Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prehliadače

Návody, recenze, diskuze, řešení problémů

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
Pattie
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 22 zář 2012 09:56

Prehliadače

#1 Příspěvek od Pattie »

dobrý deň, potrebujem pomoc, v PC mi nefungujú prehliadače,, jediný funkčný je opera. mozilla, chrome ani explorer nejdú. keď ich chcem otvoriť spraví ako keby sa načítavali a potom nič. čím to je ? ďakujem.

Uživatelský avatar
Marek-26
Přítel fóra
Přítel fóra
Příspěvky: 1000
Registrován: 16 pro 2006 15:53
Bydliště: Brüx/Praha

Re: Prehliadače

#2 Příspěvek od Marek-26 »

Dobrý den,

jak dlouho toto systém dělá? Vložte prosím log z RSIT (odkaz naleznete v mém podpisu).

Pattie
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 22 zář 2012 09:56

Re: Prehliadače

#3 Příspěvek od Pattie »

robí to takmer deň, možno by to mohlo byť kvôli tomu že mi to začalo robiť keď mi antivírus vyhodil zablokovaný malware...

Logfile of random's system information tool 1.09 (written by random/random)
Run by Paťa at 2012-09-22 13:09:04
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 9 GB (17%) free of 51 GB
Total RAM: 4009 MB (61% free)


======Scheduled tasks folder======

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2656471373-4178824349-1537950947-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2656471373-4178824349-1537950947-1000UA.job
C:\Windows\tasks\GBoxUpdaterTask{903600F7-E01C-4075-A0F6-483D4F16C044}.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2656471373-4178824349-1537950947-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2656471373-4178824349-1537950947-1000UA.job
C:\Windows\tasks\HP Photo Creations Messager.job
C:\Windows\tasks\OptimizerPro1UpdaterTask{B014166D-D57A-466F-81EF-EB8BA3762F33}.job
C:\Windows\tasks\WxDFastUpdaterTask{AD6E9E97-BA47-4584-9DDF-4A0A5C56F834}.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Paťa\AppData\Roaming\Mozilla\Firefox\Profiles\ngmneb9f.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://search.gboxapp.com/"
prefs.js - "keyword.URL" - "http://search.gboxapp.com/?q="

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
npCouponPrinter.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
npCouponPrinter.dll
npMozCouponPrinter.dll
nppdf32.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
Search_Results.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Users\Paťa\AppData\Roaming\Mozilla\Firefox\Profiles\ngmneb9f.default\extensions\
ffxtlbr@babylon.com
staged
{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}
{99079a25-328f-4bd4-be04-00955acaa0a7}

C:\Users\Paťa\AppData\Roaming\Mozilla\Firefox\Profiles\ngmneb9f.default\searchplugins\
4sharedcom-customized-web-search.xml
BabylonMngr.xml
GadgetBox.xml
Search_Results.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}]
4shared.com Toolbar - C:\Program Files (x86)\4shared.com\prxtb4sha.dll [2011-05-09 176936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-30 75232]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - D:\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~3\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}]
Searchqu Toolbar - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll [2012-02-27 88976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4f12-8568-69135F087DB0}]
DataMngr - C:\PROGRA~2\SEARCH~1\Datamngr\BROWSE~1.DLL [2012-08-06 89016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-08-25 192144]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
{99079a25-328f-4bd4-be04-00955acaa0a7} - Searchqu Toolbar - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll [2012-02-27 88976]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-08-25 192144]
{09ec805c-cb2e-4d53-b0d3-a75a428b81c7} - 4shared.com Toolbar - C:\Program Files (x86)\4shared.com\prxtb4sha.dll [2011-05-09 176936]
{D0F4A166-B8D4-48b8-9D63-80849FE137CB}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IndicatorUtility"=C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe [2010-09-30 48752]
"snp2uvc"=C:\Windows\vsnp2uvc.exe [2009-08-13 662016]
"UCam_Menu"=C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"YouCam Mirror Tray icon"=C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2009-07-08 162912]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-08-21 4282728]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"DATAMNGR"=C:\PROGRA~2\SEARCH~1\Datamngr\DATAMN~1.EXE [2012-08-06 1890744]
"RemoteDesktopManager"=C:\Program Files (x86)\Devolutions\Remote Desktop Manager\RemoteDesktopManager.exe [2012-03-16 5820192]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-01-12 49208]
""= []
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-07-31 38872]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-11 919008]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"KiesTrayAgent"=C:\Program Files (x86)\Samsung\Kies\/\KiesTrayAgent.exe [2010-01-28 3404600]
"Facebook Update"=C:\Users\Paťa\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver []
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2012-07-13 17420464]
"Google Update"=C:\Users\Paťa\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-15 116648]

C:\Users\Paťa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Monitor Ink Alerts - HP Deskjet 3050A J611 series.lnk - C:\Windows\system32\RunDll32.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="c:\progra~3\browse~1\22643~1.41\{16cdf~1\browse~1.dll c:\progra~2\sprote~1\sprote~1.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~3\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"msacm.siren"=sirenacm.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-09-22 12:58:37 ----D---- C:\rsit
2012-09-22 12:58:37 ----D---- C:\Program Files (x86)\trend micro
2012-09-22 11:24:10 ----D---- C:\Users\Paťa\AppData\Roaming\Malwarebytes
2012-09-22 11:23:58 ----A---- C:\Windows\SysWOW64\drivers\mbamswissarmy.sys
2012-09-22 11:23:56 ----D---- C:\ProgramData\Malwarebytes
2012-09-22 11:23:52 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-09-22 10:40:19 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2012-09-22 08:52:54 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2012-09-22 08:52:52 ----A---- C:\Windows\SysWOW64\vbscript.dll
2012-09-22 08:52:51 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2012-09-22 08:52:51 ----A---- C:\Windows\SysWOW64\ieui.dll
2012-09-22 08:52:50 ----A---- C:\Windows\SysWOW64\url.dll
2012-09-22 08:52:49 ----A---- C:\Windows\SysWOW64\urlmon.dll
2012-09-22 08:52:46 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2012-09-22 08:52:45 ----A---- C:\Windows\SysWOW64\wininet.dll
2012-09-22 08:52:42 ----A---- C:\Windows\SysWOW64\jscript9.dll
2012-09-22 08:52:42 ----A---- C:\Windows\SysWOW64\jscript.dll
2012-09-22 08:52:40 ----A---- C:\Windows\SysWOW64\iertutil.dll
2012-09-22 08:52:39 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2012-09-22 08:52:38 ----A---- C:\Windows\SysWOW64\mshtml.dll
2012-09-22 08:52:32 ----A---- C:\Windows\SysWOW64\ieframe.dll
2012-09-21 20:03:14 ----D---- C:\Program Files (x86)\SProtector
2012-09-21 20:02:35 ----D---- C:\Program Files (x86)\Optimizer Pro
2012-09-21 20:02:01 ----D---- C:\ProgramData\Premium
2012-09-21 19:59:58 ----D---- C:\ProgramData\InstallMate
2012-09-21 19:55:23 ----D---- C:\ProgramData\Browser Manager
2012-09-21 19:55:10 ----A---- C:\user.js
2012-09-21 19:54:47 ----D---- C:\Users\Paťa\AppData\Roaming\YourFileDownloader
2012-09-18 21:31:11 ----D---- C:\Users\Paťa\AppData\Roaming\Skype
2012-09-18 21:31:02 ----RD---- C:\Program Files (x86)\Skype
2012-09-18 21:31:02 ----D---- C:\Program Files (x86)\Common Files\Skype
2012-09-18 21:30:58 ----D---- C:\ProgramData\Skype
2012-09-13 13:34:12 ----D---- C:\Program Files (x86)\Adobe
2012-09-11 22:08:35 ----D---- C:\Program Files (x86)\Conduit
2012-09-11 22:08:32 ----D---- C:\Program Files (x86)\4shared.com
2012-09-11 22:07:35 ----D---- C:\ProgramData\McAfee
2012-09-11 22:07:32 ----D---- C:\ProgramData\4Sync
2012-09-06 21:41:19 ----D---- C:\Program Files (x86)\Bing Bar Installer
2012-09-06 21:41:15 ----D---- C:\ProgramData\HP Photo Creations
2012-09-06 21:41:15 ----D---- C:\Program Files (x86)\HP Photo Creations
2012-09-06 21:40:55 ----D---- C:\Program Files (x86)\Coupons
2012-09-06 21:40:45 ----D---- C:\Users\Paťa\AppData\Roaming\HpUpdate
2012-09-06 21:39:36 ----D---- C:\ProgramData\HP
2012-09-06 21:39:34 ----D---- C:\Program Files (x86)\HP
2012-09-06 21:38:09 ----A---- C:\ProgramData\Ament.ini
2012-08-30 16:49:46 ----D---- C:\Windows\Minidump
2012-08-29 20:00:09 ----A---- C:\Windows\SysWOW64\HMIPCore.dll
2012-08-27 14:03:19 ----D---- C:\Program Files (x86)\Devolutions
2012-08-26 22:47:28 ----D---- C:\Users\Paťa\AppData\Roaming\Dev-Cpp
2012-08-26 21:32:54 ----D---- C:\Users\Paťa\AppData\Roaming\C-Free
2012-08-26 21:32:54 ----D---- C:\ProgramData\C-Free
2012-08-25 20:44:54 ----D---- C:\Users\Paťa\AppData\Roaming\Macromedia
2012-08-25 20:44:54 ----D---- C:\Users\Paťa\AppData\Roaming\Adobe
2012-08-25 20:44:22 ----A---- C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-08-25 10:43:54 ----D---- C:\Windows\SysWOW64\Wat
2012-08-25 01:19:56 ----A---- C:\Windows\SysWOW64\wintrust.dll
2012-08-25 01:19:56 ----A---- C:\Windows\SysWOW64\imagehlp.dll
2012-08-25 01:19:55 ----A---- C:\Windows\SysWOW64\wmi.dll
2012-08-25 01:15:13 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-08-25 01:15:13 ----A---- C:\Windows\SysWOW64\setup16.exe
2012-08-25 01:15:13 ----A---- C:\Windows\SysWOW64\ntvdm64.dll
2012-08-25 01:15:13 ----A---- C:\Windows\SysWOW64\KernelBase.dll
2012-08-25 01:15:13 ----A---- C:\Windows\SysWOW64\kernel32.dll
2012-08-25 01:15:12 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-08-25 01:15:12 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-08-25 01:15:12 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-08-25 01:15:12 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-08-25 01:15:12 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-08-25 01:15:12 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-08-25 01:15:12 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-08-25 01:15:12 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-08-25 01:15:12 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-08-25 01:15:12 ----A---- C:\Windows\SysWOW64\wow32.dll
2012-08-25 01:15:12 ----A---- C:\Windows\SysWOW64\instnm.exe
2012-08-25 01:15:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-08-25 01:15:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-08-25 01:15:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-08-25 01:15:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-08-25 01:15:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-08-25 01:15:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-08-25 01:15:11 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-08-25 01:15:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2012-08-25 01:15:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-25 01:15:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-08-25 01:15:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-08-25 01:15:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-08-25 01:15:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-08-25 01:15:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-08-25 01:15:10 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-08-25 01:15:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-08-25 01:15:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-08-25 01:15:09 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-08-25 01:15:09 ----A---- C:\Windows\SysWOW64\user.exe
2012-08-25 01:14:39 ----A---- C:\Windows\SysWOW64\cryptsvc.dll
2012-08-25 01:14:39 ----A---- C:\Windows\SysWOW64\cryptnet.dll
2012-08-25 01:14:39 ----A---- C:\Windows\SysWOW64\crypt32.dll
2012-08-25 01:14:22 ----A---- C:\Windows\SysWOW64\webio.dll
2012-08-25 01:14:20 ----A---- C:\Windows\SysWOW64\schannel.dll
2012-08-25 01:14:20 ----A---- C:\Windows\SysWOW64\ncrypt.dll
2012-08-25 01:14:19 ----A---- C:\Windows\SysWOW64\sspicli.dll
2012-08-25 01:14:19 ----A---- C:\Windows\SysWOW64\secur32.dll
2012-08-25 01:14:09 ----A---- C:\Windows\SysWOW64\shell32.dll
2012-08-25 01:13:58 ----A---- C:\Windows\SysWOW64\msxml6.dll
2012-08-25 01:13:58 ----A---- C:\Windows\SysWOW64\msxml3r.dll
2012-08-25 01:13:58 ----A---- C:\Windows\SysWOW64\msxml3.dll
2012-08-25 01:13:55 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe
2012-08-25 01:13:55 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe
2012-08-25 01:13:49 ----A---- C:\Windows\SysWOW64\poqexec.exe
2012-08-25 01:13:47 ----A---- C:\Windows\SysWOW64\mfc42u.dll
2012-08-25 01:13:47 ----A---- C:\Windows\SysWOW64\mfc42.dll
2012-08-25 01:13:45 ----A---- C:\Windows\SysWOW64\DWrite.dll
2012-08-25 01:13:44 ----A---- C:\Windows\SysWOW64\psisdecd.dll
2012-08-25 01:13:42 ----A---- C:\Windows\SysWOW64\quartz.dll
2012-08-25 01:13:41 ----A---- C:\Windows\SysWOW64\qdvd.dll
2012-08-25 01:13:39 ----A---- C:\Windows\SysWOW64\odbcjt32.dll
2012-08-25 01:13:39 ----A---- C:\Windows\SysWOW64\odbccr32.dll
2012-08-25 01:13:38 ----A---- C:\Windows\SysWOW64\odbctrac.dll
2012-08-25 01:13:38 ----A---- C:\Windows\SysWOW64\odbccu32.dll
2012-08-25 01:13:38 ----A---- C:\Windows\SysWOW64\odbccp32.dll
2012-08-25 01:13:37 ----A---- C:\Windows\SysWOW64\atmlib.dll
2012-08-25 01:13:37 ----A---- C:\Windows\SysWOW64\atmfd.dll
2012-08-25 01:13:35 ----A---- C:\Windows\SysWOW64\rdpcore.dll
2012-08-25 01:13:33 ----A---- C:\Windows\SysWOW64\dnscacheugc.exe
2012-08-25 01:13:33 ----A---- C:\Windows\SysWOW64\dnsapi.dll
2012-08-25 01:13:28 ----A---- C:\Windows\SysWOW64\drvinst.exe
2012-08-25 01:13:28 ----A---- C:\Windows\SysWOW64\devrtl.dll
2012-08-25 01:13:28 ----A---- C:\Windows\SysWOW64\devobj.dll
2012-08-25 01:13:28 ----A---- C:\Windows\SysWOW64\cfgmgr32.dll
2012-08-25 01:13:25 ----A---- C:\Windows\SysWOW64\netapi32.dll
2012-08-25 01:13:25 ----A---- C:\Windows\SysWOW64\browcli.dll
2012-08-25 01:13:16 ----A---- C:\Windows\SysWOW64\inetcomm.dll
2012-08-25 01:09:33 ----A---- C:\Windows\SysWOW64\EncDec.dll
2012-08-25 01:07:25 ----A---- C:\Windows\SysWOW64\cdosys.dll
2012-08-25 01:07:15 ----A---- C:\Windows\SysWOW64\tzres.dll
2012-08-25 01:07:08 ----A---- C:\Windows\SysWOW64\msvcrt.dll
2012-08-25 01:06:56 ----A---- C:\Windows\SysWOW64\oleacc.dll
2012-08-25 01:06:55 ----A---- C:\Windows\SysWOW64\oleaut32.dll
2012-08-25 01:06:27 ----A---- C:\Windows\SysWOW64\ntdll.dll
2012-08-25 01:05:54 ----A---- C:\Windows\SysWOW64\packager.dll
2012-08-24 22:53:11 ----D---- C:\ProgramData\Spybot - Search & Destroy
2012-08-24 22:40:45 ----D---- C:\ProgramData\boost_interprocess
2012-08-24 22:40:44 ----D---- C:\Program Files (x86)\Searchqu Toolbar
2012-08-24 22:40:41 ----A---- C:\Windows\SysWOW64\VB6STKIT.DLL
2012-08-24 22:40:41 ----A---- C:\Windows\SysWOW64\VB6FR.DLL
2012-08-24 22:40:41 ----A---- C:\Windows\SysWOW64\SSubTmr6.dll
2012-08-24 22:40:41 ----A---- C:\Windows\SysWOW64\MSCMCFR.DLL
2012-08-24 22:40:41 ----A---- C:\Windows\SysWOW64\inetfr.DLL
2012-08-24 22:40:41 ----A---- C:\Windows\SysWOW64\CMDLGFR.DLL
2012-08-24 22:40:40 ----D---- C:\Users\Paťa\AppData\Roaming\FreeBurner
2012-08-24 22:40:40 ----D---- C:\Program Files (x86)\Free Easy CD DVD Burner
2012-08-24 22:40:40 ----A---- C:\Windows\SysWOW64\lame_enc.dll
2012-08-24 22:35:21 ----D---- C:\Users\Paťa\AppData\Roaming\Mozilla
2012-08-24 22:35:14 ----D---- C:\ProgramData\Mozilla
2012-08-24 22:35:09 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-08-24 19:57:04 ----D---- C:\Windows\SysWOW64\Macromed
2012-08-24 10:52:50 ----D---- C:\Program Files (x86)\Microsoft Works
2012-08-24 10:52:18 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2012-08-24 10:52:18 ----D---- C:\Program Files (x86)\Common Files\DESIGNER
2012-08-24 10:47:31 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-08-24 10:46:40 ----D---- C:\ProgramData\Microsoft Help
2012-08-24 10:46:17 ----RHD---- C:\MSOCache
2012-08-24 10:31:48 ----A---- C:\Windows\SysWOW64\FsExService64.Exe
2012-08-24 10:31:48 ----A---- C:\Windows\SysWOW64\drivers\TFsExDisk.Sys
2012-08-24 10:30:10 ----D---- C:\Program Files (x86)\PC Connectivity Solution
2012-08-24 10:28:58 ----D---- C:\Users\Paťa\AppData\Roaming\Samsung
2012-08-24 10:28:18 ----D---- C:\Program Files (x86)\MarkAny
2012-08-24 10:28:16 ----D---- C:\ProgramData\Samsung
2012-08-24 10:28:07 ----D---- C:\Program Files (x86)\Samsung
2012-08-24 10:27:26 ----D---- C:\Program Files (x86)\Common Files\Samsung
2012-08-24 03:30:22 ----D---- C:\Windows\SoftwareDistribution
2012-08-24 03:23:57 ----D---- C:\Program Files (x86)\Common Files\SNP2UVC
2012-08-24 03:23:57 ----A---- C:\Windows\vsnp2uvc.exe
2012-08-24 03:23:57 ----A---- C:\Windows\SysWOW64\vsnp2uvc.dll
2012-08-24 03:23:57 ----A---- C:\Windows\SysWOW64\rsnp2uvc.dll
2012-08-24 03:23:57 ----A---- C:\Windows\snuvcdsm.exe
2012-08-24 03:23:57 ----A---- C:\Windows\snp2uvc.src
2012-08-24 03:23:57 ----A---- C:\Windows\snp2uvc.ini
2012-08-24 03:22:33 ----D---- C:\ProgramData\Roaming
2012-08-24 03:22:01 ----D---- C:\ProgramData\Intel
2012-08-24 03:22:01 ----D---- C:\Program Files (x86)\Cisco
2012-08-24 03:21:46 ----A---- C:\Windows\SysWOW64\log.txt
2012-08-24 03:21:44 ----D---- C:\Program Files (x86)\Common Files\postureAgent
2012-08-24 03:16:28 ----ASH---- C:\pagefile.sys
2012-08-24 03:16:28 ----ASH---- C:\hiberfil.sys
2012-08-23 23:14:40 ----D---- C:\Program Files (x86)\PANDORA.TV
2012-08-23 23:14:24 ----D---- C:\Program Files (x86)\The KMPlayer
2012-08-23 23:06:09 ----D---- C:\Users\Paťa\AppData\Roaming\Windows Live Writer
2012-08-23 22:32:07 ----D---- C:\Users\Paťa\AppData\Roaming\Opera
2012-08-23 22:32:00 ----D---- C:\Program Files (x86)\Opera
2012-08-23 22:04:01 ----A---- C:\Windows\SysWOW64\aswBoot.exe
2012-08-23 22:04:01 ----A---- C:\Windows\avastSS.scr
2012-08-23 22:03:47 ----D---- C:\ProgramData\AVAST Software
2012-08-23 18:57:03 ----D---- C:\Users\Paťa\AppData\Roaming\Google
2012-08-23 18:56:06 ----D---- C:\ProgramData\CyberLink
2012-08-23 18:55:59 ----D---- C:\Users\Paťa\AppData\Roaming\CyberLink
2012-08-23 18:42:18 ----D---- C:\Users\Paťa\AppData\Roaming\Fujitsu Launch Center
2012-08-23 18:41:53 ----SHD---- C:\$RECYCLE.BIN
2012-08-23 18:39:40 ----D---- C:\Program Files (x86)\Intel Corporation
2012-08-23 18:39:40 ----D---- C:\Program Files (x86)\Common Files\Intel Corporation
2012-08-23 18:38:49 ----D---- C:\Program Files (x86)\CyberLink
2012-08-23 18:38:00 ----D---- C:\ProgramData\Fujitsu
2012-08-23 18:37:49 ----D---- C:\ProgramData\Temp
2012-08-23 18:36:29 ----D---- C:\ProgramData\Adobe
2012-08-23 18:36:28 ----D---- C:\Program Files (x86)\Common Files\Adobe
2012-08-23 18:33:20 ----SD---- C:\Users\Paťa\AppData\Roaming\Microsoft
2012-08-23 18:33:20 ----D---- C:\Users\Paťa\AppData\Roaming\Intel
2012-08-23 18:33:20 ----D---- C:\Users\Paťa\AppData\Roaming\Identities
2012-08-23 18:33:20 ----D---- C:\Users\Paťa\AppData\Roaming\Fujitsu
2012-08-23 18:33:08 ----D---- C:\ProgramData\Partner
2012-08-23 18:32:50 ----D---- C:\ProgramData\Google
2012-08-23 18:32:50 ----D---- C:\Program Files (x86)\Google

======List of files/folders modified in the last 1 month======

2012-09-22 12:58:37 ----RD---- C:\Program Files (x86)
2012-09-22 12:26:55 ----D---- C:\Windows\Temp
2012-09-22 12:20:47 ----D---- C:\Windows\Tasks
2012-09-22 12:16:34 ----D---- C:\Windows\System32
2012-09-22 12:16:34 ----D---- C:\Windows\inf
2012-09-22 12:11:46 ----D---- C:\Windows
2012-09-22 11:23:58 ----D---- C:\Windows\SysWOW64\drivers
2012-09-22 11:23:56 ----HD---- C:\ProgramData
2012-09-22 09:06:47 ----D---- C:\Windows\winsxs
2012-09-22 09:05:08 ----D---- C:\Windows\SysWOW64\migration
2012-09-22 09:05:08 ----D---- C:\Windows\SysWOW64
2012-09-22 09:05:08 ----D---- C:\Program Files (x86)\Internet Explorer
2012-09-22 08:52:24 ----SHD---- C:\System Volume Information
2012-09-21 19:55:30 ----SHD---- C:\Windows\Installer
2012-09-21 19:55:27 ----RD---- C:\Users
2012-09-18 21:31:02 ----D---- C:\Program Files (x86)\Common Files
2012-09-16 11:46:43 ----D---- C:\Windows\Prefetch
2012-09-15 19:51:11 ----D---- C:\Windows\debug
2012-09-06 21:58:44 ----SD---- C:\ProgramData\Microsoft
2012-09-06 21:39:34 ----D---- C:\Windows\twain_32
2012-09-06 21:38:13 ----RD---- C:\Program Files
2012-09-05 14:09:46 ----D---- C:\Windows\rescache
2012-09-03 21:32:22 ----D---- C:\Windows\ehome
2012-09-03 21:32:22 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-09-03 21:32:22 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-09-03 21:32:22 ----D---- C:\Program Files (x86)\Windows Media Player
2012-09-03 21:32:22 ----D---- C:\Program Files (x86)\Windows Mail
2012-09-03 21:32:22 ----D---- C:\Program Files (x86)\Windows Defender
2012-09-03 21:32:22 ----D---- C:\Program Files (x86)\Common Files\System
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\winrm
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\WCN
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\sysprep
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\slmgr
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\Setup
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\Printing_Admin_Scripts
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\oobe
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\MUI
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\migwiz
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\es-ES
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\DriverStore
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\drivers\UMDF
2012-09-03 21:32:21 ----D---- C:\Windows\SysWOW64\Dism
2012-09-03 21:32:20 ----D---- C:\Windows\SysWOW64\com
2012-09-03 21:32:13 ----D---- C:\Windows\Speech
2012-09-03 21:32:13 ----D---- C:\Windows\es-ES
2012-09-03 21:32:09 ----D---- C:\Windows\SysWOW64\pt-PT
2012-09-03 21:32:09 ----D---- C:\Windows\servicing
2012-09-03 21:32:09 ----D---- C:\Windows\pt-PT
2012-09-03 21:32:08 ----D---- C:\Windows\IME
2012-09-03 21:32:02 ----D---- C:\Windows\AppPatch
2012-09-03 21:31:57 ----D---- C:\Windows\SysWOW64\pl-PL
2012-09-03 21:31:46 ----D---- C:\Windows\fr-FR
2012-09-03 21:31:45 ----D---- C:\Windows\SysWOW64\fr-FR
2012-09-03 21:31:33 ----D---- C:\Windows\SysWOW64\cs-CZ
2012-09-03 21:31:19 ----D---- C:\Windows\SysWOW64\en-US
2012-09-03 21:31:19 ----D---- C:\Windows\SysWOW64\drivers\en-US
2012-09-03 21:31:16 ----D---- C:\Windows\en-US
2012-09-03 16:13:00 ----D---- C:\Windows\Logs
2012-08-25 16:48:24 ----D---- C:\Windows\Microsoft.NET
2012-08-25 12:33:39 ----RSD---- C:\Windows\assembly
2012-08-25 02:43:56 ----D---- C:\Windows\SysWOW64\sk-SK
2012-08-25 01:28:55 ----A---- C:\Windows\SysWOW64\PerfStringBackup.INI
2012-08-24 10:52:45 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2012-08-24 10:52:37 ----D---- C:\Program Files (x86)\MSBuild
2012-08-24 10:52:28 ----D---- C:\Program Files (x86)\Microsoft Office
2012-08-24 10:52:16 ----D---- C:\Windows\ShellNew
2012-08-24 10:51:51 ----RSD---- C:\Windows\Fonts
2012-08-24 10:51:38 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-08-24 10:47:08 ----A---- C:\Windows\win.ini
2012-08-24 10:35:16 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-08-24 03:21:42 ----D---- C:\Program Files (x86)\Intel
2012-08-24 03:18:36 ----D---- C:\Windows\Registration
2012-08-24 03:18:17 ----D---- C:\Windows\SysWOW64\RTCOM
2012-08-23 23:55:43 ----D---- C:\Windows\Panther
2012-08-23 21:43:22 ----D---- C:\Fujitsu
2012-08-23 21:42:29 ----D---- C:\ProgramData\Norton

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 FBIOSDRV;Fujitsu BIOS Driver; C:\Windows\System32\Drivers\FBIOSDRV.sys []
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys []
R1 aswSnx;aswSnx; C:\Windows\SysWOW64\drivers\aswSnx.sys []
R1 aswSP;aswSP; C:\Windows\SysWOW64\drivers\aswSP.sys []
R1 aswTdi;avast! Network Shield Support; C:\Windows\SysWOW64\drivers\aswTdi.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R2 aswFsBlk;aswFsBlk; C:\Windows\SysWOW64\drivers\aswFsBlk.sys []
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys []
R3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys []
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys []
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys []
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys []
R3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys []
R3 dgderdrv;dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys []
R3 FUJ02B1;Fujitsu FUJ02B1 Device Driver; C:\Windows\system32\DRIVERS\FUJ02B1.sys []
R3 FUJ02E3;Fujitsu FUJ02E3 Device Driver; C:\Windows\system32\drivers\FUJ02E3.sys []
R3 iBtFltCoex;iBtFltCoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys []
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys []
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys []
R3 MEIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys []
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys []
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys []
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys []
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys []
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys []
R3 wdkmd;Intel WiDi KMD; C:\Windows\system32\DRIVERS\WDKMD.sys []
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys []
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys []
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys []
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys []
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys []
S3 ss_bserd;SAMSUNG USB Mobile Logging Driver; C:\Windows\system32\DRIVERS\ss_bserd.sys []
S3 TFsExDisk;TFsExDisk; \??\C:\Windows\System32\Drivers\TFsExDisk.sys [2009-12-22 16448]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys []
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-08-21 44808]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2010-11-03 897088]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2010-11-03 983104]
R2 Browser Manager;Browser Manager; C:\ProgramData\Browser Manager\2.2.643.41\{16cdff19-861d-48e3-a751-d99a27784753}\browsemngr.exe [2012-09-21 1701400]
R2 dgdersvc;Device Error Recovery Service; C:\Windows\system32\dgdersvc.exe []
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-01-05 1515792]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-02-01 326168]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2012-06-22 625816]
R2 PFNService;PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [2010-10-08 331776]
R2 PowerSavingUtilityService;PowerSavingUtilityService; C:\Program Files\Fujitsu\PSUtility\PSUService.exe [2010-06-18 63336]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-01-05 836880]
R2 SBSDWSCService;SBSD Security Center Service; D:\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-02-01 2656280]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2010-11-03 1298496]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-23 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-19 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-23 136176]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-25 194032]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-09-06 114144]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-01-05 340240]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2008-11-11 620544]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S4 NetMsmqActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

-----------------EOF-----------------

Uživatelský avatar
Marek-26
Přítel fóra
Přítel fóra
Příspěvky: 1000
Registrován: 16 pro 2006 15:53
Bydliště: Brüx/Praha

Re: Prehliadače

#4 Příspěvek od Marek-26 »

Prosím klikněte na MBAM v mém podpisu a udělejte úplný scan, ale zatím nic nemažte :wink:

v PC se usídlila nějaká breberka search.gboxapp.com

Pattie
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 22 zář 2012 09:56

Re: Prehliadače

#5 Příspěvek od Pattie »

Malwarebytes Anti-Malware 1.65.0.1400
www.malwarebytes.org

Verzia databázy: v2012.09.22.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Paťa :: PATA-PC [administrátor]

22. 9. 2012 14:21:36
mbam-log-2012-09-22 (14-21-36).txt

Typ kontroly: Úplná kontrola (C:\|D:\|)
Možnosti kontroly zapnuté: Pamäť | Po spustení | Registre | Systémové súbory | Heuristika/Extra | Heuristika/Shuriken | PUP | PUM
Možnosti kontroly vypnuté: P2P
Objektov kontrolovaných: 310968
Uplynutý čas: 58 min, 32 sek

Detegované služby pamäte: 0
(Škodlivé položky neboli zistené)

Detegované moduly pamäte: 0
(Škodlivé položky neboli zistené)

Detegované registračné kľúče: 0
(Škodlivé položky neboli zistené)

Detegované registračné hodnoty: 0
(Škodlivé položky neboli zistené)

Detegované položky registračných dát: 0
(Škodlivé položky neboli zistené)

Detegované priečinky: 0
(Škodlivé položky neboli zistené)

Detegované súbory: 0
(Škodlivé položky neboli zistené)

(koniec)

Pattie
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 22 zář 2012 09:56

Re: Prehliadače

#6 Příspěvek od Pattie »

MBAM som už použila aj pred tým, pričom našlo jeden detegovaný objekt, ktorý som zmazala bola to chyba ?

Uživatelský avatar
Marek-26
Přítel fóra
Přítel fóra
Příspěvky: 1000
Registrován: 16 pro 2006 15:53
Bydliště: Brüx/Praha

Re: Prehliadače

#7 Příspěvek od Marek-26 »

No snad jste si nesmazal něco, co smazáno být nemělo :)

Postupujte prosím dle tohoto návodu:
http://www.bleepingcomputer.com/combofi ... t-combofix

Pattie
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 22 zář 2012 09:56

Re: Prehliadače

#8 Příspěvek od Pattie »

Dobrý deň, prepáčte že odpisujem tak neskoro, skôr nebol čas. Všetko som urobila podľa návodu. Tu je log z ComboFixu.

ComboFix 12-10-03.03 - Paťa . 10. 2012 16:51:19.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.421.1051.18.4009.2484 [GMT 2:00]
Running from: c:\users\PaŁa\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Roaming
.
.
((((((((((((((((((((((((( Files Created from 2012-09-04 to 2012-10-04 )))))))))))))))))))))))))))))))
.
.
2012-10-04 14:58 . 2012-10-04 14:58 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-10-04 14:19 . 2012-10-04 14:19 -------- d-----w- c:\program files (x86)\Common Files\Skype
2012-10-04 14:19 . 2012-10-04 14:19 -------- d-----w- c:\program files (x86)\Skype
2012-09-28 12:40 . 2012-09-28 12:40 -------- d-----w- c:\users\Paťa\AppData\Local\{0E954FB8-517A-4CFF-B45C-2F64499F77DC}
2012-09-28 12:40 . 2012-09-28 12:40 -------- d-----w- c:\programdata\SweetIM
2012-09-28 12:40 . 2012-09-28 12:40 -------- d-----w- c:\program files (x86)\SweetIM
2012-09-23 07:28 . 2012-09-23 07:28 -------- d-----w- c:\users\Guest
2012-09-22 10:58 . 2012-09-22 12:14 -------- d-----w- c:\program files (x86)\trend micro
2012-09-22 10:58 . 2012-09-22 11:09 -------- d-----w- C:\rsit
2012-09-22 09:24 . 2012-09-22 09:24 -------- d-----w- c:\users\Paťa\AppData\Roaming\Malwarebytes
2012-09-22 09:23 . 2011-05-29 07:11 39984 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
2012-09-22 09:23 . 2012-09-22 09:23 -------- d-----w- c:\programdata\Malwarebytes
2012-09-22 09:23 . 2012-09-22 09:26 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-09-22 09:23 . 2012-09-07 15:04 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-09-21 18:03 . 2012-09-21 18:03 -------- d-----w- c:\program files (x86)\SProtector
2012-09-21 18:02 . 2012-09-21 18:44 -------- d-----w- c:\program files (x86)\Optimizer Pro
2012-09-21 18:02 . 2012-09-22 15:27 -------- d-----w- c:\programdata\Premium
2012-09-21 17:59 . 2012-09-22 15:27 -------- d-----w- c:\programdata\InstallMate
2012-09-21 17:55 . 2012-09-21 17:55 -------- d-----w- c:\users\Pata
2012-09-21 17:55 . 2012-09-21 17:55 315 ----a-w- C:\user.js
2012-09-21 17:54 . 2012-09-21 17:55 -------- d-----w- c:\users\Paťa\AppData\Roaming\YourFileDownloader
2012-09-19 17:56 . 2012-09-19 17:56 -------- d-----w- c:\users\Paťa\AppData\Local\{52A127E6-8E31-4E82-BC22-7FA145CF7094}
2012-09-19 17:56 . 2012-09-19 17:56 -------- d-----w- c:\users\Paťa\AppData\Local\{718B83DC-9B01-4C30-8A43-9255B16F7282}
2012-09-18 19:31 . 2012-10-04 14:21 -------- d-----w- c:\users\Paťa\AppData\Roaming\Skype
2012-09-18 19:30 . 2012-10-04 14:19 -------- d-----w- c:\programdata\Skype
2012-09-11 20:13 . 2012-09-13 11:33 -------- d-----w- c:\users\Paťa\AppData\Local\Adobe
2012-09-11 20:12 . 2012-09-11 20:12 -------- d-----r- c:\users\Paťa\4Sync
2012-09-11 20:08 . 2012-09-11 20:08 -------- d-----w- c:\program files (x86)\Conduit
2012-09-11 20:08 . 2012-09-11 20:08 -------- d-----w- c:\users\Paťa\AppData\Local\Conduit
2012-09-11 20:08 . 2012-09-11 20:08 -------- d-----w- c:\program files (x86)\4shared.com
2012-09-11 20:08 . 2012-09-11 20:08 -------- d-----w- c:\users\Paťa\AppData\Local\CRE
2012-09-11 20:07 . 2012-09-11 20:07 -------- d-----w- c:\programdata\McAfee
2012-09-11 20:07 . 2012-09-11 20:07 -------- d-----w- c:\programdata\4Sync
2012-09-11 17:03 . 2012-08-22 18:12 1913200 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-09-11 17:03 . 2012-08-22 18:12 376688 ----a-w- c:\windows\system32\drivers\netio.sys
2012-09-11 17:03 . 2012-08-22 18:12 288624 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-09-06 19:41 . 2012-09-06 19:41 -------- d-----w- c:\program files (x86)\Bing Bar Installer
2012-09-06 19:41 . 2012-09-06 19:41 -------- d-----w- c:\program files (x86)\HP Photo Creations
2012-09-06 19:41 . 2012-09-06 19:41 -------- d-----w- c:\programdata\HP Photo Creations
2012-09-06 19:40 . 2012-09-06 19:40 -------- d-----w- c:\program files (x86)\Coupons
2012-09-06 19:40 . 2012-09-14 04:52 -------- d-----w- c:\users\Paťa\AppData\Roaming\HpUpdate
2012-09-06 19:40 . 2011-03-30 17:00 766824 ------w- c:\windows\system32\HPDiscoPMa011.dll
2012-09-06 19:39 . 2012-09-06 20:07 -------- d-----w- c:\programdata\HP
2012-09-06 19:39 . 2012-09-06 19:40 -------- d-----w- c:\program files (x86)\HP
2012-09-06 19:38 . 2012-09-06 19:38 -------- d-----w- c:\program files\HP
2012-09-06 19:37 . 2012-09-06 20:08 -------- d-----w- c:\users\Paťa\AppData\Local\HP
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-09-11 17:04 . 2012-08-24 23:16 64462936 ----a-w- c:\windows\system32\MRT.exe
2012-08-25 18:44 . 2012-08-25 18:44 70304 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-08-25 18:44 . 2012-08-25 18:44 419488 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-08-24 22:56 . 2010-06-24 18:33 19720 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-08-24 01:22 . 2012-08-24 01:22 83 ------w- c:\windows\system32\IHV_Install.bat
2012-08-21 09:13 . 2012-08-23 20:04 359464 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-08-21 09:13 . 2012-08-23 20:04 59728 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-08-21 09:13 . 2012-08-23 20:04 969200 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-08-21 09:13 . 2012-08-23 20:04 54072 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-08-21 09:13 . 2012-08-23 20:04 71600 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-08-21 09:13 . 2012-08-23 20:04 25232 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-08-21 09:12 . 2012-08-23 20:04 41224 ----a-w- c:\windows\avastSS.scr
2012-08-21 09:12 . 2012-08-23 20:04 227648 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-08-21 09:12 . 2012-08-23 20:04 285328 ----a-w- c:\windows\system32\aswBoot.exe
2012-07-18 18:15 . 2012-08-24 23:07 3148800 ----a-w- c:\windows\system32\win32k.sys
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}"= "c:\program files (x86)\4shared.com\prxtb4sha.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}]
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}]
2011-05-09 09:49 176936 ----a-w- c:\program files (x86)\4shared.com\prxtb4sha.dll
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}]
2012-02-27 08:42 88976 ----a-w- c:\progra~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{9D717F81-9148-4f12-8568-69135F087DB0}]
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
2012-07-04 13:03 1310040 ----a-r- c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{99079a25-328f-4bd4-be04-00955acaa0a7}"= "c:\progra~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll" [2012-02-27 88976]
"{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}"= "c:\program files (x86)\4shared.com\prxtb4sha.dll" [2011-05-09 176936]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2012-07-04 1310040]
.
[HKEY_CLASSES_ROOT\clsid\{99079a25-328f-4bd4-be04-00955acaa0a7}]
.
[HKEY_CLASSES_ROOT\clsid\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}]
.
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.IEToolbar]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"KiesTrayAgent"="c:\program files (x86)\Samsung\Kies\/\KiesTrayAgent.exe" [2010-01-28 3404600]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17420464]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2012-08-23 39408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IndicatorUtility"="c:\program files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe" [2010-09-30 48752]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2009-08-13 662016]
"UCam_Menu"="c:\program files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
"YouCam Mirror Tray icon"="c:\program files (x86)\CyberLink\YouCam\YouCamTray.exe" [2009-07-08 162912]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-08-21 4282728]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"RemoteDesktopManager"="c:\program files (x86)\Devolutions\Remote Desktop Manager\RemoteDesktopManager.exe" [2012-03-16 5820192]
"HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2011-01-12 49208]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-07-31 38872]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-11 919008]
"SweetIM"="c:\program files (x86)\SweetIM\Messenger\SweetIM.exe" [2012-05-29 115032]
"Sweetpacks Communicator"="c:\program files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe" [2012-08-15 231768]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Služba Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-08-23 136176]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-08-23 136176]
R3 intaud_WaveExtensible;Intel WiDi Audio Device;c:\windows\system32\drivers\intelaud.sys [2011-03-24 34200]
R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2011-01-05 340240]
R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys [2009-09-19 127488]
R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys [2009-09-19 18944]
R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys [2009-09-19 161280]
R3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\DRIVERS\ss_bserd.sys [2009-09-19 128000]
R3 TFsExDisk;TFsExDisk;c:\windows\System32\Drivers\TFsExDisk.sys [2009-12-22 16448]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2012-08-25 1255736]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
S0 FBIOSDRV;Fujitsu BIOS Driver;c:\windows\System32\Drivers\FBIOSDRV.sys [2009-06-24 21104]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-08-21 71600]
S2 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [2010-11-03 897088]
S2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [2010-11-03 983104]
S2 dgdersvc;Device Error Recovery Service;c:\windows\system32\dgdersvc.exe [2009-12-22 117584]
S2 PanService;PandoraService;c:\program files (x86)\PANDORA.TV\PanService\PandoraService.exe [2012-06-22 625816]
S2 PFNService;PFNService;c:\program files\Fujitsu\Plugfree NETWORK\PFNService.exe [2010-10-07 331776]
S2 PowerSavingUtilityService;PowerSavingUtilityService;c:\program files\Fujitsu\PSUtility\PSUService.exe [2010-06-17 63336]
S2 SBSDWSCService;SBSD Security Center Service;d:\spybot - search & destroy\SDWinSec.exe [2009-01-26 1153368]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-02-01 2656280]
S3 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [2010-11-03 1298496]
S3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys [2010-11-04 58128]
S3 btmhsf;btmhsf;c:\windows\system32\DRIVERS\btmhsf.sys [2010-10-20 274432]
S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [2009-12-22 20568]
S3 FUJ02E3;Fujitsu FUJ02E3 Device Driver;c:\windows\system32\drivers\FUJ02E3.sys [2006-11-01 7296]
S3 iBtFltCoex;iBtFltCoex;c:\windows\system32\DRIVERS\iBtFltCoex.sys [2010-11-04 59904]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
S3 iwdbus;IWD Bus Enumerator;c:\windows\system32\DRIVERS\iwdbus.sys [2011-03-24 25496]
S3 MEIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
S3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;c:\windows\system32\DRIVERS\NETwNs64.sys [2011-01-04 8507392]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys [2010-05-07 245792]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2010-12-28 412776]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 wdkmd;Intel WiDi KMD;c:\windows\system32\DRIVERS\WDKMD.sys [2011-03-24 42392]
.
.
Contents of the 'Scheduled Tasks' folder
.
2012-10-04 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-08-23 16:32]
.
2012-10-04 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-08-23 16:32]
.
2012-10-04 c:\windows\Tasks\HP Photo Creations Messager.job
- c:\programdata\HP Photo Creations\MessageCheck.exe [2011-02-15 10:11]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-08-21 09:11 133400 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2010-11-03 10228224]
"LoadFUJ02E3"="c:\program files\Fujitsu\FUJ02E3\FUJ02E3.exe" [2010-06-08 45680]
"FDM7"="c:\program files\Fujitsu\FDM7\FdmDaemon.exe" [2009-11-26 164712]
"PSUTility"="c:\program files\Fujitsu\PSUtility\TrayManager.exe" [2010-11-13 199528]
"PfNet"="c:\program files\Fujitsu\Plugfree NETWORK\PfNet.exe" [2010-10-07 6311424]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-12-07 11663464]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-20 168216]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-20 392472]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-20 416024]
"IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-01-05 1933584]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2009-08-13 662016]
"LoadFujitsuQuickTouch"="c:\program files\Fujitsu\Application Panel\QuickTouch.exe" [2010-07-16 162416]
"LoadBtnHnd"="c:\program files\Fujitsu\Application Panel\BtnHnd.exe" [2010-07-09 21616]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\progra~2\SEARCH~1\Datamngr\x64\datamngr.dll c:\progra~2\SEARCH~1\Datamngr\x64\IEBHO.dll
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://home.sweetim.com/?st=6&barid={A5277B19-0969-11E2-91B4-4CEB4203D675}
mStart Page = hxxp://home.sweetim.com/?crg=3.1030000.103003&st=12&barid={A5277B19-0969-11E2-91B4-4CEB4203D675}
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~3\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.171.0.1
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
WebBrowser-{09EC805C-CB2E-4D53-B0D3-A75A428B81C7} - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-10-04 17:02:14
ComboFix-quarantined-files.txt 2012-10-04 15:02
.
Pre-Run: 8 544 804 864 bytes free
Post-Run: 8 301 985 792 bytes free
.
- - End Of File - - 552518BD0FFF3203F2D7A3202F238E68

Zamčeno