Tu je
"spravca" - 2007-07-13 20:33:44 - ComboFix 07-07-13.8 - Service Pack 2 NTFS
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\drivers\sfsync02.sys
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
-------\LEGACY_IPRIP
-------\LEGACY_SFSYNC02
-------\Iprip
-------\sfsync02
((((((((((((((((((((((((( Files Created from 2007-06-13 to 2007-07-13 )))))))))))))))))))))))))))))))
2007-07-13 20:34 0 --a------ C:\WINDOWS\system32\sfsync02.dll
2007-07-13 20:32 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-07-13 12:16 <DIR> d-------- C:\Program Files\OO Software
2007-07-07 10:46 5,824 --a------ C:\WINDOWS\system32\drivers\ASUSHWIO.SYS
2007-07-05 11:50 <DIR> d-------- C:\Program Files\ATITool
2007-07-02 15:55 6,784 --a------ C:\WINDOWS\nvoclock.sys
2007-07-02 15:55 57,344 --a------ C:\WINDOWS\AutoTuneScript.dll
2007-07-02 15:55 53,248 --a------ C:\WINDOWS\nvgpio.dll
2007-07-02 15:55 499,712 --a------ C:\WINDOWS\msvcp71.dll
2007-07-02 15:55 45,056 --a------ C:\WINDOWS\NTuneGpu.dll
2007-07-02 15:55 380,928 --a------ C:\WINDOWS\nvsulib.dll
2007-07-02 15:55 352,256 --a------ C:\WINDOWS\ntuneoem.dll
2007-07-02 15:55 348,160 --a------ C:\WINDOWS\msvcr71.dll
2007-07-02 15:55 217,088 --a------ C:\WINDOWS\NVGfxOgl.dll
2007-07-02 15:55 172,032 --a------ C:\WINDOWS\NVBenchMarks.dll
2007-07-02 15:55 11,264 --a------ C:\WINDOWS\nvoclk64.sys
2007-07-02 15:55 1,060,864 --a------ C:\WINDOWS\MFC71.dll
2007-07-02 15:55 <DIR> d-------- C:\Program Files\MSI
2007-07-02 09:10 512,096 --a------ C:\WINDOWS\system32\drivers\amon.sys
2007-07-02 09:10 298,104 --a------ C:\WINDOWS\system32\imon.dll
2007-07-02 09:10 15,424 --a------ C:\WINDOWS\system32\drivers\nod32drv.sys
2007-07-01 19:21 36,352 --a------ C:\WINDOWS\system32\drivers\AmdK8.sys
2007-07-01 19:21 <DIR> d-------- C:\Program Files\AMD
2007-06-30 11:52 208,896 --------- C:\WINDOWS\system32\nvuide.exe
2007-06-30 11:51 57,856 --a------ C:\WINDOWS\system32\drivers\NVENETFD.sys
2007-06-30 11:51 356,352 --a------ C:\WINDOWS\system32\nvunrm.exe
2007-06-30 11:51 35,840 --a------ C:\WINDOWS\system32\nvconrm.dll
2007-06-30 11:51 35,840 --a------ C:\WINDOWS\system32\NVCOI.DLL
2007-06-30 11:51 261,632 --a------ C:\WINDOWS\system32\drivers\nvsnpu.sys
2007-06-30 11:51 208,896 --a------ C:\WINDOWS\system32\NVUNINST.EXE
2007-06-30 11:51 201,728 --a------ C:\WINDOWS\system32\fdco1.dll
2007-06-30 11:51 19,968 --a------ C:\WINDOWS\system32\drivers\nvnetbus.sys
2007-06-30 11:51 110,592 --a------ C:\WINDOWS\system32\drivers\nvtcp.sys
2007-06-30 11:51 11,264 --a------ C:\WINDOWS\system32\bdco1.dll
2007-06-30 11:51 1,428 --a------ C:\WINDOWS\system32\drivers\nvphy.bin
2007-06-30 11:51 1,161,088 --a------ C:\WINDOWS\system32\drivers\nvnrm.sys
2007-06-29 20:04 <DIR> d-------- C:\DOCUME~1\spravca\APPLIC~1\MSNInstaller
2007-06-28 17:35 <DIR> d-------- C:\WINDOWS\NV33683372.TMP
2007-06-27 17:47 <DIR> d-------- C:\Program Files\Lavasoft
2007-06-27 17:47 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-06-27 17:47 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
2007-06-27 15:45 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Eset
2007-06-23 20:11 65,024 --------- C:\WINDOWS\system32\agrsmdel.exe
2007-06-21 20:07 545 --a------ C:\WINDOWS\UC.PIF
2007-06-21 20:07 545 --a------ C:\WINDOWS\RAR.PIF
2007-06-21 20:07 545 --a------ C:\WINDOWS\PKZIP.PIF
2007-06-21 20:07 545 --a------ C:\WINDOWS\PKUNZIP.PIF
2007-06-21 20:07 545 --a------ C:\WINDOWS\NOCLOSE.PIF
2007-06-21 20:07 545 --a------ C:\WINDOWS\LHA.PIF
2007-06-21 20:07 545 --a------ C:\WINDOWS\ARJ.PIF
2007-06-21 20:07 <DIR> d-------- C:\Program Files\totalcmd
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-07-10 10:51:59 -------- d-----w C:\Program Files\Scorpions WinCheater
2007-06-30 12:50:29 -------- d--h--w C:\Program Files\InstallShield Installation Information
2007-06-27 15:45:28 -------- d-----w C:\DOCUME~1\spravca\APPLIC~1\Lavasoft
2007-06-10 17:41:02 1,277 ----a-w C:\WINDOWS\eReg.dat
2007-06-06 14:20:04 -------- d-----w C:\DOCUME~1\spravca\APPLIC~1\ATI
2007-06-04 13:18:48 9,344 ----a-w C:\WINDOWS\system32\drivers\NSDriver.sys
2007-06-04 13:17:02 8,320 ----a-w C:\WINDOWS\system32\drivers\AWRTRD.sys
2007-06-04 13:14:56 6,272 ----a-w C:\WINDOWS\system32\drivers\AWRTPD.sys
2007-05-28 15:11:13 108,144 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2007-05-23 16:52:38 -------- d-----w C:\Program Files\Everest 2007
2007-05-16 15:12:02 683,520 ----a-w C:\WINDOWS\system32\inetcomm.dll
2007-05-11 00:09:48 1,050,120 ----a-w C:\WINDOWS\system32\oodag.exe
2007-05-11 00:08:54 2,512,392 ----a-w C:\WINDOWS\system32\oodtray.exe
2007-05-11 00:08:24 194,056 ----a-w C:\WINDOWS\system32\oodbs.exe
2007-05-11 00:06:40 202,248 ----a-w C:\WINDOWS\system32\oodtrrs.dll
2007-05-11 00:06:24 10,248 ----a-w C:\WINDOWS\system32\oodbsrs.dll
2007-05-11 00:06:22 15,880 ----a-w C:\WINDOWS\system32\oodagrs.dll
2007-05-11 00:06:22 15,880 ----a-w C:\WINDOWS\system32\oodagmg.dll
2007-05-10 21:18:24 15,368 ----a-w C:\WINDOWS\system32\ootmapi.dll
2007-05-01 10:26:21 1,156 ----a-w C:\WINDOWS\mozver.dat
2007-04-25 14:21:15 144,896 ----a-w C:\WINDOWS\system32\schannel.dll
2007-04-18 16:12:23 2,854,400 ----a-w C:\WINDOWS\system32\msi.dll
2007-04-16 20:47:36 33,624 ----a-w C:\WINDOWS\system32\wups.dll
2007-04-16 20:45:54 1,710,936 ----a-w C:\WINDOWS\system32\wuaueng.dll
2007-04-16 20:45:48 549,720 ----a-w C:\WINDOWS\system32\wuapi.dll
2007-04-16 20:45:42 325,976 ----a-w C:\WINDOWS\system32\wucltui.dll
2007-04-16 20:45:36 203,096 ----a-w C:\WINDOWS\system32\wuweb.dll
2007-04-16 20:45:28 92,504 ----a-w C:\WINDOWS\system32\cdm.dll
2007-04-16 20:45:20 53,080 ----a-w C:\WINDOWS\system32\wuauclt.exe
2007-04-16 20:45:20 43,352 ----a-w C:\WINDOWS\system32\wups2.dll
2007-04-13 13:19:52 7,680 ----a-w C:\WINDOWS\system32\lsdelete.exe
2006-02-28 12:00:00 73,728 --sha-w C:\WINDOWS\RegisteredPackages\{DD90D410-1823-43EB-9A16-A2331BF08799}$BACKUP$\System\wmplayer.exe
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AGRSMMSG"="AGRSMMSG.exe" [2003-08-20 06:18 C:\WINDOWS\AGRSMMSG.exe]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2007-07-02 09:08]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2006-02-28 14:00]
"sound"="C:\\Program Files\\Realtek\\InstallShield\\SoundMan.exe" [2006-05-04 10:22]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\aawservice]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
p2psvc p2psvc p2pimsvc p2pgasvc PNRPSvc
**************************************************************************
catchme 0.3.915 W2K/XP/Vista - rootkit detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-07-13 20:35:51
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Completion time: 2007-07-13 20:37:12 - machine was rebooted
C:\ComboFix-quarantined-files.txt ... 2007-07-13 20:37
--- E O F ---