Megválaszolatlan hozzászólások | Aktív témák Pontos idő: hétf. nov. 18, 2024 12:40



Hozzászólás a témához  [ 1923 hozzászólás ]  Oldal Előző  1 ... 7, 8, 9, 10, 11, 12, 13 ... 39  Következő
stell, help me 
Szerző Üzenet
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
minden a legnagyob renben van, mijen jatekrol van szo??, tedd ide a linket rola. A programok rendesen futnak, csak itt ott valami jatek nem futt??


szomb. nov. 19, 2011 8:39
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Köszönöm! Jó a tanárom! :D
Akkor majd holdnap .


pén. nov. 18, 2011 20:36
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
igen, finom, ugyes vagy, nagyjabol at neztem, jonak nez ki a rendszer, de majd holnap atnezem, aprolekosan,,, es meg irom mi van,
szia.


pén. nov. 18, 2011 20:28
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
http://leteckaposta.cz/354116736
Remélem jól csináltam!?


pén. nov. 18, 2011 20:01
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Lementyed a naplojat az asztalra, es bemasolod modjuk, 2, hozaszolasba, ,, ha nem fer be igy se, akkor jobb kli, a naplora es ha van winrar, vagy 7-zip akkor a jobb klikben megjelenik, ra klikelsz, es kivalasztod archiv, es ez becsomagolja.
A csomagolt .zip mappat tedd fel ide.
http://leteckaposta.cz/
Klik prochazet,,megtalalod a .zip mappat,, klik poslat, megvarod meg feljatszodik, es a linket rola tedd ide, ha nem tudnad becsomagolni, akkor jatszd fel csak ugy ahogy van..txt,, a linket tedd ide.


pén. nov. 18, 2011 19:42
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Na most jön a hülye gyerek verzió :D
Addig minden világos amíg odáig nem jutok ,hogy csomagold be es tedd fel valahova es a linket tedd ide,ilyet még sosem csináltam kéne egy kis instrukció. :oops:


pén. nov. 18, 2011 19:37
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Most igen figyelmesen olvasd amit irok.
Letoltod a szlovak blogombol az XUETR, programot az asztalra
http://www.viruskasino.com/2010/12/prog ... html#XueTr

Kicsomagolod az asztalra es futtatod,az xuetr.exe, nem szabad tevedned,
A tetejen talald meg az computer examination fullet,
Az aljan klikelj a generating gombra, egy kicsit eltart de vard meg a logot,
Mikkor befejezi , klikelj az export examination, fullre, a log talan igen hosszu lesz, ha nem fer be, akkor csomagold be es tedd fel valahova es a linket tedd ide


pén. nov. 18, 2011 19:27
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
19:01:22.0515 3024 TDSS rootkit removing tool 2.6.19.0 Nov 16 2011 12:18:50
19:01:22.0953 3024 ============================================================
19:01:22.0953 3024 Current date / time: 2011/11/18 19:01:22.0953
19:01:22.0953 3024 SystemInfo:
19:01:22.0953 3024
19:01:22.0953 3024 OS Version: 5.1.2600 ServicePack: 3.0
19:01:22.0953 3024 Product type: Workstation
19:01:22.0953 3024 ComputerName: XY-0C1729ADF323
19:01:22.0953 3024 UserName: Évi
19:01:22.0953 3024 Windows directory: C:\WINDOWS
19:01:22.0953 3024 System windows directory: C:\WINDOWS
19:01:22.0953 3024 Processor architecture: Intel x86
19:01:22.0953 3024 Number of processors: 1
19:01:22.0953 3024 Page size: 0x1000
19:01:22.0953 3024 Boot type: Normal boot
19:01:22.0953 3024 ============================================================
19:01:27.0609 3024 Initialize success
19:01:36.0468 3888 ============================================================
19:01:36.0468 3888 Scan started
19:01:36.0468 3888 Mode: Manual;
19:01:36.0468 3888 ============================================================
19:01:37.0218 3888 1289918drv (cd40157a1a5cddc6ca219ab14a17692a) C:\WINDOWS\system32\DRIVERS\1289918drv.sys
19:01:37.0234 3888 1289918drv - ok
19:01:37.0390 3888 36098572 (a305fad3719c5db0c13d1c2bfd08a04d) C:\WINDOWS\system32\DRIVERS\36098572.sys
19:01:37.0390 3888 36098572 - ok
19:01:37.0562 3888 Aavmker4 (95d1de2a6613494e853a9738d5d9acd4) C:\WINDOWS\system32\drivers\Aavmker4.sys
19:01:37.0562 3888 Aavmker4 - ok
19:01:37.0687 3888 Abiosdsk - ok
19:01:37.0812 3888 abp480n5 - ok
19:01:37.0984 3888 ACPI (5482ff197e59b4ca97ccb1b4740a2949) C:\WINDOWS\system32\DRIVERS\ACPI.sys
19:01:37.0984 3888 ACPI - ok
19:01:38.0234 3888 ACPIEC (582c901174a7f0733c6fe41c37c9a80b) C:\WINDOWS\system32\drivers\ACPIEC.sys
19:01:38.0234 3888 ACPIEC - ok
19:01:38.0375 3888 adpu160m - ok
19:01:38.0500 3888 aeaudio (11c04b17ed2abbb4833694bcd644ac90) C:\WINDOWS\system32\drivers\aeaudio.sys
19:01:38.0500 3888 aeaudio - ok
19:01:38.0671 3888 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
19:01:38.0687 3888 aec - ok
19:01:38.0843 3888 AegisP (2c5c22990156a1063e19ad162191dc1d) C:\WINDOWS\system32\DRIVERS\AegisP.sys
19:01:38.0843 3888 AegisP - ok
19:01:39.0015 3888 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
19:01:39.0015 3888 AFD - ok
19:01:39.0187 3888 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
19:01:39.0187 3888 agp440 - ok
19:01:39.0328 3888 Aha154x - ok
19:01:39.0437 3888 aic78u2 - ok
19:01:39.0562 3888 aic78xx - ok
19:01:39.0703 3888 AliIde - ok
19:01:39.0796 3888 amsint - ok
19:01:39.0937 3888 asc - ok
19:01:40.0046 3888 asc3350p - ok
19:01:40.0140 3888 asc3550 - ok
19:01:40.0296 3888 aswFsBlk (c47623ffd181a1e7d63574dde2a0a711) C:\WINDOWS\system32\drivers\aswFsBlk.sys
19:01:40.0296 3888 aswFsBlk - ok
19:01:40.0484 3888 aswMon2 (fff2dbb17a3c89f87f78d5fa72ca47fd) C:\WINDOWS\system32\drivers\aswMon2.sys
19:01:40.0484 3888 aswMon2 - ok
19:01:40.0640 3888 aswRdr (36239e24470a3dd81fae37510953cc6c) C:\WINDOWS\system32\drivers\aswRdr.sys
19:01:40.0640 3888 aswRdr - ok
19:01:40.0843 3888 aswSnx (caa846e9c83836bdc3d2d700c678db65) C:\WINDOWS\system32\drivers\aswSnx.sys
19:01:40.0875 3888 aswSnx - ok
19:01:41.0031 3888 aswSP (748ae7f2d7da33adb063fe05704a9969) C:\WINDOWS\system32\drivers\aswSP.sys
19:01:41.0062 3888 aswSP - ok
19:01:41.0218 3888 aswTdi (ca9925ce1dbd07ffe1eb357752cf5577) C:\WINDOWS\system32\drivers\aswTdi.sys
19:01:41.0218 3888 aswTdi - ok
19:01:41.0390 3888 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
19:01:41.0390 3888 AsyncMac - ok
19:01:41.0578 3888 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
19:01:41.0578 3888 atapi - ok
19:01:41.0718 3888 Atdisk - ok
19:01:41.0875 3888 ATHFMWDL (37cdcd0d54b4d3f7ff866d1a996c620c) C:\WINDOWS\system32\Drivers\athwpn.sys
19:01:41.0875 3888 ATHFMWDL - ok
19:01:42.0125 3888 ati2mtag (492bd2a5f65f218d4ede5764a3bb67e9) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
19:01:42.0203 3888 ati2mtag - ok
19:01:42.0390 3888 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
19:01:42.0390 3888 Atmarpc - ok
19:01:42.0625 3888 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
19:01:42.0625 3888 audstub - ok
19:01:42.0843 3888 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
19:01:42.0859 3888 Beep - ok
19:01:43.0125 3888 catchme - ok
19:01:43.0390 3888 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
19:01:43.0406 3888 cbidf2k - ok
19:01:43.0593 3888 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
19:01:43.0593 3888 CCDECODE - ok
19:01:43.0734 3888 cd20xrnt - ok
19:01:43.0890 3888 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
19:01:43.0890 3888 Cdaudio - ok
19:01:44.0078 3888 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
19:01:44.0078 3888 Cdfs - ok
19:01:44.0265 3888 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
19:01:44.0265 3888 Cdrom - ok
19:01:44.0453 3888 Changer (2a5815ca6fff24b688c01f828b96819c) C:\WINDOWS\system32\drivers\Changer.sys
19:01:44.0453 3888 Changer - ok
19:01:44.0640 3888 CmdIde - ok
19:01:44.0765 3888 Cpqarray - ok
19:01:44.0937 3888 cxbu0wdm (0284c94fc495d8d08df24c18994c1662) C:\WINDOWS\system32\DRIVERS\cxbu0wdm.sys
19:01:44.0937 3888 cxbu0wdm - ok
19:01:45.0078 3888 dac2w2k - ok
19:01:45.0171 3888 dac960nt - ok
19:01:45.0343 3888 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
19:01:45.0343 3888 Disk - ok
19:01:45.0578 3888 dmboot (ae717be311722ceebd9a27b57757a123) C:\WINDOWS\system32\drivers\dmboot.sys
19:01:45.0609 3888 dmboot - ok
19:01:45.0796 3888 dmio (66b7462ad4844052d4a6cbea3aa486a0) C:\WINDOWS\system32\drivers\dmio.sys
19:01:45.0812 3888 dmio - ok
19:01:45.0984 3888 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
19:01:45.0984 3888 dmload - ok
19:01:46.0187 3888 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
19:01:46.0203 3888 DMusic - ok
19:01:46.0390 3888 DNINDIS5 (d2ee54cdbced01d48f2b18642be79a98) C:\WINDOWS\system32\DNINDIS5.SYS
19:01:46.0453 3888 DNINDIS5 - ok
19:01:46.0593 3888 dpti2o - ok
19:01:46.0765 3888 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
19:01:46.0765 3888 drmkaud - ok
19:01:46.0953 3888 dtscsi (6461e57bb51a848aae26f52427b7cf9e) C:\WINDOWS\System32\Drivers\dtscsi.sys
19:01:46.0953 3888 Suspicious file (NoAccess): C:\WINDOWS\System32\Drivers\dtscsi.sys. md5: 6461e57bb51a848aae26f52427b7cf9e
19:01:46.0984 3888 dtscsi ( LockedFile.Multi.Generic ) - warning
19:01:46.0984 3888 dtscsi - detected LockedFile.Multi.Generic (1)
19:01:47.0156 3888 E1000 (3044851b3c5286a908a6a4d1166328aa) C:\WINDOWS\system32\DRIVERS\e1000325.sys
19:01:47.0156 3888 E1000 - ok
19:01:47.0390 3888 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
19:01:47.0390 3888 Fastfat - ok
19:01:47.0625 3888 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
19:01:47.0640 3888 Fdc - ok
19:01:47.0843 3888 Fips (0986fca8fd7a56d9f1628fe6ef321090) C:\WINDOWS\system32\drivers\Fips.sys
19:01:47.0843 3888 Fips - ok
19:01:48.0031 3888 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
19:01:48.0031 3888 Flpydisk - ok
19:01:48.0234 3888 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
19:01:48.0234 3888 FltMgr - ok
19:01:48.0421 3888 fssfltr (c6ee3a87fe609d3e1db9dbd072a248de) C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
19:01:48.0421 3888 fssfltr - ok
19:01:48.0625 3888 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
19:01:48.0640 3888 Fs_Rec - ok
19:01:48.0843 3888 Ftdisk (44225407f69666099c4d4c6bc9cd804d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
19:01:48.0843 3888 Ftdisk - ok
19:01:49.0046 3888 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
19:01:49.0046 3888 Gpc - ok
19:01:49.0234 3888 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
19:01:49.0234 3888 hidusb - ok
19:01:49.0390 3888 hpn - ok
19:01:49.0593 3888 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
19:01:49.0609 3888 HTTP - ok
19:01:49.0843 3888 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
19:01:49.0843 3888 i2omgmt - ok
19:01:50.0015 3888 i2omp - ok
19:01:50.0187 3888 i8042prt (d7947ecf17544ced478bd969939db349) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
19:01:50.0203 3888 i8042prt - ok
19:01:50.0390 3888 ialm (a79029861cb69cd3cf4eab9ebfee32dd) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
19:01:50.0406 3888 ialm - ok
19:01:50.0640 3888 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
19:01:50.0640 3888 Imapi - ok
19:01:50.0812 3888 ini910u - ok
19:01:50.0953 3888 IntelIde (6e91fdd73f250bbcfebba34a0f8c8f69) C:\WINDOWS\system32\DRIVERS\intelide.sys
19:01:50.0953 3888 IntelIde - ok
19:01:51.0140 3888 intelppm (5182797825b78faba84f7a82603e212d) C:\WINDOWS\system32\DRIVERS\intelppm.sys
19:01:51.0140 3888 intelppm - ok
19:01:51.0343 3888 ip6fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
19:01:51.0343 3888 ip6fw - ok
19:01:51.0531 3888 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
19:01:51.0531 3888 IpFilterDriver - ok
19:01:51.0718 3888 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
19:01:51.0734 3888 IpInIp - ok
19:01:51.0921 3888 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
19:01:51.0921 3888 IpNat - ok
19:01:52.0109 3888 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
19:01:52.0109 3888 IPSec - ok
19:01:52.0359 3888 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
19:01:52.0375 3888 IRENUM - ok
19:01:52.0562 3888 isapnp (3685529caa2b14c9632e85e265ba293b) C:\WINDOWS\system32\DRIVERS\isapnp.sys
19:01:52.0562 3888 isapnp - ok
19:01:52.0718 3888 ISODrive (0ae61463adda697a6291155ce6b08aaf) C:\Program Files\UltraISO\drivers\ISODrive.sys
19:01:52.0718 3888 ISODrive - ok
19:01:52.0921 3888 Kbdclass (51d3342d1a0c19605095405352bb009b) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
19:01:52.0921 3888 Kbdclass - ok
19:01:53.0109 3888 kbdhid (eb1720313b4fd571654926a80e610c20) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
19:01:53.0109 3888 kbdhid - ok
19:01:53.0312 3888 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
19:01:53.0312 3888 kmixer - ok
19:01:53.0515 3888 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
19:01:53.0515 3888 KSecDD - ok
19:01:53.0750 3888 lbrtfdc (406598827a1b5f77954de11dde115ced) C:\WINDOWS\system32\drivers\lbrtfdc.sys
19:01:53.0750 3888 lbrtfdc - ok
19:01:53.0953 3888 litsgt (454b6c19c69ea71e83be967ab5444c55) C:\WINDOWS\system32\DRIVERS\litsgt.sys
19:01:53.0953 3888 litsgt - ok
19:01:54.0140 3888 MDC8021X (8fee53c104223973ed9919936d9cd156) C:\WINDOWS\system32\DRIVERS\mdc8021x.sys
19:01:54.0140 3888 MDC8021X - ok
19:01:54.0343 3888 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
19:01:54.0359 3888 mnmdd - ok
19:01:54.0546 3888 Modem (226b93eb15b1c819fa021a5167c5809d) C:\WINDOWS\system32\drivers\Modem.sys
19:01:54.0546 3888 Modem - ok
19:01:54.0765 3888 Mouclass (705cac1902dcd3e3181a199d7ad40d13) C:\WINDOWS\system32\DRIVERS\mouclass.sys
19:01:54.0765 3888 Mouclass - ok
19:01:54.0953 3888 mouhid (6a79cb27d0e608a45638cd9468269a3e) C:\WINDOWS\system32\DRIVERS\mouhid.sys
19:01:54.0953 3888 mouhid - ok
19:01:55.0140 3888 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
19:01:55.0140 3888 MountMgr - ok
19:01:55.0343 3888 mraid35x - ok
19:01:55.0484 3888 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
19:01:55.0500 3888 MRxDAV - ok
19:01:55.0687 3888 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
19:01:55.0703 3888 MRxSmb - ok
19:01:55.0906 3888 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
19:01:55.0906 3888 Msfs - ok
19:01:56.0125 3888 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
19:01:56.0125 3888 MSKSSRV - ok
19:01:56.0312 3888 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
19:01:56.0312 3888 MSPCLOCK - ok
19:01:56.0500 3888 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
19:01:56.0500 3888 MSPQM - ok
19:01:56.0687 3888 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
19:01:56.0687 3888 mssmbios - ok
19:01:56.0875 3888 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
19:01:56.0875 3888 MSTEE - ok
19:01:57.0046 3888 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
19:01:57.0062 3888 Mup - ok
19:01:57.0234 3888 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
19:01:57.0250 3888 NABTSFEC - ok
19:01:57.0468 3888 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
19:01:57.0484 3888 NDIS - ok
19:01:57.0703 3888 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
19:01:57.0703 3888 NdisIP - ok
19:01:57.0890 3888 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
19:01:57.0890 3888 NdisTapi - ok
19:01:58.0078 3888 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
19:01:58.0078 3888 Ndisuio - ok
19:01:58.0265 3888 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
19:01:58.0281 3888 NdisWan - ok
19:01:58.0500 3888 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
19:01:58.0515 3888 NDProxy - ok
19:01:58.0703 3888 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
19:01:58.0703 3888 NetBIOS - ok
19:01:58.0921 3888 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
19:01:58.0921 3888 NetBT - ok
19:01:59.0156 3888 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
19:01:59.0171 3888 Npfs - ok
19:01:59.0359 3888 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
19:01:59.0390 3888 Ntfs - ok
19:01:59.0593 3888 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
19:01:59.0593 3888 Null - ok
19:01:59.0765 3888 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
19:01:59.0781 3888 NwlnkFlt - ok
19:01:59.0984 3888 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
19:01:59.0984 3888 NwlnkFwd - ok
19:02:00.0203 3888 Parport (632f154061074a9a1b75ecbba89d8d42) C:\WINDOWS\system32\DRIVERS\parport.sys
19:02:00.0218 3888 Parport - ok
19:02:00.0390 3888 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
19:02:00.0406 3888 PartMgr - ok
19:02:00.0593 3888 ParVdm (4df92a889e7fe15ed3834d288a0271f5) C:\WINDOWS\system32\drivers\ParVdm.sys
19:02:00.0593 3888 ParVdm - ok
19:02:00.0781 3888 PCI (b4a9c91cfdd5c68e2e48c0754e3a88f9) C:\WINDOWS\system32\DRIVERS\pci.sys
19:02:00.0781 3888 PCI - ok
19:02:00.0937 3888 PCIDump - ok
19:02:01.0062 3888 PCIIde (fbf3cc42488fd2ce49f9427240cd5809) C:\WINDOWS\system32\DRIVERS\pciide.sys
19:02:01.0062 3888 PCIIde - ok
19:02:01.0281 3888 Pcmcia (3defb381b9cdca9d4375bd37a3c0189b) C:\WINDOWS\system32\drivers\Pcmcia.sys
19:02:01.0296 3888 Pcmcia - ok
19:02:01.0453 3888 PCTAppEvent (7ea0ebd6e5aa687e116eb185a7cfb667) C:\WINDOWS\system32\drivers\PCTAppEvent.sys
19:02:01.0453 3888 PCTAppEvent - ok
19:02:01.0625 3888 PCTFW-PacketFilter (60af5fa418efe284fb81dbbf5a0391fb) C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys
19:02:01.0625 3888 PCTFW-PacketFilter - ok
19:02:01.0796 3888 pctgntdi (5be722c8c9bba995693c8cd524d83b27) C:\WINDOWS\system32\drivers\pctgntdi.sys
19:02:01.0812 3888 pctgntdi - ok
19:02:01.0953 3888 pctNDIS (3ec79cfb2e0e74aada8b561ed8904577) C:\WINDOWS\system32\DRIVERS\pctNdis.sys
19:02:01.0968 3888 pctNDIS - ok
19:02:02.0140 3888 pctplfw (fe6803af91ddb32ff8edf5d6c0d370af) C:\WINDOWS\system32\drivers\pctplfw.sys
19:02:02.0140 3888 pctplfw - ok
19:02:02.0296 3888 PDCOMP - ok
19:02:02.0453 3888 PDFRAME - ok
19:02:02.0578 3888 PDRELI - ok
19:02:02.0687 3888 PDRFRAME - ok
19:02:02.0796 3888 perc2 - ok
19:02:02.0921 3888 perc2hib - ok
19:02:03.0140 3888 Point32 (2e3394c8ebf31a9b4f0a531eb5cc7bc7) C:\WINDOWS\system32\DRIVERS\point32.sys
19:02:03.0140 3888 Point32 - ok
19:02:03.0296 3888 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
19:02:03.0296 3888 PptpMiniport - ok
19:02:03.0515 3888 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
19:02:03.0515 3888 PSched - ok
19:02:03.0703 3888 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
19:02:03.0703 3888 Ptilink - ok
19:02:03.0890 3888 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
19:02:03.0890 3888 PxHelp20 - ok
19:02:04.0031 3888 ql1080 - ok
19:02:04.0156 3888 Ql10wnt - ok
19:02:04.0265 3888 ql12160 - ok
19:02:04.0468 3888 ql1240 - ok
19:02:04.0593 3888 ql1280 - ok
19:02:04.0750 3888 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
19:02:04.0750 3888 RasAcd - ok
19:02:04.0953 3888 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
19:02:04.0968 3888 Rasl2tp - ok
19:02:05.0171 3888 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
19:02:05.0171 3888 RasPppoe - ok
19:02:05.0359 3888 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
19:02:05.0359 3888 Raspti - ok
19:02:05.0562 3888 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
19:02:05.0578 3888 Rdbss - ok
19:02:05.0750 3888 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
19:02:05.0765 3888 RDPCDD - ok
19:02:05.0953 3888 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
19:02:05.0953 3888 rdpdr - ok
19:02:06.0140 3888 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
19:02:06.0140 3888 RDPWD - ok
19:02:06.0312 3888 redbook (3c706fd765482112c3a6d42e1d7b58bb) C:\WINDOWS\system32\DRIVERS\redbook.sys
19:02:06.0328 3888 redbook - ok
19:02:06.0515 3888 ROOTMODEM (d8b0b4ade32574b2d9c5cc34dc0dbbe7) C:\WINDOWS\system32\Drivers\RootMdm.sys
19:02:06.0515 3888 ROOTMODEM - ok
19:02:06.0703 3888 rspndr (a3b23fb3f295694091f51865f98588b2) C:\WINDOWS\system32\DRIVERS\rspndr.sys
19:02:06.0718 3888 rspndr - ok
19:02:06.0921 3888 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
19:02:06.0937 3888 Secdrv - ok
19:02:07.0171 3888 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
19:02:07.0171 3888 serenum - ok
19:02:07.0359 3888 Serial (87df40b4db611efbdf74c9b3eccab417) C:\WINDOWS\system32\DRIVERS\serial.sys
19:02:07.0359 3888 Serial - ok
19:02:07.0593 3888 setup_9.0.0.722_21.06.2011_11-00drv (66ef49622baa18e4d4f1fe4bae1d51b8) C:\WINDOWS\system32\DRIVERS\3609857.sys
19:02:07.0609 3888 setup_9.0.0.722_21.06.2011_11-00drv - ok
19:02:07.0765 3888 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
19:02:07.0781 3888 Sfloppy - ok
19:02:07.0921 3888 Simbad - ok
19:02:08.0062 3888 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
19:02:08.0062 3888 SLIP - ok
19:02:08.0265 3888 smwdm (70b8dd8707dbf6142530c106365df67d) C:\WINDOWS\system32\drivers\smwdm.sys
19:02:08.0281 3888 smwdm - ok
19:02:08.0421 3888 Sparrow - ok
19:02:08.0578 3888 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
19:02:08.0578 3888 splitter - ok
19:02:08.0796 3888 sptd (8ea0fd60a5b047e0c734d51aace531c9) C:\WINDOWS\System32\Drivers\sptd.sys
19:02:08.0796 3888 Suspicious file (NoAccess): C:\WINDOWS\System32\Drivers\sptd.sys. md5: 8ea0fd60a5b047e0c734d51aace531c9
19:02:08.0812 3888 sptd ( LockedFile.Multi.Generic ) - warning
19:02:08.0812 3888 sptd - detected LockedFile.Multi.Generic (1)
19:02:08.0984 3888 Sr (38e904fb6139945822b929eaf2570ca5) C:\WINDOWS\system32\DRIVERS\sr.sys
19:02:08.0984 3888 Sr - ok
19:02:09.0187 3888 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
19:02:09.0203 3888 Srv - ok
19:02:09.0390 3888 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
19:02:09.0406 3888 streamip - ok
19:02:09.0578 3888 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
19:02:09.0593 3888 swenum - ok
19:02:09.0765 3888 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
19:02:09.0781 3888 swmidi - ok
19:02:09.0937 3888 symc810 - ok
19:02:10.0078 3888 symc8xx - ok
19:02:10.0187 3888 sym_hi - ok
19:02:10.0312 3888 sym_u3 - ok
19:02:10.0468 3888 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
19:02:10.0484 3888 sysaudio - ok
19:02:10.0671 3888 tansgt (65e9377beddba680da9034da3ed44725) C:\WINDOWS\system32\DRIVERS\tansgt.sys
19:02:10.0671 3888 tansgt - ok
19:02:10.0859 3888 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
19:02:10.0890 3888 Tcpip - ok
19:02:11.0078 3888 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
19:02:11.0078 3888 TDPIPE - ok
19:02:11.0250 3888 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
19:02:11.0250 3888 TDTCP - ok
19:02:11.0421 3888 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
19:02:11.0421 3888 TermDD - ok
19:02:11.0593 3888 TosIde - ok
19:02:11.0734 3888 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
19:02:11.0750 3888 Udfs - ok
19:02:11.0875 3888 ultra - ok
19:02:12.0093 3888 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
19:02:12.0125 3888 Update - ok
19:02:12.0296 3888 usbbus - ok
19:02:12.0437 3888 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
19:02:12.0453 3888 usbccgp - ok
19:02:12.0625 3888 USBCM (d21cde1c635bcc5053463579eee453cf) C:\WINDOWS\system32\DRIVERS\Sacm2K.sys
19:02:12.0625 3888 USBCM - ok
19:02:12.0765 3888 UsbDiag - ok
19:02:12.0921 3888 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
19:02:12.0921 3888 usbehci - ok
19:02:13.0109 3888 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
19:02:13.0125 3888 usbhub - ok
19:02:13.0296 3888 USBModem - ok
19:02:13.0421 3888 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
19:02:13.0421 3888 usbprint - ok
19:02:13.0578 3888 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
19:02:13.0593 3888 usbscan - ok
19:02:13.0765 3888 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
19:02:13.0765 3888 USBSTOR - ok
19:02:13.0937 3888 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
19:02:13.0937 3888 usbuhci - ok
19:02:14.0140 3888 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
19:02:14.0140 3888 VgaSave - ok
19:02:14.0281 3888 ViaIde - ok
19:02:14.0421 3888 VolSnap (9946cfcc7e445e1d846db748299724eb) C:\WINDOWS\system32\drivers\VolSnap.sys
19:02:14.0421 3888 VolSnap - ok
19:02:14.0625 3888 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
19:02:14.0625 3888 Wanarp - ok
19:02:14.0781 3888 WDICA - ok
19:02:14.0921 3888 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
19:02:14.0937 3888 wdmaud - ok
19:02:15.0218 3888 WPN111 (f0003c3bb6229c7cc3742242ea61f68b) C:\WINDOWS\system32\DRIVERS\WPN111.sys
19:02:15.0234 3888 WPN111 - ok
19:02:15.0390 3888 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
19:02:15.0406 3888 WS2IFSL - ok
19:02:15.0593 3888 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
19:02:15.0593 3888 WSTCODEC - ok
19:02:15.0765 3888 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
19:02:15.0781 3888 WudfPf - ok
19:02:15.0937 3888 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
19:02:15.0953 3888 WudfRd - ok
19:02:16.0140 3888 {6080A529-897E-4629-A488-ABA0C29B635E} (3ee36328e860fbf102b54608a055c6be) C:\WINDOWS\system32\drivers\ialmsbw.sys
19:02:16.0156 3888 {6080A529-897E-4629-A488-ABA0C29B635E} - ok
19:02:16.0343 3888 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} (17f39a1916733ed228eb46ad67c35426) C:\WINDOWS\system32\drivers\ialmkchw.sys
19:02:16.0359 3888 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} - ok
19:02:16.0390 3888 MBR (0x1B8) (186a4159d7661245314a7a933981403e) \Device\Harddisk0\DR0
19:02:16.0578 3888 \Device\Harddisk0\DR0 - ok
19:02:16.0609 3888 Boot (0x1200) (ede7926fcf3a5fe4b8d727a40e4fc730) \Device\Harddisk0\DR0\Partition0
19:02:16.0609 3888 \Device\Harddisk0\DR0\Partition0 - ok
19:02:16.0609 3888 ============================================================
19:02:16.0609 3888 Scan finished
19:02:16.0609 3888 ============================================================
19:02:16.0640 3880 Detected object count: 2
19:02:16.0640 3880 Actual detected object count: 2


pén. nov. 18, 2011 19:05
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Ok, meg futtasd az TDSSKILLERT, a logjat tedd ide.
http://www.virus-stell.com/2010/08/root ... -tdl3.html


pén. nov. 18, 2011 18:57
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== SERVICES/DRIVERS ==========
Error: No service named vsmon was found to stop!
Service\Driver key vsmon not found.
Error: No service named JavaQuickStarterService was found to stop!
Service\Driver key JavaQuickStarterService not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KernelFaultCheck\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Shockwave Updater\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uninstall Adobe Download Manager\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^GreenHemp^Start Menu^Programs^Indítópult^setup_9.0.0.722_05.06.2011_08-56.lnk\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^setup_9.0.0.722_30.06.2011_15-07.lnk\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_.lnk\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_02242851.lnk\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_setup_9.0.0.722_01.09.2011_18-20.exe.lnk\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon\ not found.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: GreenHemp
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Vendég
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Évi
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 65657 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 26687839 bytes
->Flash cache emptied: 487 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 276992 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1125615453 bytes

Total Files Cleaned = 1 099,00 mb


[EMPTYFLASH]

User: All Users

User: Default User

User: GreenHemp
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

User: Vendég

User: Évi
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


Unable to start service SRService!

OTM by OldTimer - Version 3.1.19.0 log created on 11182011_183956

Files moved on Reboot...

Registry entries deleted on Reboot...


pén. nov. 18, 2011 18:49
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Kapcsold ki a tuzfalat, es csinald meg megegyszer, a restart utan ujbol kapcsold ki a tuzfalat,


pén. nov. 18, 2011 18:23
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Sajnálom de ott is ugyanaz a link van amit küldtem.
A játéknál is ugyan az a helyzet,sőt most már a feladatkezelővel sem tudtam megállítani csak úgy hogy újra indítottam a gépet.
Amikor az OTM-et futtattam akkor az utolsó kettőig ([ClearAllRestorePoints]
[Reboot]) simán csinálta,de itt megállt és vagy 10 percig semmi nem történt,a kék vonal alul végigment majd magától kikapcsolt,és azt a logot adta amit küldtem.


pén. nov. 18, 2011 18:06
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
A log itt van,
C:\_OTM\MovedFiles,,,,,
tedd ide es probald a jatekot es ird meg mi van.


pén. nov. 18, 2011 16:47
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Files moved on Reboot...
File C:\WINDOWS\System32\PerfStringBackup.TMP not found!
File move failed. C:\WINDOWS\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...


pén. nov. 18, 2011 16:23
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
tolgs le az OTM programot az asztalra.
http://www.virus-stell.com/2010/04/otm.html
a ball ablakjaba masold be a textet es klik MOVEIT, a logjat tedd ide.

Kód:
:processes
explorer.exe
:services
vsmon
JavaQuickStarterService
:reg
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KernelFaultCheck]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Shockwave Updater]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uninstall Adobe Download Manager]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^GreenHemp^Start Menu^Programs^Indítópult^setup_9.0.0.722_05.06.2011_08-56.lnk]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^setup_9.0.0.722_30.06.2011_15-07.lnk]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_.lnk]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_02242851.lnk]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_setup_9.0.0.722_01.09.2011_18-20.exe.lnk]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

:Commands
[Purity]
[ResetHosts]
[EmptyTemp]
[EmptyFlash]
[ClearAllRestorePoints]
[Reboot]


pén. nov. 18, 2011 15:41
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Logfile of random's system information tool 1.06 (written by random/random)
Run by Évi at 2011-11-18 14:47:57
Microsoft Windows XP Professional Szervizcsomag 3
System drive C: has 43 GB (56%) free of 76 GB
Total RAM: 511 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:48:50, on 2011.11.18.
Platform: Windows XP Szervizcsomag 3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\PC Tools Firewall Plus\FWService.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\Évi\Asztal\vírus\RSIT.exe
C:\Program Files\trend micro\Évi.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hivatkozások
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live bejelentkezési segítség - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O8 - Extra context menu item: E&xportálás Microsoft Excel formátumba - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint – Gyors nyomtatás - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint – Hozzáadás a nyomtatási listához - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint – Nyomtatás - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint – Nyomtatási kép - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
O9 - Extra button: Küldés blogba - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Küldés blogba a Windows Live Writer programmal - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Kutatás - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {226ACC34-3194-40E2-9AE8-834FCFE9E80D} (CPlayFirstmsiControl Object) - http://games.bigfishgames.com/en_myster ... .0.0.8.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {4DCA1E08-4147-4A3D-8CA6-E095DF189FAB} (CPlayFirstNightshiftControl Object) - http://games.bigfishgames.com/en_nights ... .0.0.9.cab
O16 - DPF: {8FA2192F-B95D-40E3-898F-8D7ABB8E00D0} (SpinTop Games Launcher) - http://games.bigfishgames.com/en_myster ... uncher.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - PC Tools - C:\Program Files\PC Tools Firewall Plus\FWService.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

--
End of file - 7522 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2010-04-28 113512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}]
EWPBrowseObject Class - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll [2006-04-18 34304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-07-27 191792]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-09-06 806456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live bejelentkezési segítség - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-04-10 35840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2010-04-16 1067872]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-04-10 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2006-04-18 552960]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-09-06 806456]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2010-04-16 1067872]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2011-04-07 2672600]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-09-06 3722416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-09-07 37296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\aswAhAScr.dll]
C:\Program Files\AVAST Software\Avast\aswRegSvr.exe [2011-04-18 22016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATICCC]
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [2006-01-02 45056]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate]
C:\WINDOWS\system32\Macromed\Flash\FlashUtil10x_Plugin.exe [2011-10-02 243360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KernelFaultCheck]
C:\WINDOWS\system32\dumprep 0 -k []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE4]
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe [2006-03-21 69632]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Shockwave Updater]
C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1161629.exe [2011-08-16 1040824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uninstall Adobe Download Manager]
C:\Program Files\NOS\bin\getPlus_Helper_3004.dll [2010-09-01 66112]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^GreenHemp^Start Menu^Programs^Indítópult^setup_9.0.0.722_05.06.2011_08-56.lnk]
C:\DOCUME~1\GREENH~1\Asztal\VIRUSR~1\SETUP_~1.20~\startup.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^setup_9.0.0.722_30.06.2011_15-07.lnk]
C:\DOCUME~1\VIBBDC~1\Asztal\VIRUSR~1\SETUP_~1.20~\startup.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_.lnk]
C:\Documents and Settings\Évi\Local Settings\temp\_uninst_.bat []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_02242851.lnk]
C:\DOCUME~1\VIBBDC~1\LOCALS~1\temp\_UNINS~1.BAT []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_setup_9.0.0.722_01.09.2011_18-20.exe.lnk]
C:\Documents and Settings\Évi\Local Settings\temp\_uninst_setup_9.0.0.722_01.09.2011_18-20.exe.bat []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-05-03 61440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxsrvc.dll [2003-03-11 315392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-04-16 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"HideFastUserSwitching"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoSMMyDocs"=1
"NoSMMyPictures"=1
"NoSMConfigurePrograms"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

======List of files/folders created in the last 1 months======

2011-11-17 11:30:54 ----D---- C:\Documents and Settings\Évi\Application Data\Fanda Games
2011-11-11 13:00:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2011-11-09 22:39:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2011-11-06 15:35:23 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2011-11-04 13:25:54 ----D---- C:\Documents and Settings\Évi\Application Data\Artifex Mundi
2011-11-02 17:43:40 ----D---- C:\Documents and Settings\Évi\Application Data\DAEMON Tools Lite
2011-11-01 20:03:14 ----D---- C:\Program Files\trend micro
2011-11-01 20:03:08 ----D---- C:\rsit
2011-11-01 10:28:17 ----SHD---- C:\RECYCLER
2011-11-01 10:17:24 ----A---- C:\ComboFix.txt
2011-10-31 16:51:49 ----D---- C:\Documents and Settings\Évi\Application Data\LucasArts
2011-10-31 11:54:45 ----D---- C:\Documents and Settings\Évi\Application Data\dekovir
2011-10-30 21:32:44 ----D---- C:\WINDOWS\ERDNT
2011-10-30 14:09:30 ----D---- C:\Documents and Settings\Évi\Application Data\ElevatedDiagnostics
2011-10-30 14:02:25 ----D---- C:\WINDOWS\system32\windowspowershell
2011-10-30 14:01:15 ----HDC---- C:\WINDOWS\$NtUninstallKB926139-v2$
2011-10-28 18:36:57 ----D---- C:\Program Files\NewFreeScreensavers
2011-10-28 18:32:46 ----D---- C:\Program Files\Sim AQUARIUM 2
2011-10-27 21:37:03 ----D---- C:\Documents and Settings\Évi\Application Data\URSE Games
2011-10-27 21:00:07 ----A---- C:\WINDOWS\mafosav.INI
2011-10-27 18:39:31 ----A---- C:\WINDOWS\system32\DBCLIENT.DLL
2011-10-27 18:39:28 ----D---- C:\Program Files\Common Files\Borland Shared
2011-10-27 18:38:40 ----D---- C:\Program Files\LOIM
2011-10-26 20:12:03 ----D---- C:\Program Files\GameHouse
2011-10-25 07:57:59 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonBJ
2011-10-25 07:53:44 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2011-10-25 07:51:18 ----HD---- C:\Program Files\CanonBJ
2011-10-25 07:48:21 ----D---- C:\Program Files\Canon
2011-10-24 22:01:36 ----D---- C:\Documents and Settings\Évi\Application Data\Daedalic Entertainment
2011-10-23 17:50:27 ----D---- C:\Documents and Settings\Évi\Application Data\Chayowo Games
2011-10-22 11:55:31 ----D---- C:\rc

======List of files/folders modified in the last 1 months======

2011-11-18 14:46:35 ----D---- C:\WINDOWS
2011-11-18 13:35:20 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2011-11-18 13:35:18 ----D---- C:\WINDOWS\temp
2011-11-18 07:29:08 ----D---- C:\WINDOWS\system32\CatRoot2
2011-11-17 22:24:45 ----D---- C:\WINDOWS\system32\drivers
2011-11-17 13:06:30 ----SHD---- C:\WINDOWS\Installer
2011-11-17 13:06:30 ----RSD---- C:\WINDOWS\assembly
2011-11-17 13:06:23 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2011-11-16 07:46:18 ----D---- C:\WINDOWS\system32
2011-11-16 07:46:17 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-11-12 17:27:00 ----SHD---- C:\WINDOWS\CSC
2011-11-12 17:05:41 ----D---- C:\Program Files\Defraggler
2011-11-11 13:01:11 ----HD---- C:\WINDOWS\inf
2011-11-11 13:01:02 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-11-11 11:47:23 ----D---- C:\Program Files\Mozilla Firefox
2011-11-11 11:38:04 ----HD---- C:\WINDOWS\$hf_mig$
2011-11-10 19:05:51 ----D---- C:\Documents and Settings\All Users\Application Data\Cateia Games
2011-11-10 09:06:38 ----D---- C:\WINDOWS\Debug
2011-11-09 22:35:43 ----AC---- C:\WINDOWS\system32\MRT.exe
2011-11-09 20:02:28 ----D---- C:\Program Files\PC Tools Firewall Plus
2011-11-09 20:02:24 ----D---- C:\Documents and Settings\Évi\Application Data\PCToolsFirewallPlus
2011-11-09 19:55:56 ----D---- C:\Program Files\Common Files\PC Tools
2011-11-06 19:52:48 ----D---- C:\Program Files\Winamp
2011-11-06 16:23:13 ----D---- C:\WINDOWS\Logs
2011-11-06 15:36:03 ----D---- C:\WINDOWS\system32\DirectX
2011-11-05 19:35:50 ----SHD---- C:\System Volume Information
2011-11-05 19:35:50 ----D---- C:\WINDOWS\system32\Restore
2011-11-03 20:29:50 ----D---- C:\Program Files
2011-11-02 22:05:14 ----D---- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
2011-11-02 17:35:31 ----D---- C:\WINDOWS\Downloaded Installations
2011-11-01 10:47:26 ----D---- C:\Qoobox
2011-11-01 10:11:04 ----A---- C:\WINDOWS\system.ini
2011-11-01 10:02:01 ----D---- C:\WINDOWS\AppPatch
2011-11-01 10:01:42 ----D---- C:\Program Files\Common Files
2011-11-01 09:22:41 ----D---- C:\Google
2011-10-31 21:32:20 ----D---- C:\games
2011-10-31 17:02:16 ----D---- C:\WINDOWS\SoftwareDistribution
2011-10-31 12:59:36 ----D---- C:\Program Files\Disney Interactive
2011-10-31 12:57:41 ----AC---- C:\WINDOWS\disney.ini
2011-10-30 15:03:47 ----D---- C:\WINDOWS\Microsoft.NET
2011-10-30 14:16:30 ----D---- C:\WINDOWS\Network Diagnostic
2011-10-30 14:03:09 ----D---- C:\WINDOWS\system32\config
2011-10-30 12:32:34 ----D---- C:\Program Files\Google
2011-10-30 12:32:25 ----SD---- C:\WINDOWS\Tasks
2011-10-30 12:28:49 ----D---- C:\Program Files\CCleaner
2011-10-30 11:11:01 ----D---- C:\WINDOWS\Minidump
2011-10-28 08:47:57 ----D---- C:\Documents and Settings\Évi\Application Data\ERS Game Studios
2011-10-27 16:33:29 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-10-26 20:26:55 ----D---- C:\Documents and Settings\All Users\Application Data\Playrix Entertainment
2011-10-26 13:17:39 ----D---- C:\WINDOWS\system32\wbem
2011-10-26 13:17:38 ----D---- C:\WINDOWS\Registration
2011-10-25 08:07:26 ----D---- C:\WINDOWS\WinSxS
2011-10-25 07:53:29 ----D---- C:\WINDOWS\twain_32
2011-10-24 20:53:25 ----D---- C:\Documents and Settings\Évi\Application Data\Canon
2011-10-24 16:28:52 ----AC---- C:\WINDOWS\NeroDigital.ini
2011-10-24 10:42:16 ----D---- C:\WINDOWS\pss
2011-10-22 11:48:56 ----D---- C:\Documents and Settings\All Users\Application Data\Norton
2011-10-22 11:33:12 ----D---- C:\WINDOWS\system32\Macromed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-09-06 30808]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-09-06 34392]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-09-06 442200]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-09-06 320856]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-09-06 52568]
R1 intelppm;Intel processzor illesztőprogramja; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files\UltraISO\drivers\ISODrive.sys []
R1 kbdhid;Billentyűzet HID-illesztőprogram; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 pctgntdi;pctgntdi; \??\C:\WINDOWS\system32\drivers\pctgntdi.sys []
R1 setup_9.0.0.722_21.06.2011_11-00drv;setup_9.0.0.722_21.06.2011_11-00drv; C:\WINDOWS\system32\DRIVERS\3609857.sys [2009-10-09 315408]
R1 WS2IFSL;Windows Socket 2.0 - nem IFS-t szolgáltató támogatási környezet; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-26 12032]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.2.0.3; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2009-10-09 17801]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-09-06 20568]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-09-06 110552]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R2 litsgt;litsgt; C:\WINDOWS\system32\DRIVERS\litsgt.sys [2009-03-30 137344]
R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.3.1.10; C:\WINDOWS\system32\DRIVERS\mdc8021x.sys [2010-02-20 15890]
R2 PCTAppEvent;PCTAppEvent Driver; \??\C:\WINDOWS\system32\drivers\PCTAppEvent.sys []
R2 rspndr;Kapcsolati réteg topológiafelderítési válaszadója; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2006-11-08 62336]
R2 tansgt;tansgt; C:\WINDOWS\system32\DRIVERS\tansgt.sys [2009-03-30 12032]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2002-04-01 4816]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-05-03 1540608]
R3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys [2010-01-14 223128]
R3 E1000;Intel(R) PRO/1000 Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1000325.sys [2007-03-25 171416]
R3 hidusb;Microsoft HID osztályú illesztőprogram; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Egér HID-illesztőprogram; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-26 12160]
R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver; \??\C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys []
R3 pctNDIS;PC Tools Driver; C:\WINDOWS\system32\DRIVERS\pctNdis.sys [2010-07-08 57536]
R3 pctplfw;pctplfw; \??\C:\WINDOWS\system32\drivers\pctplfw.sys []
R3 Point32;Microsoft IntelliPoint Filter Driver; C:\WINDOWS\system32\DRIVERS\point32.sys [2009-11-11 27744]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-26 5888]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2002-12-19 539008]
R3 usbccgp;Microsoft USB általános szülő-illesztőprogram; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 bővített állomásvezérlő miniport illesztőprogramja; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2-engedélyezett hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Microsoft USB univerzális állomásvezérlő miniport illesztőprogramja; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 1289918drv;1289918drv; C:\WINDOWS\system32\DRIVERS\1289918drv.sys [2011-07-12 475736]
S3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:\WINDOWS\system32\drivers\ialmsbw.sys [2003-03-13 112288]
S3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:\WINDOWS\system32\drivers\ialmkchw.sys [2003-03-13 78496]
S3 ATHFMWDL;NETGEAR WPN111 Bootloader driver; C:\WINDOWS\System32\Drivers\athwpn.sys [2004-10-14 43392]
S3 catchme;catchme; \??\C:\DOCUME~1\VIBBDC~1\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Feliratdekódoló; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 cxbu0wdm;CardMan 3x21; C:\WINDOWS\system32\DRIVERS\cxbu0wdm.sys [2009-06-24 114304]
S3 DNINDIS5;DNINDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\DNINDIS5.SYS []
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2003-03-13 90395]
S3 MSTEE;Microsoft Streaming Tee/Sink - Sink átalakító; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI kodek; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV-/videokapcsolat; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbbus;LGE Mobile Composite USB Device; C:\WINDOWS\system32\DRIVERS\lgusbbus.sys []
S3 USBCM;Scientific Atlanta USB Cable Modem Driver; C:\WINDOWS\system32\DRIVERS\Sacm2K.sys [2004-06-10 15429]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgusbdiag.sys []
S3 USBModem;LGE Mobile USB Modem; C:\WINDOWS\system32\DRIVERS\lgusbmodem.sys []
S3 usbprint;Microsoft USB PRINTER osztály; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;USB-képolvasó illesztőprogramja; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;USB háttértár illesztőprogramja; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WPN111;Wireless USB 2.0 Adapter with RangeMax Service; C:\WINDOWS\system32\DRIVERS\WPN111.sys [2005-01-07 286720]
S3 WSTCODEC;World Standard Teletext kodek; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-04-16 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-04-16 82944]
S4 Sr;Rendszer-helyreállító szűrő illesztőprogramja; C:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-14 73472]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-05-03 413696]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-09-06 44768]
R2 ezSharedSvc;Easybits Shared Services for Windows; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 fsssvc;Windows Live Családbiztonság szolgáltatás; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-04-10 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2011-01-24 286000]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-07-27 249136]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-05-03 520192]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 nosGetPlusHelper;getPlus(R) Helper 3004; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;A Windows Media Player hálózatmegosztási szolgáltatása; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-10 919040]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------


pén. nov. 18, 2011 15:00
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Szia
Tedd ide az RSIT logjat
http://www.virus-stell.com/2010/04/rsit.html


pén. nov. 18, 2011 11:55
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Szia Stell!
Lenne egy kis gondom ami nem egészen vírus,legalábbis én úgy gondolom,de a te hozzáértésedben bízom.
Amikor letöltök egy játékot a netről és elindítom nem jelenik meg semmi.
Először azt gondoltam hogy magával a játékkal van a gond és próbáltam törölni de azt írta,hogy nem törölhető mert használatban van.Beléptem a feladatkezelőbe,és a folyamatoknál valóban fut a játék,ha ott leállítom utána már törölhető.Sajnos ez több játéknál is így van.
Talán valamit elállítottam a gépen véletlenül,vagy mégis valami vírus,ha tudsz kérlek segíts.
Nem sürgős a dolog de kicsit idegesít. :? Előre is köszönöm:Évi


pén. nov. 18, 2011 11:22
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Ok, akkor mar nem babraljuk, ha renben van,
Nincsen mit
Udc.


szer. szept. 07, 2011 8:03
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Na végre itt vagyok,mert délután csak egy rövid időre tudtam haza ugrani.
Most már sokkal jobb a helyzet,minden jobban működik mint délután,csak akkor nem volt időm jobban utána nézni.
Délután az újraindításkor ugyanolyan lassan adta be a böngészőt /Kb 3perc/,ezért gondoltam hogy nincs változás.
Most viszont amikor bekapcsoltam már rendesen működött,és a mappák is egyből megnyithatók.
Köszönöm,hogy szakítottál rám időt tegnap olyan későn,és újra megoldottuk a problémát!


kedd szept. 06, 2011 19:38
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
No csak ird le hogy mi a lassu,
tehat oldalak megnyittassa, vagy mi a csoda.


kedd szept. 06, 2011 16:38
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Szia!
Megcsináltam,de csak csökkentett módban működött,és sajnos semmi változás

All processes killed
========== OTL ==========
Error: Unable to stop service uzi3ndu1!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\uzi3ndu1 deleted successfully.
C:\WINDOWS\system32\drivers\uzi3ndu1.sys moved successfully.
Service 36098571 stopped successfully!
Service 36098571 deleted successfully!
C:\WINDOWS\system32\drivers\36098571.sys moved successfully.
Prefs.js: "Bigpoint Games HU Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2944474&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\zh-TW\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\zh-TW folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\zh-CN\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\zh-CN folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\sv-SE\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\sv-SE folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\ko-KR\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\ko-KR folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\ja-JP\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\ja-JP folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\it-IT\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\it-IT folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\fr-FR\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\fr-FR folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\es-ES\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\es-ES folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\en-US\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\en-US folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\de-DE\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale\de-DE folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\locale folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\content\ffjcext folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome\content folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}\chrome folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions folder moved successfully.
C:\Documents and Settings\GreenHemp\Start Menu\Programs\Indítópult\setup_9.0.0.722_21.06.2011_11-00.lnk moved successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:ECF3C50F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:587F3582 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:87A3A233 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:C2F24DB5 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:EB68CA55 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:5520ED93 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:DAB09BDB deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:2AF322BF deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:E5B07840 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:6E2D80C8 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:6A0A47E7 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:EDC284A8 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:C31F31E6 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:16F4BC64 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:164561C8 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:4C3D5A8B deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:F591490A deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:469C6C73 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:BFED3AFF deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:2652902F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:2C250258 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:FBFC061F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:F7370879 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:B1FBBD09 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:1663E41B deleted successfully.
========== FILES ==========
< ipconfig /flushdns /c >
No captured output from command...
C:\Documents and Settings\Évi\Asztal\vírus\cmd.bat deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: GreenHemp
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: Vendég
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Évi
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 64538 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 37995499 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 470 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 1062 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 36,00 mb


OTL by OldTimer - Version 3.2.20.2 log created on 09062011_170619

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...


kedd szept. 06, 2011 16:19
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Futtasd az OTL,,programot, allol az ablakjaba masold be a textet, es most klikelj a RUNFIX>.gombra, a logot a restart utan tedd ide,es majd ird meg ha van e javulas.

Kód:
:OTL
DRV - [2011.06.21 11:08:07 | 000,011,264 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\uzi3ndu1.sys -- (uzi3ndu1)
DRV - [2009.09.25 17:59:42 | 000,128,016 | ---- | M] (Kaspersky Lab) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\36098571.sys -- (36098571)
FF - prefs.js..browser.search.defaultthis.engineName: "Bigpoint Games HU Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2944474&SearchSource=3&q={searchTerms}"
2011.06.19 11:07:28 | 000,000,937 | ---- | M] () -- C:\Documents and Settings\Évi\Application Data\Mozilla\Firefox\Profiles\dtyra91o.default\searchplugins\conduit.xml
[2011.08.19 17:23:30 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
File not found (No name found) --
O4 - Startup: C:\Documents and Settings\GreenHemp\Start Menu\Programs\Indítópult\setup_9.0.0.722_21.06.2011_11-00.lnk = File not found
@Alternate Data Stream - 174 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:ECF3C50F
@Alternate Data Stream - 173 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:587F3582
@Alternate Data Stream - 167 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:87A3A233
@Alternate Data Stream - 143 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C2F24DB5
@Alternate Data Stream - 141 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:EB68CA55
@Alternate Data Stream - 139 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5520ED93
@Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DAB09BDB
@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2AF322BF
@Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:E5B07840
@Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6E2D80C8
@Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6A0A47E7
@Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:EDC284A8
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C31F31E6
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:16F4BC64
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:164561C8
@Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:4C3D5A8B
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F591490A
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:469C6C73
@Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:BFED3AFF
@Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2652902F
@Alternate Data Stream - 114 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2C250258
@Alternate Data Stream - 111 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:FBFC061F
@Alternate Data Stream - 111 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F7370879
@Alternate Data Stream - 105 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:B1FBBD09
@Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:1663E41B
:Files
ipconfig /flushdns /c
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


kedd szept. 06, 2011 8:39
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
< MD5 for: TCPIP.SYS >
[2008.06.20 12:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.04.13 21:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 18:02:31 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=B0DDDFC8361952B956EF9475244F40BD -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 18:02:31 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=B0DDDFC8361952B956EF9475244F40BD -- C:\WINDOWS\system32\userinit.exe
[2004.08.17 16:48:34 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=B722651FB16A7777E885711DB94571DA -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe

< MD5 for: WINLOGON.EXE >
[2008.04.14 18:02:32 | 000,509,952 | ---- | M] (Microsoft Corporation) MD5=15D1D956D9F01E51E6623EDB31EA43B6 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 18:02:32 | 000,509,952 | ---- | M] (Microsoft Corporation) MD5=15D1D956D9F01E51E6623EDB31EA43B6 -- C:\WINDOWS\system32\winlogon.exe
[2004.08.17 16:48:36 | 000,504,320 | ---- | M] (Microsoft Corporation) MD5=63E65D180BB0607B7240E700D2F73EAD -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe

< MD5 for: WS2_32.DLL >
[2004.08.17 16:47:38 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=AF3CC3CB92FB06A47CE979FB9D2CA127 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll
[2008.04.14 18:02:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=EA551E1AB5BA99DA3397517BDD278E94 -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 18:02:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=EA551E1AB5BA99DA3397517BDD278E94 -- C:\WINDOWS\system32\ws2_32.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2008.08.19 12:41:55 | 000,090,112 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2008.08.19 12:41:55 | 000,651,264 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2008.08.19 12:41:55 | 000,421,888 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
No captured output from command...

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
No captured output from command...

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
No captured output from command...

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2011.09.05 17:17:59 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl

========== Alternate Data Streams ==========

@Alternate Data Stream - 174 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:ECF3C50F
@Alternate Data Stream - 173 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:587F3582
@Alternate Data Stream - 167 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:87A3A233
@Alternate Data Stream - 143 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C2F24DB5
@Alternate Data Stream - 141 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:EB68CA55
@Alternate Data Stream - 139 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5520ED93
@Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DAB09BDB
@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2AF322BF
@Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:E5B07840
@Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6E2D80C8
@Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6A0A47E7
@Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:EDC284A8
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C31F31E6
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:16F4BC64
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:164561C8
@Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:4C3D5A8B
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F591490A
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:469C6C73
@Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:BFED3AFF
@Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2652902F
@Alternate Data Stream - 114 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2C250258
@Alternate Data Stream - 111 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:FBFC061F
@Alternate Data Stream - 111 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:F7370879
@Alternate Data Stream - 105 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:B1FBBD09
@Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:1663E41B

< End of report >
OTL Extras logfile created on: 2011.09.05. 22:30:19 - Run 3
OTL by OldTimer - Version 3.2.20.2 Folder = C:\Documents and Settings\Évi\Asztal\vírus
Windows XP Professional Edition Szervizcsomag 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000040E | Country: Magyarország | Language: HUN | Date Format: yyyy.MM.dd.

511,00 Mb Total Physical Memory | 305,00 Mb Available Physical Memory | 60,00% Memory free
1,00 Gb Paging File | 1,00 Gb Available in Paging File | 90,00% Paging File free
Paging file location(s): C:\pagefile.sys 765 765 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74,52 Gb Total Space | 40,96 Gb Free Space | 54,97% Space Free | Partition Type: NTFS

Computer Name: XY-0C1729ADF323 | User Name: Évi | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[HKEY_USERS\S-1-5-21-1659004503-602162358-725345543-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" = C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync -- (Microsoft Corporation)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01CBFCE7-95AD-40F3-BC63-C46EFB2FC9C4}" = Pirates of the Caribbean - At Worlds End
"{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}" = VC 9.0 Runtime
"{05A083F7-6872-488E-834A-8E239BD29DFC}" = Windows Live Toolbar
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP160" = Canon MP160
"{1C4551A6-4743-4093-91E4-1477CD655043}" = NVIDIA PhysX
"{1D6FB37A-CBCA-11D6-8940-0002A5E32BEF}" = Piglet's Big Game
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live feltöltőeszköz
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{257A92C3-7E41-4678-9144-6920F4289D0F}" = Windows Live Messenger
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java(TM) 6 Update 13
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{29D851C2-048C-4B5E-8D1F-25D473342BB5}" = ScanSoft OmniPage SE 4.0
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{350C940e-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{408A2284-6037-46D9-8EA5-D5173CED3DB3}" = Windows Live Fotótár
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{61993981-97B0-4D1D-8AD8-C32261212DED}" = Chicken Little
"{7057ABC2-EFF3-4E43-9806-8BCB6EEA9FE6}" = Microsoft IntelliPoint 7.1
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{79449B16-5C47-4C4D-87CE-7E141572C8EE}" = Windows Live bejelentkezési segéd
"{7F34A21F-2DEB-4598-BB19-611D6BD24271}" = Managed DirectX (0901)
"{7F9783DE-C0E9-4971-AE44-D34A2E03F877}" = Windows Live Writer
"{85309D89-7BE9-4094-BB17-24999C6118FC}" = ArcSoft PhotoStudio 5.5
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel(R) Extreme Graphics Driver
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8E5233E1-7495-44FB-8DEB-4BE906D59619}" = Junk Mail filter update
"{9011040E-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90120000-0020-040E-0000-0000000FF1CE}" = Kompatibilitási csomag a 2007-es Office rendszerhez
"{928B06E4-DDAA-476A-926A-641620326327}" = Microsoft Search Enhancement Pack
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{99A98C71-A900-44E7-AD98-70E6368FB4D0}" = Windows Live Essentials
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A4CBCF09-0C7E-40AA-0080-34B8A5CFE7FA}" = Harry Potter and the Prisoner of Azkaban(TM)
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AB49B509-8FCA-45E6-9FB9-9E4AEEB8F148}" = System Requirements Lab CYRI
"{AC76BA86-7AD7-1033-7B44-A94000000001}" = Adobe Reader 9.4.5
"{B489D5F8-D960-4399-9286-C59BF21991B5}" = Brother Bear
"{B94C6815-7BCC-4124-AC39-9208A06FFFA7}" = Disney-Pixar Ratatouille
"{B9566800-04FD-4567-9F83-2CE18E451AA7}" = Windows Live Családbiztonság
"{BBBF4CFE-9D26-4D93-A869-B2B021B3CA85}" = Intel(R) PRO Network Connections 12.2.41.0
"{BC0AEB49-94F7-4C0D-9ABC-AB45D32A6366}" = Windows Live Mail
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{E24DCAFE-AAB7-40E4-9FB1-2650A71409AE}" = Operation Pridelands
"{E2883E8F-472F-4fb0-9522-AC9BF37916A7}" = Adobe Download Manager
"{EA9FAF16-0E5C-42C4-9742-9AF8D5F6D69B}" = ATI Catalyst Control Center
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F1566481-372B-422E-8181-ABAA88A80FC1}" = Windows Live Sync
"{F568B133-170C-4818-B06A-712C6D91B9F7}" = Zoo Tycoon 2 - Dino Danger Pack
"A Bug's Life" = A Bug's Life Action Game
"AC3Filter_is1" = AC3Filter 1.63b
"Adobe AIR" = Adobe AIR
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"All ATI Software" = ATI - Software Uninstall Utility
"ATI Display Driver" = ATI Display Driver
"avast" = avast! Free Antivirus
"Battle.net" = Battle.net
"BFGC" = Big Fish Games: Game Manager
"Bus Driver 1.00" = Bus Driver 1.00
"Canon MP160 Felhasználói regisztráció" = Canon MP160 Felhasználói regisztráció
"CCleaner" = CCleaner
"Defraggler" = Defraggler
"Dinosaur" = Disney's Dinosaur
"DivX Setup.divx.com" = DivX Setup
"Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint
"Easy-WebPrint" = Easy-WebPrint
"ESET Online Scanner" = ESET Online Scanner v3
"Free Audio CD Burner_is1" = Free Audio CD Burner version 1.4.8
"Free YouTube Download_is1" = Free YouTube Download version 2.10.35.426
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.9.37.426
"Google Chrome" = Google Chrome
"HijackThis" = HijackThis 2.0.2
"ie8" = Windows Internet Explorer 8
"InstallShield_{F568B133-170C-4818-B06A-712C6D91B9F7}" = Zoo Tycoon 2 - Dino Danger Pack
"Jungle Book_is1" = Jungle Book
"KLiteCodecPack_is1" = K-Lite Codec Pack 6.3.0 (Full)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware 1.51.1.1800 verzió
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 6.0.1 (x86 hu)" = Mozilla Firefox 6.0.1 (x86 hu)
"MP Navigator 3.0" = Canon MP Navigator 3.0
"Nero7Lite_is1" = Nero 7 Lite v7.5.7.0
"PC Tools Firewall Plus" = PC Tools Firewall Plus 6.0
"PetRacer" = Pet Racer
"QuickTime" = QuickTime
"Revo Uninstaller" = Revo Uninstaller 1.92
"Sandlot Games Client Services 1.2.2_is1" = Sandlot Games Client Services 1.2.2
"Sandlot Games Client Services_is1" = Sandlot Games Client Services
"Speccy" = Speccy
"Totalcmd" = Total Commander (Remove or Repair)
"UltraISO_is1" = UltraISO Premium V8.66
"Uninstall_is1" = Uninstall 1.0.0.1
"WebSTAR DPX2100 Uninstall" = Scientific Atlanta WebSTAR 2000 series Cable Modem
"WIC" = Windows Imaging Component
"Winamp" = Winamp (remove only)
"Windows XP Service Pack" = Windows XP Service Pack 3
"WiNeTool" = WiNeTool
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archiváló
"Yahoo! Toolbar" = Yahoo! Toolbar
"YInstHelper" = Yahoo! Install Manager
"Zoo Tycoon 1.0" = Microsoft Zoo Tycoon
"Zoo Tycoon Marine Mania and Dinosaur Digs Trial" = Zoo Tycoon Marine Mania and Dinosaur Digs Trial

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 2011.05.15. 14:21:56 | Computer Name = XY-0C1729ADF323 | Source = MsiInstaller | ID = 11311
Description = Termék: Microsoft Office Professional Edition 2003 -- Hiba: 1311.
A(z) C:\MSOCache\All Users\9000040e-6000-11D3-8CFE-0150048383C9\PA561401.CAB forrásfájl
(gyűjtőfájl) nem található. Ellenőrizze, hogy a fájl létezik-e, és hogy van-e hozzáférési
engedélye.

Error - 2011.05.15. 14:22:01 | Computer Name = XY-0C1729ADF323 | Source = MsiInstaller | ID = 1024
Description = Termék: Microsoft Office Professional Edition 2003 - a(z) 'Office
2003-frissítés: 3. szervizcsomag (SP-3): MAINSP3' frissítést nem sikerült telepíteni.
Hibakód 1603. A Windows Installer képes naplófájlokat létrehozni a szoftvercsomagok
telepítése során végzett hibakeresés elősegítésére. A naplózás támogatásának bekapcsolásával
kapcsolatos útmutatásért kattintson a következő hivatkozásra: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 2011.05.17. 5:23:00 | Computer Name = XY-0C1729ADF323 | Source = MsiInstaller | ID = 11311
Description = Termék: Microsoft Office Professional Edition 2003 -- Hiba: 1311.
A(z) C:\MSOCache\All Users\9000040e-6000-11D3-8CFE-0150048383C9\PA561401.CAB forrásfájl
(gyűjtőfájl) nem található. Ellenőrizze, hogy a fájl létezik-e, és hogy van-e hozzáférési
engedélye.

Error - 2011.05.17. 5:23:06 | Computer Name = XY-0C1729ADF323 | Source = MsiInstaller | ID = 1024
Description = Termék: Microsoft Office Professional Edition 2003 - a(z) 'Office
2003-frissítés: 3. szervizcsomag (SP-3): MAINSP3' frissítést nem sikerült telepíteni.
Hibakód 1603. A Windows Installer képes naplófájlokat létrehozni a szoftvercsomagok
telepítése során végzett hibakeresés elősegítésére. A naplózás támogatásának bekapcsolásával
kapcsolatos útmutatásért kattintson a következő hivatkozásra: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 2011.05.18. 0:45:25 | Computer Name = XY-0C1729ADF323 | Source = MsiInstaller | ID = 11311
Description = Termék: Microsoft Office Professional Edition 2003 -- Hiba: 1311.
A(z) C:\MSOCache\All Users\9000040e-6000-11D3-8CFE-0150048383C9\PA561401.CAB forrásfájl
(gyűjtőfájl) nem található. Ellenőrizze, hogy a fájl létezik-e, és hogy van-e hozzáférési
engedélye.

Error - 2011.05.18. 0:45:30 | Computer Name = XY-0C1729ADF323 | Source = MsiInstaller | ID = 1024
Description = Termék: Microsoft Office Professional Edition 2003 - a(z) 'Office
2003-frissítés: 3. szervizcsomag (SP-3): MAINSP3' frissítést nem sikerült telepíteni.
Hibakód 1603. A Windows Installer képes naplófájlokat létrehozni a szoftvercsomagok
telepítése során végzett hibakeresés elősegítésére. A naplózás támogatásának bekapcsolásával
kapcsolatos útmutatásért kattintson a következő hivatkozásra: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 2011.05.24. 4:08:47 | Computer Name = XY-0C1729ADF323 | Source = MsiInstaller | ID = 10005
Description = Product: Microsoft Outlook Web Access Administration Tool -- IIS 5.0
or higher is not installed. The application cannot work without it. Setup cancelled.

Error - 2011.05.24. 4:16:05 | Computer Name = XY-0C1729ADF323 | Source = MsiInstaller | ID = 10005
Description = Product: Microsoft Outlook Web Access Administration Tool -- IIS 5.0
or higher is not installed. The application cannot work without it. Setup cancelled.

Error - 2011.06.05. 13:03:40 | Computer Name = XY-0C1729ADF323 | Source = MsiInstaller | ID = 1023
Description = Termék: Microsoft Office Professional Edition 2003 - a(z) 'Office
2003-frissítés: 3. szervizcsomag (SP-3): MAINSP3' frissítést nem sikerült telepíteni.
Hibakód 1603. További információ a naplófájlban (C:\DOCUME~1\GREENH~1\LOCALS~1\Temp\OHotfix\OHotfix(00001)_Msi.log)
található.

Error - 2011.06.30. 7:44:51 | Computer Name = XY-0C1729ADF323 | Source = crypt32 | ID = 131080
Description = Nem sikerült lekérni az automatikus frissítés segítségével a külső
féltől származó legfelső szintű listát a következőtől: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>.
Hiba: A művelet a határidő túllépése miatt nem lett befejezve.

[ System Events ]
Error - 2011.09.04. 2:19:19 | Computer Name = XY-0C1729ADF323 | Source = Service Control Manager | ID = 7000
Description = A szolgáltatás (PCTAppEvent Driver) a következő hiba következtében
leállt: %%87

Error - 2011.09.04. 2:19:19 | Computer Name = XY-0C1729ADF323 | Source = Service Control Manager | ID = 7000
Description = A szolgáltatás (Windows tűzfal/internetkapcsolat megosztása (ICS))
a következő hiba következtében leállt: %%1083

Error - 2011.09.05. 11:19:19 | Computer Name = XY-0C1729ADF323 | Source = SCardSvr | ID = 602
Description = A WDM-olvasó illesztőprogramjának inicializációja nem tudja megnyitni
az olvasóeszközt: A rendszer nem találja a megadott elérési utat.

Error - 2011.09.05. 11:19:19 | Computer Name = XY-0C1729ADF323 | Source = SCardSvr | ID = 602
Description = A WDM-olvasó illesztőprogramjának inicializációja nem tudja megnyitni
az olvasóeszközt: A rendszer nem találja a megadott elérési utat.

Error - 2011.09.05. 11:20:14 | Computer Name = XY-0C1729ADF323 | Source = Service Control Manager | ID = 7000
Description = A szolgáltatás (PCTAppEvent Driver) a következő hiba következtében
leállt: %%87

Error - 2011.09.05. 11:20:14 | Computer Name = XY-0C1729ADF323 | Source = Service Control Manager | ID = 7000
Description = A szolgáltatás (Windows tűzfal/internetkapcsolat megosztása (ICS))
a következő hiba következtében leállt: %%1083

Error - 2011.09.05. 16:27:54 | Computer Name = XY-0C1729ADF323 | Source = sptd | ID = 262148
Description = Az illesztőprogram belső hibát talált az adatstruktúrájában a következőhöz:
.

Error - 2011.09.05. 16:28:06 | Computer Name = XY-0C1729ADF323 | Source = DCOM | ID = 10005
Description = A DCOM a következő hibát észlelte :"%1084" EventSystem szolgáltatásnak
"" paraméterekkel való indítása közben. Ezért a következő kiszolgálót nem sikerült
futtatni: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2011.09.05. 16:28:49 | Computer Name = XY-0C1729ADF323 | Source = Service Control Manager | ID = 7000
Description = A szolgáltatás (Windows tűzfal/internetkapcsolat megosztása (ICS))
a következő hiba következtében leállt: %%1083

Error - 2011.09.05. 16:28:49 | Computer Name = XY-0C1729ADF323 | Source = Service Control Manager | ID = 7026
Description = A következő boot- vagy rendszerindító illesztőprogram(ok) nem indult(ak)
el: 36098571 Aavmker4 aswSnx aswSP aswTdi Fips intelppm setup_9.0.0.722_21.06.2011_11-00drv
sptd


< End of report >


hétf. szept. 05, 2011 22:13
Profil Privát üzenet küldése
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
[2009.05.23 16:26:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\3rd Eye Solutions
[2011.08.19 20:55:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alawar Stargaze
[2011.08.07 15:55:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AlawarWrapper
[2010.02.25 10:03:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2011.08.24 14:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Avalon-Legends-Solitaire
[2011.04.28 11:39:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2011.04.13 10:29:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Beanbag Studios
[2011.08.19 15:25:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Big Fish Games
[2009.12.31 15:00:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BOONTY
[2011.01.27 14:01:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\boost_interprocess
[2010.12.21 14:36:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Buried In Time
[2010.01.28 10:28:01 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2010.12.28 15:57:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Casual Arts
[2011.06.27 23:09:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Cateia Games
[2009.03.19 17:55:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Crenetic
[2010.09.04 15:11:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2011.06.02 17:11:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Deep Shadows
[2008.10.04 11:02:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Disney Interactive
[2009.04.07 07:45:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DivoGames
[2011.02.13 11:51:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Dying for Daylight
[2011.08.14 20:49:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Elephant Games
[2011.06.18 16:49:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Enkord
[2011.05.05 15:36:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Far Mills
[2010.09.22 18:48:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Farm Fishes
[2010.08.21 11:01:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FarmFrenzy3_Madagascar
[2010.12.16 21:36:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FarmFrenzy_Rome
[2011.08.14 11:50:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FarmFrenzy_Vikings
[2009.05.26 12:37:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Fashion Finder
[2011.08.15 17:56:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Fenomen Games
[2011.08.15 12:57:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Floodlight Games
[2010.08.28 16:15:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\freshgames
[2011.02.14 14:51:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Fugazo
[2011.08.14 16:27:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Funny Bear Studio
[2010.10.25 09:55:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GameHouse
[2010.02.04 11:28:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GameMill
[2009.06.20 16:40:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GAMESHASTRA
[2011.02.25 18:30:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GestaltGames
[2010.12.07 21:11:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Gogii
[2010.09.04 12:50:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\HideAndSecret3
[2011.08.27 14:49:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\HitPoint Studios
[2011.04.28 17:38:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\incredible express
[2009.03.16 12:23:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Intenium
[2009.03.14 15:38:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\InterAction studios
[2009.10.28 11:36:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Islands
[2011.04.04 10:20:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\iWin
[2010.10.11 19:27:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\iWin Games
[2011.01.05 11:04:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\JollyBear
[2010.03.18 21:13:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Kingdom
[2008.12.01 21:58:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\KranX
[2011.08.27 12:01:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Kristanix Games
[2010.11.25 13:40:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LittleGamesCompany
[2010.03.12 20:57:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MailFrontier
[2011.02.21 21:31:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MarcoPolo
[2009.04.28 16:36:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\mevo
[2010.01.25 10:39:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Million
[2010.10.01 13:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MythPeople
[2008.09.29 14:12:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\n7-89-o9-3r-4t-r9
[2011.01.21 13:27:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Namco
[2010.12.28 19:07:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Particles
[2011.06.22 19:42:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayFirst
[2011.07.29 20:29:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Playrix Entertainment
[2011.02.09 10:37:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PuzzlesByJoe
[2011.04.24 19:10:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\rionix
[2011.03.16 14:55:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Robin Hood
[2010.11.09 10:24:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Rumbic Studio
[2011.02.22 13:27:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sandlot Games
[2010.01.28 10:33:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ScanSoft
[2011.08.02 22:40:17 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\SugarGames
[2011.09.05 20:27:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011.06.27 23:19:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TheFallTrilogyEp3-BF
[2011.01.06 20:22:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TikisLab
[2009.04.19 18:50:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\UClick
[2011.01.11 14:41:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\2monkeys
[2009.11.09 13:29:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Ace
[2011.06.19 11:57:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\AlderGames
[2011.06.19 16:14:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Anarchy
[2011.04.26 09:28:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Anvate Games
[2011.01.24 17:32:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Artogon
[2008.11.28 14:47:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Aveyond II
[2011.06.03 11:22:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Awem
[2011.04.29 16:10:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Az-Art
[2010.11.17 13:06:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Big Fish Games
[2010.12.12 17:19:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\BlamGames
[2011.01.09 14:43:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Blue Tea Games
[2010.12.29 18:12:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Boomzap
[2009.03.05 22:57:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\BrandX Games
[2010.08.16 17:09:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Buena Vista Games
[2008.11.01 14:48:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Buena Vista Games Demos
[2009.03.10 10:11:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Burdaloo
[2010.07.07 14:12:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Canon
[2010.12.28 15:57:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Casual Arts
[2011.04.28 13:14:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\CheckPoint
[2008.12.30 12:21:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Chicken Chase
[2008.11.02 10:29:00 | 000,000,000 | RH-D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Chromeflower
[2009.01.30 18:16:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Coyotes Tale
[2008.11.02 10:28:43 | 000,000,000 | RH-D | M] -- C:\Documents and Settings\GreenHemp\Application Data\CrystalSpace
[2010.09.04 15:33:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\DAEMON Tools Lite
[2011.05.13 21:22:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\DailyMagic
[2010.03.12 12:42:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\DarkParablesBriarRose_BFG
[2008.11.15 18:20:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Darwin
[2008.09.25 17:52:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Disney Interactive
[2011.05.23 08:16:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Disney Interactive Studios
[2011.05.14 20:28:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\DVDVideoSoftIEHelpers
[2011.02.13 11:53:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Dying for Daylight
[2011.02.13 11:55:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Dying for Daylight Shared
[2010.11.23 17:22:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\EleFun Games
[2011.05.05 14:41:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Elephant Games
[2011.04.09 17:18:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\EmilyArcher
[2011.04.07 14:26:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Enki Games
[2011.02.07 10:27:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\ERS G-Studio
[2011.02.17 23:28:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\ERS Game Studios
[2008.09.29 14:15:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Eyeblaster
[2009.01.10 17:21:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Fabulous Finds
[2009.03.29 15:19:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\FairyTale
[2011.02.22 17:30:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Farm Mania 2.1
[2010.12.28 19:09:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\FBI
[2010.10.31 17:51:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Floodlight Games
[2010.08.28 16:15:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\freshgames
[2011.05.20 21:56:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Friday's games
[2011.06.09 13:41:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Frogwares
[2011.04.20 10:26:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Funlinker
[2011.04.28 15:07:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Funswitch
[2011.02.21 11:08:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Fuzzy Bug Interactive
[2010.10.25 09:55:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\GameHouse
[2009.02.11 19:43:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Gamelab
[2010.02.04 11:28:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\GameMill
[2009.06.20 16:40:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\GAMESHASTRA
[2011.02.27 17:04:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\GAMGO
[2011.02.25 18:30:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\GestaltGames
[2011.05.13 14:19:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\gogii
[2009.10.25 19:56:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\GTM_Bodie
[2011.05.04 11:08:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\HdO Adventure
[2010.01.15 19:35:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\HighPulse
[2011.03.23 16:40:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\HillStoneAnimationStudios
[2009.04.19 14:01:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\HiT-MM
[2011.02.20 14:37:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\HitPoint Studios
[2010.03.17 12:17:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Ice Age 2
[2011.04.04 10:20:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\iWin
[2010.03.20 21:17:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Jetdogs Studios
[2009.01.28 13:46:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Jetsetter
[2011.02.10 18:42:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Jewel Keepers Easter Island
[2011.01.26 13:37:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\kingdom
[2009.10.22 18:33:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\KlickTock
[2009.12.31 20:09:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\LaJangada
[2011.04.30 17:10:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Lazy Turtle Games
[2010.07.07 16:46:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\LegacyInteractive
[2009.11.09 17:26:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\LEGO Company
[2009.10.18 12:20:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\LG Electronics
[2010.11.25 13:40:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\LittleGamesCompany
[2011.04.25 23:25:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\LucasArts
[2010.11.04 17:16:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\MA2
[2011.04.05 10:21:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\MagicIndie
[2011.03.03 12:14:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\margrave3_full
[2011.05.02 10:49:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\MCBetrayalsofLoveGuide
[2011.02.23 11:34:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\md studio
[2010.11.26 11:26:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Meridian93
[2011.05.26 14:13:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\MumboJumbo
[2011.01.21 13:29:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Namco
[2010.03.13 16:24:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Nevosoft
[2011.04.15 13:20:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Orneon
[2010.11.23 12:06:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\PCToolsFirewallPlus
[2010.12.21 13:46:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Pengu Wars
[2011.01.07 14:15:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Phantasmat_bf_ce1
[2008.12.26 18:25:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Pingus
[2011.04.30 19:19:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\PlayFirst
[2010.10.19 09:29:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\PlayPond
[2009.12.26 15:59:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\PoBros
[2011.03.16 14:55:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Robin Hood
[2009.03.05 21:24:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\SaveThePuppy
[2008.11.24 17:26:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\SBTT
[2010.01.28 10:33:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\ScanSoft
[2009.03.19 16:34:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\ScreenSeven
[2011.03.21 16:16:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\ShadesofDeathStrategyGuide
[2011.04.06 12:39:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\ShamanGS
[2009.04.04 13:26:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\ShinyTales
[2010.02.28 15:14:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Silverback Productions
[2010.12.21 15:58:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Sky Bros
[2011.01.09 18:57:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Spark Plug Games
[2010.12.08 20:33:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Striped Arts
[2010.09.04 13:52:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\SystemRequirementsLab
[2010.09.11 21:49:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Ten Heavens
[2011.01.18 14:45:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\TFS2
[2010.01.12 09:24:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\TheFixerUpper
[2011.02.13 16:08:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Total Eclipse
[2010.02.07 10:09:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Try2
[2009.04.19 18:50:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\UClick
[2010.01.14 15:47:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Uniblue
[2010.11.14 19:47:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\URSE Games
[2010.03.04 18:05:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\uTorrent
[2011.04.06 12:01:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\V-Games
[2011.05.06 08:32:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\VampireSaga
[2010.12.07 09:43:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Vast Studios
[2011.06.03 15:31:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\VendelGAMES
[2010.02.04 13:26:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\VitySoft
[2011.03.22 13:35:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Vogat Interactive
[2010.12.27 16:30:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\VSRevoGroup
[2010.03.10 11:57:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\Wildfire
[2008.12.18 19:45:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\World-LooM
[2009.05.24 12:30:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\GreenHemp\Application Data\_MDLogs
[2011.06.22 09:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Vendég\Application Data\PCToolsFirewallPlus
[2011.08.07 18:38:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Ace
[2011.08.19 20:55:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Alawar Stargaze
[2011.07.29 21:26:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Blue Tea Games
[2011.07.10 23:10:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Boolat Games
[2011.07.27 10:36:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\BrablGames
[2011.07.30 08:21:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Buena Vista Games
[2011.07.24 18:08:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\BULKYPIX
[2011.08.08 12:23:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Canon
[2011.08.24 20:24:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Casual Box
[2011.07.09 16:42:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\CityBus
[2011.08.01 07:31:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Disney Interactive Studios
[2011.08.14 20:49:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Elephant Games
[2011.08.11 22:01:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\ERS Game Studios
[2011.08.15 12:57:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Floodlight Games
[2011.08.19 09:22:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Friday's games
[2011.08.17 20:30:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\GreenSauceGames
[2011.08.31 20:13:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\HdO Adventure
[2011.08.27 14:49:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\HitPoint Studios
[2011.07.10 17:22:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Hoyle
[2011.07.10 17:07:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Hoyle FaceCreator
[2011.07.24 19:35:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Jetdogs Studios
[2011.07.29 15:34:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\MB3
[2011.06.27 22:31:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\mif2000's Hamlet
[2011.06.21 11:14:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\PCToolsFirewallPlus
[2011.06.22 19:42:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\PlayFirst
[2011.07.29 15:33:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\SmashFrenzy3
[2011.07.29 14:13:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\SmashFrenzy4
[2011.08.20 14:09:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Specialbit
[2011.08.19 15:30:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Super-Cow
[2011.07.23 15:05:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\TOMI2.THE GATES OF FATE
[2011.08.21 20:26:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Twilight Games
[2011.07.25 17:37:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\VitySoft

========== Purity Check ==========



========== Custom Scans ==========


< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >

< c:\windows\*.* /U >

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >
[2009.05.23 16:26:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\3rd Eye Solutions
[2010.10.16 13:50:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2011.08.19 20:55:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alawar Stargaze
[2011.08.07 15:55:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AlawarWrapper
[2010.02.25 10:03:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2011.08.24 14:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Avalon-Legends-Solitaire
[2011.04.28 11:39:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2011.04.13 10:29:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Beanbag Studios
[2011.08.19 15:25:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Big Fish Games
[2011.07.15 18:59:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache
[2009.12.31 15:00:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BOONTY
[2011.01.27 14:01:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\boost_interprocess
[2010.12.21 14:36:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Buried In Time
[2010.01.28 10:28:01 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2010.12.28 15:57:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Casual Arts
[2011.06.27 23:09:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Cateia Games
[2009.03.19 17:55:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Crenetic
[2010.09.04 15:11:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2011.06.02 17:11:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Deep Shadows
[2008.10.04 11:02:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Disney Interactive
[2009.04.07 07:45:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DivoGames
[2010.09.12 19:00:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DivX
[2011.02.13 11:51:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Dying for Daylight
[2011.08.14 20:49:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Elephant Games
[2011.06.18 16:49:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Enkord
[2011.05.05 15:36:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Far Mills
[2010.09.22 18:48:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Farm Fishes
[2010.08.21 11:01:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FarmFrenzy3_Madagascar
[2010.12.16 21:36:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FarmFrenzy_Rome
[2011.08.14 11:50:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FarmFrenzy_Vikings
[2009.05.26 12:37:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Fashion Finder
[2011.08.15 17:56:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Fenomen Games
[2011.08.15 12:57:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Floodlight Games
[2010.08.28 16:15:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\freshgames
[2011.02.14 14:51:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Fugazo
[2011.08.14 16:27:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Funny Bear Studio
[2010.10.25 09:55:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GameHouse
[2010.02.04 11:28:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GameMill
[2009.06.20 16:40:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GAMESHASTRA
[2011.02.25 18:30:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GestaltGames
[2010.12.07 21:11:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Gogii
[2011.09.05 21:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Google
[2010.09.04 12:50:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\HideAndSecret3
[2011.08.27 14:49:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\HitPoint Studios
[2011.04.28 17:38:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\incredible express
[2010.01.27 12:49:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\InstallShield
[2009.03.16 12:23:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Intenium
[2009.03.14 15:38:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\InterAction studios
[2009.10.28 11:36:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Islands
[2011.04.04 10:20:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\iWin
[2010.10.11 19:27:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\iWin Games
[2011.01.05 11:04:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\JollyBear
[2010.03.18 21:13:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Kingdom
[2008.12.01 21:58:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\KranX
[2011.08.27 12:01:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Kristanix Games
[2010.11.25 13:40:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LittleGamesCompany
[2010.03.12 20:57:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MailFrontier
[2010.01.14 16:27:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011.02.21 21:31:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MarcoPolo
[2010.09.10 19:53:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\McAfee
[2009.04.28 16:36:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\mevo
[2011.08.29 14:03:48 | 000,000,000 | --SD | M] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2011.08.08 13:47:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Microsoft Games
[2010.01.25 10:39:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Million
[2010.10.01 13:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MythPeople
[2008.09.29 14:12:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\n7-89-o9-3r-4t-r9
[2011.01.21 13:27:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Namco
[2011.08.24 07:54:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Norton
[2010.08.31 08:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NortonInstaller
[2010.10.28 19:08:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NOS
[2010.12.28 19:07:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Particles
[2011.06.22 19:42:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PlayFirst
[2011.07.29 20:29:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Playrix Entertainment
[2011.02.09 10:37:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PuzzlesByJoe
[2008.10.02 14:30:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\QuickTime
[2011.04.24 19:10:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\rionix
[2011.03.16 14:55:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Robin Hood
[2010.11.09 10:24:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Rumbic Studio
[2011.02.22 13:27:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sandlot Games
[2010.01.28 10:33:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ScanSoft
[2011.08.02 22:40:17 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\SugarGames
[2011.09.05 20:27:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011.06.27 23:19:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TheFallTrilogyEp3-BF
[2011.01.06 20:22:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TikisLab
[2009.10.30 13:48:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Trymedia
[2009.04.19 18:50:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\UClick
[2008.08.22 12:03:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WLInstaller
[2008.08.24 12:06:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion

< %ALLUSERSPROFILE%\Application Data\*.exe /s >
[2011.08.17 00:11:18 | 015,826,720 | ---- | M] (Big Fish Games) -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\clientinstaller\bfgsetup_s1_l1.exe
[2010.08.17 03:38:56 | 000,143,392 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\alice-green-fingers-2_s1_l1_gF2719T1L1_d1002915183.exe
[2010.11.10 20:58:44 | 000,143,408 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\buried-in-time_s1_l1_gF5711T1L1_d1145890326.exe
[2010.08.17 03:38:56 | 000,143,392 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\farm-frenzy-3-madagascar_s1_l1_gF5873T1L1_d1002917529.exe
[2011.02.24 20:19:02 | 000,143,336 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\fashion-star-game_s1_l1_gF2332T1L1_d1295195238.exe
[2011.02.24 20:19:02 | 000,143,336 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\incredible-express_s1_l1_gF5424T1L1_d1295214815.exe
[2010.01.06 22:07:24 | 000,143,264 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\janes-zoo_s1_l1_gF5485T1L1_d824707419.exe
[2011.05.12 01:22:10 | 000,143,336 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\nostradamus_s1_l1_gF2880T1L1_d1385735276.exe
[2010.11.10 20:58:44 | 000,143,408 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\pengu-wars_s1_l1_gF6030T1L1_d1145864368.exe
[2011.02.24 20:19:02 | 000,143,336 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\plants-vs-zombies_s1_l1_gF5038T1L1_d1295177536.exe
[2011.02.24 20:19:02 | 000,143,336 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\ride_s1_l1_gF2440T1L1_d1250563326.exe
[2010.11.10 20:58:44 | 000,143,408 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\sky-taxi-3-the-movie_s1_l1_gF6056T1L1_d1145970283.exe
[2011.08.17 00:11:24 | 000,144,504 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\supercow_s1_l1_gF2164T1L1_d1426285410.exe
[2009.09.11 20:13:00 | 000,143,736 | ---- | M] (Big Fish Games) -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\trapped-the-abduction_s1_l1_gF5265T1L1_d708943585.exe
[2011.08.19 15:24:17 | 015,886,064 | ---- | M] (Big Fish Games) -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache\Upgrade\Unpack\bfgsetup_s1_l1.exe
[2010.09.12 18:57:57 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2010.09.12 18:58:25 | 000,057,409 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\ControlPanel\Uninstaller.exe
[2010.09.12 18:58:47 | 000,054,128 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\Converter\Uninstaller.exe
[2010.09.12 18:58:50 | 000,054,153 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2010.09.12 18:58:53 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2010.09.12 19:00:02 | 000,056,765 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2010.09.12 18:58:53 | 000,054,174 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2010.09.12 18:58:57 | 000,057,532 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2010.09.12 18:58:59 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2010.09.12 18:59:00 | 000,057,054 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2010.09.12 18:58:26 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2010.09.12 18:58:23 | 000,052,963 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2010.09.12 18:59:55 | 000,057,691 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\Player\Uninstaller.exe
[2010.09.12 18:58:07 | 000,054,073 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\Qt4.5\Uninstaller.exe
[2010.09.12 18:56:36 | 000,144,696 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\DivX\RunAsUser\RUNASUSERPROCESS.exe
[2010.09.12 18:51:24 | 000,850,200 | ---- | M] (DivX, Inc. ) -- C:\Documents and Settings\All Users\Application Data\DivX\Setup\DivXSetup.exe
[2010.09.12 18:58:44 | 000,054,644 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2010.09.12 18:59:06 | 000,084,063 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\TransferWizard\Uninstaller.exe
[2010.09.12 18:59:56 | 000,053,600 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\Update\Uninstaller.exe
[2010.09.12 19:00:01 | 000,056,997 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\WebPlayer\Uninstaller.exe
[2011.04.06 11:45:50 | 000,523,440 | ---- | M] (Google Inc.) -- C:\Documents and Settings\All Users\Application Data\Google\Google Toolbar\Update\GoogleToolbarInstaller_updater_signed.exe
[2011.07.29 09:35:29 | 009,466,208 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe

< %APPDATA%\*. >
[2011.08.07 18:38:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Ace
[2011.07.03 15:33:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Adobe
[2011.08.19 20:55:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Alawar Stargaze
[2011.06.22 12:29:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\ATI
[2011.07.29 21:26:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Blue Tea Games
[2011.07.10 23:10:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Boolat Games
[2011.07.27 10:36:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\BrablGames
[2011.07.30 08:21:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Buena Vista Games
[2011.07.24 18:08:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\BULKYPIX
[2011.08.08 12:23:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Canon
[2011.08.24 20:24:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Casual Box
[2011.07.09 16:42:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\CityBus
[2011.08.01 07:31:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Disney Interactive Studios
[2011.08.14 20:49:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Elephant Games
[2011.08.11 22:01:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\ERS Game Studios
[2011.08.15 12:57:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Floodlight Games
[2011.08.19 09:22:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Friday's games
[2011.08.18 16:09:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Google
[2011.08.17 20:30:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\GreenSauceGames
[2011.08.31 20:13:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\HdO Adventure
[2011.08.27 14:49:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\HitPoint Studios
[2011.07.10 17:22:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Hoyle
[2011.07.10 17:07:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Hoyle FaceCreator
[2010.08.24 20:13:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Identities
[2011.07.24 19:35:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Jetdogs Studios
[2011.07.03 15:33:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Macromedia
[2011.06.21 15:43:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Malwarebytes
[2011.07.29 15:34:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\MB3
[2011.08.22 20:18:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Media Player Classic
[2011.08.28 19:15:58 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Évi\Application Data\Microsoft
[2011.08.08 13:47:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Microsoft Games
[2011.06.27 22:31:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\mif2000's Hamlet
[2011.06.21 11:49:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Mozilla
[2011.06.21 11:14:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\PCToolsFirewallPlus
[2011.06.22 19:42:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\PlayFirst
[2011.07.29 15:33:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\SmashFrenzy3
[2011.07.29 14:13:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\SmashFrenzy4
[2011.08.20 14:09:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Specialbit
[2011.06.30 11:46:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Sun
[2011.08.19 15:30:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Super-Cow
[2011.07.23 15:05:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\TOMI2.THE GATES OF FATE
[2011.08.21 20:26:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\Twilight Games
[2011.07.25 17:37:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Évi\Application Data\VitySoft

< %APPDATA%\*.exe /s >


< MD5 for: AGP440.SYS >
[2008.04.16 19:58:03 | 016,798,815 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004.08.03 23:07:42 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\$NtServicePackUninstall$\agp440.sys

< MD5 for: ATAPI.SYS >
[2008.04.16 19:58:03 | 016,798,815 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 18:02:08 | 000,605,184 | ---- | M] (Microsoft Corporation) MD5=73D5C3AA8CD7A8FEDC05A6AD6BCFE684 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 18:02:08 | 000,605,184 | ---- | M] (Microsoft Corporation) MD5=73D5C3AA8CD7A8FEDC05A6AD6BCFE684 -- C:\WINDOWS\system32\autochk.exe
[2004.08.17 16:47:44 | 000,605,184 | ---- | M] (Microsoft Corporation) MD5=9E8636075B6F0F16C8724E12EC084F2C -- C:\cmdcons\autochk.exe
[2004.08.17 16:47:44 | 000,605,184 | ---- | M] (Microsoft Corporation) MD5=9E8636075B6F0F16C8724E12EC084F2C -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe

< MD5 for: CDROM.SYS >
[2008.04.16 19:58:03 | 016,798,815 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2007.04.25 14:20:30 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

< MD5 for: CHANGER.SYS >
[2008.04.16 19:58:03 | 016,798,815 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:Changer.sys
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:Changer.sys
[2008.04.13 20:40:58 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=2A5815CA6FFF24B688C01F828B96819C -- C:\WINDOWS\ServicePackFiles\i386\changer.sys
[2008.04.13 20:40:58 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=2A5815CA6FFF24B688C01F828B96819C -- C:\WINDOWS\system32\drivers\changer.sys
[2004.08.04 00:00:14 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=DAF1A8193B6CAF0FB858CADCC5C4AF4A -- C:\WINDOWS\$NtServicePackUninstall$\changer.sys

< MD5 for: CRYPTSVC.DLL >
[2008.04.14 18:01:48 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=13CB7FC794D005D60712FDD9F1362235 -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008.04.14 18:01:48 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=13CB7FC794D005D60712FDD9F1362235 -- C:\WINDOWS\system32\cryptsvc.dll
[2004.08.17 16:46:40 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=98EA924C4C1B0EA53393289D64218822 -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 18:01:50 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4BFA2DC223A814CCD1D07C6A0E26C72B -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 18:01:50 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4BFA2DC223A814CCD1D07C6A0E26C72B -- C:\WINDOWS\system32\eventlog.dll
[2004.08.17 16:46:56 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=9BF16BF2A92E9946C034947E45C6FB4E -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.16 19:44:26 | 001,035,264 | ---- | M] (Microsoft Corporation) MD5=6CF1696892BE31A2EC25072A99E2E3FF -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
[2008.04.14 18:02:16 | 001,035,776 | ---- | M] (Microsoft Corporation) MD5=AD3A8A9E8914439852A98CE48015E237 -- C:\WINDOWS\explorer.exe
[2008.04.14 18:02:16 | 001,035,776 | ---- | M] (Microsoft Corporation) MD5=AD3A8A9E8914439852A98CE48015E237 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe

< MD5 for: HAL.DLL >
[2008.04.16 19:58:03 | 016,798,815 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2008.04.13 20:31:28 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\HAL.DLL
[2008.04.16 19:30:57 | 000,131,712 | ---- | M] (Microsoft Corporation) MD5=F9A83D160C80EE6F45AA577CB101B83F -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll

< MD5 for: ISAPNP.SYS >
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2009.08.08 14:49:02 | 023,900,123 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:isapnp.sys
[2008.04.14 17:40:20 | 000,037,504 | ---- | M] (Microsoft Corporation) MD5=3685529CAA2B14C9632E85E265BA293B -- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
[2008.04.14 17:40:20 | 000,037,504 | ---- | M] (Microsoft Corporation) MD5=3685529CAA2B14C9632E85E265BA293B -- C:\WINDOWS\system32\drivers\isapnp.sys
[2001.10.26 18:17:40 | 000,036,096 | ---- | M] (Microsoft Corporation) MD5=AE9857353A6D45F101C4496789585C25 -- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys
[2001.10.26 14:00:00 | 000,036,096 | ---- | M] (Microsoft Corporation) MD5=AE9857353A6D45F101C4496789585C25 -- C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\isapnp.sys

< MD5 for: LSASS.EXE >
[2004.08.17 16:48:06 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=13C29FBA0388BEF38F06600994FAA2BA -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 18:02:20 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=21844F6DA13ECE4737D0B7524EDEB6EC -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 18:02:20 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=21844F6DA13ECE4737D0B7524EDEB6EC -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2004.08.03 23:14:30 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

< MD5 for: NETLOGON.DLL >
[2008.04.14 18:01:56 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=A792F49B07A36D7F64D236C45BAC4A50 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 18:01:56 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=A792F49B07A36D7F64D236C45BAC4A50 -- C:\WINDOWS\system32\netlogon.dll
[2009.02.06 20:47:21 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=EDA679C0437291C5E283466E91F86F8D -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll

< MD5 for: SCECLI.DLL >
[2008.04.14 18:01:59 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=4F6A0B812BD286E97E26DF3E225ABCFB -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 18:01:59 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=4F6A0B812BD286E97E26DF3E225ABCFB -- C:\WINDOWS\system32\scecli.dll
[2004.08.17 16:47:26 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=DE117DA3508ECAAECEA21901DBA31DAB -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll

< MD5 for: SMSS.EXE >
[2004.08.17 16:48:30 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=6B0B3C8487EA447BDD155FB52222A156 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe
[2008.04.14 18:02:29 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=A03C3BF7E45ECC9775D3CE653086FAA1 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 18:02:29 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=A03C3BF7E45ECC9775D3CE653086FAA1 -- C:\WINDOWS\system32\smss.exe
[2004.08.04 01:56:58 | 000,152,576 | ---- | M] (Microsoft Corporation) MD5=DA5CF1C368B33D75602FD6B3A7F5E0C6 -- C:\cmdcons\SYSTEM32\SMSS.EXE

< MD5 for: SVCHOST.EXE >
[2008.04.14 18:02:30 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=05194D8A92CF7E559C1A38FC134C966A -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 18:02:30 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=05194D8A92CF7E559C1A38FC134C966A -- C:\WINDOWS\system32\svchost.exe
[2004.08.17 16:48:32 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=22D8D9F0F5EBE312A1747D6172205F1B -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe


hétf. szept. 05, 2011 22:02
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Evikem, majd holnap, ma mar nem akarodzik, de tedd ide a teljes naplot, mert nincsen komplet,


hétf. szept. 05, 2011 21:59
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
OTL logfile created on: 2011.09.05. 22:30:19 - Run 3
OTL by OldTimer - Version 3.2.20.2 Folder = C:\Documents and Settings\Évi\Asztal\vírus
Windows XP Professional Edition Szervizcsomag 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000040E | Country: Magyarország | Language: HUN | Date Format: yyyy.MM.dd.

511,00 Mb Total Physical Memory | 305,00 Mb Available Physical Memory | 60,00% Memory free
1,00 Gb Paging File | 1,00 Gb Available in Paging File | 90,00% Paging File free
Paging file location(s): C:\pagefile.sys 765 765 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 74,52 Gb Total Space | 40,96 Gb Free Space | 54,97% Space Free | Partition Type: NTFS

Computer Name: XY-0C1729ADF323 | User Name: Évi | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2011.08.31 19:03:30 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011.08.31 19:03:27 | 000,016,856 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe
PRC - [2011.01.20 14:26:43 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Évi\Asztal\vírus\OTL.exe
PRC - [2008.04.14 18:02:16 | 001,035,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (SafeList) ==========

MOD - [2011.01.20 14:26:43 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Évi\Asztal\vírus\OTL.exe
MOD - [2010.08.23 18:12:51 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- -- (ERSvc)
SRV - [2011.07.04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2010.09.01 15:52:56 | 000,066,112 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper) getPlus(R)
SRV - [2010.07.27 15:46:08 | 000,249,136 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2010.04.28 07:44:02 | 000,704,872 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc)
SRV - [2009.11.09 12:20:14 | 000,818,432 | ---- | M] (PC Tools) [Auto | Stopped] -- C:\Program Files\PC Tools Firewall Plus\FWService.exe -- (PCToolsFirewallPlus)
SRV - [2009.02.22 12:00:00 | 000,129,584 | ---- | M] (EasyBits Sofware AS) [Auto | Stopped] -- C:\WINDOWS\system32\ezsvc7.dll -- (ezSharedSvc)
SRV - [2002.09.20 15:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) [Auto | Stopped] -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe -- (SoundMAX Agent Service (default))


========== Driver Services (SafeList) ==========

DRV - [2011.07.12 23:13:04 | 000,475,736 | ---- | M] (Kaspersky Lab) [File_System | System | Stopped] -- C:\WINDOWS\system32\drivers\1289918drv.sys -- (1289918drv)
DRV - [2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011.07.04 13:35:12 | 000,102,616 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011.07.04 13:32:13 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2011.06.21 11:08:11 | 000,007,168 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\uti3ndu1.sys -- (uti3ndu1)
DRV - [2011.06.21 11:08:07 | 000,011,264 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\uzi3ndu1.sys -- (uzi3ndu1)
DRV - [2010.09.04 15:13:16 | 000,691,696 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010.02.20 15:09:20 | 000,015,890 | ---- | M] (Meetinghouse Data Communications) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\mdc8021x.sys -- (MDC8021X) AEGIS Protocol (IEEE 802.1x)
DRV - [2010.01.14 11:58:27 | 000,223,128 | ---- | M] (DT Soft Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\dtscsi.sys -- (dtscsi)
DRV - [2010.01.13 09:59:28 | 000,115,216 | ---- | M] (PC Tools) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pctplfw.sys -- (pctplfw)
DRV - [2010.01.12 10:34:14 | 000,070,664 | ---- | M] (PC Tools) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys -- (PCTFW-PacketFilter)
DRV - [2010.01.07 13:40:26 | 000,233,136 | ---- | M] (PC Tools) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\pctgntdi.sys -- (pctgntdi)
DRV - [2010.01.07 12:35:06 | 000,058,816 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctNdis.sys -- (pctNDIS)
DRV - [2009.11.23 14:54:20 | 000,088,040 | ---- | M] (PC Tools) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\PCTAppEvent.sys -- (PCTAppEvent)
DRV - [2009.10.22 13:54:18 | 000,037,392 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\36098572.sys -- (36098572)
DRV - [2009.10.09 23:31:10 | 000,315,408 | ---- | M] (Kaspersky Lab) [File_System | System | Stopped] -- C:\WINDOWS\system32\drivers\3609857.sys -- (setup_9.0.0.722_21.06.2011_11-00drv)
DRV - [2009.09.25 17:59:42 | 000,128,016 | ---- | M] (Kaspersky Lab) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\36098571.sys -- (36098571)
DRV - [2009.08.05 23:48:42 | 000,054,752 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr)
DRV - [2009.06.24 12:16:22 | 000,114,304 | ---- | M] (OMNIKEY) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\cxbu0wdm.sys -- (cxbu0wdm)
DRV - [2009.03.30 16:01:15 | 000,137,344 | ---- | M] () [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\litsgt.sys -- (litsgt)
DRV - [2009.03.30 16:01:14 | 000,012,032 | ---- | M] () [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\tansgt.sys -- (tansgt)
DRV - [2009.02.10 18:23:02 | 000,082,320 | ---- | M] (EZB Systems, Inc.) [File_System | System | Stopped] -- C:\Program Files\UltraISO\drivers\ISODrive.sys -- (ISODrive)
DRV - [2008.04.13 20:40:58 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\changer.sys -- (Changer)
DRV - [2008.04.13 20:40:26 | 000,034,688 | ---- | M] (Toshiba Corp.) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\lbrtfdc.sys -- (lbrtfdc)
DRV - [2006.05.03 18:50:42 | 001,540,608 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2005.01.07 11:07:40 | 000,286,720 | ---- | M] (NETGEAR, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WPN111.sys -- (WPN111)
DRV - [2004.10.14 19:24:00 | 000,043,392 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\athwpn.sys -- (ATHFMWDL)
DRV - [2004.06.10 18:42:38 | 000,015,429 | R--- | M] ( ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Sacm2K.sys -- (USBCM)
DRV - [2003.07.24 12:10:34 | 000,017,149 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\DNINDIS5.sys -- (DNINDIS5)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/

IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/

IE - HKU\S-1-5-21-1659004503-602162358-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\S-1-5-21-1659004503-602162358-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.defaultthis.engineName: "Bigpoint Games HU Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2944474&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.startup.homepage: "http://www.google.hu/"
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {27182e60-b5f3-411c-b545-b44205977502}:1.0
FF - prefs.js..extensions.enabledItems: wrc@avast.com:20110101

FF - HKLM\software\mozilla\Firefox\Extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2011.01.19 00:38:19 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011.07.05 12:25:47 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 6.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.08.31 19:03:30 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 6.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.06.27 20:40:50 | 000,000,000 | ---D | M]

[2011.06.21 22:35:39 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Évi\Application Data\Mozilla\Extensions
[2011.07.29 09:01:15 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Évi\Application Data\Mozilla\Firefox\Profiles\dtyra91o.default\extensions
[2011.06.21 23:27:42 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Documents and Settings\Évi\Application Data\Mozilla\Firefox\Profiles\dtyra91o.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2011.06.19 11:07:28 | 000,000,937 | ---- | M] () -- C:\Documents and Settings\Évi\Application Data\Mozilla\Firefox\Profiles\dtyra91o.default\searchplugins\conduit.xml
[2011.08.19 17:23:30 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
File not found (No name found) --
[2009.04.10 12:39:28 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011.08.31 19:03:30 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll
[2011.08.12 06:44:53 | 000,002,933 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\bluu.xml
[2011.08.12 06:44:53 | 000,000,980 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-hu.xml
[2011.08.12 06:44:53 | 000,001,628 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\sztaki-en-hu.xml
[2011.08.12 06:44:53 | 000,000,974 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\vatera.xml
[2011.08.12 06:44:53 | 000,001,189 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-hu.xml

O1 HOSTS File: ([2011.04.28 08:35:00 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation)
O2 - BHO: (EWPBrowseObject Class) - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll ()
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Easy-WebPrint) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll ()
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-1659004503-602162358-725345543-1004\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O4 - HKLM..\Run: [00PCTFW] C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe (PC Tools)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - Startup: C:\Documents and Settings\GreenHemp\Start Menu\Programs\Indítópult\setup_9.0.0.722_21.06.2011_11-00.lnk = File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktopCleanupWizard = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideFastUserSwitching = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyDocs = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyDocs = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyDocs = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyDocs = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-21-1659004503-602162358-725345543-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1659004503-602162358-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 43 01 00 00 [binary data]
O7 - HKU\S-1-5-21-1659004503-602162358-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyDocs = 1
O7 - HKU\S-1-5-21-1659004503-602162358-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-21-1659004503-602162358-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-21-1659004503-602162358-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1659004503-602162358-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: Küldés blogba - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Küldés blogba a Windows Live Writer programmal - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O16 - DPF: {226ACC34-3194-40E2-9AE8-834FCFE9E80D} http://games.bigfishgames.com/en_myster ... .0.0.8.cab (CPlayFirstmsiControl Object)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files\Yahoo!\Common\yinsthelper.dll (YInstStarter Class)
O16 - DPF: {4DCA1E08-4147-4A3D-8CA6-E095DF189FAB} http://games.bigfishgames.com/en_nights ... .0.0.9.cab (CPlayFirstNightshiftControl Object)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {8FA2192F-B95D-40E3-898F-8D7ABB8E00D0} http://games.bigfishgames.com/en_myster ... uncher.cab (SpinTop Games Launcher)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)
O24 - Desktop Components:0 (Jelenlegi saját honlap) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Évi\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Évi\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: ezSharedSvc - C:\WINDOWS\system32\ezsvc7.dll (EasyBits Sofware AS)

Drivers32: MIDI1 - C:\WINDOWS\System32\Syncor11.dll (SoundMAX)
Drivers32: msacm.ac3acm - C:\WINDOWS\System32\ac3acm.acm (fccHandler)
Drivers32: msacm.ac3filter - C:\WINDOWS\System32\ac3filter.acm ()
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lameacm - C:\WINDOWS\System32\lameACM.acm (http://www.mp3dev.org/)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.VDOM - C:\WINDOWS\System32\vdowave.drv (VDOnet LTD..)
Drivers32: VIDC.XVID - C:\WINDOWS\System32\xvidvfw.dll ()
Drivers32: vidc.yv12 - C:\WINDOWS\System32\yv12vfw.dll (www.helixcommunity.org)

CREATERESTOREPOINT
Error starting restore point: The function was called in safe mode.
Error closing restore point: The sequence number is invalid.

========== Files/Folders - Created Within 7 Days ==========

[2011.09.05 22:23:38 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Évi\Recent
[2011.09.05 20:34:09 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.09.05 20:34:00 | 000,000,000 | ---D | C] -- C:\rsit
[2010.08.19 18:41:23 | 000,015,429 | R--- | C] ( ) -- C:\WINDOWS\System32\drivers\Sacm2K.sys

========== Files - Modified Within 7 Days ==========

[2011.09.05 22:27:23 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.09.05 20:30:41 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2011.09.05 17:17:59 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.09.04 08:24:12 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Asztal\Google Chrome.lnk
[2011.09.03 16:22:40 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Asztal\CCleaner.lnk
[2011.08.31 09:06:51 | 000,000,290 | RHS- | M] () -- C:\boot.ini

========== Files Created - No Company Name ==========

[2011.08.12 14:50:59 | 000,005,120 | ---- | C] () -- C:\Documents and Settings\Évi\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.06.21 14:18:00 | 000,086,489 | ---- | C] () -- C:\Documents and Settings\Évi\Local Settings\Application Data\FASTWiz.log
[2011.06.21 11:08:11 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\uti3ndu1.sys
[2011.06.21 11:08:07 | 000,011,264 | ---- | C] () -- C:\WINDOWS\System32\drivers\uzi3ndu1.sys
[2011.04.26 14:34:40 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2011.04.14 10:40:51 | 000,127,488 | ---- | C] () -- C:\WINDOWS\System32\nzMedia.dll
[2010.12.26 15:08:57 | 000,069,632 | R--- | C] () -- C:\WINDOWS\System32\xmltok.dll
[2010.12.26 15:08:57 | 000,036,864 | R--- | C] () -- C:\WINDOWS\System32\xmlparse.dll
[2010.09.12 19:03:04 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2010.09.12 19:03:03 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2010.09.12 19:02:47 | 000,790,528 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2010.09.12 19:02:47 | 000,134,144 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010.09.12 19:02:46 | 000,108,032 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2010.08.29 16:33:21 | 000,012,672 | ---- | C] () -- C:\WINDOWS\System32\drivers\packet.sys
[2010.08.19 18:41:24 | 000,053,693 | R--- | C] () -- C:\WINDOWS\UNDPX2K.sys
[2010.03.09 13:51:03 | 000,002,945 | ---- | C] () -- C:\WINDOWS\7thlevel.ini
[2010.01.28 10:34:00 | 000,000,419 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI
[2009.12.04 22:58:07 | 000,000,169 | ---- | C] () -- C:\WINDOWS\settings.ini
[2009.10.09 19:01:00 | 000,651,264 | ---- | C] () -- C:\WINDOWS\System32\libeay32.dll
[2009.10.09 19:01:00 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\ssleay32.dll
[2009.06.19 10:47:24 | 000,000,119 | ---- | C] () -- C:\WINDOWS\NNS.INI
[2009.03.30 16:01:15 | 000,137,344 | ---- | C] () -- C:\WINDOWS\System32\drivers\litsgt.sys
[2009.03.30 16:01:14 | 000,012,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\tansgt.sys
[2009.03.09 12:15:09 | 000,000,031 | ---- | C] () -- C:\WINDOWS\sav.ini
[2009.01.05 18:12:03 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2008.12.02 20:07:33 | 000,000,919 | ---- | C] () -- C:\WINDOWS\cncscore.ini
[2008.11.16 11:40:28 | 000,000,062 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2008.10.07 10:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
[2008.10.07 10:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
[2008.09.24 15:50:42 | 000,000,126 | ---- | C] () -- C:\Program Files\Mk4.reg
[2008.09.24 15:50:36 | 024,096,506 | ---- | C] () -- C:\Program Files\filesys.dat
[2008.09.11 16:25:11 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008.08.25 19:43:07 | 000,000,280 | ---- | C] () -- C:\WINDOWS\SIERRA.INI
[2008.08.20 11:16:40 | 000,007,680 | ---- | C] () -- C:\WINDOWS\disney.ini
[2008.08.20 11:16:30 | 000,000,765 | ---- | C] () -- C:\WINDOWS\disneysy.ini
[2008.08.19 12:44:09 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008.08.19 11:16:33 | 000,000,044 | ---- | C] () -- C:\WINDOWS\System32\msssc.dll
[2008.08.19 11:10:36 | 000,000,388 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008.08.19 11:01:14 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2008.08.19 10:59:37 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\BCGPOleAcc.dll
[2008.08.19 10:59:19 | 000,001,457 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2008.03.10 15:01:33 | 000,000,217 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2007.11.05 06:02:53 | 000,103,608 | ---- | C] () -- C:\WINDOWS\System32\bass.dll
[2005.11.03 16:01:30 | 000,286,208 | ---- | C] () -- C:\WINDOWS\System32\cncs232.dll
[2003.04.10 13:01:36 | 000,005,581 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI

========== LOP Check ==========


hétf. szept. 05, 2011 21:54
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
:D Csinald csokkentet modban.


hétf. szept. 05, 2011 21:19
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Sajnálom,de valami nem stimmel mert az OTL még mindig dolgozik,illetve most már le is fagyott.


hétf. szept. 05, 2011 21:09
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
szia
klik start>vezerlo pult>.hozza vagy leszedni programokat, es most, mindenut ahol latol a programok kozot TOOLBAR, letelepiteni a geprol,.
Aztan tedd ide az OTL logjat.
Letolteni az asztalra>OTListIt2>> http://oldtimer.geekstogo.com/OTL.exe
-Futatni
- file age at valtoztani 30 > 7day ra.
-bepipazni
-Scan all users.
-Lop check.
-Purity check.
-v sekciobaExtra Registry>bepotyozni>Use SafeList
-az ablakjaba -customscan/fixes masold be a textet-es klik RUNSCAN
-5-10 perc mulva add logot tedd ide
-OTL.txt (az asztalon lesz).
-exras.txt-a talcan lesz.
Kód:
netsvcs
drivers32
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
c:\windows\*.* /U
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
ahcix86s.sys
nvrd32.sys
symmpi.sys
adp3132.sys
mv61xx.sys
nvraid.sys
ndis.sys
winlogon.exe
explorer.exe
userinit.exe
lsass.exe
svchost.exe
smss.exe
hal.dll
ws2_32.dll
tcpip.sys
cryptsvc.dll
Changer.sys
JakNDis.sys
isapnp.sys
cdrom.sys
autochk.exe
/md5stop
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
CREATERESTOREPOINT


hétf. szept. 05, 2011 20:00
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
info.txt logfile of random's system information tool 1.06 2011-09-05 20:34:58

======Uninstall list======

-->MsiExec /X{1C4551A6-4743-4093-91E4-1477CD655043}
-->MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
A Bug's Life Action Game-->C:\WINDOWS\IsUn040e.exe -fC:\PROGRA~1\DISNEY~2\ABUG'S~1\DeIsL1.isu
AC3Filter 1.63b-->"C:\Program Files\AC3Filter\unins000.exe"
Acrobat.com-->MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}
Adobe AIR-->c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Download Manager-->"C:\WINDOWS\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper_3004.dll",Uninstall /IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil10t_Plugin.exe -maintain plugin
Adobe Reader 9.4.5-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A94000000001}
Adobe Shockwave Player 11.6-->"C:\WINDOWS\system32\Adobe\Shockwave 11\uninstaller.exe"
ArcSoft PhotoStudio 5.5-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{85309D89-7BE9-4094-BB17-24999C6118FC}\SETUP.EXE" -l0x9
ATI - Software Uninstall Utility-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Catalyst Control Center-->MsiExec.exe /I{EA9FAF16-0E5C-42C4-9742-9AF8D5F6D69B}
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
avast! Free Antivirus-->C:\Program Files\AVAST Software\Avast\aswRunDll.exe "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup
Battle.net-->C:\WINDOWS\bnetunin.exe
Big Fish Games: Game Manager-->C:\Program Files\bfgclient\Uninstall.exe
Brother Bear-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B489D5F8-D960-4399-9286-C59BF21991B5}\setup.exe" -l0x9 Brother Bear
Bus Driver 1.00-->C:\Program Files\Games\Bus Driver\Uninstall.exe
Canon MP Navigator 3.0-->"C:\Program Files\Canon\MP Navigator 3.0\Maint.exe" /UninstallRemove C:\Program Files\Canon\MP Navigator 3.0\uninst.ini
Canon MP160 Felhasználói regisztráció-->C:\Program Files\Canon\IJEREG\MP160\UNINST.EXE
Canon MP160-->"C:\WINDOWS\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP160\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP160 /L0x000e
Canon Utilities Easy-PhotoPrint-->C:\Program Files\Canon\Easy-PhotoPrint\uninst.exe uninst.ini
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
Chicken Little-->C:\Program Files\InstallShield Installation Information\{61993981-97B0-4D1D-8AD8-C32261212DED}\setup.exe -runfromtemp -l0x0009 Chicken Little -removeonly
Crawler Toolbar with Web Security Guard-->C:\PROGRA~1\Crawler\Toolbar\CToolbar.exe uninst
Defraggler-->"C:\Program Files\Defraggler\uninst.exe"
Disney-Pixar Ratatouille-->C:\Program Files\InstallShield Installation Information\{B94C6815-7BCC-4124-AC39-9208A06FFFA7}\setup.exe -runfromtemp -l0x000e -removeonly
Disney's Dinosaur-->C:\WINDOWS\IsUninst.exe -fC:\PROGRA~1\DISNEY~2\Dinosaur\DeIsL1.isu
DivX Setup-->C:\Documents and Settings\All Users\Application Data\DivX\Setup\DivXSetup.exe /uninstall /bundleGroupId divx.com
Easy-WebPrint-->C:\WINDOWS\IsUn040e.exe -f"C:\Program Files\Canon\Easy-WebPrint\Uninst.isu"
ESET Online Scanner v3-->C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
Free Audio CD Burner version 1.4.8-->"C:\Program Files\DVDVideoSoft\Free Audio CD Burner\unins000.exe"
Free YouTube Download version 2.10.35.426-->"C:\Program Files\DVDVideoSoft\Free YouTube Download\unins000.exe"
Free YouTube to MP3 Converter version 3.9.37.426-->"C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\unins000.exe"
Google Chrome-->"C:\Program Files\Google\Chrome\Application\13.0.782.220\Installer\setup.exe" --uninstall --system-level
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_4E7D715D860E20E1.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Harry Potter and the Prisoner of Azkaban(TM)-->C:\Program Files\EA GAMES\Harry Potter and the Prisoner of Azkaban(TM)\EAUninstall.exe
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Intel(R) Extreme Graphics Driver-->RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_2572
Intel(R) PRO Network Connections 12.2.41.0-->MsiExec.exe /i{BBBF4CFE-9D26-4D93-A869-B2B021B3CA85} ARPREMOVE=1
Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216013FF}
Jungle Book-->"C:\Program Files\Jungle Book\unins000.exe"
Junk Mail filter update-->MsiExec.exe /I{8E5233E1-7495-44FB-8DEB-4BE906D59619}
K-Lite Codec Pack 6.3.0 (Full)-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
Kompatibilitási csomag a 2007-es Office rendszerhez-->MsiExec.exe /X{90120000-0020-040E-0000-0000000FF1CE}
Malwarebytes' Anti-Malware 1.51.1.1800 verzió-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9011040E-6000-11D3-8CFE-0150048383C9}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{928B06E4-DDAA-476A-926A-641620326327}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Zoo Tycoon-->"C:\Program Files\Microsoft Games\Zoo Tycoon\UNINSTAL.EXE" /runtemp /addremove
Mozilla Firefox 6.0.1 (x86 hu)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 6 Service Pack 2 (KB973686)-->MsiExec.exe /I{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}
Nero 7 Lite v7.5.7.0-->"C:\Program Files\Nero\unins000.exe"
NVIDIA PhysX-->MsiExec.exe /X{1C4551A6-4743-4093-91E4-1477CD655043}
Operation Pridelands-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E24DCAFE-AAB7-40E4-9FB1-2650A71409AE}\setup.exe" -l0x9 Operation Pridelands
PC Tools Firewall Plus 6.0-->C:\Program Files\PC Tools Firewall Plus\unins000.exe /LOG
Pet Racer-->C:\Program Files\Techland\Pet Racer\setup.exe -uninstall
Piglet's Big Game-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1D6FB37A-CBCA-11D6-8940-0002A5E32BEF}\setup.exe" Piglet's Big Game
Pirates of the Caribbean - At Worlds End-->C:\Program Files\InstallShield Installation Information\{01CBFCE7-95AD-40F3-BC63-C46EFB2FC9C4}\setup.exe -runfromtemp -l0x0009 Pirates of the Caribbean - At Worlds End -removeonly
QuickTime-->C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log
Revo Uninstaller 1.92-->C:\Program Files\VS Revo Group\Revo Uninstaller\uninst.exe
Sandlot Games Client Services 1.2.2-->"C:\Program Files\Common Files\Sandlot Shared\unins001.exe"
Sandlot Games Client Services-->"C:\Program Files\Common Files\Sandlot Shared\unins000.exe"
ScanSoft OmniPage SE 4.0-->MsiExec.exe /I{29D851C2-048C-4B5E-8D1F-25D473342BB5}
Scientific Atlanta WebSTAR 2000 series Cable Modem-->UNDPX2K.EXE
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A8894F19-59C8-38D2-8A75-36C0CCE56A5B} /qb+ REBOOTPROMPT=""
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
SoundMAX-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\Setup.exe"
Speccy-->"C:\Program Files\Speccy\uninst.exe"
swMSM-->MsiExec.exe /I{612C34C7-5E90-47D8-9B5C-0F717DD82726}
System Requirements Lab CYRI-->MsiExec.exe /I{AB49B509-8FCA-45E6-9FB9-9E4AEEB8F148}
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
UltraISO Premium V8.66-->"C:\Program Files\UltraISO\unins000.exe"
Uninstall 1.0.0.1-->"C:\Program Files\Common Files\DVDVideoSoft\unins000.exe"
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
VC 9.0 Runtime-->MsiExec.exe /I{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}
VC80CRTRedist - 8.0.50727.4053-->MsiExec.exe /I{5EE7D259-D137-4438-9A5F-42F432EC0421}
Winamp (remove only)-->"C:\Program Files\Winamp\UninstWA.exe"
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Internet Explorer 7 biztonsági frissítés - KB958215-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
Windows Internet Explorer 7 biztonsági frissítés - KB960714-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
Windows Internet Explorer 7 biztonsági frissítés - KB961260-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Windows Internet Explorer 7 biztonsági frissítés - KB963027-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB2482017-->"C:\WINDOWS\ie8updates\KB2482017-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB2497640-->"C:\WINDOWS\ie8updates\KB2497640-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB2510531-->"C:\WINDOWS\ie8updates\KB2510531-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB2530548-->"C:\WINDOWS\ie8updates\KB2530548-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB2544521-->"C:\WINDOWS\ie8updates\KB2544521-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB2559049-->"C:\WINDOWS\ie8updates\KB2559049-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB969897-->"C:\WINDOWS\ie8updates\KB969897-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB971961-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB972260-->"C:\WINDOWS\ie8updates\KB972260-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB974455-->"C:\WINDOWS\ie8updates\KB974455-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB976325-->"C:\WINDOWS\ie8updates\KB976325-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB978207-->"C:\WINDOWS\ie8updates\KB978207-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB981332-->"C:\WINDOWS\ie8updates\KB981332-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 biztonsági frissítés - KB982381-->"C:\WINDOWS\ie8updates\KB982381-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 frissítés - KB971180-->"C:\WINDOWS\ie8updates\KB971180-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 frissítés - KB976662-->"C:\WINDOWS\ie8updates\KB976662-IE8\spuninst\spuninst.exe"
Windows Internet Explorer 8 frissítés - KB980182-->"C:\WINDOWS\ie8updates\KB980182-IE8\spuninst\spuninst.exe"
Windows Live bejelentkezési segéd-->MsiExec.exe /I{79449B16-5C47-4C4D-87CE-7E141572C8EE}
Windows Live Communications Platform-->MsiExec.exe /I{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
Windows Live Családbiztonság-->MsiExec.exe /X{B9566800-04FD-4567-9F83-2CE18E451AA7}
Windows Live Essentials-->C:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{99A98C71-A900-44E7-AD98-70E6368FB4D0}
Windows Live feltöltőeszköz-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Windows Live Fotótár-->MsiExec.exe /X{408A2284-6037-46D9-8EA5-D5173CED3DB3}
Windows Live Mail-->MsiExec.exe /I{BC0AEB49-94F7-4C0D-9ABC-AB45D32A6366}
Windows Live Messenger-->MsiExec.exe /X{257A92C3-7E41-4678-9144-6920F4289D0F}
Windows Live Sync-->MsiExec.exe /X{F1566481-372B-422E-8181-ABAA88A80FC1}
Windows Live Toolbar-->MsiExec.exe /X{05A083F7-6872-488E-834A-8E239BD29DFC}
Windows Live Writer-->MsiExec.exe /X{7F9783DE-C0E9-4971-AE44-D34A2E03F877}
Windows Media Player Biztonsági frissítés (KB2378111)-->"C:\WINDOWS\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe"
Windows Media Player Biztonsági frissítés (KB975558)-->"C:\WINDOWS\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe"
Windows Media Player Biztonsági frissítés (KB978695)-->"C:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2079403-->"C:\WINDOWS\$NtUninstallKB2079403$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2115168-->"C:\WINDOWS\$NtUninstallKB2115168$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2121546-->"C:\WINDOWS\$NtUninstallKB2121546$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2229593-->"C:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2259922-->"C:\WINDOWS\$NtUninstallKB2259922$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2296011-->"C:\WINDOWS\$NtUninstallKB2296011$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2347290-->"C:\WINDOWS\$NtUninstallKB2347290$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2360937-->"C:\WINDOWS\$NtUninstallKB2360937$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2387149-->"C:\WINDOWS\$NtUninstallKB2387149$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2393802-->"C:\WINDOWS\$NtUninstallKB2393802$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2412687-->"C:\WINDOWS\$NtUninstallKB2412687$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2419632-->"C:\WINDOWS\$NtUninstallKB2419632$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2423089-->"C:\WINDOWS\$NtUninstallKB2423089$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2440591-->"C:\WINDOWS\$NtUninstallKB2440591$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2443105-->"C:\WINDOWS\$NtUninstallKB2443105$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2476490-->"C:\WINDOWS\$NtUninstallKB2476490$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2476687-->"C:\WINDOWS\$NtUninstallKB2476687$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2478960-->"C:\WINDOWS\$NtUninstallKB2478960$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2478971-->"C:\WINDOWS\$NtUninstallKB2478971$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2479628-->"C:\WINDOWS\$NtUninstallKB2479628$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2479943-->"C:\WINDOWS\$NtUninstallKB2479943$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2483185-->"C:\WINDOWS\$NtUninstallKB2483185$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2485376-->"C:\WINDOWS\$NtUninstallKB2485376$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2485663-->"C:\WINDOWS\$NtUninstallKB2485663$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2503658-->"C:\WINDOWS\$NtUninstallKB2503658$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2503665-->"C:\WINDOWS\$NtUninstallKB2503665$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2506212-->"C:\WINDOWS\$NtUninstallKB2506212$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2506223-->"C:\WINDOWS\$NtUninstallKB2506223$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2507618-->"C:\WINDOWS\$NtUninstallKB2507618$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2507938-->"C:\WINDOWS\$NtUninstallKB2507938$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2508272-->"C:\WINDOWS\$NtUninstallKB2508272$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2508429-->"C:\WINDOWS\$NtUninstallKB2508429$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2509553-->"C:\WINDOWS\$NtUninstallKB2509553$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2511455-->"C:\WINDOWS\$NtUninstallKB2511455$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2524375-->"C:\WINDOWS\$NtUninstallKB2524375$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2535512-->"C:\WINDOWS\$NtUninstallKB2535512$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2536276-->"C:\WINDOWS\$NtUninstallKB2536276$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2536276-v2-->"C:\WINDOWS\$NtUninstallKB2536276-v2$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2544893-->"C:\WINDOWS\$NtUninstallKB2544893$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2555917-->"C:\WINDOWS\$NtUninstallKB2555917$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2562937-->"C:\WINDOWS\$NtUninstallKB2562937$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2566454-->"C:\WINDOWS\$NtUninstallKB2566454$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2567680-->"C:\WINDOWS\$NtUninstallKB2567680$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB2570222-->"C:\WINDOWS\$NtUninstallKB2570222$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB923561-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB923789-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Windows XP biztonsági frissítés - KB970430-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB971468-->"C:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB972270-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB973904-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB974318-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB974392-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB975560-->"C:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB975561-->"C:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB975562-->"C:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB975713-->"C:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB977165-->"C:\WINDOWS\$NtUninstallKB977165$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB977816-->"C:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB977914-->"C:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB978037-->"C:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB978251-->"C:\WINDOWS\$NtUninstallKB978251$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB978262-->"C:\WINDOWS\$NtUninstallKB978262$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB978338-->"C:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB978542-->"C:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB978601-->"C:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB978706-->"C:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB979309-->"C:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB979482-->"C:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB979559-->"C:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB979683-->"C:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB979687-->"C:\WINDOWS\$NtUninstallKB979687$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB980195-->"C:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB980218-->"C:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB980232-->"C:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB980436-->"C:\WINDOWS\$NtUninstallKB980436$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB981322-->"C:\WINDOWS\$NtUninstallKB981322$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB981997-->"C:\WINDOWS\$NtUninstallKB981997$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB982132-->"C:\WINDOWS\$NtUninstallKB982132$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB982214-->"C:\WINDOWS\$NtUninstallKB982214$\spuninst\spuninst.exe"
Windows XP biztonsági frissítés - KB982665-->"C:\WINDOWS\$NtUninstallKB982665$\spuninst\spuninst.exe"
Windows XP frissítés - KB2141007-->"C:\WINDOWS\$NtUninstallKB2141007$\spuninst\spuninst.exe"
Windows XP frissítés - KB2345886-->"C:\WINDOWS\$NtUninstallKB2345886$\spuninst\spuninst.exe"
Windows XP frissítés - KB2541763-->"C:\WINDOWS\$NtUninstallKB2541763$\spuninst\spuninst.exe"
Windows XP frissítés - KB951978-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Windows XP frissítés - KB955759-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Windows XP frissítés - KB971029-->"C:\WINDOWS\$NtUninstallKB971029$\spuninst\spuninst.exe"
Windows XP frissítés - KB971737-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Windows XP gyorsjavítás - KB2443685-->"C:\WINDOWS\$NtUninstallKB2443685$\spuninst\spuninst.exe"
Windows XP gyorsjavítás - KB2570791-->"C:\WINDOWS\$NtUninstallKB2570791$\spuninst\spuninst.exe"
Windows XP gyorsjavítás - KB979306-->"C:\WINDOWS\$NtUninstallKB979306$\spuninst\spuninst.exe"
Windows XP gyorsjavítás - KB981793-->"C:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WiNeTool-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\SMC\WiNeTool\Uninst.isu"
WinRAR archiváló-->C:\Program Files\WinRAR\uninstall.exe
Yahoo! Install Manager-->C:\WINDOWS\system32\regsvr32 /u C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL
Yahoo! Toolbar-->C:\PROGRA~1\Yahoo!\Common\unyt.exe
Zoo Tycoon 2 - Dino Danger Pack-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{F568B133-170C-4818-B06A-712C6D91B9F7}
Zoo Tycoon Marine Mania and Dinosaur Digs Trial-->"C:\Program Files\Microsoft Games\Zoo Tycoon Marine Mania and Dinosaur Digs Trial\UNINSTAL.EXE" /runtemp /addremove

======Security center information======

AV: avast! Antivirus
FW: PC Tools Firewall Plus

======System event log======

Computer Name: XY-0C1729ADF323
Event Code: 7035
Message: A(z) WMI teljesítményadapter szolgáltatásnak sikeresen el lett küldve a(z) indítás vezérlő.

Record Number: 18528
Source Name: Service Control Manager
Time Written: 20110710210233.000000+120
Event Type: információ
User: NT AUTHORITY\SYSTEM

Computer Name: XY-0C1729ADF323
Event Code: 7036
Message: A(z) Hálózati helyfigyelés (NLA - Network Location Awareness) szolgáltatás állapota: "fut".

Record Number: 18527
Source Name: Service Control Manager
Time Written: 20110710210224.000000+120
Event Type: információ
User:

Computer Name: XY-0C1729ADF323
Event Code: 7035
Message: A(z) Hálózati helyfigyelés (NLA - Network Location Awareness) szolgáltatásnak sikeresen el lett küldve a(z) indítás vezérlő.

Record Number: 18526
Source Name: Service Control Manager
Time Written: 20110710210224.000000+120
Event Type: információ
User: NT AUTHORITY\SYSTEM

Computer Name: XY-0C1729ADF323
Event Code: 7036
Message: A(z) Távelérési csatlakozáskezelő szolgáltatás állapota: "fut".

Record Number: 18525
Source Name: Service Control Manager
Time Written: 20110710210223.000000+120
Event Type: információ
User:

Computer Name: XY-0C1729ADF323
Event Code: 7035
Message: A(z) Távelérési csatlakozáskezelő szolgáltatásnak sikeresen el lett küldve a(z) indítás vezérlő.

Record Number: 18524
Source Name: Service Control Manager
Time Written: 20110710210220.000000+120
Event Type: információ
User: NT AUTHORITY\SYSTEM

=====Application event log=====

Computer Name: XY-0C1729ADF323
Event Code: 105
Message: The service was started.

Record Number: 914
Source Name: ATI Smart
Time Written: 20110211135839.000000+060
Event Type: információ
User:

Computer Name: XY-0C1729ADF323
Event Code: 0
Message:
Record Number: 913
Source Name: gupdate
Time Written: 20110211100010.000000+060
Event Type: információ
User:

Computer Name: XY-0C1729ADF323
Event Code: 0
Message: Service started

Record Number: 912
Source Name: SeaPort
Time Written: 20110211095945.000000+060
Event Type: információ
User:

Computer Name: XY-0C1729ADF323
Event Code: 0
Message:
Record Number: 911
Source Name: gupdate
Time Written: 20110211095935.000000+060
Event Type: információ
User:

Computer Name: XY-0C1729ADF323
Event Code: 105
Message: The service was started.

Record Number: 910
Source Name: ATI Smart
Time Written: 20110211095927.000000+060
Event Type: információ
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"NUMBER_OF_PROCESSORS"=1
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files\Intel\DMIX
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 2 Stepping 9, GenuineIntel
"PROCESSOR_LEVEL"=15
"PROCESSOR_REVISION"=0209
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"windir"=%SystemRoot%
"tvdumpflags"=8

-----------------EOF-----------------


hétf. szept. 05, 2011 19:51
Profil Privát üzenet küldése
arany tag

Csatlakozott: pén. feb. 26, 2010 8:35
Hozzászólások: 264
Hozzászólás Re: stell, help me
Szia Stell!
Vetnél egy pillantást erre a logra? Egy csiga is gyorsabb mint a gépem,és főleg indításkor.
Az Avast frissítés legalább 15 percig töltődik,és addig szinte minden program,főleg a net használhatatlan.
Nem kell sürgősen mert csak ebben az időpontban tudok jelentkezni.
Előre is köszönöm:Évi

Logfile of random's system information tool 1.06 (written by random/random)
Run by Évi at 2011-09-05 20:34:00
Microsoft Windows XP Professional Szervizcsomag 3
System drive C: has 42 GB (55%) free of 76 GB
Total RAM: 511 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:34:35, on 2011.09.05.
Platform: Windows XP Szervizcsomag 3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\PC Tools Firewall Plus\FWService.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\Évi\Asztal\vírus\RSIT.exe
C:\Program Files\trend micro\Évi.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60365
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60365
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hivatkozások
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live bejelentkezési segítség - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O8 - Extra context menu item: E&xportálás Microsoft Excel formátumba - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
O9 - Extra button: Küldés blogba - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Küldés blogba a Windows Live Writer programmal - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Kutatás - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {226ACC34-3194-40E2-9AE8-834FCFE9E80D} (CPlayFirstmsiControl Object) - http://games.bigfishgames.com/en_myster ... .0.0.8.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {4DCA1E08-4147-4A3D-8CA6-E095DF189FAB} (CPlayFirstNightshiftControl Object) - http://games.bigfishgames.com/en_nights ... .0.0.9.cab
O16 - DPF: {8FA2192F-B95D-40E3-898F-8D7ABB8E00D0} (SpinTop Games Launcher) - http://games.bigfishgames.com/en_myster ... uncher.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Google frissítési szolgáltatás (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google frissítés Szolgáltatás (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - PC Tools - C:\Program Files\PC Tools Firewall Plus\FWService.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

--
End of file - 8111 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cc4e80ca1dae68.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2010-04-28 113512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}]
EWPBrowseObject Class - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll [2006-04-18 34304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-07-27 191792]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-07-04 820864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live bejelentkezési segítség - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-08-26 305328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll [2011-05-22 1007160]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-04-10 35840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2010-04-16 1067872]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-04-10 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2006-04-18 552960]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-07-04 820864]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-08-26 305328]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2010-04-16 1067872]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2010-01-12 3168216]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-07-04 3493720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\aswAhAScr.dll]
C:\Program Files\AVAST Software\Avast\aswRegSvr.exe [2011-04-18 22016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATICCC]
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [2006-01-02 45056]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate]
C:\WINDOWS\system32\Macromed\Flash\FlashUtil10t_Plugin.exe [2011-06-16 240288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KernelFaultCheck]
C:\WINDOWS\system32\dumprep 0 -k []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE4]
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe [2006-03-21 69632]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Shockwave Updater]
C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1159615.exe [2010-10-22 467224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-11-30 68856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Uninstall Adobe Download Manager]
C:\Program Files\NOS\bin\getPlus_Helper_3004.dll [2010-09-01 66112]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^GreenHemp^Start Menu^Programs^Indítópult^setup_9.0.0.722_05.06.2011_08-56.lnk]
C:\DOCUME~1\GREENH~1\Asztal\VIRUSR~1\SETUP_~1.20~\startup.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^setup_9.0.0.722_30.06.2011_15-07.lnk]
C:\DOCUME~1\VIBBDC~1\Asztal\VIRUSR~1\SETUP_~1.20~\startup.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_.lnk]
C:\Documents and Settings\Évi\Local Settings\temp\_uninst_.bat []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Évi^Start Menu^Programs^Indítópult^_uninst_setup_9.0.0.722_01.09.2011_18-20.exe.lnk]
C:\Documents and Settings\Évi\Local Settings\temp\_uninst_setup_9.0.0.722_01.09.2011_18-20.exe.bat []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-05-03 61440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxsrvc.dll [2003-03-11 315392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-04-16 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"HideFastUserSwitching"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=43010000
"NoSMMyDocs"=1
"NoSMMyPictures"=1
"NoSMConfigurePrograms"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

======List of files/folders created in the last 1 months======

2011-09-05 20:34:09 ----D---- C:\Program Files\trend micro
2011-09-05 20:34:00 ----D---- C:\rsit
2011-08-27 14:49:16 ----D---- C:\Documents and Settings\Évi\Application Data\HitPoint Studios
2011-08-27 11:58:19 ----D---- C:\Program Files\Pop The Marbles
2011-08-24 20:24:30 ----D---- C:\Documents and Settings\Évi\Application Data\Casual Box
2011-08-24 14:41:52 ----D---- C:\Documents and Settings\All Users\Application Data\Avalon-Legends-Solitaire
2011-08-24 07:58:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2570791$
2011-08-24 07:52:52 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-08-23 20:07:50 ----D---- C:\Documents and Settings\Évi\Application Data\HdO Adventure
2011-08-21 20:26:44 ----D---- C:\Documents and Settings\Évi\Application Data\Twilight Games
2011-08-20 14:09:03 ----D---- C:\Documents and Settings\Évi\Application Data\Specialbit
2011-08-19 20:55:51 ----D---- C:\Documents and Settings\Évi\Application Data\Alawar Stargaze
2011-08-19 15:27:36 ----D---- C:\Documents and Settings\Évi\Application Data\Super-Cow
2011-08-19 09:22:37 ----D---- C:\Documents and Settings\Évi\Application Data\Friday's games
2011-08-17 20:30:55 ----D---- C:\Documents and Settings\Évi\Application Data\GreenSauceGames
2011-08-17 19:13:11 ----D---- C:\Program Files\MSECache
2011-08-15 12:57:55 ----D---- C:\Documents and Settings\Évi\Application Data\Floodlight Games
2011-08-14 20:49:40 ----D---- C:\Documents and Settings\Évi\Application Data\Elephant Games
2011-08-14 16:27:25 ----D---- C:\Documents and Settings\All Users\Application Data\Funny Bear Studio
2011-08-14 11:12:50 ----D---- C:\Documents and Settings\All Users\Application Data\FarmFrenzy_Vikings
2011-08-12 16:05:45 ----D---- C:\Program Files\Oberon Media
2011-08-11 22:01:33 ----D---- C:\Documents and Settings\Évi\Application Data\ERS Game Studios
2011-08-11 17:40:14 ----D---- C:\Program Files\Games
2011-08-11 08:19:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2567680$
2011-08-11 08:18:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2011-08-11 08:18:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$
2011-08-11 08:13:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2011-08-11 08:13:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2562937$
2011-08-08 13:46:41 ----A---- C:\WINDOWS\Zoo Tycoon 2 Uninstaller.exe
2011-08-08 12:23:25 ----D---- C:\Documents and Settings\Évi\Application Data\Canon
2011-08-07 18:38:20 ----D---- C:\Documents and Settings\Évi\Application Data\Ace
2011-08-07 15:55:21 ----D---- C:\Documents and Settings\All Users\Application Data\Alawar Stargaze
2011-08-07 15:55:08 ----D---- C:\Documents and Settings\All Users\Application Data\AlawarWrapper
2011-08-06 13:12:13 ----A---- C:\TDSSKiller.2.5.14.0_06.08.2011_13.12.13_log.txt
2011-08-06 13:10:37 ----A---- C:\TDSSKiller.2.5.8.0_06.08.2011_13.10.37_log.txt
2011-08-06 13:01:13 ----D---- C:\Program Files\Speccy

======List of files/folders modified in the last 1 months======

2011-09-05 20:34:09 ----RD---- C:\Program Files
2011-09-05 20:27:02 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2011-09-05 20:27:00 ----D---- C:\WINDOWS\temp
2011-09-03 22:25:35 ----D---- C:\WINDOWS\system32\CatRoot2
2011-09-03 16:22:34 ----D---- C:\Program Files\CCleaner
2011-09-03 16:18:49 ----D---- C:\WINDOWS
2011-09-02 17:25:38 ----D---- C:\WINDOWS\pss
2011-09-02 17:05:27 ----D---- C:\WINDOWS\system32\drivers
2011-09-02 17:01:27 ----SHD---- C:\System Volume Information
2011-09-01 21:50:52 ----HD---- C:\WINDOWS\inf
2011-09-01 21:44:43 ----D---- C:\WINDOWS\Minidump
2011-09-01 21:15:44 ----SHD---- C:\WINDOWS\CSC
2011-08-31 19:59:39 ----D---- C:\games
2011-08-31 19:04:16 ----D---- C:\Program Files\Mozilla Firefox
2011-08-31 09:06:51 ----RASH---- C:\boot.ini
2011-08-31 09:06:50 ----A---- C:\WINDOWS\win.ini
2011-08-31 09:06:50 ----A---- C:\WINDOWS\system.ini
2011-08-31 09:03:32 ----D---- C:\WINDOWS\system32\Restore
2011-08-30 08:41:26 ----D---- C:\Program Files\Microsoft Silverlight
2011-08-29 14:03:52 ----SHD---- C:\WINDOWS\Installer
2011-08-29 14:03:52 ----RSD---- C:\WINDOWS\assembly
2011-08-29 14:03:48 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2011-08-29 10:36:59 ----D---- C:\WINDOWS\WinSxS
2011-08-28 19:52:16 ----D---- C:\WINDOWS\Microsoft.NET
2011-08-28 19:15:58 ----SD---- C:\Documents and Settings\Évi\Application Data\Microsoft
2011-08-28 18:43:45 ----D---- C:\Program Files\Windows Live
2011-08-28 18:41:25 ----D---- C:\WINDOWS\system32\DirectX
2011-08-28 18:38:09 ----D---- C:\WINDOWS\system32
2011-08-27 14:49:16 ----D---- C:\Documents and Settings\All Users\Application Data\HitPoint Studios
2011-08-27 12:01:38 ----D---- C:\Documents and Settings\All Users\Application Data\Kristanix Games
2011-08-24 07:54:20 ----D---- C:\Documents and Settings\All Users\Application Data\Norton
2011-08-24 07:54:17 ----SD---- C:\WINDOWS\Tasks
2011-08-24 07:52:52 ----D---- C:\Program Files\Common Files
2011-08-22 20:18:51 ----D---- C:\Documents and Settings\Évi\Application Data\Media Player Classic
2011-08-21 20:13:23 ----AC---- C:\WINDOWS\NeroDigital.ini
2011-08-19 19:36:04 ----D---- C:\WINDOWS\SoftwareDistribution
2011-08-19 15:25:17 ----D---- C:\Program Files\bfgclient
2011-08-19 15:25:05 ----D---- C:\Documents and Settings\All Users\Application Data\Big Fish Games
2011-08-18 16:09:42 ----D---- C:\Documents and Settings\Évi\Application Data\Google
2011-08-18 16:08:37 ----D---- C:\WINDOWS\Network Diagnostic
2011-08-17 19:14:09 ----RSD---- C:\WINDOWS\Fonts
2011-08-17 19:13:55 ----D---- C:\Program Files\Microsoft Office
2011-08-17 19:13:51 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-08-15 17:56:30 ----D---- C:\Documents and Settings\All Users\Application Data\Fenomen Games
2011-08-15 12:57:55 ----D---- C:\Documents and Settings\All Users\Application Data\Floodlight Games
2011-08-14 20:49:40 ----D---- C:\Documents and Settings\All Users\Application Data\Elephant Games
2011-08-14 09:03:27 ----HD---- C:\Program Files\InstallShield Installation Information
2011-08-14 09:03:27 ----D---- C:\Program Files\Ubisoft
2011-08-11 08:58:52 ----D---- C:\WINDOWS\Debug
2011-08-11 08:48:50 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-08-11 08:48:46 ----D---- C:\Program Files\Internet Explorer
2011-08-11 08:48:23 ----D---- C:\WINDOWS\ie8updates
2011-08-11 08:47:21 ----HD---- C:\WINDOWS\$hf_mig$
2011-08-11 08:26:11 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-08-11 08:13:46 ----AC---- C:\WINDOWS\system32\MRT.exe
2011-08-08 13:51:45 ----D---- C:\Program Files\Microsoft Games
2011-08-08 13:47:15 ----D---- C:\Documents and Settings\Évi\Application Data\Microsoft Games
2011-08-08 13:47:15 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Games
2011-08-06 10:23:11 ----AC---- C:\WINDOWS\disney.ini
2011-08-06 10:20:08 ----D---- C:\Program Files\Disney Interactive
2011-08-06 10:19:03 ----AC---- C:\WINDOWS\disneysy.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 36098571;36098571; C:\WINDOWS\system32\DRIVERS\36098571.sys [2009-09-25 128016]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-07-04 30808]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-07-04 25432]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-07-04 441176]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-07-04 309848]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-07-04 43608]
R1 intelppm;Intel processzor illesztőprogramja; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files\UltraISO\drivers\ISODrive.sys []
R1 kbdhid;Billentyűzet HID-illesztőprogram; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 pctgntdi;pctgntdi; \??\C:\WINDOWS\system32\drivers\pctgntdi.sys []
R1 setup_9.0.0.722_21.06.2011_11-00drv;setup_9.0.0.722_21.06.2011_11-00drv; C:\WINDOWS\system32\DRIVERS\3609857.sys [2009-10-09 315408]
R1 uzi3ndu1;AVZ-RK Kernel Driver; \??\C:\WINDOWS\system32\Drivers\uzi3ndu1.sys []
R1 WS2IFSL;Windows Socket 2.0 - nem IFS-t szolgáltató támogatási környezet; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-26 12032]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.2.0.3; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2009-10-09 17801]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-07-04 19544]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-07-04 102616]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R2 litsgt;litsgt; C:\WINDOWS\system32\DRIVERS\litsgt.sys [2009-03-30 137344]
R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.3.1.10; C:\WINDOWS\system32\DRIVERS\mdc8021x.sys [2010-02-20 15890]
R2 rspndr;Kapcsolati réteg topológiafelderítési válaszadója; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2006-11-08 62336]
R2 tansgt;tansgt; C:\WINDOWS\system32\DRIVERS\tansgt.sys [2009-03-30 12032]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2002-04-01 4816]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-05-03 1540608]
R3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys [2010-01-14 223128]
R3 E1000;Intel(R) PRO/1000 Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1000325.sys [2007-03-25 171416]
R3 hidusb;Microsoft HID osztályú illesztőprogram; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Egér HID-illesztőprogram; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-26 12160]
R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver; \??\C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys []
R3 pctNDIS;PC Tools Driver; C:\WINDOWS\system32\DRIVERS\pctNdis.sys [2010-01-07 58816]
R3 pctplfw;pctplfw; \??\C:\WINDOWS\system32\drivers\pctplfw.sys []
R3 Point32;Microsoft IntelliPoint Filter Driver; C:\WINDOWS\system32\DRIVERS\point32.sys [2009-11-11 27744]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-26 5888]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2002-12-19 539008]
R3 usbccgp;Microsoft USB általános szülő-illesztőprogram; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 bővített állomásvezérlő miniport illesztőprogramja; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2-engedélyezett hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Microsoft USB univerzális állomásvezérlő miniport illesztőprogramja; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 1289918drv;1289918drv; C:\WINDOWS\system32\DRIVERS\1289918drv.sys [2011-07-12 475736]
S2 PCTAppEvent;PCTAppEvent Driver; \??\C:\WINDOWS\system32\drivers\PCTAppEvent.sys []
S3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:\WINDOWS\system32\drivers\ialmsbw.sys [2003-03-13 112288]
S3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:\WINDOWS\system32\drivers\ialmkchw.sys [2003-03-13 78496]
S3 a78po4g3;a78po4g3; C:\WINDOWS\system32\drivers\a78po4g3.sys []
S3 ATHFMWDL;NETGEAR WPN111 Bootloader driver; C:\WINDOWS\System32\Drivers\athwpn.sys [2004-10-14 43392]
S3 CCDECODE;Feliratdekódoló; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 cxbu0wdm;CardMan 3x21; C:\WINDOWS\system32\DRIVERS\cxbu0wdm.sys [2009-06-24 114304]
S3 DNINDIS5;DNINDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\DNINDIS5.SYS []
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2003-03-13 90395]
S3 MSTEE;Microsoft Streaming Tee/Sink - Sink átalakító; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI kodek; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV-/videokapcsolat; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbbus;LGE Mobile Composite USB Device; C:\WINDOWS\system32\DRIVERS\lgusbbus.sys []
S3 USBCM;Scientific Atlanta USB Cable Modem Driver; C:\WINDOWS\system32\DRIVERS\Sacm2K.sys [2004-06-10 15429]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgusbdiag.sys []
S3 USBModem;LGE Mobile USB Modem; C:\WINDOWS\system32\DRIVERS\lgusbmodem.sys []
S3 usbprint;Microsoft USB PRINTER osztály; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;USB-képolvasó illesztőprogramja; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;USB háttértár illesztőprogramja; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 uti3ndu1;AVZ Kernel Driver; \??\C:\WINDOWS\system32\Drivers\uti3ndu1.sys []
S3 WPN111;Wireless USB 2.0 Adapter with RangeMax Service; C:\WINDOWS\system32\DRIVERS\WPN111.sys [2005-01-07 286720]
S3 WSTCODEC;World Standard Teletext kodek; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-04-16 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-04-16 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-05-03 413696]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-07-04 42184]
R2 ezSharedSvc;Easybits Shared Services for Windows; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 fsssvc;Windows Live Családbiztonság szolgáltatás; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-04-10 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2009-11-09 818432]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-07-27 249136]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-05-03 520192]
S2 gupdate;Google frissítési szolgáltatás (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-07 135664]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Google frissítés Szolgáltatás (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-07 135664]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-01-23 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 nosGetPlusHelper;getPlus(R) Helper 3004; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;A Windows Media Player hálózatmegosztási szolgáltatása; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-10 919040]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------


hétf. szept. 05, 2011 19:50
Profil Privát üzenet küldése
arany tag

Csatlakozott: csüt. aug. 21, 2008 19:07
Hozzászólások: 326
Hozzászólás Re: stell, help me
Köszi szépen


csüt. júl. 21, 2011 19:42
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: szer. márc. 24, 2004 13:43
Hozzászólások: 11960
Tartózkodási hely: Budapest, Solymár
Hozzászólás Re: stell, help me
Sanyi46 írta:
...

Nem egészen értem, mit akarsz.
A lényeg az, hogy ezek a fájlok nem kellenek mert fertőzöttek, ezért törölte valamilyen malware program (ezt már írtam). A bejegyzések meg ott maradtak a Registry-ben, ezt látod.
Magyarul itt kellene azokat a sorokat törölni, amik ezekre a fájlokra vonatkoznak.

De ha úgy hagyod, és kiszeded a pipát, ahogy stell írja, az is jó.

Ps: nálam is voltak ilyesmik, kitöröltem, azóta nem látszik. A lényeg az, hogy nincsenek a fájlok a gépen. A bejegyzés másodrangú, csak az Autoruns mutatja. Bajt nem okoz, csak ott van.


csüt. júl. 21, 2011 16:22
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
most minek komplika;lod a helyzete, irtam ved ki a pipat es restart.


csüt. júl. 21, 2011 16:08
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: csüt. aug. 21, 2008 19:07
Hozzászólások: 326
Hozzászólás Re: stell, help me
PDCOMP File not found: C:\WINDOWS\System32\Drivers\PDCOMP.sys

Ezek a fájlok a fenti elérési útvonalon nem találhatók.
A registryben igen:
Kép
A képet a Képfeltöltés.hu tárolja. http://www.kepfeltoltes.hu

A képen a PDCOMP mappa van nyitva,a többi is ilyen értékekel van jelen/ alatta sorban/


csüt. júl. 21, 2011 14:55
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: szer. márc. 24, 2004 13:43
Hozzászólások: 11960
Tartózkodási hely: Budapest, Solymár
Hozzászólás Re: stell, help me
Sanyi46 írta:
... A file not found "tételek" miatt érdeklödöm, mit tehetek? ...

Van néhány file, amit lehet hogy a vírus vagy malware keresőd törölt:

PDCOMP.SYS, PDFRAME.SYS, PDRELI.SYS, PDRFRAME.SYS
http://www.adwareaway.com/definitions/p/pdcomp.sys.php

changer.sys
http://www.exterminate-it.com/malpedia/file/changer.sys

PCIDump.sys
http://www.threatexpert.com/files/pcidump.sys.html

az összes eddigire válasz:
http://help.wugnet.com/windows/Autoruns-Sysinternals-File-found-ftopict632866.html

Az i2omgmt.sys, lbrtfdc.sys az én XP Prof-omban ott vannak, azt pótolni kellene valahonnan.


csüt. júl. 21, 2011 9:56
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Udv
csinalj rendszervisszalitasi pontot,
Ved ki a pipakat mindenunen ahol ez van File not found
restartolni a gepet
ha problem lesz akkor vissza rakod a pipakat.


csüt. júl. 21, 2011 9:28
Profil Privát üzenet küldése Honlap
arany tag

Csatlakozott: csüt. aug. 21, 2008 19:07
Hozzászólások: 326
Hozzászólás Re: stell, help me
Szia stell!
Az Autoruns v10.07 futattam és Drivers alatt az alábbi "listát" találtam:

"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "ati2mtag" "ATI Radeon WindowsNT Miniport Driver" "ATI Technologies Inc." "c:\windows\system32\drivers\ati2mtag.sys"
+ "avgio" "Avira AntiVir Support for Minifilter" "Avira GmbH" "c:\program files\avira\antivir desktop\avgio.sys"
+ "avgntflt" "Avira mini-filter driver" "Avira GmbH" "c:\windows\system32\drivers\avgntflt.sys"
+ "avipbb" "Avira Security Enhancement Driver" "Avira GmbH" "c:\windows\system32\drivers\avipbb.sys"
+ "Changer" "" "" "File not found: C:\WINDOWS\System32\Drivers\Changer.sys"
+ "epmntdrv" "" "" "c:\windows\system32\epmntdrv.sys"
+ "EuGdiDrv" "" "" "c:\windows\system32\eugdidrv.sys"
+ "HDAudBus" "High Definition Audio Bus Driver v1.0a" "Windows (R) Server 2003 DDK provider" "c:\windows\system32\drivers\hdaudbus.sys"
+ "i2omgmt" "" "" "File not found: C:\WINDOWS\System32\Drivers\i2omgmt.sys"

+ "lbrtfdc" "" "" "File not found: C:\WINDOWS\System32\Drivers\lbrtfdc.sys"

+ "MBAMSwissArmy" "Malwarebytes' Anti-Malware" "Malwarebytes Corporation" "c:\windows\system32\drivers\mbamswissarmy.sys"
+ "PCIDump" "" "" "File not found: C:\WINDOWS\System32\Drivers\PCIDump.sys"
+ "pcouffin" "low level access layer for CD/DVD/BD devices" "VSO Software" "c:\windows\system32\drivers\pcouffin.sys"
+ "PCTAppEvent" "PC Tools App Monitor Driver" "PC Tools" "c:\windows\system32\drivers\pctappevent.sys"
+ "PCTFW-PacketFilter" "PC Tools NDIS - Packet Filter" "PC Tools" "c:\windows\system32\drivers\pctndis-packetfilter.sys"
+ "pctgntdi" "PC Tools Generic TDI Driver" "PC Tools" "c:\windows\system32\drivers\pctgntdi.sys"
+ "pctNdis" "PC Tools NDIS Driver" "PC Tools" "c:\windows\system32\drivers\pctndis.sys"
+ "pctNdisMP" "PC Tools NDIS Driver" "PC Tools" "c:\windows\system32\drivers\pctndis.sys"
+ "pctplfw" "PC Tools FW Plugin Driver" "PC Tools" "c:\windows\system32\drivers\pctplfw.sys"
+ "PDCOMP" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDCOMP.sys"
+ "PDFRAME" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDFRAME.sys"
+ "PDRELI" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDRELI.sys"
+ "PDRFRAME" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDRFRAME.sys"

+ "Ptilink" "Közvetlen párhuzamos kapcsolat illesztőprogramja" "Parallel Technologies, Inc." "c:\windows\system32\drivers\ptilink.sys"

+ "Secdrv" "SafeDisc driver" "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." "c:\windows\system32\drivers\secdrv.sys"
+ "SISNIC" "SiS PCI Fast Ethernet Adapter Driver" "SiS Corporation" "c:\windows\system32\drivers\sisnic.sys"
+ "SmartDefragDriver" "File driver of SmartDefrag" "" "c:\windows\system32\drivers\smartdefragdriver.sys"
+ "smwdm" "SoundMAX Integrated Digital Audio " "Analog Devices, Inc." "c:\windows\system32\drivers\smwdm.sys"
+ "ssmdrv" "Avira Snapshot Driver" "Avira GmbH" "c:\windows\system32\drivers\ssmdrv.sys"
+ "WDICA" "" "" "File not found: C:\WINDOWS\System32\Drivers\WDICA.sys"

A file not found "tételek" miatt érdeklödöm, mit tehetek?

Köszi


csüt. júl. 21, 2011 6:50
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
nincsen mit udv


szomb. júl. 16, 2011 16:12
Profil Privát üzenet küldése Honlap
ezüst tag
Avatar

Csatlakozott: vas. jan. 11, 2009 15:51
Hozzászólások: 79
Tartózkodási hely: errearra
Hozzászólás Re: stell, help me
Igen, a Captiván ki volt kapcsolva alapból. Most nézünk egy filmet már egy ideje, és még nem jelent meg az üzenet. Remélem nem is fog, ha mégis akkor majd írok.
Köszi szépen nektek!!!!
További szép napot :)


szomb. júl. 16, 2011 16:05
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
nem, de az
< %systemroot%\system32\*.dll /lockedfiles >
Itt voltak gyanus lezart,, konyvtarak

Ezeket toroltuk, igen az is lehetet hogy gyenge volt a tap ahoz a Captiva Eco >.merevlwemezhez, amugy az Nbela cimbora irta mar, hogy nem az Maxtor, rendszer lemezen, hanem az Captiva lemezen kellet megnezni az irási gyorsítótárazás engedélyezése" szolgáltatás be van kapcsolva, akkor kikapcsolni.
en szerintem virus mar nincsen a gepen.


szomb. júl. 16, 2011 15:52
Profil Privát üzenet küldése Honlap
ezüst tag
Avatar

Csatlakozott: vas. jan. 11, 2009 15:51
Hozzászólások: 79
Tartózkodási hely: errearra
Hozzászólás Re: stell, help me
Ma kicseréltük a tápot, most be van kapcsolva egy ideje -bár nem ülök itt mellette- de még nem láttam az üzenetet, és a külső tár is jól működik most próbáltam.
Volt valami vírus rajta?


szomb. júl. 16, 2011 15:46
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Most mi a helyzet a gepel??,ugyanaz??nem irod.


szomb. júl. 16, 2011 15:25
Profil Privát üzenet küldése Honlap
ezüst tag
Avatar

Csatlakozott: vas. jan. 11, 2009 15:51
Hozzászólások: 79
Tartózkodási hely: errearra
Hozzászólás Re: stell, help me
All processes killed
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Search bar| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\S-1-5-21-583907252-884357618-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\_nltide_2 deleted successfully.
Invalid CLSID key: _nltide_2
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce\\_nltide_2 not found.
Invalid CLSID key: _nltide_2
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB6717E-7E19-11d0-97EE-00C04FD91972}\ not found.
File not found.
C:\Autorun.inf folder moved successfully.
C:\WINDOWS\SET3.tmp deleted successfully.
C:\WINDOWS\SET4.tmp deleted successfully.
C:\WINDOWS\SET8.tmp deleted successfully.
C:\WINDOWS\System32\CONFIG.TMP deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Dávid
->Temp folder emptied: 58880 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->FireFox cache emptied: 76358148 bytes
->Flash cache emptied: 508 bytes

User: LocalService
->Temp folder emptied: 65748 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 579889 bytes

Total Files Cleaned = 74,00 mb


OTL by OldTimer - Version 3.2.26.1 log created on 07162011_160009

Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...


szomb. júl. 16, 2011 15:17
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
Futtasd az OTL=programot, az ablakjaba masold be a zold textet es mostan, klikelj az RUNFIX>>gombra, a logot a restart utan tedd ide, es ird meg hogy mia helyzet a gepel
Kód:
:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
IE - HKU\S-1-5-21-583907252-884357618-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
O4 - HKU\.DEFAULT..\RunOnce: [_nltide_2] File not found
O4 - HKU\S-1-5-18..\RunOnce: [_nltide_2] File not found
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - AutoRun File - [2011.07.12 00:53:10 | 000,000,000 | R--D | M] - C:\Autorun.inf -- [ NTFS ]
[2011.07.12 00:53:10 | 000,000,000 | R--D | C] -- C:\Autorun.inf
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


szomb. júl. 16, 2011 7:59
Profil Privát üzenet küldése Honlap
ezüst tag
Avatar

Csatlakozott: vas. jan. 11, 2009 15:51
Hozzászólások: 79
Tartózkodási hely: errearra
Hozzászólás Re: stell, help me
\System32\mapi32.dll
[2011.07.08 22:00:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dllcache
[2011.07.08 21:59:38 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2011.07.08 21:59:16 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2011.07.08 21:59:11 | 000,000,000 | ---D | C] -- C:\Program Files\Online Services
[2011.07.08 21:58:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2011.07.08 21:58:48 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\atrace.dll
[2011.07.08 21:58:41 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmevtmsg.dll
[2011.07.08 21:58:40 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\acctres.dll
[2011.07.08 21:58:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2011.07.08 21:58:37 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icfgnt5.dll
[2011.07.08 21:58:37 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2011.07.08 21:58:36 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2011.07.08 21:58:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2011.07.08 21:58:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2011.07.08 21:58:30 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuaueng1.dll
[2011.07.08 21:58:30 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wucltui.dll
[2011.07.08 21:58:29 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll
[2011.07.08 21:58:29 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuauclt1.exe
[2011.07.08 21:58:29 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wups.dll
[2011.07.08 21:58:29 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qmgrprxy.dll
[2011.07.08 21:58:29 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx2.dll
[2011.07.08 21:58:29 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx4.dll
[2011.07.08 21:58:29 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx3.dll
[2011.07.08 21:58:26 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2011.07.08 21:58:11 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrslv.dll
[2011.07.08 21:58:11 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrcdlg.dll
[2011.07.08 21:58:11 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\racpldlg.dll
[2011.07.08 21:58:11 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrdm.dll
[2011.07.08 21:58:07 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fltMc.exe
[2011.07.08 21:58:06 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\srrstr.dll
[2011.07.08 21:58:06 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ils.dll
[2011.07.08 21:58:06 | 000,034,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mnmdd.dll
[2011.07.08 21:58:06 | 000,032,768 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\isrdbg32.dll
[2011.07.08 21:58:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2011.07.08 21:58:05 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msconf.dll
[2011.07.08 21:58:05 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmmkcert.dll
[2011.07.08 21:58:03 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoeacct.dll
[2011.07.08 21:58:03 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoert2.dll
[2011.07.08 21:58:03 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2011.07.08 21:58:02 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetres.dll
[2011.07.08 21:58:00 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mstinit.exe
[2011.07.08 21:58:00 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2011.07.08 21:57:59 | 000,278,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcfg.dll
[2011.07.08 21:57:59 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\isign32.dll
[2011.07.08 21:57:59 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwdial.dll
[2011.07.08 21:57:59 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwphbk.dll
[2011.07.08 21:57:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2011.07.08 21:57:51 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2011.07.08 21:57:50 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumentumok\Képek
[2011.07.08 21:57:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Játékok
[2011.07.08 21:57:00 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2011.07.08 21:56:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2011.07.08 21:56:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Felügyeleti eszközök
[2011.07.08 21:56:32 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Connect 2
[2011.07.08 21:56:31 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2011.07.08 21:56:29 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2011.07.08 21:56:26 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\write.exe
[2011.07.08 21:56:26 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2011.07.08 21:56:19 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndvol32.exe
[2011.07.08 21:56:18 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avtapi.dll
[2011.07.08 21:56:18 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avwav.dll
[2011.07.08 21:56:18 | 000,044,544 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hticons.dll
[2011.07.08 21:56:18 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winchat.exe
[2011.07.08 21:56:18 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avmeter.dll
[2011.07.08 21:56:13 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\getuname.dll
[2011.07.08 21:56:12 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mshearts.exe
[2011.07.08 21:56:12 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winmine.exe
[2011.07.08 21:56:12 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\calc.exe
[2011.07.08 21:56:12 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\charmap.exe
[2011.07.08 21:56:12 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sol.exe
[2011.07.08 21:56:11 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\freecell.exe
[2011.07.08 21:56:11 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\regini.exe
[2011.07.08 21:56:11 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msg.exe
[2011.07.08 21:56:11 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qwinsta.exe
[2011.07.08 21:56:11 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsshutdn.exe
[2011.07.08 21:56:11 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qappsrv.exe
[2011.07.08 21:56:11 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rwinsta.exe
[2011.07.08 21:56:11 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tskill.exe
[2011.07.08 21:56:11 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscon.exe
[2011.07.08 21:56:11 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsdiscon.exe
[2011.07.08 21:56:11 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\shadow.exe
[2011.07.08 21:56:11 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\reset.exe
[2011.07.08 21:56:11 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpcfgex.dll
[2011.07.08 21:56:10 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\logoff.exe
[2011.07.08 21:56:10 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cdmodem.dll
[2011.07.08 21:56:05 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\accwiz.exe
[2011.07.08 21:56:05 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndrec32.exe
[2011.07.08 21:56:05 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\access.cpl
[2011.07.08 21:56:04 | 000,350,208 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hypertrm.dll
[2011.07.08 21:56:04 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mspaint.exe
[2011.07.08 21:56:04 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mplay32.exe
[2011.07.08 21:56:04 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clipbrd.exe
[2011.07.08 21:56:04 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2011.07.08 21:56:03 | 000,539,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spider.exe
[2011.07.08 21:56:02 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rhttpaa.dll
[2011.07.08 21:56:02 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\aaclient.dll
[2011.07.08 21:56:02 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscfgwmi.dll
[2011.07.08 21:56:02 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsgqec.dll
[2011.07.08 21:56:01 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdchost.dll
[2011.07.08 21:56:01 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdshost.exe
[2011.07.08 21:56:01 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdsaddin.exe
[2011.07.08 21:56:00 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcprx.dll
[2011.07.08 21:56:00 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcuiu.dll
[2011.07.08 21:56:00 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxoci.dll
[2011.07.08 21:56:00 | 000,087,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpwsx.dll
[2011.07.08 21:56:00 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpclip.exe
[2011.07.08 21:56:00 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cfgbkend.dll
[2011.07.08 21:56:00 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qprocess.exe
[2011.07.08 21:56:00 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpsnd.dll
[2011.07.08 21:56:00 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icaapi.dll
[2011.07.08 21:56:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2011.07.08 21:55:59 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtctm.dll
[2011.07.08 21:55:59 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtclog.dll
[2011.07.08 21:55:59 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xolehlp.dll
[2011.07.08 21:55:58 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clbcatex.dll
[2011.07.08 21:55:58 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comrepl.dll
[2011.07.08 21:55:58 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrvps.dll
[2011.07.08 21:55:58 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\colbact.dll
[2011.07.08 21:55:58 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\stclient.dll
[2011.07.08 21:55:58 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxlegih.dll
[2011.07.08 21:55:58 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxdm.dll
[2011.07.08 21:55:58 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comaddin.dll
[2011.07.08 21:55:58 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dcomcnfg.exe
[2011.07.08 21:55:58 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxex.dll
[2011.07.08 21:55:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[2011.07.08 21:55:57 | 001,267,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsvcs.dll
[2011.07.08 21:55:57 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrvut.dll
[2011.07.08 21:55:57 | 000,539,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comuid.dll
[2011.07.08 21:55:57 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrv.dll
[2011.07.08 21:55:57 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsnap.dll
[2011.07.08 21:55:51 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cmprops.dll
[2011.07.08 21:55:51 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\licwmi.dll
[2011.07.08 21:55:51 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\servdeps.dll
[2011.07.08 21:55:51 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmfutil.dll
[2011.07.08 21:55:46 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumentumok\Videók
[2011.07.08 21:55:20 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Kellékek
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.07.15 21:41:44 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Dávid\Asztal\OTL.exe
[2011.07.15 21:39:12 | 000,029,204 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2011.07.15 21:39:04 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.07.15 13:00:16 | 000,008,250 | ---- | M] () -- C:\Documents and Settings\Dávid\Dokumentumok\cc_20110715_130010.reg
[2011.07.15 12:19:33 | 000,000,336 | RHS- | M] () -- C:\boot.ini
[2011.07.15 11:46:24 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\Dávid\Asztal\CCleaner.lnk
[2011.07.15 11:22:05 | 004,626,664 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\Dávid\Asztal\WindowsXP-KB310994-SP2-Pro-BootDisk-HUN.exe
[2011.07.15 11:10:32 | 004,153,133 | R--- | M] (Swearware) -- C:\Documents and Settings\Dávid\Asztal\ComboFix.exe
[2011.07.14 22:44:01 | 000,000,427 | ---- | M] () -- C:\WINDOWS\System\CmiCnfg.ini
[2011.07.14 21:52:13 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.07.13 22:47:56 | 000,007,680 | ---- | M] () -- C:\Documents and Settings\Dávid\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.07.12 23:34:16 | 000,000,339 | ---- | M] () -- C:\Documents and Settings\Dávid\Asztal\Dokumentumok.lnk
[2011.07.12 00:36:10 | 000,000,261 | ---- | M] () -- C:\Documents and Settings\Dávid\Asztal\Külső tár.lnk
[2011.07.11 22:59:03 | 000,000,220 | ---- | M] () -- C:\Boot.bak
[2011.07.11 22:52:54 | 000,000,691 | ---- | M] () -- C:\Documents and Settings\Dávid\Asztal\Letöltések.lnk
[2011.07.09 23:20:26 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011.07.09 21:50:32 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2011.07.09 21:50:17 | 000,001,620 | ---- | M] () -- C:\Documents and Settings\Dávid\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011.07.09 21:50:17 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Asztal\Mozilla Firefox.lnk
[2011.07.09 18:08:50 | 000,000,800 | ---- | M] () -- C:\Documents and Settings\Dávid\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2011.07.09 08:10:43 | 000,002,904 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011.07.08 23:54:05 | 000,004,444 | ---- | M] () -- C:\WINDOWS\System32\pid.PNF
[2011.07.08 22:43:46 | 000,000,754 | ---- | M] () -- C:\Documents and Settings\All Users\Asztal\Mobile Partner.lnk
[2011.07.08 22:26:57 | 000,001,700 | ---- | M] () -- C:\Documents and Settings\All Users\Asztal\avast! Free Antivirus.lnk
[2011.07.08 22:24:47 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_jubusenum_01009.Wdf
[2011.07.08 22:24:46 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2011.07.08 22:23:17 | 000,000,104 | ---- | M] () -- C:\Documents and Settings\Dávid\Asztal\Sajátgép.lnk
[2011.07.08 22:15:34 | 000,000,763 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Indítópult\VIA RAID TOOL.lnk
[2011.07.08 22:12:06 | 000,000,092 | ---- | M] () -- C:\WINDOWS\CMISETUP.INI
[2011.07.08 22:12:05 | 000,000,026 | ---- | M] () -- C:\WINDOWS\CMCDPLAY.INI
[2011.07.08 22:12:04 | 000,000,000 | ---- | M] () -- C:\WINDOWS\Wininit.ini
[2011.07.08 22:06:52 | 000,311,740 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011.07.08 22:06:52 | 000,303,696 | ---- | M] () -- C:\WINDOWS\System32\perfh00E.dat
[2011.07.08 22:06:52 | 000,057,936 | ---- | M] () -- C:\WINDOWS\System32\perfc00E.dat
[2011.07.08 22:06:52 | 000,040,128 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011.07.08 22:06:43 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\Dávid\Application Data\Microsoft\Internet Explorer\Quick Launch\Asztal megjelenítése.scf
[2011.07.08 22:06:37 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\Dávid\Application Data\Microsoft\Internet Explorer\Quick Launch\Az Internet Explorer böngésző indítása.lnk
[2011.07.08 22:04:24 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2011.07.08 22:04:12 | 000,092,680 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011.07.08 22:03:24 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2011.07.08 22:00:46 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2011.07.08 22:00:46 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2011.07.08 22:00:46 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2011.07.08 22:00:46 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2011.07.08 22:00:37 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011.07.08 22:00:37 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011.07.08 22:00:35 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2011.07.08 22:00:26 | 000,004,249 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2011.07.08 21:57:12 | 000,021,948 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2011.07.04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011.07.04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011.07.04 13:35:12 | 000,102,616 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011.07.04 13:35:09 | 000,096,344 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011.07.04 13:32:13 | 000,030,808 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011.06.26 08:45:56 | 000,256,000 | ---- | M] () -- C:\WINDOWS\PEV.exe
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.07.15 13:00:13 | 000,008,250 | ---- | C] () -- C:\Documents and Settings\Dávid\Dokumentumok\cc_20110715_130010.reg
[2011.07.15 12:19:33 | 000,000,220 | ---- | C] () -- C:\Boot.bak
[2011.07.15 12:19:32 | 000,261,376 | RHS- | C] () -- C:\cmldr
[2011.07.15 12:09:45 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011.07.15 12:09:45 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011.07.15 12:09:45 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011.07.15 12:09:45 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011.07.15 12:09:45 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011.07.15 11:46:24 | 000,001,548 | ---- | C] () -- C:\Documents and Settings\Dávid\Asztal\CCleaner.lnk
[2011.07.12 23:34:16 | 000,000,339 | ---- | C] () -- C:\Documents and Settings\Dávid\Asztal\Dokumentumok.lnk
[2011.07.12 00:36:10 | 000,000,261 | ---- | C] () -- C:\Documents and Settings\Dávid\Asztal\Külső tár.lnk
[2011.07.11 22:52:54 | 000,000,691 | ---- | C] () -- C:\Documents and Settings\Dávid\Asztal\Letöltések.lnk
[2011.07.09 21:50:32 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2011.07.09 21:50:17 | 000,001,620 | ---- | C] () -- C:\Documents and Settings\Dávid\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011.07.09 21:50:17 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Asztal\Mozilla Firefox.lnk
[2011.07.09 18:08:50 | 000,000,800 | ---- | C] () -- C:\Documents and Settings\Dávid\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2011.07.09 18:07:07 | 000,007,680 | ---- | C] () -- C:\Documents and Settings\Dávid\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.07.08 23:54:05 | 000,004,444 | ---- | C] () -- C:\WINDOWS\System32\pid.PNF
[2011.07.08 23:50:02 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2011.07.08 23:49:35 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2011.07.08 23:47:02 | 000,092,680 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011.07.08 23:46:10 | 000,000,336 | RHS- | C] () -- C:\boot.ini
[2011.07.08 23:46:06 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2011.07.08 22:43:46 | 000,000,754 | ---- | C] () -- C:\Documents and Settings\All Users\Asztal\Mobile Partner.lnk
[2011.07.08 22:26:57 | 000,001,700 | ---- | C] () -- C:\Documents and Settings\All Users\Asztal\avast! Free Antivirus.lnk
[2011.07.08 22:24:47 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_jubusenum_01009.Wdf
[2011.07.08 22:24:46 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2011.07.08 22:23:17 | 000,000,104 | ---- | C] () -- C:\Documents and Settings\Dávid\Asztal\Sajátgép.lnk
[2011.07.08 22:20:02 | 000,029,204 | ---- | C] () -- C:\WINDOWS\System32\nvapps.xml
[2011.07.08 22:19:51 | 000,014,757 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu
[2011.07.08 22:19:20 | 000,023,040 | R--- | C] () -- C:\WINDOWS\System32\drivers\GVCplDrv.sys
[2011.07.08 22:15:34 | 000,000,763 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Indítópult\VIA RAID TOOL.lnk
[2011.07.08 22:12:15 | 000,233,472 | R--- | C] () -- C:\WINDOWS\System32\cmirmdrv.exe
[2011.07.08 22:12:15 | 000,028,672 | R--- | C] () -- C:\WINDOWS\System32\cmirmdrv.dll
[2011.07.08 22:12:06 | 000,000,092 | ---- | C] () -- C:\WINDOWS\CMISETUP.INI
[2011.07.08 22:12:05 | 000,000,026 | ---- | C] () -- C:\WINDOWS\CMCDPLAY.INI
[2011.07.08 22:12:04 | 000,000,427 | ---- | C] () -- C:\WINDOWS\System\CmiCnfg.ini
[2011.07.08 22:12:04 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Wininit.ini
[2011.07.08 22:12:00 | 000,132,864 | R--- | C] () -- C:\WINDOWS\Cmuda.ini
[2011.07.08 22:11:56 | 000,266,240 | ---- | C] () -- C:\WINDOWS\CMIUninstall.exe
[2011.07.08 22:11:56 | 000,225,280 | ---- | C] () -- C:\WINDOWS\CmiRmRedundDir.exe
[2011.07.08 22:11:56 | 000,028,672 | ---- | C] () -- C:\WINDOWS\CMIRmDriver.dll
[2011.07.08 22:06:43 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\Dávid\Application Data\Microsoft\Internet Explorer\Quick Launch\Asztal megjelenítése.scf
[2011.07.08 22:06:37 | 000,000,815 | ---- | C] () -- C:\Documents and Settings\Dávid\Application Data\Microsoft\Internet Explorer\Quick Launch\Az Internet Explorer böngésző indítása.lnk
[2011.07.08 22:06:37 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\Dávid\Start Menu\Programs\Internet Explorer.lnk
[2011.07.08 22:06:27 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Dávid\Start Menu\Programs\Outlook Express.lnk
[2011.07.08 22:06:15 | 000,001,599 | ---- | C] () -- C:\Documents and Settings\Dávid\Start Menu\Programs\Távoli segítségnyújtás.lnk
[2011.07.08 22:06:15 | 000,000,788 | ---- | C] () -- C:\Documents and Settings\Dávid\Start Menu\Programs\Windows Media Player.lnk
[2011.07.08 22:04:24 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2011.07.08 22:03:24 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2011.07.08 22:00:46 | 000,002,904 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2011.07.08 22:00:46 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2011.07.08 22:00:46 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2011.07.08 22:00:46 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2011.07.08 22:00:46 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2011.07.08 22:00:37 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2011.07.08 22:00:37 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2011.07.08 22:00:35 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2011.07.08 21:59:15 | 000,000,786 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows Movie Maker.lnk
[2011.07.08 21:58:46 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2011.07.08 21:58:46 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2011.07.08 21:57:14 | 000,000,651 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows Messenger.lnk
[2011.07.08 21:57:12 | 000,021,948 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2011.07.08 21:56:14 | 000,065,954 | ---- | C] () -- C:\WINDOWS\A préri szele.bmp
[2011.07.08 21:56:14 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe vakolat.bmp
[2011.07.08 21:56:14 | 000,026,680 | ---- | C] () -- C:\WINDOWS\A Sumida folyó.bmp
[2011.07.08 21:56:14 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Zöldkő.bmp
[2011.07.08 21:56:14 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp
[2011.07.08 21:56:14 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Horgászni mentem.bmp
[2011.07.08 21:56:14 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kávészem.bmp
[2011.07.08 21:56:14 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Tollmintázat.bmp
[2011.07.08 21:56:14 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapoték.bmp
[2011.07.08 21:56:13 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Szappanbuborékok.bmp
[2011.07.08 21:56:13 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Kék csipke (16 színű).bmp
[2011.07.08 21:56:11 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2011.07.08 21:56:11 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2011.07.08 21:56:10 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2011.07.08 21:56:06 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2008.04.15 12:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2008.04.15 12:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2008.04.15 12:00:00 | 000,311,740 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2008.04.15 12:00:00 | 000,303,696 | ---- | C] () -- C:\WINDOWS\System32\perfh00E.dat
[2008.04.15 12:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2008.04.15 12:00:00 | 000,264,338 | ---- | C] () -- C:\WINDOWS\System32\perfi00E.dat
[2008.04.15 12:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2008.04.15 12:00:00 | 000,057,936 | ---- | C] () -- C:\WINDOWS\System32\perfc00E.dat
[2008.04.15 12:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2008.04.15 12:00:00 | 000,043,990 | ---- | C] () -- C:\WINDOWS\System32\perfd00E.dat
[2008.04.15 12:00:00 | 000,040,128 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2008.04.15 12:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2008.04.15 12:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2008.04.15 12:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2008.04.15 12:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2008.04.15 12:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2005.07.20 15:07:00 | 000,540,672 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll

========== LOP Check ==========

[2011.07.08 22:26:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2011.07.08 22:43:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DatacardService

========== Purity Check ==========



========== Custom Scans ==========


< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >

< c:\windows\*.* /U >
[3 c:\windows\*.tmp files -> c:\windows\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >
[2011.07.08 22:26:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2011.07.08 22:43:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DatacardService
[2011.07.11 23:08:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011.07.10 21:44:49 | 000,000,000 | --SD | M] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2011.07.11 22:47:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Norton

< %ALLUSERSPROFILE%\Application Data\*.exe /s >
[2010.05.08 13:48:24 | 000,106,496 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\Documents and Settings\All Users\Application Data\DatacardService\DataCard_Setup.exe
[2010.05.08 13:49:36 | 000,144,384 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\Documents and Settings\All Users\Application Data\DatacardService\DataCard_Setup64.exe
[2010.05.08 13:48:36 | 000,229,376 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe
[2010.05.08 13:48:26 | 000,241,664 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCSHelper.exe

< %APPDATA%\*. >
[2011.07.09 23:24:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dávid\Application Data\Adobe
[2011.07.08 22:06:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dávid\Application Data\Identities
[2011.07.09 23:24:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dávid\Application Data\Macromedia
[2011.07.11 23:09:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dávid\Application Data\Malwarebytes
[2011.07.12 23:32:05 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Dávid\Application Data\Microsoft
[2011.07.09 21:50:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dávid\Application Data\Mozilla
[2011.07.11 22:19:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dávid\Application Data\vlc

< %APPDATA%\*.exe /s >


< MD5 for: AGP440.SYS >
[2009.04.16 11:21:00 | 017,819,156 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys

< MD5 for: ATAPI.SYS >
[2009.04.16 11:21:00 | 017,819,156 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.13 11:40:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
[2008.04.13 11:40:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.15 12:00:00 | 000,605,184 | ---- | M] (Microsoft Corporation) MD5=73D5C3AA8CD7A8FEDC05A6AD6BCFE684 -- C:\cmdcons\autochk.exe
[2008.04.15 12:00:00 | 000,605,184 | ---- | M] (Microsoft Corporation) MD5=73D5C3AA8CD7A8FEDC05A6AD6BCFE684 -- C:\WINDOWS\system32\autochk.exe

< MD5 for: CDROM.SYS >
[2009.04.16 11:21:00 | 017,819,156 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.15 12:00:00 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys

< MD5 for: CHANGER.SYS >
[2009.04.16 11:21:00 | 017,819,156 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys

< MD5 for: CRYPTSVC.DLL >
[2008.04.15 12:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=13CB7FC794D005D60712FDD9F1362235 -- C:\WINDOWS\ERDNT\cache\cryptsvc.dll
[2008.04.15 12:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=13CB7FC794D005D60712FDD9F1362235 -- C:\WINDOWS\system32\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.15 12:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4BFA2DC223A814CCD1D07C6A0E26C72B -- C:\WINDOWS\ERDNT\cache\eventlog.dll
[2008.04.15 12:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4BFA2DC223A814CCD1D07C6A0E26C72B -- C:\WINDOWS\system32\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.15 12:00:00 | 001,035,776 | ---- | M] (Microsoft Corporation) MD5=AD3A8A9E8914439852A98CE48015E237 -- C:\WINDOWS\ERDNT\cache\explorer.exe
[2008.04.15 12:00:00 | 001,035,776 | ---- | M] (Microsoft Corporation) MD5=AD3A8A9E8914439852A98CE48015E237 -- C:\WINDOWS\explorer.exe

< MD5 for: HAL.DLL >
[2009.04.16 11:21:00 | 017,819,156 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.15 12:00:00 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\hal.dll

< MD5 for: IASTOR.SYS >
[2009.02.11 14:31:59 | 000,317,976 | ---- | M] (Intel Corporation) MD5=80C633722DA72E97F3F5B3B11325696D -- C:\WINDOWS\NLDRV\011\iastor.sys
[2009.02.11 14:31:40 | 000,304,920 | ---- | M] (Intel Corporation) MD5=997E8F5939F2D12CD9F2E6B395724C16 -- C:\WINDOWS\NLDRV\001\iastor.sys
[2009.02.11 14:31:52 | 000,304,920 | ---- | M] (Intel Corporation) MD5=997E8F5939F2D12CD9F2E6B395724C16 -- C:\WINDOWS\NLDRV\008\iastor.sys
[2009.02.11 14:32:05 | 000,308,248 | ---- | M] (Intel Corporation) MD5=E5A0034847537EAEE3C00349D5C34C5F -- C:\WINDOWS\NLDRV\012\iastor.sys

< MD5 for: ISAPNP.SYS >
[2009.04.16 11:21:00 | 017,819,156 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.04.14 06:40:22 | 000,037,504 | ---- | M] (Microsoft Corporation) MD5=3685529CAA2B14C9632E85E265BA293B -- C:\WINDOWS\system32\drivers\isapnp.sys
[2008.04.15 12:00:00 | 000,037,504 | ---- | M] (Microsoft Corporation) MD5=3685529CAA2B14C9632E85E265BA293B -- C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\i386\isapnp.sys

< MD5 for: LSASS.EXE >
[2008.04.15 12:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=21844F6DA13ECE4737D0B7524EDEB6EC -- C:\WINDOWS\ERDNT\cache\lsass.exe
[2008.04.15 12:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=21844F6DA13ECE4737D0B7524EDEB6EC -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.15 12:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ERDNT\cache\ndis.sys
[2008.04.15 12:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys

< MD5 for: NETLOGON.DLL >
[2008.04.15 12:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=A792F49B07A36D7F64D236C45BAC4A50 -- C:\WINDOWS\ERDNT\cache\netlogon.dll
[2008.04.15 12:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=A792F49B07A36D7F64D236C45BAC4A50 -- C:\WINDOWS\system32\netlogon.dll

< MD5 for: SCECLI.DLL >
[2008.04.15 12:00:00 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=4F6A0B812BD286E97E26DF3E225ABCFB -- C:\WINDOWS\ERDNT\cache\scecli.dll
[2008.04.15 12:00:00 | 000,186,880 | ---- | M] (Microsoft Corporation) MD5=4F6A0B812BD286E97E26DF3E225ABCFB -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2004.08.17 16:48:34 | 000,169,984 | ---- | M] (Microsoft Corporation) MD5=06EC350D3932096568FE274AE4F6B57F -- C:\cmdcons\SYSTEM32\SMSS.EXE
[2008.04.15 12:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=A03C3BF7E45ECC9775D3CE653086FAA1 -- C:\WINDOWS\system32\smss.exe

< MD5 for: SVCHOST.EXE >
[2008.04.15 12:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=05194D8A92CF7E559C1A38FC134C966A -- C:\WINDOWS\ERDNT\cache\svchost.exe
[2008.04.15 12:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=05194D8A92CF7E559C1A38FC134C966A -- C:\WINDOWS\system32\svchost.exe

< MD5 for: TCPIP.SYS >
[2009.01.30 09:15:14 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\ERDNT\cache\tcpip.sys
[2009.01.30 09:15:14 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\system32\drivers\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.15 12:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=B0DDDFC8361952B956EF9475244F40BD -- C:\WINDOWS\ERDNT\cache\userinit.exe
[2008.04.15 12:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=B0DDDFC8361952B956EF9475244F40BD -- C:\WINDOWS\system32\userinit.exe

< MD5 for: VIAMRAID.SYS >
[2004.07.06 16:45:42 | 000,060,672 | R--- | M] (VIA Technologies inc,.ltd) MD5=44056E9FEE477F512EE58BCFEE949621 -- C:\WINDOWS\system32\drivers\viamraid.sys

< MD5 for: VIPRT.SYS >
[2009.02.11 14:32:11 | 000,052,224 | ---- | M] (VIA Technologies, Inc.) MD5=7C69B1B6DEC5F8584AA352E522AF1476 -- C:\WINDOWS\NLDRV\032\viprt.sys

< MD5 for: WINLOGON.EXE >
[2008.04.15 12:00:00 | 000,509,952 | ---- | M] (Microsoft Corporation) MD5=15D1D956D9F01E51E6623EDB31EA43B6 -- C:\WINDOWS\ERDNT\cache\winlogon.exe
[2008.04.15 12:00:00 | 000,509,952 | ---- | M] (Microsoft Corporation) MD5=15D1D956D9F01E51E6623EDB31EA43B6 -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2008.04.15 12:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=EA551E1AB5BA99DA3397517BDD278E94 -- C:\WINDOWS\ERDNT\cache\ws2_32.dll
[2008.04.15 12:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=EA551E1AB5BA99DA3397517BDD278E94 -- C:\WINDOWS\system32\ws2_32.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2011.07.08 23:46:09 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2011.07.08 23:46:09 | 001,093,632 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2011.07.08 23:46:09 | 000,475,136 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
No captured output from command...

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
No captured output from command...

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
No captured output from command...

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2011.07.15 21:39:12 | 000,029,204 | ---- | M] () -- C:\WINDOWS\system32\nvapps.xml
[2011.07.14 21:52:13 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< End of report >


pén. júl. 15, 2011 21:23
Profil Privát üzenet küldése
ezüst tag
Avatar

Csatlakozott: vas. jan. 11, 2009 15:51
Hozzászólások: 79
Tartózkodási hely: errearra
Hozzászólás Re: stell, help me
OTL logfile created on: 2011.07.15. 21:53:49 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\Dávid\Asztal
Windows XP Professional Edition Szervizcsomag 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.11)
Locale: 0000040E | Country: Magyarország | Language: HUN | Date Format: yyyy.MM.dd.

1023,30 Mb Total Physical Memory | 759,92 Mb Available Physical Memory | 74,26% Memory free
2,40 Gb Paging File | 2,23 Gb Available in Paging File | 92,94% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 76,32 Gb Total Space | 67,07 Gb Free Space | 87,88% Space Free | Partition Type: NTFS
Drive E: | 21,17 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive G: | 931,51 Gb Total Space | 747,20 Gb Free Space | 80,21% Space Free | Partition Type: NTFS
Drive H: | 15,61 Gb Total Space | 14,11 Gb Free Space | 90,42% Space Free | Partition Type: FAT32

Computer Name: DAVID | User Name: Dávid | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011.07.15 21:41:44 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Dávid\Asztal\OTL.exe
PRC - [2011.07.08 22:43:21 | 000,122,880 | ---- | M] () -- C:\Program Files\Mobile Partner\Mobile Partner.exe
PRC - [2011.07.04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2010.05.08 13:48:36 | 000,229,376 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe
PRC - [2008.04.15 12:00:00 | 001,035,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2004.07.14 08:44:40 | 000,585,728 | R--- | M] (VIA Technologies) -- C:\Program Files\VIA\RAID\raid_tool.exe


========== Modules (SafeList) ==========

MOD - [2011.07.15 21:41:44 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Dávid\Asztal\OTL.exe
MOD - [2011.07.04 13:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\snxhk.dll
MOD - [2008.04.15 12:00:00 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - [2011.07.04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2010.05.08 13:48:36 | 000,229,376 | ---- | M] () [Auto | Running] -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe -- (DCService.exe)


========== Driver Services (SafeList) ==========

DRV - [2011.07.04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011.07.04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011.07.04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011.07.04 13:35:12 | 000,102,616 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2011.07.04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011.07.04 13:32:13 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011.07.04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2010.04.09 15:24:12 | 000,063,616 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ew_jubusenum.sys -- (huawei_enumerator)
DRV - [2010.03.25 10:08:30 | 000,105,728 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2010.03.20 11:56:04 | 000,101,504 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_hwusbdev.sys -- (ew_hwusbdev)
DRV - [2009.02.11 14:32:11 | 000,009,216 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\videX32.sys -- (videX32)
DRV - [2004.05.02 10:47:08 | 000,023,040 | R--- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\GVCplDrv.sys -- (GVCplDrv)
DRV - [2003.07.01 22:42:00 | 000,027,904 | R--- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\viaagp1.sys -- (viaagp1)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-583907252-884357618-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
IE - HKU\S-1-5-21-583907252-884357618-1417001333-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: smarterwiki@wikiatic.com:4.4.9
FF - prefs.js..extensions.enabledItems: {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.14.2
FF - prefs.js..extensions.enabledItems: {0538E3E3-7E9B-4d49-8831-A227C80A7AD3}:2.0.2
FF - prefs.js..extensions.enabledItems: {02450954-cdd9-410f-b1da-db804e18c671}:0.96.3
FF - prefs.js..extensions.enabledItems: {89506680-e3f4-484c-a2c0-ed711d481eda}:0.9.5.6
FF - prefs.js..extensions.enabledItems: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20110704
FF - prefs.js..network.proxy.type: 0

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.07.09 21:50:30 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.07.09 21:50:13 | 000,000,000 | ---D | M]

[2011.07.09 21:50:36 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Dávid\Application Data\Mozilla\Extensions
[2011.07.14 23:44:44 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Dávid\Application Data\Mozilla\Firefox\Profiles\0yme8uql.default\extensions
[2011.07.10 22:13:01 | 000,000,000 | ---D | M] (Screengrab) -- C:\Documents and Settings\Dávid\Application Data\Mozilla\Firefox\Profiles\0yme8uql.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
[2011.07.10 22:05:48 | 000,000,000 | ---D | M] (Forecastfox Weather) -- C:\Documents and Settings\Dávid\Application Data\Mozilla\Firefox\Profiles\0yme8uql.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
[2011.07.10 22:05:48 | 000,000,000 | ---D | M] (Flashblock) -- C:\Documents and Settings\Dávid\Application Data\Mozilla\Firefox\Profiles\0yme8uql.default\extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a}
[2011.07.10 22:13:01 | 000,000,000 | ---D | M] (NoScript) -- C:\Documents and Settings\Dávid\Application Data\Mozilla\Firefox\Profiles\0yme8uql.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}
[2011.07.10 22:15:54 | 000,000,000 | ---D | M] (Firefox Showcase) -- C:\Documents and Settings\Dávid\Application Data\Mozilla\Firefox\Profiles\0yme8uql.default\extensions\{89506680-e3f4-484c-a2c0-ed711d481eda}
[2011.07.10 22:20:19 | 000,000,000 | ---D | M] (WOT) -- C:\Documents and Settings\Dávid\Application Data\Mozilla\Firefox\Profiles\0yme8uql.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2011.07.10 22:02:03 | 000,000,000 | ---D | M] (FastestFox) -- C:\Documents and Settings\Dávid\Application Data\Mozilla\Firefox\Profiles\0yme8uql.default\extensions\smarterwiki@wikiatic.com
[2011.07.09 21:50:14 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\DáVID\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\0YME8UQL.DEFAULT\EXTENSIONS\{02450954-CDD9-410F-B1DA-DB804E18C671}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\DáVID\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\0YME8UQL.DEFAULT\EXTENSIONS\{0538E3E3-7E9B-4D49-8831-A227C80A7AD3}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\DáVID\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\0YME8UQL.DEFAULT\EXTENSIONS\{3D7EB24F-2740-49DF-8937-200B1CC08F8A}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\DáVID\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\0YME8UQL.DEFAULT\EXTENSIONS\{89506680-E3F4-484C-A2C0-ED711D481EDA}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\DáVID\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\0YME8UQL.DEFAULT\EXTENSIONS\{A0D7CCB3-214D-498B-B4AA-0E8FDA9A7BF7}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\DáVID\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\0YME8UQL.DEFAULT\EXTENSIONS\SMARTERWIKI@WIKIATIC.COM
[2010.12.03 20:44:48 | 000,000,760 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml
[2010.12.03 20:44:48 | 000,001,426 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\polymeta.xml
[2010.12.03 20:44:48 | 000,001,628 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\sztaki-en-hu.xml
[2010.12.03 20:44:48 | 000,000,974 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\vatera.xml
[2010.12.03 20:44:48 | 000,001,189 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-hu.xml

O1 HOSTS File: ([2008.04.15 12:00:00 | 000,000,687 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe (NVIDIA Corporation)
O4 - HKU\.DEFAULT..\RunOnce: [_nltide_2] File not found
O4 - HKU\S-1-5-18..\RunOnce: [_nltide_2] File not found
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Indítópult\VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe (VIA Technologies)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-583907252-884357618-1417001333-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-583907252-884357618-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-583907252-884357618-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-583907252-884357618-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Jelenlegi saját honlap) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Lanka.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Lanka.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011.07.08 22:00:46 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2011.07.12 00:53:10 | 000,000,000 | R--D | M] - C:\Autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010.05.08 21:48:36 | 000,126,976 | R--- | M] () - E:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2009.05.17 09:26:42 | 000,000,047 | R--- | M] () - E:\AUTORUN.INF -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2011.07.15 21:41:07 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Dávid\Asztal\OTL.exe
[2011.07.15 20:07:44 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2011.07.15 20:07:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2011.07.15 20:07:42 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2011.07.15 13:02:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Dokumentumok\Beérkezett fájlok
[2011.07.15 12:59:36 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Dávid\Recent
[2011.07.15 12:56:25 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011.07.15 12:28:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2011.07.15 12:19:27 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011.07.15 12:18:59 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2011.07.15 12:09:45 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2011.07.15 12:09:45 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2011.07.15 12:09:45 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2011.07.15 12:09:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2011.07.15 12:09:25 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011.07.15 12:09:21 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dávid\Start Menu\Programs\Felügyeleti eszközök
[2011.07.15 11:46:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Start Menu\Programs\CCleaner
[2011.07.15 11:46:21 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011.07.15 11:15:28 | 004,626,664 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\Dávid\Asztal\WindowsXP-KB310994-SP2-Pro-BootDisk-HUN.exe
[2011.07.15 11:02:03 | 004,153,133 | R--- | C] (Swearware) -- C:\Documents and Settings\Dávid\Asztal\ComboFix.exe
[2011.07.13 21:52:56 | 000,000,000 | ---D | C] -- C:\Filmek
[2011.07.12 00:53:10 | 000,000,000 | R--D | C] -- C:\Autorun.inf
[2011.07.12 00:46:16 | 000,000,000 | ---D | C] -- C:\UsbFix
[2011.07.11 23:09:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Application Data\Malwarebytes
[2011.07.11 23:08:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.07.11 23:08:54 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011.07.11 23:08:53 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011.07.11 23:08:53 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.07.11 23:08:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011.07.11 22:47:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Local Settings\Application Data\NPE
[2011.07.11 22:47:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Norton
[2011.07.10 21:11:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Dokumentumok\Letöltések
[2011.07.09 23:24:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Application Data\Macromedia
[2011.07.09 23:24:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Application Data\Adobe
[2011.07.09 23:20:26 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011.07.09 21:50:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Local Settings\Application Data\Mozilla
[2011.07.09 21:50:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Application Data\Mozilla
[2011.07.09 21:50:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox
[2011.07.09 21:50:11 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2011.07.09 21:46:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Local Settings\Application Data\Identities
[2011.07.09 18:14:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Application Data\vlc
[2011.07.09 18:13:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VideoLAN
[2011.07.09 18:13:12 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2011.07.09 18:09:01 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dávid\Dokumentumok\Videók
[2011.07.09 08:10:43 | 000,441,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2011.07.08 23:51:35 | 000,006,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\enum1394.sys
[2011.07.08 23:51:19 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\usbui.dll
[2011.07.08 23:50:27 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumentumok\Zene
[2011.07.08 23:50:03 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2011.07.08 23:50:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2011.07.08 23:49:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2011.07.08 23:49:58 | 000,000,000 | ---D | C] -- C:\Program Files
[2011.07.08 23:49:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2011.07.08 23:49:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2011.07.08 23:49:49 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuq.dll
[2011.07.08 23:49:49 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuf.dll
[2011.07.08 23:49:49 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdazel.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycc.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbduzb.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdur.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtat.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru1.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmon.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkyr.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkaz.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbu.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdblr.dll
[2011.07.08 23:49:48 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdaze.dll
[2011.07.08 23:49:46 | 000,008,192 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhept.dll
[2011.07.08 23:49:46 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela3.dll
[2011.07.08 23:49:46 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela2.dll
[2011.07.08 23:49:46 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgkl.dll
[2011.07.08 23:49:46 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe319.dll
[2011.07.08 23:49:46 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe220.dll
[2011.07.08 23:49:46 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe.dll
[2011.07.08 23:49:45 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv1.dll
[2011.07.08 23:49:45 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv.dll
[2011.07.08 23:49:45 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdest.dll
[2011.07.08 23:49:45 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt1.dll
[2011.07.08 23:49:45 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt.dll
[2011.07.08 23:49:40 | 000,007,168 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz.dll
[2011.07.08 23:49:40 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycl.dll
[2011.07.08 23:49:40 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl1.dll
[2011.07.08 23:49:40 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl.dll
[2011.07.08 23:49:40 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl.dll
[2011.07.08 23:49:40 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz2.dll
[2011.07.08 23:49:40 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz1.dll
[2011.07.08 23:49:40 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcr.dll
[2011.07.08 23:49:40 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\KBDAL.DLL
[2011.07.08 23:49:40 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdro.dll
[2011.07.08 23:49:40 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl1.dll
[2011.07.08 23:49:38 | 000,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dgrpsetu.dll
[2011.07.08 23:49:38 | 000,085,532 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dgsetup.dll
[2011.07.08 23:49:38 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll
[2011.07.08 23:49:37 | 000,103,424 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\EqnClass.Dll
[2011.07.08 23:49:37 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll
[2011.07.08 23:49:37 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLESVR.DLL
[2011.07.08 23:49:37 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TAPI.DLL
[2011.07.08 23:49:37 | 000,013,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WFWNET.DRV
[2011.07.08 23:49:37 | 000,009,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VER.DLL
[2011.07.08 23:49:37 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SHELL.DLL
[2011.07.08 23:49:37 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TIMER.DRV
[2011.07.08 23:49:37 | 000,003,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SYSTEM.DRV
[2011.07.08 23:49:37 | 000,002,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VGA.DRV
[2011.07.08 23:49:37 | 000,001,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SOUND.DRV
[2011.07.08 23:49:36 | 000,126,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MSVIDEO.DLL
[2011.07.08 23:49:36 | 000,109,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVIFILE.DLL
[2011.07.08 23:49:36 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLECLI.DLL
[2011.07.08 23:49:36 | 000,073,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIAVI.DRV
[2011.07.08 23:49:36 | 000,070,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVICAP.DLL
[2011.07.08 23:49:36 | 000,033,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\COMMDLG.DLL
[2011.07.08 23:49:36 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIWAVE.DRV
[2011.07.08 23:49:36 | 000,025,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCISEQ.DRV
[2011.07.08 23:49:36 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\TASKMAN.EXE
[2011.07.08 23:49:36 | 000,009,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\LZEXPAND.DLL
[2011.07.08 23:49:36 | 000,002,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MOUSE.DRV
[2011.07.08 23:49:36 | 000,002,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\KEYBOARD.DRV
[2011.07.08 23:49:36 | 000,001,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMTASK.TSK
[2011.07.08 23:49:35 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WINSPOOL.DRV
[2011.07.08 23:49:35 | 000,069,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMSYSTEM.DLL
[2011.07.08 23:49:35 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\batt.dll
[2011.07.08 23:49:33 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\storprop.dll
[2011.07.08 23:49:23 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu
[2011.07.08 23:49:23 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Indítópult
[2011.07.08 23:49:23 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumentumok
[2011.07.08 23:49:23 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Sablonok
[2011.07.08 23:49:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites
[2011.07.08 23:49:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Asztal
[2011.07.08 23:47:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2011.07.08 23:47:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2011.07.08 23:47:23 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2011.07.08 23:47:23 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Application Data
[2011.07.08 23:47:03 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2011.07.08 23:47:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2011.07.08 23:42:24 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2011.07.08 23:42:24 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2011.07.08 23:42:24 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2011.07.08 23:42:24 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\UMDF
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Offline Web Pages
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\NLDRV
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Network Diagnostic
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\L2Schemas
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\hu-hu
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\hu
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\ehome
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1038
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2011.07.08 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2011.07.08 22:43:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Mobile Partner
[2011.07.08 22:43:26 | 000,069,504 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_jucdcacm.sys
[2011.07.08 22:43:26 | 000,063,616 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_jubusenum.sys
[2011.07.08 22:43:26 | 000,046,336 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_jucdcecm.sys
[2011.07.08 22:43:26 | 000,025,088 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_juextctrl.sys
[2011.07.08 22:43:25 | 000,861,696 | ---- | C] (DiBcom SA) -- C:\WINDOWS\System32\drivers\mod7700.sys
[2011.07.08 22:43:25 | 000,117,504 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewusbnet.sys
[2011.07.08 22:43:25 | 000,105,728 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewusbmdm.sys
[2011.07.08 22:43:25 | 000,024,448 | ---- | C] (Huawei Tech. Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewdcsc.sys
[2011.07.08 22:43:25 | 000,011,136 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_usbenumfilter.sys
[2011.07.08 22:43:24 | 000,101,504 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_hwusbdev.sys
[2011.07.08 22:43:01 | 000,000,000 | ---D | C] -- C:\Program Files\Mobile Partner
[2011.07.08 22:26:56 | 000,309,848 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011.07.08 22:26:56 | 000,019,544 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011.07.08 22:26:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\avast! Free Antivirus
[2011.07.08 22:26:55 | 000,025,432 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011.07.08 22:26:54 | 000,043,608 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011.07.08 22:26:52 | 000,102,616 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011.07.08 22:26:52 | 000,096,344 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011.07.08 22:26:52 | 000,030,808 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011.07.08 22:26:43 | 000,040,112 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011.07.08 22:26:42 | 000,199,304 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011.07.08 22:26:38 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2011.07.08 22:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2011.07.08 22:24:41 | 000,016,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsgXP_2k3.dll
[2011.07.08 22:24:33 | 001,461,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfcoinstaller01009.dll
[2011.07.08 22:24:33 | 001,461,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\WdfCoInstaller01009.dll
[2011.07.08 22:24:33 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbccid.sys
[2011.07.08 22:24:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\DatacardService
[2011.07.08 22:23:51 | 000,000,000 | ---D | C] -- C:\C Mappa
[2011.07.08 22:19:51 | 000,176,128 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvudisp.exe
[2011.07.08 22:19:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview
[2011.07.08 22:15:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VIA
[2011.07.08 22:14:41 | 000,000,000 | ---D | C] -- C:\Program Files\VIA
[2011.07.08 22:12:15 | 002,568,192 | R--- | C] (C-Media Corporation) -- C:\WINDOWS\System\cmicnfg.cpl
[2011.07.08 22:12:15 | 001,458,176 | R--- | C] (C-Media Electronics Inc.) -- C:\WINDOWS\System\SmWizard.exe
[2011.07.08 22:12:15 | 000,917,504 | R--- | C] (C-Media Electronics Inc.) -- C:\WINDOWS\System\cmids3d.dll
[2011.07.08 22:12:15 | 000,712,704 | R--- | C] (Sensaura Ltd) -- C:\WINDOWS\System32\Audio3D.dll
[2011.07.08 22:12:15 | 000,712,704 | R--- | C] (Sensaura Ltd) -- C:\WINDOWS\System32\a3d.dll
[2011.07.08 22:12:15 | 000,163,840 | R--- | C] (C-Media) -- C:\WINDOWS\System32\cmuda.dll
[2011.07.08 22:12:15 | 000,032,768 | R--- | C] (C-Media Corporation) -- C:\WINDOWS\System32\udaprop.dll
[2011.07.08 22:12:14 | 000,146,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\portcls.sys
[2011.07.08 22:12:14 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksproxy.ax
[2011.07.08 22:12:14 | 000,060,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\drmk.sys
[2011.07.08 22:12:14 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksuser.dll
[2011.07.08 22:12:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\C-Media 3D Audio
[2011.07.08 22:11:56 | 000,000,000 | ---D | C] -- C:\Program Files\C-Media 3D Audio
[2011.07.08 22:11:55 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2011.07.08 22:10:12 | 000,027,904 | R--- | C] (VIA Technologies, Inc.) -- C:\WINDOWS\System32\drivers\VIAAGP1.SYS
[2011.07.08 22:09:59 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2011.07.08 22:09:42 | 000,306,688 | ---- | C] (InstallShield Software Corporation) -- C:\WINDOWS\IsUninst.exe
[2011.07.08 22:09:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Tools
[2011.07.08 22:09:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2011.07.08 22:06:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Application Data\Identities
[2011.07.08 22:06:20 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dávid\Dokumentumok\Zene
[2011.07.08 22:06:20 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dávid\Dokumentumok\Képek
[2011.07.08 22:06:20 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2011.07.08 22:06:15 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Dávid\Local Settings\Application Data\Microsoft
[2011.07.08 22:06:15 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Dávid\Application Data\Microsoft
[2011.07.08 22:06:15 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Dávid\SendTo
[2011.07.08 22:06:15 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Dávid\Application Data
[2011.07.08 22:06:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dávid\Start Menu
[2011.07.08 22:06:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dávid\Start Menu\Programs\Kellékek
[2011.07.08 22:06:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dávid\Start Menu\Programs\Indítópult
[2011.07.08 22:06:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dávid\Favorites
[2011.07.08 22:06:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Dávid\Dokumentumok
[2011.07.08 22:06:15 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Dávid\Cookies
[2011.07.08 22:06:15 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Dávid\Sablonok
[2011.07.08 22:06:15 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Dávid\PrintHood
[2011.07.08 22:06:15 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Dávid\NetHood
[2011.07.08 22:06:15 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Dávid\Local Settings
[2011.07.08 22:06:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Dávid\Asztal
[2011.07.08 22:04:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2011.07.08 22:04:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2011.07.08 22:04:43 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2011.07.08 22:04:42 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2011.07.08 22:04:42 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2011.07.08 22:04:20 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2011.07.08 22:04:20 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2011.07.08 22:01:34 | 000,671,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstime.dll
[2011.07.08 22:01:34 | 000,477,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtmled.dll
[2011.07.08 22:01:34 | 000,384,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedkcs32.dll
[2011.07.08 22:01:34 | 000,383,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieapfltr.dll
[2011.07.08 22:01:34 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieaksie.dll
[2011.07.08 22:01:34 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msrating.dll
[2011.07.08 22:01:34 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieakui.dll
[2011.07.08 22:01:34 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieakeng.dll
[2011.07.08 22:01:34 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iernonce.dll
[2011.07.08 22:01:33 | 002,455,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieapfltr.dat
[2011.07.08 22:01:33 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\urlmon.dll
[2011.07.08 22:01:33 | 001,028,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll.mui
[2011.07.08 22:01:33 | 000,634,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iexplore.exe
[2011.07.08 22:01:33 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2011.07.08 22:01:33 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\advpack.dll
[2011.07.08 22:01:33 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\url.dll
[2011.07.08 22:01:33 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\occache.dll
[2011.07.08 22:01:33 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ie4uinit.exe
[2011.07.08 22:01:33 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pngfilt.dll
[2011.07.08 22:01:33 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsproxy.dll
[2011.07.08 22:01:33 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieudinit.exe
[2011.07.08 22:01:32 | 001,831,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcpl.cpl
[2011.07.08 22:01:32 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll
[2011.07.08 22:01:32 | 000,459,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2011.07.08 22:01:32 | 000,347,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxtmsft.dll
[2011.07.08 22:01:32 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\webcheck.dll
[2011.07.08 22:01:32 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxtrans.dll
[2011.07.08 22:01:32 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\extmgr.dll
[2011.07.08 22:01:32 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icardie.dll
[2011.07.08 22:01:32 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2011.07.08 22:01:31 | 006,066,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2011.07.08 22:01:23 | 000,765,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vgx.dll
[2011.07.08 22:01:07 | 000,026,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spupdsvc.exe
[2011.07.08 22:01:07 | 000,018,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
[2011.07.08 22:01:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2011.07.08 22:01:06 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2011.07.08 22:01:02 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2011.07.08 22:00:26 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS


pén. júl. 15, 2011 21:22
Profil Privát üzenet küldése
ezüst tag
Avatar

Csatlakozott: vas. jan. 11, 2009 15:51
Hozzászólások: 79
Tartózkodási hely: errearra
Hozzászólás Re: stell, help me
OTL Extras logfile created on: 2011.07.15. 21:53:49 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\Dávid\Asztal
Windows XP Professional Edition Szervizcsomag 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.11)
Locale: 0000040E | Country: Magyarország | Language: HUN | Date Format: yyyy.MM.dd.

1023,30 Mb Total Physical Memory | 759,92 Mb Available Physical Memory | 74,26% Memory free
2,40 Gb Paging File | 2,23 Gb Available in Paging File | 92,94% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 76,32 Gb Total Space | 67,07 Gb Free Space | 87,88% Space Free | Partition Type: NTFS
Drive E: | 21,17 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive G: | 931,51 Gb Total Space | 747,20 Gb Free Space | 80,21% Space Free | Partition Type: NTFS
Drive H: | 15,61 Gb Total Space | 14,11 Gb Free Space | 90,42% Space Free | Partition Type: FAT32

Computer Name: DAVID | User Name: Dávid | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-583907252-884357618-1417001333-1003\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{350C940e-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"avast" = avast! Free Antivirus
"CCleaner" = CCleaner
"C-Media Audio" = C-Media 3D Audio
"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platform eszközkezelő
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mobile Partner" = Mobile Partner
"Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13)
"NVIDIA Drivers" = NVIDIA Drivers
"Usbfix" = Usbfix By C_XX & El Desaparecido
"VLC media player" = VLC media player 1.1.6
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 2011.07.13. 16:17:18 | Computer Name = DAVID | Source = Application Hang | ID = 1002
Description = Nem válaszoló alkalmazás: HelpCtr.exe, verzió: 5.1.2600.5512, nem
válaszoló modul: hungapp, verzió: 0.0.0.0, memóriacím: 0x00000000.


< End of report >


pén. júl. 15, 2011 21:19
Profil Privát üzenet küldése
a fórum lelke
Avatar

Csatlakozott: vas. jún. 24, 2007 10:18
Hozzászólások: 6679
Tartózkodási hely: Revuca.S.k>>Szlovákia, nem tudok jól magyarul írni, ezért ilyen amit látsz,
Hozzászólás Re: stell, help me
kapcsold az kulso meghajtot is a gephez,

Letolteni az asztalra>OTListIt2>> http://oldtimer.geekstogo.com/OTL.exe
-Futatni
-bepipazni
-Scan all users.
-Lop check.
-Purity check.
-v sekciobaExtra Registry>bepotyozni>Use SafeList
-az ablakjaba -customscan/fixes masold be a zold textet-es klik RUNSCAN
-5-10 perc mulva add logot tedd ide
-OTL.txt (az asztalon lesz). Tedd ide
-extras.txt-a talcan lesz.tedd ide

Kód:
netsvcs
drivers32
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
c:\windows\*.* /U
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
ahcix86s.sys
nvrd32.sys
symmpi.sys
adp3132.sys
mv61xx.sys
nvraid.sys
ndis.sys
winlogon.exe
explorer.exe
userinit.exe
lsass.exe
svchost.exe
smss.exe
hal.dll
ws2_32.dll
tcpip.sys
cryptsvc.dll
Changer.sys
JakNDis.sys
isapnp.sys
cdrom.sys
autochk.exe
/md5stop
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
CREATERESTOREPOINT


pén. júl. 15, 2011 12:10
Profil Privát üzenet küldése Honlap
Hozzászólások megjelenítése:  Rendezés  
Hozzászólás a témához   [ 1923 hozzászólás ]  Oldal Előző  1 ... 7, 8, 9, 10, 11, 12, 13 ... 39  Következő

Ki van itt

Jelenlévő fórumozók: nincs regisztrált felhasználó valamint 2 vendég


Nem nyithatsz témákat ebben a fórumban.
Nem válaszolhatsz egy témára ebben a fórumban.
Nem szerkesztheted a hozzászólásaidat ebben a fórumban.
Nem törölheted a hozzászólásaidat ebben a fórumban.

Keresés:
Ugrás:  
cron
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group.
Designed by ST Software for PTF.
Magyar fordítás © Magyar phpBB Közösség