menšie majetkové --

Magazine
Go Back   Počítačové Juice > Computer Software > Virus, spyware a bezpečnosť

Register


 Default 

Virus: iexplore.exe proces ako systém




Reply
 
Thread Tools
  #1  
Old 6 novembra 2008, 02:16
Nový člen skupiny
 
Default Virus: iexplore.exe proces ako systém

Nedokážem zavrieť iexplore.exe, aj keď nie je Windows Explorer otvoriť. Reklamy vždy vynorí sa čas od času. Tiež som počul hlasy, ad / zvuky v pozadí. Je to nepríjemné a cítim sa ako výkon systému sa spomalilo. Please help. To je môj HiJackThis log:

Logfile z HijackThis v1.99.1
Skenovanie uložený v 4:15:28 AM, dňa 11.6.2008
Platforma: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Bežiace procesy:
C: \ WINDOWS \ System32 \ Smss.exe
C: \ WINDOWS \ system32 \ Winlogon.exe
C: \ WINDOWS \ system32 \ Services.exe
C: \ WINDOWS \ system32 \ lsass.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ Program Files \ Alwil Software \ Avast4 \ aswUpdSv.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashServ.exe
C: \ WINDOWS \ Explorer.exe
C: \ Program Files \ ASUS \ Ai Suite \ AiNap \ AiNap.exe
C: \ Program Files \ Common Files \ Ulead systémy \ AutoDetector \ monitor.exe
C: \ WINDOWS \ RTHDCPL.EXE
C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe
C: \ Program Files \ iTunes \ iTunesHelper.exe
C: \ Program Files \ ASUS \ AASP \ 1.00.61 \ aaCenter.exe
C: \ WINDOWS \ system32 \ rundll32.exe
C: \ PROGRA ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp.exe
C: \ WINDOWS \ system32 \ Ctfmon.exe
C: \ Program Files \ Nokia \ Nokia PC Suite 6 \ PcSync2.exe
C: \ PROGRA ~ 1 \ Common ~ 1 \ Nokia \ MPAPI \ MPAPI3s.exe
C: \ WINDOWS \ system32 \ Spoolsv.exe
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ Program Files \ Bonjour \ mDNSResponder.exe
C: \ WINDOWS \ system32 \ nvsvc32.exe
C: \ WINDOWS \ system32 \ PSIService.exe
C: \ Program Files \ hľadiska \ Common \ ViewpointService.exe
C: \ Program Files \ Common Files \ pcsuite \ Services \ ServiceLayer.exe
C: \ Program Files \ iPod \ bin \ iPodService.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashMaiSv.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashWebSv.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ Program Files \ Winamp \ winamp.exe
C: \ Program Files \ Real \ RealPlayer \ RealPlay.exe
C: \ WINDOWS \ system32 \ s1S8Dh6X.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ Program Files \ HijackThis \ HijackThis.exe
O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll
O2 - BHO: IE2EMBHO Class - (0A0DDBD3-6641-40B9-873F-BBDD26D6C14E) - C: \ Program Files \ easyMule \ Moduly \ IE2EM.dll
O2 - BHO: RealPlayer Download a Record Plugin pre Internet Explorer - (3049C3E9-B461-4BC5-8870-4C09146192CA) - C: \ Program Files \ Real \ RealPlayer \ rpbrowserrecordplugin.dll
O2 - BHO: (bez názvu) - (7E853D72-626a-48EC-A868-BA8D5E23E045) - (ne obrázok)
O4 - HKLM \ .. \ Run: [PHIME2002ASync] C: \ WINDOWS \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE / SYNC
O4 - HKLM \ .. \ Run: [PHIME2002A] C: \ WINDOWS \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE / IMEName
O4 - HKLM \ .. \ Run: [Ai Nap] "C: \ Program Files \ ASUS \ Ai Suite \ AiNap \ AiNap.exe"
O4 - HKLM \ .. \ Run: [CPU Power Monitor] "C: \ Program Files \ ASUS \ Ai Suite \ AiGear3 \ CpuPowerMonitor.exe"
O4 - HKLM \ .. \ Run: [CPU Level Up help] C: \ Program Files \ ASUS \ Ai Suite \ CpuLevelUpHelp.exe
O4 - HKLM \ .. \ Run: [ASUS úsporách energie] "C: \ Program Files \ ASUS \ Ai Suite \ EnergySaving \ PwSave.exe"
O4 - HKLM \ .. \ Run: [Ulead AutoDetector v2] C: \ Program Files \ Common Files \ Ulead systémy \ AutoDetector \ monitor.exe
O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM \ .. \ Run: [TkBellExe] "C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe"-osboot
O4 - HKLM \ .. \ Run: [QuickTime Úloha] "C: \ Program Files \ QuickTime \ qttask.exe"-atboottime
O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files \ iTunes \ iTunesHelper.exe"
O4 - HKLM \ .. \ Run: [NvCplDaemon] rundll32.exe C: \ WINDOWS \ system32 \ NvCpl.dll, NvStartup
O4 - HKLM \ .. \ Run: [nwiz] nwiz.exe / install
O4 - HKLM \ .. \ Run: [NvMediaCenter] rundll32.exe C: \ WINDOWS \ system32 \ NvMcTray.dll, NvTaskbarInit
O4 - HKLM \ .. \ Run: [Adobe Reader Speed Launcher] "C: \ Program Files \ Adobe \ Reader 8.0 \ Reader \ reader_sl.exe"
O4 - HKLM \ .. \ Run: [NSLauncher] C: \ Program Files \ Nokia \ Nokia Software Launcher \ NSLauncher.exe / štarte
O4 - HKLM \ .. \ Run: [avast!] C: \ PROGRA ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp.exe
O4 - HKCU \ .. \ Run: [Cttfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe
O4 - HKLM \ .. \ Run: [\ \ MING3 \ EPSON Stylus C120 Series] C: \ WINDOWS \ system32 \ spool \ drivers \ w32x86 \ 3 \ E_FATIC CA.EXE / FU "C: \ DOCUME ~ 1 \ MKJ \ LOCALS ~ 1 \ Temp \ E_S13.tmp "/ EF" HKLM "
O4 - HKCU \ .. \ Run: [PcSync] C: \ Program Files \ Nokia \ Nokia PC Suite 6 \ PcSync2.exe / NoDialog
O8 - Extra kontextového menu položku: Pridať do Google Photos Screens & ver - res: / / C: \ WINDOWS \ system32 \ GPhotos.scr/200
O8 - Extra context menu item: Download by easyMule - C: \ Program Files \ easyMule \ IE2EM.htm
O9 - Extra tlačidlá: (bez názvu) - (e2e2dd38-d088-4134-82b7-f2ba38496583) -% windir% \ Network Diagnostické \ xpnetdiag.exe (file chýba)
O9 - Extra 'Tools' MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) -% windir% \ Network Diagnostické \ xpnetdiag.exe (file chýba)
O9 - Extra tlačidlá: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ Msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ Msmsgs.exe
O10 - Neznámy súbor Winsock LSP: c: \ Program Files \ Bonjour \ mdnsnsp.dll
O11 - Voľby skupine: [Medzinárodná] International *
O16 - DPF: (0CCA191D-13A6-4E29-B746-314DEE697D83) (Facebook 5 Foto Uploader Control) -- http://upload.facebook.com/controls/...oUploader5.cab
O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) -- http://www.update.microsoft.com/wind...?1224821007296
O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl Class) -- http://www.update.microsoft.com/micr...?1224825458984
O16 - DPF: (D27CDB6E-AE6D-11CF-96B8-444553540000) (Shockwave Flash Object) -- http://fpdownload2.macromedia.com/ge...sh/swflash.cab
O18 - Protokol: livecall - (828030A1-22C1-4009-854F-8E305202313F) - C: \ PROGRA ~ 1 \ MSNMES ~ 1 \ MSGRAP ~ 1.DLL
O18 - Protokol: msnim - (828030A1-22C1-4009-854F-8E305202313F) - C: \ PROGRA ~ 1 \ MSNMES ~ 1 \ MSGRAP ~ 1.DLL
O20 - Winlogon Upozornenie: dimsntfy -% SystemRoot% \ System32 \ dimsntfy.dll (súbor chýba)
O20 - Winlogon Upozornenie: WgaLogon - C: \ WINDOWS \ SYSTEM32 \ WgaLogon.dll
O21 - SSODL: WPDShServiceObj - (AAA288BA-9A4C-45B0-95D7-94D524869DB5) - C: \ WINDOWS \ system32 \ WPDShServiceObj.dll
O23 - Service: Apple Mobile Device - Apple Inc - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 kontrolu Service (aswUpdSv) - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashServ.exe
O23 - Service: avast! Mail Scanner - Neznámy vlastník - C: \ Program Files \ Alwil Software \ Avast4 \ ashMaiSv.exe "/ službu (súbor chýba)
O23 - Service: avast! Web Scanner - Neznámy vlastník - C: \ Program Files \ Alwil Software \ Avast4 \ ashWebSv.exe "/ službu (súbor chýba)
O23 - Service: Bonjour Service - Apple Inc - C: \ Program Files \ Bonjour \ mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc - C: \ Program Files \ iPod \ bin \ iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C: \ WINDOWS \ system32 \ nvsvc32.exe
O23 - Service: ProtexisLicensing - Neznámy vlastník - C: \ WINDOWS \ system32 \ PSIService.exe
O23 - Service: ServiceLayer - Nokia. - C: \ Program Files \ Common Files \ pcsuite \ Services \ ServiceLayer.exe
O23 - Service: Service Manager vyhliadka - vyhliadka Corporation - C: \ Program Files \ hľadiska \ Common \ ViewpointService.exe
  #2  
Old 6 novembra 2008, 09:37
Moderátor skupiny
 
Default Virus: iexplore.exe proces ako systém

Stiahnuť CCleaner Slim a uložte ho na plochu.
Kedy bol súbor uložený, choďte do svojho počítača a dvojito kliknite na -- ccsetupxxx_slim.exe
Podľa pokynov nainštalujte program.
Kompletná inštalácia potom:
  • Double-kliknite na CCleaner zástupcu na ploche pre spustenie programu.
  • Kliknite na Voľby bloku na ľavej strane, potom vyberte Cookies.
    • Pod Vymazať cookiesZdôrazní akýkoľvek cookies si chcete ponechať natrvalo
    • Kliknite na šípku vpravo > presunúť ich do Cookies udržať okná.
  • Choďte do Voľby > Rozšírené unkontrola Iba odstrániť súbory vo Windows Temp zložky staršie ako 48 hodín
  • Kliknite Cleaner na ľavej strane potom Spustiť Cleaner o práve na spustenie programu.
  • Dôležité upozornenie: Uistite sa, že ALL okna prehliadača sú uzavreté pred voľbou Spustiť Cleaner
  • Upozornenie: Nie je odporúčané používať 'Registry' funkcie, ak nie ste veľmi dobre oboznámení s registrom.
  • Odísť CCleaner potom, čo dokončil svoju procesu.

----------

Teraz nainštalovať novú verziu HijackThis a po log z neho.

Stiahnuť TrendMicro HijackThis.exe (Hjt) na ploche.
  • Double-kliknite na HJTInstall.
  • Kliknite na Inštalácia tlačidlo.
  • Bude automaticky miesto v hjt C: \ Program Files \ TrendMicro \ HijackThis \ HijackThis.exe.
  • Po inštalácii, HijackThis mala otvoriť pre vás.
  • Kliknite na Do systému skenovania a uloženie súboru protokolu Tlačidlo
  • HijackThis bude skenovať a potom prihlásiť sa otvorí v programe Poznámkový blok.
  • Skopírujte a vložte celý obsah sa prihlásiť svoj príspevok.
  • Nepoužívajte HijackThis mať ešte niečo opraviť. Väčšina toho, čo zistí, bude neškodné alebo dokonca nevyhnutné.
__________________

  #3  
Old 6 novembra 2008, 16:19
Nový člen skupiny
 
Default Virus: iexplore.exe proces ako systém

Bežal som CCleaner a preinštalovať novú verziu HiJackThis.

Logfile Trend Micro HijackThis v2.0.2
Skenovanie uložený v 6:18:15 hodín, na 11.6.2008
Platforma: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Zavádzacia mód: Normálny
Bežiace procesy:
C: \ WINDOWS \ System32 \ Smss.exe
C: \ WINDOWS \ system32 \ Winlogon.exe
C: \ WINDOWS \ system32 \ Services.exe
C: \ WINDOWS \ system32 \ lsass.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ Program Files \ Alwil Software \ Avast4 \ aswUpdSv.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashServ.exe
C: \ WINDOWS \ Explorer.exe
C: \ Program Files \ ASUS \ Ai Suite \ AiNap \ AiNap.exe
C: \ Program Files \ Common Files \ Ulead systémy \ AutoDetector \ monitor.exe
C: \ WINDOWS \ RTHDCPL.EXE
C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe
C: \ Program Files \ iTunes \ iTunesHelper.exe
C: \ Program Files \ ASUS \ AASP \ 1.00.61 \ aaCenter.exe
C: \ WINDOWS \ system32 \ rundll32.exe
C: \ PROGRA ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp.exe
C: \ WINDOWS \ system32 \ Ctfmon.exe
C: \ WINDOWS \ system32 \ Spoolsv.exe
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ Program Files \ Bonjour \ mDNSResponder.exe
C: \ WINDOWS \ system32 \ nvsvc32.exe
C: \ WINDOWS \ system32 \ PSIService.exe
C: \ Program Files \ hľadiska \ Common \ ViewpointService.exe
C: \ Program Files \ Common Files \ pcsuite \ Services \ ServiceLayer.exe
C: \ Program Files \ iPod \ bin \ iPodService.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashMaiSv.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashWebSv.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ WINDOWS \ system32 \ s1S8Dh6X.exe
C: \ Program Files \ Adobe \ Reader 8.0 \ Reader \ AcroRd32.exe
C: \ PROGRA ~ 1 \ COMMON ~ 1 \ pcsuite \ datal ~ 1 \ datal ~ 1.EXE
C: \ WINDOWS \ system32 \ conime.exe
C: \ Program Files \ CCleaner \ CCleaner.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ WINDOWS \ system32 \ wuauclt.exe
C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe
O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll
O2 - BHO: IE2EMBHO Class - (0A0DDBD3-6641-40B9-873F-BBDD26D6C14E) - C: \ Program Files \ easyMule \ Moduly \ IE2EM.dll
O2 - BHO: RealPlayer Download a Record Plugin pre Internet Explorer - (3049C3E9-B461-4BC5-8870-4C09146192CA) - C: \ Program Files \ Real \ RealPlayer \ rpbrowserrecordplugin.dll
O2 - BHO: (bez názvu) - (7E853D72-626a-48EC-A868-BA8D5E23E045) - (ne obrázok)
O4 - HKLM \ .. \ Run: [PHIME2002ASync] C: \ WINDOWS \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE / SYNC
O4 - HKLM \ .. \ Run: [PHIME2002A] C: \ WINDOWS \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE / IMEName
O4 - HKLM \ .. \ Run: [Ai Nap] "C: \ Program Files \ ASUS \ Ai Suite \ AiNap \ AiNap.exe"
O4 - HKLM \ .. \ Run: [CPU Power Monitor] "C: \ Program Files \ ASUS \ Ai Suite \ AiGear3 \ CpuPowerMonitor.exe"
O4 - HKLM \ .. \ Run: [CPU Level Up help] C: \ Program Files \ ASUS \ Ai Suite \ CpuLevelUpHelp.exe
O4 - HKLM \ .. \ Run: [ASUS úsporách energie] "C: \ Program Files \ ASUS \ Ai Suite \ EnergySaving \ PwSave.exe"
O4 - HKLM \ .. \ Run: [Ulead AutoDetector v2] C: \ Program Files \ Common Files \ Ulead systémy \ AutoDetector \ monitor.exe
O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM \ .. \ Run: [TkBellExe] "C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe"-osboot
O4 - HKLM \ .. \ Run: [QuickTime Úloha] "C: \ Program Files \ QuickTime \ qttask.exe"-atboottime
O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files \ iTunes \ iTunesHelper.exe"
O4 - HKLM \ .. \ Run: [NvCplDaemon] rundll32.exe C: \ WINDOWS \ system32 \ NvCpl.dll, NvStartup
O4 - HKLM \ .. \ Run: [nwiz] nwiz.exe / install
O4 - HKLM \ .. \ Run: [NvMediaCenter] rundll32.exe C: \ WINDOWS \ system32 \ NvMcTray.dll, NvTaskbarInit
O4 - HKLM \ .. \ Run: [Adobe Reader Speed Launcher] "C: \ Program Files \ Adobe \ Reader 8.0 \ Reader \ reader_sl.exe"
O4 - HKLM \ .. \ Run: [NSLauncher] C: \ Program Files \ Nokia \ Nokia Software Launcher \ NSLauncher.exe / štarte
O4 - HKLM \ .. \ Run: [avast!] C: \ PROGRA ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp.exe
O4 - HKCU \ .. \ Run: [Cttfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe
O4 - HKLM \ .. \ Run: [\ \ MING3 \ EPSON Stylus C120 Series] C: \ WINDOWS \ system32 \ spool \ drivers \ w32x86 \ 3 \ E_FATIC CA.EXE / FU "C: \ DOCUME ~ 1 \ MKJ \ LOCALS ~ 1 \ Temp \ E_S13.tmp "/ EF" HKLM "
O4 - HKCU \ .. \ Run: [PcSync] C: \ Program Files \ Nokia \ Nokia PC Suite 6 \ PcSync2.exe / NoDialog
O4 - HKLM \ .. \ Run: [Uniblue RegistryBooster 2009] C: \ Program Files \ Uniblue \ RegistryBooster \ RegistryBooster.exe / S
O4 - HKUS \ S-1-5-19 \ .. \ Run: [Cttfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'miestnych')
O4 - HKUS \ S-1-5-20 \ .. \ Run: [Cttfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'Network Service')
O4 - HKUS \ S-1-5-18 \ .. \ Run: [Cttfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'systém')
O4 - HKUS \. DEFAULT \ .. \ Run: [Cttfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'Predvolené užívateľ')
O8 - Extra kontextového menu položku: Pridať do Google Photos Screens & ver - res: / / C: \ WINDOWS \ system32 \ GPhotos.scr/200
O8 - Extra context menu item: Download by easyMule - C: \ Program Files \ easyMule \ IE2EM.htm
O9 - Extra tlačidlá: (bez názvu) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostické \ xpnetdiag.exe
O9 - Extra 'Tools' MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostické \ xpnetdiag.exe
O9 - Extra tlačidlá: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ Msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ Msmsgs.exe
O15 - ESC dôveryhodných Oblasť: http:// *. update.microsoft.com
O16 - DPF: (0CCA191D-13A6-4E29-B746-314DEE697D83) (Facebook 5 Foto Uploader Control) -- http://upload.facebook.com/controls/...oUploader5.cab
O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) -- http://www.update.microsoft.com/wind...?1224821007296
O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl Class) -- http://www.update.microsoft.com/micr...?1224825458984
O16 - DPF: (D27CDB6E-AE6D-11CF-96B8-444553540000) (Shockwave Flash Object) -- http://fpdownload2.macromedia.com/ge...sh/swflash.cab
O23 - Service: Apple Mobile Device - Apple Inc - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 kontrolu Service (aswUpdSv) - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc - C: \ Program Files \ Bonjour \ mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc - C: \ Program Files \ iPod \ bin \ iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C: \ WINDOWS \ system32 \ nvsvc32.exe
O23 - Service: ProtexisLicensing - Neznámy vlastník - C: \ WINDOWS \ system32 \ PSIService.exe
O23 - Service: ServiceLayer - Nokia. - C: \ Program Files \ Common Files \ pcsuite \ Services \ ServiceLayer.exe
O23 - Service: Service Manager vyhliadka - vyhliadka Corporation - C: \ Program Files \ hľadiska \ Common \ ViewpointService.exe
--
End of file - 7422 bytes



Aký je ďalší krok?

Ďakujeme za vašu pomoc.
  #4  
Old 6 novembra 2008, 16:53
Moderátor skupiny
 
Default Virus: iexplore.exe proces ako systém

Podozrivé súbory na skenovanie

Nájdete na VirSCAN.org ZDARMA on-line služby scan
(Ak je viac ako jeden súbor musí skenovaná sa musí vykonať samostatne a protokoluje posta pre každé z nich)

1. Skopírujte a prilepte nasledujúcu cestu k súboru do Podozrivé súbory na skenovanie Schránka na hornej časti stránky.
Kód:
C: \ WINDOWS \ system32 \ s1S8Dh6X.exe
2. Na nahrání stránky, kliknite raz vnútri okna vedľa Ľudia.
3. Tlač Ctrl + W na klávesnici (oba súčasne) vložte cestu k súboru do okna.
4. Kliknite na Upload tlačidlo.
To sa vykoná vyhľadávanie v niekoľkých rôznych vírusov motory.
Váš súbor bude možné do fronty, ktorá zvyčajne trvá menej ako minútu na jasné.
Dôležité upozornenie: Počkajte na všetky testovanie motorov dokončiť.
5. Keď je skenovanie dokončené prejdite nadol a kliknite na Kopírovať do schránky tlačidlo. Táto kópia bude odkaz na správu do schránky.
6. Vložiť obsah schránky do budúceho odpoveď.
__________________

  #5  
Old 6. novembra 2008, 17:19
Nový člen skupiny
 
Default Virus: iexplore.exe proces ako systém

Tu je do schránky informácie o súbore s1S8Dh6X.exe.

Informácie o súbore Názov súboru: s1S8Dh6X.exeFile Veľkosť: 62.464 byteFile Typ: PE32 spustiteľný súbor pre MS Windows (GUI) Intel 80386 32-bitMD5: 895f4e2eed5a30e317460e66989042d0SHA1: 8d133ba222ce2d511ff28d900586e79041a8b4cfScanner výsledky Scanner výsledkov: 8% Scanner (3 / 39) našiel malware! Čas: 2008 / 11/06 19:15:08 (EST)ScannerMotor VerSig VerSig DátumScan výsledokČas-squared4.0.0.232008.11.032008-11-03--
1.832AhnLab V32008.11.07.012008.11.072008-11-07--
0.987AntiVir7.9.0.267.1.0.492008-11-06--
1.503Antiy2.0.1820081106.15602992008-11-06--
0.122Arcavir1.0.52008110611442008-11-06--
1.227Authentium5.1.12008110611422008-11-06--
1.367AVAST! 3.0.1081106-02008-11-06--
0.725AVG7.5.52.442270.9.0/17722008-11-06Clicker.TXO
1.691BitDefender7.60825.20709477.217192008-11-07--
3.401CA (VET) 9.0.0.14331.6.61952008-11-06--
7.230ClamAV0.9485842008-11-07--
0.021Comodo2.112.0.0.6992008-11-06--
0.422CP Secure1.1.0.7152008.11.062008-11-06--
6.447Dr.Web4.44.0.91702008.11.062008-11-06--
3.465ewido4.0.0.22008.11.062008-11-06--
3.024F-Prot4.4.4.56200811062008-11-06--
1.293F-Secure5.51.61002008.11.06.112008-11-06--
3.681Fortinet2.81-3.1179.6922008-11-06--
0.215GData19.1393/19.94200811072008-11-07--
2.739IkarusT3.1.01.452008.11.06.718072008-11-06--
3.517JiangMin11.0.7062008.11.062008-11-06--
1.312Kaspersky5.5.102008.11.062008-11-06--
0.034KingSoft2008.9.8.182008.11.6.202008-11-06--
0.690McAfee5.3.0054262008-11-06--
2.352Microsoft1.41042008.11.072008-11-07--
8.785mks_vir2.012008.11.062008-11-06--
2.720Norman5.93.015.93.002008-11-06--
5.480nProtect2008-11-06 ,0023828662008-11-06--
5.379Panda9.05.012008.11.062008-11-06--
3.744Quick Heal9.502008.09.122008-09-12--
2.520Rising20.021.02.32.002008-11-06--
3.054Sophos2.80.04.352008-11-07Mal / EncPk-SK
1.881Sunbelt3.1.1783.223742008-11-04--
1.058Symantec1.3.0.2420081106.0042008-11-06Infostealer
0.046The Hacker6.3.1.1v001432008-11-06--
0.445Trend Micro8.700-10045.642.172008-11-06--
0.028VBA323.12.8.920081106.17172008-11-06--
1.390ViRobot200811052008.11.052008-11-05--
0.398VirusBuster4.5.11.1010.90.27/6712492008-11-06--
0.876Thanks
  #6  
Old 6 novembra 2008, 17:30
Nový člen skupiny
 
Default Virus: iexplore.exe proces ako systém

http://virscan.org/report/3510c11282...b9674c0c1.html

thats odkaz na naskenovaný súbor.
  #7  
Old 6 novembra 2008, 17:39
Moderátor skupiny
 
Default Virus: iexplore.exe proces ako systém

Stiahnite ComboFix by subs z jedného z nižšie uvedených odkazov. Isteže top uložiť do Desktop.

Link # 1
Link # 2

** Poznámka: Je dôležité, že je uložený priamo na váš Desktop

Zavrieť všetky otvorené webové prehliadače. (Firefox, Internet Explorer, atď) pred začatím ComboFix.

Dočasne znemožniť tvoj antivirus, A akékoľvek Anti-Spyware Ochrana v reálnom čase pred vykonávajúci kontrolu. Kliknite tento odkaz zobraziť zoznam bezpečnostných programov, ktoré by mali byť zakázané, a ako je zakázať.

Dvojitým kliknutím combofix.exe & sledovať inštrukcie.

Pre systémy Windows XP nainštalovať konzolu na obnovenie:

- Ak používate systém Windows XP a nie je už konzoly na obnovenie nainštalovaná, skontrolujte prosím vaše internetové pripojenie je aktívne (pokiaľ možno) a kliknite Áno.
- Ak z nejakého dôvodu váš internet nefunguje kliknite Ne.
-- Ak nepoužívate systém Windows XP, nebudete vyzvaní.
- Až budete vyzvaní, aby akceptovala EULA kliknite OK.
- Prijať Microsoft EULA (Click Áno).
- Keď ste povedal, že RC je správne nainštalovaná kliknite ÁNO aby pokračovala skenovania pre malware.

Po dokončení bude vyrábať ComboFix log pre vás.
Post ComboFix log V ďalšej odpovedi.

Dôležité upozornenie: Don't mouseclick ComboFix okná, ak je v chode. To môže spôsobiť, že na stánku.

Nezabudnite re-umožní váš antivírus a antispyware ochrany pri ComboFix je kompletná.
__________________

  #8  
Old 6 novembra 2008, 17:57
Nový člen skupiny
 
Default Virus: iexplore.exe proces ako systém

ComboFix Prihlásenie

ComboFix 08-11-05.02 - MKJ 2008-11-06 19:51:34.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3144 [GMT -5:00]
Running from: c: \ Documents and Settings \ MKJ \ Desktop \ ComboFix.exe
.
((((((((((((((((((((((((( Súbory vytvorené od 2008-10-07 do 2008-11-07 ))))))))))) ))))))))))))))))))))
.
2008-11-06 18:15. 2008-11-06 18:15 <DIR> d -------- C: \ Program Files \ CCleaner
2008-11-06 03:51. 2008-11-06 03:51 <DIR> d -------- C: \ Program Files \ Trend Micro
2008-11-06 03:22. 2008-11-06 03:22 <DIR> d -------- C: \ Program Files \ Alwil Software
2008-11-06 02:10. 2008-11-06 02:10 <DIR> d -------- C: \ Program Files \ Reference Zostavy
2008-11-06 02:07. 2008-11-06 02:07 <DIR> dr-h ----- C: \ AHCache
2008-11-05 23:11. 2008-11-06 02:12 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Uniblue
2008-11-05 22:05. 2008-11-05 22:05 <DIR> d -------- C: \ Documents and Settings \ Administrator \ Data aplikací \ Malwarebytes
2008-11-05 22:04. 2008-11-05 22:04 <DIR> d -------- C: \ Documents and Settings \ Administrator
2008-11-05 16:34. 2008-11-05 16:34 <DIR> d -------- C: \ Program Files \ Xanga Uploader
2008-11-05 16:34. 2008-11-05 16:34 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \. Xuploader
2008-11-05 16:08. 2008-11-05 16:08 <DIR> d -------- C: \ Program Files \ Malwarebytes 'Anti-Malware
2008-11-05 16:08. 2008-11-05 16:08 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Malwarebytes
2008-11-05 16:08. 2008-11-05 16:08 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Malwarebytes
2008-11-05 16:08. 2008-10-22 16:10 38.496 - a ------ C: \ WINDOWS \ system32 \ drivers \ mbamswissarmy.sys
2008-11-05 16:08. 2008-10-22 16:10 15.504 - a ------ C: \ WINDOWS \ system32 \ drivers \ mbam.sys
2008-11-05 15:38. 2008-11-05 15:38 62464 - a ------ C: \ WINDOWS \ system32 \ s1S8Dh6X.exe
2008-11-01 16:18. 2008-11-01 16:18 <DIR> d -------- C: \ WINDOWS \ system32 \ IOSUBSYS
2008-11-01 16:18. 2008-11-01 16:18 <DIR> d -------- C: \ Program Files \ Google
2008-10-28 02:00. 2008-10-28 02:00 <DIR> d -------- C: \ Program Files \ MSXML 4.0
2008-10-28 01:19. 2008-10-28 01:19 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Nokia
2008-10-28 01:19. 2008-10-28 01:19 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Datalayer
2008-10-28 01:18. 2008-10-30 05:43 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Phone Browser
2008-10-28 00:55. 2008-10-28 00:55 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ DivX
2008-10-28 00:54. 2008-10-28 00:54 <DIR> d -------- C: \ Program Files \ Windows Media komponenty
2008-10-28 00:54. 2005-06-10 09:43 73728 - a ------ C: \ WINDOWS \ system32 \ ISUSPM.cpl
2008-10-28 00:50. 2008-10-28 00:50 <DIR> d -------- C: \ Program Files \ DIFX
2008-10-28 00:50. 2008-10-28 00:50 <DIR> d -------- C: \ Program Files \ Common Files \ Nokia
2008-10-28 00:50. 2008-10-28 00:58 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ PC Suite
2008-10-28 00:50. 2008-10-28 00:58 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ PC Suite
2008-10-28 00:50. 2008-10-28 00:50 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Downloaded Zariadenia
2008-10-28 00:50. 2006-05-29 07:26 127.488 - a ------ C: \ WINDOWS \ system32 \ drivers \ nmwcd.sys
2008-10-28 00:50. 2006-05-29 07:26 50.688 - a ------ C: \ WINDOWS \ system32 \ nmwcdcls.dll
2008-10-28 00:50. 2006-05-29 07:26 30.720 - a ------ C: \ WINDOWS \ system32 \ nmwcdcocls.dll
2008-10-28 00:50. 2006-05-29 07:26 13.312 - a ------ C: \ WINDOWS \ system32 \ drivers \ nmwcdcm.sys
2008-10-28 00:50. 2006-05-29 07:26 13.312 - a ------ C: \ WINDOWS \ system32 \ drivers \ nmwcdcj.sys
2008-10-28 00:50. 2006-05-29 07:26 8.704 - a ------ C: \ WINDOWS \ system32 \ drivers \ nmwcdc.sys
2008-10-28 00:50. 2006-05-29 07:26 4.608 - a ------ C: \ WINDOWS \ system32 \ nmwcdlog.dll
2008-10-28 00:49. 2008-10-28 00:49 <DIR> d -------- C: \ WINDOWS \ Downloaded Zariadenia
2008-10-28 00:49. 2008-10-28 00:51 <DIR> d -------- C: \ Program Files \ Nokia
2008-10-28 00:49. 2008-10-28 00:50 <DIR> d -------- C: \ Program Files \ Common Files \ pcsuite
2008-10-27 23:54. 2008-10-27 23:54 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ EPSON
2008-10-27 21:55. 2008-10-27 21:55 <DIR> d -------- C: \ Program Files \ Ventrilo
2008-10-27 21:55. 2008-10-27 21:55 <DIR> d -------- C: \ Program Files \ Common Files \ Wise Sprievodca inštaláciou
2008-10-27 21:55. 2008-10-27 21:56 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Ventrilo
2008-10-27 21:13. 2008-11-06 19:50 160100 - a ------ C: \ WINDOWS \ system32 \ nvapps.xml
2008-10-27 21:05. 2008-11-05 16:09 <DIR> da ------ C: \ Documents and Settings \ All Users \ Data aplikací \ TEMP
2008-10-26 23:48. 2008-11-06 05:29 <DIR> d -------- C: \ Program Files \ easyMule
2008-10-26 13:53. 2008-10-26 13:53 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Vyhliadka
2008-10-25 19:37. 2008-10-25 19:37 <DIR> d -------- C: \ Program Files \ iPod
2008-10-25 19:37. 2008-10-25 19:37 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Apple Computer
2008-10-25 19:37. 2008-04-17 12:12 107.368 - a ------ C: \ WINDOWS \ system32 \ GEARAspi.dll
2008-10-25 19:37. 2008-04-17 12:12 15.464 - a ------ C: \ WINDOWS \ system32 \ drivers \ GEARAspiWDM.sys
2008-10-25 19:36. 2008-10-25 19:36 <DIR> d -------- C: \ Program Files \ QuickTime
2008-10-25 19:36. 2008-10-25 19:37 <DIR> d -------- C: \ Program Files \ iTunes
2008-10-25 19:36. 2008-10-25 19:36 <DIR> d -------- C: \ Program Files \ Bonjour
2008-10-25 19:36. 2008-10-25 19:36 <DIR> d -------- C: \ Program Files \ Apple Software Update
2008-10-25 19:36. 2008-10-25 19:36 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Apple Computer
2008-10-25 19:36. 2008-10-25 19:37 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ () 3276BE95_AF08_429F_A64F_CA64CB79BCF6
2008-10-25 19:35. 2008-10-25 19:36 <DIR> d -------- C: \ Program Files \ Common Files \ Apple
2008-10-25 19:35. 2008-10-25 19:35 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Apple
2008-10-24 18:11. 2007-07-30 18:19 271.224 - a ------ C: \ WINDOWS \ system32 \ mucltui.dll
2008-10-24 18:11. 2007-07-30 18:19 30.072 - a ------ C: \ WINDOWS \ system32 \ mucltui.dll.mui
2008-10-24 15:39. 2008-10-24 15:39 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Blizzard
2008-10-24 14:24. 2008-10-24 14:24 <DIR> d -------- C: \ Program Files \ Real
2008-10-24 14:24. 2008-10-24 14:24 <DIR> d -------- C: \ Program Files \ Common Files \ xing zdieľanej
2008-10-24 14:24. 2008-10-24 14:24 <DIR> d -------- C: \ Program Files \ Common Files \ Real
2008-10-24 14:07. 2008-10-24 14:07 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Logs
2008-10-24 13:59. 2008-10-24 13:59 <DIR> d -------- C: \ Logs
2008-10-24 10:05. 2008-10-27 21:15 <DIR> d -------- C: \ WINDOWS \ nView
2008-10-24 10:05. 2008-01-10 01:30 442368-ra ------ C: \ WINDOWS \ system32 \ nvusmb.exe
2008-10-24 10:05. 2008-03-06 15:23 442368 - a ------ C: \ WINDOWS \ system32 \ NVUNINST.EXE
2008-10-24 10:05. 2008-03-19 04:04 442.368 - a ------ C: \ WINDOWS \ system32 \ nvudisp.exe
2008-10-24 10:05. 2007-09-27 22:32 356.352-ra ------ C: \ WINDOWS \ system32 \ nvusmu.exe
2008-10-24 10:05. 2008-01-03 17:26 17737 - a ------ C: \ WINDOWS \ system32 \ nvdisp.nvu
2008-10-24 10:05. 2007-10-12 03:53 13312-ra ------ C: \ WINDOWS \ system32 \ drivers \ nvsmu.sys
2008-10-24 10:05. 2007-12-07 03:12 5836 - a ------ C: \ WINDOWS \ system32 \ nvnrm.nvu
2008-10-24 10:05. 2008-01-16 17:17 3.948-ra ------ C: \ WINDOWS \ system32 \ drivers \ nvphy.bin
2008-10-24 10:05. 2007-12-07 01:34 2016-ra ------ C: \ WINDOWS \ system32 \ nvsmb.nvu
2008-10-24 10:05. 2007-09-12 01:14 659-ra ------ C: \ WINDOWS \ system32 \ nvsmu.nvu
2008-10-24 10:04. 2008-10-23 22:44 35.647 - a ------ C: \ WINDOWS \ Ascd_log.ini
.
(((((((((((((((((((((((((((((((((((((((( Find3M Správa )))))))) ))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-06 10:37 --------- d ----- wc: \ Program Files \ AIMTunes
2008-11-04 21:36 --------- d ----- wc: \ Program Files \ World of Warcraft
2008-10-28 05:55 --------- d ----- wc: \ Program Files \ Common Files \ Ulead Systems
2008-10-28 05:55 --------- d ----- wc: \ Documents and Settings \ MKJ \ Data aplikací \ Ulead Systems
2008-10-28 05:54 --------- d ----- wc: \ Program Files \ Ulead Systems
2008-10-28 05:54 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ Ulead Systems
2008-10-28 05:53 --------- d - h - wc: \ Program Files \ InstallShield Installation informácie
2008-10-28 05:02 --------- d ----- wc: \ Program Files \ Common Files \ Adobe
2008-10-24 19:24 499.712 ---- aw C: \ WINDOWS \ system32 \ msvcp71.dll
2008-10-24 19:24 348.160 ---- aw C: \ WINDOWS \ system32 \ msvcr71.dll
2008-10-24 14:51 --------- d ----- wc: \ Program Files \ Microsoft frontpage
2008-10-24 07:55 --------- d ----- wc: \ Program Files \ MSN Messenger
2008-10-24 06:09 --------- d ----- wc: \ Program Files \ Microsoft CAPICOM 2.1.0.2
2008-10-24 05:44 --------- d ----- wc: \ Program Files \ Winamp
2008-10-24 05:44 --------- d ----- wc: \ Documents and Settings \ MKJ \ Data aplikací \ Winamp
2008-10-24 05:40 --------- d ----- wc: \ Documents and Settings \ MKJ \ Data aplikací \ acccore
2008-10-24 05:39 --------- d ----- wc: \ Program Files \ AIM6
2008-10-24 05:39 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ AOL stiahnutie
2008-10-24 05:38 --------- d ----- wc: \ Program Files \ Vyhliadka
2008-10-24 05:38 --------- d ----- wc: \ Program Files \ Common Files \ AOL
2008-10-24 05:38 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ Vyhliadka
2008-10-24 05:38 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ AOL OCP
2008-10-24 05:38 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ AOL
2008-10-24 05:38 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ acccore
2008-10-24 05:32 --------- d ----- wc: \ Program Files \ Common Files \ Blizzard Entertainment
2008-10-24 05:20 --------- d ----- wc: \ Program Files \ Windows Media Connect 2
2008-10-24 05:10 --------- d ----- wc: \ Program Files \ DivX
2008-10-24 05:08 --------- d ----- wc: \ Program Files \ DefilerPak
2008-10-24 04:37 --------- d ----- wc: \ Program Files \ Realtek
2008-10-24 04:33 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ Symantec
2008-10-24 04:18 --------- d ----- wc: \ Program Files \ Common Files \ Symantec Shared
2008-10-24 03:58 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ InstallShield
2008-10-24 03:57 --------- d ----- wc: \ Program Files \ Common Files \ InstallShield
2008-10-24 03:54 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ Corel
2008-10-24 03:33 --------- d ----- wc: \ Program Files \ ASUS
2008-10-24 03:08 315.392 ---- aw C: \ WINDOWS \ HideWin.exe
2008-10-24 03:08 --------- d ----- wc: \ Program Files \ profil
2008-10-24 00:18 2.302.017 ---- aw C: \ WINDOWS \ system32 \ GPhotos.scr
2008-09-23 22:46 245.408 ---- aw C: \ WINDOWS \ system32 \ unicows.dll
2008-09-15 12:12 1.846.400 ---- aw C: \ windows \ system32 \ Win32k.sys
2008-09-08 10:41 333824 ---- aw C: \ WINDOWS \ system32 \ drivers \ Srv.sys
2008-08-29 14:18 87.336 ---- aw C: \ WINDOWS \ system32 \ dns-sd.exe
2008-08-29 13:53 61.440 ---- aw C: \ WINDOWS \ system32 \ dnssd.dll
2008-08-26 07:24 826.368 ---- aw C: \ windows \ system32 \ Wininet.dll
2008-08-14 10:09 2.145.280 ---- aw C: \ WINDOWS \ system32 \ ntoskrnl.exe
2008-08-14 09:33 2.023.936 ---- aw C: \ WINDOWS \ system32 \ ntkrnlpa.exe
.
((((((((((((((((((((((((((((((((((((( Reg Načítavam Body )))))))))) ))))))))))))))))))))))))))))))))))))))))
.
.
* Poznámka * prázdné záznamy & dôveryhodne východiskové údaje nie sú zobrazené
REGEDIT4
[HKEY_LOCAL_MACHINE \ ~ \ Browser Helper Objects \ (0A0DDBD3-6641-40B9-873F-BBDD26D6C14E)]
2008-10-23 02:37 147928 - a ------ C: \ Program Files \ easyMule \ Moduly \ IE2EM.dll
[HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ Curr ntVersion \ Run]
"CTFMON.EXE" = "c: \ windows \ system32 \ CTFMON.EXE" [2008-04-13 15360]
"\ \ MING3 \ EPSON Stylus C120 Series "=" c: \ windows \ system32 \ spool \ drivers \ w32x86 \ 3 \ E_FATICCA.EXE "[2007-03-12 182272]
"PcSync" = "C: \ Program Files \ Nokia \ Nokia PC Suite 6 \ PcSync2.exe" [2006-06-27 1449984]
[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Run]
"PHIME2002ASync" = "c: \ windows \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE" [2004-08-04 455168]
"PHIME2002A" = "c: \ windows \ system32 \ IME \ TINTLGNT \ číslo účastníka TSETP.EXE" [2004-08-04 455168]
"Ai Nap" = "c: \ Program Files \ ASUS \ Ai Suite \ AiNap \ AiNap.exe" [2008-01-28 1413120]
"CPU Power Monitor" = "c: \ Program Files \ ASUS \ Ai Suite \ AiGear3 \ CpuPowerMonitor.exe" [2008-01-09 627200]
"CPU Level Up help" = "c: \ Program Files \ ASUS \ Ai Suite \ CpuLevelUpHelp.exe" [2007-11-30 881152]
"ASUS úsporách energie" = "c: \ Program Files \ ASUS \ Ai Suite \ EnergySaving \ PwSave.exe" [2008-01-28 1352704]
"Ulead AutoDetector v2" = "c: \ Program Files \ Common Files \ Ulead Systems \ AutoDetector \ Monitor.exe" [2006-11-29 90112]
"Adobe Reader Speed Launcher" = "c: \ Program Files \ Common Files \ Real \ WINDOWS \ realsched.exe" [2008-10-24 185872]
"QuickTime Úloha" = "C: \ Program Files \ QuickTime \ qttask.exe" [2008-09-06 413696]
"iTunesHelper" = "C: \ Program Files \ iTunes \ iTunesHelper.exe" [2008-10-01 289576]
"NvMediaCenter" = "c: \ windows \ system32 \ NvMcTray.dll" [2008-01-03 13508608]
"RTHDCPL" = "c: \ windows \ system32 \ NvMcTray. Dll" [2008-01-03 86016]
"Adobe Reader Speed Launcher" = "C: \ Program Files \ Adobe \ Reader 8.0 \ Reader \ reader_sl.exe" [2008-01-11 39792]
"NSLauncher" = "C: \ Program Files \ Nokia \ Nokia Software Launcher \ NSLauncher.exe" [2006-11-28 2658304]
"avast!" = "c: \ PROGRA ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp. exe" [2008-07-19 78008]
"SoundMan" = "SOUNDMAN.EXE" [2008-05-07 C: \ WINDOWS \ SOUNDMAN.EXE]
"BluetoothAuthenticationAgent" = "" C "[2008-01-03 C: \ WINDOWS \ system32 \" C]
[HKEY_USERS \. DEFAULT \ Software \ Microsoft \ Windows \ Cur rentVersion \ Run]
"CTFMON.EXE" = "c: \ windows \ system32 \ CTFMON.EXE" [2008-04-13 15360]
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ drivers32]
"msacm.dvacm" = C: \ PROGRA ~ 1 \ Common ~ 1 \ ULEADS ~ 1 \ vio \ Dvacm.acm
"msacm.divxa32" = DivXa32.acm
"msacm.ulmp3acm" = c: \ PROGRA ~ 1 \ COMMON ~ 1 \ ULEADS ~ 1 \ MPEG \ ulmp3acm.acm
"msacm.mpegacm" = c: \ PROGRA ~ 1 \ COMMON ~ 1 \ ULEADS ~ 1 \ MPEG \ mpegacm.acm
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnet3.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnet3 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnet3 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx30SP1setup.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx30SP1setup [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx30SP1setup [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35setup.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35setup [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35setup [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3setup.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3setup [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3setup [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_ia64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_ia64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_ia64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ DotNetFX [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ DotNetFX [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_ia64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_ia64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_ia64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x86.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x86 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x86 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_ia64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_ia64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_ia64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x86.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x86 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x86 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x86.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x86 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x86 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_ia64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_ia64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_ia64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x86.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x86 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x86 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe
[HKLM \ ~ \ services \ sharedaccess \ Parameters \ firewallpo antonny \ standardprofile \ AuthorizedApplications \ List]
"% Windir% \ \ system32 \ \ Sessmgr.exe" =
"% Windir% \ \ Network Diagnostické \ \ xpnetdiag.exe" =
"c: \ \ Program Files \ \ Common Files \ \ AOL \ \ Loader \ \ aolload.exe" =
"c: \ \ Program Files \ \ AIM6 \ \ aim6.exe" =
"c: \ \ Program Files \ \ World of Warcraft \ \ WoW-2.3.0-enUS-downloader.exe" =
"c: \ \ Program Files \ \ MSN Messenger \ \ msnmsgr.exe" =
"c: \ \ Program Files \ \ MSN Messenger \ \ livecall.exe" =
"c: \ \ Program Files \ \ Bonjour \ \ mDNSResponder.exe" =
"c: \ \ Program Files \ \ iTunes \ \ iTunes.exe" =
"c: \ \ Program Files \ \ easyMule \ \ emule.exe" =
[HKLM \ ~ \ services \ sharedaccess \ Parameters \ firewallpo antonny \ standardprofile \ GloballyOpenPorts \ List]
"3724: TCP" = 3724: TCP: Blizzard Downloader: 3724
"12178: TCP" = 12178: TCP: BitComet 12178 TCP
"12178: UDP" = 12178: UDP: BitComet 12178 UDP
R1 aswsp; avast! Self Protection; c: \ windows \ system32 \ drivers \ aswsp.sys [2008-07-19 78416]
R2 aswFsBlk; aswFsBlk, c: \ windows \ system32 \ DRIVERS \ aswF sBlk.sys [2008-07-19 20560]
R2 Vyhliadka Manager Service; Pohľad Manager Service; c: \ Program Files \ Vyhliadka \ Common \ ViewpointService.exe [2007-01-04 24652]
R3 NVHDA; Servis pre NVIDIA High Definition Audio Driver, c: \ windows \ system32 \ drivers \ nvhda32.sys [2008-05-04 38560]
.
Obsah tejto 'Naplánované úlohy' priečinku
2008-11-01 c: \ windows \ Tasks \ AppleSoftwareUpdate.job
- C: \ Program Files \ Apple Software Update \ SoftwareUpdate.exe [2008-07-30 11:34]
2008-11-06 c: \ windows \ Tasks \ At1.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At10.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At11.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At12.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At13.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At14.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At15.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At16.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 C: \ Windows \ Úlohy \ At17.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At18.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At19.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At2.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-07 c: \ windows \ Tasks \ At20.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At21.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At22.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At23.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At24.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At3.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At4.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At5.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At6.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At7.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At8.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
2008-11-06 c: \ windows \ Tasks \ At9.job
- C: \ windows \ system32 \ s1S8Dh6X.exe [2008-11-05 15:38]
.
- - - - SIROTY ZNEŠKODNENIU - - - --
HKCU-Spustiť-Uniblue RegistryBooster 2009 - C: \ Program Files \ Uniblue \ RegistryBooster \ RegistryBooster.exe
MSConfigStartUp-Uniblue RegistryBooster 2009 - c: \ Program Files \ Uniblue \ RegistryBooster \ RegistryBooster.exe

.
------- Doplnkový Scan -------
.
R0 -: HKCU-Main, Start Page = o: Blank
R1 -: HKCU-Internet Settings, ProxyOverride = *. miestnej
O8 -: Add to Google Photos Screens & ver - c: \ windows \ system32 \ GPhotos.scr/200
O8 -: Download by easyMule - c: \ Program Files \ easyMule \ IE2EM.htm
.
************************************************** ************************
catchme 0.3.1367 W2K/XP/Vista - rootkit / stealth malware detektor by Gmer, http://www.gmer.net
Rootkit scan 2008-11-06 19:54:20
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesov ...
skenování skrytých položiek autostart ...
skenování skrytých súborov ...
scan úspešne dokončená
skryté súbory: 0
************************************************** ************************
.
Celkový čas: 2008-11-06 19:54:45
ComboFix-quarantined-files.txt 2008-11-07 00:54:42
Pre-Run: 41621639168 bytes zadarmo
Post-Run: 41699291136 bytes zadarmo
396 --- EOF --- 2008-10-28 07:00:21
  #9  
Old 6 novembra 2008, 18:28
Moderátor skupiny
 
Default Virus: iexplore.exe proces ako systém

Poznámka: nižšie uvedených pokynov boli vytvorené špeciálne pre tohto užívateľa. Ak si nie ste týmto užívateľom DON'T postupujte podľa týchto pokynov, ktoré by mohli poškodiť chod vášho systému

Odstrániť tieto súbory / adresáre, takto:

1. Prejsť na Začať > Plynúť > Typ Notepad.exe a kliknite OK otvorte Poznámkový blok.
To musieť potrebné Poznámkový blok, WordPad nie.
2. Skopírujte text v nižšie kód do kolónky zvýraznenie celý text a stlačením Ctrl + C

Kód:
Killall:: File:: c: \ windows \ system32 \ s1S8Dh6X.exe c: \ windows \ Tasks \ At1.job c: \ windows \ Tasks \ At10.job C: \ WINDOWS \ Tasks \ At11.job C: \ windows \ Tasks \ At12.job C: \ WINDOWS \ Tasks \ At13.job C: \ WINDOWS \ Tasks \ At14.job C: \ WINDOWS \ Tasks \ At15.job C: \ WINDOWS \ Tasks \ At16.job C: \ windows \ Tasks \ At17.job C: \ WINDOWS \ Tasks \ At18.job C: \ WINDOWS \ Tasks \ At19.job C: \ WINDOWS \ Tasks \ At2.job c: \ windows \ Tasks \ At20.job C: \ windows \ Tasks \ At21.job C: \ WINDOWS \ Tasks \ At22.job C: \ WINDOWS \ Tasks \ At23.job C: \ WINDOWS \ Tasks \ At24.job C: \ WINDOWS \ Tasks \ At3.job c: \ windows \ Tasks \ At4.job c: \ windows \ Tasks \ At5.job c: \ windows \ Tasks \ At6.job c: \ windows \ Tasks \ At7.job c: \ windows \ Tasks \ At8.job c: \ windows \ Tasks \ At9.job
3. Choď do okna Poznámkový blok a kliknite Upraviť > Vložiť
4. Potom kliknite na Súbor > Uložiť
5. Názov súboru CFScript.txt - Uložte súbor do počítača
6. Potom presunieme CFScript (držte ľavé tlačidlo myši a zároveň pretiahnutím súboru) a pusť ju (uvoľnite ľavé tlačidlo myši) do ComboFix.exe, ako vidíte na obrázku nižšie. Dôležité upozornenie: Vykoná pokyny pozorne!



ComboFix začne vykonávať, stačí sledovať pokyny.
Po reštarte (v prípade, že požiada o reštart systému), bude produkovať záznam pre vás.
Posta, že log (Combofix.txt) vo svojej budúcej odpoveď.

Poznámka: Don't mouseclick ComboFix okná, ak je v chode. To môže spôsobiť váš systém zmraziť
__________________

  #10  
Old 6 novembra 2008, 18:37
Nový člen skupiny
 
Default Virus: iexplore.exe proces ako systém

ComboFix Prihlásenie

ComboFix 08-11-05.02 - MKJ 2008-11-06 20:31:01.3 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2458 [GMT -5:00]
Running from: c: \ Documents and Settings \ MKJ \ Desktop \ ComboFix.exe
Príkaz používa prepínače:: C: \ Documents and Settings \ MKJ \ Desktop \ CFScript.txt
* Vznik nového bodu obnovenia

FILE::
c: \ windows \ system32 \ s1S8Dh6X.exe
c: \ windows \ Úlohy \ At1.job
c: \ windows \ Úlohy \ At10.job
c: \ windows \ Úlohy \ At11.job
c: \ windows \ Úlohy \ At12.job
c: \ windows \ Úlohy \ At13.job
c: \ windows \ Úlohy \ At14.job
c: \ windows \ Úlohy \ At15.job
c: \ windows \ Úlohy \ At16.job
c: \ windows \ Úlohy \ At17.job
c: \ windows \ Úlohy \ At18.job
c: \ windows \ Úlohy \ At19.job
c: \ windows \ Úlohy \ At2.job
c: \ windows \ Úlohy \ At20.job
c: \ windows \ Úlohy \ At21.job
c: \ windows \ Úlohy \ At22.job
c: \ windows \ Úlohy \ At23.job
c: \ windows \ Úlohy \ At24.job
c: \ windows \ Úlohy \ At3.job
c: \ windows \ Úlohy \ At4.job
c: \ windows \ Úlohy \ At5.job
c: \ windows \ Úlohy \ At6.job
c: \ windows \ Úlohy \ At7.job
c: \ windows \ Úlohy \ At8.job
c: \ windows \ Úlohy \ At9.job
.

((((((((((((((((((((((((((((((((((((((( Ostatné Vymazanie ))))))))) ))))))))))))))))))))))))))))))))))))))))
.

c: \ windows \ system32 \ s1S8Dh6X.exe
c: \ windows \ Úlohy \ At1.job
c: \ windows \ Úlohy \ At10.job
c: \ windows \ Úlohy \ At11.job
c: \ windows \ Úlohy \ At12.job
c: \ windows \ Úlohy \ At13.job
c: \ windows \ Úlohy \ At14.job
c: \ windows \ Úlohy \ At15.job
c: \ windows \ Úlohy \ At16.job
c: \ windows \ Úlohy \ At17.job
c: \ windows \ Úlohy \ At18.job
c: \ windows \ Úlohy \ At19.job
c: \ windows \ Úlohy \ At2.job
c: \ windows \ Úlohy \ At20.job
c: \ windows \ Úlohy \ At21.job
c: \ windows \ Úlohy \ At22.job
c: \ windows \ Úlohy \ At23.job
c: \ windows \ Úlohy \ At24.job
c: \ windows \ Úlohy \ At3.job
c: \ windows \ Úlohy \ At4.job
c: \ windows \ Úlohy \ At5.job
c: \ windows \ Úlohy \ At6.job
c: \ windows \ Úlohy \ At7.job
c: \ windows \ Úlohy \ At8.job
c: \ windows \ Úlohy \ At9.job

.
((((((((((((((((((((((((( Súbory vytvorené od 2008-10-07 do 2008-11-07 ))))))))))) ))))))))))))))))))))
.

2008-11-06 18:15. 2008-11-06 18:15 <DIR> d -------- C: \ Program Files \ CCleaner
2008-11-06 03:51. 2008-11-06 03:51 <DIR> d -------- C: \ Program Files \ Trend Micro
2008-11-06 03:22. 2008-11-06 03:22 <DIR> d -------- C: \ Program Files \ Alwil Software
2008-11-06 02:10. 2008-11-06 02:10 <DIR> d -------- C: \ Program Files \ Reference Zostavy
2008-11-06 02:07. 2008-11-06 02:07 <DIR> dr-h ----- C: \ AHCache
2008-11-05 23:11. 2008-11-06 02:12 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Uniblue
2008-11-05 22:05. 2008-11-05 22:05 <DIR> d -------- C: \ Documents and Settings \ Administrator \ Data aplikací \ Malwarebytes
2008-11-05 22:04. 2008-11-05 22:04 <DIR> d -------- C: \ Documents and Settings \ Administrator
2008-11-05 16:34. 2008-11-05 16:34 <DIR> d -------- C: \ Program Files \ Xanga Uploader
2008-11-05 16:34. 2008-11-05 16:34 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \. Xuploader
2008-11-05 16:08. 2008-11-05 16:08 <DIR> d -------- C: \ Program Files \ Malwarebytes 'Anti-Malware
2008-11-05 16:08. 2008-11-05 16:08 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Malwarebytes
2008-11-05 16:08. 2008-11-05 16:08 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Malwarebytes
2008-11-05 16:08. 2008-10-22 16:10 38.496 - a ------ C: \ WINDOWS \ system32 \ drivers \ mbamswissarmy.sys
2008-11-05 16:08. 2008-10-22 16:10 15.504 - a ------ C: \ WINDOWS \ system32 \ drivers \ mbam.sys
2008-11-01 16:18. 2008-11-01 16:18 <DIR> d -------- C: \ WINDOWS \ system32 \ IOSUBSYS
2008-11-01 16:18. 2008-11-01 16:18 <DIR> d -------- C: \ Program Files \ Google
2008-10-28 02:00. 2008-10-28 02:00 <DIR> d -------- C: \ Program Files \ MSXML 4.0
2008-10-28 01:19. 2008-10-28 01:19 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Nokia
2008-10-28 01:19. 2008-10-28 01:19 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Datalayer
2008-10-28 01:18. 2008-10-30 05:43 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Phone Browser
2008-10-28 00:55. 2008-10-28 00:55 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ DivX
2008-10-28 00:54. 2008-10-28 00:54 <DIR> d -------- C: \ Program Files \ Windows Media komponenty
2008-10-28 00:54. 2005-06-10 09:43 73728 - a ------ C: \ WINDOWS \ system32 \ ISUSPM.cpl
2008-10-28 00:50. 2008-10-28 00:50 <DIR> d -------- C: \ Program Files \ DIFX
2008-10-28 00:50. 2008-10-28 00:50 <DIR> d -------- C: \ Program Files \ Common Files \ Nokia
2008-10-28 00:50. 2008-10-28 00:58 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ PC Suite
2008-10-28 00:50. 2008-10-28 00:58 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ PC Suite
2008-10-28 00:50. 2008-10-28 00:50 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Downloaded Zariadenia
2008-10-28 00:50. 2006-05-29 07:26 127.488 - a ------ C: \ WINDOWS \ system32 \ drivers \ nmwcd.sys
2008-10-28 00:50. 2006-05-29 07:26 50.688 - a ------ C: \ WINDOWS \ system32 \ nmwcdcls.dll
2008-10-28 00:50. 2006-05-29 07:26 30.720 - a ------ C: \ WINDOWS \ system32 \ nmwcdcocls.dll
2008-10-28 00:50. 2006-05-29 07:26 13.312 - a ------ C: \ WINDOWS \ system32 \ drivers \ nmwcdcm.sys
2008-10-28 00:50. 2006-05-29 07:26 13.312 - a ------ C: \ WINDOWS \ system32 \ drivers \ nmwcdcj.sys
2008-10-28 00:50. 2006-05-29 07:26 8.704 - a ------ C: \ WINDOWS \ system32 \ drivers \ nmwcdc.sys
2008-10-28 00:50. 2006-05-29 07:26 4.608 - a ------ C: \ WINDOWS \ system32 \ nmwcdlog.dll
2008-10-28 00:49. 2008-10-28 00:49 <DIR> d -------- C: \ WINDOWS \ Downloaded Zariadenia
2008-10-28 00:49. 2008-10-28 00:51 <DIR> d -------- C: \ Program Files \ Nokia
2008-10-28 00:49. 2008-10-28 00:50 <DIR> d -------- C: \ Program Files \ Common Files \ pcsuite
2008-10-27 23:54. 2008-10-27 23:54 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ EPSON
2008-10-27 21:55. 2008-10-27 21:55 <DIR> d -------- C: \ Program Files \ Ventrilo
2008-10-27 21:55. 2008-10-27 21:55 <DIR> d -------- C: \ Program Files \ Common Files \ Wise Sprievodca inštaláciou
2008-10-27 21:55. 2008-10-27 21:56 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Ventrilo
2008-10-27 21:13. 2008-11-06 20:34 160100 - a ------ C: \ WINDOWS \ system32 \ nvapps.xml
2008-10-27 21:05. 2008-11-05 16:09 <DIR> da ------ C: \ Documents and Settings \ All Users \ Data aplikací \ TEMP
2008-10-26 23:48. 2008-11-06 05:29 <DIR> d -------- C: \ Program Files \ easyMule
2008-10-26 13:53. 2008-10-26 13:53 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Vyhliadka
2008-10-25 19:37. 2008-10-25 19:37 <DIR> d -------- C: \ Program Files \ iPod
2008-10-25 19:37. 2008-10-25 19:37 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Data aplikací \ Apple Computer
2008-10-25 19:37. 2008-04-17 12:12 107.368 - a ------ C: \ WINDOWS \ system32 \ GEARAspi.dll
2008-10-25 19:37. 2008-04-17 12:12 15.464 - a ------ C: \ WINDOWS \ system32 \ drivers \ GEARAspiWDM.sys
2008-10-25 19:36. 2008-10-25 19:36 <DIR> d -------- C: \ Program Files \ QuickTime
2008-10-25 19:36. 2008-10-25 19:37 <DIR> d -------- C: \ Program Files \ iTunes
2008-10-25 19:36. 2008-10-25 19:36 <DIR> d -------- C: \ Program Files \ Bonjour
2008-10-25 19:36. 2008-10-25 19:36 <DIR> d -------- C: \ Program Files \ Apple Software Update
2008-10-25 19:36. 2008-10-25 19:36 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Apple Computer
2008-10-25 19:36. 2008-10-25 19:37 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ () 3276BE95_AF08_429F_A64F_CA64CB79BCF6
2008-10-25 19:35. 2008-10-25 19:36 <DIR> d -------- C: \ Program Files \ Common Files \ Apple
2008-10-25 19:35. 2008-10-25 19:35 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Apple
2008-10-24 18:11. 2007-07-30 18:19 271.224 - a ------ C: \ WINDOWS \ system32 \ mucltui.dll
2008-10-24 18:11. 2007-07-30 18:19 30.072 - a ------ C: \ WINDOWS \ system32 \ mucltui.dll.mui
2008-10-24 15:39. 2008-10-24 15:39 <DIR> d -------- C: \ Documents and Settings \ All Users \ Data aplikací \ Blizzard
2008-10-24 14:24. 2008-10-24 14:24 <DIR> d -------- C: \ Program Files \ Real
2008-10-24 14:24. 2008-10-24 14:24 <DIR> d -------- C: \ Program Files \ Common Files \ xing zdieľanej
2008-10-24 14:24. 2008-10-24 14:24 <DIR> d -------- C: \ Program Files \ Common Files \ Real
2008-10-24 14:07. 2008-10-24 14:07 <DIR> d -------- C: \ Documents and Settings \ MKJ \ Logs
2008-10-24 13:59. 2008-10-24 13:59 <DIR> d -------- C: \ Logs
2008-10-24 10:05. 2008-10-27 21:15 <DIR> d -------- C: \ WINDOWS \ nView
2008-10-24 10:05. 2008-01-10 01:30 442368-ra ------ C: \ WINDOWS \ system32 \ nvusmb.exe
2008-10-24 10:05. 2008-03-06 15:23 442368 - a ------ C: \ WINDOWS \ system32 \ NVUNINST.EXE
2008-10-24 10:05. 2008-03-19 04:04 442.368 - a ------ C: \ WINDOWS \ system32 \ nvudisp.exe
2008-10-24 10:05. 2007-09-27 22:32 356.352-ra ------ C: \ WINDOWS \ system32 \ nvusmu.exe
2008-10-24 10:05. 2008-01-03 17:26 17737 - a ------ C: \ WINDOWS \ system32 \ nvdisp.nvu
2008-10-24 10:05. 2007-10-12 03:53 13312-ra ------ C: \ WINDOWS \ system32 \ drivers \ nvsmu.sys
2008-10-24 10:05. 2007-12-07 03:12 5836 - a ------ C: \ WINDOWS \ system32 \ nvnrm.nvu
2008-10-24 10:05. 2008-01-16 17:17 3.948-ra ------ C: \ WINDOWS \ system32 \ drivers \ nvphy.bin
2008-10-24 10:05. 2007-12-07 01:34 2016-ra ------ C: \ WINDOWS \ system32 \ nvsmb.nvu
2008-10-24 10:05. 2007-09-12 01:14 659-ra ------ C: \ WINDOWS \ system32 \ nvsmu.nvu
2008-10-24 10:04. 2008-10-23 22:44 35.647 - a ------ C: \ WINDOWS \ Ascd_log.ini

.
(((((((((((((((((((((((((((((((((((((((( Find3M Správa )))))))) ))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-06 10:37 --------- d ----- wc: \ Program Files \ AIMTunes
2008-11-04 21:36 --------- d ----- wc: \ Program Files \ World of Warcraft
2008-10-28 05:55 --------- d ----- wc: \ Program Files \ Common Files \ Ulead Systems
2008-10-28 05:55 --------- d ----- wc: \ Documents and Settings \ MKJ \ Data aplikací \ Ulead Systems
2008-10-28 05:54 --------- d ----- wc: \ Program Files \ Ulead Systems
2008-10-28 05:54 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ Ulead Systems
2008-10-28 05:53 --------- d - h - wc: \ Program Files \ InstallShield Installation informácie
2008-10-28 05:02 --------- d ----- wc: \ Program Files \ Common Files \ Adobe
2008-10-24 19:24 499.712 ---- aw C: \ WINDOWS \ system32 \ msvcp71.dll
2008-10-24 19:24 348.160 ---- aw C: \ WINDOWS \ system32 \ msvcr71.dll
2008-10-24 14:51 --------- d ----- wc: \ Program Files \ Microsoft frontpage
2008-10-24 07:55 --------- d ----- wc: \ Program Files \ MSN Messenger
2008-10-24 06:09 --------- d ----- wc: \ Program Files \ Microsoft CAPICOM 2.1.0.2
2008-10-24 05:44 --------- d ----- wc: \ Program Files \ Winamp
2008-10-24 05:44 --------- d ----- wc: \ Documents and Settings \ MKJ \ Data aplikací \ Winamp
2008-10-24 05:40 --------- d ----- wc: \ Documents and Settings \ MKJ \ Data aplikací \ acccore
2008-10-24 05:39 --------- d ----- wc: \ Program Files \ AIM6
2008-10-24 05:39 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ AOL stiahnutie
2008-10-24 05:38 --------- d ----- wc: \ Program Files \ Vyhliadka
2008-10-24 05:38 --------- d ----- wc: \ Program Files \ Common Files \ AOL
2008-10-24 05:38 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ Vyhliadka
2008-10-24 05:38 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ AOL OCP
2008-10-24 05:38 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ AOL
2008-10-24 05:38 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ acccore
2008-10-24 05:32 --------- d ----- wc: \ Program Files \ Common Files \ Blizzard Entertainment
2008-10-24 05:20 --------- d ----- wc: \ Program Files \ Windows Media Connect 2
2008-10-24 05:10 --------- d ----- wc: \ Program Files \ DivX
2008-10-24 05:08 --------- d ----- wc: \ Program Files \ DefilerPak
2008-10-24 04:37 --------- d ----- wc: \ Program Files \ Realtek
2008-10-24 04:33 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ Symantec
2008-10-24 04:18 --------- d ----- wc: \ Program Files \ Common Files \ Symantec Shared
2008-10-24 03:58 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ InstallShield
2008-10-24 03:57 --------- d ----- wc: \ Program Files \ Common Files \ InstallShield
2008-10-24 03:54 --------- d ----- wc: \ Documents and Settings \ All Users \ Data aplikací \ Corel
2008-10-24 03:33 --------- d ----- wc: \ Program Files \ ASUS
2008-10-24 03:08 315.392 ---- aw C: \ WINDOWS \ HideWin.exe
2008-10-24 03:08 --------- d ----- wc: \ Program Files \ profil
2008-10-24 00:18 2.302.017 ---- aw C: \ WINDOWS \ system32 \ GPhotos.scr
2008-09-23 22:46 245.408 ---- aw C: \ WINDOWS \ system32 \ unicows.dll
2008-09-15 12:12 1.846.400 ---- aw C: \ windows \ system32 \ Win32k.sys
2008-09-08 10:41 333824 ---- aw C: \ WINDOWS \ system32 \ drivers \ Srv.sys
2008-08-29 14:18 87.336 ---- aw C: \ WINDOWS \ system32 \ dns-sd.exe
2008-08-29 13:53 61.440 ---- aw C: \ WINDOWS \ system32 \ dnssd.dll
2008-08-26 07:24 826.368 ---- aw C: \ windows \ system32 \ Wininet.dll
2008-08-14 10:09 2.145.280 ---- aw C: \ WINDOWS \ system32 \ ntoskrnl.exe
2008-08-14 09:33 2.023.936 ---- aw C: \ WINDOWS \ system32 \ ntkrnlpa.exe
.

((((((((((((((((((((((((((((( Snapshot@2008-11-06_19.54.31.75 )))))))))) )))))))))))))))))))))))))))))))
.
- 2008-11-06 23:26:54 49.198 ---- aw C: \ WINDOWS \ system32 \ Perfc009.dat
+ 2008-11-07 00:54:48 49198 ---- aw C: \ WINDOWS \ system32 \ Perfc009.dat
- 2008-11-06 23:26:54 390.094 ---- aw C: \ WINDOWS \ system32 \ Perfh009.dat
+ 2008-11-07 00:54:48 390094 ---- aw C: \ WINDOWS \ system32 \ Perfh009.dat
+ 2008-11-07 01:33:47 16384 ---- ATW C: \ WINDOWS \ Temp \ Perflib_Perfdata_584.dat
.
((((((((((((((((((((((((((((((((((((( Reg Načítavam Body )))))))))) ))))))))))))))))))))))))))))))))))))))))
.
.
* Poznámka * prázdné záznamy & dôveryhodne východiskové údaje nie sú zobrazené
REGEDIT4

[HKEY_LOCAL_MACHINE \ ~ \ Browser Helper Objects \ (0A0DDBD3-6641-40B9-873F-BBDD26D6C14E)]
2008-10-23 02:37 147928 - a ------ C: \ Program Files \ easyMule \ Moduly \ IE2EM.dll

[HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ Curr ntVersion \ Run]
"CTFMON.EXE" = "c: \ windows \ system32 \ CTFMON.EXE" [2008-04-13 15360]
"\ \ MING3 \ EPSON Stylus C120 Series "=" c: \ windows \ system32 \ spool \ drivers \ w32x86 \ 3 \ E_FATICCA.EXE "[2007-03-12 182272]
"PcSync" = "C: \ Program Files \ Nokia \ Nokia PC Suite 6 \ PcSync2.exe" [2006-06-27 1449984]

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Run]
"PHIME2002ASync" = "c: \ windows \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE" [2004-08-04 455168]
"PHIME2002A" = "c: \ windows \ system32 \ IME \ TINTLGNT \ číslo účastníka TSETP.EXE" [2004-08-04 455168]
"Ai Nap" = "c: \ Program Files \ ASUS \ Ai Suite \ AiNap \ AiNap.exe" [2008-01-28 1413120]
"CPU Power Monitor" = "c: \ Program Files \ ASUS \ Ai Suite \ AiGear3 \ CpuPowerMonitor.exe" [2008-01-09 627200]
"CPU Level Up help" = "c: \ Program Files \ ASUS \ Ai Suite \ CpuLevelUpHelp.exe" [2007-11-30 881152]
"ASUS úsporách energie" = "c: \ Program Files \ ASUS \ Ai Suite \ EnergySaving \ PwSave.exe" [2008-01-28 1352704]
"Ulead AutoDetector v2" = "c: \ Program Files \ Common Files \ Ulead Systems \ AutoDetector \ Monitor.exe" [2006-11-29 90112]
"Adobe Reader Speed Launcher" = "c: \ Program Files \ Common Files \ Real \ WINDOWS \ realsched.exe" [2008-10-24 185872]
"QuickTime Úloha" = "C: \ Program Files \ QuickTime \ qttask.exe" [2008-09-06 413696]
"iTunesHelper" = "C: \ Program Files \ iTunes \ iTunesHelper.exe" [2008-10-01 289576]
"NvMediaCenter" = "c: \ windows \ system32 \ NvMcTray.dll" [2008-01-03 13508608]
"RTHDCPL" = "c: \ windows \ system32 \ NvMcTray. Dll" [2008-01-03 86016]
"Adobe Reader Speed Launcher" = "C: \ Program Files \ Adobe \ Reader 8.0 \ Reader \ reader_sl.exe" [2008-01-11 39792]
"NSLauncher" = "C: \ Program Files \ Nokia \ Nokia Software Launcher \ NSLauncher.exe" [2006-11-28 2658304]
"SoundMan" = "SOUNDMAN.EXE" [2008-05-07 C: \ WINDOWS \ SOUNDMAN.EXE]
"BluetoothAuthenticationAgent" = "" C "[2008-01-03 C: \ WINDOWS \ system32 \" C]

[HKEY_USERS \. DEFAULT \ Software \ Microsoft \ Windows \ Cur rentVersion \ Run]
"CTFMON.EXE" = "c: \ windows \ system32 \ CTFMON.EXE" [2008-04-13 15360]

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ drivers32]
"msacm.dvacm" = C: \ PROGRA ~ 1 \ Common ~ 1 \ ULEADS ~ 1 \ vio \ Dvacm.acm
"msacm.divxa32" = DivXa32.acm
"msacm.ulmp3acm" = c: \ PROGRA ~ 1 \ COMMON ~ 1 \ ULEADS ~ 1 \ MPEG \ ulmp3acm.acm
"msacm.mpegacm" = c: \ PROGRA ~ 1 \ COMMON ~ 1 \ ULEADS ~ 1 \ MPEG \ mpegacm.acm

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnet3.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnet3 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnet3 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx30SP1setup.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx30SP1setup [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx30SP1setup [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35setup.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35setup [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35setup [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx35 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3setup.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3setup [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3setup [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_ia64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_ia64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_ia64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ dotnetfx3_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ DotNetFX [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ DotNetFX [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_ia64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_ia64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_ia64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x86.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x86 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP1_x86 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_ia64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_ia64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_ia64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x86.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x86 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx20SP2_x86 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x86.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x86 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx30SP1_x86 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_ia64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_ia64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_ia64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x86.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x86 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx35_x86 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx64.exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx64 [1]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ súbor s obrázkom vykonanie voľby \ NetFx64 [2]. Exe]
"Debugger" = c: \ windows \ Microsoft.NET \ Framework \ v2.0, 50727 \ DotNetFxInstallBlock.exe

[HKLM \ ~ \ services \ sharedaccess \ Parameters \ firewallpo antonny \ standardprofile \ AuthorizedApplications \ List]
"% Windir% \ \ system32 \ \ Sessmgr.exe" =
"% Windir% \ \ Network Diagnostické \ \ xpnetdiag.exe" =
"c: \ \ Program Files \ \ Common Files \ \ AOL \ \ Loader \ \ aolload.exe" =
"c: \ \ Program Files \ \ AIM6 \ \ aim6.exe" =
"c: \ \ Program Files \ \ World of Warcraft \ \ WoW-2.3.0-enUS-downloader.exe" =
"c: \ \ Program Files \ \ MSN Messenger \ \ msnmsgr.exe" =
"c: \ \ Program Files \ \ MSN Messenger \ \ livecall.exe" =
"c: \ \ Program Files \ \ Bonjour \ \ mDNSResponder.exe" =
"c: \ \ Program Files \ \ iTunes \ \ iTunes.exe" =
"c: \ \ Program Files \ \ easyMule \ \ emule.exe" =

[HKLM \ ~ \ services \ sharedaccess \ Parameters \ firewallpo antonny \ standardprofile \ GloballyOpenPorts \ List]
"3724: TCP" = 3724: TCP: Blizzard Downloader: 3724
"12178: TCP" = 12178: TCP: BitComet 12178 TCP
"12178: UDP" = 12178: UDP: BitComet 12178 UDP

R1 aswsp; avast! Self Protection; c: \ windows \ system32 \ drivers \ aswsp.sys [2008-07-19 78416]
R2 aswFsBlk; aswFsBlk, c: \ windows \ system32 \ DRIVERS \ aswF sBlk.sys [2008-07-19 20560]
R2 Vyhliadka Manager Service; Pohľad Manager Service; c: \ Program Files \ Vyhliadka \ Common \ ViewpointService.exe [2007-01-04 24652]
R3 NVHDA; Servis pre NVIDIA High Definition Audio Driver, c: \ windows \ system32 \ drivers \ nvhda32.sys [2008-05-04 38560]
.
Obsah tejto 'Naplánované úlohy' priečinku

2008-11-01 c: \ windows \ Tasks \ AppleSoftwareUpdate.job
- C: \ Program Files \ Apple Software Update \ SoftwareUpdate.exe [2008-07-30 11:34]
.

************************************************** ************************
catchme 0.3.1367 W2K/XP/Vista - rootkit / stealth malware detektor by Gmer, http://www.gmer.net
Rootkit scan 2008-11-06 20:34:11
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesov ...
skenování skrytých položiek autostart ...
skenování skrytých súborov ...
scan úspešne dokončená
skryté súbory: 0

************************************************** ************************
.
------------------------ Iné spustených procesov ----------------------- --
.
C: \ Program Files \ Alwil Software \ Avast4 \ aswUpdSv.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashServ.exe
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ Program Files \ Bonjour \ mDNSResponder.exe
c: \ windows \ system32 \ nvsvc32.exe
c: \ windows \ system32 \ PSIService.exe
c: \ Program Files \ ASUS \ AASP \ 1.00.61 \ aaCenter.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashMaiSv.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashWebSv.exe
c: \ windows \ system32 \ rundll32.exe
C: \ Program Files \ iPod \ bin \ iPodService.exe
C: \ Program Files \ Common Files \ pcsuite \ Services \ ServiceLayer.exe
c: \ PROGRA ~ 1 \ Common ~ 1 \ Nokia \ MPAPI \ MPAPI3s.exe
.
************************************************** ************************
.
Celkový čas: 2008-11-06 20:36:06 - počítač bol reštartuje
ComboFix-quarantined-files.txt 2008-11-07 01:36:02
ComboFix2.txt 2008-11-07 00:54:46

Pre-Run: 41668276224 bytes zadarmo
Post-Run: 41678303232 bytes zadarmo

418 --- EOF --- 2008-10-28 07:00:21

Vďaka
Reply

Register

Záložky

Podobné témy
Nitka Thread Odľahčenú Fórum Odpovede Posledný príspevok
Systém Idle procesu menší alebo rovný 99 cpu sgonzalez90 Operačné systémy Windows 4 6. Apríl 2009 14:50
Systém voľnobehu procesu - Správca úloh systému Windows pest79456 Operačné systémy Windows 3 8. februára 2009 09:20
Kliknutím na tlačidlo, pípanie a skryté iexplore.exe proces adhoc Virus, spyware a bezpečnosť 5 7. október 2008 18:44
IEXPLORE.EXE systému vírus? HijackThis log, obráťte sa na ňu pozrieť. samDd Virus, spyware a bezpečnosť 4 29. September 2008 17:13
Problémy s okien a iexplore spustenie procesu 1carly1 Virus, spyware a bezpečnosť 3 15. február 2008 10:36
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright © 2006 - 2009 Počítačová Juice.

Powered by vBulletin ® Copyright © 2000 - 2009 Jelsoft Enterprises Ltd SEO by vBSEO © 2009, Crawlability, Inc