Prosím o kontrolu. V poslednej dobe mi do mailovej schránky chodia maily, tak, že odosielateľ som ja s názvami "životopis, nová práca a pod.". Celý text sú znaky. Kontroľoval som PC MBAM, ESS, ale nič mi nenašlo. Mail príde 1-2x denne. Okamžite ho vymažem, ale príde opäť. Nepomohol ani filter pošty.
Posielam log z RSIT. Ďakujem
Logfile of random's system information tool 1.08 (written by random/random)
Run by ab021 at 2014-01-23 08:33:36
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 465 GB (98%) free of 477 GB
Total RAM: 2047 MB (79% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:33:45, on 23.1.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\PixArt\PAC7302\Monitor.exe
C:\WINDOWS\Pixart\PAC7302\PACTray.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Java\jre7\bin\jqs.exe
D:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
F:\Install 2\RSIT\RSIT.exe
C:\Program Files\trend micro\ab021.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O4 - HKLM\..\Run: [PAC7302_Monitor] C:\WINDOWS\PixArt\PAC7302\Monitor.exe
O4 - HKLM\..\Run: [PACTray] C:\WINDOWS\Pixart\PAC7302\PACTray.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SW20] C:\WINDOWS\System32\sw20.exe
O4 - HKLM\..\Run: [SW24] C:\WINDOWS\System32\sw24.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [OEXPRESS] C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: Kalendár.lnk = C:\WINDOWS\MENINY.EXE
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files\ICQ7M\ICQ.exe
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.dell.com
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 8569986515
O17 - HKLM\System\CCS\Services\Tcpip\..\{EA951BF3-E4CA-4276-A720-34BD8AB515AA}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - D:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - D:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SureThing Labelflash service - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 8135 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll [2013-12-30 520192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll [2013-12-30 520192]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"PAC7302_Monitor"=C:\WINDOWS\PixArt\PAC7302\Monitor.exe [2007-12-10 323584]
"PACTray"=C:\WINDOWS\Pixart\PAC7302\PACTray.exe [2009-03-23 327680]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2004-10-14 1404928]
"NvCplDaemon"=C:\WINDOWS\System32\NvCpl.dll [2006-06-01 7618560]
"nwiz"=nwiz.exe /install []
"SW20"=C:\WINDOWS\System32\sw20.exe [2006-05-18 208896]
"SW24"=C:\WINDOWS\System32\sw24.exe [2006-05-17 69632]
"NvMediaCenter"=C:\WINDOWS\System32\NvMcTray.dll [2006-06-01 86016]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2013-03-21 5078504]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"OEXPRESS"=C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE [2013-12-30 26624]
""= []
C:\Documents and Settings\ab021\Nabídka Start\Programy\Po spuštění
Kalendár.lnk - C:\WINDOWS\MENINY.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2009-01-30 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Documents and Settings\ab021\Data aplikací\uTorrent\uTorrent.exe"="C:\Documents and Settings\ab021\Data aplikací\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\ICQ7M\ICQ.exe"="D:\Program Files\ICQ7M\ICQ.exe:*:Enabled:ICQ7M"
======List of files/folders created in the last 1 months======
2014-01-23 08:33:36 ----D---- C:\rsit
2014-01-23 08:33:36 ----D---- C:\Program Files\trend micro
2014-01-20 06:45:38 ----A---- C:\WINDOWS\system32\javaws.exe
2014-01-20 06:45:32 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-01-20 06:45:32 ----A---- C:\WINDOWS\system32\javaw.exe
2014-01-20 06:45:32 ----A---- C:\WINDOWS\system32\java.exe
2014-01-14 21:12:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2914368$
2014-01-12 16:07:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2884256$
2014-01-12 14:24:00 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2014-01-12 14:23:33 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2014-01-12 14:23:24 ----HDC---- C:\WINDOWS\$NtUninstallWdf01009$
2014-01-10 18:31:48 ----D---- C:\WINDOWS\system32\NtmsData
2014-01-06 21:34:38 ----ASH---- C:\WINDOWS\system32\KGyGaAvL.sys
2014-01-06 21:34:23 ----D---- C:\Documents and Settings\ab021\Data aplikací\Corel
2014-01-06 18:07:38 ----D---- C:\Documents and Settings\ab021\Data aplikací\Mozilla
2014-01-06 18:07:32 ----D---- C:\Program Files\Mozilla Maintenance Service
2014-01-06 17:35:53 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2014-01-06 17:35:53 ----A---- C:\WINDOWS\system32\mucltui.dll
2014-01-06 17:34:22 ----ASH---- C:\pagefile.sys
2014-01-01 12:44:49 ----D---- C:\WINDOWS\system32\URTTEMP
2014-01-01 10:39:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2014-01-01 10:30:18 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2014-01-01 10:10:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2868626$
2014-01-01 10:06:54 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2014-01-01 10:06:46 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2014-01-01 10:06:39 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2014-01-01 10:06:31 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2014-01-01 10:06:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2014-01-01 10:06:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2014-01-01 10:05:59 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2014-01-01 10:02:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2014-01-01 10:02:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2014-01-01 10:02:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2014-01-01 10:01:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2014-01-01 10:01:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2758857$
2014-01-01 10:01:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2014-01-01 10:01:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$
2014-01-01 10:01:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2014-01-01 10:01:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2014-01-01 10:00:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2014-01-01 10:00:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2014-01-01 09:59:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2014-01-01 09:56:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2900986$
2014-01-01 09:56:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2014-01-01 09:56:31 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2014-01-01 09:56:19 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2014-01-01 08:37:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2014-01-01 08:37:05 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2014-01-01 08:36:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2014-01-01 08:36:37 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2014-01-01 08:36:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2014-01-01 08:36:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2014-01-01 08:32:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2802968$
2014-01-01 08:32:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2014-01-01 08:31:09 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2014-01-01 08:30:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2014-01-01 08:30:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2898715$
2014-01-01 08:30:32 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2014-01-01 08:30:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2014-01-01 08:30:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2014-01-01 08:30:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2014-01-01 08:29:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2014-01-01 08:29:16 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2014-01-01 08:29:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2862335$
2014-01-01 08:28:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2014-01-01 08:28:32 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2014-01-01 08:28:07 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2014-01-01 08:27:57 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2014-01-01 08:27:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2014-01-01 08:27:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$
2014-01-01 08:27:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2780091$
2014-01-01 08:27:21 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2014-01-01 08:27:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2845187$
2014-01-01 08:23:13 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2014-01-01 08:22:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2014-01-01 08:22:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2904266$
2014-01-01 08:22:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2014-01-01 08:22:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2876217$
2014-01-01 08:22:10 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2014-01-01 08:21:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2014-01-01 08:17:23 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2014-01-01 08:13:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2864063$
2014-01-01 08:13:43 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2014-01-01 08:13:32 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2014-01-01 08:13:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2014-01-01 08:13:07 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2014-01-01 08:12:56 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2014-01-01 08:12:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2862152$
2014-01-01 08:12:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2014-01-01 08:12:27 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2014-01-01 08:12:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2014-01-01 08:12:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2770660$
2014-01-01 08:11:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2014-01-01 08:11:44 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2014-01-01 08:11:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2850869$
2014-01-01 08:08:08 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2014-01-01 08:07:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2876331$
2014-01-01 08:07:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2859537$
2014-01-01 08:07:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2807986$
2014-01-01 08:07:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2014-01-01 08:07:18 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2014-01-01 08:07:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2868038$
2014-01-01 08:06:46 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2014-01-01 07:52:48 ----D---- C:\WINDOWS\system32\MRT
2014-01-01 07:52:42 ----A---- C:\WINDOWS\system32\MRT.exe
2014-01-01 07:52:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2820917$
2014-01-01 07:52:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2014-01-01 07:52:05 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2014-01-01 07:51:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2893294$
2014-01-01 07:51:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2757638$
2014-01-01 07:51:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2014-01-01 07:51:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2014-01-01 07:50:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2014-01-01 07:50:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2653956$
2014-01-01 07:50:06 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2014-01-01 07:49:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2014-01-01 07:49:40 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2014-01-01 07:49:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2014-01-01 07:49:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2893984$
2014-01-01 07:49:09 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2014-01-01 07:48:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2892075$
2014-01-01 07:48:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2014-01-01 07:48:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2014-01-01 07:48:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2014-01-01 07:48:12 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2014-01-01 07:48:01 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2014-01-01 07:47:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2014-01-01 07:47:37 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2014-01-01 07:47:29 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2014-01-01 07:47:18 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2014-01-01 07:47:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2014-01-01 07:46:59 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2014-01-01 07:46:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2014-01-01 07:43:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2862330$
2014-01-01 07:42:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2813345$
2014-01-01 07:42:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2014-01-01 07:42:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2014-01-01 07:38:12 ----D---- C:\WINDOWS\ie8updates
2014-01-01 07:38:07 ----D---- C:\Program Files\MSXML 4.0
2014-01-01 07:37:54 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2014-01-01 07:34:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2014-01-01 07:34:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2014-01-01 07:34:09 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2014-01-01 07:34:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2014-01-01 07:33:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2014-01-01 07:33:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2014-01-01 07:33:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2014-01-01 07:30:39 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2014-01-01 07:30:31 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2014-01-01 07:30:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2014-01-01 06:58:01 ----N---- C:\WINDOWS\system32\browserchoice.exe
2014-01-01 06:53:02 ----N---- C:\WINDOWS\system32\iacenc.dll
2013-12-31 22:49:21 ----D---- C:\Program Files\ESET
2013-12-31 22:49:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2013-12-31 02:09:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2847311$
2013-12-31 01:54:10 ----D---- C:\WINDOWS\system32\PreInstall
2013-12-31 01:54:07 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2013-12-31 01:54:07 ----HD---- C:\WINDOWS\$hf_mig$
2013-12-31 01:46:48 ----D---- C:\WINDOWS\WBEM
2013-12-31 01:44:48 ----HDC---- C:\WINDOWS\ie8
2013-12-30 21:14:35 ----D---- C:\Documents and Settings\ab021\Data aplikací\Nero
2013-12-30 19:45:31 ----A---- C:\WINDOWS\system32\drivers\tdrpm258.sys
2013-12-30 19:45:26 ----A---- C:\WINDOWS\system32\drivers\timntr.sys
2013-12-30 18:36:58 ----D---- C:\WINDOWS\system32\appmgmt
2013-12-30 18:33:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\Canneverbe Limited
2013-12-30 18:33:34 ----D---- C:\Documents and Settings\ab021\Data aplikací\Canneverbe Limited
2013-12-30 18:33:27 ----A---- C:\WINDOWS\system32\drivers\StarOpen.sys
2013-12-30 18:30:41 ----D---- C:\Program Files\Common Files\DivX Shared
2013-12-30 18:23:55 ----D---- C:\Documents and Settings\ab021\Data aplikací\YoWindow
2013-12-30 18:23:51 ----D---- C:\Documents and Settings\All Users\Data aplikací\YoWindow
2013-12-30 18:23:16 ----D---- C:\Program Files\YoWindow
2013-12-30 18:20:31 ----D---- C:\Documents and Settings\ab021\Data aplikací\uTorrent
2013-12-30 18:18:42 ----D---- C:\Documents and Settings\ab021\Data aplikací\HD Tune Pro
2013-12-30 18:13:10 ----A---- C:\WINDOWS\system32\drivers\pcouffin.sys
2013-12-30 18:13:10 ----A---- C:\Documents and Settings\ab021\Data aplikací\pcouffin.sys
2013-12-30 18:13:10 ----A---- C:\Documents and Settings\ab021\Data aplikací\ezpinst.exe
2013-12-30 18:13:09 ----D---- C:\Documents and Settings\ab021\Data aplikací\Vso
2013-12-30 18:13:00 ----A---- C:\WINDOWS\system32\devil.dll
2013-12-30 18:12:59 ----A---- C:\WINDOWS\system32\avisynth.dll
2013-12-30 18:02:53 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-30 17:52:31 ----N---- C:\WINDOWS\system32\spmsg2.dll
2013-12-30 17:52:29 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2013-12-30 17:49:36 ----D---- C:\WINDOWS\system32\XPSViewer
2013-12-30 17:49:30 ----D---- C:\WINDOWS\system32\en-US
2013-12-30 17:49:17 ----D---- C:\Program Files\Reference Assemblies
2013-12-30 17:48:38 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2013-12-30 17:48:38 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2013-12-30 17:48:38 ----N---- C:\WINDOWS\system32\prntvpt.dll
2013-12-30 17:47:59 ----RSD---- C:\WINDOWS\assembly
2013-12-30 17:47:29 ----D---- C:\WINDOWS\Microsoft.NET
2013-12-30 17:28:14 ----A---- C:\WINDOWS\system32\msvcr70.dll
2013-12-30 17:28:14 ----A---- C:\WINDOWS\system32\msvcp70.dll
2013-12-30 17:28:08 ----D---- C:\Program Files\Common Files\SureThing Shared
2013-12-30 17:24:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2013-12-30 17:24:44 ----D---- C:\Documents and Settings\ab021\Data aplikací\ICQ
2013-12-30 17:18:13 ----D---- C:\Documents and Settings\ab021\Data aplikací\Skype
2013-12-30 17:18:03 ----D---- C:\Program Files\Common Files\Skype
2013-12-30 17:17:58 ----RD---- C:\Program Files\Skype
2013-12-30 17:17:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2013-12-30 17:14:46 ----D---- C:\Documents and Settings\ab021\Data aplikací\PC Suite
2013-12-30 17:14:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Suite
2013-12-30 17:13:43 ----D---- C:\Program Files\Common Files\Nokia
2013-12-30 17:13:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nokia
2013-12-30 17:12:57 ----D---- C:\Program Files\DIFX
2013-12-30 17:12:56 ----A---- C:\WINDOWS\system32\drivers\pccsmcfd.sys
2013-12-30 17:12:45 ----D---- C:\Program Files\PC Connectivity Solution
2013-12-30 17:12:33 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys
2013-12-30 17:12:32 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys
2013-12-30 17:12:30 ----A---- C:\WINDOWS\system32\drivers\ccdcmbo.sys
2013-12-30 17:12:26 ----A---- C:\WINDOWS\system32\wdfcoinstaller01009.dll
2013-12-30 17:12:26 ----A---- C:\WINDOWS\system32\nmwcdcocls.dll
2013-12-30 17:12:26 ----A---- C:\WINDOWS\system32\drivers\ccdcmb.sys
2013-12-30 17:12:26 ----A---- C:\WINDOWS\system32\ccdcmbwu.dll
2013-12-30 17:12:24 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
2013-12-30 17:06:53 ----D---- C:\Program Files\Nokia
2013-12-30 17:06:53 ----D---- C:\Documents and Settings\All Users\Data aplikací\NokiaInstallerCache
2013-12-30 16:52:55 ----D---- C:\Documents and Settings\ab021\Data aplikací\Malwarebytes
2013-12-30 16:52:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-12-30 16:52:41 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2013-12-30 16:43:14 ----A---- C:\WINDOWS\TRNCOM.INI
2013-12-30 16:41:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\LangSoft
2013-12-30 16:41:11 ----D---- C:\Documents and Settings\ab021\Data aplikací\LangSoft
2013-12-30 16:25:00 ----RA---- C:\WINDOWS\system32\imagxpr7.dll
2013-12-30 16:25:00 ----A---- C:\WINDOWS\system32\twnlib4.dll
2013-12-30 16:25:00 ----A---- C:\WINDOWS\system32\imagxra7.dll
2013-12-30 16:25:00 ----A---- C:\WINDOWS\system32\imagxr7.dll
2013-12-30 16:25:00 ----A---- C:\WINDOWS\system32\imagx7.dll
2013-12-30 16:24:35 ----D---- C:\Program Files\Nero
2013-12-30 16:24:34 ----D---- C:\Program Files\Common Files\Nero
2013-12-30 15:45:43 ----N---- C:\WINDOWS\system32\spmsg.dll
2013-12-30 15:45:38 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2013-12-30 15:45:28 ----A---- C:\WINDOWS\system32\wmpns.dll
2013-12-30 15:45:18 ----D---- C:\Program Files\Windows Media Connect 2
2013-12-30 15:44:57 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2013-12-30 15:43:55 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2013-12-30 15:43:06 ----D---- C:\WINDOWS\system32\LogFiles
2013-12-30 15:43:06 ----D---- C:\WINDOWS\system32\drivers\UMDF
2013-12-30 15:42:55 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2013-12-30 15:42:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2013-12-30 15:30:12 ----D---- C:\Documents and Settings\ab021\Data aplikací\BSplayer PRO
2013-12-30 15:28:12 ----D---- C:\Documents and Settings\ab021\Data aplikací\Adobe
2013-12-30 15:28:09 ----D---- C:\Documents and Settings\ab021\Data aplikací\Macromedia
2013-12-30 15:27:56 ----D---- C:\WINDOWS\Sun
2013-12-30 15:26:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2013-12-30 15:26:52 ----D---- C:\Program Files\Common Files\Java
2013-12-30 15:26:10 ----D---- C:\Program Files\Java
2013-12-30 15:25:01 ----D---- C:\Documents and Settings\ab021\Data aplikací\Sun
2013-12-30 15:24:10 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-12-30 15:18:43 ----D---- C:\Documents and Settings\ab021\Data aplikací\Opera
2013-12-30 15:18:30 ----D---- C:\Program Files\Opera
2013-12-30 15:16:48 ----D---- C:\Program Files\Common Files\Adobe
2013-12-30 15:16:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2013-12-30 15:11:50 ----A---- C:\WINDOWS\system32\EEBUtil.dll
2013-12-30 15:11:50 ----A---- C:\WINDOWS\system32\EEBSDKIF.dll
2013-12-30 15:11:50 ----A---- C:\WINDOWS\system32\EEBDSCVR.dll
2013-12-30 15:11:50 ----A---- C:\WINDOWS\system32\EEBAPI.dll
2013-12-30 15:11:50 ----A---- C:\WINDOWS\system32\EBAPI.dll
2013-12-30 15:10:26 ----A---- C:\WINDOWS\system32\E_FD4BFSE.DLL
2013-12-30 15:10:25 ----A---- C:\WINDOWS\system32\E_FLBFSE.DLL
2013-12-30 15:10:08 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2013-12-30 15:09:15 ----A---- C:\WINDOWS\system32\enspres.dll
2013-12-30 15:09:15 ----A---- C:\WINDOWS\system32\ensppui.dll
2013-12-30 15:09:15 ----A---- C:\WINDOWS\system32\ensppmon.dll
2013-12-30 15:09:15 ----A---- C:\WINDOWS\system32\enpres.dll
2013-12-30 15:09:15 ----A---- C:\WINDOWS\system32\enppui.dll
2013-12-30 15:09:15 ----A---- C:\WINDOWS\system32\enppmon.dll
2013-12-30 15:08:50 ----D---- C:\Program Files\Common Files\EPSON
2013-12-30 15:07:54 ----D---- C:\Program Files\EpsonNet
2013-12-30 15:06:33 ----A---- C:\WINDOWS\system32\PICSDK2.dll
2013-12-30 15:06:33 ----A---- C:\WINDOWS\system32\PICSDK.ini
2013-12-30 15:06:32 ----A---- C:\WINDOWS\system32\PICSDK.dll
2013-12-30 15:06:32 ----A---- C:\WINDOWS\system32\PICEntry.dll
2013-12-30 15:06:32 ----A---- C:\WINDOWS\system32\EpPicPrt.dll
2013-12-30 15:06:31 ----A---- C:\WINDOWS\system32\EPPicMgr.dll
2013-12-30 15:05:52 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-12-30 15:05:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\EPSON
2013-12-30 15:05:37 ----A---- C:\WINDOWS\system32\esdevapp.exe
2013-12-30 15:05:37 ----A---- C:\WINDOWS\system32\escdev.dll
2013-12-30 15:05:36 ----A---- C:\WINDOWS\system32\eswiaud.dll
2013-12-30 15:04:13 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2013-12-30 15:03:13 ----A---- C:\WINDOWS\system32\drivers\usbscan.sys
2013-12-30 15:00:52 ----A---- C:\WINDOWS\system32\escwiad.dll
2013-12-30 15:00:52 ----A---- C:\WINDOWS\system32\escimgd.dll
2013-12-30 15:00:52 ----A---- C:\WINDOWS\system32\esccmd.dll
2013-12-30 15:00:01 ----A---- C:\WINDOWS\system32\E_DCINST.DLL
2013-12-30 14:59:57 ----A---- C:\WINDOWS\system32\E_FLBBEE.DLL
2013-12-30 14:59:57 ----A---- C:\WINDOWS\system32\E_FD4BBEE.DLL
2013-12-30 14:59:18 ----D---- C:\Program Files\EPSON
2013-12-30 14:59:09 ----A---- C:\WINDOWS\EPSMTL32.TXT
2013-12-30 14:57:19 ----A---- C:\WINDOWS\system32\drivers\usbprint.sys
2013-12-30 14:37:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2013-12-30 14:37:37 ----D---- C:\Program Files\Mozilla Firefox
2013-12-30 14:35:05 ----D---- C:\WINDOWS\Minidump
2013-12-30 14:33:40 ----A---- C:\WINDOWS\MENINY.EXE
2013-12-30 14:31:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\InstallShield
2013-12-30 14:30:02 ----D---- C:\Program Files\Corel
2013-12-30 14:30:02 ----D---- C:\Program Files\Common Files\Corel
2013-12-30 14:18:00 ----D---- C:\Program Files\Microsoft Works
2013-12-30 14:17:53 ----D---- C:\Program Files\MSBuild
2013-12-30 14:17:41 ----D---- C:\Program Files\Microsoft Visual Studio
2013-12-30 14:17:41 ----D---- C:\Program Files\Common Files\DESIGNER
2013-12-30 14:14:04 ----D---- C:\WINDOWS\SHELLNEW
2013-12-30 14:13:38 ----D---- C:\Program Files\Microsoft Office
2013-12-30 14:13:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2013-12-30 13:59:32 ----D---- C:\Documents and Settings\ab021\Data aplikací\ESET
2013-12-30 13:51:51 ----D---- C:\Documents and Settings\ab021\Data aplikací\GHISLER
2013-12-30 13:49:31 ----D---- C:\Documents and Settings\ab021\Data aplikací\WinRAR
2013-12-30 13:35:15 ----SHD---- C:\RECYCLER
2013-12-30 13:29:04 ----A---- C:\WINDOWS\msicpl.ini
2013-12-30 13:27:42 ----D---- C:\WINDOWS\Prefetch
2013-12-30 13:22:26 ----N---- C:\WINDOWS\system32\msxml6r.dll
2013-12-30 13:22:26 ----N---- C:\WINDOWS\system32\msxml6.dll
2013-12-30 13:22:13 ----A---- C:\WINDOWS\system32\h323log.txt
2013-12-30 13:22:12 ----N---- C:\WINDOWS\system32\smtpapi.dll
2013-12-30 13:22:12 ----N---- C:\WINDOWS\system32\rwnh.dll
2013-12-30 13:22:10 ----N---- C:\WINDOWS\system32\aaclient.dll
2013-12-30 13:22:09 ----N---- C:\WINDOWS\system32\azroles.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\eapolqec.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dot3ui.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dot3svc.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dot3msm.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dot3api.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dimsroam.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\credssp.dll
2013-12-30 13:22:08 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2013-12-30 13:22:07 ----N---- C:\WINDOWS\system32\eapsvc.dll
2013-12-30 13:22:07 ----N---- C:\WINDOWS\system32\eapqec.dll
2013-12-30 13:22:07 ----N---- C:\WINDOWS\system32\eappprxy.dll
2013-12-30 13:22:07 ----N---- C:\WINDOWS\system32\eapphost.dll
2013-12-30 13:22:07 ----N---- C:\WINDOWS\system32\eappgnui.dll
2013-12-30 13:22:07 ----N---- C:\WINDOWS\system32\eappcfg.dll
2013-12-30 13:22:06 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2013-12-30 13:22:06 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2013-12-30 13:22:05 ----N---- C:\WINDOWS\system32\mmcperf.exe
2013-12-30 13:22:05 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2013-12-30 13:22:05 ----N---- C:\WINDOWS\system32\mmcex.dll
2013-12-30 13:22:05 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2013-12-30 13:22:05 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2013-12-30 13:22:05 ----N---- C:\WINDOWS\system32\kmsvc.dll
2013-12-30 13:22:05 ----N---- C:\WINDOWS\system32\kbdpash.dll
2013-12-30 13:22:05 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2013-12-30 13:22:04 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2013-12-30 13:22:04 ----N---- C:\WINDOWS\system32\onex.dll
2013-12-30 13:22:04 ----N---- C:\WINDOWS\system32\napstat.exe
2013-12-30 13:22:04 ----N---- C:\WINDOWS\system32\napmontr.dll
2013-12-30 13:22:04 ----N---- C:\WINDOWS\system32\napipsec.dll
2013-12-30 13:22:04 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2013-12-30 13:22:04 ----N---- C:\WINDOWS\system32\mssha.dll
2013-12-30 13:22:03 ----N---- C:\WINDOWS\system32\setupn.exe
2013-12-30 13:22:03 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2013-12-30 13:22:03 ----N---- C:\WINDOWS\system32\rasqec.dll
2013-12-30 13:22:03 ----N---- C:\WINDOWS\system32\qutil.dll
2013-12-30 13:22:03 ----N---- C:\WINDOWS\system32\qcliprov.dll
2013-12-30 13:22:03 ----N---- C:\WINDOWS\system32\qagentrt.dll
2013-12-30 13:22:03 ----N---- C:\WINDOWS\system32\qagent.dll
2013-12-30 13:22:02 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2013-12-30 13:22:02 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2013-12-30 13:22:02 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2013-12-30 13:22:02 ----N---- C:\WINDOWS\system32\verclsid.exe
2013-12-30 13:22:02 ----N---- C:\WINDOWS\system32\tzchange.exe
2013-12-30 13:22:02 ----N---- C:\WINDOWS\system32\tspkg.dll
2013-12-30 13:22:02 ----N---- C:\WINDOWS\system32\tsgqec.dll
2013-12-30 13:22:01 ----N---- C:\WINDOWS\system32\wmphoto.dll
2013-12-30 13:22:01 ----N---- C:\WINDOWS\system32\wlanapi.dll
2013-12-30 13:21:59 ----D---- C:\WINDOWS\system32\cs-cz
2013-12-30 13:21:59 ----A---- C:\WINDOWS\system32\xmllite.dll
2013-12-30 13:21:58 ----D---- C:\WINDOWS\system32\cs
2013-12-30 13:21:58 ----D---- C:\WINDOWS\system32\bits
2013-12-30 13:21:58 ----D---- C:\WINDOWS\l2schemas
2013-12-30 13:16:56 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2013-12-30 13:16:56 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2013-12-30 13:16:56 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2013-12-30 13:16:56 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2013-12-30 13:16:55 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2013-12-30 13:16:55 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2013-12-30 13:16:55 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2013-12-30 13:16:54 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2013-12-30 13:16:54 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2013-12-30 13:16:54 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2013-12-30 13:16:53 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2013-12-30 13:16:50 ----A---- C:\WINDOWS\system32\drivers\usbaudio.sys
2013-12-30 13:16:46 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2013-12-30 13:16:30 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2013-12-30 13:15:58 ----A---- C:\WINDOWS\system32\usbui.dll
2013-12-30 13:15:27 ----D---- C:\WINDOWS\network diagnostic
2013-12-30 13:15:23 ----N---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2013-12-30 13:15:20 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2013-12-30 13:15:04 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-30 13:15:03 ----D---- C:\Program Files\Common Files\ODBC
2013-12-30 13:15:03 ----A---- C:\WINDOWS\ODBCINST.INI
2013-12-30 13:15:00 ----D---- C:\Program Files\Common Files\SpeechEngines
2013-12-30 13:14:59 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-30 13:14:59 ----D---- C:\Program Files\Common Files
2013-12-30 13:14:59 ----D---- C:\Program Files
2013-12-30 13:14:57 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2013-12-30 13:14:57 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2013-12-30 13:14:57 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2013-12-30 13:14:55 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdur.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdru.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2013-12-30 13:14:54 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2013-12-30 13:14:51 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2013-12-30 13:14:51 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2013-12-30 13:14:51 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2013-12-30 13:14:51 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2013-12-30 13:14:51 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2013-12-30 13:14:51 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2013-12-30 13:14:51 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2013-12-30 13:14:49 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2013-12-30 13:14:49 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2013-12-30 13:14:49 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2013-12-30 13:14:49 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2013-12-30 13:14:49 ----RA---- C:\WINDOWS\system32\kbdest.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\kbdycl.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\kbdsl.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\kbdro.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\kbdpl.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\kbdhu.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\kbdcr.dll
2013-12-30 13:14:45 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2013-12-30 13:14:44 ----A---- C:\WINDOWS\system32\irclass.dll
2013-12-30 13:14:44 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2013-12-30 13:14:44 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2013-12-30 13:14:43 ----A---- C:\WINDOWS\system32\spxcoins.dll
2013-12-30 13:14:43 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2013-12-30 13:14:43 ----A---- C:\WINDOWS\system32\dgsetup.dll
2013-12-30 13:14:41 ----A---- C:\WINDOWS\TASKMAN.EXE
2013-12-30 13:14:40 ----A---- C:\WINDOWS\system32\batt.dll
2013-12-30 13:14:40 ----A---- C:\WINDOWS\notepad.exe
2013-12-30 13:14:39 ----A---- C:\WINDOWS\system32\storprop.dll
2013-12-30 13:14:36 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2013-12-30 13:14:24 ----D---- C:\WINDOWS\system32\CatRoot2
2013-12-30 13:14:24 ----D---- C:\WINDOWS\system32\CatRoot
2013-12-30 13:14:18 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2013-12-30 13:14:02 ----D---- C:\Documents and Settings
2013-12-30 13:13:20 ----RASH---- C:\boot.ini
2013-12-30 13:09:39 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-12-30 13:09:39 ----RSD---- C:\WINDOWS\Fonts
2013-12-30 13:09:39 ----RD---- C:\WINDOWS\Web
2013-12-30 13:09:39 ----HD---- C:\WINDOWS\inf
2013-12-30 13:09:39 ----D---- C:\WINDOWS\WinSxS
2013-12-30 13:09:39 ----D---- C:\WINDOWS\twain_32
2013-12-30 13:09:39 ----D---- C:\WINDOWS\Temp
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\wins
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\wbem
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\usmt
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\spool
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\ShellExt
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\Setup
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\ras
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\oobe
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\npp
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\mui
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\inetsrv
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\IME
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\icsxml
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\ias
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\export
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\drivers\etc
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\drivers\disdn
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\drivers
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\dhcp
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\config
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\3com_dmi
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\3076
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\2052
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\1054
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\1042
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\1041
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\1037
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\1033
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\1031
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\1029
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\1028
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32\1025
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system32
2013-12-30 13:09:39 ----D---- C:\WINDOWS\system
2013-12-30 13:09:39 ----D---- C:\WINDOWS\security
2013-12-30 13:09:39 ----D---- C:\WINDOWS\Resources
2013-12-30 13:09:39 ----D---- C:\WINDOWS\repair
2013-12-30 13:09:39 ----D---- C:\WINDOWS\mui
2013-12-30 13:09:39 ----D---- C:\WINDOWS\msapps
2013-12-30 13:09:39 ----D---- C:\WINDOWS\msagent
2013-12-30 13:09:39 ----D---- C:\WINDOWS\Media
2013-12-30 13:09:39 ----D---- C:\WINDOWS\java
2013-12-30 13:09:39 ----D---- C:\WINDOWS\ime
2013-12-30 13:09:39 ----D---- C:\WINDOWS\Help
2013-12-30 13:09:39 ----D---- C:\WINDOWS\Driver Cache
2013-12-30 13:09:39 ----D---- C:\WINDOWS\Debug
2013-12-30 13:09:39 ----D---- C:\WINDOWS\Cursors
2013-12-30 13:09:39 ----D---- C:\WINDOWS\Connection Wizard
2013-12-30 13:09:39 ----D---- C:\WINDOWS\Config
2013-12-30 13:09:39 ----D---- C:\WINDOWS\AppPatch
2013-12-30 13:09:39 ----D---- C:\WINDOWS\addins
2013-12-30 13:09:39 ----D---- C:\WINDOWS
2013-12-30 13:04:13 ----D---- C:\WINDOWS\SoftwareDistribution
2013-12-30 12:58:23 ----N---- C:\WINDOWS\system32\drivers\irbus.sys
2013-12-30 12:58:23 ----N---- C:\WINDOWS\system32\comsdupd.exe
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\sisagp.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\sffp_sd.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\sffdisk.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\sdbus.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\mssmbios.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ip6fw.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\intelppm.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\http.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\fltmgr.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2013-12-30 12:58:21 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\MP43DMOD.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdukx.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdsmsno.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdsmsfi.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdno1.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdmlt48.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdmlt47.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdmaori.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdinmal.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdinben.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdinbe1.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\kbdfi1.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ir50_qcx.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ir50_qc.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ir50_32.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ir41_qcx.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ir41_qc.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\fwcfg.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\fsquirt.exe
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\fltmc.exe
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\fltlib.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\extmgr.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\dxdiagn.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\d3d9.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\cmsetacl.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\btpanui.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\bthserv.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\bthci.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\blastcln.exe
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\bitsprx3.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\bitsprx2.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\auditusr.exe
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ati3duag.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2013-12-30 12:58:20 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2013-12-30 12:58:20 ----A---- C:\WINDOWS\system32\httpapi.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\xpob2res.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\wmerror.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\winshfhc.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\w3ssl.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\twext.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\smbinst.exe
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\slserv.exe
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\slrundll.exe
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\slgen.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\slextspk.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\slcoinst.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\sdhcinst.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\s3gnb.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\powercfg.exe
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\pnrpnsp.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\p2psvc.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\p2pnetsh.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\p2pgraph.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\p2pgasvc.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\p2p.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\mspmsnsv.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\msdadiag.dll
2013-12-30 12:58:19 ----N---- C:\WINDOWS\system32\MP4SDMOD.dll
2013-12-30 12:58:19 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2013-12-30 12:58:19 ----A---- C:\WINDOWS\system32\wmidx.dll
2013-12-30 12:58:19 ----A---- C:\WINDOWS\system32\strmfilt.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\xmlprovi.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\xmlprov.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\wuaueng1.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\wuauclt1.exe
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\wshbth.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\wmvdmoe2.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\WMSPDMOE.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\wmspdmod.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\wmsdmoe2.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\wmpdxm.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\system32\wmp.dll
2013-12-30 12:58:18 ----N---- C:\WINDOWS\slrundll.exe
2013-12-30 12:58:18 ----D---- C:\WINDOWS\peernet
2013-12-30 12:58:18 ----A---- C:\WINDOWS\system32\wuweb.dll
2013-12-30 12:58:18 ----A---- C:\WINDOWS\system32\wups.dll
2013-12-30 12:58:18 ----A---- C:\WINDOWS\system32\wucltui.dll
2013-12-30 12:58:18 ----A---- C:\WINDOWS\system32\wuapi.dll
2013-12-30 12:58:18 ----A---- C:\WINDOWS\system32\wscsvc.dll
2013-12-30 12:58:18 ----A---- C:\WINDOWS\system32\wscntfy.exe
2013-12-30 12:58:18 ----A---- C:\WINDOWS\system32\wmpasf.dll
2013-12-30 12:58:17 ----D---- C:\WINDOWS\provisioning
2013-12-30 12:57:23 ----D---- C:\WINDOWS\ServicePackFiles
2013-12-30 12:55:56 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2013-12-30 12:55:05 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2013-12-30 12:55:03 ----D---- C:\WINDOWS\EHome
2013-12-30 12:48:30 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-12-30 12:45:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\nView_Profiles
2013-12-30 12:44:14 ----D---- C:\WINDOWS\nview
2013-12-30 12:44:14 ----A---- C:\WINDOWS\system32\nvudisp.exe
2013-12-30 12:44:01 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2013-12-30 12:37:38 ----SD---- C:\WINDOWS\system32\Microsoft
2013-12-30 12:37:19 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2013-12-30 12:37:19 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2013-12-30 12:37:18 ----A---- C:\WINDOWS\system32\ksuser.dll
2013-12-30 12:37:18 ----A---- C:\WINDOWS\system32\drivers\stream.sys
2013-12-30 12:37:18 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2013-12-30 12:37:17 ----D---- C:\WINDOWS\VirtualEar
2013-12-30 12:37:17 ----D---- C:\Program Files\Analog Devices
2013-12-30 12:37:17 ----A---- C:\WINDOWS\system32\virtear.dll
2013-12-30 12:37:17 ----A---- C:\WINDOWS\system32\DSndUp.exe
2013-12-30 12:37:17 ----A---- C:\WINDOWS\system32\CleanUp.exe
2013-12-30 12:37:17 ----A---- C:\WINDOWS\system32\Audio3d.dll
2013-12-30 12:37:11 ----D---- C:\Program Files\Common Files\InstallShield
2013-12-30 12:37:02 ----A---- C:\WINDOWS\system32\PostProc.dll
2013-12-30 12:37:02 ----A---- C:\WINDOWS\system32\Edcrypt.dll
2013-12-30 12:37:02 ----A---- C:\WINDOWS\system32\drivers\smwdm.sys
2013-12-30 12:37:02 ----A---- C:\WINDOWS\system32\drivers\senfilt.sys
2013-12-30 12:36:09 ----A---- C:\WINDOWS\system32\drivers\mstee.sys
2013-12-30 12:36:08 ----A---- C:\WINDOWS\system32\drivers\streamip.sys
2013-12-30 12:36:08 ----A---- C:\WINDOWS\system32\drivers\ndisip.sys
2013-12-30 12:36:07 ----A---- C:\WINDOWS\system32\drivers\wstcodec.sys
2013-12-30 12:36:07 ----A---- C:\WINDOWS\system32\drivers\slip.sys
2013-12-30 12:36:06 ----A---- C:\WINDOWS\system32\drivers\nabtsfec.sys
2013-12-30 12:36:06 ----A---- C:\WINDOWS\system32\drivers\ccdecode.sys
2013-12-30 12:36:02 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2013-12-30 12:35:45 ----A---- C:\WINDOWS\system32\Prounstl.exe
2013-12-30 12:35:45 ----A---- C:\WINDOWS\system32\IntelNic.dll
2013-12-30 12:35:45 ----A---- C:\WINDOWS\system32\e100bmsg.dll
2013-12-30 12:35:45 ----A---- C:\WINDOWS\system32\drivers\e100b325.sys
2013-12-30 12:35:42 ----D---- C:\dell
2013-12-30 12:34:01 ----D---- C:\WINDOWS\Pixart
2013-12-30 12:34:01 ----A---- C:\WINDOWS\system32\SP7302.INI
2013-12-30 12:34:01 ----A---- C:\WINDOWS\system32\drivers\PAC7302.SYS
2013-12-30 12:34:01 ----A---- C:\WINDOWS\system32\CoInst.dll
2013-12-30 12:34:00 ----HD---- C:\Program Files\InstallShield Installation Information
2013-12-30 12:34:00 ----D---- C:\Program Files\Trust Webcam 16175
2013-12-30 12:33:57 ----D---- C:\Documents and Settings\ab021\Data aplikací\InstallShield
2013-12-30 12:32:44 ----SHD---- C:\WINDOWS\Installer
2013-12-30 12:32:41 ----D---- C:\Documents and Settings\ab021\Data aplikací\Identities
2013-12-30 12:32:36 ----HD---- C:\Program Files\Uninstall Information
2013-12-30 12:32:32 ----ASH---- C:\Documents and Settings\ab021\Data aplikací\desktop.ini
2013-12-30 12:32:31 ----SD---- C:\Documents and Settings\ab021\Data aplikací\Microsoft
2013-12-30 12:31:55 ----SHD---- C:\System Volume Information
2013-12-30 12:31:51 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-12-30 12:27:08 ----D---- C:\Program Files\xerox
2013-12-30 12:27:07 ----D---- C:\WINDOWS\system32\xircom
2013-12-30 12:27:07 ----D---- C:\Program Files\microsoft frontpage
2013-12-30 12:26:56 ----RASH---- C:\MSDOS.SYS
2013-12-30 12:26:56 ----RASH---- C:\IO.SYS
2013-12-30 12:26:56 ----A---- C:\WINDOWS\control.ini
2013-12-30 12:26:56 ----A---- C:\CONFIG.SYS
2013-12-30 12:26:56 ----A---- C:\AUTOEXEC.BAT
2013-12-30 12:26:44 ----A---- C:\WINDOWS\system32\mapi32.dll
2013-12-30 12:25:58 ----SD---- C:\WINDOWS\Downloaded Program Files
2013-12-30 12:25:58 ----RD---- C:\WINDOWS\Offline Web Pages
2013-12-30 12:25:58 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2013-12-30 12:25:52 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2013-12-30 12:25:29 ----D---- C:\WINDOWS\system32\DirectX
2013-12-30 12:24:56 ----A---- C:\WINDOWS\system32\safrslv.dll
2013-12-30 12:24:56 ----A---- C:\WINDOWS\system32\safrdm.dll
2013-12-30 12:24:56 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2013-12-30 12:24:56 ----A---- C:\WINDOWS\system32\racpldlg.dll
2013-12-30 12:24:56 ----A---- C:\WINDOWS\system32\atrace.dll
2013-12-30 12:24:53 ----A---- C:\WINDOWS\system32\desktop.ini
2013-12-30 12:24:53 ----A---- C:\WINDOWS\desktop.ini
2013-12-30 12:24:45 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2013-12-30 12:24:44 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2013-12-30 12:24:44 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2013-12-30 12:24:43 ----A---- C:\WINDOWS\system32\acctres.dll
2013-12-30 12:24:42 ----D---- C:\Program Files\Common Files\Services
2013-12-30 12:24:41 ----A---- C:\WINDOWS\system32\inetres.dll
2013-12-30 12:24:37 ----SD---- C:\WINDOWS\Tasks
2013-12-30 12:24:36 ----A---- C:\WINDOWS\system32\isign32.dll
2013-12-30 12:24:36 ----A---- C:\WINDOWS\system32\inetcfg.dll
2013-12-30 12:24:36 ----A---- C:\WINDOWS\system32\icwphbk.dll
2013-12-30 12:24:36 ----A---- C:\WINDOWS\system32\icwdial.dll
2013-12-30 12:24:36 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2013-12-30 12:24:33 ----D---- C:\Program Files\Common Files\MSSoap
2013-12-30 12:24:28 ----D---- C:\WINDOWS\srchasst
2013-12-30 12:24:27 ----D---- C:\WINDOWS\system32\Macromed
2013-12-30 12:24:26 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2013-12-30 12:24:26 ----A---- C:\WINDOWS\system32\qmgr.dll
2013-12-30 12:24:25 ----D---- C:\Program Files\Movie Maker
2013-12-30 12:24:21 ----D---- C:\WINDOWS\PCHealth
2013-12-30 12:24:20 ----D---- C:\WINDOWS\system32\Restore
2013-12-30 12:24:20 ----A---- C:\WINDOWS\system32\srsvc.dll
2013-12-30 12:24:20 ----A---- C:\WINDOWS\system32\srrstr.dll
2013-12-30 12:24:20 ----A---- C:\WINDOWS\system32\srclient.dll
2013-12-30 12:24:20 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2013-12-30 12:24:19 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2013-12-30 12:24:19 ----A---- C:\WINDOWS\system32\msconf.dll
2013-12-30 12:24:19 ----A---- C:\WINDOWS\system32\mnmdd.dll
2013-12-30 12:24:19 ----A---- C:\WINDOWS\system32\ils.dll
2013-12-30 12:24:16 ----D---- C:\Program Files\NetMeeting
2013-12-30 12:24:16 ----A---- C:\WINDOWS\system32\msoert2.dll
2013-12-30 12:24:16 ----A---- C:\WINDOWS\system32\msoeacct.dll
2013-12-30 12:24:15 ----A---- C:\WINDOWS\system32\inetcomm.dll
2013-12-30 12:24:14 ----D---- C:\Program Files\Outlook Express
2013-12-30 12:24:14 ----A---- C:\WINDOWS\system32\schedsvc.dll
2013-12-30 12:24:14 ----A---- C:\WINDOWS\system32\mstinit.exe
2013-12-30 12:24:14 ----A---- C:\WINDOWS\system32\mstask.dll
2013-12-30 12:24:07 ----D---- C:\Program Files\Common Files\System
2013-12-30 12:24:06 ----D---- C:\Program Files\Internet Explorer
2013-12-30 12:23:47 ----D---- C:\Program Files\ComPlus Applications
2013-12-30 12:23:46 ----A---- C:\WINDOWS\vbaddin.ini
2013-12-30 12:23:46 ----A---- C:\WINDOWS\vb.ini
2013-12-30 12:23:45 ----D---- C:\WINDOWS\Registration
2013-12-30 12:23:42 ----HD---- C:\Program Files\WindowsUpdate
2013-12-30 12:23:41 ----D---- C:\Program Files\Online Services
2013-12-30 12:23:40 ----D---- C:\Program Files\Windows Media Player
2013-12-30 12:23:36 ----D---- C:\Program Files\Messenger
2013-12-30 12:23:31 ----D---- C:\Program Files\MSN Gaming Zone
2013-12-30 12:23:31 ----A---- C:\WINDOWS\system32\write.exe
2013-12-30 12:23:19 ----A---- C:\WINDOWS\system32\accwiz.exe
2013-12-30 12:23:18 ----A---- C:\WINDOWS\system32\sndvol32.exe
2013-12-30 12:23:18 ----A---- C:\WINDOWS\system32\sndrec32.exe
2013-12-30 12:23:18 ----A---- C:\WINDOWS\system32\hypertrm.dll
2013-12-30 12:23:18 ----A---- C:\WINDOWS\system32\hticons.dll
2013-12-30 12:23:18 ----A---- C:\WINDOWS\system32\avwav.dll
2013-12-30 12:23:17 ----A---- C:\WINDOWS\system32\winchat.exe
2013-12-30 12:23:17 ----A---- C:\WINDOWS\system32\avtapi.dll
2013-12-30 12:23:17 ----A---- C:\WINDOWS\system32\avmeter.dll
2013-12-30 12:23:08 ----A---- C:\WINDOWS\system32\charmap.exe
2013-12-30 12:23:08 ----A---- C:\WINDOWS\system32\getuname.dll
2013-12-30 12:23:07 ----A---- C:\WINDOWS\system32\winmine.exe
2013-12-30 12:23:07 ----A---- C:\WINDOWS\system32\sol.exe
2013-12-30 12:23:07 ----A---- C:\WINDOWS\system32\calc.exe
2013-12-30 12:23:06 ----A---- C:\WINDOWS\system32\reset.exe
2013-12-30 12:23:06 ----A---- C:\WINDOWS\system32\rdshost.exe
2013-12-30 12:23:06 ----A---- C:\WINDOWS\system32\mshearts.exe
2013-12-30 12:23:06 ----A---- C:\WINDOWS\system32\freecell.exe
2013-12-30 12:23:06 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2013-12-30 12:23:06 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\tslabels.ini
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\tskill.exe
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\tscon.exe
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\shadow.exe
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\rwinsta.exe
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\regini.exe
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2013-12-30 12:23:05 ----A---- C:\WINDOWS\system32\qwinsta.exe
2013-12-30 12:23:04 ----A---- C:\WINDOWS\system32\qprocess.exe
2013-12-30 12:23:04 ----A---- C:\WINDOWS\system32\qappsrv.exe
2013-12-30 12:23:04 ----A---- C:\WINDOWS\system32\mtxoci.dll
2013-12-30 12:23:04 ----A---- C:\WINDOWS\system32\msg.exe
2013-12-30 12:23:04 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2013-12-30 12:23:04 ----A---- C:\WINDOWS\system32\logoff.exe
2013-12-30 12:23:04 ----A---- C:\WINDOWS\system32\cdmodem.dll
2013-12-30 12:23:03 ----A---- C:\WINDOWS\system32\xolehlp.dll
2013-12-30 12:23:03 ----A---- C:\WINDOWS\system32\msdtctm.dll
2013-12-30 12:23:03 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2013-12-30 12:23:03 ----A---- C:\WINDOWS\system32\msdtclog.dll
2013-12-30 12:23:03 ----A---- C:\WINDOWS\system32\msdtc.exe
2013-12-30 12:23:01 ----A---- C:\WINDOWS\system32\stclient.dll
2013-12-30 12:23:01 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2013-12-30 12:23:01 ----A---- C:\WINDOWS\system32\mtxex.dll
2013-12-30 12:23:01 ----A---- C:\WINDOWS\system32\mtxdm.dll
2013-12-30 12:23:01 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2013-12-30 12:23:01 ----A---- C:\WINDOWS\system32\comrepl.dll
2013-12-30 12:23:01 ----A---- C:\WINDOWS\system32\comaddin.dll
2013-12-30 12:23:01 ----A---- C:\WINDOWS\system32\colbact.dll
2013-12-30 12:23:01 ----A---- C:\WINDOWS\system32\catsrvps.dll
2013-12-30 12:23:00 ----A---- C:\WINDOWS\system32\comuid.dll
2013-12-30 12:23:00 ----A---- C:\WINDOWS\system32\comsnap.dll
2013-12-30 12:23:00 ----A---- C:\WINDOWS\system32\clbcatq.dll
2013-12-30 12:23:00 ----A---- C:\WINDOWS\system32\clbcatex.dll
2013-12-30 12:23:00 ----A---- C:\WINDOWS\system32\catsrv.dll
2013-12-30 12:22:50 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2013-12-30 12:22:50 ----A---- C:\WINDOWS\system32\servdeps.dll
2013-12-30 12:22:50 ----A---- C:\WINDOWS\system32\mmfutil.dll
2013-12-30 12:22:50 ----A---- C:\WINDOWS\system32\cmprops.dll
2013-12-30 12:22:44 ----D---- C:\Program Files\Windows NT
2013-12-30 12:22:44 ----D---- C:\Program Files\MSN
2013-12-30 12:22:44 ----A---- C:\WINDOWS\system32\mspaint.exe
2013-12-30 12:22:44 ----A---- C:\WINDOWS\system32\mplay32.exe
2013-12-30 12:22:44 ----A---- C:\WINDOWS\system32\clipbrd.exe
2013-12-30 12:22:43 ----A---- C:\WINDOWS\system32\wuauserv.dll
2013-12-30 12:22:43 ----A---- C:\WINDOWS\system32\wuaueng.dll
2013-12-30 12:22:43 ----A---- C:\WINDOWS\system32\wuauclt.exe
2013-12-30 12:22:43 ----A---- C:\WINDOWS\system32\spider.exe
2013-12-30 12:22:43 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2013-12-30 12:22:42 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2013-12-30 12:22:42 ----A---- C:\WINDOWS\system32\sessmgr.exe
2013-12-30 12:22:42 ----A---- C:\WINDOWS\system32\remotepg.dll
2013-12-30 12:22:42 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2013-12-30 12:22:42 ----A---- C:\WINDOWS\system32\rdchost.dll
2013-12-30 12:22:42 ----A---- C:\WINDOWS\system32\mstscax.dll
2013-12-30 12:22:42 ----A---- C:\WINDOWS\system32\mstsc.exe
2013-12-30 12:22:41 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2013-12-30 12:22:41 ----A---- C:\WINDOWS\system32\termsrv.dll
2013-12-30 12:22:41 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2013-12-30 12:22:41 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2013-12-30 12:22:41 ----A---- C:\WINDOWS\system32\rdpclip.exe
2013-12-30 12:22:41 ----A---- C:\WINDOWS\system32\icaapi.dll
2013-12-30 12:22:41 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2013-12-30 12:22:40 ----D---- C:\WINDOWS\system32\MsDtc
2013-12-30 12:22:40 ----D---- C:\WINDOWS\system32\Com
2013-12-30 12:22:40 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2013-12-30 12:22:40 ----A---- C:\WINDOWS\system32\catsrvut.dll
2013-12-30 12:22:39 ----A---- C:\WINDOWS\system32\comsvcs.dll
2013-12-30 12:22:35 ----A---- C:\WINDOWS\system32\licwmi.dll
2013-12-30 12:22:32 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2013-12-30 12:22:32 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
======List of files/folders modified in the last 1 months======
2014-01-23 08:28:53 ----A---- C:\WINDOWS\win.ini
2014-01-07 07:51:07 ----A---- C:\WINDOWS\system.ini
2013-12-30 12:56:36 ----RASH---- C:\NTDETECT.COM
2013-12-30 12:26:34 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\System32\DRIVERS\agp440.sys [2008-04-14 42368]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2006-09-24 5248]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2013-01-10 161368]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2013-01-10 122240]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2013-02-14 62512]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 40192]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2013-01-10 150080]
R2 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2012-06-03 5504]
R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys [2004-02-10 154112]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2013-01-10 40376]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2002-09-23 12160]
R3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2006-06-01 3925920]
R3 PAC7302;Trust Webcam 16175; C:\WINDOWS\System32\DRIVERS\PAC7302.SYS [2008-11-10 461312]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2013-12-30 47360]
R3 senfilt;senfilt; C:\WINDOWS\system32\drivers\senfilt.sys [2004-09-17 732928]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2005-01-27 260352]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2013-07-17 60160]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2013-01-23 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2013-01-23 23168]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2013-01-23 8192]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2013-08-29 26240]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2013-01-23 8192]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2009-01-30 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2013-03-21 1341664]
R2 EpsonBidirectionalService;EpsonBidirectionalService; C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe [2006-12-19 94208]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-12-18 182696]
R2 MBAMScheduler;MBAMScheduler; D:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\System32\nvsvc32.exe [2006-06-01 155715]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 MBAMService;MBAMService; D:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-14 257928]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-11-13 119408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 SureThing Labelflash service;SureThing Labelflash service; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2009-03-17 74392]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2009-02-04 913920]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu-maily
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119533
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu-maily
Zdravím!
Dejte log ComboFix:
Dejte log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se
jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine
aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,
pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k
nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu-maily
Posielam log z ComboFixu
ComboFix 14-01-23.02 - ab021 23.01.2014 17:41:35.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1029.18.2047.1442 [GMT 1:00]
Running from: F:\ComboFix.exe
AV: ESET Smart Security 6.0 *Enabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *Enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Resident AV is active
.
.
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\TZLog.log
.
.
((((((((((((((((((((((((( Files Created from 2013-12-23 to 2014-01-23 )))))))))))))))))))))))))))))))
.
.
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-11-27 20:21 . 2002-09-23 12:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2013-11-13 03:00 . 2002-09-23 12:00 150528 ----a-w- c:\windows\system32\imagehlp.dll
2013-11-07 05:38 . 2002-09-23 12:00 591360 ----a-w- c:\windows\system32\rpcrt4.dll
2013-11-06 01:36 . 2008-05-05 06:25 7168 ----a-w- c:\windows\system32\xpsp4res.dll
2013-10-30 02:51 . 2002-09-23 12:00 1879040 ----a-w- c:\windows\system32\win32k.sys
2013-10-29 07:45 . 2002-09-23 12:00 920064 ----a-w- c:\windows\system32\wininet.dll
2013-10-29 07:45 . 2002-09-23 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-10-29 07:45 . 2002-09-23 12:00 18944 ----a-w- c:\windows\system32\corpol.dll
2013-10-29 07:45 . 2002-09-23 12:00 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2009-05-01 21:02 . 2009-05-01 21:02 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-05-01 21:02 . 2009-05-01 21:02 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OEXPRESS"="c:\documents and settings\All Users\Data aplikací\LangSoft\OETRN.EXE" [2013-12-30 26624]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PAC7302_Monitor"="c:\windows\PixArt\PAC7302\Monitor.exe" [2007-12-10 323584]
"PACTray"="c:\windows\Pixart\PAC7302\PACTray.exe" [2009-03-23 327680]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"NvCplDaemon"="c:\windows\System32\NvCpl.dll" [2006-06-01 7618560]
"nwiz"="nwiz.exe" [2006-06-01 1519616]
"SW20"="c:\windows\System32\sw20.exe" [2006-05-18 208896]
"SW24"="c:\windows\System32\sw24.exe" [2006-05-17 69632]
"NvMediaCenter"="c:\windows\System32\NvMcTray.dll" [2006-06-01 86016]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2013-03-21 5078504]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\ab021\Nabídka Start\Programy\Po spuštění\
Kalendár.lnk - c:\windows\MENINY.EXE [2013-12-30 49312]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Documents and Settings\\ab021\\Data aplikací\\uTorrent\\uTorrent.exe"=
.
R0 90187443;90187443;c:\windows\system32\drivers\90187443.sys [23.1.2014 8:57 133208]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [10.1.2013 10:25 122240]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [21.3.2013 15:19 1341664]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [30.12.2013 16:52 22856]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\drivers\pcouffin.sys [30.12.2013 18:13 47360]
S2 MBAMService;MBAMService;d:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [30.12.2013 16:52 701512]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [5.9.2013 10:34 171680]
S3 SureThing Labelflash service;SureThing Labelflash service;c:\program files\Common Files\SureThing Shared\stllssvr.exe [30.12.2013 17:28 74392]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.sk/
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - d:\program files\ICQ7M\ICQ.exe
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
Trusted Zone: dell.com
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{EA951BF3-E4CA-4276-A720-34BD8AB515AA}: NameServer = 8.8.8.8,8.8.4.4
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\ab021\Data aplikací\Mozilla\Firefox\Profiles\r157ca2o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.1&q=
FF - prefs.js: network.proxy.type - 0
FF - ExtSQL: !HIDDEN! 2013-12-30 17:50; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
pref('extensions.shownSelectionUI',true);
pref('extensions.autoDisableScopes',0);
FF - user.js: extensions.BabylonToolbar.tlbrSrchUrl - hxxp://search.babylon.com/?babsrc=TB_def&mntrId=94931c7400000000000000138f711fff&q=
FF - user.js: extensions.BabylonToolbar.id - 94931c7400000000000000138f711fff
FF - user.js: extensions.BabylonToolbar.appId - {BDB69379-802F-4eaf-B541-F8DE92DD98DB}
FF - user.js: extensions.BabylonToolbar.instlDay - 15723
FF - user.js: extensions.BabylonToolbar.vrsn - 1.8.7.2
FF - user.js: extensions.BabylonToolbar.vrsni - 1.8.7.2
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.8.7.216:28
FF - user.js: extensions.BabylonToolbar.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar.tlbrId - base
FF - user.js: extensions.BabylonToolbar.instlRef - sst
FF - user.js: extensions.BabylonToolbar.dfltLng - en
FF - user.js: extensions.BabylonToolbar_i.excTlbr - false
FF - user.js: extensions.BabylonToolbar.excTlbr - false
FF - user.js: extensions.BabylonToolbar.admin - false
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109718&tt=0313_5
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar.autoRvrt - false
FF - user.js: extensions.BabylonToolbar.rvrt - false
FF - user.js: extensions.BabylonToolbar_i.newTab - false
pref('extensions.shownSelectionUI',true);
pref('extensions.autoDisableScopes',0);
.
- - - - ORPHANS REMOVED - - - -
.
c:\documents and settings\ab021\Nabídka Start\Programy\Po spuštění\_uninst_90187443.lnk - c:\documents and settings\ab021\Local Settings\Temp\_uninst_90187443.bat
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-01-23 17:46
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_38_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_38_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
Completion time: 2014-01-23 17:48:10
ComboFix-quarantined-files.txt 2014-01-23 16:48
.
Pre-Run: Volných bajtů: 487 214 809 088
Post-Run: Volných bajtů: 487 515 377 664
.
- - End Of File - - 538842057B6DEDD3BBEF9D2A59F955C7
413FC2A0C716421B3158746D63736515
ComboFix 14-01-23.02 - ab021 23.01.2014 17:41:35.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1029.18.2047.1442 [GMT 1:00]
Running from: F:\ComboFix.exe
AV: ESET Smart Security 6.0 *Enabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *Enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Resident AV is active
.
.
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\TZLog.log
.
.
((((((((((((((((((((((((( Files Created from 2013-12-23 to 2014-01-23 )))))))))))))))))))))))))))))))
.
.
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-11-27 20:21 . 2002-09-23 12:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2013-11-13 03:00 . 2002-09-23 12:00 150528 ----a-w- c:\windows\system32\imagehlp.dll
2013-11-07 05:38 . 2002-09-23 12:00 591360 ----a-w- c:\windows\system32\rpcrt4.dll
2013-11-06 01:36 . 2008-05-05 06:25 7168 ----a-w- c:\windows\system32\xpsp4res.dll
2013-10-30 02:51 . 2002-09-23 12:00 1879040 ----a-w- c:\windows\system32\win32k.sys
2013-10-29 07:45 . 2002-09-23 12:00 920064 ----a-w- c:\windows\system32\wininet.dll
2013-10-29 07:45 . 2002-09-23 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-10-29 07:45 . 2002-09-23 12:00 18944 ----a-w- c:\windows\system32\corpol.dll
2013-10-29 07:45 . 2002-09-23 12:00 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2009-05-01 21:02 . 2009-05-01 21:02 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-05-01 21:02 . 2009-05-01 21:02 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OEXPRESS"="c:\documents and settings\All Users\Data aplikací\LangSoft\OETRN.EXE" [2013-12-30 26624]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PAC7302_Monitor"="c:\windows\PixArt\PAC7302\Monitor.exe" [2007-12-10 323584]
"PACTray"="c:\windows\Pixart\PAC7302\PACTray.exe" [2009-03-23 327680]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"NvCplDaemon"="c:\windows\System32\NvCpl.dll" [2006-06-01 7618560]
"nwiz"="nwiz.exe" [2006-06-01 1519616]
"SW20"="c:\windows\System32\sw20.exe" [2006-05-18 208896]
"SW24"="c:\windows\System32\sw24.exe" [2006-05-17 69632]
"NvMediaCenter"="c:\windows\System32\NvMcTray.dll" [2006-06-01 86016]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2013-03-21 5078504]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\ab021\Nabídka Start\Programy\Po spuštění\
Kalendár.lnk - c:\windows\MENINY.EXE [2013-12-30 49312]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Documents and Settings\\ab021\\Data aplikací\\uTorrent\\uTorrent.exe"=
.
R0 90187443;90187443;c:\windows\system32\drivers\90187443.sys [23.1.2014 8:57 133208]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [10.1.2013 10:25 122240]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [21.3.2013 15:19 1341664]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [30.12.2013 16:52 22856]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\drivers\pcouffin.sys [30.12.2013 18:13 47360]
S2 MBAMService;MBAMService;d:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [30.12.2013 16:52 701512]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [5.9.2013 10:34 171680]
S3 SureThing Labelflash service;SureThing Labelflash service;c:\program files\Common Files\SureThing Shared\stllssvr.exe [30.12.2013 17:28 74392]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.sk/
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - d:\program files\ICQ7M\ICQ.exe
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
Trusted Zone: dell.com
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{EA951BF3-E4CA-4276-A720-34BD8AB515AA}: NameServer = 8.8.8.8,8.8.4.4
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\ab021\Data aplikací\Mozilla\Firefox\Profiles\r157ca2o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.1&q=
FF - prefs.js: network.proxy.type - 0
FF - ExtSQL: !HIDDEN! 2013-12-30 17:50; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
pref('extensions.shownSelectionUI',true);
pref('extensions.autoDisableScopes',0);
FF - user.js: extensions.BabylonToolbar.tlbrSrchUrl - hxxp://search.babylon.com/?babsrc=TB_def&mntrId=94931c7400000000000000138f711fff&q=
FF - user.js: extensions.BabylonToolbar.id - 94931c7400000000000000138f711fff
FF - user.js: extensions.BabylonToolbar.appId - {BDB69379-802F-4eaf-B541-F8DE92DD98DB}
FF - user.js: extensions.BabylonToolbar.instlDay - 15723
FF - user.js: extensions.BabylonToolbar.vrsn - 1.8.7.2
FF - user.js: extensions.BabylonToolbar.vrsni - 1.8.7.2
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.8.7.216:28
FF - user.js: extensions.BabylonToolbar.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar.tlbrId - base
FF - user.js: extensions.BabylonToolbar.instlRef - sst
FF - user.js: extensions.BabylonToolbar.dfltLng - en
FF - user.js: extensions.BabylonToolbar_i.excTlbr - false
FF - user.js: extensions.BabylonToolbar.excTlbr - false
FF - user.js: extensions.BabylonToolbar.admin - false
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109718&tt=0313_5
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar.autoRvrt - false
FF - user.js: extensions.BabylonToolbar.rvrt - false
FF - user.js: extensions.BabylonToolbar_i.newTab - false
pref('extensions.shownSelectionUI',true);
pref('extensions.autoDisableScopes',0);
.
- - - - ORPHANS REMOVED - - - -
.
c:\documents and settings\ab021\Nabídka Start\Programy\Po spuštění\_uninst_90187443.lnk - c:\documents and settings\ab021\Local Settings\Temp\_uninst_90187443.bat
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-01-23 17:46
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_38_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_38_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
Completion time: 2014-01-23 17:48:10
ComboFix-quarantined-files.txt 2014-01-23 16:48
.
Pre-Run: Volných bajtů: 487 214 809 088
Post-Run: Volných bajtů: 487 515 377 664
.
- - End Of File - - 538842057B6DEDD3BBEF9D2A59F955C7
413FC2A0C716421B3158746D63736515
- Rudy
- Site Admin
- Příspěvky: 119533
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu-maily
Přesuňte ComboFix na plochu. Otevřte poznámkový blok a zkopírujte do něj:

Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.KillAll::
Collect::
c:\windows\system32\drivers\90187443.sys
Driver::
90187443
Firefox::
FF - ProfilePath - c:\documents and settings\ab021\Data aplikací\Mozilla\Firefox\Profiles\r157ca2o.default\
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... r=1.5.1&q=
FF - user.js: extensions.BabylonToolbar.tlbrSrchUrl - hxxp://search.babylon.com/?babsrc=TB_de ... f711fff&q=
FF - user.js: extensions.BabylonToolbar.id - 94931c7400000000000000138f711fff
FF - user.js: extensions.BabylonToolbar.appId - {BDB69379-802F-4eaf-B541-F8DE92DD98DB}
FF - user.js: extensions.BabylonToolbar.instlDay - 15723
FF - user.js: extensions.BabylonToolbar.vrsn - 1.8.7.2
FF - user.js: extensions.BabylonToolbar.vrsni - 1.8.7.2
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.8.7.216:28
FF - user.js: extensions.BabylonToolbar.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar.tlbrId - base
FF - user.js: extensions.BabylonToolbar.instlRef - sst
FF - user.js: extensions.BabylonToolbar.dfltLng - en
FF - user.js: extensions.BabylonToolbar_i.excTlbr - false
FF - user.js: extensions.BabylonToolbar.excTlbr - false
FF - user.js: extensions.BabylonToolbar.admin - false
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109718&tt=0313_5
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar.autoRvrt - false
FF - user.js: extensions.BabylonToolbar.rvrt - false
FF - user.js: extensions.BabylonToolbar_i.newTab - false
pref('extensions.shownSelectionUI',true);
pref('extensions.autoDisableScopes',0);
RegLock::
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
Reboot::

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu-maily
Po vykonaní príkazov dávam log z ComboFixu. Zásahy ComboFixu do systému som odstránil, ale nepodarilo sa mi obnoviť jazyky v tray.
ComboFix 14-01-23.02 - ab021 23.01.2014 19:28:25.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1029.18.2047.1481 [GMT 1:00]
Running from: c:\documents and settings\ab021\Plocha\ComboFix.exe
Command switches used :: c:\documents and settings\ab021\Plocha\CFScript.txt
AV: ESET Smart Security 6.0 *Enabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *Enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Resident AV is active
.
.
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
file zipped: c:\windows\system32\drivers\90187443.sys
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\drivers\90187443.sys
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_90187443
-------\Service_90187443
.
.
((((((((((((((((((((((((( Files Created from 2013-12-23 to 2014-01-23 )))))))))))))))))))))))))))))))
.
.
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-11-27 20:21 . 2002-09-23 12:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2013-11-13 03:00 . 2002-09-23 12:00 150528 ----a-w- c:\windows\system32\imagehlp.dll
2013-11-07 05:38 . 2002-09-23 12:00 591360 ----a-w- c:\windows\system32\rpcrt4.dll
2013-11-06 01:36 . 2008-05-05 06:25 7168 ----a-w- c:\windows\system32\xpsp4res.dll
2013-10-30 02:51 . 2002-09-23 12:00 1879040 ----a-w- c:\windows\system32\win32k.sys
2013-10-29 07:45 . 2002-09-23 12:00 920064 ----a-w- c:\windows\system32\wininet.dll
2013-10-29 07:45 . 2002-09-23 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-10-29 07:45 . 2002-09-23 12:00 18944 ----a-w- c:\windows\system32\corpol.dll
2013-10-29 07:45 . 2002-09-23 12:00 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2009-05-01 21:02 . 2009-05-01 21:02 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-05-01 21:02 . 2009-05-01 21:02 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OEXPRESS"="c:\documents and settings\All Users\Data aplikací\LangSoft\OETRN.EXE" [2013-12-30 26624]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PAC7302_Monitor"="c:\windows\PixArt\PAC7302\Monitor.exe" [2007-12-10 323584]
"PACTray"="c:\windows\Pixart\PAC7302\PACTray.exe" [2009-03-23 327680]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"NvCplDaemon"="c:\windows\System32\NvCpl.dll" [2006-06-01 7618560]
"nwiz"="nwiz.exe" [2006-06-01 1519616]
"SW20"="c:\windows\System32\sw20.exe" [2006-05-18 208896]
"SW24"="c:\windows\System32\sw24.exe" [2006-05-17 69632]
"NvMediaCenter"="c:\windows\System32\NvMcTray.dll" [2006-06-01 86016]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2013-03-21 5078504]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\ab021\Nabídka Start\Programy\Po spuštění\
Kalendár.lnk - c:\windows\MENINY.EXE [2013-12-30 49312]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Documents and Settings\\ab021\\Data aplikací\\uTorrent\\uTorrent.exe"=
.
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [10.1.2013 10:25 122240]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [21.3.2013 15:19 1341664]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [30.12.2013 16:52 22856]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\drivers\pcouffin.sys [30.12.2013 18:13 47360]
S2 MBAMService;MBAMService;d:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [30.12.2013 16:52 701512]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [5.9.2013 10:34 171680]
S3 SureThing Labelflash service;SureThing Labelflash service;c:\program files\Common Files\SureThing Shared\stllssvr.exe [30.12.2013 17:28 74392]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.sk/
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - d:\program files\ICQ7M\ICQ.exe
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
Trusted Zone: dell.com
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{EA951BF3-E4CA-4276-A720-34BD8AB515AA}: NameServer = 8.8.8.8,8.8.4.4
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\ab021\Data aplikací\Mozilla\Firefox\Profiles\r157ca2o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - prefs.js: network.proxy.type - 0
FF - ExtSQL: !HIDDEN! 2013-12-30 17:50; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
pref('extensions.shownSelectionUI',true);
pref('extensions.autoDisableScopes',0);
pref('extensions.shownSelectionUI',true);
pref('extensions.autoDisableScopes',0);
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-01-23 19:35
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(4088)
c:\documents and settings\All Users\Data aplikací\LangSoft\TrnOEH.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Common Files\EPSON\EBAPI\eEBSVC.exe
c:\program files\Java\jre7\bin\jqs.exe
d:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\windows\system32\RUNDLL32.EXE
c:\windows\System32\nvsvc32.exe
.
**************************************************************************
.
Completion time: 2014-01-23 19:37:50 - machine was rebooted
ComboFix-quarantined-files.txt 2014-01-23 18:37
.
Pre-Run: Volných bajtů: 487 528 521 728
Post-Run: Volných bajtů: 487 441 244 160
.
- - End Of File - - 3A2C620C49B49FFA1C64F64EB5D2E272
413FC2A0C716421B3158746D63736515
ComboFix 14-01-23.02 - ab021 23.01.2014 19:28:25.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1029.18.2047.1481 [GMT 1:00]
Running from: c:\documents and settings\ab021\Plocha\ComboFix.exe
Command switches used :: c:\documents and settings\ab021\Plocha\CFScript.txt
AV: ESET Smart Security 6.0 *Enabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *Enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Resident AV is active
.
.
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
file zipped: c:\windows\system32\drivers\90187443.sys
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\drivers\90187443.sys
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_90187443
-------\Service_90187443
.
.
((((((((((((((((((((((((( Files Created from 2013-12-23 to 2014-01-23 )))))))))))))))))))))))))))))))
.
.
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-11-27 20:21 . 2002-09-23 12:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2013-11-13 03:00 . 2002-09-23 12:00 150528 ----a-w- c:\windows\system32\imagehlp.dll
2013-11-07 05:38 . 2002-09-23 12:00 591360 ----a-w- c:\windows\system32\rpcrt4.dll
2013-11-06 01:36 . 2008-05-05 06:25 7168 ----a-w- c:\windows\system32\xpsp4res.dll
2013-10-30 02:51 . 2002-09-23 12:00 1879040 ----a-w- c:\windows\system32\win32k.sys
2013-10-29 07:45 . 2002-09-23 12:00 920064 ----a-w- c:\windows\system32\wininet.dll
2013-10-29 07:45 . 2002-09-23 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-10-29 07:45 . 2002-09-23 12:00 18944 ----a-w- c:\windows\system32\corpol.dll
2013-10-29 07:45 . 2002-09-23 12:00 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2009-05-01 21:02 . 2009-05-01 21:02 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-05-01 21:02 . 2009-05-01 21:02 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OEXPRESS"="c:\documents and settings\All Users\Data aplikací\LangSoft\OETRN.EXE" [2013-12-30 26624]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PAC7302_Monitor"="c:\windows\PixArt\PAC7302\Monitor.exe" [2007-12-10 323584]
"PACTray"="c:\windows\Pixart\PAC7302\PACTray.exe" [2009-03-23 327680]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"NvCplDaemon"="c:\windows\System32\NvCpl.dll" [2006-06-01 7618560]
"nwiz"="nwiz.exe" [2006-06-01 1519616]
"SW20"="c:\windows\System32\sw20.exe" [2006-05-18 208896]
"SW24"="c:\windows\System32\sw24.exe" [2006-05-17 69632]
"NvMediaCenter"="c:\windows\System32\NvMcTray.dll" [2006-06-01 86016]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2013-03-21 5078504]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\ab021\Nabídka Start\Programy\Po spuštění\
Kalendár.lnk - c:\windows\MENINY.EXE [2013-12-30 49312]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Documents and Settings\\ab021\\Data aplikací\\uTorrent\\uTorrent.exe"=
.
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [10.1.2013 10:25 122240]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [21.3.2013 15:19 1341664]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [30.12.2013 16:52 22856]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\drivers\pcouffin.sys [30.12.2013 18:13 47360]
S2 MBAMService;MBAMService;d:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [30.12.2013 16:52 701512]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [5.9.2013 10:34 171680]
S3 SureThing Labelflash service;SureThing Labelflash service;c:\program files\Common Files\SureThing Shared\stllssvr.exe [30.12.2013 17:28 74392]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.sk/
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - d:\program files\ICQ7M\ICQ.exe
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
Trusted Zone: dell.com
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{EA951BF3-E4CA-4276-A720-34BD8AB515AA}: NameServer = 8.8.8.8,8.8.4.4
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\ab021\Data aplikací\Mozilla\Firefox\Profiles\r157ca2o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - prefs.js: network.proxy.type - 0
FF - ExtSQL: !HIDDEN! 2013-12-30 17:50; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
pref('extensions.shownSelectionUI',true);
pref('extensions.autoDisableScopes',0);
pref('extensions.shownSelectionUI',true);
pref('extensions.autoDisableScopes',0);
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-01-23 19:35
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(4088)
c:\documents and settings\All Users\Data aplikací\LangSoft\TrnOEH.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Common Files\EPSON\EBAPI\eEBSVC.exe
c:\program files\Java\jre7\bin\jqs.exe
d:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\windows\system32\RUNDLL32.EXE
c:\windows\System32\nvsvc32.exe
.
**************************************************************************
.
Completion time: 2014-01-23 19:37:50 - machine was rebooted
ComboFix-quarantined-files.txt 2014-01-23 18:37
.
Pre-Run: Volných bajtů: 487 528 521 728
Post-Run: Volných bajtů: 487 441 244 160
.
- - End Of File - - 3A2C620C49B49FFA1C64F64EB5D2E272
413FC2A0C716421B3158746D63736515
- Rudy
- Site Admin
- Příspěvky: 119533
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu-maily
CF pouze mazal věci, které mu byly přikázány. V prvním skenu jen nějaký log soubor. Takže nevím, jaké zásahy, které jste musel opravit, dělal. Co se jazyků týká, zkuste to přes ovl. panely, nebo utilitou FixIt: http://support.microsoft.com/fixit/cs-cz .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu-maily
Ďakujem za pomoc a prajem pekný zvyšok večera.
- Rudy
- Site Admin
- Příspěvky: 119533
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu-maily
Nemáte zač a hezký den! 

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.