ComboFix 08-08-26.02 - Spokomaro 2008-08-27 0:41:16.1 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.1.1033.18.1498 [GMT 1:00]
Running from: C:\Documents and Settings\Spokomaro\Local Settings\Application Data\Opera\Opera\profile\cache4\temporary_download\ComboFix.exe
* Created a new restore point
* Resident AV is active
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Spokomaro\Local Settings\Application Data\ijxqdnkrl.dat
C:\Documents and Settings\Spokomaro\Local Settings\Application Data\ijxqdnkrl_nav.dat
C:\Documents and Settings\Spokomaro\Local Settings\Application Data\ijxqdnkrl_navfx.dat
C:\Documents and Settings\Spokomaro\Local Settings\Application Data\ijxqdnkrl_navps.dat
C:\Program Files\PCHealthCenter
C:\Program Files\PCHealthCenter\
0.gif
C:\Program Files\PCHealthCenter\2.gif
C:\Program Files\PCHealthCenter\3.gif
C:\Program Files\webmediaplayer
C:\Program Files\webmediaplayer\Privacy Policy.url
C:\Program Files\webmediaplayer\resources\languages_v2.xml
C:\Program Files\webmediaplayer\resources\webmedias
C:\Program Files\webmediaplayer\skins\classic.skn
C:\Program Files\webmediaplayer\sqlite3.dll
C:\Program Files\webmediaplayer\Terms and conditions.url
C:\WINDOWS\evgratsm.dll
C:\WINDOWS\kvxqmtre.dll
C:\WINDOWS\system32\4_exception.nls
C:\WINDOWS\system32\a.bat
C:\WINDOWS\system32\Cache
C:\WINDOWS\system32\cgcfuhnl.ini
C:\WINDOWS\system32\dqpsfrbh.ini
C:\WINDOWS\system32\hobcayus.ini
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\nvs2.inf
C:\WINDOWS\system32\sttsCJjl.ini
C:\WINDOWS\system32\sttsCJjl.ini2
C:\WINDOWS\system32\uuCLonnn.ini
C:\WINDOWS\system32\uuCLonnn.ini2
C:\WINDOWS\system32\xeulqult.ini
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_runtime
((((((((((((((((((((((((( Files Created from 2008-07-27 to 2008-08-27 )))))))))))))))))))))))))))))))
.
2008-08-16 17:11 . 2008-08-16 17:12 <DIR> d-------- C:\Program Files\QuickTime
2008-08-15 01:46 . 2008-08-15 01:46 <DIR> d-------- C:\Program Files\Lavalys
2008-08-14 16:51 . 2008-08-18 17:12 <DIR> d-------- C:\Program Files\SunPoker.com
2008-08-11 15:25 . 2008-08-11 20:16 3,932,214 --a------ C:\WINDOWS\AW_XenoMorph1280.bmp
2008-08-11 15:14 . 2008-08-11 15:14 <DIR> d-------- C:\Program Files\Common Files\Stardock
2008-08-11 15:14 . 2008-08-11 20:26 <DIR> d-------- C:\Program Files\AlienGUIse
2008-08-11 15:14 . 2003-02-26 22:27 36,864 --a------ C:\WINDOWS\system32\wbsys.dll
2008-08-11 15:14 . 2008-08-11 15:14 56 --a------ C:\WINDOWS\wb.ini
2008-08-11 14:08 . 2008-08-11 14:20 <DIR> d-------- C:\Program Files\Yahoo!
2008-08-11 14:08 . 2008-08-11 14:08 <DIR> d-------- C:\Program Files\CCleaner
2008-08-09 12:36 . 2008-08-09 15:42 <DIR> d-------- C:\Program Files\SunPoker.com (GBP)
2008-08-06 01:08 . 2008-08-06 01:08 <DIR> d-------- C:\Program Files\Sun
2008-08-05 13:47 . 2008-08-14 20:24 <DIR> d-------- C:\Program Files\SpeedFan
2008-08-05 13:46 . 2008-08-05 13:47 45 --a------ C:\WINDOWS\system32\initdebug.nfo
2008-08-05 12:49 . 2008-08-11 20:02 <DIR> d-------- C:\Program Files\RivaTuner v2.09
2008-08-02 13:04 . 2004-08-12 13:00 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
2008-08-02 13:04 . 2008-08-02 13:04 23,392 --a------ C:\WINDOWS\system32\nscompat.tlb
2008-08-02 13:04 . 2008-08-02 13:04 16,832 --a------ C:\WINDOWS\system32\amcompat.tlb
2008-07-29 20:50 . 2008-07-31 21:11 <DIR> d-------- C:\Program Files\Free Audio Pack
2008-07-29 16:47 . 2008-07-29 16:47 <DIR> d-------- C:\Documents and Settings\Spokomaro\Application Data\Ubisoft
2008-07-29 16:31 . 2008-07-29 16:31 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Ubisoft
2008-07-29 16:30 . 2007-10-12 15:14 3,734,536 --a------ C:\WINDOWS\system32\d3dx9_36.dll
2008-07-29 16:30 . 2007-10-12 15:14 1,374,232 --a------ C:\WINDOWS\system32\D3DCompiler_36.dll
2008-07-29 16:30 . 2007-10-02 09:56 444,776 --a------ C:\WINDOWS\system32\d3dx10_36.dll
2008-07-29 16:30 . 2007-10-22 03:39 267,272 --a------ C:\WINDOWS\system32\xactengine2_10.dll
2008-07-29 16:30 . 2007-07-20 00:57 267,112 --a------ C:\WINDOWS\system32\xactengine2_9.dll
2008-07-29 16:29 . 2007-07-19 18:14 3,727,720 --a------ C:\WINDOWS\system32\d3dx9_35.dll
2008-07-29 16:29 . 2007-05-16 17:45 3,497,832 --a------ C:\WINDOWS\system32\d3dx9_34.dll
2008-07-29 16:29 . 2007-07-19 18:14 1,358,192 --a------ C:\WINDOWS\system32\D3DCompiler_35.dll
2008-07-29 16:29 . 2007-05-16 17:45 1,124,720 --a------ C:\WINDOWS\system32\D3DCompiler_34.dll
2008-07-29 16:29 . 2007-03-12 17:42 1,123,696 --a------ C:\WINDOWS\system32\D3DCompiler_33.dll
2008-07-29 16:29 . 2007-07-19 18:14 444,776 --a------ C:\WINDOWS\system32\d3dx10_35.dll
2008-07-29 16:29 . 2007-05-16 17:45 443,752 --a------ C:\WINDOWS\system32\d3dx10_34.dll
2008-07-29 16:29 . 2007-03-15 17:57 443,752 --a------ C:\WINDOWS\system32\d3dx10_33.dll
2008-07-29 16:29 . 2007-05-31 20:29 18,280 --a------ C:\WINDOWS\system32\x3daudio1_2.dll
2008-07-29 16:28 . 2007-03-12 17:42 3,495,784 --a------ C:\WINDOWS\system32\d3dx9_33.dll
2008-07-29 16:28 . 2006-11-29 14:06 3,426,072 --a------ C:\WINDOWS\system32\d3dx9_32.dll
2008-07-29 16:28 . 2006-09-28 17:05 2,414,360 --a------ C:\WINDOWS\system32\d3dx9_31.dll
2008-07-29 16:28 . 2007-03-05 13:42 15,128 --a------ C:\WINDOWS\system32\x3daudio1_1.dll
2008-07-29 16:26 . 2005-05-26 16:34 2,297,552 --a------ C:\WINDOWS\system32\d3dx9_26.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-27 00:13 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\nView_Wallpaper
2008-08-24 16:19 --------- d-----w C:\Program Files\Opera
2008-08-24 16:13 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\Ahead
2008-08-23 11:25 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\Skype
2008-08-23 11:18 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\uTorrent
2008-08-23 11:02 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\skypePM
2008-08-22 11:10 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-08-20 18:57 --------- d-----w C:\Program Files\Microsoft Silverlight
2008-08-16 16:13 --------- d-----w C:\Program Files\Apple Software Update
2008-08-11 19:26 7,680 --sha-w C:\Program Files\Thumbs.db
2008-08-11 10:40 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\BearShare
2008-08-06 00:07 --------- d-----w C:\Program Files\Java
2008-08-02 11:56 81,920 ----a-w C:\Documents and Settings\Spokomaro\Application Data\ezpinst.exe
2008-08-02 11:56 47,360 ----a-w C:\Documents and Settings\Spokomaro\Application Data\pcouffin.sys
2008-08-02 11:56 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\Vso
2008-08-02 11:55 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-08-02 11:54 --------- d-----w C:\Program Files\PartyGaming
2008-08-02 11:49 --------- d-----w C:\Program Files\Windows Media Connect 2
2008-08-01 19:56 --------- d-----w C:\Program Files\ICQToolbar
2008-07-29 17:37 --------- d-----w C:\Program Files\Ubisoft
2008-07-25 12:23 35,328 ----a-w C:\WINDOWS\system32\cygz.dll
2008-07-25 12:23 35,328 ----a-w C:\WINDOWS\cygz.dll
2008-07-25 12:23 1,126,281 ----a-w C:\WINDOWS\system32\cygwin1.dll
2008-07-25 12:23 1,126,281 ----a-w C:\WINDOWS\cygwin1.dll
2008-07-25 10:32 --------- d-----w C:\Program Files\palmOne
2008-07-21 20:03 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\AVGTOOLBAR
2008-07-20 20:58 86,016 ----a-w C:\WINDOWS\system32\OpenAL32.dll
2008-07-20 20:58 405,504 ----a-w C:\WINDOWS\system32\wrap_oal.dll
2008-07-20 20:58 --------- d-----w C:\Program Files\Creative
2008-07-20 08:05 102,400 ----a-w C:\WINDOWS\agpqlrfm.exe
2008-07-18 21:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-18 21:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
2008-07-18 21:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-18 21:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
2008-07-18 21:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
2008-07-18 21:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
2008-07-18 21:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
2008-07-18 21:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
2008-07-18 21:07 270,880 ----a-w C:\WINDOWS\system32\mucltui.dll
2008-07-18 21:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll
2008-07-17 12:11 --------- d-----w C:\Program Files\JetAudio
2008-07-16 19:20 --------- d-----w C:\Program Files\Common Files\Adobe
2008-07-16 19:13 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\AdobeUM
2008-07-13 12:58 --------- d-----w C:\Documents and Settings\All Users\Application Data\Ulead Systems
2008-07-13 10:48 --------- d-----w C:\Program Files\Skype
2008-07-13 10:48 --------- d-----w C:\Program Files\Common Files\Skype
2008-07-07 20:32 253,952 ----a-w C:\WINDOWS\system32\es.dll
2008-07-05 00:43 96,520 ----a-w C:\WINDOWS\system32\drivers\avgldx86.sys
2008-07-05 00:43 76,040 ----a-w C:\WINDOWS\system32\drivers\avgtdix.sys
2008-07-05 00:43 10,520 ----a-w C:\WINDOWS\system32\avgrsstx.dll
2008-07-03 15:13 503,808 ----a-w C:\WINDOWS\system32\msvcp71.dll
2008-07-03 15:13 348,160 ----a-w C:\WINDOWS\system32\msvcr71.dll
2008-06-27 14:58 --------- d-----w C:\Program Files\Diablo II
2008-06-27 11:43 --------- d-----w C:\Documents and Settings\Spokomaro\Application Data\Apple Computer
2008-06-24 16:23 74,240 ----a-w C:\WINDOWS\system32\mscms.dll
2008-06-23 15:38 659,456 ----a-w C:\WINDOWS\system32\wininet.dll
2008-06-20 17:41 245,248 ----a-w C:\WINDOWS\system32\mswsock.dll
2008-06-05 16:05 50,688 ----a-w C:\WINDOWS\system32\wbhelp2.dll
2008-04-13 10:33 102,400 ----a-w C:\Documents and Settings\All Users\Application Data\cnohslkn.dll
2008-02-05 23:33 32 ----a-w C:\Documents and Settings\All Users\Application Data\ezsid.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0D522726-4993-133A-CE66-01F94EA66B1C}]
2008-04-13 11:33 102400 --a------ C:\WINDOWS\system32\erdnioam.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-05-16 10:27 153136]
"LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" [2008-03-02 02:17 36864]
"ccleaner"="C:\Program Files\CCleaner\CCleaner.exe" [2008-07-29 14:41 1213680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"="C:\WINDOWS\JM\JMInsIDE.exe" [2006-10-30 13:44 36864]
"JMB36X Configure"="C:\WINDOWS\system32\JMRaidSetup.exe" [2006-10-30 13:44 1953792]
"CTSysVol"="C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-10-31 11:51 57344]
"UpdReg"="C:\WINDOWS\UpdReg.EXE" [2000-05-11 02:00 90112]
"Gainward"="C:\WINDOWS\TBPanel.exe" [2007-03-23 09:32 2173744]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-02-08 03:19 7700480]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-02-08 03:19 86016]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 16:57 153136]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 04:27 144784]
"LogitechCommunicationsManager"="C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe" [2006-06-26 10:46 497200]
"LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam10\QuickCam10.exe" [2006-06-26 11:34 614960]
"LVCOMSX"="C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe" [2006-06-26 11:33 243248]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-07-05 01:43 1232152]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2008-02-03 23:20 29744]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-05-27 10:50 413696]
"P17Helper"="P17.dll" [2006-03-17 16:11 81408 C:\WINDOWS\system32\P17.dll]
"nwiz"="nwiz.exe" [2007-02-08 03:19 1622016 C:\WINDOWS\system32\nwiz.exe]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-12 13:00 110592 C:\WINDOWS\system32\bthprops.cpl]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-12 13:00 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\Currentversion\policies\explorer\Run]
"e1Wr0SZD8s"="C:\WINDOWS\system32\winver.exe" [2004-08-12 13:00 5632]
C:\Documents and Settings\Spokomaro\Start Menu\Programs\Startup\
Alienware Dock.lnk - C:\Program Files\AlienGUIse\AlienwareDock\ObjectDock.exe [2008-08-11 15:14:29 2074360]
palmOne Registration.lnk - C:\Program Files\palmOne\register.exe [2005-02-16 14:34:22 2301952]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2008-04-23 03:38:16 29696]
DataViz Inc Messenger.lnk - C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe [2008-04-01 13:42:28 28672]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 23:34 24576 C:\Program Files\AlienGUIse\fastload.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.ac3filter"= ac3filter.acm
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HotSync Manager.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HotSync Manager.lnk
backup=C:\WINDOWS\pss\HotSync Manager.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Logitech Desktop Messenger.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech Desktop Messenger.lnk
backup=C:\WINDOWS\pss\Logitech Desktop Messenger.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools]
--a------ 2007-04-03 23:29 165784 C:\Program Files\DAEMON Tools\daemon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe"=
"C:\\Program Files\\BearShare Applications\\BearShare\\BearShare.exe"=
"C:\\Program Files\\Nero\\Nero 7\\Nero ShowTime\\ShowTime.exe"=
"C:\\Program Files\\ICQ6 new\\ICQ.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"C:\\Program Files\\SunPoker.com\\UA.exe"=
"C:\\WINDOWS\\system32\\winver.exe"=
"C:\\Program Files\\Diablo II\\Game.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"C:\\Program Files\\Opera\\Opera.exe"=
"C:\\Program Files\\SunPoker.com (GBP)\\UA.exe"=
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"57799:TCP"= 57799:TCP:Pando P2P TCP Listening Port
"57799:UDP"= 57799:UDP:Pando P2P UDP Listening Port
R0 tffsport;M-Systems DiskOnChip 2000;C:\WINDOWS\system32\DRIVERS\tffsport.sys [2004-08-04 00:00]
R1 AvgLdx86;AVG AVI Loader Driver x86;C:\WINDOWS\system32\Drivers\avgldx86.sys [2008-07-05 01:43]
R2 avg8emc;AVG8 E-mail Scanner;C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-07-05 01:43]
R2 avg8wd;AVG8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-07-05 01:43]
R2 AvgTdiX;AVG8 Network Redirector;C:\WINDOWS\system32\Drivers\avgtdix.sys [2008-07-05 01:43]
R3 p17filt;p17filt;C:\WINDOWS\system32\drivers\p17filt.sys [2006-03-20 18:34]
R3 PSched;QoS Packet Scheduler;C:\WINDOWS\system32\DRIVERS\psched.sys [2004-08-12 13:00]
S3 GoogleDesktopManager-010108-205858;Google Desktop Manager 5.7.801.1629;C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-02-03 23:20]
S3 PavSRK.sys;PavSRK.sys;C:\WINDOWS\system32\PavSRK.sys []
S3 PavTPK.sys;PavTPK.sys;C:\WINDOWS\system32\PavTPK.sys []
.
Contents of the 'Scheduled Tasks' folder
2008-08-16 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34]
.
- - - - ORPHANS REMOVED - - - -
HKCU-Run-jamtray - C:/Program Files/Jaman Player/jamtray.exe
HKLM-Run-CTXFIREG - CTxfiReg.exe
Notify-awtTLDTN - awtTLDTN.dll
Notify-mlJDwUNf - mlJDwUNf.dll
.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\Spokomaro\Application Data\Mozilla\Firefox\Profiles\tca2ddai.default\
FireFox -: prefs.js - STARTUP.HOMEPAGE -
hxxp://www.centrum.sk/
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-08-27 01:12:33
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
PROCESS: C:\WINDOWS\explorer.exe
-> C:\Program Files\AlienGUIse\AlienwareDock\DockShellHookOEM.dll
-> C:\WINDOWS\system32\nview.dll
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcSrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\WINDOWS\system32\CTSVCCDA.EXE
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\snmp.exe
C:\Program Files\AVG\AVG8\avgrsx.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Logitech\QuickCam10\COCIManager.exe
C:\WINDOWS\system32\taskmgr.exe
.
**************************************************************************
.
Completion time: 2008-08-27 1:16:20 - machine was rebooted
ComboFix-quarantined-files.txt 2008-08-27 00:16:13
Pre-Run: 17,977,679,872 bytes free
Post-Run: 13 adres rov, 18,061,164,544 vo–něch bajtov
293 --- E O F --- 2008-08-22 11:10:26