log z combofix:
ComboFix 10-03-19.08 - Ondrej 20.03.2010 19:22:45.3.2 - x86
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.3037.1960 [GMT 1:00]
Spuštěný z: c:\users\Ondrej\Downloads\ComboFix.exe
Použité ovládací přepínače :: c:\users\Ondrej\Desktop\CFScript.txt
SP: Spybot - Search and Destroy *disabled* (Outdated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_funfrm
((((((((((((((((((((((((( Soubory vytvořené od 2010-02-20 do 2010-03-20 )))))))))))))))))))))))))))))))
.
2010-03-20 18:27 . 2010-03-20 18:27 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-03-20 18:27 . 2010-03-20 18:27 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-03-20 18:05 . 2010-03-20 18:05 -------- d-----w- C:\Device
2010-03-20 15:35 . 2010-03-20 18:27 -------- d-----w- c:\users\Ondrej\AppData\Local\temp
2010-03-20 14:04 . 2010-03-20 14:04 -------- d-----w- c:\program files\Lavalys
2010-03-20 10:53 . 2010-03-20 10:53 -------- d-----w- c:\program files\Hot CPU Tester Pro 4 LE
2010-03-20 10:52 . 2010-03-20 10:52 -------- d-----w- c:\users\Ondrej\AppData\Roaming\Malwarebytes
2010-03-20 10:52 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-03-20 10:52 . 2010-03-20 10:52 -------- d-----w- c:\programdata\Malwarebytes
2010-03-20 10:52 . 2010-03-20 10:52 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-03-20 10:52 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-03-20 10:35 . 2009-03-27 00:16 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2010-03-20 10:35 . 2010-03-20 10:35 -------- d-----w- c:\program files\CPUID
2010-03-20 09:38 . 2010-03-20 09:38 -------- d-----w- c:\program files\Trend Micro
2010-03-19 20:25 . 2010-03-19 20:25 -------- d-----w- c:\program files\AML Products
2010-03-19 20:25 . 2002-01-05 10:37 344064 ----a-w- c:\windows\system32\msvcr70.dll
2010-03-19 20:25 . 2002-01-05 05:48 974848 ----a-w- c:\windows\system32\mfc70.dll
2010-03-19 20:25 . 2002-01-05 04:40 487424 ----a-w- c:\windows\system32\msvcp70.dll
2010-03-19 20:19 . 2010-03-19 20:19 -------- d-----w- c:\users\Ondrej\AppData\Roaming\Uniblue
2010-03-19 11:39 . 2010-03-19 11:39 -------- d-----w- c:\users\Ondrej\AppData\Local\Activision
2010-03-18 17:02 . 2010-03-18 17:02 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-03-18 17:02 . 2010-03-18 17:02 95024 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\Drivers\SBREDrv.sys
2010-03-18 17:02 . 2010-03-18 17:02 598368 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\EmailScanner.dll
2010-03-18 17:02 . 2010-03-18 17:02 566608 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\sbap.dll
2010-03-18 17:02 . 2010-03-18 17:02 221920 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\VipreBridge.dll
2010-03-18 17:02 . 2010-03-18 17:02 1230160 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\SBTE.dll
2010-03-18 17:02 . 2010-03-18 17:02 247120 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\SBRE.dll
2010-03-18 17:02 . 2010-03-18 17:02 17480 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\EmailScannerBridge.dll
2010-03-18 17:01 . 2010-03-18 17:01 -------- dc-h--w- c:\programdata\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
2010-03-18 17:01 . 2010-02-04 15:53 2954656 -c--a-w- c:\programdata\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}\Ad-AwareInstaller.exe
2010-03-18 16:39 . 2010-03-18 16:42 -------- d-----w- c:\program files\NirSoft
2010-03-14 21:58 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2010-02-24 16:51 . 2009-12-13 09:30 641536 ----a-w- c:\windows\system32\CPFilters.dll
2010-02-24 16:51 . 2009-12-13 09:30 465408 ----a-w- c:\windows\system32\psisdecd.dll
2010-02-24 16:51 . 2009-12-13 09:29 417792 ----a-w- c:\windows\system32\msdri.dll
2010-02-24 16:51 . 2010-02-02 07:45 2048 ----a-w- c:\windows\system32\tzres.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-20 18:09 . 2009-11-22 22:41 -------- d-----w- c:\users\Ondrej\AppData\Roaming\Hamachi
2010-03-20 18:09 . 2009-10-04 03:17 -------- d-----w- c:\programdata\VeriFace
2010-03-20 17:49 . 2009-11-18 17:38 -------- d-----w- c:\users\Ondrej\AppData\Roaming\Skype
2010-03-20 15:09 . 2009-11-18 17:39 -------- d-----w- c:\users\Ondrej\AppData\Roaming\skypePM
2010-03-20 13:00 . 2009-11-18 17:22 -------- d-----w- c:\users\Ondrej\AppData\Roaming\ICQ
2010-03-20 12:13 . 2009-11-19 10:49 1 ----a-w- c:\users\Ondrej\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-03-20 09:48 . 2009-11-18 17:18 112536 ----a-w- c:\users\Ondrej\AppData\Local\GDIPFONTCACHEV1.DAT
2010-03-19 11:33 . 2009-09-17 18:43 678062 ----a-w- c:\windows\system32\perfh005.dat
2010-03-19 11:33 . 2009-09-17 18:43 141284 ----a-w- c:\windows\system32\perfc005.dat
2010-03-18 17:03 . 2010-02-02 20:04 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2010-03-18 17:01 . 2009-12-29 10:51 -------- d-----w- c:\program files\Lavasoft
2010-03-17 12:10 . 2010-01-04 12:46 -------- d-----w- c:\users\Ondrej\AppData\Roaming\vlc
2010-03-12 06:26 . 2010-03-12 06:26 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2010-03-03 13:12 . 2010-01-26 17:50 -------- d-----w- c:\users\Ondrej\AppData\Roaming\dvdcss
2010-03-01 16:58 . 2010-01-21 20:00 3803208 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\AutoLaunch.exe
2010-02-24 09:16 . 2009-12-02 14:14 181632 ------w- c:\windows\system32\MpSigStub.exe
2010-02-04 15:53 . 2009-12-29 10:54 64288 ----a-w- c:\windows\system32\drivers\Lbd.sys
2010-02-02 20:13 . 2009-10-04 03:23 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-02 20:12 . 2009-09-17 10:57 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-02 20:01 . 2010-02-02 20:01 -------- d-----w- c:\programdata\Blizzard
2010-01-27 15:22 . 2009-12-29 10:54 8 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\Savapibridge.dll
2010-01-26 19:44 . 2009-09-17 11:21 -------- d-----w- c:\program files\Common Files\Adobe
2010-01-23 10:21 . 2010-01-23 10:21 -------- d-----w- c:\program files\Digital Guitar Tuner 2.3
2010-01-18 23:29 . 2010-02-10 16:37 85504 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2010-01-18 23:29 . 2010-02-10 16:37 85504 ----a-w- c:\windows\system32\secproc_ssp.dll
2010-01-18 23:29 . 2010-02-10 16:37 365568 ----a-w- c:\windows\system32\secproc_isv.dll
2010-01-18 23:29 . 2010-02-10 16:37 369152 ----a-w- c:\windows\system32\secproc.dll
2010-01-18 23:28 . 2010-02-10 16:37 324608 ----a-w- c:\windows\system32\RMActivate_isv.exe
2010-01-18 23:28 . 2010-02-10 16:37 277504 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2010-01-18 23:28 . 2010-02-10 16:37 320512 ----a-w- c:\windows\system32\RMActivate.exe
2010-01-18 23:28 . 2010-02-10 16:37 280064 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2010-01-15 18:56 . 2010-01-15 18:53 56247 ----a-w- c:\windows\DIIUnin.dat
2010-01-15 18:53 . 2010-01-15 18:53 94208 ----a-w- c:\windows\DIIUnin.exe
2010-01-15 18:53 . 2010-01-15 18:53 2829 ----a-w- c:\windows\DIIUnin.pif
2010-01-08 03:18 . 2010-02-10 16:37 221184 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2010-01-08 03:17 . 2010-02-10 16:37 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2009-12-29 18:19 . 2009-12-29 18:19 0 ----a-w- c:\windows\PowerReg.dat
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.
((((((((((((((((((((((((((((( SnapShot@2010-03-20_15.30.51 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-09-17 11:22 . 2010-03-20 17:53 39484 c:\windows\System32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 04:55 . 2010-03-20 18:11 50670 c:\windows\System32\wdi\BootPerformanceDiagnostics_SystemData.bin
- 2009-11-19 00:58 . 2010-03-20 15:23 32768 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-11-19 00:58 . 2010-03-20 18:09 32768 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-19 00:58 . 2010-03-20 15:23 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-19 00:58 . 2010-03-20 18:09 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:41 . 2010-03-20 18:09 16384 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:41 . 2010-03-20 15:23 16384 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-11-18 18:06 . 2010-03-20 18:09 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-18 18:06 . 2010-03-20 15:23 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-18 18:06 . 2010-03-20 15:23 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-18 18:06 . 2010-03-20 18:09 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-11-18 18:06 . 2010-03-20 15:23 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-11-18 18:06 . 2010-03-20 18:09 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-11-18 18:06 . 2010-03-20 18:09 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-11-18 18:06 . 2010-03-20 15:23 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-11-18 20:09 . 2010-03-20 18:19 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\Temporary Internet Files\Content.IE5\index.dat
- 2009-11-18 20:09 . 2010-03-20 15:10 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-18 20:09 . 2010-03-20 18:19 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\History\History.IE5\index.dat
- 2009-11-18 20:09 . 2010-03-20 15:10 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\History\History.IE5\index.dat
- 2009-11-18 20:09 . 2010-03-20 15:10 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\Cookies\index.dat
+ 2009-11-18 20:09 . 2010-03-20 18:19 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\Cookies\index.dat
- 2009-11-18 18:06 . 2010-03-20 15:23 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-18 18:06 . 2010-03-20 18:19 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-11-18 18:06 . 2010-03-20 18:09 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-11-18 18:06 . 2010-03-20 15:23 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-11-19 09:49 . 2010-03-20 18:07 8810 c:\windows\System32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1394488370-2761891138-1313534471-1004_UserData.bin
- 2009-11-19 09:49 . 2010-03-20 11:49 8810 c:\windows\System32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1394488370-2761891138-1313534471-1004_UserData.bin
+ 2009-11-18 17:01 . 2010-03-20 15:42 9560 c:\windows\System32\NetworkList\Icons\{ACBF3842-5D5B-411D-AB5D-66E830A99D11}_48.bin
- 2009-11-18 17:01 . 2009-11-22 23:15 9560 c:\windows\System32\NetworkList\Icons\{ACBF3842-5D5B-411D-AB5D-66E830A99D11}_48.bin
- 2009-11-18 17:01 . 2009-11-22 23:15 4280 c:\windows\System32\NetworkList\Icons\{ACBF3842-5D5B-411D-AB5D-66E830A99D11}_32.bin
+ 2009-11-18 17:01 . 2010-03-20 15:42 4280 c:\windows\System32\NetworkList\Icons\{ACBF3842-5D5B-411D-AB5D-66E830A99D11}_32.bin
- 2009-11-18 17:01 . 2009-11-22 23:15 2456 c:\windows\System32\NetworkList\Icons\{ACBF3842-5D5B-411D-AB5D-66E830A99D11}_24.bin
+ 2009-11-18 17:01 . 2010-03-20 15:42 2456 c:\windows\System32\NetworkList\Icons\{ACBF3842-5D5B-411D-AB5D-66E830A99D11}_24.bin
- 2010-03-20 15:22 . 2010-03-20 15:22 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-03-20 17:51 . 2010-03-20 18:09 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-03-20 17:51 . 2010-03-20 18:09 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2010-03-20 15:22 . 2010-03-20 15:22 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2009-09-17 11:07 . 2010-03-20 11:55 245760 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
+ 2009-09-17 11:07 . 2010-03-20 15:56 245760 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2009-07-14 02:03 . 2010-03-20 11:58 6815744 c:\windows\System32\SMI\Store\Machine\SCHEMA.DAT
+ 2009-07-14 02:03 . 2010-03-20 18:22 6815744 c:\windows\System32\SMI\Store\Machine\SCHEMA.DAT
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\VeriFace Enc]
@="{771C7324-DA80-49D3-8017-753B0AF60951}"
[HKEY_CLASSES_ROOT\CLSID\{771C7324-DA80-49D3-8017-753B0AF60951}]
2009-10-04 03:17 1410312 ----a-w- c:\windows\System32\IcnOvrly.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-01-26 2144088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-06-04 186904]
"Apoint"="c:\program files\Apoint2K\Apoint.exe" [2008-03-26 163840]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-07-27 13797920]
"VeriFaceManager"="c:\program files\Lenovo\VeriFace\PManage.exe" [2009-10-04 3122440]
"EnergyUtility"="c:\program files\Lenovo\Energy Management\utility.exe" [2009-07-15 4081480]
"Energy Management"="c:\program files\Lenovo\Energy Management\Energy Management.exe" [2009-06-25 5064520]
"avast!"="c:\program files\Alwil Software\Avast4\ashDisp.exe" [2009-11-24 81000]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
c:\users\Ondrej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2009-11-23 624416]
OpenOffice.org 3.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-5-15 384512]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer5"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
R3 Bridge0;Bridge0;c:\windows\system32\drivers\WDBridge.sys [2009-07-28 63240]
R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [2009-07-13 229888]
R3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc;c:\program files\Lenovo\ReadyComm\AppSvc.exe [2009-07-28 414984]
R3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc;c:\program files\Lenovo\ReadyComm\ConnSvc.exe [2009-07-28 472328]
R3 PS_MDP;ReadyComm Presentation Space Helper Service;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys [2009-07-30 171520]
R3 RtsUIR;Realtek IR Driver;c:\windows\system32\DRIVERS\Rts516xIR.sys [x]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [2010-02-04 64288]
S1 aswSP;avast! Self Protection; [x]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2009-11-24 20560]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\DRIVERS\aswMonFlt.sys [2009-11-24 53328]
S2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [2009-10-29 1074568]
S2 IGRS;IGRS;c:\program files\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [2010-03-18 1263728]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter;c:\windows\System32\IgrsSvcs.exe [2009-07-14 20992]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [2009-05-19 21520]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netw5v32.sys [2009-05-14 4231680]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32v.sys [2009-06-26 66080]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS FontCache fdrespub AppIDSvc QWAVE wcncsvc SensrSvc Mcx2Svc
IgrsSvcs REG_MULTI_SZ ReadyComm.DirectRouter PS_MDP
.
Obsah adresáře 'Naplánované úlohy'
2010-03-20 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2010-02-04 17:02]
2010-03-20 c:\windows\Tasks\Check Updates for Windows Live Toolbar.job
- c:\program files\Windows Live Toolbar\MSNTBUP.EXE [2007-02-12 15:54]
.
.
------- Doplňkový sken -------
.
mStart Page =
hxxp://lenovo.live.com/IE: &Windows Live Search - c:\program files\Windows Live Toolbar\msntb.dll/search.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie.htm
FF - ProfilePath - c:\users\Ondrej\AppData\Roaming\Mozilla\Firefox\Profiles\e79de8ws.default\
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npfiller.dll
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'Explorer.exe'(5892)
c:\windows\system32\IcnOvrly.dll
.
Celkový čas: 2010-03-20 19:33:18
ComboFix-quarantined-files.txt 2010-03-20 18:33
ComboFix2.txt 2010-03-20 15:35
Před spuštěním: Volných bajtů: 136 266 461 184
Po spuštění: Volných bajtů: 136 212 213 760
- - End Of File - - 39F128490B4CA285260012174EB13290