Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím pomoc! (+popř.kontrola)

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
hewi
Návštěvník
Návštěvník
Příspěvky: 118
Registrován: 06 črc 2011 16:24

Prosím pomoc! (+popř.kontrola)

#1 Příspěvek od hewi »

Dobrý den :) ,
predem se omlouvam jestli to nahodou neni ve spatne sekci, ale...
Z poskytovatele internetu mi psali ze rozesilam spam. :cry: Ze mam ucinit vsechny potrebne kroky k odstraneni :cry: :arrow: doporucili mi i vasi stranku. Jelikoz log z rsit uz jsem zde provadel predevcirem a bylo vsechno vporadku, na mem druhem PC byl rootkit ktery sem odstranil tez s pomoci vaseho fora. Psali mi ze jestli rozesilam nebo nerozesilam spam zjistim na teto adrese http://rbls.org/ kde zadam svou ip, a nemela by tam byt cervena, presto ikdyz tam zadam tu IP tak ta cervena tam porad je a pritom mam oba dva pc odvirovane a ciste. Ptal sem se ostatnich lidi nekteri tam maji i cervene, nekteri zase ne a zadne problemy nemaji. Tak trochu me to leze na nervy... :(
Tak se chci zeptat jak to mate vy s tou strankou, nebo je to dulezite ta stranka - mam se tim ridit? Nebo je neco jineho nejaky program jak zjistim zda jsem spammer nebo nejsem ?
Dekuji za pomoc.
Klidne prilozim logy rsit schvalne pro kontrolu.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím pomoc! (+popř.kontrola)

#2 Příspěvek od Rudy »

Zdravím!
Ty logy bych rád viděl.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

hewi
Návštěvník
Návštěvník
Příspěvky: 118
Registrován: 06 črc 2011 16:24

Re: Prosím pomoc! (+popř.kontrola)

#3 Příspěvek od hewi »

Tohle je log z mého NTB, poté dodám log z druhého PC, protože jsou oba připojeny na wifi.
Mimochodem mám dotaz k té strance co sem uvadel vyse nahore. Je to rozhodujici? Ta cervena, mohl bych vedet jak to mate vy? děkuji. :)

Logfile of random's system information tool 1.09 (written by random/random)
Run by hewi at 2011-12-25 19:52:17
Microsoft Windows 7 Home Premium
System drive C: has 49 GB (49%) free of 100 GB
Total RAM: 3949 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:52:23, on 25.12.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Users\hewi\Desktop\viry.cz-forum\RSIT.exe
C:\Program Files (x86)\trend micro\hewi.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=14672
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: SRS Premium Sound.lnk = ?
O4 - Global Startup: Start 3DxWare.lnk = C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3dxsrv.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: mental ray 3.9 Satellite for Autodesk 3ds Max Design 2012 64-bit - English 64-bit (mi-raysat_3dsmax2012_64) - Unknown owner - C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8823 bytes

=========Mozilla firefox=========

ProfilePath - C:\Users\hewi\AppData\Roaming\Mozilla\Firefox\Profiles\czjfpava.default

prefs.js - "browser.startup.homepage" - "seznam.cz"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}:6.0.18, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:5.6.0.8442, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.25"

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}

C:\Program Files (x86)\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
compreg.dat
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
xpti.dat

C:\Program Files (x86)\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
NPOFFICE.DLL
npWebLaunch.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\hewi\AppData\Roaming\Mozilla\Firefox\Profiles\czjfpava.default\searchplugins\
askcom.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-07-14 42272]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-02-04 7350912]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
"Malwarebytes' Anti-Malware"=C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [2011-08-31 449608]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2011-12-09 5486464]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
Start 3DxWare.lnk - C:\Program Files (x86)\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3dxsrv.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2011-12-24 22:57:44 ----D---- C:\Windows\Downloaded Installations
2011-12-24 22:36:55 ----D---- C:\Users\hewi\AppData\Roaming\SUPERAntiSpyware.com
2011-12-24 22:36:18 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2011-12-24 21:58:56 ----D---- C:\Users\hewi\AppData\Roaming\Malwarebytes
2011-12-24 16:32:00 ----A---- C:\Windows\SysWOW64\vsnp2uvc.dll
2011-12-24 16:31:59 ----A---- C:\Windows\snuninst.exe
2011-12-24 16:31:59 ----A---- C:\Windows\snp2uvc.src
2011-12-24 16:31:59 ----A---- C:\Windows\snp2uvc.ini
2011-12-23 23:34:35 ----D---- C:\rsit
2011-12-23 23:34:35 ----D---- C:\Program Files (x86)\trend micro
2011-12-23 19:35:21 ----D---- C:\ProgramData\Malwarebytes
2011-12-23 19:35:17 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-12-23 19:21:39 ----A---- C:\TDSSKiller.2.6.25.0_23.12.2011_19.21.39_log.txt

======List of files/folders modified in the last 1 month======

2011-12-25 19:52:23 ----D---- C:\Windows\Prefetch
2011-12-25 19:51:07 ----D---- C:\Windows\Temp
2011-12-25 19:50:16 ----A---- C:\Windows\SysWOW64\log.txt
2011-12-25 17:13:37 ----D---- C:\Windows\System32
2011-12-25 17:13:37 ----D---- C:\Windows\inf
2011-12-25 10:45:26 ----SHD---- C:\System Volume Information
2011-12-24 23:01:02 ----SHD---- C:\Windows\Installer
2011-12-24 23:00:57 ----RD---- C:\Program Files (x86)
2011-12-24 23:00:57 ----D---- C:\Program Files (x86)\Common Files
2011-12-24 22:58:23 ----D---- C:\Windows\SysWOW64
2011-12-24 22:57:44 ----D---- C:\Windows
2011-12-24 22:36:55 ----HD---- C:\ProgramData
2011-12-24 22:36:18 ----RD---- C:\Program Files
2011-12-24 22:23:01 ----D---- C:\Windows\SysWOW64\drivers
2011-12-24 19:09:28 ----D---- C:\Windows\Logs
2011-12-24 18:59:18 ----D---- C:\Users\hewi\AppData\Roaming\Skype
2011-12-24 16:32:05 ----D---- C:\Windows\twain_32
2011-12-21 10:45:20 ----D---- C:\Program Files (x86)\Mozilla Firefox
2011-12-18 19:26:53 ----D---- C:\Users\hewi\AppData\Roaming\ICQ
2011-12-16 22:34:23 ----D---- C:\Windows\Minidump
2011-12-16 22:34:23 ----D---- C:\Users\hewi\AppData\Roaming\Media Player Classic
2011-12-15 13:31:14 ----D---- C:\Vault_pracovni
2011-12-04 18:15:24 ----A---- C:\Windows\iun6002.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys []
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Program Files (x86)\HWiNFO32\HWiNFO64A.SYS [2011-05-22 28032]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys []
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys []
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys []
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys []
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys []
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys []
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys []
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys []
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys []
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys []
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys []
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys []
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys []
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys []
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys []
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys []
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys []
S3 ah12n0a0;ah12n0a0; C:\Windows\SysWOW64\drivers\ah12n0a0.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys []
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys []
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys []
S3 Point64;Microsoft IntelliPoint Filter Driver; C:\Windows\system32\DRIVERS\point64.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2011-08-12 140672]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 mi-raysat_3dsmax2012_64;mental ray 3.9 Satellite for Autodesk 3ds Max Design 2012 64-bit - English 64-bit; C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe [2011-02-22 86016]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2010-11-11 12784]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 2291568]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-08-31 366152]
S2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2011-09-19 1431888]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

hewi
Návštěvník
Návštěvník
Příspěvky: 118
Registrován: 06 črc 2011 16:24

Re: Prosím pomoc! (+popř.kontrola)

#4 Příspěvek od hewi »

Zde dodávám druhý log, náš druhý počítač. Díky.

Logfile of random's system information tool 1.09 (written by random/random)
Run by Počítač at 2011-12-25 19:58:55
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 12 GB (59%) free of 20 GB
Total RAM: 1023 MB (57% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:59:04, on 25.12.2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Software602\Print2PDF\Print2PDF.exe
C:\Program Files\ICQ7.2\ICQ.exe
C:\Documents and Settings\Počítač\Data aplikací\QipGuard\QipGuard.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
J:\viry.cz-forum\RSIT.exe
C:\Program Files\trend micro\Počítač.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [EEventManager] C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [Print2PDF Print Monitor] "C:\Program Files\Software602\Print2PDF\Print2PDF.exe" /server
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.2\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [QIP Internet Guardian] C:\Documents and Settings\Počítač\Data aplikací\QipGuard\QipGuard.exe /p
O4 - HKCU\..\Run: [Infium] "D:\Programy\Nová složka\QIP 2010\qip.exe" /autorun
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\Programy\OFFICE~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\OFFICE~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

--
End of file - 5202 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\MP Scheduled Scan.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Počítač\Data aplikací\Mozilla\Firefox\Profiles\b8kry1zh.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "jqs@sun.com:1.0, {800b5000-a755-47e1-992b-48a1c1357f07}:1.2.9, {32a1fd71-835e-4b11-8e54-886fda0b4c89}:1.1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.25"

"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\System32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.0.50917.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js

C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
NPOFFICE.DLL
npPandoWebInst.dll
npPandoWebInst.xpt
nppdf32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Počítač\Data aplikací\Mozilla\Firefox\Profiles\b8kry1zh.default\extensions\
{32a1fd71-835e-4b11-8e54-886fda0b4c89}
{800b5000-a755-47e1-992b-48a1c1357f07}

C:\Documents and Settings\Počítač\Data aplikací\Mozilla\Firefox\Profiles\b8kry1zh.default\searchplugins\
icqplugin-1.xml
icqplugin-10.xml
icqplugin-11.xml
icqplugin-12.xml
icqplugin-13.xml
icqplugin-2.xml
icqplugin-3.xml
icqplugin-4.xml
icqplugin-5.xml
icqplugin-6.xml
icqplugin-7.xml
icqplugin-8.xml
icqplugin-9.xml
icqplugin.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-08-23 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-08-23 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-03-01 577536]
"EEventManager"=C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe [2008-12-04 665424]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2010-11-30 997408]
"Print2PDF Print Monitor"=C:\Program Files\Software602\Print2PDF\Print2PDF.exe [2011-04-12 222776]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ICQ"=C:\Program Files\ICQ7.2\ICQ.exe [2011-01-05 133432]
"QIP Internet Guardian"=C:\Documents and Settings\Počítač\Data aplikací\QipGuard\QipGuard.exe [2011-03-02 187776]
"Infium"=D:\Programy\Nová složka\QIP 2010\qip.exe [2011-07-18 6812032]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2011-05-04 551296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-07-07 159744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2009-01-30 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-07-19 113024]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Programy\ICQ6.5\ICQ.exe"="D:\Programy\ICQ6.5\ICQ.exe:*:Enabled:ICQ"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Epson Software\Event Manager\EEventManager.exe"="C:\Program Files\Epson Software\Event Manager\EEventManager.exe:*:Enabled:EEventManager Application"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\Program Files\aTube Catcher\yct.exe"="C:\Program Files\aTube Catcher\yct.exe:*:Enabled:aTube Catcher to download and convert videos."
"D:\Programy\Nová složka\QIP 2010\qip.exe"="D:\Programy\Nová složka\QIP 2010\qip.exe:*:Disabled:QIP 2010"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.l3acm"=L3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"vidc.divx"=divx.dll
"vidc.div4"=DivXc32f.dll
"vidc.div3"=DivXc32.dll
"vidc.xvid"=xvid.dll
"vidc.mp43"=mpg4c32.dll
"msacm.l3radius"=l3codecp.acm
"msacm.divxa"=divxa32.acm
"msacm.vorbis"=Vorbis.acm
"msacm.a3d"=a3d.dll
"msacm.ogg"=ogg.dll
"msacm.vorbisenc"=vorbisenc.dll
"VIDC.FMVC"=fmcodec.dll

======List of files/folders created in the last 1 month======

2011-12-25 19:58:55 ----D---- C:\rsit
2011-12-23 19:14:53 ----D---- C:\Documents and Settings\Počítač\Data aplikací\SUPERAntiSpyware.com
2011-12-23 19:14:27 ----D---- C:\Program Files\SUPERAntiSpyware
2011-12-23 19:14:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2011-12-23 19:08:49 ----SHD---- C:\RECYCLER
2011-12-23 19:03:41 ----D---- C:\WINDOWS\temp
2011-12-23 18:49:43 ----A---- C:\Boot.bak
2011-12-23 18:49:39 ----RASHD---- C:\cmdcons
2011-12-23 18:47:18 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2011-12-23 18:24:49 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-12-23 18:24:48 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-12-23 18:19:06 ----D---- C:\Program Files\trend micro
2011-12-03 15:23:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\McAfee

======List of files/folders modified in the last 1 month======

2011-12-25 19:59:05 ----D---- C:\WINDOWS\Prefetch
2011-12-25 13:33:56 ----SD---- C:\Documents and Settings\Počítač\Data aplikací\Microsoft
2011-12-25 13:31:40 ----SD---- C:\WINDOWS\Tasks
2011-12-25 13:27:10 ----D---- C:\WINDOWS\system32\CatRoot2
2011-12-25 10:25:41 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-12-24 22:10:16 ----D---- C:\WINDOWS\system32\drivers
2011-12-24 22:06:55 ----D---- C:\Documents and Settings\Počítač\Data aplikací\602Installer
2011-12-24 09:26:46 ----SHD---- C:\System Volume Information
2011-12-24 09:26:46 ----D---- C:\WINDOWS\system32\Restore
2011-12-23 19:14:27 ----RD---- C:\Program Files
2011-12-23 19:08:44 ----D---- C:\WINDOWS\Minidump
2011-12-23 19:08:34 ----D---- C:\WINDOWS
2011-12-23 19:05:39 ----A---- C:\WINDOWS\system.ini
2011-12-23 19:05:21 ----D---- C:\WINDOWS\system32\drivers\etc
2011-12-23 19:02:14 ----D---- C:\WINDOWS\system32
2011-12-23 19:02:14 ----D---- C:\WINDOWS\AppPatch
2011-12-23 19:02:11 ----D---- C:\Program Files\Common Files
2011-12-23 18:53:24 ----D---- C:\WINDOWS\system32\oobe
2011-12-23 18:49:43 ----RASH---- C:\boot.ini
2011-12-22 13:35:57 ----D---- C:\WINDOWS\system32\config
2011-12-21 18:43:20 ----D---- C:\Program Files\Mozilla Firefox
2011-12-16 15:34:38 ----SHD---- C:\WINDOWS\Installer
2011-12-08 20:30:42 ----A---- C:\WINDOWS\IE4 Error Log.txt

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\System32\DRIVERS\agp440.sys [2004-08-03 42368]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2011-12-23 428088]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2004-08-17 39936]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
R1 MpKsl99aaf66b;MpKsl99aaf66b; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{0E3B2863-1498-4733-B4E9-8CB9110E7982}\MpKsl99aaf66b.sys []
R1 MpKsla1fdff27;MpKsla1fdff27; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{0E3B2863-1498-4733-B4E9-8CB9110E7982}\MpKsla1fdff27.sys []
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-07-07 5069312]
R3 cmuda;C-Media WDM Audio Interface; C:\WINDOWS\system32\drivers\cmuda.sys [2006-06-09 1373120]
R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys [2003-03-04 145408]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2002-09-23 9600]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2002-09-23 12160]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S1 MpKsl002ecc28;MpKsl002ecc28; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{290ABFF7-4168-415E-ABEB-2DEE76AA545B}\MpKsl002ecc28.sys []
S1 MpKsl0034ebb9;MpKsl0034ebb9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{EAEFD130-C9B0-4B0A-8D2E-963D3029A8FD}\MpKsl0034ebb9.sys []
S1 MpKsl01f4f109;MpKsl01f4f109; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{EAEFD130-C9B0-4B0A-8D2E-963D3029A8FD}\MpKsl01f4f109.sys []
S1 MpKsl03a4d709;MpKsl03a4d709; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{FC87C245-7D12-4DBE-9A59-F0E05ECF2CC4}\MpKsl03a4d709.sys []
S1 MpKsl0417b346;MpKsl0417b346; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{58F99D1A-2FF6-4628-AE6B-CD7C48E6B94D}\MpKsl0417b346.sys []
S1 MpKsl0470ad20;MpKsl0470ad20; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{290ABFF7-4168-415E-ABEB-2DEE76AA545B}\MpKsl0470ad20.sys []
S1 MpKsl06f648a1;MpKsl06f648a1; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4778F825-FCC2-40FE-BC44-15D08F0929D0}\MpKsl06f648a1.sys []
S1 MpKsl0a526ba1;MpKsl0a526ba1; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3A6ADD47-EB8A-4650-8509-6CAEAD27731A}\MpKsl0a526ba1.sys []
S1 MpKsl0ab1d5c7;MpKsl0ab1d5c7; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{29043C2A-3726-4082-95B2-01165A81B517}\MpKsl0ab1d5c7.sys []
S1 MpKsl0bd4c5f9;MpKsl0bd4c5f9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{21E7E6BC-78F4-40EE-83DA-4E141A12C205}\MpKsl0bd4c5f9.sys []
S1 MpKsl0c145ecd;MpKsl0c145ecd; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{21F07AD7-ADAF-469D-8F01-14DAAD079A5D}\MpKsl0c145ecd.sys []
S1 MpKsl0c1e9ed6;MpKsl0c1e9ed6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{07CB2E2E-178D-4749-BB14-D3496048F3E5}\MpKsl0c1e9ed6.sys []
S1 MpKsl0c627ad7;MpKsl0c627ad7; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{079CB114-F8A1-479B-B65C-EE7AB22F4D44}\MpKsl0c627ad7.sys []
S1 MpKsl0d322063;MpKsl0d322063; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{34E87A36-E4F6-47C7-8B9B-C1B6F1B1B062}\MpKsl0d322063.sys []
S1 MpKsl0e89e68c;MpKsl0e89e68c; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{EFCB2D94-C17F-47C1-93FD-EE5B9854EAC8}\MpKsl0e89e68c.sys []
S1 MpKsl0fb3bd87;MpKsl0fb3bd87; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{478183BC-3693-4527-AFEF-93A8D6FFD5D0}\MpKsl0fb3bd87.sys []
S1 MpKsl0fbdcedf;MpKsl0fbdcedf; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{979B1003-B21F-4342-A118-CA7ED65ADFB6}\MpKsl0fbdcedf.sys []
S1 MpKsl11febfe1;MpKsl11febfe1; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{36E5B19D-E789-41D9-89D0-0AEDDD7E21D1}\MpKsl11febfe1.sys []
S1 MpKsl12e76e20;MpKsl12e76e20; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1F4D092D-7B5C-4445-B582-CBEDB7296A6A}\MpKsl12e76e20.sys []
S1 MpKsl12ee1b05;MpKsl12ee1b05; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{019C20BC-ABD7-478C-9896-D50D38E1CE5A}\MpKsl12ee1b05.sys []
S1 MpKsl143563f7;MpKsl143563f7; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{019C20BC-ABD7-478C-9896-D50D38E1CE5A}\MpKsl143563f7.sys []
S1 MpKsl15de1881;MpKsl15de1881; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{023D1A6E-1B48-4A08-9EED-7CC6EE9253AD}\MpKsl15de1881.sys []
S1 MpKsl18fbaefe;MpKsl18fbaefe; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A4D5DF8D-7B41-4FCF-9757-FEF204B84B21}\MpKsl18fbaefe.sys []
S1 MpKsl1a0ff8d9;MpKsl1a0ff8d9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{EC4EE9D2-6D7E-41DC-BF5A-7ABFA8C480C5}\MpKsl1a0ff8d9.sys []
S1 MpKsl1a1771cf;MpKsl1a1771cf; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{093A3318-8A79-4A1C-A97C-2D2A1A8F5364}\MpKsl1a1771cf.sys []
S1 MpKsl1eb0340e;MpKsl1eb0340e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{114D40D8-73BB-4D32-B0FE-8CB559838670}\MpKsl1eb0340e.sys []
S1 MpKsl201d7cd4;MpKsl201d7cd4; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{478183BC-3693-4527-AFEF-93A8D6FFD5D0}\MpKsl201d7cd4.sys []
S1 MpKsl20988491;MpKsl20988491; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{92608E8E-216D-4795-885D-ECF72E1E9B62}\MpKsl20988491.sys []
S1 MpKsl217b866f;MpKsl217b866f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{89DB790E-D071-44B4-A68D-F629379B3366}\MpKsl217b866f.sys []
S1 MpKsl219396d2;MpKsl219396d2; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5C9E71F3-F027-4ACE-A503-97E7DFD41265}\MpKsl219396d2.sys []
S1 MpKsl237b0c4a;MpKsl237b0c4a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{028E9B32-0D4A-4227-B433-1CB376296787}\MpKsl237b0c4a.sys []
S1 MpKsl23b5780f;MpKsl23b5780f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C45AE089-707B-480F-AF23-F1E03969286C}\MpKsl23b5780f.sys []
S1 MpKsl23b7b855;MpKsl23b7b855; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{21F07AD7-ADAF-469D-8F01-14DAAD079A5D}\MpKsl23b7b855.sys []
S1 MpKsl246dad93;MpKsl246dad93; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{07CB2E2E-178D-4749-BB14-D3496048F3E5}\MpKsl246dad93.sys []
S1 MpKsl25784498;MpKsl25784498; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4E651020-AA13-4CF0-98A4-4EB2F482924C}\MpKsl25784498.sys []
S1 MpKsl286cf6d0;MpKsl286cf6d0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BFDA010F-6444-4049-9182-BB719E6843A9}\MpKsl286cf6d0.sys []
S1 MpKsl28fb426d;MpKsl28fb426d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{07CB2E2E-178D-4749-BB14-D3496048F3E5}\MpKsl28fb426d.sys []
S1 MpKsl2971d330;MpKsl2971d330; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AD5D81E1-36EA-4CC2-8837-E311A3EBF11A}\MpKsl2971d330.sys []
S1 MpKsl29f84b28;MpKsl29f84b28; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{47A9582D-5544-4436-89E6-0570A323BF8D}\MpKsl29f84b28.sys []
S1 MpKsl2abb95b0;MpKsl2abb95b0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5C9E71F3-F027-4ACE-A503-97E7DFD41265}\MpKsl2abb95b0.sys []
S1 MpKsl2b293f94;MpKsl2b293f94; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{90D840A7-969A-41BE-BEFE-5ADE214B08A9}\MpKsl2b293f94.sys []
S1 MpKsl2c17f9fa;MpKsl2c17f9fa; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A62CF71F-54C5-42E8-B74C-7B4E900FBD70}\MpKsl2c17f9fa.sys []
S1 MpKsl2cdc93bf;MpKsl2cdc93bf; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{478183BC-3693-4527-AFEF-93A8D6FFD5D0}\MpKsl2cdc93bf.sys []
S1 MpKsl2d7bc64f;MpKsl2d7bc64f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{478183BC-3693-4527-AFEF-93A8D6FFD5D0}\MpKsl2d7bc64f.sys []
S1 MpKsl2dbf5c95;MpKsl2dbf5c95; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3A6ADD47-EB8A-4650-8509-6CAEAD27731A}\MpKsl2dbf5c95.sys []
S1 MpKsl2f4abe36;MpKsl2f4abe36; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B125F2B5-C780-4D71-BC14-50CBDF7CF76A}\MpKsl2f4abe36.sys []
S1 MpKsl307bd6cf;MpKsl307bd6cf; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1D6F6C4E-3908-4797-BE0C-F2A728CAB5A8}\MpKsl307bd6cf.sys []
S1 MpKsl3089f92b;MpKsl3089f92b; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1D6F6C4E-3908-4797-BE0C-F2A728CAB5A8}\MpKsl3089f92b.sys []
S1 MpKsl3133e27e;MpKsl3133e27e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5A9716A-C57D-474B-9985-51290B6C7B87}\MpKsl3133e27e.sys []
S1 MpKsl3227ef32;MpKsl3227ef32; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{557B438C-A85F-4A6E-9B57-095C303541DC}\MpKsl3227ef32.sys []
S1 MpKsl3a557a60;MpKsl3a557a60; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A6C32C64-510B-4064-9D4D-9C95A86BED16}\MpKsl3a557a60.sys []
S1 MpKsl3a7955d5;MpKsl3a7955d5; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A0D3CC5B-FAE0-4620-81DE-2DAA106FF92E}\MpKsl3a7955d5.sys []
S1 MpKsl3ba3c486;MpKsl3ba3c486; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A0D3CC5B-FAE0-4620-81DE-2DAA106FF92E}\MpKsl3ba3c486.sys []
S1 MpKsl3c0c3ecf;MpKsl3c0c3ecf; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{52F32BBF-9973-4D5E-A59A-834170A55DB6}\MpKsl3c0c3ecf.sys []
S1 MpKsl3cec131e;MpKsl3cec131e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DBA0CD20-30CC-4D37-83C2-4E5E9F44FC89}\MpKsl3cec131e.sys []
S1 MpKsl3e71a0b3;MpKsl3e71a0b3; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{ACD78FB5-46F1-41F9-BA72-91B28222B018}\MpKsl3e71a0b3.sys []
S1 MpKsl3feac18e;MpKsl3feac18e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4E651020-AA13-4CF0-98A4-4EB2F482924C}\MpKsl3feac18e.sys []
S1 MpKsl409d8450;MpKsl409d8450; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{557B438C-A85F-4A6E-9B57-095C303541DC}\MpKsl409d8450.sys []
S1 MpKsl42301277;MpKsl42301277; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7877F0D6-54D2-48A4-9510-953814428CE7}\MpKsl42301277.sys []
S1 MpKsl424abc2a;MpKsl424abc2a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4352BECF-D280-4308-A845-9C0C9BFC36AE}\MpKsl424abc2a.sys []
S1 MpKsl449d6bcd;MpKsl449d6bcd; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{34E87A36-E4F6-47C7-8B9B-C1B6F1B1B062}\MpKsl449d6bcd.sys []
S1 MpKsl4590c6f6;MpKsl4590c6f6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A6C32C64-510B-4064-9D4D-9C95A86BED16}\MpKsl4590c6f6.sys []
S1 MpKsl46278ccd;MpKsl46278ccd; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{47A9582D-5544-4436-89E6-0570A323BF8D}\MpKsl46278ccd.sys []
S1 MpKsl47325551;MpKsl47325551; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AE73268A-3111-462D-8EC7-995572CAFF44}\MpKsl47325551.sys []
S1 MpKsl474a3c6d;MpKsl474a3c6d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6E732FF2-C720-4253-8F4B-35ACBB84B9E8}\MpKsl474a3c6d.sys []
S1 MpKsl4840c428;MpKsl4840c428; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D2504258-70CB-449A-9EDD-EF240CC5B250}\MpKsl4840c428.sys []
S1 MpKsl4acd9eeb;MpKsl4acd9eeb; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AA772B30-248C-4B82-A630-48781299098B}\MpKsl4acd9eeb.sys []
S1 MpKsl4acdf880;MpKsl4acdf880; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AD5D81E1-36EA-4CC2-8837-E311A3EBF11A}\MpKsl4acdf880.sys []
S1 MpKsl4c0db1a4;MpKsl4c0db1a4; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C25328A9-57E0-4810-B5FA-EE4BD40D45C8}\MpKsl4c0db1a4.sys []
S1 MpKsl4cbb748d;MpKsl4cbb748d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{CDAD7A33-9287-46A3-881D-B8058D041D54}\MpKsl4cbb748d.sys []
S1 MpKsl4d644c77;MpKsl4d644c77; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7877F0D6-54D2-48A4-9510-953814428CE7}\MpKsl4d644c77.sys []
S1 MpKsl4d9836ae;MpKsl4d9836ae; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1DF289B5-9F18-44D8-B146-2EEBDB0715A4}\MpKsl4d9836ae.sys []
S1 MpKsl4ee8c2a4;MpKsl4ee8c2a4; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5A9716A-C57D-474B-9985-51290B6C7B87}\MpKsl4ee8c2a4.sys []
S1 MpKsl51c8dd23;MpKsl51c8dd23; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7C9B01B1-1DCC-4D1A-945C-2D0F0209E611}\MpKsl51c8dd23.sys []
S1 MpKsl546e3b29;MpKsl546e3b29; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{665FFCF2-9FB9-4E84-8EDA-E05D35DADAEF}\MpKsl546e3b29.sys []
S1 MpKsl5a93a3e4;MpKsl5a93a3e4; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{43439994-F22F-4CF6-9A97-FB897BE07079}\MpKsl5a93a3e4.sys []
S1 MpKsl5c3927b6;MpKsl5c3927b6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{34E87A36-E4F6-47C7-8B9B-C1B6F1B1B062}\MpKsl5c3927b6.sys []
S1 MpKsl5ecbc491;MpKsl5ecbc491; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{21E7E6BC-78F4-40EE-83DA-4E141A12C205}\MpKsl5ecbc491.sys []
S1 MpKsl63ec4b83;MpKsl63ec4b83; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D7C5C95D-3662-47FF-B6F0-1268263B80E5}\MpKsl63ec4b83.sys []
S1 MpKsl6a42c96f;MpKsl6a42c96f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{290ABFF7-4168-415E-ABEB-2DEE76AA545B}\MpKsl6a42c96f.sys []
S1 MpKsl6a6158b7;MpKsl6a6158b7; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D2504258-70CB-449A-9EDD-EF240CC5B250}\MpKsl6a6158b7.sys []
S1 MpKsl6b244aa1;MpKsl6b244aa1; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BE42CA78-2864-41AF-93B8-39DA01EFBB04}\MpKsl6b244aa1.sys []
S1 MpKsl6b6997ac;MpKsl6b6997ac; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3A6ADD47-EB8A-4650-8509-6CAEAD27731A}\MpKsl6b6997ac.sys []
S1 MpKsl6c78767d;MpKsl6c78767d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A4D5DF8D-7B41-4FCF-9757-FEF204B84B21}\MpKsl6c78767d.sys []
S1 MpKsl6ec486c1;MpKsl6ec486c1; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E7E4E00-1BD7-429C-96CA-01D4440CFEF8}\MpKsl6ec486c1.sys []
S1 MpKsl70b8841b;MpKsl70b8841b; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{290ABFF7-4168-415E-ABEB-2DEE76AA545B}\MpKsl70b8841b.sys []
S1 MpKsl725e7a2f;MpKsl725e7a2f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3B0BEC25-7EF9-4831-95D2-CB4657A0E3B0}\MpKsl725e7a2f.sys []
S1 MpKsl7296b3fb;MpKsl7296b3fb; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{35B6FB6E-D916-44EF-B096-5EE4866FDAB5}\MpKsl7296b3fb.sys []
S1 MpKsl7479084c;MpKsl7479084c; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D9BB095B-A295-4782-B647-8D4C494AA40D}\MpKsl7479084c.sys []
S1 MpKsl74bef657;MpKsl74bef657; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{256B0864-EE81-40ED-B955-15A56A6C349E}\MpKsl74bef657.sys []
S1 MpKsl74bfd9bf;MpKsl74bfd9bf; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A62CF71F-54C5-42E8-B74C-7B4E900FBD70}\MpKsl74bfd9bf.sys []
S1 MpKsl773d1435;MpKsl773d1435; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7877F0D6-54D2-48A4-9510-953814428CE7}\MpKsl773d1435.sys []
S1 MpKsl780152f1;MpKsl780152f1; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{665FFCF2-9FB9-4E84-8EDA-E05D35DADAEF}\MpKsl780152f1.sys []
S1 MpKsl78560ed8;MpKsl78560ed8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{079CB114-F8A1-479B-B65C-EE7AB22F4D44}\MpKsl78560ed8.sys []
S1 MpKsl7b1c2268;MpKsl7b1c2268; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A0531019-5302-4C6D-A133-72A58840FA84}\MpKsl7b1c2268.sys []
S1 MpKsl7c90b1c5;MpKsl7c90b1c5; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{FC87C245-7D12-4DBE-9A59-F0E05ECF2CC4}\MpKsl7c90b1c5.sys []
S1 MpKsl7ca3aba8;MpKsl7ca3aba8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{979B1003-B21F-4342-A118-CA7ED65ADFB6}\MpKsl7ca3aba8.sys []
S1 MpKsl7e4139b8;MpKsl7e4139b8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{114D40D8-73BB-4D32-B0FE-8CB559838670}\MpKsl7e4139b8.sys []
S1 MpKsl7ff8fdd9;MpKsl7ff8fdd9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{290ABFF7-4168-415E-ABEB-2DEE76AA545B}\MpKsl7ff8fdd9.sys []
S1 MpKsl804399f1;MpKsl804399f1; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{979B1003-B21F-4342-A118-CA7ED65ADFB6}\MpKsl804399f1.sys []
S1 MpKsl80a806c5;MpKsl80a806c5; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{478183BC-3693-4527-AFEF-93A8D6FFD5D0}\MpKsl80a806c5.sys []
S1 MpKsl83067bcd;MpKsl83067bcd; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{8172D792-AEED-420E-8B74-8296B55677DF}\MpKsl83067bcd.sys []
S1 MpKsl8699fdfa;MpKsl8699fdfa; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{8C94133E-BED8-4C47-8170-DB6588D9A321}\MpKsl8699fdfa.sys []
S1 MpKsl87cf10c2;MpKsl87cf10c2; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AD5D81E1-36EA-4CC2-8837-E311A3EBF11A}\MpKsl87cf10c2.sys []
S1 MpKsl8996e7a2;MpKsl8996e7a2; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{478183BC-3693-4527-AFEF-93A8D6FFD5D0}\MpKsl8996e7a2.sys []
S1 MpKsl8a1a4dcd;MpKsl8a1a4dcd; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6FBAFC1B-FBB2-46CF-BE07-95284615BBD1}\MpKsl8a1a4dcd.sys []
S1 MpKsl8af119fd;MpKsl8af119fd; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A62CF71F-54C5-42E8-B74C-7B4E900FBD70}\MpKsl8af119fd.sys []
S1 MpKsl8b900f46;MpKsl8b900f46; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{8FD60234-15EE-4ED7-A464-DADA30E1096E}\MpKsl8b900f46.sys []
S1 MpKsl8c17cb7a;MpKsl8c17cb7a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{079CB114-F8A1-479B-B65C-EE7AB22F4D44}\MpKsl8c17cb7a.sys []
S1 MpKsl8c764b94;MpKsl8c764b94; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{ACD78FB5-46F1-41F9-BA72-91B28222B018}\MpKsl8c764b94.sys []
S1 MpKsl8d4e9ed7;MpKsl8d4e9ed7; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BC41A94B-97D4-4A7A-95E8-B2EA670D67B3}\MpKsl8d4e9ed7.sys []
S1 MpKsl8dc2480e;MpKsl8dc2480e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AE73268A-3111-462D-8EC7-995572CAFF44}\MpKsl8dc2480e.sys []
S1 MpKsl8e18e7c4;MpKsl8e18e7c4; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{290ABFF7-4168-415E-ABEB-2DEE76AA545B}\MpKsl8e18e7c4.sys []
S1 MpKsl8eecf2a0;MpKsl8eecf2a0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{47A9582D-5544-4436-89E6-0570A323BF8D}\MpKsl8eecf2a0.sys []
S1 MpKsl907d30c5;MpKsl907d30c5; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{EB423DD9-E99F-44C4-99A8-CB87CDC5FC72}\MpKsl907d30c5.sys []
S1 MpKsl9284fe9c;MpKsl9284fe9c; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{EB423DD9-E99F-44C4-99A8-CB87CDC5FC72}\MpKsl9284fe9c.sys []
S1 MpKsl958cbb07;MpKsl958cbb07; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{47A9582D-5544-4436-89E6-0570A323BF8D}\MpKsl958cbb07.sys []
S1 MpKsl9623cd88;MpKsl9623cd88; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{EB423DD9-E99F-44C4-99A8-CB87CDC5FC72}\MpKsl9623cd88.sys []
S1 MpKsl981bcc44;MpKsl981bcc44; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B0ECAFD4-AD15-448C-9F03-0270D815BD9B}\MpKsl981bcc44.sys []
S1 MpKsl983b4b28;MpKsl983b4b28; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{028E9B32-0D4A-4227-B433-1CB376296787}\MpKsl983b4b28.sys []
S1 MpKsl989003cb;MpKsl989003cb; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BD8E8109-FDE9-4B3A-A047-33F78C810E34}\MpKsl989003cb.sys []
S1 MpKsl98a507a3;MpKsl98a507a3; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D33E9E06-5514-42B4-8DED-7AEF8D9623FF}\MpKsl98a507a3.sys []
S1 MpKsl98e7c120;MpKsl98e7c120; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D27C7D50-B3DE-4AF0-9B0E-2FBEEA73B068}\MpKsl98e7c120.sys []
S1 MpKsl9a08e818;MpKsl9a08e818; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{0165A17C-EFC0-4BDC-AFBF-DABC668B1FB8}\MpKsl9a08e818.sys []
S1 MpKsl9a79faae;MpKsl9a79faae; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D7C5C95D-3662-47FF-B6F0-1268263B80E5}\MpKsl9a79faae.sys []
S1 MpKsl9b1a533b;MpKsl9b1a533b; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{8C94133E-BED8-4C47-8170-DB6588D9A321}\MpKsl9b1a533b.sys []
S1 MpKsl9f4fc827;MpKsl9f4fc827; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{E8F0B4D5-B24C-44DD-8D99-34BCABD0B824}\MpKsl9f4fc827.sys []
S1 MpKsla33fec6d;MpKsla33fec6d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BE42CA78-2864-41AF-93B8-39DA01EFBB04}\MpKsla33fec6d.sys []
S1 MpKsla35c41f6;MpKsla35c41f6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5561EB7E-9568-46B3-936A-A75B241F8F3D}\MpKsla35c41f6.sys []
S1 MpKsla402dd4d;MpKsla402dd4d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D33E9E06-5514-42B4-8DED-7AEF8D9623FF}\MpKsla402dd4d.sys []
S1 MpKsla423b00d;MpKsla423b00d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{354E5BF1-2B3C-4DAC-841F-A204D83768BA}\MpKsla423b00d.sys []
S1 MpKsla55d03b8;MpKsla55d03b8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{256B0864-EE81-40ED-B955-15A56A6C349E}\MpKsla55d03b8.sys []
S1 MpKsla6dfec0c;MpKsla6dfec0c; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{023D1A6E-1B48-4A08-9EED-7CC6EE9253AD}\MpKsla6dfec0c.sys []
S1 MpKsla85ad9fb;MpKsla85ad9fb; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1C7CB1EA-9484-45C4-92C1-32E6CC7497CB}\MpKsla85ad9fb.sys []
S1 MpKsla8736bdc;MpKsla8736bdc; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3B0BEC25-7EF9-4831-95D2-CB4657A0E3B0}\MpKsla8736bdc.sys []
S1 MpKsla9e52b8f;MpKsla9e52b8f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A6C32C64-510B-4064-9D4D-9C95A86BED16}\MpKsla9e52b8f.sys []
S1 MpKslabfa6afa;MpKslabfa6afa; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{8172D792-AEED-420E-8B74-8296B55677DF}\MpKslabfa6afa.sys []
S1 MpKslad021efb;MpKslad021efb; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2F747109-7FD2-44A8-AFC5-D71A2DB297C6}\MpKslad021efb.sys []
S1 MpKslad02ff10;MpKslad02ff10; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4FB8A0E2-C202-4B1B-A04F-A9709B92194C}\MpKslad02ff10.sys []
S1 MpKslad9cc19a;MpKslad9cc19a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{46AC97A2-6863-4E94-A134-7764603D8E38}\MpKslad9cc19a.sys []
S1 MpKsladc661a9;MpKsladc661a9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AE6A47AA-94FD-41DC-A8AB-3EBF010DB251}\MpKsladc661a9.sys []
S1 MpKslb00597a3;MpKslb00597a3; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D2504258-70CB-449A-9EDD-EF240CC5B250}\MpKslb00597a3.sys []
S1 MpKslb2cc506f;MpKslb2cc506f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E7E4E00-1BD7-429C-96CA-01D4440CFEF8}\MpKslb2cc506f.sys []
S1 MpKslb32f5c2e;MpKslb32f5c2e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{EC4EE9D2-6D7E-41DC-BF5A-7ABFA8C480C5}\MpKslb32f5c2e.sys []
S1 MpKslb452d252;MpKslb452d252; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BEDC7531-9581-4734-AB9C-83076B47FE13}\MpKslb452d252.sys []
S1 MpKslb509173f;MpKslb509173f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A62CF71F-54C5-42E8-B74C-7B4E900FBD70}\MpKslb509173f.sys []
S1 MpKslb524b2af;MpKslb524b2af; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{478183BC-3693-4527-AFEF-93A8D6FFD5D0}\MpKslb524b2af.sys []
S1 MpKslbabdf449;MpKslbabdf449; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F2D0303D-0CF0-474F-8B9D-639E031F5CC5}\MpKslbabdf449.sys []
S1 MpKslbae5e323;MpKslbae5e323; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BEDC7531-9581-4734-AB9C-83076B47FE13}\MpKslbae5e323.sys []
S1 MpKslbb35070f;MpKslbb35070f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A62CF71F-54C5-42E8-B74C-7B4E900FBD70}\MpKslbb35070f.sys []
S1 MpKslbc632ff2;MpKslbc632ff2; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1C7CB1EA-9484-45C4-92C1-32E6CC7497CB}\MpKslbc632ff2.sys []
S1 MpKslbd7b364f;MpKslbd7b364f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F64FD114-CDF6-40DB-93BB-20039B168048}\MpKslbd7b364f.sys []
S1 MpKslbfa1cde8;MpKslbfa1cde8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D9BB095B-A295-4782-B647-8D4C494AA40D}\MpKslbfa1cde8.sys []
S1 MpKslc07e9be9;MpKslc07e9be9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5A9716A-C57D-474B-9985-51290B6C7B87}\MpKslc07e9be9.sys []
S1 MpKslc161b122;MpKslc161b122; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7A4D0CBB-2F54-432C-B533-13B5AEF13DF4}\MpKslc161b122.sys []
S1 MpKslc1c1a415;MpKslc1c1a415; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{023D1A6E-1B48-4A08-9EED-7CC6EE9253AD}\MpKslc1c1a415.sys []
S1 MpKslc246cb64;MpKslc246cb64; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5C9E71F3-F027-4ACE-A503-97E7DFD41265}\MpKslc246cb64.sys []
S1 MpKslc28414c0;MpKslc28414c0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{07CB2E2E-178D-4749-BB14-D3496048F3E5}\MpKslc28414c0.sys []
S1 MpKslc33f34e0;MpKslc33f34e0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F2E3E1F2-150D-4CAD-923F-A06971F6538A}\MpKslc33f34e0.sys []
S1 MpKslc4ec53f2;MpKslc4ec53f2; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5C9E71F3-F027-4ACE-A503-97E7DFD41265}\MpKslc4ec53f2.sys []
S1 MpKslc5c707a8;MpKslc5c707a8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{0165A17C-EFC0-4BDC-AFBF-DABC668B1FB8}\MpKslc5c707a8.sys []
S1 MpKslc6161272;MpKslc6161272; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7877F0D6-54D2-48A4-9510-953814428CE7}\MpKslc6161272.sys []
S1 MpKslc7819899;MpKslc7819899; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E7E4E00-1BD7-429C-96CA-01D4440CFEF8}\MpKslc7819899.sys []
S1 MpKslca687dcd;MpKslca687dcd; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AE73268A-3111-462D-8EC7-995572CAFF44}\MpKslca687dcd.sys []
S1 MpKslcc016dd3;MpKslcc016dd3; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{FC87C245-7D12-4DBE-9A59-F0E05ECF2CC4}\MpKslcc016dd3.sys []
S1 MpKslccc9332c;MpKslccc9332c; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{354E5BF1-2B3C-4DAC-841F-A204D83768BA}\MpKslccc9332c.sys []
S1 MpKslcd5e7167;MpKslcd5e7167; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D33E9E06-5514-42B4-8DED-7AEF8D9623FF}\MpKslcd5e7167.sys []
S1 MpKslcd93d46f;MpKslcd93d46f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D7C5C95D-3662-47FF-B6F0-1268263B80E5}\MpKslcd93d46f.sys []
S1 MpKslce8cbb5e;MpKslce8cbb5e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{FC87C245-7D12-4DBE-9A59-F0E05ECF2CC4}\MpKslce8cbb5e.sys []
S1 MpKslcf11d51c;MpKslcf11d51c; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1C7CB1EA-9484-45C4-92C1-32E6CC7497CB}\MpKslcf11d51c.sys []
S1 MpKslcf24d7d1;MpKslcf24d7d1; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4FB8A0E2-C202-4B1B-A04F-A9709B92194C}\MpKslcf24d7d1.sys []
S1 MpKslcf7ba108;MpKslcf7ba108; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D33E9E06-5514-42B4-8DED-7AEF8D9623FF}\MpKslcf7ba108.sys []
S1 MpKslcf9ae365;MpKslcf9ae365; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6E732FF2-C720-4253-8F4B-35ACBB84B9E8}\MpKslcf9ae365.sys []
S1 MpKslcfa6f5fc;MpKslcfa6f5fc; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{07CB2E2E-178D-4749-BB14-D3496048F3E5}\MpKslcfa6f5fc.sys []
S1 MpKsld102e2a9;MpKsld102e2a9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{354E5BF1-2B3C-4DAC-841F-A204D83768BA}\MpKsld102e2a9.sys []
S1 MpKsld1683a8d;MpKsld1683a8d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{9ADE3A36-7737-471C-9361-F6708E77AEEC}\MpKsld1683a8d.sys []
S1 MpKsld18782d7;MpKsld18782d7; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{A62CF71F-54C5-42E8-B74C-7B4E900FBD70}\MpKsld18782d7.sys []
S1 MpKsld34c6d5c;MpKsld34c6d5c; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{47A9582D-5544-4436-89E6-0570A323BF8D}\MpKsld34c6d5c.sys []
S1 MpKsld59848fa;MpKsld59848fa; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B717ACC6-B41A-415E-80A6-C3D86348A097}\MpKsld59848fa.sys []
S1 MpKsld8846f7a;MpKsld8846f7a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B74B38BF-BEDE-46D8-BA15-860A8600FD45}\MpKsld8846f7a.sys []
S1 MpKsld938ff45;MpKsld938ff45; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B74B38BF-BEDE-46D8-BA15-860A8600FD45}\MpKsld938ff45.sys []
S1 MpKsldad5b24f;MpKsldad5b24f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B74B38BF-BEDE-46D8-BA15-860A8600FD45}\MpKsldad5b24f.sys []
S1 MpKsldcfeb20e;MpKsldcfeb20e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F2E3E1F2-150D-4CAD-923F-A06971F6538A}\MpKsldcfeb20e.sys []
S1 MpKsldd4afe53;MpKsldd4afe53; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{E8F0B4D5-B24C-44DD-8D99-34BCABD0B824}\MpKsldd4afe53.sys []
S1 MpKsldf634b63;MpKsldf634b63; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{90F3C8DF-5B73-4236-B310-D704F71A47FD}\MpKsldf634b63.sys []
S1 MpKsle1a5e264;MpKsle1a5e264; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{CD19DE2B-4A9B-4546-8728-F6D2F5CE983D}\MpKsle1a5e264.sys []
S1 MpKsle2cabee2;MpKsle2cabee2; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DD7DF0D4-7ED5-4F73-98AF-4E83E20D5E21}\MpKsle2cabee2.sys []
S1 MpKsle535c60d;MpKsle535c60d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{34E87A36-E4F6-47C7-8B9B-C1B6F1B1B062}\MpKsle535c60d.sys []
S1 MpKsle6d64530;MpKsle6d64530; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F2E3E1F2-150D-4CAD-923F-A06971F6538A}\MpKsle6d64530.sys []
S1 MpKsle8ac2b56;MpKsle8ac2b56; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2F747109-7FD2-44A8-AFC5-D71A2DB297C6}\MpKsle8ac2b56.sys []
S1 MpKsle8ca09b3;MpKsle8ca09b3; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{8C94133E-BED8-4C47-8170-DB6588D9A321}\MpKsle8ca09b3.sys []
S1 MpKsle94b037d;MpKsle94b037d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D27C7D50-B3DE-4AF0-9B0E-2FBEEA73B068}\MpKsle94b037d.sys []
S1 MpKsle9e8aed0;MpKsle9e8aed0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{557B438C-A85F-4A6E-9B57-095C303541DC}\MpKsle9e8aed0.sys []
S1 MpKsle9f7f806;MpKsle9f7f806; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D48C496C-C9F7-42E5-AF77-44D6BA9DC50C}\MpKsle9f7f806.sys []
S1 MpKsleb161be5;MpKsleb161be5; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{478183BC-3693-4527-AFEF-93A8D6FFD5D0}\MpKsleb161be5.sys []
S1 MpKslebe2d904;MpKslebe2d904; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{028E9B32-0D4A-4227-B433-1CB376296787}\MpKslebe2d904.sys []
S1 MpKslef15213d;MpKslef15213d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1D6F6C4E-3908-4797-BE0C-F2A728CAB5A8}\MpKslef15213d.sys []
S1 MpKslefe9af34;MpKslefe9af34; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{59942B0E-38BA-44CB-87B2-B7E7AC8AF71F}\MpKslefe9af34.sys []
S1 MpKslf05f4b37;MpKslf05f4b37; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{FD8850F2-A45D-43AA-AFAE-A3CB1DC8AC38}\MpKslf05f4b37.sys []
S1 MpKslf065172a;MpKslf065172a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C6901A14-608E-4857-8590-F1803EE07AE9}\MpKslf065172a.sys []
S1 MpKslf247f492;MpKslf247f492; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BEDC7531-9581-4734-AB9C-83076B47FE13}\MpKslf247f492.sys []
S1 MpKslf46b58bb;MpKslf46b58bb; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{713B62A4-D050-468D-B1EF-7F7CCEDC3F0C}\MpKslf46b58bb.sys []
S1 MpKslfa3143be;MpKslfa3143be; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BE42CA78-2864-41AF-93B8-39DA01EFBB04}\MpKslfa3143be.sys []
S1 MpKslfaa66f38;MpKslfaa66f38; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{947537FE-264B-4A0E-A08C-61B8C0722725}\MpKslfaa66f38.sys []
S1 MpKslfaed7041;MpKslfaed7041; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{424D84D0-DD71-4411-83CA-F2A143876F72}\MpKslfaed7041.sys []
S1 MpKslfd06853c;MpKslfd06853c; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{43439994-F22F-4CF6-9A97-FB897BE07079}\MpKslfd06853c.sys []
S1 MpKslfd432883;MpKslfd432883; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{914D618B-84EC-4D5F-9083-7345F53F4E36}\MpKslfd432883.sys []
S1 MpKslfda01336;MpKslfda01336; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BC41A94B-97D4-4A7A-95E8-B2EA670D67B3}\MpKslfda01336.sys []
S1 MpKslffa8347f;MpKslffa8347f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7A4D0CBB-2F54-432C-B533-13B5AEF13DF4}\MpKslffa8347f.sys []
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2006-03-20 3960000]
S3 EagleNT;EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys []
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 NTACCESS;NTACCESS; \??\E:\NTACCESS.sys []
S3 SetupNTGLM7X;SetupNTGLM7X; \??\E:\NTGLM7X.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2011-08-12 116608]
R2 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2010-04-14 73728]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-07-07 602112]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-08-23 153376]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2010-11-11 11736]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím pomoc! (+popř.kontrola)

#5 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do leváhookna zkopírujte:

Řešení pro 1. log:
:files
C:\Program Files (x86)\Skype\Toolbars

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na MoveIt!. PC bude restartován.

Řešení pro 2. log - log je OK, není třeba čistit

Po akci ještě u obou PC proveďte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte logy. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

hewi
Návštěvník
Návštěvník
Příspěvky: 118
Registrován: 06 črc 2011 16:24

Re: Prosím pomoc! (+popř.kontrola)

#6 Příspěvek od hewi »

:arrow: PRVNÍ LOG: OTM provedeno u prvního logu - po restartu se na ploše objevily nějaké dva soubory desktop.ini (2x jsou stejné a průhledné-jakoby neviditelné ale jsou vidět, nevím proč - Nechci to tam, co stím mám provést? )

Zde je mbam-log :

Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

Verze databáze: 911122501

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

25.12.2011 20:45:59
mbam-log-2011-12-25 (20-45-59).txt

Typ: Rychlá kontrola
Kontrolované objekty: 171151
Uplynulý čas: 2 minut, 2 sekund

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 0

Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)

Přebíhám na druhý PC abych provedl mbam-log i na druhém PC ...

hewi
Návštěvník
Návštěvník
Příspěvky: 118
Registrován: 06 črc 2011 16:24

Re: Prosím pomoc! (+popř.kontrola)

#7 Příspěvek od hewi »

:arrow: DRUHÝ LOG: Zde je mbam-log druhého PC. Díky.

Malwarebytes' Anti-Malware
www.malwarebytes.org

Verze databáze:

Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180

25.12.2011 20:54:49
mbam-log-2011-12-25 (20-54-49).txt

Typ: Rychlá kontrola
Kontrolované objekty: 150304
Uplynulý čas: 3 minut, 7 sekund

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 0

Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)

Infikované soubory:
(Žádné škodlivé položky nebyly zjištěny)

hewi
Návštěvník
Návštěvník
Příspěvky: 118
Registrován: 06 črc 2011 16:24

Re: Prosím pomoc! (+popř.kontrola)

#8 Příspěvek od hewi »

►vracím se ještě k tomu :arrow: prvnímu logu, nebo-li prvnímu řešení., tak jsem na to došel stačilo jen v možnosti složek v nastavení přepnout místo zobrazovat na ,,nezobrazovat skryté soubory a složky"
►tak tedy by to mělo být vše OK ne ?
►A jak to je tedy s tou stránkou? http://rbls.org/ ? Zadam svou IP adresu dam search, a mam tam nejake cervene kolonky,pak bile a zelene. Cetl jsem ze pokud se tam zobrazuje stále cervena jsem nejspise spammer. Zelene a bile jsou vporadku. Co stím :) ?
Mám to ignorovat? Psal jsem poskytovateli internetu (AVONETu), ze jsem provedl kompletni sken obou PC a melo by byt vse vporadku. Jen ta stranka me zneklidnuje. Nekteri tam cervenou taky maji a nemaji zadne problemy. Nekteri ji tam nemaji vubec.
Tak me napada je ta stranka opravdu rozhodujici? Dle mého si to nemyslim. Pockam na vyjadreni AVONETu a dám vědět...
Přesto bych rád vědel i Váš názor.
Děkuji Martin.....

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím pomoc! (+popř.kontrola)

#9 Příspěvek od Rudy »

Zkuste použit Superantispyware: http://www.stahuj.centrum.cz/utility_a_ ... tispyware/ . Nainstalujte, updatujte, proveďte sken a smažte vše, co najde.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

hewi
Návštěvník
Návštěvník
Příspěvky: 118
Registrován: 06 črc 2011 16:24

Re: Prosím pomoc! (+popř.kontrola)

#10 Příspěvek od hewi »

SUPERAntispyware proveden u obou počítačů. :)
Žádné problémy, nebylo co mazat. :)

:arrow: ► !! Teď me napadá jedna věc :shock: , kde by ještě mohl být problém. Bratr studuje na VŠ a zrovna náhodou si předminulý týden po dlouhé době dovezl NTB, aby ho mohl přes svátky používat doma - normálně ho nemíval, nechával ho na ubytovně, ale protože já jsem WIFI nainstaloval před dvěma týdny tak mě napadlo, že on zkoušel se připojit na NTB na wifinu a mohl ho mít napadený virem. Tím pádem tam je ten možná hlavní problém.... se divím, že mě to nenapadlo ! Pořád řeším oba dva naše PC, ale na ten třetí jsem zapomněl !

Jakmile dojde dojde domů, zeptám se ho zda se připojoval nebo ne, pokud ANO okamžitě posílam log z rsit musí se to nechat prosím prověřit :!: :!: :!:
AVONET uváděl, že pokud se to nevyřeší a budu to mět stále v nepořádku hrozí sankcí !!! :( :( :!: :cry:

Jinak děkuji za pomoc :) hezký zbytek večera ... :)

PS.: máte nějaký názor na tu stránku co sem uváděl na předchozím příspěvku?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím pomoc! (+popř.kontrola)

#11 Příspěvek od Rudy »

Ten NB by rozhodně nebylo od věci zkontrolovat. Na tu stránku nemám názor nijaký, neznám ji a co se týká těch sankcí, musel by vám dokázat že jste to právě vy a váš PC, kkdo škodí. V opačném případě je to právně napadnutelné.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

hewi
Návštěvník
Návštěvník
Příspěvky: 118
Registrován: 06 črc 2011 16:24

Re: Prosím pomoc! (+popř.kontrola)

#12 Příspěvek od hewi »

On mi jen oznámil, že je to z mojí IP adresy. WIFI je zabezpečená kromě nás se tam nikdo určitě nepřipojuje !
Musí mi dokázat i ze kterého PC to bylo ? PC neví, ví jen IP .... což skoro není důkaz, IP se dá zjistit kdekoliv.... ne? Ráno doložím log ještě ze třetího NB a pokud bude vpořádku tak to z mé strany bude vše :)
Děkuji za dnešní pomoc, za váš čas a doufám že to zítra dorazíme. :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím pomoc! (+popř.kontrola)

#13 Příspěvek od Rudy »

OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

hewi
Návštěvník
Návštěvník
Příspěvky: 118
Registrován: 06 črc 2011 16:24

Re: Prosím pomoc! (+popř.kontrola)

#14 Příspěvek od hewi »

:arrow: TŘETÍ LOG: Prosím o kontrolu NB mého bratra.

Jelikož to moc nečistil... očekávám, že s tím bude dost práce...

Logfile of random's system information tool 1.09 (written by random/random)
Run by Marek at 2011-12-26 12:32:46
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 40 GB (72%) free of 55 GB
Total RAM: 2047 MB (71% free)

HijackThis download failed

======Scheduled tasks folder======

C:\WINDOWS\tasks\MP Scheduled Scan.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{12676AB2-7A87-63D7-36D9-6EB22DD3A7E9}]
c:\windows\system32\vwwtmqkv.dll [2011-12-21 804352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-15 62376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]
QIPBHO Class - C:\Documents and Settings\Marek\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll [2010-12-13 141184]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HControl"=C:\WINDOWS\ATK0100\HControl.exe [2006-10-14 139264]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-04-10 16889856]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 98304]
"nwiz"=nwiz.exe /installquiet []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2009-11-20 110184]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-11-20 12669544]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2006-11-03 866584]
"VirtualCloneDrive"=C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2008-06-29 52168]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2010-11-30 997408]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe [2010-11-15 35736]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2011-03-17 102400]
"i6g8xs"=C:\Documents and Settings\Marek\Data aplikací\i6g8xs.exe [2011-11-07 77824]
"7z4u1v4b42"=C:\Documents and Settings\All Users\7z4u1v4b42.exe [2011-11-07 43520]
"dfqfalbr"=C:\Documents and Settings\Marek\jylzhhb.exe [2011-11-07 140288]
"ivmkexmw"=C:\Documents and Settings\Marek\yabqtkft.exe [2011-11-07 133120]
"rgbcoxic"=C:\WINDOWS\System32\rgbcoxic.exe [2011-12-21 77824]
"tqyvbwvce"=C:\WINDOWS\system32\config\system [2011-12-26 5767168]
"ziz8t0ed76"=C:\Documents and Settings\All Users\ziz8t0ed76.exe [2011-12-20 43520]
"Regedit32"=C:\WINDOWS\system32\regedit.exe []
"userini"=C:\WINDOWS\explorer.exe [2011-12-25 1061888]
"smwcore"=C:\WINDOWS\system32\aaclient.exe [2011-12-20 322560]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"jzv9"=C:\DOCUME~1\Marek\LOCALS~1\Temp\f1ku.exe [2011-12-21 68608]
"userini"=C:\WINDOWS\explorer.exe [2011-12-25 1061888]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 43008]
"QIP Internet Guardian"=C:\Documents and Settings\Marek\Data aplikací\QipGuard\QipGuard.exe [2010-12-13 187776]
"7z4u1v4b42"=C:\Documents and Settings\Marek\7z4u1v4b42.exe [2011-11-07 43520]
"Adobe Reader Synchronizer"=C:\Program Files\Adobe\Reader 10.0\Reader\AdobeCollabSync.exe [2010-11-15 1216416]
"System External"=RunDll32 C:\Program Files\Common Files\perflsa.dll,Init []
"tcpudp"=C:\WINDOWS\BN3.tmp [2011-12-24 91648]
"mssrv"=C:\DOCUME~1\Marek\LOCALS~1\Temp\mssrv-1720B-5C82C-7FF90BFE.exe [2011-12-20 38912]
"ziz8t0ed76"=C:\Documents and Settings\Marek\ziz8t0ed76.exe [2011-12-20 43520]
"userini"=C:\WINDOWS\system32\userini.exe [2011-12-25 76564]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"userini"=C:\WINDOWS\system32\userini.exe [2011-12-25 76564]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth Manager.lnk - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe

C:\Documents and Settings\Marek\Nabídka Start\Programy\Po spuštění
0lw6h1i.exe
0xtoo6a.exe
1j70fbb.exe
3ejfvvr.exe
5fgg3si.exe
6g821t6.exe
9hiydee.exe
9i1eaav.exe
a1wssnee.exe
a3hciyzp.exe
albx1i768g.exe
f0lhcc6oo.exe
fwwriidu.exe
ggbssneezq.exe
kv8mnnyzpf.exe
lg1cnyo3qq.exe
lhcc6oo6.exe
m70njee6q.exe
mmhyytkk.exe
qgm5n08ppv.exe
u3wwriiduup.exe
yopu81g3xn.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Program Files\Common Files\SpeechEngines\Microsoft\hostmsms.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-04-27 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"=C:\PROGRA~1\WIFD1F~1\MpShHook.dll [2006-11-03 83224]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
nwprovau

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, msqqbfsx.dll, C:\DOCUME~1\Marek\DATAAP~1\tvrbiolc.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\noqlebfj]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\pvmqljch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\noqlebfj]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\pvmqljch]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"Shell"=explorer.exe,RunDll32 "C:\WINDOWS\system32\lsaloget.dll",Init

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"\??\C:\WINDOWS\system32\winlogon.exe"="\??\C:\WINDOWS\system32\winlogon.exe:*:enabled:@shell32.dll,-1"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\Documents and Settings\Marek\Data aplikací\i6g8xs.exe"="C:\Documents and Settings\Marek\Data aplikací\i6g8xs.exe:*:Enabled:i6g8xs.exe"
"C:\Program Files\QIP 2010\qip.exe"="C:\Program Files\QIP 2010\qip.exe:*:Enabled:QIP 2010"
"%windir%\system32\rundll32.exe"="%windir%\system32\rundll32.exe:*:Enabled:Run a DLL as an App"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.scr - open - "C:\WINDOWS\system32\notepad.exe" "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2011-12-26 12:32:49 ----D---- C:\Program Files\trend micro
2011-12-26 12:32:46 ----D---- C:\rsit
2011-12-25 18:33:46 ----A---- C:\WINDOWS\system32\userini.exe
2011-12-24 16:29:51 ----SH---- C:\WINDOWS\system32\lsaloget.dll
2011-12-24 16:29:51 ----SH---- C:\Program Files\Common Files\perflsa.dll
2011-12-24 14:54:30 ----AH---- C:\WINDOWS\BN3.tmp
2011-12-21 19:06:01 ----A---- C:\WINDOWS\system32\drivers\pvmqljch.sys
2011-12-21 19:04:44 ----A---- C:\WINDOWS\system32\drivers\828.exe
2011-12-21 19:04:15 ----AH---- C:\WINDOWS\BN1.tmp
2011-12-21 14:11:33 ----A---- C:\WINDOWS\system32\vwwtmqkv.dll
2011-12-21 14:10:27 ----AH---- C:\WINDOWS\BN2.tmp
2011-12-21 14:09:52 ----SH---- C:\WINDOWS\system32\svcsrvup.dll
2011-12-21 14:09:51 ----SH---- C:\Program Files\Common Files\msperfet.dll
2011-12-20 20:20:23 ----SH---- C:\Program Files\Common Files\msperf.dll
2011-12-20 20:20:23 ----SH---- C:\Program Files\Common Files\etperfms.dll
2011-12-20 20:20:20 ----SH---- C:\WINDOWS\system32\perfetms.dll
2011-12-20 19:27:12 ----A---- C:\WINDOWS\system32\aaclient.exe
2011-12-20 19:26:35 ----AH---- C:\WINDOWS\BN6.tmp
2011-12-19 19:35:07 ----D---- C:\WINDOWS\system32\LogFiles
2011-12-19 19:33:53 ----SH---- C:\WINDOWS\msupup.dll
2011-12-19 19:33:53 ----SH---- C:\WINDOWS\lsalogup.dll
2011-12-19 18:32:28 ----SH---- C:\WINDOWS\system32\perfhost.dll
2011-12-19 18:32:28 ----SH---- C:\Program Files\Common Files\etlogsrv.dll
2011-12-19 18:17:46 ----AH---- C:\WINDOWS\BN5.tmp
2011-12-19 18:16:50 ----A---- C:\WINDOWS\system32\rgbcoxic.exe
2011-12-19 18:16:46 ----A---- C:\WINDOWS\system32\AcSignExtRes.exe
2011-12-19 14:12:02 ----SH---- C:\Program Files\Common Files\perfsrv.dll
2011-11-29 21:38:52 ----D---- C:\temp
2011-11-29 21:28:18 ----D---- C:\ovladace ntb

======List of files/folders modified in the last 1 month======

2011-12-26 12:32:49 ----RD---- C:\Program Files
2011-12-26 12:32:47 ----D---- C:\WINDOWS\Temp
2011-12-26 11:57:17 ----SD---- C:\WINDOWS\Tasks
2011-12-26 11:52:40 ----D---- C:\WINDOWS\system32\CatRoot2
2011-12-26 11:52:21 ----SHD---- C:\System Volume Information
2011-12-25 18:33:46 ----D---- C:\WINDOWS\system32
2011-12-25 18:32:48 ----HD---- C:\WINDOWS\inf
2011-12-25 10:09:32 ----A---- C:\WINDOWS\explorer.exe
2011-12-25 10:03:09 ----D---- C:\WINDOWS\system32\Restore
2011-12-24 16:30:29 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-12-24 16:29:56 ----D---- C:\WINDOWS\twain_32
2011-12-24 16:29:56 ----D---- C:\WINDOWS\system32\wins
2011-12-24 16:29:51 ----D---- C:\Program Files\Common Files
2011-12-24 14:57:57 ----D---- C:\WINDOWS\Prefetch
2011-12-24 14:54:30 ----D---- C:\WINDOWS
2011-12-24 14:54:15 ----RSD---- C:\WINDOWS\assembly
2011-12-24 14:54:15 ----D---- C:\WINDOWS\system32\3076
2011-12-21 19:06:01 ----D---- C:\WINDOWS\system32\drivers
2011-12-20 20:22:15 ----D---- C:\WINDOWS\system32\usmt
2011-12-20 20:22:15 ----D---- C:\WINDOWS\system32\1037
2011-12-20 20:20:20 ----D---- C:\Program Files\Common Files\Autodesk Shared
2011-12-20 19:25:50 ----D---- C:\WINDOWS\system32\xircom
2011-12-19 18:17:06 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-12-19 18:16:46 ----SHD---- C:\RECYCLER
2011-12-19 13:53:24 ----D---- C:\Documents and Settings\Marek\Data aplikací\QIP
2011-12-19 13:53:12 ----D---- C:\Program Files\QIP 2010

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2008-07-21 24392]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
R1 MpKslff7c70c5;MpKslff7c70c5; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{0ADEDD49-92DA-45DB-B6A3-04868CFDD6D9}\MpKslff7c70c5.sys []
R1 Tosrfcom;Bluetooth RFCOMM; C:\WINDOWS\System32\Drivers\tosrfcom.sys [2007-05-24 64000]
R2 NwlnkIpx;Transportní protokol kompatibilní s NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2008-04-14 88320]
R2 NwlnkNb;Služba NWLink pro rozhraní NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2001-10-25 63232]
R2 NwlnkSpx;Protokol NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2001-10-25 55936]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-27 60800]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IFXTPM;IFXTPM; C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS [2008-07-23 44800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-04-17 4707328]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2007-08-28 5760]
R3 NETw5x32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows XP 32 Bit; C:\WINDOWS\system32\DRIVERS\NETw5x32.sys [2009-10-26 4221952]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-27 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-11-21 10235968]
R3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2008-04-14 163584]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-14 79232]
R3 tosporte;Bluetooth COM Port; C:\WINDOWS\system32\DRIVERS\tosporte.sys [2006-10-10 41600]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
R3 VClone;VClone; C:\WINDOWS\system32\DRIVERS\VClone.sys [2008-09-24 29184]
S2 pvmqljch;pvmqljch; C:\WINDOWS\system32\drivers\pvmqljch.sys [2011-12-21 96768]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 sffdisk;Ovladač třídy úložiště SFF; C:\WINDOWS\system32\DRIVERS\sffdisk.sys [2008-04-14 11904]
S3 sffp_sd;Ovladač protokolu úložiště SFF pro paměť sběrnici SDBus; C:\WINDOWS\system32\DRIVERS\sffp_sd.sys [2008-04-14 11008]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 tosrfbd;Bluetooth RFBUS; C:\WINDOWS\system32\DRIVERS\tosrfbd.sys [2007-04-24 113920]
S3 tosrfbnp;Bluetooth RFBNEP; C:\WINDOWS\System32\Drivers\tosrfbnp.sys [2006-11-20 36480]
S3 Tosrfhid;Bluetooth RFHID; C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys [2007-03-01 73728]
S3 tosrfnds;Bluetooth Personal Area Network; C:\WINDOWS\system32\DRIVERS\tosrfnds.sys [2005-01-06 18612]
S3 TosRfSnd;Bluetooth Audio; C:\WINDOWS\system32\drivers\tosrfsnd.sys [2007-01-22 53376]
S3 tosrfusb;Bluetooth USB Controller; C:\WINDOWS\system32\DRIVERS\tosrfusb.sys [2007-06-11 41856]
S3 USBCM;Scientific-Atlanta USB Cable Modem Driver; C:\WINDOWS\system32\DRIVERS\Sacm2A.sys [2004-06-10 15429]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-04-27 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-04-27 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2010-11-11 11736]
R2 MSSQL$AUTODESKVAULT;SQL Server (AUTODESKVAULT); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-01-22 29178224]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-11-20 154216]
R2 NWCWorkstation;Klient systému NetWare; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 ocvgmkwp;Scientific-Atlanta USB Cable Modem Monitor; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2007-02-25 125048]
S2 MouseDriver;MouseDriver; C:\Documents and Settings\Marek\Data aplikací\MouseDriver.bat [2011-11-07 103]
S2 WinDefend;Windows Defender; C:\Program Files\Windows Defender\MsMpEng.exe [2006-11-03 13592]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2011-04-11 85096]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2006-10-20 65536]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2006-10-30 770048]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 941568]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2008-01-22 45272]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2006-10-30 151552]
S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-01-22 242544]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím pomoc! (+popř.kontrola)

#15 Příspěvek od Rudy »

Tak tenhle je zaplevelený až, až. Poprosím o log ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět