Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
DjBass
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 črc 2008 17:31

Prosím o kontrolu logu

#1 Příspěvek od DjBass »

Zdravím, brat mi hovoril, že mu antivírus (Avira) niečo vyhodil so svchost.exe a potom ešte aj ohľadom IrcBot. Prebehol som PC MBAM, ale svchost.exe som radšej neodstránil. Vopred ďakujem za prípadnu pomoc s týmto problémom. Celý log sa mi tu nevošiel, tak sorry za doublepost.

Logfile of random's system information tool 1.06 (written by random/random)
Run by Dj Bass at 2010-01-19 20:16:09
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 125 GB (87%) free of 143 GB
Total RAM: 3071 MB (77% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:16:11, on 19. 1. 2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\ATKGFNEX\GFNEXSrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Atheros\ACU.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\Program Files\ASUS\Splendid\ACMON.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe
C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files\ATK Hotkey\Hcontrol.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\ACEngSvr.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
D:\xampp\apache\bin\httpd.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\ATK Hotkey\ATKOSD.exe
C:\Program Files\ATK Hotkey\KBFiltr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
D:\xampp\apache\bin\httpd.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Dj Bass\Plocha\RSIT.exe
C:\Program Files\trend micro\Dj Bass.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [ACMON] "C:\Program Files\ASUS\Splendid\ACMON.exe"
O4 - HKLM\..\Run: [Wireless Console 2] "C:\Program Files\Wireless Console 2\wcourier.exe"
O4 - HKLM\..\Run: [MsgTranAgt] C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKHOTKEY] "C:\Program Files\ATK Hotkey\Hcontrol.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\Run: [svchost] C:\WINDOWS\system32:svchost.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: CCC.lnk = ?
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Konfigurační služba Atheros (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apache2.2 - Apache Software Foundation - D:\xampp\apache\bin\httpd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 7223 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-06 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-01-06 73728]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-08-28 1557800]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"ACU"=C:\Program Files\Atheros\ACU.exe [2008-04-09 450648]
"Power_Gear"=C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe [2006-07-26 90112]
"ACMON"=C:\Program Files\ASUS\Splendid\ACMON.exe [2008-01-15 851968]
"Wireless Console 2"=C:\Program Files\Wireless Console 2\wcourier.exe [2007-07-05 1040384]
"MsgTranAgt"=C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe [2007-11-04 106496]
"HControlUser"=C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [2008-01-11 98304]
"ATKHOTKEY"=C:\Program Files\ATK Hotkey\Hcontrol.exe [2007-04-19 225280]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-12-25 18789408]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2010-01-06 149280]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2008-04-14 171008]
"svchost"=C:\WINDOWS\system32:svchost.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
C:\Program Files\ICQ7.0\ICQ.exe [2010-01-12 133368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files\PowerISO\PWRISOVM.EXE [2009-11-09 180224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2009-11-10 417792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2006-11-22 630784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
d:\program files\steam\steam.exe [2010-01-12 1217808]

C:\Documents and Settings\Dj Bass\Nabídka Start\Programy\Po spuštění
CCC.lnk - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
OpenOffice.org 3.1.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2008-04-22 126976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\WinSCP\WinSCP.exe"="C:\Program Files\WinSCP\WinSCP.exe:*:Enabled:WinSCP: SFTP, FTP and SCP client"
"C:\Program Files\totalcmd\TOTALCMD.EXE"="C:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\Java\jre6\bin\java.exe"="C:\Program Files\Java\jre6\bin\java.exe:*:Enabled:Java(TM) Platform SE binary"
"D:\Program Files\Steam\Steam.exe"="D:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"D:\hlds\hlds.exe"="D:\hlds\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"

======File associations======

.js - edit -
.js - open -

======List of files/folders created in the last 1 months======

2010-01-19 20:10:49 ----D---- C:\Program Files\trend micro
2010-01-19 20:10:48 ----D---- C:\rsit
2010-01-19 19:31:58 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Malwarebytes
2010-01-19 19:31:51 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2010-01-19 19:31:50 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-01-18 22:21:05 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Artisteer
2010-01-18 22:18:04 ----D---- C:\Program Files\Artisteer 2
2010-01-18 18:03:19 ----D---- C:\WINDOWS\pss
2010-01-18 15:56:57 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\ICQ
2010-01-18 15:56:38 ----D---- C:\Program Files\ICQ7.0
2010-01-18 14:59:45 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Apple Computer
2010-01-17 18:36:53 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Audacity
2010-01-17 18:36:48 ----D---- C:\Program Files\Audacity
2010-01-17 18:33:44 ----D---- C:\Program Files\Audacity 1.3 Beta (Unicode)
2010-01-17 18:33:28 ----D---- C:\Program Files\Lame for Audacity
2010-01-17 16:21:30 ----D---- C:\WINDOWS\system32\Futuremark
2010-01-17 16:21:29 ----D---- C:\Program Files\Common Files\Futuremark Shared
2010-01-17 16:21:06 ----D---- C:\Program Files\Adobe
2010-01-17 16:20:49 ----SHD---- C:\Config.Msi
2010-01-17 12:21:19 ----D---- C:\Program Files\Bome's Mouse Keyboard
2010-01-16 20:44:23 ----D---- C:\Program Files\ASIO4ALL v2
2010-01-16 20:43:54 ----D---- C:\Program Files\VstPlugins
2010-01-16 20:43:52 ----D---- C:\Program Files\Outsim
2010-01-16 20:41:55 ----D---- C:\Program Files\Image-Line
2010-01-16 18:29:02 ----D---- C:\Program Files\Full Tilt Poker.Net
2010-01-16 00:38:40 ----A---- C:\WINDOWS\system32\msvcp71.dll
2010-01-16 00:38:40 ----A---- C:\WINDOWS\system32\mfc71.dll
2010-01-16 00:38:39 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Ableton
2010-01-16 00:38:39 ----A---- C:\WINDOWS\system32\msvcr71.dll
2010-01-16 00:38:38 ----D---- C:\Program Files\Ableton
2010-01-16 00:38:19 ----A---- C:\WINDOWS\system32\gdiplus.dll
2010-01-16 00:34:57 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\dvdcss
2010-01-14 21:45:45 ----A---- C:\WINDOWS\system32\REX Shared Library.dll
2010-01-14 21:45:45 ----A---- C:\WINDOWS\system32\ReWire.dll
2010-01-14 21:43:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\Propellerhead Software
2010-01-14 21:43:42 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Propellerhead Software
2010-01-14 21:36:17 ----D---- C:\Program Files\PowerISO
2010-01-14 20:48:35 ----D---- C:\Program Files\QuickTime
2010-01-14 20:48:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-01-14 20:48:14 ----D---- C:\Program Files\Common Files\Apple
2010-01-14 20:48:03 ----D---- C:\Program Files\Apple Software Update
2010-01-14 20:48:03 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple
2010-01-14 16:12:17 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Opera
2010-01-14 16:11:29 ----D---- C:\Program Files\Opera
2010-01-14 15:59:01 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\jabbim
2010-01-14 15:58:39 ----D---- C:\Program Files\Jabbim
2010-01-13 15:51:05 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-11 18:15:02 ----A---- C:\WINDOWS\system32\hpzll3xu.dll
2010-01-11 18:11:17 ----D---- C:\Program Files\HP
2010-01-11 18:05:44 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\HP
2010-01-11 18:05:31 ----A---- C:\WINDOWS\system32\hpzids01.dll
2010-01-10 22:17:02 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Thunderbird
2010-01-10 22:16:53 ----D---- C:\Program Files\Mozilla Thunderbird
2010-01-09 20:10:47 ----D---- C:\WINDOWS\Sun
2010-01-09 00:56:04 ----D---- C:\Program Files\CCleaner
2010-01-09 00:49:00 ----D---- C:\Program Files\totalcmd
2010-01-09 00:49:00 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\GHISLER
2010-01-08 19:59:33 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-08 15:56:57 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-01-08 15:56:47 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-01-08 12:30:27 ----D---- C:\WINDOWS\Prefetch
2010-01-08 03:24:43 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-01-08 03:24:37 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-01-08 03:24:31 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-01-08 03:24:26 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-01-08 03:24:20 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-01-08 03:24:14 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-01-08 03:24:06 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-01-08 03:24:01 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-01-08 03:23:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-01-08 03:23:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-01-08 03:23:43 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-01-08 03:23:36 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-01-08 03:23:30 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-01-08 03:23:25 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2010-01-08 03:23:20 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-01-08 03:23:12 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-01-08 03:23:05 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-01-08 03:22:59 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-01-08 03:22:53 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-01-08 03:22:47 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-01-08 03:22:40 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-01-08 03:22:34 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-01-08 03:22:27 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-01-08 03:22:22 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2$
2010-01-08 03:22:10 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-01-08 03:22:05 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-01-08 03:21:58 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-01-08 03:21:53 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-01-08 03:21:47 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-01-08 03:21:42 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2010-01-08 03:21:36 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-01-08 03:21:31 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2010-01-08 03:21:25 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-01-08 03:21:19 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-01-08 03:21:13 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-01-08 03:21:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-01-08 03:20:57 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-01-08 03:20:50 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-01-08 03:20:45 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-01-08 03:20:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-01-08 03:20:33 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-01-08 03:20:27 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-01-08 03:20:21 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-01-08 03:20:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-01-08 03:20:09 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-01-08 03:20:04 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-01-08 03:19:58 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-01-08 03:19:51 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-01-08 03:16:32 ----D---- C:\WINDOWS\l2schemas
2010-01-08 03:16:31 ----D---- C:\WINDOWS\system32\cs
2010-01-08 03:16:31 ----D---- C:\WINDOWS\system32\bits
2010-01-08 03:12:45 ----D---- C:\WINDOWS\network diagnostic
2010-01-08 03:09:20 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-01-07 23:18:39 ----D---- C:\Program Files\WinPcap
2010-01-07 23:18:27 ----D---- C:\Program Files\Cain
2010-01-07 04:14:07 ----HDC---- C:\WINDOWS\$NtUninstallKB970430_0$
2010-01-07 04:13:45 ----HDC---- C:\WINDOWS\$NtUninstallKB961118_0$
2010-01-07 04:13:06 ----HDC---- C:\WINDOWS\$NtUninstallKB925720$
2010-01-07 04:13:00 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-01-07 04:12:42 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-01-07 04:12:25 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-01-07 04:12:00 ----HDC---- C:\WINDOWS\$NtUninstallKB971737_0$
2010-01-07 04:11:54 ----D---- C:\WINDOWS\ie8updates
2010-01-07 04:11:36 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-01-07 03:53:26 ----D---- C:\Program Files\Google
2010-01-07 00:36:25 ----A---- C:\WINDOWS\system32\kbdkor.dll
2010-01-07 00:36:25 ----A---- C:\WINDOWS\system32\kbdjpn.dll
2010-01-07 00:36:25 ----A---- C:\WINDOWS\system32\kbd106.dll
2010-01-07 00:36:25 ----A---- C:\WINDOWS\system32\kbd103.dll
2010-01-07 00:36:25 ----A---- C:\WINDOWS\system32\kbd101c.dll
2010-01-07 00:36:25 ----A---- C:\WINDOWS\system32\kbd101b.dll
2010-01-06 21:23:25 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\skypePM
2010-01-06 20:29:10 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\OpenOffice.org
2010-01-06 19:43:25 ----D---- C:\WINDOWS\system32\XPSViewer
2010-01-06 19:43:22 ----D---- C:\Program Files\MSBuild
2010-01-06 19:43:20 ----D---- C:\WINDOWS\system32\en-US
2010-01-06 19:43:16 ----D---- C:\Program Files\Reference Assemblies
2010-01-06 19:42:54 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-01-06 19:42:54 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-01-06 19:42:54 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-01-06 19:42:53 ----D---- C:\9e78474cf8798be53158fffbb61346
2010-01-06 19:40:26 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2010-01-06 19:40:20 ----D---- C:\Program Files\MSXML 6.0
2010-01-06 18:43:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\Macromedia
2010-01-06 18:43:38 ----D---- C:\Program Files\Macromedia
2010-01-06 18:43:38 ----D---- C:\Program Files\Common Files\Macromedia
2010-01-06 18:43:18 ----D---- C:\WINDOWS\Downloaded Installations
2010-01-06 17:21:08 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2010-01-06 17:21:01 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2010-01-06 17:20:54 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2010-01-06 17:20:47 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2010-01-06 17:20:39 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2010-01-06 17:20:32 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2010-01-06 17:20:24 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$
2010-01-06 17:20:17 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-01-06 17:20:10 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-01-06 17:20:04 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-01-06 17:19:59 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-01-06 17:19:53 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2010-01-06 17:19:46 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2_0$
2010-01-06 17:19:40 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2010-01-06 17:19:34 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2010-01-06 17:19:28 ----HDC---- C:\WINDOWS\$NtUninstallKB971557_0$
2010-01-06 17:19:22 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2010-01-06 17:19:16 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2010-01-06 17:19:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2010-01-06 17:18:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2010-01-06 17:18:48 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2010-01-06 17:18:43 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-01-06 17:18:38 ----HDC---- C:\WINDOWS\$NtUninstallKB971633_0$
2010-01-06 17:18:32 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-01-06 17:18:28 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2010-01-06 17:18:22 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2010-01-06 17:18:19 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-01-06 17:18:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-01-06 17:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2010-01-06 17:18:01 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2010-01-06 17:17:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2010-01-06 17:17:48 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2010-01-06 17:17:43 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2010-01-06 17:17:37 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2010-01-06 17:17:31 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
2010-01-06 17:17:25 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2010-01-06 17:17:19 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2010-01-06 17:17:13 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-06 17:17:04 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2010-01-06 17:16:57 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2010-01-06 17:16:51 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-01-06 17:16:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2010-01-06 17:16:37 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2010-01-06 17:16:28 ----HDC---- C:\WINDOWS\$NtUninstallKB971486_0$
2010-01-06 17:16:20 ----D---- C:\WINDOWS\ServicePackFiles
2010-01-06 17:16:18 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-01-06 17:16:10 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2010-01-06 17:16:04 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2010-01-06 17:15:59 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2010-01-06 17:15:49 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-01-06 17:15:43 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2010-01-06 17:15:37 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2010-01-06 17:15:30 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2010-01-06 17:15:19 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2010-01-06 17:15:13 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2010-01-06 17:15:04 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2010-01-06 17:14:56 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2010-01-06 13:21:03 ----D---- C:\Program Files\Avira
2010-01-06 13:21:03 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avira
2010-01-06 04:06:03 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\gtk-2.0
2010-01-06 03:50:23 ----A---- C:\WINDOWS\system32\javaws.exe
2010-01-06 03:50:23 ----A---- C:\WINDOWS\system32\javaw.exe
2010-01-06 03:50:23 ----A---- C:\WINDOWS\system32\java.exe
2010-01-06 03:50:23 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-01-06 03:50:12 ----D---- C:\Program Files\Java
2010-01-06 03:49:37 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Sun
2010-01-06 03:35:28 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2010-01-06 03:35:27 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2010-01-06 03:35:21 ----D---- C:\WINDOWS\Logs
2010-01-06 03:35:14 ----D---- C:\Program Files\Winamp Detect
2010-01-06 03:35:09 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2010-01-06 03:35:09 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2010-01-06 03:35:09 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2010-01-06 03:35:09 ----N---- C:\WINDOWS\system32\pxafs.dll
2010-01-06 03:35:08 ----N---- C:\WINDOWS\system32\vxblock.dll
2010-01-06 03:35:08 ----N---- C:\WINDOWS\system32\pxwave.dll
2010-01-06 03:35:08 ----N---- C:\WINDOWS\system32\pxsfs.dll
2010-01-06 03:35:08 ----N---- C:\WINDOWS\system32\pxmas.dll
2010-01-06 03:35:08 ----N---- C:\WINDOWS\system32\pxdrv.dll
2010-01-06 03:35:08 ----N---- C:\WINDOWS\system32\px.dll
2010-01-06 03:35:08 ----D---- C:\Program Files\Winamp
2010-01-06 03:35:08 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Winamp
2010-01-06 03:30:35 ----D---- C:\Program Files\WinSCP
2010-01-06 03:29:21 ----D---- C:\Program Files\GIMP-2.0
2010-01-06 03:27:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-01-06 03:27:01 ----D---- C:\Program Files\Common Files\Adobe
2010-01-06 03:11:03 ----D---- C:\WINDOWS\WBEM
2010-01-06 03:09:48 ----HDC---- C:\WINDOWS\ie8
2010-01-06 03:09:48 ----D---- C:\WINDOWS\system32\cs-CZ
2010-01-06 03:07:03 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-01-06 03:04:13 ----D---- C:\Program Files\OpenOffice.org 3
2010-01-06 03:03:10 ----A---- C:\WINDOWS\system32\MRT.exe
2010-01-06 03:03:02 ----HDC---- C:\WINDOWS\$NtUninstallKB932823-v3$
2010-01-06 03:02:52 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Skype
2010-01-06 03:02:34 ----D---- C:\Program Files\Common Files\Skype
2010-01-06 03:02:32 ----RD---- C:\Program Files\Skype
2010-01-06 03:02:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2010-01-06 03:00:48 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\vlc
2010-01-06 03:00:09 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2010-01-06 03:00:01 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-01-06 02:59:56 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2010-01-06 02:59:36 ----D---- C:\Program Files\VideoLAN
2010-01-06 02:59:33 ----D---- C:\Program Files\Windows Media Connect 2
2010-01-06 02:59:24 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2010-01-06 02:59:20 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\PSpad
2010-01-06 02:59:14 ----D---- C:\Program Files\PSPad editor
2010-01-06 02:58:55 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-01-06 02:58:36 ----D---- C:\WINDOWS\system32\LogFiles
2010-01-06 02:58:30 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-01-06 02:50:40 ----D---- C:\WINDOWS\system32\PreInstall
2010-01-06 02:50:38 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-01-06 02:50:38 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-06 02:06:48 ----A---- C:\WINDOWS\system32\WgaTray.exe
2010-01-06 02:06:48 ----A---- C:\WINDOWS\system32\WgaLogon.dll
2010-01-06 02:05:26 ----A---- C:\WINDOWS\system32\legitcheckcontrol.dll.bak
2010-01-06 02:05:26 ----A---- C:\WINDOWS\system32\LegitCheckControl.dll
2010-01-06 02:02:53 ----D---- C:\WINDOWS\system32\ANTIWPA
2010-01-06 01:59:24 ----D---- C:\WINDOWS\system32\appmgmt
2010-01-06 01:53:43 ----A---- C:\WINDOWS\system32\antiwpa.dll182517
2010-01-06 01:49:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-01-06 01:40:27 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-01-06 01:39:31 ----D---- C:\Program Files\QIP Infium
2010-01-06 01:37:14 ----D---- C:\WINDOWS\system32\Lang
2010-01-06 01:35:11 ----D---- C:\Program Files\Motorola
2010-01-06 01:34:48 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2010-01-06 01:34:44 ----A---- C:\WINDOWS\vncutil.exe
2010-01-06 01:34:42 ----A---- C:\WINDOWS\system32\RtkCoInstXP.dll
2010-01-06 01:34:42 ----A---- C:\WINDOWS\RtkAudioService.exe
2010-01-06 01:19:51 ----D---- C:\Program Files\CSR
2010-01-06 01:17:25 ----D---- C:\Program Files\ATK Hotkey
2010-01-06 01:16:33 ----D---- C:\Program Files\ATKOSD2
2010-01-06 00:59:16 ----A---- C:\WINDOWS\system32\sm56co6a.dll
2010-01-06 00:55:18 ----A---- C:\WINDOWS\system32\IPTests.dll
2010-01-06 00:54:12 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\InstallShield
2010-01-06 00:31:11 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Macromedia
2010-01-06 00:31:10 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Adobe
2010-01-06 00:18:56 ----A---- C:\WINDOWS\system32\acovcnt.exe
2010-01-06 00:11:43 ----D---- C:\Program Files\Toshiba
2010-01-06 00:11:13 ----D---- C:\Program Files\Wireless Console 2
2010-01-06 00:10:31 ----A---- C:\WINDOWS\system32\ACEngSvr.exe
2010-01-06 00:10:06 ----D---- C:\Program Files\ATKGFNEX
2010-01-06 00:07:54 ----HDC---- C:\WINDOWS\$NtUninstallKB923232$
2010-01-06 00:06:25 ----A---- C:\WINDOWS\ALCWZRD.EXE
2010-01-06 00:06:25 ----A---- C:\WINDOWS\ALCMTR.EXE
2010-01-06 00:06:23 ----D---- C:\WINDOWS\system32\RTCOM
2010-01-06 00:06:23 ----A---- C:\WINDOWS\system32\ChCfg.exe
2010-01-06 00:06:23 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2010-01-06 00:06:23 ----A---- C:\WINDOWS\SkyTel.exe
2010-01-06 00:06:23 ----A---- C:\WINDOWS\RtlUpd.exe
2010-01-06 00:06:23 ----A---- C:\WINDOWS\RTLCPL.EXE
2010-01-06 00:06:23 ----A---- C:\WINDOWS\RTHDCPL.EXE
2010-01-06 00:06:23 ----A---- C:\WINDOWS\MicCal.exe
2010-01-06 00:06:15 ----D---- C:\Program Files\Realtek
2010-01-06 00:06:11 ----A---- C:\WINDOWS\RtlExUpd.dll
2010-01-06 00:03:49 ----D---- C:\Program Files\ASUS
2010-01-06 00:03:22 ----A---- C:\WINDOWS\system32\acs.exe
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\wsimd.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\wsfwDS.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\wgapiloc.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\wgapi.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\wcapiU.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\wcapi.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\dsaNac.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\dsa.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\athcfg20U.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\athcfg20resU.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\athcfg20res.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\athcfg20.dll
2010-01-06 00:03:16 ----A---- C:\WINDOWS\system32\athcfg11resloc.dll
2010-01-06 00:03:14 ----D---- C:\Program Files\Atheros
2010-01-06 00:02:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\Atheros
2010-01-06 00:02:04 ----HDC---- C:\WINDOWS\$NtUninstallKB896256$
2010-01-06 00:01:33 ----HDC---- C:\WINDOWS\$NtUninstallKB921411$
2010-01-05 23:58:15 ----HDC---- C:\WINDOWS\$NtUninstallKB918005$
2010-01-05 23:40:57 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\ATI
2010-01-05 23:40:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2010-01-05 23:36:09 ----RSD---- C:\WINDOWS\assembly
2010-01-05 23:35:53 ----D---- C:\WINDOWS\Microsoft.NET
2010-01-05 23:35:28 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-01-05 23:35:00 ----D---- C:\Program Files\ATI Technologies
2010-01-05 23:34:32 ----A---- C:\WINDOWS\system32\Oemdspif.dll
2010-01-05 23:34:32 ----A---- C:\WINDOWS\system32\ativvaxx.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\ativcoxx.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\atitvo32.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\atipdlxx.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\atiok3x2.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\atioglxx.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\atioglx2.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\atikvmag.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\atiiiexx.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\ATIDEMGX.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\ATIDDC.DLL
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\ati3duag.dll
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\Ati2mdxx.exe
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\ati2evxx.exe
2010-01-05 23:34:31 ----A---- C:\WINDOWS\system32\ati2evxx.dll
2010-01-05 23:34:30 ----A---- C:\WINDOWS\system32\ati2edxx.dll
2010-01-05 23:34:30 ----A---- C:\WINDOWS\system32\ati2dvag.dll
2010-01-05 23:34:30 ----A---- C:\WINDOWS\system32\ati2cqag.dll
2010-01-05 23:34:30 ----A---- C:\WINDOWS\system32\amdpcom32.dll
2010-01-05 23:34:24 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\WinRAR
2010-01-05 23:34:06 ----D---- C:\Program Files\WinRAR
2010-01-05 23:26:37 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2010-01-05 23:26:35 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-01-05 23:26:33 ----HDC---- C:\WINDOWS\$NtUninstallWdf01009$
2010-01-05 23:26:29 ----D---- C:\Program Files\Synaptics
2010-01-05 23:26:27 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-01-05 23:26:21 ----A---- C:\WINDOWS\system32\WdfCoInstaller01009.dll
2010-01-05 23:26:21 ----A---- C:\WINDOWS\system32\SynTPCo4.dll
2010-01-05 23:26:21 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2010-01-05 23:26:21 ----A---- C:\WINDOWS\system32\SynCtrl.dll
2010-01-05 23:26:21 ----A---- C:\WINDOWS\system32\SynCOM.dll
2010-01-05 23:26:19 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-01-05 23:05:46 ----A---- C:\WINDOWS\system32\h323log.txt
2010-01-05 23:03:02 ----A---- C:\WINDOWS\system32\hidserv.dll
2010-01-05 23:02:46 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-01-05 23:02:45 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-01-05 23:01:42 ----A---- C:\WINDOWS\system32\usbui.dll
2010-01-05 23:00:39 ----SHD---- C:\WINDOWS\Installer
2010-01-05 23:00:39 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-01-05 23:00:38 ----D---- C:\Program Files\Common Files\ODBC
2010-01-05 23:00:38 ----A---- C:\WINDOWS\ODBCINST.INI
2010-01-05 23:00:35 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-01-05 23:00:34 ----RD---- C:\Program Files
2010-01-05 23:00:34 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-01-05 23:00:34 ----D---- C:\Program Files\Common Files
2010-01-05 23:00:31 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-01-05 23:00:31 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-01-05 23:00:31 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-01-05 23:00:29 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-01-05 23:00:29 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-01-05 23:00:29 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-01-05 23:00:29 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-01-05 23:00:29 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-01-05 23:00:28 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-01-05 23:00:28 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-01-05 23:00:28 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-01-05 23:00:28 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-01-05 23:00:28 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-01-05 23:00:28 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-01-05 23:00:28 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-01-05 23:00:26 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-01-05 23:00:26 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-01-05 23:00:26 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-01-05 23:00:26 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-01-05 23:00:26 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-01-05 23:00:26 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-01-05 23:00:26 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-01-05 23:00:24 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-01-05 23:00:24 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-01-05 23:00:24 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-01-05 23:00:24 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-01-05 23:00:24 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-01-05 23:00:20 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-01-05 23:00:19 ----A---- C:\WINDOWS\system32\irclass.dll
2010-01-05 23:00:19 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-01-05 23:00:19 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-01-05 23:00:18 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-01-05 23:00:18 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-01-05 23:00:16 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-01-05 23:00:16 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-01-05 23:00:16 ----A---- C:\WINDOWS\system32\batt.dll
2010-01-05 23:00:15 ----A---- C:\WINDOWS\notepad.exe
2010-01-05 23:00:14 ----A---- C:\WINDOWS\system32\storprop.dll
2010-01-05 23:00:07 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-01-05 23:00:04 ----RA---- C:\WINDOWS\SET8.tmp
2010-01-05 23:00:02 ----RA---- C:\WINDOWS\SET4.tmp
2010-01-05 23:00:01 ----RA---- C:\WINDOWS\SET3.tmp
2010-01-05 22:59:56 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-05 22:59:56 ----D---- C:\WINDOWS\system32\CatRoot
2010-01-05 22:59:51 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-01-05 22:59:29 ----D---- C:\Documents and Settings
2010-01-05 22:59:28 ----SHD---- C:\System Volume Information
2010-01-05 22:58:41 ----SH---- C:\boot.ini
2010-01-05 22:54:42 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-01-05 22:54:42 ----RSD---- C:\WINDOWS\Fonts
2010-01-05 22:54:42 ----RD---- C:\WINDOWS\Web
2010-01-05 22:54:42 ----HD---- C:\WINDOWS\inf
2010-01-05 22:54:42 ----D---- C:\WINDOWS\WinSxS
2010-01-05 22:54:42 ----D---- C:\WINDOWS\twain_32
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Temp
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\wins
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\wbem
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\usmt
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\spool
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\ShellExt
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\Setup
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\ras
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\oobe
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\npp
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\mui
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\inetsrv
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\IME
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\icsxml
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\ias
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\export
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\drivers
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\dhcp
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\config
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\3com_dmi
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\3076
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\2052
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\1054
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\1042
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\1041
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\1037
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\1033
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\1031
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\1029
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\1028
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system32\1025
2010-01-05 22:54:42 ----D---- C:\WINDOWS\system
2010-01-05 22:54:42 ----D---- C:\WINDOWS\security
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Resources
2010-01-05 22:54:42 ----D---- C:\WINDOWS\repair
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Provisioning
2010-01-05 22:54:42 ----D---- C:\WINDOWS\pchealth
2010-01-05 22:54:42 ----D---- C:\WINDOWS\PeerNet
2010-01-05 22:54:42 ----D---- C:\WINDOWS\mui
2010-01-05 22:54:42 ----D---- C:\WINDOWS\msapps
2010-01-05 22:54:42 ----D---- C:\WINDOWS\msagent
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Media
2010-01-05 22:54:42 ----D---- C:\WINDOWS\java
2010-01-05 22:54:42 ----D---- C:\WINDOWS\ime
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Help
2010-01-05 22:54:42 ----D---- C:\WINDOWS\ehome
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Driver Cache
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Debug
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Cursors
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Connection Wizard
2010-01-05 22:54:42 ----D---- C:\WINDOWS\Config
2010-01-05 22:54:42 ----D---- C:\WINDOWS\AppPatch
2010-01-05 22:54:42 ----D---- C:\WINDOWS\addins
2010-01-05 22:54:42 ----D---- C:\WINDOWS
2010-01-05 22:54:42 ----AD---- C:\WINDOWS\system32
2010-01-05 22:50:46 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Mozilla
2010-01-05 22:50:42 ----D---- C:\Program Files\Mozilla Firefox
2010-01-05 22:46:37 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-05 22:46:34 ----D---- C:\Program Files\Common Files\InstallShield
2010-01-05 22:46:29 ----SHD---- C:\RECYCLER
2010-01-05 22:17:33 ----D---- C:\Documents and Settings\Dj Bass\Data aplikací\Identities
2010-01-05 22:17:31 ----HD---- C:\Program Files\Uninstall Information
2010-01-05 22:17:25 ----SD---- C:\Documents and Settings\Dj Bass\Data aplikací\Microsoft
2010-01-05 22:17:25 ----ASH---- C:\Documents and Settings\Dj Bass\Data aplikací\desktop.ini
2010-01-05 22:16:50 ----D---- C:\WINDOWS\SoftwareDistribution
2010-01-05 22:16:49 ----SD---- C:\WINDOWS\system32\Microsoft
2010-01-05 22:16:49 ----N---- C:\WINDOWS\SchedLgU.Txt
2010-01-05 22:11:22 ----D---- C:\WINDOWS\system32\xircom
2010-01-05 22:11:22 ----D---- C:\Program Files\xerox
2010-01-05 22:11:22 ----D---- C:\Program Files\microsoft frontpage
2010-01-05 22:11:08 ----A---- C:\WINDOWS\control.ini
2010-01-05 22:11:08 ----A---- C:\AUTOEXEC.BAT
2010-01-05 22:10:56 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-01-05 22:10:12 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-01-05 22:10:12 ----RD---- C:\WINDOWS\Offline Web Pages
2010-01-05 22:10:12 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-01-05 22:10:06 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-01-05 22:10:02 ----HD---- C:\Program Files\WindowsUpdate
2010-01-05 22:09:59 ----D---- C:\Program Files\Online Services
2010-01-05 22:09:42 ----D---- C:\WINDOWS\system32\DirectX
2010-01-05 22:09:20 ----A---- C:\WINDOWS\system32\atrace.dll
2010-01-05 22:09:18 ----A---- C:\WINDOWS\system32\desktop.ini
2010-01-05 22:09:18 ----A---- C:\WINDOWS\desktop.ini
2010-01-05 22:09:11 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-01-05 22:09:09 ----D---- C:\Program Files\Common Files\Services
2010-01-05 22:09:09 ----A---- C:\WINDOWS\system32\acctres.dll
2010-01-05 22:09:06 ----SD---- C:\WINDOWS\Tasks
2010-01-05 22:09:06 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-01-05 22:09:05 ----D---- C:\Program Files\Common Files\MSSoap
2010-01-05 22:09:01 ----D---- C:\WINDOWS\srchasst
2010-01-05 22:09:00 ----D---- C:\WINDOWS\system32\Macromed
2010-01-05 22:08:57 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-01-05 22:08:57 ----A---- C:\WINDOWS\system32\wups.dll
2010-01-05 22:08:57 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-01-05 22:08:57 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-01-05 22:08:57 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-01-05 22:08:57 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-01-05 22:08:56 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-01-05 22:08:56 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-01-05 22:08:56 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-01-05 22:08:56 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-01-05 22:08:56 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-01-05 22:08:56 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-01-05 22:08:56 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-01-05 22:08:52 ----D---- C:\Program Files\Movie Maker
2010-01-05 22:08:48 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-01-05 22:08:48 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-01-05 22:08:48 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-01-05 22:08:48 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-01-05 22:08:45 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-01-05 22:08:44 ----D---- C:\WINDOWS\system32\Restore
2010-01-05 22:08:44 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-01-05 22:08:44 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-01-05 22:08:44 ----A---- C:\WINDOWS\system32\srclient.dll
2010-01-05 22:08:44 ----A---- C:\WINDOWS\system32\fltmc.exe
2010-01-05 22:08:43 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-01-05 22:08:43 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-01-05 22:08:43 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-01-05 22:08:43 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-01-05 22:08:43 ----A---- C:\WINDOWS\system32\ils.dll
2010-01-05 22:08:42 ----A---- C:\WINDOWS\system32\msconf.dll
2010-01-05 22:08:40 ----D---- C:\Program Files\NetMeeting
2010-01-05 22:08:40 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-01-05 22:08:40 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-01-05 22:08:39 ----A---- C:\WINDOWS\system32\inetres.dll
2010-01-05 22:08:38 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-01-05 22:08:37 ----D---- C:\Program Files\Outlook Express
2010-01-05 22:08:37 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-01-05 22:08:37 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-01-05 22:08:37 ----A---- C:\WINDOWS\system32\mstask.dll
2010-01-05 22:08:36 ----A---- C:\WINDOWS\system32\isign32.dll
2010-01-05 22:08:36 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-01-05 22:08:36 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-01-05 22:08:36 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-01-05 22:08:29 ----D---- C:\Program Files\Common Files\System
2010-01-05 22:08:25 ----D---- C:\Program Files\Internet Explorer
2010-01-05 22:07:54 ----D---- C:\Program Files\ComPlus Applications
2010-01-05 22:07:52 ----A---- C:\WINDOWS\vbaddin.ini
2010-01-05 22:07:52 ----A---- C:\WINDOWS\vb.ini
2010-01-05 22:07:48 ----D---- C:\WINDOWS\Registration
2010-01-05 22:07:40 ----D---- C:\Program Files\Windows Media Player
2010-01-05 22:07:34 ----D---- C:\Program Files\Messenger
2010-01-05 22:07:30 ----D---- C:\Program Files\MSN Gaming Zone
2010-01-05 22:07:30 ----A---- C:\WINDOWS\system32\write.exe
2010-01-05 22:07:19 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-01-05 22:07:19 ----A---- C:\WINDOWS\system32\hticons.dll
2010-01-05 22:07:19 ----A---- C:\WINDOWS\system32\avwav.dll
2010-01-05 22:07:19 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-01-05 22:07:19 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-01-05 22:07:18 ----A---- C:\WINDOWS\system32\winchat.exe
2010-01-05 22:07:11 ----A---- C:\WINDOWS\system32\getuname.dll
2010-01-05 22:07:10 ----A---- C:\WINDOWS\system32\winmine.exe
2010-01-05 22:07:10 ----A---- C:\WINDOWS\system32\sol.exe
2010-01-05 22:07:10 ----A---- C:\WINDOWS\system32\charmap.exe
2010-01-05 22:07:10 ----A---- C:\WINDOWS\system32\calc.exe
2010-01-05 22:07:09 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-01-05 22:07:09 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-01-05 22:07:09 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-01-05 22:07:09 ----A---- C:\WINDOWS\system32\tskill.exe
2010-01-05 22:07:09 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-01-05 22:07:09 ----A---- C:\WINDOWS\system32\reset.exe
2010-01-05 22:07:09 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-01-05 22:07:09 ----A---- C:\WINDOWS\system32\freecell.exe
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\tscon.exe
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\shadow.exe
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\regini.exe
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\msg.exe
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\logoff.exe
2010-01-05 22:07:08 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-01-05 22:07:07 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-01-05 22:07:07 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-01-05 22:07:07 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-01-05 22:07:07 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-01-05 22:07:06 ----A---- C:\WINDOWS\system32\stclient.dll
2010-01-05 22:07:06 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-01-05 22:07:06 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-01-05 22:07:06 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-01-05 22:07:06 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-01-05 22:07:00 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-01-05 22:07:00 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-01-05 22:06:59 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-01-05 22:06:59 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-01-05 22:06:59 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-01-05 22:06:58 ----D---- C:\Program Files\Windows NT
2010-01-05 22:06:58 ----A---- C:\WINDOWS\system32\spider.exe
2010-01-05 22:06:58 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-01-05 22:06:58 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-01-05 22:06:57 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-01-05 22:06:57 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-01-05 22:06:57 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-01-05 22:06:57 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-01-05 22:06:57 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-01-05 22:06:56 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-01-05 22:06:56 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-01-05 22:06:56 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-01-05 22:06:56 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-01-05 22:06:56 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-01-05 22:06:56 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-01-05 22:06:56 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-01-05 22:06:56 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-01-05 22:06:56 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-01-05 22:06:55 ----D---- C:\WINDOWS\system32\MsDtc
2010-01-05 22:06:55 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-01-05 22:06:55 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-01-05 22:06:55 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-01-05 22:06:55 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-01-05 22:06:55 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-01-05 22:06:55 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-01-05 22:06:54 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-01-05 22:06:54 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-01-05 22:06:54 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-01-05 22:06:53 ----D---- C:\WINDOWS\system32\Com
2010-01-05 22:06:53 ----A---- C:\WINDOWS\system32\colbact.dll
2010-01-05 22:06:53 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-01-05 22:06:53 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-01-05 22:06:53 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-01-05 22:06:53 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-01-05 22:06:52 ----A---- C:\WINDOWS\system32\comuid.dll
2010-01-05 22:06:52 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-01-05 22:06:52 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-01-05 22:06:46 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-01-05 22:06:46 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-01-05 22:06:46 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-01-05 22:06:46 ----A---- C:\WINDOWS\system32\cmprops.dll

======List of files/folders modified in the last 1 months======

2010-01-19 20:00:50 ----A---- C:\WINDOWS\win.ini
2010-01-19 20:00:50 ----A---- C:\WINDOWS\system.ini
Naposledy upravil(a) DjBass dne 19 led 2010 20:22, celkem upraveno 1 x.

DjBass
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 črc 2008 17:31

Re: Prosím o kontrolu logu

#2 Příspěvek od DjBass »

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2009-11-09 59388]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys []
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2010-01-07 56816]
R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athw.sys [2008-04-08 1309504]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2008-04-23 2880000]
R3 CmBatt;Microsoft AC Adapter Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-12-25 6039584]
R3 kbfiltr;Keyboard Filter; C:\WINDOWS\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2006-12-15 7680]
R3 RTSTOR;USB Mass Storage Device; C:\WINDOWS\system32\drivers\RTSTOR.SYS [2007-10-25 46976]
R3 SiSGbeXP;SiS191/SiS190 Ethernet Device NDIS 5.1 Driver; C:\WINDOWS\system32\DRIVERS\SiSGbeXP.sys [2008-03-03 43392]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-08-28 228784]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
R3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2008-02-08 57408]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 cpuz130;cpuz130; \??\C:\DOCUME~1\DJBASS~1\LOCALS~1\Temp\cpuz130\cpuz_x32.sys []
S3 ENTECH;ENTECH; \??\C:\WINDOWS\system32\DRIVERS\ENTECH.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-10-20 50704]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 Tosrfbd;Bluetooth RFBUS; C:\WINDOWS\system32\DRIVERS\tosrfbd.sys [2007-04-24 113920]
S3 Tosrfcom;Tosrfcom; C:\WINDOWS\system32\drivers\Tosrfcom.sys []
S3 Tosrfhid;Bluetooth RFHID; C:\WINDOWS\system32\DRIVERS\Tosrfhid.sys [2007-03-01 73728]
S3 tosrfusb;Bluetooth USB Controller; C:\WINDOWS\system32\DRIVERS\tosrfusb.sys [2007-06-11 41856]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACS;Konfigurační služba Atheros; C:\WINDOWS\system32\acs.exe [2008-04-09 467028]
R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2007-05-18 73728]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-07-21 185089]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-05-13 108289]
R2 Apache2.2;Apache2.2; D:\xampp\apache\bin\httpd.exe [2009-12-20 29416]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2008-04-22 536576]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-01-06 153376]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2007-02-25 125048]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2009-10-20 117264]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15691
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosím o kontrolu logu

#3 Příspěvek od JaRon »

ahoj,
Presun ComboFix
na plochu (ak tam este nie je)

otvor si Poznamkovy blok - notepad

do neho zkopiruj skript z nasledujiceho okna:

Kód: Vybrat vše

Registry::
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"svchost"=-


uloz vytvoreny textovy soubor ako CFScript.txt na plochu

po ulozeni uchop vytvoreny skript lavym tlacitkom mysi a presun ho nad ikonu Combofixu, nad nim skript upust:

Obrázek

po aplikacii by mal vzniknut dalsi log, ten vloz sem :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

DjBass
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 črc 2008 17:31

Re: Prosím o kontrolu logu

#4 Příspěvek od DjBass »

ComboFix 10-01-19.08 - Dj Bass . 01. 2010 14:51:38.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3071.2395 [GMT 1:00]
Spuštěný z: c:\documents and settings\Dj Bass\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Dj Bass\Plocha\CFscript.txt
AV: AntiVir Desktop *On-access scanning enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Data aplikací\Microsoft\Network\Downloader\qmgr0.dat
c:\documents and settings\All Users\Data aplikací\Microsoft\Network\Downloader\qmgr1.dat

----- BITS: Možné infikované stránky -----

hxxp://armmf.adobe.com
.
((((((((((((((((((((((((( Soubory vytvořené od 2009-12-20 do 2010-01-20 )))))))))))))))))))))))))))))))
.

2010-01-19 19:10 . 2010-01-19 19:16 -------- d-----w- c:\program files\trend micro
2010-01-19 19:10 . 2010-01-19 19:10 -------- d-----w- C:\rsit
2010-01-19 18:31 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-19 18:31 . 2010-01-19 18:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-19 18:31 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-18 21:18 . 2010-01-18 21:18 -------- d-----w- c:\program files\Artisteer 2
2010-01-18 14:56 . 2010-01-18 14:57 -------- d-----w- c:\program files\ICQ7.0
2010-01-17 17:36 . 2010-01-17 17:36 -------- d-----w- c:\program files\Audacity
2010-01-17 17:33 . 2010-01-17 17:34 -------- d-----w- c:\program files\Audacity 1.3 Beta (Unicode)
2010-01-17 17:33 . 2010-01-17 17:33 -------- d-----w- c:\program files\Lame for Audacity
2010-01-17 15:21 . 2010-01-17 15:21 -------- d-----w- c:\windows\system32\Futuremark
2010-01-17 15:21 . 2008-09-17 14:14 27672 ----a-r- c:\windows\system32\drivers\Entech.sys
2010-01-17 15:21 . 2010-01-17 15:21 -------- d-----w- c:\program files\Common Files\Futuremark Shared
2010-01-17 11:21 . 2010-01-17 11:21 -------- d-----w- c:\program files\Bome's Mouse Keyboard
2010-01-16 19:44 . 2010-01-16 19:44 -------- d-----w- c:\program files\ASIO4ALL v2
2010-01-16 19:43 . 2010-01-16 19:44 -------- d-----w- c:\program files\VstPlugins
2010-01-16 19:43 . 2010-01-16 19:43 -------- d-----w- c:\program files\Outsim
2010-01-16 19:41 . 2010-01-16 19:44 -------- d-----w- c:\program files\Image-Line
2010-01-16 17:29 . 2010-01-16 18:12 -------- d-----w- c:\program files\Full Tilt Poker.Net
2010-01-16 17:22 . 2010-01-16 17:22 -------- d-----w- c:\documents and settings\Dj Bass\P5JavaClientSettings
2010-01-15 23:38 . 2007-12-05 00:40 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-01-15 23:38 . 2007-12-05 00:40 1060864 ----a-w- c:\windows\system32\mfc71.dll
2010-01-15 23:38 . 2007-12-05 00:40 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-01-15 23:38 . 2010-01-15 23:38 -------- d-----w- c:\program files\Ableton
2010-01-15 23:38 . 2003-06-20 11:28 1777664 ----a-w- c:\windows\system32\gdiplus.dll
2010-01-14 20:45 . 2010-01-14 20:45 368640 ----a-w- c:\windows\system32\ReWire.dll
2010-01-14 20:45 . 2010-01-14 20:45 233472 ----a-w- c:\windows\system32\REX Shared Library.dll
2010-01-14 20:36 . 2010-01-14 20:36 -------- d-----w- c:\program files\PowerISO
2010-01-14 19:48 . 2010-01-14 19:49 -------- d-----w- c:\program files\QuickTime
2010-01-14 19:48 . 2010-01-14 19:48 -------- d-----w- c:\program files\Common Files\Apple
2010-01-14 19:48 . 2010-01-14 19:48 -------- d-----w- c:\program files\Apple Software Update
2010-01-14 15:11 . 2010-01-14 15:11 -------- d-----w- c:\program files\Opera
2010-01-14 14:58 . 2010-01-14 14:58 -------- d-----w- c:\program files\Jabbim
2010-01-11 17:37 . 2010-01-11 17:38 79191 ----a-w- c:\windows\hpfins05.dat
2010-01-11 17:37 . 2005-07-09 01:48 1395 ------w- c:\windows\hpfmdl05.dat
2010-01-11 17:15 . 2005-04-08 18:44 45056 ----a-w- c:\windows\system32\hpzll3xu.dll
2010-01-11 17:15 . 2005-04-08 18:43 67072 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\hpzpp3xu.dll
2010-01-11 17:11 . 2010-01-11 17:11 -------- d-----w- c:\program files\HP
2010-01-11 17:05 . 2005-04-28 01:37 77824 ----a-w- c:\windows\system32\hpzids01.dll
2010-01-11 17:04 . 2008-04-13 18:47 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2010-01-11 17:04 . 2008-04-13 18:47 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-01-10 21:16 . 2010-01-17 19:49 -------- d-----w- c:\program files\Mozilla Thunderbird
2010-01-09 19:10 . 2010-01-09 19:10 -------- d-----w- c:\windows\Sun
2010-01-09 13:21 . 2010-01-09 13:21 -------- d-sh--w- c:\documents and settings\Dj Bass\IECompatCache
2010-01-08 23:56 . 2010-01-08 23:56 -------- d-----w- c:\program files\CCleaner
2010-01-08 23:49 . 2010-01-08 23:49 -------- d-----w- c:\program files\totalcmd
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\UC.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\RAR.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKZIP.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKUNZIP.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\NOCLOSE.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\LHA.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\ARJ.PIF
2010-01-08 18:59 . 2009-11-21 16:03 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-01-08 02:16 . 2010-01-08 02:16 -------- d-----w- c:\windows\l2schemas
2010-01-08 02:16 . 2010-01-08 02:16 -------- d-----w- c:\windows\system32\cs
2010-01-08 02:16 . 2010-01-08 02:16 -------- d-----w- c:\windows\system32\bits
2010-01-07 22:18 . 2010-01-07 22:18 -------- d-----w- c:\program files\WinPcap
2010-01-07 22:18 . 2010-01-07 22:27 -------- d-----w- c:\program files\Cain
2010-01-07 03:11 . 2010-01-07 03:11 -------- d-----w- c:\windows\ie8updates
2010-01-07 02:53 . 2010-01-07 02:53 -------- d-----w- c:\program files\Google
2010-01-06 23:36 . 2008-04-14 03:18 6144 -c--a-w- c:\windows\system32\dllcache\kbd106.dll
2010-01-06 23:36 . 2008-04-14 03:18 6144 ----a-w- c:\windows\system32\kbd106.dll
2010-01-06 23:36 . 2001-08-18 05:36 8704 -c--a-w- c:\windows\system32\dllcache\kbdjpn.dll
2010-01-06 23:36 . 2001-08-18 05:36 8704 ----a-w- c:\windows\system32\kbdjpn.dll
2010-01-06 23:36 . 2001-08-18 05:36 8192 -c--a-w- c:\windows\system32\dllcache\kbdkor.dll
2010-01-06 23:36 . 2001-08-18 05:36 8192 ----a-w- c:\windows\system32\kbdkor.dll
2010-01-06 23:36 . 2001-08-17 21:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101c.dll
2010-01-06 23:36 . 2001-08-17 21:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101b.dll
2010-01-06 23:36 . 2001-08-17 21:55 6144 ----a-w- c:\windows\system32\kbd101c.dll
2010-01-06 23:36 . 2001-08-17 21:55 6144 ----a-w- c:\windows\system32\kbd101b.dll
2010-01-06 23:36 . 2001-08-17 21:55 5632 -c--a-w- c:\windows\system32\dllcache\kbd103.dll
2010-01-06 23:36 . 2001-08-17 21:55 5632 ----a-w- c:\windows\system32\kbd103.dll
2010-01-06 21:53 . 2009-10-29 07:43 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-01-06 21:53 . 2009-10-29 07:43 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-01-06 21:53 . 2009-10-29 07:43 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-01-06 21:53 . 2009-10-29 07:43 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-01-06 21:53 . 2009-10-29 07:43 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-01-06 21:53 . 2009-10-29 07:43 11069952 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-01-06 20:23 . 2010-01-06 20:23 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2010-01-06 18:43 . 2010-01-06 18:43 -------- d-----w- c:\windows\system32\XPSViewer
2010-01-06 18:40 . 2010-01-06 18:40 -------- d-----w- c:\program files\MSXML 6.0
2010-01-06 17:43 . 2010-01-06 23:16 -------- d-----w- c:\program files\Common Files\Macromedia
2010-01-06 17:43 . 2010-01-06 23:16 -------- d-----w- c:\program files\Macromedia
2010-01-06 17:43 . 2010-01-06 23:16 -------- d-----w- c:\windows\Downloaded Installations
2010-01-06 16:55 . 2010-01-06 16:55 -------- d-sh--w- c:\documents and settings\Dj Bass\PrivacIE
2010-01-06 16:18 . 2004-08-17 13:49 221184 ----a-w- c:\windows\system32\wmpns.dll
2010-01-06 16:16 . 2010-01-08 02:14 -------- d-----w- c:\windows\ServicePackFiles
2010-01-06 12:38 . 2004-08-17 14:43 326912 ------w- c:\windows\system32\drivers\ati2mtaa.sys
2010-01-06 12:21 . 2010-01-07 13:43 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2010-01-06 12:21 . 2009-03-30 08:33 96104 ----a-w- c:\windows\system32\drivers\avipbb.sys
2010-01-06 12:21 . 2009-02-13 10:29 22360 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2010-01-06 12:21 . 2009-02-13 10:17 45416 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2010-01-06 12:21 . 2010-01-06 12:21 -------- d-----w- c:\program files\Avira
2010-01-06 12:19 . 2010-01-06 12:19 -------- d-sh--w- c:\documents and settings\Dj Bass\IETldCache
2010-01-06 02:54 . 2010-01-06 02:54 -------- d-----w- c:\documents and settings\Dj Bass\.thumbnails
2010-01-06 02:50 . 2010-01-06 02:50 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-06 02:50 . 2010-01-06 02:50 -------- d-----w- c:\program files\Java
2010-01-06 02:30 . 2010-01-09 11:41 -------- d-----w- c:\program files\WinSCP
2010-01-06 02:29 . 2010-01-17 13:16 -------- d-----w- c:\documents and settings\Dj Bass\.gimp-2.6
2010-01-06 02:29 . 2010-01-06 02:29 -------- d-----w- c:\program files\GIMP-2.0
2010-01-06 02:27 . 2010-01-17 15:21 -------- d-----w- c:\program files\Common Files\Adobe
2010-01-06 02:09 . 2008-06-14 17:35 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-01-06 02:09 . 2008-06-14 17:35 272128 ------w- c:\windows\system32\drivers\bthport.sys
2010-01-06 02:09 . 2010-01-08 02:16 -------- d-----w- c:\windows\system32\cs-CZ
2010-01-06 02:09 . 2010-01-06 02:11 -------- dc-h--w- c:\windows\ie8
2010-01-06 02:06 . 2009-02-06 10:10 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2010-01-06 02:06 . 2009-08-04 21:59 2191360 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2010-01-06 02:06 . 2009-03-06 14:23 284160 -c----w- c:\windows\system32\dllcache\pdh.dll
2010-01-06 02:06 . 2009-02-09 11:25 111104 -c----w- c:\windows\system32\dllcache\services.exe
2010-01-06 02:06 . 2009-02-09 10:56 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2010-01-06 02:06 . 2009-02-09 10:56 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2010-01-06 02:06 . 2009-06-25 08:27 729088 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2010-01-06 02:06 . 2009-02-09 10:56 709632 -c----w- c:\windows\system32\dllcache\ntdll.dll
2010-01-06 02:06 . 2009-02-09 10:56 684032 -c----w- c:\windows\system32\dllcache\advapi32.dll
2010-01-06 02:06 . 2009-02-09 10:56 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2010-01-06 02:02 . 2008-04-21 21:15 216576 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-01-06 01:59 . 2010-01-06 01:59 -------- d-----w- c:\program files\VideoLAN
2010-01-06 01:59 . 2010-01-06 01:59 -------- d-----w- c:\program files\Windows Media Connect 2
2010-01-06 01:59 . 2010-01-06 01:59 -------- d-----w- c:\program files\PSPad editor
2010-01-06 01:58 . 2010-01-06 01:59 -------- d-----w- c:\windows\system32\drivers\UMDF
2010-01-06 01:58 . 2010-01-06 01:58 -------- d-----w- c:\windows\system32\LogFiles
2010-01-06 01:50 . 2010-01-13 14:50 -------- d--h--w- c:\windows\$hf_mig$
2010-01-06 01:02 . 2010-01-06 01:02 -------- d-----w- c:\windows\system32\ANTIWPA
2010-01-06 00:39 . 2010-01-06 00:39 -------- d-----w- c:\program files\QIP Infium

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-18 14:57 . 2010-01-05 21:46 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-08 19:00 . 2001-10-25 14:00 77872 ----a-w- c:\windows\system32\perfc005.dat
2010-01-08 19:00 . 2001-10-25 14:00 428750 ----a-w- c:\windows\system32\perfh005.dat
2010-01-08 02:18 . 2010-01-05 21:10 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-01-08 02:18 . 2010-01-05 21:10 2740 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-01-08 02:17 . 2010-01-05 21:10 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-01-06 18:43 . 2010-01-06 18:43 -------- d-----w- c:\program files\MSBuild
2010-01-06 18:43 . 2010-01-06 18:43 -------- d-----w- c:\program files\Reference Assemblies
2010-01-06 17:43 . 2010-01-05 21:46 -------- d-----w- c:\program files\Common Files\InstallShield
2010-01-06 02:36 . 2010-01-06 02:35 -------- d-----w- c:\program files\Winamp
2010-01-06 02:35 . 2010-01-06 02:35 -------- d-----w- c:\program files\Winamp Detect
2010-01-06 02:06 . 2010-01-06 02:02 -------- d-----r- c:\program files\Skype
2010-01-06 02:04 . 2010-01-06 02:04 -------- d-----w- c:\program files\OpenOffice.org 3
2010-01-06 02:02 . 2010-01-06 02:02 -------- d-----w- c:\program files\Common Files\Skype
2010-01-06 00:17 . 2010-01-05 23:03 -------- d-----w- c:\program files\ASUS
2010-01-05 23:55 . 2010-01-05 23:03 -------- d-----w- c:\program files\Atheros
2009-11-21 16:03 . 2004-08-17 13:49 471552 ----a-w- c:\windows\AppPatch\aclayers.dll
2009-11-09 03:21 . 2009-11-09 03:21 59388 ----a-w- c:\windows\system32\drivers\scdemu.sys
2009-10-29 07:43 . 2004-08-17 13:49 916480 ----a-w- c:\windows\system32\wininet.dll
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-01 16:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-08-28 1557800]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 61440]
"ACU"="c:\program files\Atheros\ACU.exe" [2008-04-09 450648]
"Power_Gear"="c:\program files\ASUS\Power4 Gear\BatteryLife.exe" [2006-07-26 90112]
"ACMON"="c:\program files\ASUS\Splendid\ACMON.exe" [2008-01-15 851968]
"Wireless Console 2"="c:\program files\Wireless Console 2\wcourier.exe" [2007-07-05 1040384]
"MsgTranAgt"="c:\program files\ASUS\ATK Hotkey\MsgTranAgt.exe" [2007-11-04 106496]
"HControlUser"="c:\program files\ASUS\ATK Hotkey\HControlUser.exe" [2008-01-11 98304]
"ATKHOTKEY"="c:\program files\ATK Hotkey\Hcontrol.exe" [2007-04-19 225280]
"RTHDCPL"="RTHDCPL.EXE" [2009-12-25 18789408]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-01-06 149280]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\Dj Bass\Nabˇdka Start\Programy\Po spuçtŘnˇ\
CCC.lnk - c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [2007-7-17 49152]
OpenOffice.org 3.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-9-16 384512]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"MIDI1"=myokent.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-22 00:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2010-01-12 22:53 133368 ----a-w- c:\program files\ICQ7.0\ICQ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
2009-11-09 03:17 180224 ----a-w- c:\program files\PowerISO\PWRISOVM.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2009-11-10 22:08 417792 ----a-w- c:\program files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
2006-11-22 16:31 630784 ----a-w- c:\program files\Motorola\SMSERIAL\sm56hlpr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2010-01-12 14:03 1217808 ----a-w- d:\program files\Steam\Steam.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\WinSCP\\WinSCP.exe"=
"c:\\Program Files\\totalcmd\\TOTALCMD.EXE"=
"c:\\Program Files\\Java\\jre6\\bin\\java.exe"=
"d:\\Program Files\\Steam\\Steam.exe"=
"d:\\hlds\\hlds.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\ICQ7.0\\ICQ.exe"=
"c:\\Program Files\\ICQ7.0\\aolload.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [6. 1. 2010 13:21 108289]
R2 Apache2.2;Apache2.2;d:\xampp\apache\bin\httpd.exe [9. 1. 2010 15:20 29416]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [6. 1. 2010 1:34 1691480]
S3 cpuz130;cpuz130;\??\c:\docume~1\DJBASS~1\LOCALS~1\Temp\cpuz130\cpuz_x32.sys --> c:\docume~1\DJBASS~1\LOCALS~1\Temp\cpuz130\cpuz_x32.sys [?]
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [20. 10. 2009 19:19 50704]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://google.sk/
uInternet Settings,ProxyOverride = local
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files\ICQ7.0\ICQ.exe
FF - ProfilePath - c:\documents and settings\Dj Bass\Data aplikací\Mozilla\Firefox\Profiles\h2llrthn.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npwachk.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

ActiveSetup-{0D0E2092-26AA-197F-AD04-42AAB7AA4C5F} - c:\windows\system32:svchost.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-20 14:56
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...


c:\windows\system32:svchost.exe 22495 bytes executable
C:\ADSM_PData_0150

sken byl úspešně dokončen
skryté soubory: 2

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\WPAEvents]
@Denied: (Full) (LocalSystem)
"OOBETimer"=hex:ff,d6,71,d6,8b,6a,8d,6f,d5,33,93,fd,00
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(1148)
c:\windows\system32\myokent.dll
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'lsass.exe'(1204)
c:\windows\system32\myokent.dll
.
Celkový čas: 2010-01-20 14:57:49
ComboFix-quarantined-files.txt 2010-01-20 13:57

Před spuštěním: Volných bajtů: 131 073 368 064
Po spuštění: Volných bajtů: 131 062 730 752

WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

- - End Of File - - C356CFDBCEF05C9412154E9FEB70C2CF

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15691
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosím o kontrolu logu

#5 Příspěvek od JaRon »

FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

DjBass
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 črc 2008 17:31

Re: Prosím o kontrolu logu

#6 Příspěvek od DjBass »

SmitFraudFix v2.424

Scan done at 17:37:10,93, st 20. 01. 2010
Run from C:\Documents and Settings\Dj Bass\Plocha\SmitfraudFix
OS: Microsoft Windows XP [Verze 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in safe mode

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» Killing process


»»»»»»»»»»»»»»»»»»»»»»»» hosts


127.0.0.1 localhost
192.168.2.1 router

»»»»»»»»»»»»»»»»»»»»»»»» VACFix

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix

S!Ri's WS2Fix: LSP not Found.


»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files


»»»»»»»»»»»»»»»»»»»»»»»» IEDFix

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri



»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix

Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» 404Fix

404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» RK


»»»»»»»»»»»»»»»»»»»»»»»» DNS

HKLM\SYSTEM\CCS\Services\Tcpip\..\{79C631B9-AD38-497E-8231-05D9866B86D8}: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS1\Services\Tcpip\..\{79C631B9-AD38-497E-8231-05D9866B86D8}: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS3\Services\Tcpip\..\{79C631B9-AD38-497E-8231-05D9866B86D8}: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=192.168.2.1


»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!

"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» RK.2



»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» End

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15691
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosím o kontrolu logu

#7 Příspěvek od JaRon »

spust opatovne ComboFix - iba jednoducho dvoklikom bez CFScriptu - log vloz
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

DjBass
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 črc 2008 17:31

Re: Prosím o kontrolu logu

#8 Příspěvek od DjBass »

ComboFix 10-01-19.08 - Dj Bass . 01. 2010 21:05:08.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3071.2437 [GMT 1:00]
Spuštěný z: c:\documents and settings\Dj Bass\Plocha\ComboFix.exe
AV: AntiVir Desktop *On-access scanning disabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
.
ADS - system32: deleted 22495 bytes in 1 streams.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\system32\404Fix.exe
c:\windows\system32\Agent.OMZ.Fix.exe
c:\windows\system32\dumphive.exe
c:\windows\system32\IEDFix.C.exe
c:\windows\system32\IEDFix.exe
c:\windows\system32\o4Patch.exe
c:\windows\system32\Process.exe
c:\windows\system32\SrchSTS.exe
c:\windows\system32\tmp.reg
c:\windows\system32\VACFix.exe
c:\windows\system32\VCCLSID.exe
c:\windows\system32\WS2Fix.exe

.
((((((((((((((((((((((((( Soubory vytvořené od 2009-12-20 do 2010-01-20 )))))))))))))))))))))))))))))))
.

2010-01-19 19:10 . 2010-01-19 19:16 -------- d-----w- c:\program files\trend micro
2010-01-19 19:10 . 2010-01-19 19:10 -------- d-----w- C:\rsit
2010-01-19 18:31 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-19 18:31 . 2010-01-19 18:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-19 18:31 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-18 21:18 . 2010-01-18 21:18 -------- d-----w- c:\program files\Artisteer 2
2010-01-18 14:56 . 2010-01-18 14:57 -------- d-----w- c:\program files\ICQ7.0
2010-01-17 17:36 . 2010-01-17 17:36 -------- d-----w- c:\program files\Audacity
2010-01-17 17:33 . 2010-01-17 17:34 -------- d-----w- c:\program files\Audacity 1.3 Beta (Unicode)
2010-01-17 17:33 . 2010-01-17 17:33 -------- d-----w- c:\program files\Lame for Audacity
2010-01-17 15:21 . 2010-01-17 15:21 -------- d-----w- c:\windows\system32\Futuremark
2010-01-17 15:21 . 2008-09-17 14:14 27672 ----a-r- c:\windows\system32\drivers\Entech.sys
2010-01-17 15:21 . 2010-01-17 15:21 -------- d-----w- c:\program files\Common Files\Futuremark Shared
2010-01-17 11:21 . 2010-01-17 11:21 -------- d-----w- c:\program files\Bome's Mouse Keyboard
2010-01-16 19:44 . 2010-01-16 19:44 -------- d-----w- c:\program files\ASIO4ALL v2
2010-01-16 19:43 . 2010-01-16 19:44 -------- d-----w- c:\program files\VstPlugins
2010-01-16 19:43 . 2010-01-16 19:43 -------- d-----w- c:\program files\Outsim
2010-01-16 19:41 . 2010-01-16 19:44 -------- d-----w- c:\program files\Image-Line
2010-01-16 17:29 . 2010-01-16 18:12 -------- d-----w- c:\program files\Full Tilt Poker.Net
2010-01-16 17:22 . 2010-01-16 17:22 -------- d-----w- c:\documents and settings\Dj Bass\P5JavaClientSettings
2010-01-15 23:38 . 2007-12-05 00:40 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-01-15 23:38 . 2007-12-05 00:40 1060864 ----a-w- c:\windows\system32\mfc71.dll
2010-01-15 23:38 . 2007-12-05 00:40 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-01-15 23:38 . 2010-01-15 23:38 -------- d-----w- c:\program files\Ableton
2010-01-15 23:38 . 2003-06-20 11:28 1777664 ----a-w- c:\windows\system32\gdiplus.dll
2010-01-14 20:45 . 2010-01-14 20:45 368640 ----a-w- c:\windows\system32\ReWire.dll
2010-01-14 20:45 . 2010-01-14 20:45 233472 ----a-w- c:\windows\system32\REX Shared Library.dll
2010-01-14 20:36 . 2010-01-14 20:36 -------- d-----w- c:\program files\PowerISO
2010-01-14 19:48 . 2010-01-14 19:49 -------- d-----w- c:\program files\QuickTime
2010-01-14 19:48 . 2010-01-14 19:48 -------- d-----w- c:\program files\Common Files\Apple
2010-01-14 19:48 . 2010-01-14 19:48 -------- d-----w- c:\program files\Apple Software Update
2010-01-14 15:11 . 2010-01-14 15:11 -------- d-----w- c:\program files\Opera
2010-01-14 14:58 . 2010-01-14 14:58 -------- d-----w- c:\program files\Jabbim
2010-01-11 17:37 . 2010-01-11 17:38 79191 ----a-w- c:\windows\hpfins05.dat
2010-01-11 17:37 . 2005-07-09 01:48 1395 ------w- c:\windows\hpfmdl05.dat
2010-01-11 17:15 . 2005-04-08 18:44 45056 ----a-w- c:\windows\system32\hpzll3xu.dll
2010-01-11 17:15 . 2005-04-08 18:43 67072 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\hpzpp3xu.dll
2010-01-11 17:11 . 2010-01-11 17:11 -------- d-----w- c:\program files\HP
2010-01-11 17:05 . 2005-04-28 01:37 77824 ----a-w- c:\windows\system32\hpzids01.dll
2010-01-11 17:04 . 2008-04-13 18:47 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2010-01-11 17:04 . 2008-04-13 18:47 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-01-10 21:16 . 2010-01-17 19:49 -------- d-----w- c:\program files\Mozilla Thunderbird
2010-01-09 19:10 . 2010-01-09 19:10 -------- d-----w- c:\windows\Sun
2010-01-09 13:21 . 2010-01-09 13:21 -------- d-sh--w- c:\documents and settings\Dj Bass\IECompatCache
2010-01-08 23:56 . 2010-01-08 23:56 -------- d-----w- c:\program files\CCleaner
2010-01-08 23:49 . 2010-01-08 23:49 -------- d-----w- c:\program files\totalcmd
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\UC.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\RAR.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKZIP.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKUNZIP.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\NOCLOSE.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\LHA.PIF
2010-01-08 23:49 . 2009-09-24 06:50 545 ----a-w- c:\windows\ARJ.PIF
2010-01-08 18:59 . 2009-11-21 16:03 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-01-08 02:16 . 2010-01-08 02:16 -------- d-----w- c:\windows\l2schemas
2010-01-08 02:16 . 2010-01-08 02:16 -------- d-----w- c:\windows\system32\cs
2010-01-08 02:16 . 2010-01-08 02:16 -------- d-----w- c:\windows\system32\bits
2010-01-07 22:18 . 2010-01-07 22:18 -------- d-----w- c:\program files\WinPcap
2010-01-07 22:18 . 2010-01-07 22:27 -------- d-----w- c:\program files\Cain
2010-01-07 03:11 . 2010-01-07 03:11 -------- d-----w- c:\windows\ie8updates
2010-01-07 02:53 . 2010-01-07 02:53 -------- d-----w- c:\program files\Google
2010-01-06 23:36 . 2008-04-14 03:18 6144 -c--a-w- c:\windows\system32\dllcache\kbd106.dll
2010-01-06 23:36 . 2008-04-14 03:18 6144 ----a-w- c:\windows\system32\kbd106.dll
2010-01-06 23:36 . 2001-08-18 05:36 8704 -c--a-w- c:\windows\system32\dllcache\kbdjpn.dll
2010-01-06 23:36 . 2001-08-18 05:36 8704 ----a-w- c:\windows\system32\kbdjpn.dll
2010-01-06 23:36 . 2001-08-18 05:36 8192 -c--a-w- c:\windows\system32\dllcache\kbdkor.dll
2010-01-06 23:36 . 2001-08-18 05:36 8192 ----a-w- c:\windows\system32\kbdkor.dll
2010-01-06 23:36 . 2001-08-17 21:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101c.dll
2010-01-06 23:36 . 2001-08-17 21:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101b.dll
2010-01-06 23:36 . 2001-08-17 21:55 6144 ----a-w- c:\windows\system32\kbd101c.dll
2010-01-06 23:36 . 2001-08-17 21:55 6144 ----a-w- c:\windows\system32\kbd101b.dll
2010-01-06 23:36 . 2001-08-17 21:55 5632 -c--a-w- c:\windows\system32\dllcache\kbd103.dll
2010-01-06 23:36 . 2001-08-17 21:55 5632 ----a-w- c:\windows\system32\kbd103.dll
2010-01-06 21:53 . 2009-10-29 07:43 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-01-06 21:53 . 2009-10-29 07:43 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-01-06 21:53 . 2009-10-29 07:43 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-01-06 21:53 . 2009-10-29 07:43 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-01-06 21:53 . 2009-10-29 07:43 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-01-06 21:53 . 2009-10-29 07:43 11069952 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-01-06 20:23 . 2010-01-06 20:23 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2010-01-06 18:43 . 2010-01-06 18:43 -------- d-----w- c:\windows\system32\XPSViewer
2010-01-06 18:40 . 2010-01-06 18:40 -------- d-----w- c:\program files\MSXML 6.0
2010-01-06 17:43 . 2010-01-06 23:16 -------- d-----w- c:\program files\Common Files\Macromedia
2010-01-06 17:43 . 2010-01-06 23:16 -------- d-----w- c:\program files\Macromedia
2010-01-06 17:43 . 2010-01-06 23:16 -------- d-----w- c:\windows\Downloaded Installations
2010-01-06 16:55 . 2010-01-06 16:55 -------- d-sh--w- c:\documents and settings\Dj Bass\PrivacIE
2010-01-06 16:18 . 2004-08-17 13:49 221184 ----a-w- c:\windows\system32\wmpns.dll
2010-01-06 16:16 . 2010-01-08 02:14 -------- d-----w- c:\windows\ServicePackFiles
2010-01-06 12:38 . 2004-08-17 14:43 326912 ------w- c:\windows\system32\drivers\ati2mtaa.sys
2010-01-06 12:21 . 2010-01-07 13:43 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2010-01-06 12:21 . 2009-03-30 08:33 96104 ----a-w- c:\windows\system32\drivers\avipbb.sys
2010-01-06 12:21 . 2009-02-13 10:29 22360 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2010-01-06 12:21 . 2009-02-13 10:17 45416 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2010-01-06 12:21 . 2010-01-06 12:21 -------- d-----w- c:\program files\Avira
2010-01-06 12:19 . 2010-01-06 12:19 -------- d-sh--w- c:\documents and settings\Dj Bass\IETldCache
2010-01-06 02:54 . 2010-01-06 02:54 -------- d-----w- c:\documents and settings\Dj Bass\.thumbnails
2010-01-06 02:50 . 2010-01-06 02:50 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-06 02:50 . 2010-01-06 02:50 -------- d-----w- c:\program files\Java
2010-01-06 02:30 . 2010-01-09 11:41 -------- d-----w- c:\program files\WinSCP
2010-01-06 02:29 . 2010-01-17 13:16 -------- d-----w- c:\documents and settings\Dj Bass\.gimp-2.6
2010-01-06 02:29 . 2010-01-06 02:29 -------- d-----w- c:\program files\GIMP-2.0
2010-01-06 02:27 . 2010-01-17 15:21 -------- d-----w- c:\program files\Common Files\Adobe
2010-01-06 02:09 . 2008-06-14 17:35 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-01-06 02:09 . 2008-06-14 17:35 272128 ------w- c:\windows\system32\drivers\bthport.sys
2010-01-06 02:09 . 2010-01-08 02:16 -------- d-----w- c:\windows\system32\cs-CZ
2010-01-06 02:09 . 2010-01-06 02:11 -------- dc-h--w- c:\windows\ie8
2010-01-06 02:06 . 2009-02-06 10:10 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2010-01-06 02:06 . 2009-08-04 21:59 2191360 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2010-01-06 02:06 . 2009-03-06 14:23 284160 -c----w- c:\windows\system32\dllcache\pdh.dll
2010-01-06 02:06 . 2009-02-09 11:25 111104 -c----w- c:\windows\system32\dllcache\services.exe
2010-01-06 02:06 . 2009-02-09 10:56 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2010-01-06 02:06 . 2009-02-09 10:56 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2010-01-06 02:06 . 2009-06-25 08:27 729088 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2010-01-06 02:06 . 2009-02-09 10:56 709632 -c----w- c:\windows\system32\dllcache\ntdll.dll
2010-01-06 02:06 . 2009-02-09 10:56 684032 -c----w- c:\windows\system32\dllcache\advapi32.dll
2010-01-06 02:06 . 2009-02-09 10:56 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2010-01-06 02:02 . 2008-04-21 21:15 216576 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-01-06 01:59 . 2010-01-06 01:59 -------- d-----w- c:\program files\VideoLAN
2010-01-06 01:59 . 2010-01-06 01:59 -------- d-----w- c:\program files\Windows Media Connect 2
2010-01-06 01:59 . 2010-01-06 01:59 -------- d-----w- c:\program files\PSPad editor
2010-01-06 01:58 . 2010-01-06 01:59 -------- d-----w- c:\windows\system32\drivers\UMDF
2010-01-06 01:58 . 2010-01-06 01:58 -------- d-----w- c:\windows\system32\LogFiles
2010-01-06 01:50 . 2010-01-13 14:50 -------- d--h--w- c:\windows\$hf_mig$
2010-01-06 01:02 . 2010-01-06 01:02 -------- d-----w- c:\windows\system32\ANTIWPA
2010-01-06 00:39 . 2010-01-06 00:39 -------- d-----w- c:\program files\QIP Infium

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-18 14:57 . 2010-01-05 21:46 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-08 19:00 . 2001-10-25 14:00 77872 ----a-w- c:\windows\system32\perfc005.dat
2010-01-08 19:00 . 2001-10-25 14:00 428750 ----a-w- c:\windows\system32\perfh005.dat
2010-01-08 02:18 . 2010-01-05 21:10 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-01-08 02:18 . 2010-01-05 21:10 2740 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-01-08 02:17 . 2010-01-05 21:10 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-01-06 18:43 . 2010-01-06 18:43 -------- d-----w- c:\program files\MSBuild
2010-01-06 18:43 . 2010-01-06 18:43 -------- d-----w- c:\program files\Reference Assemblies
2010-01-06 17:43 . 2010-01-05 21:46 -------- d-----w- c:\program files\Common Files\InstallShield
2010-01-06 02:36 . 2010-01-06 02:35 -------- d-----w- c:\program files\Winamp
2010-01-06 02:35 . 2010-01-06 02:35 -------- d-----w- c:\program files\Winamp Detect
2010-01-06 02:06 . 2010-01-06 02:02 -------- d-----r- c:\program files\Skype
2010-01-06 02:04 . 2010-01-06 02:04 -------- d-----w- c:\program files\OpenOffice.org 3
2010-01-06 02:02 . 2010-01-06 02:02 -------- d-----w- c:\program files\Common Files\Skype
2010-01-06 00:17 . 2010-01-05 23:03 -------- d-----w- c:\program files\ASUS
2010-01-05 23:55 . 2010-01-05 23:03 -------- d-----w- c:\program files\Atheros
2009-11-21 16:03 . 2004-08-17 13:49 471552 ----a-w- c:\windows\AppPatch\aclayers.dll
2009-11-09 03:21 . 2009-11-09 03:21 59388 ----a-w- c:\windows\system32\drivers\scdemu.sys
2009-10-29 07:43 . 2004-08-17 13:49 916480 ------w- c:\windows\system32\wininet.dll
.

((((((((((((((((((((((((((((( SnapShot@2010-01-20_13.56.09 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-01-20 16:43 . 2010-01-20 16:43 16384 c:\windows\Temp\Perflib_Perfdata_848.dat
+ 2010-01-05 23:18 . 2010-01-20 16:42 45056 c:\windows\system32\acovcnt.exe
- 2010-01-05 23:18 . 2010-01-20 13:43 45056 c:\windows\system32\acovcnt.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-01 16:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-08-28 1557800]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 61440]
"ACU"="c:\program files\Atheros\ACU.exe" [2008-04-09 450648]
"Power_Gear"="c:\program files\ASUS\Power4 Gear\BatteryLife.exe" [2006-07-26 90112]
"ACMON"="c:\program files\ASUS\Splendid\ACMON.exe" [2008-01-15 851968]
"Wireless Console 2"="c:\program files\Wireless Console 2\wcourier.exe" [2007-07-05 1040384]
"MsgTranAgt"="c:\program files\ASUS\ATK Hotkey\MsgTranAgt.exe" [2007-11-04 106496]
"HControlUser"="c:\program files\ASUS\ATK Hotkey\HControlUser.exe" [2008-01-11 98304]
"ATKHOTKEY"="c:\program files\ATK Hotkey\Hcontrol.exe" [2007-04-19 225280]
"RTHDCPL"="RTHDCPL.EXE" [2009-12-25 18789408]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-01-06 149280]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\Dj Bass\Nabˇdka Start\Programy\Po spuçtŘnˇ\
CCC.lnk - c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [2007-7-17 49152]
OpenOffice.org 3.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-9-16 384512]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"MIDI1"=myokent.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-22 00:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2010-01-12 22:53 133368 ----a-w- c:\program files\ICQ7.0\ICQ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
2009-11-09 03:17 180224 ----a-w- c:\program files\PowerISO\PWRISOVM.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2009-11-10 22:08 417792 ----a-w- c:\program files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
2006-11-22 16:31 630784 ----a-w- c:\program files\Motorola\SMSERIAL\sm56hlpr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2010-01-12 14:03 1217808 ----a-w- d:\program files\Steam\Steam.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\WinSCP\\WinSCP.exe"=
"c:\\Program Files\\totalcmd\\TOTALCMD.EXE"=
"c:\\Program Files\\Java\\jre6\\bin\\java.exe"=
"d:\\Program Files\\Steam\\Steam.exe"=
"d:\\hlds\\hlds.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\ICQ7.0\\ICQ.exe"=
"c:\\Program Files\\ICQ7.0\\aolload.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [6. 1. 2010 13:21 108289]
R2 Apache2.2;Apache2.2;d:\xampp\apache\bin\httpd.exe [9. 1. 2010 15:20 29416]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [6. 1. 2010 1:34 1691480]
S3 cpuz130;cpuz130;\??\c:\docume~1\DJBASS~1\LOCALS~1\Temp\cpuz130\cpuz_x32.sys --> c:\docume~1\DJBASS~1\LOCALS~1\Temp\cpuz130\cpuz_x32.sys [?]
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [20. 10. 2009 19:19 50704]
.
.
------- Doplňkový sken -------
.
uInternet Settings,ProxyOverride = local
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files\ICQ7.0\ICQ.exe
FF - ProfilePath - c:\documents and settings\Dj Bass\Data aplikací\Mozilla\Firefox\Profiles\h2llrthn.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npwachk.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
.

**************************************************************************
skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory:

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\WPAEvents]
@Denied: (Full) (LocalSystem)
"OOBETimer"=hex:ff,d6,71,d6,8b,6a,8d,6f,d5,33,93,fd,00
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(1148)
c:\windows\system32\myokent.dll
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'lsass.exe'(1204)
c:\windows\system32\myokent.dll
.
Celkový čas: 2010-01-20 21:11:14
ComboFix-quarantined-files.txt 2010-01-20 20:11
ComboFix2.txt 2010-01-20 13:57

Před spuštěním: Volných bajtů: 131 014 524 928
Po spuštění: Volných bajtů: 130 977 910 784

- - End Of File - - 4902D6DC645710BB3BB439CD0775B27D

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15691
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosím o kontrolu logu

#9 Příspěvek od JaRon »

fajn, som spokojny - ciste :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

DjBass
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 19 črc 2008 17:31

Re: Prosím o kontrolu logu

#10 Příspěvek od DjBass »

Veľmi pekne ďakujem za pomoc. :-)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15691
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosím o kontrolu logu

#11 Příspěvek od JaRon »

rado sa stalo :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět