Registrace  •  FAQ  •  Pravidla fóra  •  Uživatelské blogy  •  PCTuning.cz  •  Hledat  • Přihlášení
 • Funkce report, slouží pro upozornění na porušení pravidel, ne vzkazy moderátorům.

Právě je so 6. březen 2021, 00:23

Zobrazit příspěvky bez odpovědiZobrazit aktivní témata



Čas je uváděn v UTC + 1 hodina


Odpovědět na téma  [ 3 příspěvků ] 
Autor Zpráva
 Předmět: Rootkit
PříspěvekZaslal v: so 12. prosinec 2009, 18:52 
Nováček
Nováček

Založen: 19. červenec 2009
Bydliště: Slovakia, Liptovsky Cikuláš
Nahoru
zdavim .. moj antivirak AVG 8.5 mi nasiel jeden skryty subor "Názov objektu";"C:\Windows\system32\Drivers\mchInjDrv.sys"
"Názov detekcie";"Skrytý ovládač"
"Typ objektu";"Súbor"
"Typ SDK";"Rootkit"
"Výsledok";"Objekt je skrytý"
neviete mi poradit jak ho vymazem ??? hmm
programi .. atd ???? dakujem


 Profil  
 Předmět: Re: Rootkit
PříspěvekZaslal v: so 12. prosinec 2009, 21:19 
Odborník PCT
Odborník PCT
Obrázek uživatele

Založen: 05. červen 2003
Bydliště: sluníčkář a havloid z pražské lumpenkavárny
Nahoru
ComboFix

_________________
ignorelist: mimo jiné všechny kremrole (danny1691, Lokomotiva, CZECHYa, pavel2003, shorty25, ajtak, stepan001, ulver, brambora81, CZ_viper, tielka a pár dalších exotů)


 Profil  
 Předmět: Re: Rootkit
PříspěvekZaslal v: po 14. prosinec 2009, 00:48 
Nováček
Nováček

Založen: 19. červenec 2009
Bydliště: Slovakia, Liptovsky Cikuláš
Nahoru
ComboFix 09-09-25.01 - Stefan . 12. 2009 11:01.1.2 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1250.421.1033.18.3068.2142 [GMT 0:00]
Running from: c:\users\Stefan\Downloads\ComboFix.exe
AV: AVG Internet Security *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Firewall *disabled* {8decf618-9569-4340-b34a-d78d28969b66}
SP: AVG Internet Security *enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
SP: Spyware Doctor *disabled* (Updated) {1C3EDD79-273E-46ac-99F8-EFA9E7CBC301}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
* Created a new restore point
.
- REDUCED FUNCTIONALITY MODE -
.

((((((((((((((((((((((((( Files Created from 2009-11-13 to 2009-12-13 )))))))))))))))))))))))))))))))
.

2009-12-13 11:01 . 2009-12-13 11:01 -------- d-----w- c:\users\Stefan\AppData\Local\temp
2009-12-13 11:01 . 2009-12-13 11:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2009-12-13 09:53 . 2009-12-13 09:53 -------- d-----w- c:\program files\CCleaner
2009-12-13 09:09 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll
2009-12-13 09:09 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe
2009-12-13 09:09 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2009-12-13 09:09 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll
2009-12-13 09:09 . 2009-08-07 02:24 35552 ----a-w- c:\windows\system32\wups.dll
2009-12-13 09:09 . 2009-08-07 02:23 575704 ----a-w- c:\windows\system32\wuapi.dll
2009-12-13 09:09 . 2009-08-07 01:44 87552 ----a-w- c:\windows\system32\wudriver.dll
2009-12-13 09:09 . 2009-08-06 19:23 171608 ----a-w- c:\windows\system32\wuwebv.dll
2009-12-13 09:09 . 2009-08-06 18:44 33792 ----a-w- c:\windows\system32\wuapp.exe
2009-12-12 20:42 . 2009-09-24 07:50 545 ----a-w- c:\windows\UC.PIF
2009-12-12 20:42 . 2009-09-24 07:50 545 ----a-w- c:\windows\RAR.PIF
2009-12-12 20:42 . 2009-09-24 07:50 545 ----a-w- c:\windows\PKZIP.PIF
2009-12-12 20:42 . 2009-12-12 20:42 -------- d-----w- C:\totalcmd
2009-12-12 20:42 . 2009-12-12 20:42 -------- d-----w- c:\users\Stefan\AppData\Roaming\GHISLER
2009-12-12 20:42 . 2009-09-24 07:50 545 ----a-w- c:\windows\PKUNZIP.PIF
2009-12-12 20:42 . 2009-09-24 07:50 545 ----a-w- c:\windows\NOCLOSE.PIF
2009-12-12 20:42 . 2009-09-24 07:50 545 ----a-w- c:\windows\LHA.PIF
2009-12-12 20:42 . 2009-09-24 07:50 545 ----a-w- c:\windows\ARJ.PIF
2009-12-12 20:30 . 2009-12-12 20:30 -------- d-----w- c:\users\Stefan\AppData\Local\Adobe
2009-12-12 17:08 . 2009-12-12 17:08 -------- d-----w- c:\program files\BS_Player
2009-12-12 17:08 . 2009-12-12 17:08 -------- d-----w- c:\program files\Conduit
2009-12-12 17:07 . 2009-12-12 17:15 -------- d-----w- c:\users\Stefan\AppData\Roaming\BSplayer
2009-12-12 17:07 . 2009-12-12 17:07 -------- d-----w- c:\program files\Webteh
2009-12-12 16:53 . 2009-12-12 16:53 -------- d-----w- c:\users\Stefan\AppData\Roaming\BSplayer PRO
2009-12-12 10:41 . 2009-12-12 10:41 23832 ----a-w- c:\windows\system32\drivers\avgfwd6x.sys
2009-12-12 10:41 . 2009-12-12 10:41 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-12-12 10:20 . 2009-12-12 10:41 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-12-12 10:20 . 2009-12-12 10:41 12552 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2009-12-12 10:20 . 2009-12-12 10:41 335240 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-12-12 10:20 . 2009-12-13 10:06 -------- d-----w- c:\windows\system32\drivers\Avg
2009-12-12 10:20 . 2009-12-12 10:41 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-12-12 10:20 . 2009-12-12 10:41 -------- d-----w- c:\programdata\avg8
2009-12-12 10:20 . 2009-12-12 10:20 -------- d-----w- c:\program files\AVG
2009-12-12 09:39 . 2008-06-30 17:56 200704 ----a-w- c:\windows\PLFSetI.exe
2009-12-12 09:39 . 2008-05-20 09:57 262144 ----a-w- c:\windows\Acer Crystal Eye webcam.EXE
2009-12-12 09:39 . 2008-02-25 11:13 4838 ----a-w- c:\windows\Suyin.reg
2009-12-12 09:39 . 2007-03-29 16:48 626688 ----a-w- c:\windows\Image.dll
2009-12-12 09:37 . 2008-03-07 12:11 54824 ------w- c:\windows\system32\agrsmdel.exe
2009-12-12 09:37 . 2009-12-12 09:37 -------- d-----w- c:\windows\Options
2009-12-12 09:37 . 2008-03-07 12:11 54824 ----a-w- c:\windows\agrsmdel.exe
2009-12-12 09:37 . 2008-02-29 15:13 1202560 ----a-w- c:\windows\system32\drivers\AGRSM.sys
2009-12-12 09:37 . 2007-12-11 11:15 12800 ----a-w- c:\windows\system32\agrsmsvc.exe
2009-12-12 09:37 . 2007-12-11 11:40 13312 ------w- c:\windows\system32\agrscoin.dll
2009-12-12 09:34 . 2009-12-12 09:34 -------- d-----w- c:\windows\system32\Atheros_L1e
2009-12-12 09:33 . 2008-05-20 00:23 47104 ----a-w- c:\windows\system32\drivers\L1E60x86.sys
2009-12-12 09:32 . 2009-12-12 09:32 -------- d-----w- c:\program files\Synaptics
2009-12-12 09:31 . 2008-04-04 17:26 196784 ----a-w- c:\windows\system32\drivers\SynTP.sys
2009-12-12 09:31 . 2008-04-04 17:26 110592 ----a-w- c:\windows\system32\SynTPCo4.dll
2009-12-12 09:31 . 2008-04-04 16:58 147456 ----a-w- c:\windows\system32\SynTPAPI.dll
2009-12-12 09:31 . 2008-04-04 16:46 196608 ----a-w- c:\windows\system32\SynCtrl.dll
2009-12-12 09:31 . 2008-04-04 16:45 163840 ----a-w- c:\windows\system32\SynCOM.dll
2009-12-12 09:31 . 2006-03-09 09:58 1060424 ----a-w- c:\windows\system32\WdfCoInstaller01000.dll
2009-12-12 09:30 . 2008-02-22 13:06 53248 ----a-w- c:\windows\system32\CSVer.dll
2009-12-12 09:29 . 2009-12-12 09:29 125 ----a-w- c:\windows\xUninstall.bat
2009-12-12 09:29 . 2009-12-12 09:29 -------- d-----w- c:\windows\JMCR_DIR
2009-12-12 09:28 . 2008-03-13 17:48 290816 ----a-w- c:\windows\RTKVADDA.EXE
2009-12-12 09:25 . 2006-11-10 09:25 319456 ----a-w- c:\windows\system32\difxapi.dll
2009-12-12 09:25 . 2009-12-12 09:25 -------- d-----w- C:\Intel
2009-12-12 09:25 . 2008-07-20 17:44 324120 ----a-w- c:\windows\system32\drivers\iaStor.sys
2009-12-12 09:25 . 2009-12-12 09:30 -------- d-----w- c:\program files\Intel
2009-12-12 09:25 . 2009-12-12 09:25 -------- d-----w- c:\users\Stefan\AppData\Roaming\InstallShield
2009-12-12 08:45 . 2008-02-01 11:55 42376 ----a-w- c:\windows\system32\drivers\ikfilesec.sys
2009-12-12 08:45 . 2007-12-10 13:53 29576 ----a-w- c:\windows\system32\drivers\kcom.sys
2009-12-12 08:45 . 2007-12-10 13:53 81288 ----a-w- c:\windows\system32\drivers\iksyssec.sys
2009-12-12 08:45 . 2007-12-10 13:53 66952 ----a-w- c:\windows\system32\drivers\iksysflt.sys
2009-12-12 08:45 . 2009-12-12 09:09 -------- d-----w- c:\program files\Spyware Doctor
2009-12-12 08:45 . 2009-12-12 08:45 -------- d-----w- c:\users\Stefan\AppData\Roaming\PC Tools
2009-12-12 08:32 . 2009-12-12 08:32 -------- d-----w- c:\users\Stefan\AppData\Local\Mozilla
2009-12-12 08:31 . 2009-12-12 08:31 -------- d-----w- c:\users\Stefan\AppData\Roaming\Birdstep Technology
2009-12-12 08:30 . 2009-12-12 08:31 -------- d-----w- c:\programdata\Birdstep Technology
2009-12-12 08:29 . 2009-02-13 07:17 621056 ----a-w- c:\windows\system32\drivers\mod7700.sys
2009-12-12 08:29 . 2009-02-13 07:17 23424 ----a-w- c:\windows\system32\drivers\ewdcsc.sys
2009-12-12 08:29 . 2009-02-13 07:17 113152 ----a-w- c:\windows\system32\drivers\ewusbnet.sys
2009-12-12 08:29 . 2009-02-13 07:17 103040 ----a-w- c:\windows\system32\drivers\ewusbfake.sys
2009-12-12 08:29 . 2009-02-13 07:17 102784 ----a-w- c:\windows\system32\drivers\ewusbmdm.sys
2009-12-12 08:28 . 2009-12-12 08:28 70671 ----a-w- c:\windows\Huawei ModemsUninstall.exe
2009-12-12 08:28 . 2009-12-12 08:28 -------- d-----w- c:\program files\Huawei Modems
2009-12-12 08:28 . 2009-12-12 09:39 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-12-12 08:28 . 2009-12-12 08:28 -------- d-----w- c:\program files\3 Mobile Broadband
2009-12-12 08:28 . 2009-12-12 08:28 -------- d-----w- c:\program files\Common Files\InstallShield
2009-12-12 06:14 . 2009-12-11 21:19 -------- d-----w- c:\windows\Panther
2009-12-12 06:14 . 2009-12-12 06:14 -------- d-----w- C:\Boot
2009-12-11 22:43 . 2009-12-12 10:43 -------- d-----w- c:\programdata\NVIDIA
2009-12-11 22:37 . 2009-12-11 22:37 -------- d-----w- c:\windows\system32\AGEIA
2009-12-11 22:37 . 2009-12-11 22:37 -------- d-----w- c:\program files\AGEIA Technologies
2009-12-11 22:37 . 2009-12-11 22:37 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-12-11 22:36 . 2009-08-21 13:17 485920 ----a-w- c:\windows\system32\NVUNINST.EXE
2009-12-11 22:36 . 2009-12-11 22:36 -------- d-----w- C:\NVIDIA
2009-12-11 22:35 . 2009-12-11 22:35 -------- d-----w- c:\windows\system32\Macromed
2009-12-11 22:35 . 2009-12-11 22:35 -------- d-----w- c:\program files\Common Files\Adobe
2009-12-11 22:29 . 2009-12-11 22:31 -------- d-----w- c:\programdata\WinZip
2009-12-11 22:28 . 2009-12-12 10:19 -------- d-sh--w- c:\windows\Installer
2009-12-11 21:21 . 2009-12-13 09:54 -------- d-----w- c:\windows\Debug

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-13 10:26 . 2009-12-11 22:44 31966 ----a-w- c:\programdata\nvModes.dat
2009-12-12 09:32 . 2009-12-12 09:32 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2009-12-12 09:27 . 2009-12-12 09:27 319456 ----a-w- c:\windows\DIFxAPI.dll
2009-12-12 09:27 . 2009-12-12 09:27 -------- d-----w- c:\program files\Realtek
2009-12-12 09:27 . 2009-12-12 09:27 315392 ----a-w- c:\windows\HideWin.exe
2009-12-12 08:26 . 2009-12-12 08:26 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2009-12-11 22:25 . 2009-12-11 22:24 680 ----a-w- c:\users\Stefan\AppData\Local\d3d9caps.dat
2009-12-11 22:24 . 2009-12-11 22:24 48600 ----a-w- c:\users\Stefan\AppData\Local\GDIPFONTCACHEV1.DAT
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]

[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
2009-07-02 10:18 2215960 ----a-w- c:\program files\BS_Player\tbBS_P.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]

[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-08-19 13793824]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2008-07-20 182808]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-04 1037608]
"PLFSetI"="c:\windows\PLFSetI.exe" [2008-06-30 200704]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-12-12 2000152]
"RtHDVCpl"="RtHDVCpl.exe" - c:\windows\RtHDVCpl.exe [2008-05-07 6139904]
"Skytel"="Skytel.exe" - c:\windows\SkyTel.exe [2007-11-20 1826816]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\avgrsstx.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{675D5F90-974E-4851-A88C-EBC0B01CE256}"= c:\program files\AVG\AVG8\avgupd.exe:avgupd.exe
"{0C931EC8-57CB-468A-82FD-67D54CBF193E}"= c:\program files\AVG\AVG8\avgemc.exe:avgemc.exe
"{54E8ED3A-1311-41E7-AE8C-753B93C5D020}"= c:\program files\AVG\AVG8\avgnsx.exe:avgnsx.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
"EnableFirewall"= 0 (0x0)

R0 AvgRkx86;avgrkx86.sys;c:\windows\System32\drivers\avgrkx86.sys [12/12/2009 10:20 AM 12552]
R1 Avgfwfd;AVG network filter service;c:\windows\System32\drivers\avgfwd6x.sys [12/12/2009 10:41 AM 23832]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\System32\drivers\avgldx86.sys [12/12/2009 10:20 AM 335240]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\System32\drivers\avgtdix.sys [12/12/2009 10:41 AM 108552]
R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [12/12/2009 10:41 AM 908056]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [12/12/2009 10:41 AM 297752]
R2 avgfws8;AVG8 Firewall;c:\progra~1\AVG\AVG8\avgfws8.exe [12/12/2009 10:41 AM 1370488]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller;c:\windows\System32\drivers\L1E60x86.sys [12/12/2009 9:33 AM 47104]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\System32\drivers\nvhda32v.sys [5/11/2009 11:49 AM 64544]
S3 ARYF;ARYF;c:\users\Stefan\AppData\Local\Temp\ARYF.exe --> c:\users\Stefan\AppData\Local\Temp\ARYF.exe [?]
S3 DSJMOH;DSJMOH;c:\users\Stefan\AppData\Local\Temp\DSJMOH.exe --> c:\users\Stefan\AppData\Local\Temp\DSJMOH.exe [?]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [12/12/2009 8:45 AM 337800]

--- Other Services/Drivers In Memory ---

*NewlyCreated* - AVGARCLN
*NewlyCreated* - AVG_ANTI-ROOTKIT
*Deregistered* - mchInjDrv
*Deregistered* - RKREVEAL150

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4a55a421-e69a-11de-ad40-806e6f6e6963}]
\shell\AutoRun\command - E:\pcpro.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8af740ac-e6a7-11de-a181-8f215fc3d4fa}]
\shell\AutoRun\command - F:\AutoRun.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e6538079-e6f7-11de-b316-8bba53b6a3db}]
\shell\AutoRun\command - F:\AutoRun.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e6538169-e6f7-11de-b316-8bba53b6a3db}]
\shell\AutoRun\command - F:\AutoRun.exe
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT1750559
FF - ProfilePath - c:\users\Stefan\AppData\Roaming\Mozilla\Firefox\Profiles\q4u03sgu.default\
FF - component: c:\program files\AVG\AVG8\Firefox\components\avgssff.dll

---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-13 11:01
Windows 6.0.6001 Service Pack 1 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
Completion time: 2009-12-13 11:02
ComboFix-quarantined-files.txt 2009-12-13 11:02

Pre-Run: 74 637 365 248 bytes free
Post-Run: 74 583 080 960 bytes free

237


 Profil  
Zobrazit příspěvky za poslední:  Řadit podle  
Odpovědět na téma  [ 3 příspěvků ] 


Čas je uváděn v UTC + 1 hodina


Přejít do sekce:
  

Kdo je přihlášený

Uživatelé procházející si tuto sekci: Žádní registrovaní uživatelé a 3 anonymních


Nemůžete zakládat nová témata v této sekci
Nemůžete odpovídat na příspěvky v této sekci
Nemůžete upravovat své příspěvky v této sekci
Nemůžete mazat své příspěvky v této sekci
Nemůžete připojit přílohy v této sekci

 
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group
Český překlad - PCT fórum, Zásady ochrany osobních údajů.