Toto mi pomohlo odstrániť tu kurzívu, ďakuejm.
Kód:
reg add HKLM\SYSTEM\GDI\SYSFNT /t reg_dword /v It /d 0
Ale Centrum zabezpečenia stále nefunguje tak ako má. Myslím tým ten antivírus a bránu Firewall.
Tu máš log robil som ti prvýkrát, dúfam, že dobre.
EDIT: Nemohlo mi to nejak pohnojiť PC? Teraz sa mi nezobrazuje web ako má, na istom webe sa mi nezobrazujú avatary a nezobrazuje sa mi ani záhlavie istého fóra.
--------------------------------------------------------------------------------------------------------------------------------------------------------------
ComboFix 08-05-01.3 - Ščko 2008-05-07 15:07:26.1 - NTFSx86
Running from: C:\Documents and Settings\Ščko\Plocha\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((( Files Created from 2008-04-07 to 2008-05-07 )))))))))))))))))))))))))))))))
.
2008-05-04 15:02 . 2008-05-04 15:02 <DIR> d-------- C:\Program Files\Ubisoft
2008-05-04 15:02 . 2003-10-27 14:06 89,360 --a------ C:\WINDOWS\system32\VB5DB.DLL
2008-05-04 15:02 . 2003-10-27 14:06 69,632 --a------ C:\WINDOWS\system32\xmltok.dll
2008-05-04 15:02 . 2003-10-27 14:06 36,864 --a------ C:\WINDOWS\system32\xmlparse.dll
2008-05-04 15:02 . 2003-10-27 14:06 35,840 --a------ C:\WINDOWS\system32\comdlg32.oca
2008-05-04 15:02 . 2003-10-27 14:06 29,184 --a------ C:\WINDOWS\system32\MSINET.oca
2008-05-04 15:02 . 2003-10-27 14:06 26,096 --a------ C:\WINDOWS\system32\xmlinst.exe
2008-05-04 15:02 . 2003-10-27 14:06 24,576 --a------ C:\WINDOWS\system32\msxml3a.dll
2008-05-04 14:36 . 2008-05-04 14:35 512,096 --a------ C:\WINDOWS\system32\drivers\amon.sys
2008-05-04 14:36 . 2008-05-04 14:35 298,104 --a------ C:\WINDOWS\system32\imon.dll
2008-05-04 14:36 . 2008-05-04 14:35 15,424 --a------ C:\WINDOWS\system32\drivers\nod32drv.sys
2008-05-04 14:35 . 2008-05-04 14:37 <DIR> d-------- C:\Program Files\ESET
2008-05-03 15:16 . 2008-05-03 15:16 <DIR> d-------- C:\Documents and Settings\Ščko\Data aplikací\QIP
2008-04-29 15:39 . 2008-05-04 14:32 <DIR> d-------- C:\Documents and Settings\All Users\Data aplikací\Avira
2008-04-23 22:26 . 2008-05-01 00:42 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy
2008-04-22 15:22 . 2008-04-22 15:21 691,545 --a------ C:\WINDOWS\unins000.exe
2008-04-22 15:22 . 2008-04-22 15:22 2,544 --a------ C:\WINDOWS\unins000.dat
2008-04-10 18:56 . 2008-04-10 18:56 <DIR> d-------- C:\Program Files\Creative
2008-04-10 18:56 . 2002-06-06 14:38 139,264 --a------ C:\WINDOWS\system32\eax.dll
2008-04-10 18:26 . 2002-09-22 15:36 319,488 -ra------ C:\WINDOWS\system32\MafiaSetup.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-05-04 12:57 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-05-04 12:18 --------- d-----w C:\Program Files\SimPE
2008-04-23 20:32 --------- d-----w C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2008-04-19 06:18 --------- d-----w C:\Documents and Settings\Ščko\Data aplikací\uTorrent
2008-03-29 22:55 716,272 ----a-w C:\WINDOWS\system32\drivers\sptd.sys
2008-03-16 18:12 74,752 ----a-w C:\WINDOWS\ST6UNST.EXE
2008-03-16 18:12 253,952 ------w C:\WINDOWS\Setup1.exe
2008-03-15 00:01 --------- d-----w C:\Program Files\ICQLite
2007-11-13 18:37 81,920 ----a-w C:\Documents and Settings\Ščko\Data aplikací\ezpinst.exe
2007-11-13 18:37 47,360 ----a-w C:\Documents and Settings\Ščko\Data aplikací\pcouffin.sys
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2007-04-04 00:29 165784]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-10-09 12:28 139264]
"STYLEXP"="C:\Program Files\TGTSoft\StyleXP\StyleXP.exe" [2006-05-24 20:31 1372160]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-17 16:49 15360]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-09-29 08:15 344064]
"SoundMan"="SOUNDMAN.EXE" [2004-07-01 20:23 67584 C:\WINDOWS\SOUNDMAN.EXE]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 17:40 155648]
"HP Software Update"="C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe" [2005-02-17 00:11 49152]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2008-05-04 14:35 949376]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-17 16:49 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.XVID"= xvid.dll
"vidc.DIV3"= DivXc32.dll
"vidc.DIV4"= DivXc32f.dll
"msacm.l3codec"= l3codecp.acm
"vidc.3ivx"= 3ivxVfWCodec.dll
"msacm.divxa32"= divxa32.acm
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UpdatesDisableNotify"=dword:00000001
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\K]
\Shell\AutoRun\command - K:\RunGame.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c96b303a-8a27-11dc-9115-806d6172696f}]
\Shell\AutoRun\command - G:\AUTORUN\AUTORUN.EXE
*Newly Created Service* - CATCHME
.
**************************************************************************
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-05-07 15:08:49
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
PROCESS: C:\WINDOWS\system32\lsass.exe
-> C:\Program Files\Eset\pr_imon.dll
.
Completion time: 2008-05-07 15:09:25
ComboFix-quarantined-files.txt 2008-05-07 13:09:22
Adresářů: 9, Volných bajtů: 26,899,443,712
Adresářů: 12, Volných bajtů: 27,838,177,280
99 --- E O F --- 2007-11-03 20:57:44