:\Program Files\Secunia\PSI\psi.exe
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
O9 - Extra button: Pridať do blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Pridať do blogu v programe Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\windows\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\windows\system32\browseui.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\windows\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O24 - Desktop Component 0: (no name) - http://search.conduit.com/img/powered_b ... hitebg.gif
O24 - Desktop Component 1: (no name) - http://www.google.sk/url?sa=T\x26source\x3dweb
O24 - Desktop Component 2: (no name) - http://www.bazos.sk/xmlhttp.js
O24 - Desktop Component 3: (no name) - https://mail.google.com/mail/?ui=2&ik=c ... 7zqo614&zw
O24 - Desktop Component 4: (no name) - https://mail.google.com/mail/?ui=2&ik=c ... 7zqoa15&zw
O24 - Desktop Component 5: (no name) - https://mail.google.com/mail/?ui=2&ik=c ... 7zqoj18&zw
O24 - Desktop Component 6: (no name) - https://mail.google.com/mail/?attid=0.1 ... 79aa147961
O24 - Desktop Component 7: (no name) - https://mail.google.com/mail/?attid=0.1 ... faf2602dfc
O24 - Desktop Component 8: (no name) - https://mail.google.com/mail/?ui=2&ik=c ... 5puu012&zw
O24 - Desktop Component 9: (no name) - https://mail.google.com/mail/?ui=2&ik=c ... kcs97n6&zw

--
End of file - 9489 bytes

======Scheduled tasks folder======

C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-527237240-1801674531-725345543-1004Core.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-527237240-1801674531-725345543-1004UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00F5B5BA-E3C2-4b70-BF51-42A557914FAD}]
CashBackAssistant - C:\Program Files\Nice Prosper\CashBackAssistant\CashBackAssistantIE.dll [2008-12-22 835584]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-04-04 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35B8D58C-B0CB-46b0-BA64-05B3804E4E86}]
NP Helper Class

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D023EBF-70B8-45A6-9ED5-556515FA0FE4}]
UrlHelper Class - C:\Program Files\BearShare Applications\BearShare MediaBar\BearShareIEHelper.dll [2008-04-17 398776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14 191792]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll [2007-07-12 501136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CDBFB47B-58A8-4111-BF95-06178DCE326D}]
System Search Dispatcher

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - BearShare MediaBar - C:\Program Files\BearShare Applications\BearShare MediaBar\BSMediaBar.dll [2008-04-17 611768]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\windows\RTHDCPL.EXE [2007-03-21 16126464]
"Alcmtr"=C:\windows\ALCMTR.EXE [2005-05-03 69632]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-05-02 13529088]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-05-02 86016]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"VX1000"=C:\WINDOWS\vVX1000.exe [2007-04-10 709992]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2007-05-17 279912]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe [2007-07-12 132496]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2010-05-20 1043968]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-04-04 36272]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-03-24 952768]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2010-04-29 437584]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\windows\system32\ctfmon.exe [2008-04-14 15360]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe [2007-06-27 152872]
"Google Update"=C:\Documents and Settings\uzivatel\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-04-26 133104]
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-07-06 3037696]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-09-02 15144328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^uzivatel^Start Menu^Programs^Startup^MarvellTrayStartup.lnk]
C:\PROGRA~1\Marvell\61xx\tray\RaidTray.bat []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^uzivatel^Start Menu^Programs^Startup^SkyDownloader (Minimized).lnk]
C:\PROGRA~1\SKYDOW~1\SKYDOW~1.EXE []

C:\Documents and Settings\uzivatel\Start Menu\Programs\Startup
Secunia PSI.lnk - C:\Program Files\Secunia\PSI\psi.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-08-24 133120]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Marvell\61xx\Apache2\bin\Apache.exe"="C:\Program Files\Marvell\61xx\Apache2\bin\Apache.exe:*:Disabled:Apache HTTP Server"
"C:\Program Files\Nero\Nero 7\Nero Home\NeroHome.exe"="C:\Program Files\Nero\Nero 7\Nero Home\NeroHome.exe:*:Disabled:Nero Home"
"C:\Documents and Settings\BearShare.exe"="C:\Documents and Settings\BearShare.exe:*:Enabled:BearShare"
"C:\Program Files\BearShare Applications\BearShare\BearShare.exe"="C:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare"
"C:\Program Files\GameSpy Arcade\Aphex.exe"="C:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\Program Files\Swapper\swapper.exe"="C:\Program Files\Swapper\swapper.exe:*:Disabled:swapper"
"C:\Program Files\Microsoft LifeCam\LifeExp.exe"="C:\Program Files\Microsoft LifeCam\LifeExp.exe:*:Enabled:LifeExp.exe"
"C:\Program Files\Microsoft LifeCam\LifeCam.exe"="C:\Program Files\Microsoft LifeCam\LifeCam.exe:*:Enabled:LifeCam.exe"
"C:\Program Files\Azureus\Azureus.exe"="C:\Program Files\Azureus\Azureus.exe:*:Enabled:Azureus"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\mIRC\mIRC.exe"="C:\Program Files\mIRC\mIRC.exe:*:Enabled:Mirc Edit By yönetim"
"C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe"="C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe:*:Enabled:KTF MUSIC AoD Server"
"C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe"="C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe:*:Enabled:KTF MUSIC VoD Server"
"C:\Documents and Settings\uzivatel\Desktop\Delta Force Xtreme 2\Crack\dfx2.exe"="C:\Documents and Settings\uzivatel\Desktop\Delta Force Xtreme 2\Crack\dfx2.exe:*:Disabled:dfx2"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Java\jre1.6.0_02\bin\javaw.exe"="C:\Program Files\Java\jre1.6.0_02\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\WINDOWS\system32\ZoneLabs\vsmon.exe"="C:\WINDOWS\system32\ZoneLabs\vsmon.exe:*:Enabled:vsmon"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 1 months======

2010-08-14 12:16:59 ----HDC---- C:\windows\$NtUninstallKB2183461$
2010-08-14 12:16:26 ----HDC---- C:\windows\$NtUninstallKB982214$
2010-08-14 12:16:17 ----HDC---- C:\windows\$NtUninstallKB2115168$
2010-08-14 12:16:10 ----HDC---- C:\windows\$NtUninstallKB981852$
2010-08-14 12:16:03 ----HDC---- C:\windows\$NtUninstallKB2079403$
2010-08-14 12:13:52 ----HDC---- C:\windows\$NtUninstallKB2160329$
2010-08-14 12:13:48 ----HDC---- C:\windows\$NtUninstallKB980436$
2010-08-14 12:12:17 ----HDC---- C:\windows\$NtUninstallKB981997$
2010-08-14 12:12:11 ----HDC---- C:\windows\$NtUninstallKB982665$
2010-08-03 18:00:05 ----HDC---- C:\windows\$NtUninstallKB2286198$
2010-07-22 17:49:15 ----A---- C:\windows\system32\SET221.tmp
2010-07-22 07:57:20 ----N---- C:\windows\system32\SET222.tmp
2010-07-16 08:52:38 ----HDC---- C:\windows\$NtUninstallKB2229593$
2010-07-07 16:05:32 ----A---- C:\windows\system32\drivers\psi_mf.sys
2010-07-06 10:23:36 ----D---- C:\Program Files\trend micro
2010-07-06 10:23:35 ----D---- C:\rsit
2010-07-06 09:29:16 ----D---- C:\Documents and Settings\uzivatel\Application Data\Malwarebytes
2010-07-06 09:29:08 ----A---- C:\windows\system32\drivers\mbamswissarmy.sys
2010-07-06 09:29:07 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-07-06 09:29:07 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2010-07-06 09:29:07 ----A---- C:\windows\system32\drivers\mbam.sys
2010-07-06 09:26:30 ----RD---- C:\Program Files\Skype
2010-07-06 09:00:22 ----A---- C:\windows\system32\drivers\aswFsBlk.sys
2010-07-06 09:00:21 ----A---- C:\windows\system32\drivers\aswSP.sys
2010-07-06 09:00:20 ----A---- C:\windows\system32\drivers\aswRdr.sys
2010-07-06 09:00:19 ----A---- C:\windows\system32\drivers\aswTdi.sys
2010-07-06 09:00:17 ----A---- C:\windows\system32\drivers\aswmon2.sys
2010-07-06 09:00:17 ----A---- C:\windows\system32\drivers\aswmon.sys
2010-07-06 09:00:17 ----A---- C:\windows\system32\drivers\aavmker4.sys
2010-07-06 09:00:04 ----A---- C:\windows\system32\aswBoot.exe
2010-07-06 08:59:49 ----D---- C:\Documents and Settings\All Users\Application Data\Alwil Software
2010-07-06 08:39:29 ----D---- C:\Documents and Settings\uzivatel\Application Data\CheckPoint
2010-07-06 08:38:05 ----D---- C:\Program Files\Adobe
2010-07-06 08:37:46 ----D---- C:\Program Files\CheckPoint
2010-07-06 08:37:44 ----A---- C:\windows\system32\vsregexp.dll
2010-07-06 08:37:43 ----A---- C:\windows\system32\zlcommdb.dll
2010-07-06 08:37:43 ----A---- C:\windows\system32\zlcomm.dll
2010-07-06 08:37:38 ----A---- C:\windows\system32\vswmi.dll
2010-07-06 08:37:37 ----D---- C:\windows\system32\ZoneLabs
2010-07-06 08:37:37 ----A---- C:\windows\system32\zpeng25.dll
2010-07-06 08:37:37 ----A---- C:\windows\system32\vsxml.dll
2010-07-06 08:37:37 ----A---- C:\windows\system32\vspubapi.dll
2010-07-06 08:37:37 ----A---- C:\windows\system32\vsmonapi.dll
2010-07-06 08:37:36 ----D---- C:\Program Files\Zone Labs
2010-07-06 08:37:36 ----A---- C:\windows\system32\vsdatant.sys
2010-07-06 08:37:11 ----D---- C:\windows\Internet Logs
2010-07-06 08:37:11 ----A---- C:\windows\system32\vsutil.dll
2010-07-06 08:37:11 ----A---- C:\windows\system32\vsinit.dll
2010-07-06 08:37:11 ----A---- C:\windows\system32\vsdata.dll
2010-07-06 08:35:13 ----D---- C:\Program Files\Secunia
2010-07-06 08:31:16 ----A---- C:\windows\system32\drivers\sp_rsdrv2.sys
2010-07-06 08:31:15 ----D---- C:\Documents and Settings\uzivatel\Application Data\Spyware Terminator
2010-07-06 08:31:13 ----D---- C:\Program Files\Spyware Terminator
2010-07-06 08:31:13 ----D---- C:\Documents and Settings\All Users\Application Data\Spyware Terminator
2010-07-06 08:24:17 ----D---- C:\Documents and Settings\uzivatel\Application Data\Opera
2010-07-06 08:24:11 ----D---- C:\Program Files\Defraggler
2010-07-06 08:24:07 ----D---- C:\Program Files\Opera
2010-07-06 08:23:38 ----D---- C:\Program Files\CCleaner
2010-06-30 15:15:09 ----HDC---- C:\windows\$NtUninstallKB2158563$
2010-06-30 09:48:26 ----HDC---- C:\windows\$NtUninstallKB979402_WM9$
2010-06-30 09:48:19 ----HDC---- C:\windows\$NtUninstallKB951978$
2010-06-30 09:48:11 ----HDC---- C:\windows\$NtUninstallKB981349$
2010-06-30 09:48:04 ----HDC---- C:\windows\$NtUninstallKB975713$
2010-06-30 09:47:57 ----HDC---- C:\windows\$NtUninstallKB956744$
2010-06-30 09:47:48 ----HDC---- C:\windows\$NtUninstallKB973540_WM9$
2010-06-28 16:08:05 ----D---- C:\windows\Prefetch
2010-06-28 16:02:37 ----HDC---- C:\windows\$NtUninstallKB975562$
2010-06-28 16:02:30 ----HDC---- C:\windows\$NtUninstallKB975561$
2010-06-28 16:02:20 ----HDC---- C:\windows\$NtUninstallKB975560$
2010-06-28 16:02:12 ----HDC---- C:\windows\$NtUninstallKB975467$
2010-06-28 16:02:03 ----HDC---- C:\windows\$NtUninstallKB975025$
2010-06-28 16:01:55 ----HDC---- C:\windows\$NtUninstallKB974571$
2010-06-28 16:01:46 ----HDC---- C:\windows\$NtUninstallKB974455$
2010-06-28 16:01:37 ----HDC---- C:\windows\$NtUninstallKB974392$
2010-06-28 16:01:29 ----HDC---- C:\windows\$NtUninstallKB974318$
2010-06-28 16:01:21 ----HDC---- C:\windows\$NtUninstallKB974112$
2010-06-28 16:01:11 ----HDC---- C:\windows\$NtUninstallKB973869$
2010-06-28 16:01:03 ----HDC---- C:\windows\$NtUninstallKB973815$
2010-06-28 16:00:55 ----HDC---- C:\windows\$NtUninstallKB973687$
2010-06-28 16:00:46 ----HDC---- C:\windows\$NtUninstallKB973507$
2010-06-28 16:00:38 ----HDC---- C:\windows\$NtUninstallKB973354$
2010-06-28 16:00:30 ----HDC---- C:\windows\$NtUninstallKB972270$
2010-06-28 16:00:23 ----HDC---- C:\windows\$NtUninstallKB972260$
2010-06-28 16:00:16 ----HDC---- C:\windows\$NtUninstallKB971737$
2010-06-28 16:00:08 ----HDC---- C:\windows\$NtUninstallKB971657$
2010-06-28 16:00:01 ----HDC---- C:\windows\$NtUninstallKB971633$
2010-06-28 15:59:52 ----HDC---- C:\windows\$NtUninstallKB971557$
2010-06-28 15:59:43 ----HDC---- C:\windows\$NtUninstallKB971486$
2010-06-28 15:59:34 ----HDC---- C:\windows\$NtUninstallKB971468$
2010-06-28 15:59:26 ----HDC---- C:\windows\$NtUninstallKB970430$
2010-06-28 15:59:17 ----HDC---- C:\windows\$NtUninstallKB970238$
2010-06-28 15:59:08 ----HDC---- C:\windows\$NtUninstallKB969947$
2010-06-28 15:59:00 ----HDC---- C:\windows\$NtUninstallKB969897$
2010-06-28 15:58:52 ----HDC---- C:\windows\$NtUninstallKB969059$
2010-06-28 15:58:43 ----HDC---- C:\windows\$NtUninstallKB968537$
2010-06-28 15:58:34 ----HDC---- C:\windows\$NtUninstallKB968389$
2010-06-28 15:58:25 ----HDC---- C:\windows\$NtUninstallKB967715$
2010-06-28 15:58:14 ----HDC---- C:\windows\$NtUninstallKB982381$
2010-06-28 15:58:04 ----HDC---- C:\windows\$NtUninstallKB963027$
2010-06-28 15:57:56 ----HDC---- C:\windows\$NtUninstallKB961503$
2010-06-28 15:57:48 ----HDC---- C:\windows\$NtUninstallKB961501$
2010-06-28 15:57:40 ----HDC---- C:\windows\$NtUninstallKB961373$
2010-06-28 15:57:31 ----HDC---- C:\windows\$NtUninstallKB961371$
2010-06-28 15:57:17 ----HDC---- C:\windows\$NtUninstallKB961118$
2010-06-28 15:57:09 ----HDC---- C:\windows\$NtUninstallKB960859$
2010-06-28 15:57:00 ----HDC---- C:\windows\$NtUninstallKB960803$
2010-06-28 15:56:51 ----HDC---- C:\windows\$NtUninstallKB960714$
2010-06-28 15:56:42 ----HDC---- C:\windows\$NtUninstallKB960225$
2010-06-28 15:56:34 ----HDC---- C:\windows\$NtUninstallKB959426$
2010-06-28 15:56:26 ----HDC---- C:\windows\$NtUninstallKB958690$
2010-06-28 15:56:17 ----HDC---- C:\windows\$NtUninstallKB958687$
2010-06-28 15:56:09 ----HDC---- C:\windows\$NtUninstallKB958644$
2010-06-28 15:56:00 ----HDC---- C:\windows\$NtUninstallKB958215$
2010-06-28 15:55:52 ----HDC---- C:\windows\$NtUninstallKB957097$
2010-06-28 15:55:44 ----HDC---- C:\windows\$NtUninstallKB957095$
2010-06-28 15:55:36 ----HDC---- C:\windows\$NtUninstallKB956844$
2010-06-28 15:55:29 ----HDC---- C:\windows\$NtUninstallKB956841$
2010-06-28 15:55:20 ----HDC---- C:\windows\$NtUninstallKB956803$
2010-06-28 15:55:12 ----HDC---- C:\windows\$NtUninstallKB956802$
2010-06-28 15:55:00 ----HDC---- C:\windows\$NtUninstallKB956572$
2010-06-28 15:54:48 ----HDC---- C:\windows\$NtUninstallKB956390$
2010-06-28 15:54:37 ----HDC---- C:\windows\$NtUninstallKB955759$
2010-06-28 15:54:29 ----HDC---- C:\windows\$NtUninstallKB973687_1$
2010-06-28 15:54:21 ----HDC---- C:\windows\$NtUninstallKB955069$
2010-06-28 15:54:13 ----HDC---- C:\windows\$NtUninstallKB974112_1$
2010-06-28 15:54:06 ----HDC---- C:\windows\$NtUninstallKB954600$
2010-06-28 15:53:58 ----HDC---- C:\windows\$NtUninstallKB954211$
2010-06-28 15:53:47 ----HDC---- C:\windows\$NtUninstallKB953838$
2010-06-28 15:53:36 ----HDC---- C:\windows\$NtUninstallKB952954$
2010-06-28 15:53:27 ----HDC---- C:\windows\$NtUninstallKB952287$
2010-06-28 15:53:19 ----HDC---- C:\windows\$NtUninstallKB952004$
2010-06-28 15:53:11 ----HDC---- C:\windows\$NtUninstallKB951748$
2010-06-28 15:53:03 ----HDC---- C:\windows\$NtUninstallKB951698$
2010-06-28 15:52:56 ----HDC---- C:\windows\$NtUninstallKB951376-v2$
2010-06-28 15:52:47 ----HDC---- C:\windows\$NtUninstallKB951066$
2010-06-28 15:52:38 ----HDC---- C:\windows\$NtUninstallKB950974$
2010-06-28 15:52:31 ----HDC---- C:\windows\$NtUninstallKB950762$
2010-06-28 15:52:20 ----HDC---- C:\windows\$NtUninstallKB950759$
2010-06-28 15:52:14 ----HDC---- C:\windows\$NtUninstallKB946648$
2010-06-28 15:52:05 ----HDC---- C:\windows\$NtUninstallKB938464$
2010-06-28 15:51:56 ----HDC---- C:\windows\$NtUninstallKB923561$
2010-06-28 15:48:49 ----D---- C:\windows\system32\scripting
2010-06-28 15:48:49 ----D---- C:\windows\system32\en
2010-06-28 15:48:49 ----D---- C:\windows\system32\bits
2010-06-28 15:48:49 ----D---- C:\windows\l2schemas
2010-06-28 15:45:07 ----D---- C:\windows\network diagnostic
2010-06-28 15:40:57 ----HDC---- C:\windows\$NtServicePackUninstall$
2010-06-28 15:40:40 ----D---- C:\windows\EHome
2010-06-28 15:35:25 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2010-06-28 11:27:43 ----HDC---- C:\windows\$NtUninstallKB2259922$
2010-06-28 11:27:38 ----HDC---- C:\windows\$NtUninstallKB975558_WM8$
2010-06-28 11:27:32 ----HDC---- C:\windows\$NtUninstallKB2347290$
2010-06-28 11:27:24 ----HDC---- C:\windows\$NtUninstallKB2121546$
2010-06-27 18:38:00 ----HDC---- C:\windows\$NtUninstallKB982802$
2010-06-27 18:37:54 ----HDC---- C:\windows\$NtUninstallKB981322$
2010-06-27 18:36:18 ----HDC---- C:\windows\$NtUninstallKB2141007$
2010-06-16 12:48:01 ----D---- C:\Program Files\Classic Menu for Office
2010-06-16 12:47:35 ----D---- C:\Documents and Settings\uzivatel\Application Data\GetRightToGo
2010-06-16 12:37:35 ----D---- C:\Program Files\YpgSoft
2010-06-16 12:31:56 ----RHD---- C:\MSOCache
2010-06-16 09:21:55 ----HDC---- C:\windows\$NtUninstallKB980218$
2010-06-16 09:21:50 ----HDC---- C:\windows\$NtUninstallKB980195$
2010-06-16 09:21:28 ----HDC---- C:\windows\$NtUninstallKB979559$
2010-06-15 19:57:37 ----D---- C:\3d2ee5fb3884eea65cb0ec50088a
2010-06-15 19:57:33 ----HDC---- C:\windows\$NtUninstallKB979482$
2010-06-15 19:57:24 ----HDC---- C:\windows\$NtUninstallKB975562_0$
2010-06-15 19:03:26 ----D---- C:\48d953834e0eeba074
2010-06-14 15:24:56 ----SHD---- C:\Config.Msi
2010-06-14 15:23:34 ----D---- C:\0628c324c4aa4c62add71865621207
2010-06-14 15:18:09 ----HDC---- C:\windows\$NtUninstallKB982381_0$

======List of files/folders modified in the last 1 months======

2010-08-17 15:17:06 ----A---- C:\windows\system32\spoolsv.exe
2010-08-14 13:09:09 ----D---- C:\windows\Microsoft.NET
2010-08-14 13:09:04 ----RSD---- C:\windows\assembly
2010-08-14 12:15:49 ----A---- C:\windows\system32\PerfStringBackup.INI
2010-08-14 12:12:19 ----D---- C:\Program Files\Movie Maker
2010-07-27 08:30:35 ----A---- C:\windows\system32\shell32.dll
2010-07-22 17:49:15 ----A---- C:\windows\system32\rpcrt4.dll
2010-07-22 07:57:20 ----A---- C:\windows\system32\xpsp4res.dll
2010-07-08 20:12:46 ----A---- C:\windows\PhotoSnapViewer.INI
2010-07-06 10:23:36 ----RD---- C:\Program Files
2010-07-06 09:29:08 ----D---- C:\windows\system32\drivers
2010-07-06 09:27:27 ----D---- C:\WINDOWS
2010-07-06 09:27:16 ----D---- C:\Documents and Settings\uzivatel\Application Data\Skype
2010-07-06 09:27:02 ----SHD---- C:\windows\Installer
2010-07-06 09:26:30 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2010-07-06 09:26:23 ----D---- C:\Program Files\Common Files
2010-07-06 09:24:30 ----D---- C:\Program Files\OpenOffice.org 2.2
2010-07-06 09:23:33 ----D---- C:\Documents and Settings\uzivatel\Application Data\OpenOffice.org2
2010-07-06 09:15:54 ----D---- C:\Program Files\ESTsoft
2010-07-06 09:15:54 ----D---- C:\Documents and Settings\uzivatel\Application Data\ESTsoft
2010-07-06 09:15:47 ----D---- C:\Program Files\Samsung
2010-07-06 09:15:47 ----D---- C:\Documents and Settings\uzivatel\Application Data\Samsung
2010-07-06 09:15:35 ----HD---- C:\Program Files\InstallShield Installation Information
2010-07-06 09:15:26 ----D---- C:\windows\Temp
2010-07-06 09:15:01 ----D---- C:\windows\WinSxS
2010-07-06 09:14:58 ----D---- C:\Program Files\PC Connectivity Solution
2010-07-06 09:14:19 ----D---- C:\Documents and Settings\All Users\Application Data\Norton
2010-07-06 09:14:15 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-07-06 09:13:58 ----SD---- C:\windows\Tasks
2010-07-06 09:12:45 ----D---- C:\Documents and Settings\uzivatel\Application Data\SkyDownloader
2010-07-06 09:11:49 ----D---- C:\Program Files\Mozilla Firefox
2010-07-06 09:11:17 ----D---- C:\windows\system32
2010-07-06 09:11:17 ----D---- C:\Program Files\Marvell
2010-07-06 09:07:43 ----HDC---- C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}
2010-07-06 08:59:49 ----D---- C:\Program Files\Alwil Software
2010-07-06 08:57:47 ----D---- C:\windows\system32\CatRoot2
2010-07-06 08:55:23 ----N---- C:\windows\SchedLgU.Txt
2010-07-06 08:46:08 ----D---- C:\Program Files\Google
2010-07-06 08:45:09 ----D---- C:\Documents and Settings\uzivatel\Application Data\Vso
2010-07-06 08:42:48 ----D---- C:\Program Files\DAEMON Tools Toolbar
2010-07-06 08:42:25 ----D---- C:\windows\pss
2010-07-06 08:39:21 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-07-06 08:38:24 ----D---- C:\Program Files\Common Files\Adobe
2010-07-06 08:35:16 ----HD---- C:\windows\inf
2010-07-06 08:26:13 ----D---- C:\windows\Debug
2010-07-06 08:26:12 ----D---- C:\windows\Minidump
2010-07-06 08:18:24 ----D---- C:\Documents and Settings\uzivatel\Application Data\skypePM
2010-07-05 17:31:22 ----A---- C:\windows\NeroDigital.ini
2010-06-30 20:05:13 ----D---- C:\Program Files\Microsoft Silverlight
2010-06-30 14:31:35 ----A---- C:\windows\system32\schannel.dll
2010-06-30 09:47:35 ----HDC---- C:\windows\$NtUninstallKB971961$
2010-06-29 11:38:55 ----D---- C:\Program Files\Outlook Express
2010-06-28 16:08:53 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft
2010-06-28 16:07:35 ----D---- C:\windows\system32\Setup
2010-06-28 16:07:35 ----D---- C:\windows\AppPatch
2010-06-28 16:07:35 ----D---- C:\Program Files\Windows Media Player
2010-06-28 16:07:34 ----D---- C:\windows\system32\wbem
2010-06-28 16:07:34 ----D---- C:\Program Files\Internet Explorer
2010-06-28 16:07:34 ----D---- C:\Program Files\Common Files\System
2010-06-28 16:07:33 ----RSD---- C:\windows\Fonts
2010-06-28 15:52:15 ----D---- C:\Program Files\Messenger
2010-06-28 15:51:35 ----D---- C:\windows\security
2010-06-28 15:49:04 ----D---- C:\windows\Help
2010-06-28 15:48:58 ----D---- C:\windows\ime
2010-06-28 15:48:50 ----D---- C:\windows\system32\usmt
2010-06-28 15:48:50 ----D---- C:\windows\system32\en-US
2010-06-28 15:48:49 ----D---- C:\windows\PeerNet
2010-06-28 15:47:14 ----D---- C:\windows\ServicePackFiles
2010-06-28 15:47:07 ----D---- C:\windows\system32\Restore
2010-06-28 15:47:07 ----D---- C:\windows\system32\npp
2010-06-28 15:47:07 ----D---- C:\windows\mui
2010-06-28 15:47:06 ----D---- C:\windows\msagent
2010-06-28 15:47:04 ----D---- C:\windows\srchasst
2010-06-28 15:47:03 ----D---- C:\Program Files\NetMeeting
2010-06-28 15:47:01 ----D---- C:\windows\system32\Com
2010-06-28 15:46:59 ----D---- C:\Program Files\Windows NT
2010-06-28 15:46:36 ----D---- C:\windows\system32\oobe
2010-06-28 15:46:35 ----D---- C:\windows\system
2010-06-28 15:43:25 ----D---- C:\windows\system32\ReinstallBackups
2010-06-28 15:33:53 ----D---- C:\windows\SoftwareDistribution
2010-06-28 11:27:42 ----HD---- C:\windows\$hf_mig$
2010-06-28 11:27:40 ----RSHDC---- C:\windows\system32\dllcache
2010-06-28 11:27:12 ----D---- C:\windows\system32\CatRoot
2010-06-27 18:36:45 ----A---- C:\windows\system32\MRT.exe
2010-06-24 14:10:44 ----A---- C:\windows\system32\wininet.dll
2010-06-24 14:10:44 ----A---- C:\windows\system32\urlmon.dll
2010-06-24 14:10:44 ----A---- C:\windows\system32\shdocvw.dll
2010-06-24 14:10:44 ----A---- C:\windows\system32\mshtml.dll
2010-06-24 14:10:44 ----A---- C:\windows\system32\iepeers.dll
2010-06-24 14:10:44 ----A---- C:\windows\system32\ieencode.dll
2010-06-24 14:10:44 ----A---- C:\windows\system32\browseui.dll
2010-06-21 16:46:15 ----N---- C:\windows\system32\tzchange.exe
2010-06-18 19:45:17 ----A---- C:\windows\system32\winsrv.dll
2010-06-17 16:03:00 ----A---- C:\windows\system32\iccvid.dll
2010-06-16 12:51:11 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2010-06-16 12:44:25 ----D---- C:\Documents and Settings\uzivatel\Application Data\Microsoft
2010-06-16 12:32:14 ----D---- C:\Program Files\Microsoft Office
2010-06-16 12:32:14 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-06-14 09:41:45 ----A---- C:\windows\system32\msxml3.dll
2010-06-09 09:43:36 ----A---- C:\windows\system32\inetcomm.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 mv61xx;mv61xx; C:\windows\system32\DRIVERS\mv61xx.sys []
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2009-12-02 691696]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\windows\system32\drivers\Aavmker4.sys [2010-09-07 28880]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2010-09-07 165584]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2010-09-07 46672]
R1 intelppm;Intel Processor Driver; C:\windows\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 NTGDT;NTGDT; \??\C:\WINDOWS\system32\Drivers\NTGDT.SYS []
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\windows\system32\drivers\sp_rsdrv2.sys []
R1 vsdatant;vsdatant; C:\windows\System32\vsdatant.sys [2010-05-13 532224]
R2 Aspi32;Aspi32; C:\windows\System32\drivers\aspi32.sys [2005-11-21 16512]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2010-09-07 17744]
R2 aswMon2;aswMon2; C:\windows\system32\drivers\aswMon2.sys [2010-09-07 100176]
R2 fssfltr;FssFltr; C:\windows\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R3 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr.sys [2010-09-07 23376]
R3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet Controller; C:\windows\system32\DRIVERS\l151x86.sys [2007-11-01 36864]
R3 FsUsbExDisk;FsUsbExDisk; \??\C:\WINDOWS\system32\FsUsbExDisk.SYS []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\windows\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Microsoft HID Class Driver; C:\windows\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RtkHDAud.sys [2007-03-26 4395008]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\windows\system32\drivers\mbamswissarmy.sys []
R3 mouhid;Mouse HID Driver; C:\windows\system32\DRIVERS\mouhid.sys [2006-02-28 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\windows\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nv;nv; C:\windows\system32\DRIVERS\nv4_mini.sys [2008-05-02 6554496]
R3 pcouffin;VSO Software pcouffin; C:\windows\System32\Drivers\pcouffin.sys [2008-12-22 47360]
R3 ROCKEYNT;Feitian ROCKEY4 Device Service; C:\windows\system32\DRIVERS\Rockey4.sys [2008-11-26 22016]
R3 usbstor;USB Mass Storage Driver; C:\windows\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\windows\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 kbdhid;Keyboard HID Driver; C:\windows\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S3 CCDECODE;Closed Caption Decoder; C:\windows\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 dtscsi;dtscsi; C:\windows\System32\Drivers\dtscsi.sys [2008-07-10 223128]
S3 esihdrv;esihdrv; \??\C:\DOCUME~1\uzivatel\LOCALS~1\Temp\esihdrv.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\windows\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\windows\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\windows\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\windows\system32\drivers\ccdcmb.sys [2008-05-02 17536]
S3 nmwcdc;Nokia USB Generic; C:\windows\system32\drivers\ccdcmbo.sys [2008-05-02 20864]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfd.sys [2007-09-17 21632]
S3 PSI;PSI; C:\windows\system32\DRIVERS\psi_mf.sys [2010-07-07 14904]
S3 SLIP;BDA Slip De-Framer; C:\windows\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\windows\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbaudio;USB Audio Driver (WDM); C:\windows\system32\drivers\usbaudio.sys [2008-04-13 60032]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\windows\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbscan;USB Scanner Driver; C:\windows\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;Nokia USB Serial Port; C:\windows\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\windows\system32\DRIVERS\usbser_lowerfltj.sys [2008-05-02 8064]
S3 VX1000;VX-1000; C:\windows\system32\DRIVERS\VX1000.sys [2007-04-10 1966312]
S3 Wdf01000;Wdf01000; C:\windows\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WSTCODEC;World Standard Teletext Codec; C:\windows\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-05-12 611664]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2007-05-17 271720]
R2 NVSvc;NVIDIA Display Driver Service; C:\windows\system32\nvsvc32.exe [2008-05-02 159812]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2009-01-04 66872]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-05-14 249136]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-07-06 488960]
R2 vsmon;TrueVector Internet Monitor; C:\WINDOWS\system32\ZoneLabs\vsmon.exe [2010-05-20 2437176]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-21 135664]
S3 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 fsssvc;Služba Bezpečnosť rodiny v službe Windows Live; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-04-07 430592]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
T-Cleaner ..... CCleaner ..... ATF Cleaner ..... WinXP Manager ..... RSIT ..... MBAM ..... GMER ..... HijackThis

Uživatelský avatar
Milanco
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 377
Registrován: 19 led 2009 13:30
Kontaktovat uživatele:

Re: PC plne skodliveho software

#2 Příspěvek od Milanco »

Prikladam este log s MBAM:

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Verzia databázy: 4750

Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

6.7.2010 10:17:31
mbam-log-2010-07-06 (10-17-31).txt

Typ kontroly: Rýchla kontrola
Objektov kontrolovaných: 129444
Uplynulý čas: 38 min, 2 sek

Infikované služby pamäte: 0
Infikované moduly pamäte: 1
Infikované registračné kľúče: 113
Infikované registračné hodnoty: 3
Infikované položky registračných dát: 3
Infikované priečinky: 102
Infikované súbory: 855

Infikované služby pamäte:
(Škodlivé položky neboli zistené)

Infikované moduly pamäte:
C:\Program Files\Nice Prosper\CashBackAssistant\CashBackAssistantIE.dll (Adware.CashBackAssistant) -> No action taken.

Infikované registračné kľúče:
HKEY_CLASSES_ROOT\TypeLib\{d1aad553-dc21-471f-88e0-f58be109038d} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{6998957e-00f9-4dac-bbb1-c0ca721376c1} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Explorer\Bars\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00f5b5ba-e3c2-4b70-bf51-42a557914fad} (Adware.CashBackAssistant) -> No action taken.
HKEY_CLASSES_ROOT\aimactivexdll.aimhelper (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{d335d84d-61d8-4b5f-9c4e-067dc8b27ed5} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{42c23154-00fa-4a93-9de9-3eb523cffff6} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2e8e2100-98cb-4aac-9480-63a281acaff5} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\aimactivexdll.aimhelper.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\explorerbar.funexplorer (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\explorerbar.funexplorer.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\explorerbar.funredirector (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\explorerbar.funredirector.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\oeactivexdll.desktopbuttonhandler (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{0514c9b0-e4c6-4d6b-a3a6-b38bc280b115} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{3fb17508-0bf4-4fde-845a-323a1052957c} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{803e73fe-cb73-4d49-8aff-653fd6f44171} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{3fb17508-0bf4-4fde-845a-323a1052957c} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{51b67a88-02d0-43cb-8d12-5ca3e2d4cf49} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{d44cc2fb-77b8-48a5-a5dc-f961f2d258fb} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\oeactivexdll.desktopbuttonhandler.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\oeactivexdll.desktopoeaddin1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\oeactivexdll.desktopoeaddin1.1 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{480098c6-f6ad-4c61-9b5c-2bae228a34d1} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{6160f76a-1992-4b17-a32d-0c706d159105} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{877f3eab-4462-44df-8475-6064eafd7fbf} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\AppID\{57aba38e-6535-48f3-99fd-efdc62137c78} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{35b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Installer\Features\e5a579d1621164f44a32148791436ae3 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Installer\Products\e5a579d1621164f44a32148791436ae3 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Installer\UpgradeCodes\b0f0eb6ec578ec54f90b6fcd03d7dd95 (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{883dfc00-8a21-411d-956c-73a4e4b7d16f} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{ac5ab953-ed25-4f9c-87f0-b086b0178ffa} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{c28a0312-c403-417b-a425-a915bc0519cd} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{35b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\b0f0eb6ec578ec54f90b6fcd03d7dd95 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02705fd89352ce24bab275ac5589e38c (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\06b0d94320dd05a4e9db282f94c0da38 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1109202cdba16ca419000caf22dc3cf9 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\18013dbed0b359542a12fafbe579cb03 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\19c4600189189494f8da9315e398ea48 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1cef2348a925d32489049bc015a2fbda (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1e259ce5965475e4ab3a1200c49ccf35 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22f45360de7c90b439a645289cf9b2dd (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2452f2cd3177189479b39659a8ae88fc (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2677411f68e73a14b94ea51766ac0760 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2cc4fa804bfd0a041b857d16afecdb18 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\354306b5fc152ed4995417b24a4297c3 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4978f13e5121802419cea3ad9ee8451e (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5134055961694d94ab0f6d6b58b60cca (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5f0155814f886004495da93f7b7f6c7f (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5f15b616e5327c148a68625cb0b90c98 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6b1d2633a813ea645a5b4b57d73edeac (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6c07fc781abbbeb41a95822938168847 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\746d1df045c9e4c49b480d77d5d41737 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7bd319c63e0f4fe4b8da3232a14c4aad (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8a5f96a30e6bb874693cb43a636903fd (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8c6ff01e712e0b04b8aba6074b0f4656 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8db5173d5b5d0f04fb5132b9383dcbe3 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90cf330d92424144186ed821bc6fd291 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\913971928d8605c40879db575b7a7c4b (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\92430752a00fa6748b9782e647d1d2a8 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98a12ed2f6ef15746866d10403464f8a (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\991b13f7bf5972e40ac7059929ecfba0 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9dc359691a7a8af49a18461e15b4af0a (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\a3f615493ae24294e9e2a8091c557d40 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\b5bd0354b4cc2e34786929405276f8b2 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\b7e05f91ec77f73439fab74946182c65 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\baa4e39c82b6ff54da2ff843bd7f68d2 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\bb5f2c7ed86329349bf6c4c455476cef (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\bd9619b7eef775948a4ee131b16fccd8 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\c33adbfa7b15a9947a8bc54299b85da5 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\c762a014430216b44a4d962ce9bdff7b (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\c7a9b7138e9a75b439ec09153ceacc40 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\d2c0c17a2e0bc2849b0d2a0edf5743b2 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\d2f71258b0760d94f92cc1bc754b71bf (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\f28578ee4f61e5e4aa992ae68c1bedd3 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\f4808d2fd10ccef49bc57b6c533cd553 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\f572404d07a14014093fb02b74bcba69 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\fa280f294852ebb4c800e7986ea0af04 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\fd46ff488efb9cb42ad7d5c8b3bc7c8c (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\fdfb031c7df8e634dbe3d73820d80adc (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\e5a579d1621164f44a32148791436ae3 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setup.exe (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{22c12739-c111-44c6-9bb7-f335c2a9be2a} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{edb1a56e-2224-4c79-a4bd-42a39c6e4608} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{27ff1ee8-8ccc-49e1-b801-f212e3744e80} (Adware.DoubleD) -> No action taken.
HKEY_CLASSES_ROOT\AppID\AIMActiveXDLL.dll (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\DoubleD (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Media Access Startup (Adware.DoubleD) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Office\Outlook\Addins\OEActiveXDLL.DesktopOEAddin1 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\DoubleD (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Media Access Startup (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{16b6279b-9ff5-41fb-8bf9-404324f5dd1f}}_is1 (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1fb52ab3-5987-45a2-85e0-f3ec30dddc29}}_is1 (Adware.DoubleD) -> No action taken.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Funband Serach (Adware.DoubleD) -> No action taken.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Funband Serach (Adware.DoubleD) -> No action taken.

Infikované registračné hodnoty:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\{0ba0192d-94a5-45e3-b2b8-3ec5a1a0b5ec} (Adware.DoubleD) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\{2224e955-00e9-4613-a844-ce69fccaae91} (Adware.DoubleD) -> No action taken.

Infikované položky registračných dát:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

Infikované priečinky:
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9} (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\15D3A7BB (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\15D3A7BB\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\24618E3F (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\24618E3F\611F5CA (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\29A73ACD (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\29A73ACD\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\2A3DCDAF (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\2A3DCDAF\611F5CA (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\36F1A852 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\36F1A852\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\3FA86A06 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\3FA86A06\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\4DAC9037 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\4DAC9037\611F5CA (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\4F73E13A (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\4F73E13A\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\50EF6DF6 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\50EF6DF6\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\51B9750F (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\51B9750F\611F5CA (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\6216A4BD (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\6216A4BD\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\62404B3E (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\62404B3E\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\628759C1 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\628759C1\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\69E6D3E5 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\69E6D3E5\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\879169BE (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\879169BE\611F5CA (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\9B242A8C (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\9B242A8C\611F5CA (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\A26F7F7 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\A26F7F7\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\A53562F1 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\A53562F1\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\B3AC8875 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\B3AC8875\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\B75FA91E (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\B75FA91E\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\BED3DEFB (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\BED3DEFB\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\C3C6C2CD (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\C3C6C2CD\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\C41B8701 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\C41B8701\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\C90EEF64 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\C90EEF64\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\CC8FDF08 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\CC8FDF08\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\CE8732D (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\CE8732D\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\D5797E3B (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\D5797E3B\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\EB91CE86 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\EB91CE86\3E688669 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\F0A80E14 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\F0A80E14\5702F56C (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\mFileBagIDE.dll (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\mFileBagIDE.dll\bag (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\mIDEFunc.dll (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\mIDEWriteReg.dll (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\All Users\Application Data\{5EA804FD-5E7A-4405-A638-CAFBD22489D9}\OFFLINE\mMSI.dll (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD\Desktop Smiley Toolbar (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD\JuicyAccess Toolbar (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD\JuicyAccess Toolbar\4.1.4.20920 (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD\JuicyAccess Toolbar\4.1.4.20920\Cache (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD\JuicyAccess Toolbar\4.1.4.20920\Data (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD\JuicyAccess Toolbar\4.1.4.20920\Icons (Adware.DoubleD) -> No action taken.
C:\Program Files\DoubleD\JuicyAccess Toolbar\4.1.4.20920\Skins (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.4.0.4340 (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.4.0.4340\Data (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.4.0.4340\FF (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.4.0.4340\FF\chrome (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.4.0.4340\FF\chrome\content (Adware.DoubleD) -> No action taken.
C:\Program Files\Internet Saving Optimizer\3.4.0.4340\FF\components (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\1.5.0.850 (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\1.5.0.850\Data (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\1.5.0.850\FF (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\1.5.0.850\FF\chrome (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\1.5.0.850\FF\chrome\content (Adware.DoubleD) -> No action taken.
C:\Program Files\Media Access Startup\1.5.0.850\FF\components (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher (Adware.DoubleD) -> No action taken.
C:\Program Files\System Search Dispatcher\1.2.0.750 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\DoubleD (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\DoubleD\Desktop Smiley Toolbar (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\DoubleD\JuicyAccess Toolbar (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\DoubleD\JuicyAccess Toolbar\4.1.4.20920 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\DoubleD\JuicyAccess Toolbar\4.1.4.20920\bin (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\DoubleD\JuicyAccess Toolbar\4.1.4.20920\Cache (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\DoubleD\JuicyAccess Toolbar\4.1.4.20920\Data (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\DoubleD\JuicyAccess Toolbar\4.1.4.20920\Icons (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\DoubleD\JuicyAccess Toolbar\4.1.4.20920\Skins (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\Internet Saving Optimizer (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\Internet Saving Optimizer\3.4.0.4340 (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\Media Access Startup (Adware.DoubleD) -> No action taken.
C:\Documents and Settings\uzivatel\Local Settings\Application Data\Media Access Startup\1.5.0.850 (Adware.DoubleD) -> No action taken.

Infikované súbory:
.............
T-Cleaner ..... CCleaner ..... ATF Cleaner ..... WinXP Manager ..... RSIT ..... MBAM ..... GMER ..... HijackThis

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15647
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: PC plne skodliveho software

#3 Příspěvek od JaRon »

1. vymaz v MBAM vsetko najdene + restart
2. odinstaluj Ad-aware + STerminator > keby k niecomu boli, tak by MBAM nenasiel nic ,,,
3. doinstaluj MSIE7 - bez ohladu na to, ci MSIE pouzivas
4. vycisti PC s CCleanerom
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Uživatelský avatar
Milanco
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 377
Registrován: 19 led 2009 13:30
Kontaktovat uživatele:

Re: PC plne skodliveho software

#4 Příspěvek od Milanco »

1. to co mamb nasiel som odstranil
2. tie dva programy som odinstaloval
3. prave robim aktualizaciu windows update
4. potom Vam mam sem dat aj logy s RSIT a MBAM? ked ano tak to sem dam az zajtra, dnes uz nemam cas
:)
T-Cleaner ..... CCleaner ..... ATF Cleaner ..... WinXP Manager ..... RSIT ..... MBAM ..... GMER ..... HijackThis

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15647
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: PC plne skodliveho software

#5 Příspěvek od JaRon »

ak bude PC fungovat OK, logy nemusis v opacnom pripade ano :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Uživatelský avatar
Milanco
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 377
Registrován: 19 led 2009 13:30
Kontaktovat uživatele:

Re: PC plne skodliveho software

#6 Příspěvek od Milanco »

tak vsetko vyzera byt zatial v poriadku, dakujem za pomoc :)
T-Cleaner ..... CCleaner ..... ATF Cleaner ..... WinXP Manager ..... RSIT ..... MBAM ..... GMER ..... HijackThis

Odpovědět