Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu + dotaz

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
destiny17
Návštěvník
Návštěvník
Příspěvky: 49
Registrován: 08 úno 2006 17:27
Bydliště: Praha

Prosím o kontrolu + dotaz

#1 Příspěvek od destiny17 »

Dobrý den, prosím o kontrolu logu
+ Dotaz : je možno tento počítač přeinstalovat na WIN7?
Disk jen 73 GB a RAM 2,46 GB (AMD Sempron 3000+ - 1,60 GHz)
Mnohokrát předem děkuji

Logfile of random's system information tool 1.09 (written by random/random)
Run by Jarmila at 2014-04-13 18:00:09
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 40 GB (55%) free of 73 GB
Total RAM: 2526 MB (71% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:00, on 13.4.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
C:\Program Files\RSIT.exe
C:\Program Files\trend micro\Jarmila.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Avira SearchFree Toolbar BHO - {41564952-412D-5637-4300-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll" (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll" (file missing)
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t
O4 - HKUS\S-1-5-21-483520890-1613990964-3558181899-1009\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.alzasoft.cz
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 9294041796
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 7391940556
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe

--
End of file - 7462 bytes

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.24"

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.70 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi]
"Description"=ZoneAlarm LTD Toolbar Api
"Path"=C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.9.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\WINDOWS\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1]
"Description"=Yahoo! activeX Plug-in Bridge
"Path"=C:\Program Files\Mozilla Firefox\plugins\npyaxmpb.dll

C:\Program Files\Mozilla Firefox\extensions\
{800b5000-a755-47e1-992b-48a1c1357f07}
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
npyaxmpb.dll
np_gp.dll
nppdf32.dll

C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\extensions\
ffxtlbr@zonealarm.com
4zffxtbr@VideoDownloadConverter_4z.com

C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\
askcom.xml
google-uk.xml
100-search-engines.xml
google-ssl.xml
seznam.xml
mapycz.xml
firmycz.xml
zbocz.xml
flickr.xml
icqplugin-1.xml
icqplugin.xml
hledejcenycz.xml
zonealarm.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7}]
Avira SearchFree Toolbar - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll [2014-02-13 12240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-11-03 449512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-10-09 4502400]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-11-03 155384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
{41564952-412D-5637-4300-7A786E7484D7} - Avira SearchFree Toolbar - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll [2014-02-13 12240]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2014-02-20 689744]
"ZoneAlarm"=C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe [2014-01-29 74160]
"DWQueuedReporting"=C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe [2007-02-26 437160]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KONICA MINOLTA PagePro 1350WStatusDisplay]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2009-05-26 413696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2013-05-07 115440]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoBandCustomize"=0
"NoDrives"=0
"NoDriveAutoRun"=67108863

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Messenger\MSMSGS.EXE"="C:\Program Files\Messenger\MSMSGS.EXE:*:Enabled:Windows Messenger"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\WINDOWS\System32\ZoneLabs\vsmon.exe"="C:\WINDOWS\System32\ZoneLabs\vsmon.exe:*:Enabled:vsmon"
"C:\Program Files\ICQ7M\ICQ.exe"="C:\Program Files\ICQ7M\ICQ.exe:*:Enabled:ICQ7M"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\DAEMONU.EXE"="C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\DAEMONU.EXE:*:Enabled:Daemonu.exe"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\ICQ7M\ICQ.exe"="C:\Program Files\ICQ7M\ICQ.exe:*:Enabled:ICQ7M"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll

======List of files/folders created in the last 1 month======

2014-04-12 18:22:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\GlarySoft
2014-04-12 17:41:29 ----SHD---- C:\Config.Msi
2014-04-10 09:21:45 ----HD---- C:\WINDOWS\$NtUninstallKB2922229$
2014-03-30 11:03:43 ----D---- C:\Program Files\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2014-04-13 17:59:22 ----A---- C:\Program Files\RSIT.exe
2014-04-12 19:54:48 ----A---- C:\WINDOWS\SchedLgU.Txt
2014-04-10 09:16:12 ----A---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2013-12-18 135648]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2013-11-25 37352]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2012-08-27 28520]
R1 Vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2014-01-29 529968]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2013-12-18 90400]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2005-10-05 141312]
R3 AEAudioService;AEAudio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2005-03-04 127872]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-02-08 12648960]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-02-17 34176]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-02-17 13056]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2005-08-11 393088]
S0 BootDefragDriver;BootDefragDriver; C:\WINDOWS\System32\drivers\BootDefragDriver.sys [2014-02-17 13504]
S0 srescan;srescan; C:\WINDOWS\system32\ZoneLabs\srescan.sys []
S3 CnxEtP;Conexant AccessRunner USB ADSL Adapter Filter Driver; C:\WINDOWS\system32\DRIVERS\CnxEtP.sys [2005-02-04 131072]
S3 CnxEtU;Conexant AccessRunner USB ADSL Interface Device Driver; C:\WINDOWS\system32\DRIVERS\CnxEtU.sys [2005-02-04 618112]
S3 CnxTgNW;Conexant AccessRunner ADSL WAN PPPoA Adapter Driver; C:\WINDOWS\system32\DRIVERS\CnxTgNW.sys [2005-02-04 52736]
S3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2006-01-12 163328]
S3 EntDrv51;EntDrv51; \??\C:\WINDOWS\system32\drivers\EntDrv51.sys []
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2004-10-27 145920]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys []
S3 SysProtDrv.sys;SysProtDrv.sys; \??\C:\Program Files\SysProt\SysProt\SysProtDrv.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2013-10-10 120088]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2014-02-20 440400]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2014-02-20 440400]
R2 APNMCP;Ask Update Service; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [2014-02-13 166352]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2012-11-03 161768]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-09-23 1258856]
R2 Skype C2C Service;Skype C2C Service; C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
R2 vsmon;TrueVector Internet Monitor; C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe [2014-01-29 2445816]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [2013-10-15 50704]
S2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2012-09-23 164200]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-21 257928]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2012-09-09 821648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-30 119408]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [2014-02-20 1017424]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu + dotaz

#2 Příspěvek od Márty84 »

Zdravim :)

Pozadavky na windows 7 jsou tady http://windows.microsoft.com/cs-cz/wind ... quirements . Cili teoreticky by to jit melo.

A chcete to tedy cistit, nebo to zkusite preinstalovat?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

destiny17
Návštěvník
Návštěvník
Příspěvky: 49
Registrován: 08 úno 2006 17:27
Bydliště: Praha

Re: Prosím o kontrolu + dotaz

#3 Příspěvek od destiny17 »

Márty84 píše:Zdravim :)

Pozadavky na windows 7 jsou tady http://windows.microsoft.com/cs-cz/wind ... quirements . Cili teoreticky by to jit melo.

A chcete to tedy cistit, nebo to zkusite preinstalovat?
Děkuji za info, chtěla jsem jen vědět, jestli se počítač přeinstalací nezpomalí tak, že a něm
p r a k t i c k y nepůjde pracovat ....
Tak já bych ho chtěla zatím jen vyčistit, díky

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu + dotaz

#4 Příspěvek od Márty84 »

To se takhle tezko odhaduje. Ono taky zalezi, co byste do nej pak nainstalovala a jak by si to spolu vsechno sedlo :)

Tak jdeme na to :wink:

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Spustte ho.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

destiny17
Návštěvník
Návštěvník
Příspěvky: 49
Registrován: 08 úno 2006 17:27
Bydliště: Praha

Re: Prosím o kontrolu + dotaz

#5 Příspěvek od destiny17 »

# AdwCleaner v3.023 - Report created 13/04/2014 at 18:52:44
# Updated 01/04/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Jarmila - DL001427
# Running from : C:\Program Files\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar
Folder Deleted : C:\Documents and Settings\Jarmila\Local Settings\Data aplikací\Conduit
Folder Deleted : C:\Documents and Settings\Jarmila\Data aplikací\CheckPoint\ZoneAlarm LTD Toolbar
Folder Deleted : C:\Documents and Settings\Jarmila\Data aplikací\uniblue
Folder Deleted : C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\ICQToolbarData
Folder Deleted : C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\VideoDownloadConverter_4z
Folder Deleted : C:\Program Files\Mozilla Firefox\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}
File Deleted : C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\Askcom.xml
File Deleted : C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\icqplugin.xml
File Deleted : C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\zonealarm.xml
File Deleted : C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHost.Tool
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHost.Tool.1
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0702A2B6-13AA-4090-9E01-BCDC85DD933F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{201F27D4-3704-41D6-89C1-AA35E39143ED}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3041D03E-FD4B-44E0-B742-2D9B88305F98}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B0DE3308-5D5A-470D-81B9-634FC078393B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{201F27D4-3704-41D6-89C1-AA35E39143ED}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3041D03E-FD4B-44E0-B742-2D9B88305F98}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Key Deleted : HKCU\Software\ICQToolbar
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKLM\Software\CToolbar
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm LTD Toolbar

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Prev Search Bar]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]

-\\ Mozilla Firefox v28.0 (en-US)

[ File : C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\prefs.js ]

Line Deleted : user_pref("CT2611275.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Line Deleted : user_pref("CT2611275.CTID", "ct2611275");
Line Deleted : user_pref("CT2611275.CurrentServerDate", "1-6-2010");
Line Deleted : user_pref("CT2611275.DialogsAlignMode", "LTR");
Line Deleted : user_pref("CT2611275.DownloadReferralCookieData", "");
Line Deleted : user_pref("CT2611275.EMailNotifierPollDate", "Wed May 26 2010 08:09:07 GMT+0200");
Line Deleted : user_pref("CT2611275.FirstServerDate", "20-5-2010");
Line Deleted : user_pref("CT2611275.FirstTime", true);
Line Deleted : user_pref("CT2611275.FirstTimeFF3", true);
Line Deleted : user_pref("CT2611275.FirstTimeSettingsDone", true);
Line Deleted : user_pref("CT2611275.FixPageNotFoundErrors", true);
Line Deleted : user_pref("CT2611275.GroupingServerCheckInterval", 1440);
Line Deleted : user_pref("CT2611275.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Line Deleted : user_pref("CT2611275.Initialize", true);
Line Deleted : user_pref("CT2611275.InitializeCommonPrefs", true);
Line Deleted : user_pref("CT2611275.InstallationAndCookieDataSentCount", 3);
Line Deleted : user_pref("CT2611275.InstallationType", "UnknownIntegration");
Line Deleted : user_pref("CT2611275.InstalledDate", "Thu May 20 2010 21:58:34 GMT+0200");
Line Deleted : user_pref("CT2611275.IsGrouping", false);
Line Deleted : user_pref("CT2611275.IsMulticommunity", false);
Line Deleted : user_pref("CT2611275.IsOpenThankYouPage", true);
Line Deleted : user_pref("CT2611275.IsOpenUninstallPage", true);
Line Deleted : user_pref("CT2611275.LanguagePackLastCheckTime", "Thu May 20 2010 21:59:00 GMT+0200");
Line Deleted : user_pref("CT2611275.LanguagePackReloadIntervalMM", 1440);
Line Deleted : user_pref("CT2611275.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
Line Deleted : user_pref("CT2611275.LastLogin_2.6.0.15", "Tue Jun 01 2010 07:19:10 GMT+0200");
Line Deleted : user_pref("CT2611275.LatestVersion", "2.1.0.18");
Line Deleted : user_pref("CT2611275.Locale", "en");
Line Deleted : user_pref("CT2611275.LoginCache", 4);
Line Deleted : user_pref("CT2611275.MCDetectTooltipHeight", "83");
Line Deleted : user_pref("CT2611275.MCDetectTooltipShow", false);
Line Deleted : user_pref("CT2611275.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Line Deleted : user_pref("CT2611275.MCDetectTooltipWidth", "295");
Line Deleted : user_pref("CT2611275.RadioIsPodcast", false);
Line Deleted : user_pref("CT2611275.RadioMediaID", "9965");
Line Deleted : user_pref("CT2611275.RadioMediaType", "Media Player");
Line Deleted : user_pref("CT2611275.RadioMenuSelectedID", "EBRadioMenu_CT2611275_RECENT9965");
Line Deleted : user_pref("CT2611275.RadioShrinked", "shrinked");
Line Deleted : user_pref("CT2611275.RadioStationName", "Alternative");
Line Deleted : user_pref("CT2611275.RadioStationURL", "hxxp://www.kexp.org/audio/kexp.wmx");
Line Deleted : user_pref("CT2611275.SHRINK_TOOLBAR", 0);
Line Deleted : user_pref("CT2611275.SearchEngine", "Search||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_TERM&ctid=CT2611275&octid=EB_ORIGINAL_CTID&SearchSource=1");
Line Deleted : user_pref("CT2611275.SearchFromAddressBarIsInit", true);
Line Deleted : user_pref("CT2611275.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2611275&q=");
Line Deleted : user_pref("CT2611275.SearchInNewTabEnabled", true);
Line Deleted : user_pref("CT2611275.SearchInNewTabIntervalMM", 1440);
Line Deleted : user_pref("CT2611275.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT2611275.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT2611275.SearchInNewTabUserEnabled", false);
Line Deleted : user_pref("CT2611275.SettingsCheckIntervalMin", 120);
Line Deleted : user_pref("CT2611275.SettingsLastCheckTime", "Thu May 20 2010 21:58:33 GMT+0200");
Line Deleted : user_pref("CT2611275.SettingsLastUpdate", "1273596981");
Line Deleted : user_pref("CT2611275.ThirdPartyComponentsInterval", 504);
Line Deleted : user_pref("CT2611275.ThirdPartyComponentsLastCheck", "Thu May 20 2010 21:58:32 GMT+0200");
Line Deleted : user_pref("CT2611275.ThirdPartyComponentsLastUpdate", "1273596981");
Line Deleted : user_pref("CT2611275.TrusteLinkUrl", "hxxp://www.truste.org/pvr.php?page=validate&so ... sealid=112");
Line Deleted : user_pref("CT2611275.UserID", "UN78065020531120597");
Line Deleted : user_pref("CT2611275.ValidationData_Search", 0);
Line Deleted : user_pref("CT2611275.ValidationData_Toolbar", 2);
Line Deleted : user_pref("CT2611275.WeatherNetwork", "");
Line Deleted : user_pref("CT2611275.WeatherPollDate", "Tue Jun 01 2010 10:33:41 GMT+0200");
Line Deleted : user_pref("CT2611275.WeatherUnit", "C");
Line Deleted : user_pref("CT2611275.alertChannelId", "1004080");
Line Deleted : user_pref("CT2611275.clientLogIsEnabled", false);
Line Deleted : user_pref("CT2611275.clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Line Deleted : user_pref("CT2611275.components.1000034", false);
Line Deleted : user_pref("CT2611275.components.1000082", true);
Line Deleted : user_pref("CT2611275.components.1000234", true);
Line Deleted : user_pref("CT2611275.components.129169216377958973", false);
Line Deleted : user_pref("CT2611275.ct2611275.DialogsAlignMode", "LTR");
Line Deleted : user_pref("CT2611275.ct2611275.FirstTimeSettingsDone", true);
Line Deleted : user_pref("CT2611275.ct2611275.InvalidateCache", false);
Line Deleted : user_pref("CT2611275.ct2611275.LanguagePackLastCheckTime", "Tue Jun 01 2010 07:19:09 GMT+0200");
Line Deleted : user_pref("CT2611275.ct2611275.Locale", "en");
Line Deleted : user_pref("CT2611275.ct2611275.RadioLastCheckTime", "Tue Jun 01 2010 07:19:11 GMT+0200");
Line Deleted : user_pref("CT2611275.ct2611275.RadioLastUpdateIPServer", "3");
Line Deleted : user_pref("CT2611275.ct2611275.RadioLastUpdateServer", "0");
Line Deleted : user_pref("CT2611275.ct2611275.SearchEngine", "Search||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_TERM&ctid=CT2611275&octid=EB_ORIGINAL_CTID&SearchSource=1");
Line Deleted : user_pref("CT2611275.ct2611275.SearchInNewTabLastCheckTime", "Tue Jun 01 2010 07:19:07 GMT+0200");
Line Deleted : user_pref("CT2611275.ct2611275.SettingsCheckIntervalMin", 120);
Line Deleted : user_pref("CT2611275.ct2611275.SettingsLastCheckTime", "Tue Jun 01 2010 09:28:38 GMT+0200");
Line Deleted : user_pref("CT2611275.ct2611275.SettingsLastUpdate", "1274956695");
Line Deleted : user_pref("CT2611275.ct2611275.ThirdPartyComponentsLastCheck", "Thu May 20 2010 21:58:58 GMT+0200");
Line Deleted : user_pref("CT2611275.ct2611275.ThirdPartyComponentsLastUpdate", "1273596981");
Line Deleted : user_pref("CT2611275.myStuffEnabled", true);
Line Deleted : user_pref("CT2611275.myStuffPublihserMinWidth", 400);
Line Deleted : user_pref("CT2611275.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
Line Deleted : user_pref("CT2611275.myStuffServiceIntervalMM", 1440);
Line Deleted : user_pref("CT2611275.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
Line Deleted : user_pref("CT2611275.uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Line Deleted : user_pref("CT2645238..clientLogIsEnabled", true);
Line Deleted : user_pref("CT2645238..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Line Deleted : user_pref("CT2645238..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Line Deleted : user_pref("CT2645238.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Line Deleted : user_pref("CT2645238.AppTrackingLastCheckTime", "Fri Apr 29 2011 16:46:45 GMT+0200");
Line Deleted : user_pref("CT2645238.CT2645238", "CT2645238");
Line Deleted : user_pref("CT2645238.CurrentServerDate", "30-4-2011");
Line Deleted : user_pref("CT2645238.DialogsAlignMode", "LTR");
Line Deleted : user_pref("CT2645238.DialogsGetterLastCheckTime", "Fri Apr 29 2011 16:46:28 GMT+0200");
Line Deleted : user_pref("CT2645238.DownloadReferralCookieData", "");
Line Deleted : user_pref("CT2645238.EMailNotifierPollDate", "Sat Apr 30 2011 19:33:11 GMT+0200");
Line Deleted : user_pref("CT2645238.FirstServerDate", "29-4-2011");
Line Deleted : user_pref("CT2645238.FirstTime", true);
Line Deleted : user_pref("CT2645238.FirstTimeFF3", true);
Line Deleted : user_pref("CT2645238.FixPageNotFoundErrors", false);
Line Deleted : user_pref("CT2645238.GroupingServerCheckInterval", 1440);
Line Deleted : user_pref("CT2645238.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Line Deleted : user_pref("CT2645238.HasUserGlobalKeys", true);
Line Deleted : user_pref("CT2645238.Initialize", true);
Line Deleted : user_pref("CT2645238.InitializeCommonPrefs", true);
Line Deleted : user_pref("CT2645238.InstallationAndCookieDataSentCount", 3);
Line Deleted : user_pref("CT2645238.InstallationType", "UnknownIntegration");
Line Deleted : user_pref("CT2645238.InstalledDate", "Fri Apr 29 2011 16:46:34 GMT+0200");
Line Deleted : user_pref("CT2645238.IsGrouping", false);
Line Deleted : user_pref("CT2645238.IsMulticommunity", false);
Line Deleted : user_pref("CT2645238.IsOpenThankYouPage", true);
Line Deleted : user_pref("CT2645238.IsOpenUninstallPage", true);
Line Deleted : user_pref("CT2645238.LanguagePackLastCheckTime", "Sat Apr 30 2011 19:33:11 GMT+0200");
Line Deleted : user_pref("CT2645238.LanguagePackReloadIntervalMM", 1440);
Line Deleted : user_pref("CT2645238.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
Line Deleted : user_pref("CT2645238.LastLogin_3.3.3.2", "Sat Apr 30 2011 19:33:11 GMT+0200");
Line Deleted : user_pref("CT2645238.LatestVersion", "3.3.3.2");
Line Deleted : user_pref("CT2645238.Locale", "en");
Line Deleted : user_pref("CT2645238.MCDetectTooltipHeight", "83");
Line Deleted : user_pref("CT2645238.MCDetectTooltipShow", false);
Line Deleted : user_pref("CT2645238.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Line Deleted : user_pref("CT2645238.MCDetectTooltipWidth", "295");
Line Deleted : user_pref("CT2645238.SearchFromAddressBarIsInit", true);
Line Deleted : user_pref("CT2645238.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2645238&SearchSource=2&q=");
Line Deleted : user_pref("CT2645238.SearchInNewTabEnabled", true);
Line Deleted : user_pref("CT2645238.SearchInNewTabIntervalMM", 1440);
Line Deleted : user_pref("CT2645238.SearchInNewTabLastCheckTime", "Sat Apr 30 2011 19:33:09 GMT+0200");
Line Deleted : user_pref("CT2645238.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT2645238.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT2645238.SearchInNewTabUserEnabled", false);
Line Deleted : user_pref("CT2645238.ServiceMapLastCheckTime", "Sat Apr 30 2011 19:33:09 GMT+0200");
Line Deleted : user_pref("CT2645238.SettingsLastCheckTime", "Sat Apr 30 2011 19:33:08 GMT+0200");
Line Deleted : user_pref("CT2645238.SettingsLastUpdate", "1300822106");
Line Deleted : user_pref("CT2645238.ThirdPartyComponentsInterval", 504);
Line Deleted : user_pref("CT2645238.ThirdPartyComponentsLastCheck", "Fri Apr 29 2011 16:24:06 GMT+0200");
Line Deleted : user_pref("CT2645238.ThirdPartyComponentsLastUpdate", "1246786978");
Line Deleted : user_pref("CT2645238.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2645238");
Line Deleted : user_pref("CT2645238.UserID", "UN94172097523717897");
Line Deleted : user_pref("CT2645238.ValidationData_Search", 0);
Line Deleted : user_pref("CT2645238.ValidationData_Toolbar", 2);
Line Deleted : user_pref("CT2645238.alertChannelId", "1037922");
Line Deleted : user_pref("CT2645238.approveUntrustedApps", true);
Line Deleted : user_pref("CT2645238.backendstorage.youtube_user_first_login_date", "30352F30312F32303131");
Line Deleted : user_pref("CT2645238.backendstorage.youtube_user_survey_visit", "4E4F545F56495349544544");
Line Deleted : user_pref("CT2645238.backendstorage.youtubelang", "5553");
Line Deleted : user_pref("CT2645238.components.1000080", true);
Line Deleted : user_pref("CT2645238.components.1000082", false);
Line Deleted : user_pref("CT2645238.components.1000234", false);
Line Deleted : user_pref("CT2645238.components.129452956653744126", false);
Line Deleted : user_pref("CT2645238.components.129452956654525378", false);
Line Deleted : user_pref("CT2645238.generalConfigFromLogin", "{\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdownload.conduit.com/\"}");
Line Deleted : user_pref("CT2645238.globalFirstTimeInfoLastCheckTime", "Sat Apr 30 2011 19:33:11 GMT+0200");
Line Deleted : user_pref("CT2645238.isAppTrackingManagerOn", true);
Line Deleted : user_pref("CT2645238.myStuffEnabled", true);
Line Deleted : user_pref("CT2645238.myStuffPublihserMinWidth", 400);
Line Deleted : user_pref("CT2645238.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
Line Deleted : user_pref("CT2645238.myStuffServiceIntervalMM", 1440);
Line Deleted : user_pref("CT2645238.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
Line Deleted : user_pref("CT2645238.oldAppsList", "129194820424161790,129194820424318041,129194820424474292,129194820424630543,1000034,129194820424786795,129452956655462880,129452956654525378,129452956653744126,1291[...]
Line Deleted : user_pref("CT2645238.testingCtid", "");
Line Deleted : user_pref("CT2645238.toolbarAppMetaDataLastCheckTime", "Sat Apr 30 2011 19:33:11 GMT+0200");
Line Deleted : user_pref("CT2645238.toolbarContextMenuLastCheckTime", "Fri Apr 29 2011 16:46:34 GMT+0200");
Line Deleted : user_pref("CT2645238.usagesFlag", 2);
Line Deleted : user_pref("CommunityToolbar.CantToolbarBeEngineOwner", "CT2645238");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1037922/1033633/CZ", "\"0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2645238", "\"1283468208\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en", "wVmmvqqOMqrv5xct1cJIHg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en", "poKjTfHs0NrVUIalKI8jyg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en", "Dclc8oo4TTv7+mAkSlUSWg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en", "K4Vqu91uAzWURlxJRdXJOg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"803651ba7facb1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"07b2625f8cb1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2645238", "\"634394076199470000\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/CT2645238/CT2645238", "\"1300822106\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/38/264/CT2645238/Images/634084960850172500.png", "\"42eee7aac1eaca1:0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"634351849102130000\"");
Line Deleted : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=2.0.0.0&q=");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList", "CT2611275,CT2645238");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList2", "CT2611275,CT2645238");
Line Deleted : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Fri Apr 29 2011 16:46:27 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.alert.alertEnabled", false);
Line Deleted : user_pref("CommunityToolbar.alert.alertInfoInterval", 60);
Line Deleted : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Fri Apr 29 2011 16:46:36 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Line Deleted : user_pref("CommunityToolbar.alert.locale", "en");
Line Deleted : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Line Deleted : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Sat Apr 30 2011 19:33:08 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1303303927");
Line Deleted : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Line Deleted : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Line Deleted : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Line Deleted : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Line Deleted : user_pref("CommunityToolbar.alert.userId", "cefa038a-5069-4081-8c76-30b0a43c897a");
Line Deleted : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Sat Apr 30 2011 19:33:13 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.globalUserId", "897c7f5e-b341-4001-85ed-40d9838d97cc");
Line Deleted : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Line Deleted : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Line Deleted : user_pref("extensions.snipit.askTbInstalled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1389448887810");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001");
Line Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "videodownloadconverter@mindspark.com");
Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
Line Deleted : user_pref("icqtoolbar.engineVerified", false);
Line Deleted : user_pref("icqtoolbar.geolastmodified", 1263648278);
Line Deleted : user_pref("icqtoolbar.hiddenElements", "itb_options itb_games");
Line Deleted : user_pref("icqtoolbar.history", "seznam.cz");
Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
Line Deleted : user_pref("icqtoolbar.installTime", "1263648278");
Line Deleted : user_pref("icqtoolbar.installsource", "1");
Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
Line Deleted : user_pref("icqtoolbar.previousFFVersion", "3.5.7");
Line Deleted : user_pref("icqtoolbar.shownElements", "itb_people itb_zoom_in itb_zoom_out itb_zoom_default itb_highlight");
Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
Line Deleted : user_pref("icqtoolbar.uniqueID", "121110648612111064861211115276562");
Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1263648282);
Line Deleted : user_pref("icqtoolbar.version", "2.0.0.0");

-\\ Google Chrome v

[ File : C:\Documents and Settings\Jarmila\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [25219 octets] - [13/04/2014 18:49:09]
AdwCleaner[S0].txt - [25540 octets] - [13/04/2014 18:52:44]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [25601 octets] ##########

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu + dotaz

#6 Příspěvek od Márty84 »

:arrow: Udelejte !!!kompletni!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce

:!: Musite stahnout verzi 1.75 http://www.stahuj.centrum.cz/utility_a_ ... i-malware/ , protoze ta nejnovejsi verze 2.0 uz na xp nejede.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

destiny17
Návštěvník
Návštěvník
Příspěvky: 49
Registrován: 08 úno 2006 17:27
Bydliště: Praha

Re: Prosím o kontrolu + dotaz

#7 Příspěvek od destiny17 »

Tak asi v pořádku, jen trochu pomalé :-)

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2014.04.14.06

Windows XP Service Pack 3 x86 FAT32
Internet Explorer 8.0.6001.18702
Jarmila :: DL001427 [administrátor]

14.4.2014 18:37
mbam-log-2014-04-14 (18-37-34).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 312644
Uplynulý čas: 1 hodin, 14 minut, 28 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu + dotaz

#8 Příspěvek od Márty84 »

:arrow: MBAM odinstalujte.


:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu a spustte.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

destiny17
Návštěvník
Návštěvník
Příspěvky: 49
Registrován: 08 úno 2006 17:27
Bydliště: Praha

Re: Prosím o kontrolu + dotaz

#9 Příspěvek od destiny17 »

RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Jarmila [Práva správce]
Mód : Kontrola -- Datum : 04/15/2014 16:20:17
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 2 ¤¤¤
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] SSDT[25] : NtClose @ 0x805B1EA4 -> HOOKED (Unknown @ 0xB87D7414)
[Address] SSDT[41] : NtCreateKey @ 0x8061AF8C -> HOOKED (Unknown @ 0xB87D73CE)
[Address] SSDT[50] : NtCreateSection @ 0x805A092C -> HOOKED (Unknown @ 0xB87D741E)
[Address] SSDT[53] : NtCreateThread @ 0x805C748E -> HOOKED (Unknown @ 0xB87D73C4)
[Address] SSDT[63] : NtDeleteKey @ 0x8061B428 -> HOOKED (Unknown @ 0xB87D73D3)
[Address] SSDT[65] : NtDeleteValueKey @ 0x8061B5F8 -> HOOKED (Unknown @ 0xB87D73DD)
[Address] SSDT[68] : NtDuplicateObject @ 0x805B3AB8 -> HOOKED (Unknown @ 0xB87D740F)
[Address] SSDT[98] : NtLoadKey @ 0x8061D1B0 -> HOOKED (Unknown @ 0xB87D73E2)
[Address] SSDT[122] : NtOpenProcess @ 0x805C1512 -> HOOKED (Unknown @ 0xB87D73B0)
[Address] SSDT[128] : NtOpenThread @ 0x805C179E -> HOOKED (Unknown @ 0xB87D73B5)
[Address] SSDT[177] : NtQueryValueKey @ 0x806191B0 -> HOOKED (Unknown @ 0xB87D7437)
[Address] SSDT[193] : NtReplaceKey @ 0x8061D060 -> HOOKED (Unknown @ 0xB87D73EC)
[Address] SSDT[200] : NtRequestWaitReplyPort @ 0x805982D0 -> HOOKED (Unknown @ 0xB87D7428)
[Address] SSDT[204] : NtRestoreKey @ 0x8061C96C -> HOOKED (Unknown @ 0xB87D73E7)
[Address] SSDT[213] : NtSetContextThread @ 0x805C90E6 -> HOOKED (Unknown @ 0xB87D7423)
[Address] SSDT[237] : NtSetSecurityObject @ 0x805B622A -> HOOKED (Unknown @ 0xB87D742D)
[Address] SSDT[247] : NtSetValueKey @ 0x806194FE -> HOOKED (Unknown @ 0xB87D73D8)
[Address] SSDT[255] : NtSystemDebugControl @ 0x8060EED6 -> HOOKED (Unknown @ 0xB87D7432)
[Address] SSDT[257] : NtTerminateProcess @ 0x805C879A -> HOOKED (Unknown @ 0xB87D73BF)
[Address] Shadow SSDT[549] : NtUserSetWindowsHookEx -> HOOKED (Unknown @ 0xB87D7446)
[Address] Shadow SSDT[552] : NtUserSetWinEventHook -> HOOKED (Unknown @ 0xB87D744B)
[Address] EAT @firefox.exe (FREEBL_GetVector) : nssckbi.dll -> HOOKED (C:\Program Files\Mozilla Firefox\freebl3.dll @ 0x0A221000)

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD800JD-00MSA1 +++++
--- User ---
[MBR] df56df8a922605e2bbf7e13af3c0fdae
[BSP] a5d475d63b3f3a664e1705c49f13451a : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 63 | Size: 73272 MB
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_04152014_162017.txt >>

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu + dotaz

#10 Příspěvek od Márty84 »

:arrow: Znovu spustte RogueKiller (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

destiny17
Návštěvník
Návštěvník
Příspěvky: 49
Registrován: 08 úno 2006 17:27
Bydliště: Praha

Re: Prosím o kontrolu + dotaz

#11 Příspěvek od destiny17 »

RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Jarmila [Práva správce]
Mód : Odebrat -- Datum : 04/16/2014 09:35:26
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 2 ¤¤¤
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] SSDT[25] : NtClose @ 0x805B1EA4 -> HOOKED (Unknown @ 0xB87D7414)
[Address] SSDT[41] : NtCreateKey @ 0x8061AF8C -> HOOKED (Unknown @ 0xB87D73CE)
[Address] SSDT[50] : NtCreateSection @ 0x805A092C -> HOOKED (Unknown @ 0xB87D741E)
[Address] SSDT[53] : NtCreateThread @ 0x805C748E -> HOOKED (Unknown @ 0xB87D73C4)
[Address] SSDT[63] : NtDeleteKey @ 0x8061B428 -> HOOKED (Unknown @ 0xB87D73D3)
[Address] SSDT[65] : NtDeleteValueKey @ 0x8061B5F8 -> HOOKED (Unknown @ 0xB87D73DD)
[Address] SSDT[68] : NtDuplicateObject @ 0x805B3AB8 -> HOOKED (Unknown @ 0xB87D740F)
[Address] SSDT[98] : NtLoadKey @ 0x8061D1B0 -> HOOKED (Unknown @ 0xB87D73E2)
[Address] SSDT[122] : NtOpenProcess @ 0x805C1512 -> HOOKED (Unknown @ 0xB87D73B0)
[Address] SSDT[128] : NtOpenThread @ 0x805C179E -> HOOKED (Unknown @ 0xB87D73B5)
[Address] SSDT[177] : NtQueryValueKey @ 0x806191B0 -> HOOKED (Unknown @ 0xB87D7437)
[Address] SSDT[193] : NtReplaceKey @ 0x8061D060 -> HOOKED (Unknown @ 0xB87D73EC)
[Address] SSDT[200] : NtRequestWaitReplyPort @ 0x805982D0 -> HOOKED (Unknown @ 0xB87D7428)
[Address] SSDT[204] : NtRestoreKey @ 0x8061C96C -> HOOKED (Unknown @ 0xB87D73E7)
[Address] SSDT[213] : NtSetContextThread @ 0x805C90E6 -> HOOKED (Unknown @ 0xB87D7423)
[Address] SSDT[237] : NtSetSecurityObject @ 0x805B622A -> HOOKED (Unknown @ 0xB87D742D)
[Address] SSDT[247] : NtSetValueKey @ 0x806194FE -> HOOKED (Unknown @ 0xB87D73D8)
[Address] SSDT[255] : NtSystemDebugControl @ 0x8060EED6 -> HOOKED (Unknown @ 0xB87D7432)
[Address] SSDT[257] : NtTerminateProcess @ 0x805C879A -> HOOKED (Unknown @ 0xB87D73BF)
[Address] Shadow SSDT[549] : NtUserSetWindowsHookEx -> HOOKED (Unknown @ 0xB87D7446)
[Address] Shadow SSDT[552] : NtUserSetWinEventHook -> HOOKED (Unknown @ 0xB87D744B)
[Address] EAT @firefox.exe (FREEBL_GetVector) : nssckbi.dll -> HOOKED (C:\Program Files\Mozilla Firefox\freebl3.dll @ 0x0A121000)

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD800JD-00MSA1 +++++
--- User ---
[MBR] df56df8a922605e2bbf7e13af3c0fdae
[BSP] a5d475d63b3f3a664e1705c49f13451a : Windows XP MBR Code
Partition table:
0 - [ACTIVE] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 63 | Size: 73272 MB
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_04162014_093526.txt >>
RKreport[0]_S_04162014_093516.txt

------
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Jarmila [Práva správce]
Mód : Oprava HOSTS -- Datum : 04/16/2014 09:37:51
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Resetovaný HOSTS: ¤¤¤


Dokončeno : << RKreport[0]_H_04162014_093751.txt >>
RKreport[0]_S_04162014_093516.txt;RKreport[0]_D_04162014_093526.txt

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu + dotaz

#12 Příspěvek od Márty84 »

Dejte novy log z RSIT
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

destiny17
Návštěvník
Návštěvník
Příspěvky: 49
Registrován: 08 úno 2006 17:27
Bydliště: Praha

Re: Prosím o kontrolu + dotaz

#13 Příspěvek od destiny17 »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Jarmila at 2014-04-16 11:29:21
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 40 GB (54%) free of 73 GB
Total RAM: 2526 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:29, on 16.4.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\RSIT.exe
C:\Program Files\trend micro\Jarmila.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Avira SearchFree Toolbar BHO - {41564952-412D-5637-4300-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll" (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll" (file missing)
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKUS\S-1-5-21-483520890-1613990964-3558181899-1009\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.alzasoft.cz
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 9294041796
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 7391940556
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe

--
End of file - 7233 bytes

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.24"

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.70 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.9.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\WINDOWS\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1]
"Description"=Yahoo! activeX Plug-in Bridge
"Path"=C:\Program Files\Mozilla Firefox\plugins\npyaxmpb.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
npyaxmpb.dll
np_gp.dll
nppdf32.dll

C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\extensions\
ffxtlbr@zonealarm.com
4zffxtbr@VideoDownloadConverter_4z.com

C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\
google-uk.xml
100-search-engines.xml
google-ssl.xml
seznam.xml
mapycz.xml
firmycz.xml
zbocz.xml
flickr.xml
hledejcenycz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7}]
Avira SearchFree Toolbar - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll [2014-02-13 12240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-11-03 449512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-11-03 155384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
{41564952-412D-5637-4300-7A786E7484D7} - Avira SearchFree Toolbar - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll [2014-02-13 12240]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2014-02-20 689744]
"ZoneAlarm"=C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe [2014-01-29 74160]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KONICA MINOLTA PagePro 1350WStatusDisplay]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2009-05-26 413696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2013-05-07 115440]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoBandCustomize"=0
"NoDrives"=0
"NoDriveAutoRun"=67108863

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Messenger\MSMSGS.EXE"="C:\Program Files\Messenger\MSMSGS.EXE:*:Enabled:Windows Messenger"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\WINDOWS\System32\ZoneLabs\vsmon.exe"="C:\WINDOWS\System32\ZoneLabs\vsmon.exe:*:Enabled:vsmon"
"C:\Program Files\ICQ7M\ICQ.exe"="C:\Program Files\ICQ7M\ICQ.exe:*:Enabled:ICQ7M"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\DAEMONU.EXE"="C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\DAEMONU.EXE:*:Enabled:Daemonu.exe"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\ICQ7M\ICQ.exe"="C:\Program Files\ICQ7M\ICQ.exe:*:Enabled:ICQ7M"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll

======List of files/folders created in the last 1 month======

2014-04-16 09:35:13 ----A---- C:\WINDOWS\system32\drivers\dxg.sys.bak
2014-04-16 09:35:13 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys.bak
2014-04-16 09:35:13 ----A---- C:\WINDOWS\system32\drivers\drmk.sys.bak
2014-04-16 09:35:12 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys.bak
2014-04-16 09:35:12 ----A---- C:\WINDOWS\system32\drivers\flpydisk.sys.bak
2014-04-16 09:35:12 ----A---- C:\WINDOWS\system32\drivers\fips.sys.bak
2014-04-16 09:35:12 ----A---- C:\WINDOWS\system32\drivers\fdc.sys.bak
2014-04-16 09:35:12 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys.bak
2014-04-16 09:35:11 ----A---- C:\WINDOWS\system32\drivers\ipsec.sys.bak
2014-04-16 09:35:11 ----A---- C:\WINDOWS\system32\drivers\ipnat.sys.bak
2014-04-16 09:35:11 ----A---- C:\WINDOWS\system32\drivers\ipinip.sys.bak
2014-04-16 09:35:11 ----A---- C:\WINDOWS\system32\drivers\imapi.sys.bak
2014-04-16 09:35:11 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys.bak
2014-04-16 09:35:11 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys.bak
2014-04-16 09:35:10 ----A---- C:\WINDOWS\system32\drivers\ks.sys.bak
2014-04-16 09:35:10 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys.bak
2014-04-16 09:35:10 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys.bak
2014-04-16 09:35:10 ----A---- C:\WINDOWS\system32\drivers\isapnp.sys.bak
2014-04-16 09:35:10 ----A---- C:\WINDOWS\system32\drivers\irenum.sys.bak
2014-04-16 09:35:09 ----A---- C:\WINDOWS\system32\drivers\msgpc.sys.bak
2014-04-16 09:35:09 ----A---- C:\WINDOWS\system32\drivers\msfs.sys.bak
2014-04-16 09:35:09 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys.bak
2014-04-16 09:35:09 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys.bak
2014-04-16 09:35:09 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys.bak
2014-04-16 09:35:09 ----A---- C:\WINDOWS\system32\drivers\modem.sys.bak
2014-04-16 09:35:09 ----A---- C:\WINDOWS\system32\drivers\mf.sys.bak
2014-04-16 09:35:08 ----A---- C:\WINDOWS\system32\drivers\ndiswan.sys.bak
2014-04-16 09:35:08 ----A---- C:\WINDOWS\system32\drivers\ndisuio.sys.bak
2014-04-16 09:35:08 ----A---- C:\WINDOWS\system32\drivers\ndis.sys.bak
2014-04-16 09:35:08 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys.bak
2014-04-16 09:35:08 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys.bak
2014-04-16 09:35:08 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys.bak
2014-04-16 09:35:07 ----A---- C:\WINDOWS\system32\drivers\npfs.sys.bak
2014-04-16 09:35:07 ----A---- C:\WINDOWS\system32\drivers\nmnt.sys.bak
2014-04-16 09:35:07 ----A---- C:\WINDOWS\system32\drivers\nic1394.sys.bak
2014-04-16 09:35:07 ----A---- C:\WINDOWS\system32\drivers\netbt.sys.bak
2014-04-16 09:35:07 ----A---- C:\WINDOWS\system32\drivers\netbios.sys.bak
2014-04-16 09:35:06 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys.bak
2014-04-16 09:35:06 ----A---- C:\WINDOWS\system32\drivers\parport.sys.bak
2014-04-16 09:35:06 ----A---- C:\WINDOWS\system32\drivers\p3.sys.bak
2014-04-16 09:35:06 ----A---- C:\WINDOWS\system32\drivers\nwlnkipx.sys.bak
2014-04-16 09:35:06 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys.bak
2014-04-16 09:35:05 ----A---- C:\WINDOWS\system32\drivers\processr.sys.bak
2014-04-16 09:35:05 ----A---- C:\WINDOWS\system32\drivers\portcls.sys.bak
2014-04-16 09:35:05 ----A---- C:\WINDOWS\system32\drivers\pcmcia.sys.bak
2014-04-16 09:35:05 ----A---- C:\WINDOWS\system32\drivers\pciidex.sys.bak
2014-04-16 09:35:05 ----A---- C:\WINDOWS\system32\drivers\pci.sys.bak
2014-04-16 09:35:04 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys.bak
2014-04-16 09:35:04 ----A---- C:\WINDOWS\system32\drivers\raspptp.sys.bak
2014-04-16 09:35:04 ----A---- C:\WINDOWS\system32\drivers\raspppoe.sys.bak
2014-04-16 09:35:04 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys.bak
2014-04-16 09:35:04 ----A---- C:\WINDOWS\system32\drivers\psched.sys.bak
2014-04-16 09:35:03 ----A---- C:\WINDOWS\system32\drivers\serenum.sys.bak
2014-04-16 09:35:03 ----A---- C:\WINDOWS\system32\drivers\scsiport.sys.bak
2014-04-16 09:35:03 ----A---- C:\WINDOWS\system32\drivers\rndismp.sys.bak
2014-04-16 09:35:03 ----A---- C:\WINDOWS\system32\drivers\redbook.sys.bak
2014-04-16 09:35:03 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys.bak
2014-04-16 09:35:02 ----A---- C:\WINDOWS\system32\drivers\swenum.sys.bak
2014-04-16 09:35:02 ----A---- C:\WINDOWS\system32\drivers\stream.sys.bak
2014-04-16 09:35:02 ----A---- C:\WINDOWS\system32\drivers\sr.sys.bak
2014-04-16 09:35:02 ----A---- C:\WINDOWS\system32\drivers\splitter.sys.bak
2014-04-16 09:35:02 ----A---- C:\WINDOWS\system32\drivers\sonydcam.sys.bak
2014-04-16 09:35:02 ----A---- C:\WINDOWS\system32\drivers\sfloppy.sys.bak
2014-04-16 09:35:02 ----A---- C:\WINDOWS\system32\drivers\serial.sys.bak
2014-04-16 09:35:01 ----A---- C:\WINDOWS\system32\drivers\udfs.sys.bak
2014-04-16 09:35:01 ----A---- C:\WINDOWS\system32\drivers\termdd.sys.bak
2014-04-16 09:35:01 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys.bak
2014-04-16 09:35:01 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys.bak
2014-04-16 09:35:01 ----A---- C:\WINDOWS\system32\drivers\tdi.sys.bak
2014-04-16 09:35:01 ----A---- C:\WINDOWS\system32\drivers\tape.sys.bak
2014-04-16 09:35:01 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys.bak
2014-04-16 09:35:01 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys.bak
2014-04-16 09:35:00 ----A---- C:\WINDOWS\system32\drivers\usbstor.sys.bak
2014-04-16 09:35:00 ----A---- C:\WINDOWS\system32\drivers\usbprint.sys.bak
2014-04-16 09:35:00 ----A---- C:\WINDOWS\system32\drivers\usbohci.sys.bak
2014-04-16 09:35:00 ----A---- C:\WINDOWS\system32\drivers\usbintel.sys.bak
2014-04-16 09:35:00 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys.bak
2014-04-16 09:35:00 ----A---- C:\WINDOWS\system32\drivers\usbcamd2.sys.bak
2014-04-16 09:35:00 ----A---- C:\WINDOWS\system32\drivers\usbcamd.sys.bak
2014-04-16 09:34:59 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys.bak
2014-04-16 09:34:59 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys.bak
2014-04-16 09:34:59 ----A---- C:\WINDOWS\system32\drivers\volsnap.sys.bak
2014-04-16 09:34:59 ----A---- C:\WINDOWS\system32\drivers\videoprt.sys.bak
2014-04-16 09:34:59 ----A---- C:\WINDOWS\system32\drivers\vga.sys.bak
2014-04-16 09:34:58 ----A---- C:\WINDOWS\system32\drivers\WudfRd.sys.bak
2014-04-16 09:34:58 ----A---- C:\WINDOWS\system32\drivers\WudfPf.sys.bak
2014-04-16 09:34:58 ----A---- C:\WINDOWS\system32\drivers\wpdusb.sys.bak
2014-04-16 09:34:58 ----A---- C:\WINDOWS\system32\drivers\secdrv.sys.bak
2014-04-16 09:34:58 ----A---- C:\WINDOWS\system32\drivers\CnxTgNW.sys.bak
2014-04-16 09:34:58 ----A---- C:\WINDOWS\system32\drivers\CnxEtP.sys.bak
2014-04-16 09:34:57 ----A---- C:\WINDOWS\system32\drivers\nvtcp.sys.bak
2014-04-16 09:34:57 ----A---- C:\WINDOWS\system32\drivers\nvsnpu.sys.bak
2014-04-16 09:34:57 ----A---- C:\WINDOWS\system32\drivers\NVENETFD.sys.bak
2014-04-16 09:34:57 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys.bak
2014-04-16 09:34:57 ----A---- C:\WINDOWS\system32\drivers\CnxEtU.sys.bak
2014-04-16 09:34:56 ----A---- C:\WINDOWS\system32\drivers\senfilt.sys.bak
2014-04-16 09:34:56 ----A---- C:\WINDOWS\system32\drivers\nvnrm.sys.bak
2014-04-16 09:34:56 ----A---- C:\WINDOWS\system32\drivers\nvnetbus.sys.bak
2014-04-16 09:34:56 ----A---- C:\WINDOWS\system32\drivers\aeaudio.sys.bak
2014-04-16 09:34:56 ----A---- C:\WINDOWS\system32\drivers\ADIHdAud.sys.bak
2014-04-16 09:34:55 ----A---- C:\WINDOWS\system32\drivers\Hdaudio.sys.bak
2014-04-16 09:34:55 ----A---- C:\WINDOWS\system32\drivers\ASACPI.sys.bak
2014-04-16 09:34:53 ----A---- C:\WINDOWS\system32\drivers\usb8023x.sys.bak
2014-04-16 09:34:53 ----A---- C:\WINDOWS\system32\drivers\nv4_mini.sys.bak
2014-04-16 09:34:52 ----A---- C:\WINDOWS\system32\drivers\SBREDrv.sys.bak
2014-04-16 09:34:52 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys.bak
2014-04-16 09:34:52 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys.bak
2014-04-16 09:34:52 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys.bak
2014-04-16 09:34:52 ----A---- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys.bak
2014-04-16 09:34:52 ----A---- C:\WINDOWS\system32\drivers\BootDefragDriver.sys.bak
2014-04-16 09:34:51 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys.bak
2014-04-16 09:34:51 ----A---- C:\WINDOWS\system32\drivers\usbd.sys.bak
2014-04-16 09:34:51 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys.bak
2014-04-16 09:34:50 ----A---- C:\WINDOWS\system32\drivers\tcpip6.sys.bak
2014-04-16 09:34:50 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys.bak
2014-04-16 09:34:50 ----A---- C:\WINDOWS\system32\drivers\mup.sys.bak
2014-04-16 09:34:50 ----A---- C:\WINDOWS\system32\drivers\http.sys.bak
2014-04-16 09:34:49 ----A---- C:\WINDOWS\system32\drivers\usbport.sys.bak
2014-04-16 09:34:49 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys.bak
2014-04-16 09:34:49 ----A---- C:\WINDOWS\system32\drivers\ssmdrv.sys.bak
2014-04-16 09:34:49 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys.bak
2014-04-16 09:34:49 ----A---- C:\WINDOWS\system32\drivers\afd.sys.bak
2014-04-16 09:34:48 ----A---- C:\WINDOWS\system32\drivers\srv.sys.bak
2014-04-16 09:34:48 ----A---- C:\WINDOWS\system32\drivers\RMCast.sys.bak
2014-04-16 09:34:48 ----A---- C:\WINDOWS\system32\drivers\audstub.sys.bak
2014-04-16 09:34:48 ----A---- C:\WINDOWS\system32\drivers\agpcpq.sys.bak
2014-04-16 09:34:48 ----A---- C:\WINDOWS\system32\drivers\agp440.sys.bak
2014-04-16 09:34:47 ----A---- C:\WINDOWS\system32\drivers\e100b325.sys.bak
2014-04-16 09:34:47 ----A---- C:\WINDOWS\system32\drivers\ati1raxx.sys.bak
2014-04-16 09:34:47 ----A---- C:\WINDOWS\system32\drivers\ati1pdxx.sys.bak
2014-04-16 09:34:47 ----A---- C:\WINDOWS\system32\drivers\ati1mdxx.sys.bak
2014-04-16 09:34:47 ----A---- C:\WINDOWS\system32\drivers\ati1btxx.sys.bak
2014-04-16 09:34:47 ----A---- C:\WINDOWS\system32\drivers\amdk7.sys.bak
2014-04-16 09:34:47 ----A---- C:\WINDOWS\system32\drivers\alim1541.sys.bak
2014-04-16 09:34:46 ----A---- C:\WINDOWS\system32\drivers\ati1xsxx.sys.bak
2014-04-16 09:34:46 ----A---- C:\WINDOWS\system32\drivers\ati1xbxx.sys.bak
2014-04-16 09:34:46 ----A---- C:\WINDOWS\system32\drivers\ati1tuxx.sys.bak
2014-04-16 09:34:46 ----A---- C:\WINDOWS\system32\drivers\ati1ttxx.sys.bak
2014-04-16 09:34:46 ----A---- C:\WINDOWS\system32\drivers\ati1snxx.sys.bak
2014-04-16 09:34:46 ----A---- C:\WINDOWS\system32\drivers\ati1rvxx.sys.bak
2014-04-16 09:34:45 ----A---- C:\WINDOWS\system32\drivers\atinpdxx.sys.bak
2014-04-16 09:34:45 ----A---- C:\WINDOWS\system32\drivers\atinmdxx.sys.bak
2014-04-16 09:34:45 ----A---- C:\WINDOWS\system32\drivers\atinbtxx.sys.bak
2014-04-16 09:34:45 ----A---- C:\WINDOWS\system32\drivers\ati2mtag.sys.bak
2014-04-16 09:34:45 ----A---- C:\WINDOWS\system32\drivers\ati2mtaa.sys.bak
2014-04-16 09:34:44 ----A---- C:\WINDOWS\system32\drivers\atinxsxx.sys.bak
2014-04-16 09:34:44 ----A---- C:\WINDOWS\system32\drivers\atinxbxx.sys.bak
2014-04-16 09:34:44 ----A---- C:\WINDOWS\system32\drivers\atintuxx.sys.bak
2014-04-16 09:34:44 ----A---- C:\WINDOWS\system32\drivers\atinttxx.sys.bak
2014-04-16 09:34:44 ----A---- C:\WINDOWS\system32\drivers\atinsnxx.sys.bak
2014-04-16 09:34:44 ----A---- C:\WINDOWS\system32\drivers\atinrvxx.sys.bak
2014-04-16 09:34:44 ----A---- C:\WINDOWS\system32\drivers\atinraxx.sys.bak
2014-04-16 09:34:43 ----A---- C:\WINDOWS\system32\drivers\bthusb.sys.bak
2014-04-16 09:34:43 ----A---- C:\WINDOWS\system32\drivers\bthprint.sys.bak
2014-04-16 09:34:43 ----A---- C:\WINDOWS\system32\drivers\bthport.sys.bak
2014-04-16 09:34:43 ----A---- C:\WINDOWS\system32\drivers\bthpan.sys.bak
2014-04-16 09:34:43 ----A---- C:\WINDOWS\system32\drivers\bthmodem.sys.bak
2014-04-16 09:34:43 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys.bak
2014-04-16 09:34:42 ----A---- C:\WINDOWS\system32\drivers\hidir.sys.bak
2014-04-16 09:34:42 ----A---- C:\WINDOWS\system32\drivers\hidbth.sys.bak
2014-04-16 09:34:42 ----A---- C:\WINDOWS\system32\drivers\Hdaudbus.sys.bak
2014-04-16 09:34:42 ----A---- C:\WINDOWS\system32\drivers\gagp30kx.sys.bak
2014-04-16 09:34:42 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys.bak
2014-04-16 09:34:41 ----A---- C:\WINDOWS\system32\drivers\hsfcxts2.sys.bak
2014-04-16 09:34:41 ----A---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys.bak
2014-04-16 09:34:40 ----A---- C:\WINDOWS\system32\drivers\mbam.sys.bak
2014-04-16 09:34:40 ----A---- C:\WINDOWS\system32\drivers\intelppm.sys.bak
2014-04-16 09:34:40 ----A---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys.bak
2014-04-16 09:34:40 ----A---- C:\WINDOWS\system32\drivers\amdagp.sys.bak
2014-04-16 09:34:39 ----A---- C:\WINDOWS\system32\drivers\mtlmnt5.sys.bak
2014-04-16 09:34:39 ----A---- C:\WINDOWS\system32\drivers\mssmbios.sys.bak
2014-04-16 09:34:39 ----A---- C:\WINDOWS\system32\drivers\mdmxsdk.sys.bak
2014-04-16 09:34:39 ----A---- C:\WINDOWS\system32\drivers\ip6fw.sys.bak
2014-04-16 09:34:38 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys.bak
2014-04-16 09:34:38 ----A---- C:\WINDOWS\system32\drivers\recagent.sys.bak
2014-04-16 09:34:38 ----A---- C:\WINDOWS\system32\drivers\ntmtlfax.sys.bak
2014-04-16 09:34:38 ----A---- C:\WINDOWS\system32\drivers\mutohpen.sys.bak
2014-04-16 09:34:38 ----A---- C:\WINDOWS\system32\drivers\mtxparhm.sys.bak
2014-04-16 09:34:38 ----A---- C:\WINDOWS\system32\drivers\mtlstrm.sys.bak
2014-04-16 09:34:37 ----A---- C:\WINDOWS\system32\drivers\sisagp.sys.bak
2014-04-16 09:34:37 ----A---- C:\WINDOWS\system32\drivers\sffp_sd.sys.bak
2014-04-16 09:34:37 ----A---- C:\WINDOWS\system32\drivers\sffp_mmc.sys.bak
2014-04-16 09:34:37 ----A---- C:\WINDOWS\system32\drivers\sffdisk.sys.bak
2014-04-16 09:34:37 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys.bak
2014-04-16 09:34:37 ----A---- C:\WINDOWS\system32\drivers\s3gnbm.sys.bak
2014-04-16 09:34:37 ----A---- C:\WINDOWS\system32\drivers\rndismpx.sys.bak
2014-04-16 09:34:36 ----A---- C:\WINDOWS\system32\drivers\smbali.sys.bak
2014-04-16 09:34:36 ----A---- C:\WINDOWS\system32\drivers\slwdmsup.sys.bak
2014-04-16 09:34:36 ----A---- C:\WINDOWS\system32\drivers\slnthal.sys.bak
2014-04-16 09:34:36 ----A---- C:\WINDOWS\system32\drivers\slntamr.sys.bak
2014-04-16 09:34:36 ----A---- C:\WINDOWS\system32\drivers\slnt7554.sys.bak
2014-04-16 09:34:35 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys.bak
2014-04-16 09:34:35 ----A---- C:\WINDOWS\system32\drivers\update.sys.bak
2014-04-16 09:34:35 ----A---- C:\WINDOWS\system32\drivers\uagp35.sys.bak
2014-04-16 09:34:35 ----A---- C:\WINDOWS\system32\drivers\tunmp.sys.bak
2014-04-16 09:34:34 ----A---- C:\WINDOWS\system32\drivers\wadv09nt.sys.bak
2014-04-16 09:34:34 ----A---- C:\WINDOWS\system32\drivers\wadv08nt.sys.bak
2014-04-16 09:34:34 ----A---- C:\WINDOWS\system32\drivers\wadv07nt.sys.bak
2014-04-16 09:34:34 ----A---- C:\WINDOWS\system32\drivers\wacompen.sys.bak
2014-04-16 09:34:34 ----A---- C:\WINDOWS\system32\drivers\viaagp.sys.bak
2014-04-16 09:34:34 ----A---- C:\WINDOWS\system32\drivers\usbvideo.sys.bak
2014-04-16 09:34:34 ----A---- C:\WINDOWS\system32\drivers\usbscan.sys.bak
2014-04-16 09:34:33 ----A---- C:\WINDOWS\system32\drivers\watv10nt.sys.bak
2014-04-16 09:34:33 ----A---- C:\WINDOWS\system32\drivers\watv06nt.sys.bak
2014-04-16 09:34:33 ----A---- C:\WINDOWS\system32\drivers\wadv11nt.sys.bak
2014-04-16 09:34:33 ----A---- C:\WINDOWS\system32\drivers\amdk6.sys.bak
2014-04-16 09:34:33 ----A---- C:\WINDOWS\system32\drivers\aec.sys.bak
2014-04-16 09:34:33 ----A---- C:\WINDOWS\system32\drivers\acpi.sys.bak
2014-04-16 09:34:32 ----A---- C:\WINDOWS\system32\drivers\bridge.sys.bak
2014-04-16 09:34:32 ----A---- C:\WINDOWS\system32\drivers\atmlane.sys.bak
2014-04-16 09:34:32 ----A---- C:\WINDOWS\system32\drivers\atmarpc.sys.bak
2014-04-16 09:34:32 ----A---- C:\WINDOWS\system32\drivers\atapi.sys.bak
2014-04-16 09:34:32 ----A---- C:\WINDOWS\system32\drivers\asyncmac.sys.bak
2014-04-16 09:34:32 ----A---- C:\WINDOWS\system32\drivers\arp1394.sys.bak
2014-04-16 09:34:31 ----A---- C:\WINDOWS\system32\drivers\usbccgp.sys.bak
2014-04-16 09:34:31 ----A---- C:\WINDOWS\system32\drivers\pciide.sys.bak
2014-04-16 09:34:31 ----A---- C:\WINDOWS\system32\drivers\oprghdlr.sys.bak
2014-04-16 09:34:31 ----A---- C:\WINDOWS\system32\drivers\fsvga.sys.bak
2014-04-16 09:34:31 ----A---- C:\WINDOWS\system32\drivers\cdfs.sys.bak
2014-04-16 09:34:31 ----A---- C:\WINDOWS\system32\drivers\acpiec.sys.bak
2014-04-16 09:34:30 ----A---- C:\WINDOWS\system32\drivers\ws2ifsl.sys.bak
2014-04-16 09:34:30 ----A---- C:\WINDOWS\system32\drivers\vdmindvd.sys.bak
2014-04-16 09:34:30 ----A---- C:\WINDOWS\system32\drivers\tsbvcap.sys.bak
2014-04-16 09:34:30 ----A---- C:\WINDOWS\system32\drivers\mnmdd.sys.bak
2014-04-16 09:34:30 ----A---- C:\WINDOWS\system32\drivers\classpnp.sys.bak
2014-04-16 09:34:30 ----A---- C:\WINDOWS\system32\drivers\cdrom.sys.bak
2014-04-16 09:34:29 ----A---- C:\WINDOWS\system32\drivers\tosdvd.sys.bak
2014-04-16 09:34:29 ----A---- C:\WINDOWS\system32\drivers\smclib.sys.bak
2014-04-16 09:34:29 ----A---- C:\WINDOWS\system32\drivers\rootmdm.sys.bak
2014-04-16 09:34:29 ----A---- C:\WINDOWS\system32\drivers\riodrv.sys.bak
2014-04-16 09:34:29 ----A---- C:\WINDOWS\system32\drivers\DMusic.sys.bak
2014-04-16 09:34:29 ----A---- C:\WINDOWS\system32\drivers\crusoe.sys.bak
2014-04-16 09:34:28 ----A---- C:\WINDOWS\system32\drivers\rio8drv.sys.bak
2014-04-16 09:34:28 ----A---- C:\WINDOWS\system32\drivers\rawwan.sys.bak
2014-04-16 09:34:28 ----A---- C:\WINDOWS\system32\drivers\nwlnkspx.sys.bak
2014-04-16 09:34:28 ----A---- C:\WINDOWS\system32\drivers\nwlnknb.sys.bak
2014-04-16 09:34:28 ----A---- C:\WINDOWS\system32\drivers\nwlnkfwd.sys.bak
2014-04-16 09:34:28 ----A---- C:\WINDOWS\system32\drivers\nwlnkflt.sys.bak
2014-04-16 09:34:28 ----A---- C:\WINDOWS\system32\drivers\nikedrv.sys.bak
2014-04-16 09:34:27 ----A---- C:\WINDOWS\system32\drivers\mcd.sys.bak
2014-04-16 09:34:27 ----A---- C:\WINDOWS\system32\drivers\ipfltdrv.sys.bak
2014-04-16 09:34:27 ----A---- C:\WINDOWS\system32\drivers\dxapi.sys.bak
2014-04-16 09:34:27 ----A---- C:\WINDOWS\system32\drivers\cpqdap01.sys.bak
2014-04-16 09:34:27 ----A---- C:\WINDOWS\system32\drivers\cinemst2.sys.bak
2014-04-16 09:34:26 ----A---- C:\WINDOWS\system32\drivers\parvdm.sys.bak
2014-04-16 09:34:26 ----A---- C:\WINDOWS\system32\drivers\dxgthk.sys.bak
2014-04-16 09:34:26 ----A---- C:\WINDOWS\system32\drivers\cbidf2k.sys.bak
2014-04-16 09:34:26 ----A---- C:\WINDOWS\system32\drivers\atmuni.sys.bak
2014-04-16 09:34:26 ----A---- C:\WINDOWS\system32\drivers\atmepvc.sys.bak
2014-04-16 09:34:25 ----A---- C:\WINDOWS\system32\drivers\rdpcdd.sys.bak
2014-04-16 09:34:25 ----A---- C:\WINDOWS\system32\drivers\rasacd.sys.bak
2014-04-16 09:34:25 ----A---- C:\WINDOWS\system32\drivers\null.sys.bak
2014-04-16 09:34:25 ----A---- C:\WINDOWS\system32\drivers\fs_rec.sys.bak
2014-04-16 09:34:25 ----A---- C:\WINDOWS\system32\drivers\disk.sys.bak
2014-04-16 09:34:25 ----A---- C:\WINDOWS\system32\drivers\cdaudio.sys.bak
2014-04-16 09:34:25 ----A---- C:\WINDOWS\system32\drivers\beep.sys.bak
2014-04-16 09:34:24 ----A---- C:\WINDOWS\system32\drivers\raspti.sys.bak
2014-04-16 09:34:24 ----A---- C:\WINDOWS\system32\drivers\ptilink.sys.bak
2014-04-16 09:34:24 ----A---- C:\WINDOWS\system32\drivers\dmboot.sys.bak
2014-04-16 09:34:24 ----A---- C:\WINDOWS\system32\drivers\diskdump.sys.bak
2014-04-16 09:34:23 ----A---- C:\WINDOWS\system32\drivers\wmilib.sys.bak
2014-04-16 09:34:23 ----A---- C:\WINDOWS\system32\drivers\ftdisk.sys.bak
2014-04-16 09:34:23 ----A---- C:\WINDOWS\system32\drivers\dmload.sys.bak
2014-04-16 09:34:23 ----A---- C:\WINDOWS\system32\drivers\dmio.sys.bak
2014-04-15 16:19:30 ----D---- C:\WINDOWS\snack
2014-04-12 18:22:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\GlarySoft
2014-04-12 17:41:29 ----SHD---- C:\Config.Msi
2014-04-10 09:21:45 ----HD---- C:\WINDOWS\$NtUninstallKB2922229$
2014-03-30 11:03:43 ----D---- C:\Program Files\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2014-04-16 10:08:58 ----A---- C:\WINDOWS\SchedLgU.Txt
2014-04-13 17:59:22 ----A---- C:\Program Files\RSIT.exe
2014-04-10 09:16:12 ----A---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2013-12-18 135648]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2013-11-25 37352]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2012-08-27 28520]
R1 Vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2014-01-29 529968]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2013-12-18 90400]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2005-10-05 141312]
R3 AEAudioService;AEAudio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2005-03-04 127872]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-02-08 12648960]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-02-17 34176]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-02-17 13056]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2005-08-11 393088]
S0 BootDefragDriver;BootDefragDriver; C:\WINDOWS\System32\drivers\BootDefragDriver.sys [2014-02-17 13504]
S0 srescan;srescan; C:\WINDOWS\system32\ZoneLabs\srescan.sys []
S3 CnxEtP;Conexant AccessRunner USB ADSL Adapter Filter Driver; C:\WINDOWS\system32\DRIVERS\CnxEtP.sys [2005-02-04 131072]
S3 CnxEtU;Conexant AccessRunner USB ADSL Interface Device Driver; C:\WINDOWS\system32\DRIVERS\CnxEtU.sys [2005-02-04 618112]
S3 CnxTgNW;Conexant AccessRunner ADSL WAN PPPoA Adapter Driver; C:\WINDOWS\system32\DRIVERS\CnxTgNW.sys [2005-02-04 52736]
S3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2006-01-12 163328]
S3 EntDrv51;EntDrv51; \??\C:\WINDOWS\system32\drivers\EntDrv51.sys []
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2004-10-27 145920]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys []
S3 SysProtDrv.sys;SysProtDrv.sys; \??\C:\Program Files\SysProt\SysProt\SysProtDrv.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2013-10-10 120088]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2014-02-20 440400]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2014-02-20 440400]
R2 APNMCP;Ask Update Service; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [2014-02-13 166352]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2012-11-03 161768]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-09-23 1258856]
R2 Skype C2C Service;Skype C2C Service; C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
R2 vsmon;TrueVector Internet Monitor; C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe [2014-01-29 2445816]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [2013-10-15 50704]
S2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2012-09-23 164200]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-21 257928]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2012-09-09 821648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-30 119408]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [2014-02-20 1017424]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu + dotaz

#14 Příspěvek od Márty84 »

Jeste jeden sken a budem mazat.


:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe , ulozte na plochu a spustte.
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

destiny17
Návštěvník
Návštěvník
Příspěvky: 49
Registrován: 08 úno 2006 17:27
Bydliště: Praha

Re: Prosím o kontrolu + dotaz

#15 Příspěvek od destiny17 »

OTL logfile created on: 16.4.2014 22:18:48 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Jarmila\Plocha
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2.47 Gb Total Physical Memory | 1.81 Gb Available Physical Memory | 73.55% Memory free
4.78 Gb Paging File | 4.10 Gb Available in Paging File | 85.78% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 71.54 Gb Total Space | 38.61 Gb Free Space | 53.96% Space Free | Partition Type: FAT32

Computer Name: DL001427 | User Name: Jarmila | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014.04.16 22:16:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jarmila\Plocha\OTL.exe
PRC - [2014.03.30 11:04:10 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2014.02.20 09:13:04 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2014.02.20 09:12:38 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2014.02.20 09:12:36 | 000,689,744 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2014.02.13 06:22:48 | 000,166,352 | ---- | M] (APN LLC.) -- C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
PRC - [2014.01.29 20:55:08 | 002,445,816 | ---- | M] (Check Point Software Technologies LTD) -- C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
PRC - [2014.01.29 20:21:40 | 000,074,160 | ---- | M] (Check Point Software Technologies LTD) -- C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
PRC - [2013.12.18 09:06:40 | 000,431,672 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2013.10.15 05:38:52 | 000,050,704 | ---- | M] (Check Point Software Technologies, Ltd.) -- C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
PRC - [2013.10.10 23:54:46 | 000,120,088 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe
PRC - [2013.10.09 10:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) -- C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
PRC - [2012.11.03 22:44:42 | 000,161,768 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe
PRC - [2012.09.23 15:28:00 | 001,258,856 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2014.03.30 11:04:10 | 003,642,480 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2014.02.15 12:58:54 | 000,212,992 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\8cd995f00848816e3ec49dc326e3d49b\System.ServiceProcess.ni.dll
MOD - [2014.02.15 12:58:42 | 000,141,312 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\f254328a10638e87223d401b39197c91\System.Configuration.Install.ni.dll
MOD - [2014.02.15 12:56:42 | 000,978,944 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\4b6e70acd99dc22e29b7fc8f9ac340c4\System.Configuration.ni.dll
MOD - [2014.02.14 10:14:48 | 005,462,016 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\7faf645dc46781225cb722edf9e1e738\System.Xml.ni.dll
MOD - [2014.02.14 10:14:04 | 006,616,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data\af8afdcab485e00a04b18ed487981f3d\System.Data.ni.dll
MOD - [2014.02.14 10:13:56 | 002,295,808 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Core\159b4a6888004de346d499841ec088a7\System.Core.ni.dll
MOD - [2014.02.14 10:05:18 | 002,933,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2014.02.14 09:59:50 | 007,977,984 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\4b0455ae94e3cecca4bb3ba8c96828c9\System.ni.dll
MOD - [2014.02.14 09:59:26 | 011,497,984 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\dae02331a443fb52216ca83292cb2f21\mscorlib.ni.dll
MOD - [2013.10.17 05:33:48 | 000,065,936 | ---- | M] () -- C:\Program Files\CheckPoint\ZoneAlarm\Community.CsharpSqlite.SQLiteClient.dll
MOD - [2012.09.19 19:17:42 | 000,397,088 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll
MOD - [2009.02.02 21:54:14 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll
MOD - [2009.02.02 21:54:10 | 000,303,104 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_cs_b77a5c561934e089\mscorlib.resources.dll


========== Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2014.03.30 11:04:10 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014.02.21 22:12:16 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014.02.20 09:13:04 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2014.02.20 09:12:44 | 001,017,424 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2014.02.20 09:12:38 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2014.02.13 06:22:48 | 000,166,352 | ---- | M] (APN LLC.) [Auto | Running] -- C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe -- (APNMCP)
SRV - [2014.01.29 20:55:08 | 002,445,816 | ---- | M] (Check Point Software Technologies LTD) [Auto | Running] -- C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe -- (vsmon)
SRV - [2013.10.23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.10.15 05:38:52 | 000,050,704 | ---- | M] (Check Point Software Technologies, Ltd.) [Auto | Running] -- C:\Program Files\CheckPoint\ZoneAlarm\ZAPrivacyService.exe -- (ZAPrivacyService)
SRV - [2013.10.10 23:54:46 | 000,120,088 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore.exe -- (!SASCORE)
SRV - [2013.10.09 10:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012.11.03 22:44:42 | 000,161,768 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2012.09.23 15:28:00 | 001,258,856 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2010.03.29 08:51:54 | 000,068,000 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper.dll -- (getPlusHelper)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | Boot | Stopped] -- system32\ZoneLabs\srescan.sys -- (srescan)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\pccsmcfd.sys -- (pccsmcfd)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EntDrv51.sys -- (EntDrv51)
DRV - [2014.02.17 09:36:16 | 000,013,504 | ---- | M] (Glarysoft Ltd) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\drivers\BootDefragDriver.sys -- (BootDefragDriver)
DRV - [2014.01.29 20:21:40 | 000,529,968 | ---- | M] (Check Point Software Technologies LTD) [Kernel | System | Running] -- C:\WINDOWS\system32\vsdatant.sys -- (Vsdatant)
DRV - [2013.12.18 09:06:56 | 000,135,648 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2013.12.18 09:06:56 | 000,090,400 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2013.11.25 19:08:24 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2012.08.27 15:50:26 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2011.07.22 17:27:04 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2011.07.12 22:55:24 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2010.06.18 22:00:46 | 000,044,288 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\SysProt\SysProt\SysProtDrv.sys -- (SysProtDrv.sys)
DRV - [2006.02.17 11:28:32 | 000,013,056 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2006.02.17 11:28:30 | 000,034,176 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2005.08.11 13:49:28 | 000,393,088 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (SenFiltService)
DRV - [2005.02.04 17:12:28 | 000,052,736 | R--- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CnxTgNW.sys -- (CnxTgNW)
DRV - [2005.02.04 17:12:26 | 000,618,112 | R--- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CnxEtU.sys -- (CnxEtU)
DRV - [2005.02.04 17:12:20 | 000,131,072 | R--- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CnxEtP.sys -- (CnxEtP)
DRV - [2004.10.27 15:21:30 | 000,145,920 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService)
DRV - [2004.08.13 03:56:20 | 000,005,810 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKLM\..\URLSearchHook: - No CLSID value found
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\URLSearchHook: - No CLSID value found
IE - HKU\.DEFAULT\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... orm=IE8SRC
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-18\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... orm=IE8SRC
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.alzasoft.cz
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.alzasoft.cz
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Prev Search Bar = http://www.google.com
IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 08 40 80 71 89 AD C9 01 [binary data]
IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... orm=IE8SRC
IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\..\SearchScopes\{13301993-3617-4A31-A39F-ACA11998B5F6}: "URL" = http://search.seznam.cz/searchScreen?w= ... rms}&mod=f
IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\..\SearchScopes\{2168A9D4-22D9-4E1C-8983-4C66F7EA7596}: "URL" = http://search.centrum.cz/index.php?char ... x&kibitz=0
IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\..\SearchScopes\{A40D5C4B-C4C9-40CF-878E-B1EC941B0BE5}: "URL" = http://www.google.com/search?q={searchT ... {startPage}
IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.alzasoft.cz
IE - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\..\SearchScopes,DefaultScope =

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Google SSL"
FF - prefs.js..browser.search.order.1: "Search By ZoneAlarm"
FF - prefs.js..browser.search.selectedEngine: "Google SSL"
FF - prefs.js..browser.search.update: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledAddons: %7B20a82645-c095-46ed-80e3-08825760534b%7D:0.0.0
FF - prefs.js..extensions.enabledAddons: ffxtlbr%40zonealarm.com:1.6.0
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:28.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Mozilla Firefox\plugins\npyaxmpb.dll (Yahoo! Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Jarmila\Local Settings\Data aplikací\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Jarmila\Local Settings\Data aplikací\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2014.03.30 11:03:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 6.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2011.09.03 10:02:18 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 6.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins

[2008.06.17 21:32:02 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Extensions
[2006.10.06 17:00:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\extensions
[2014.01.11 14:36:14 | 000,000,000 | ---D | M] (VideoDownloadConverter) -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\extensions\4zffxtbr@VideoDownloadConverter_4z.com
[2014.02.20 18:46:26 | 000,000,000 | ---D | M] (zonealarm.com) -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\extensions\ffxtlbr@zonealarm.com
[2014.02.24 22:14:52 | 001,128,512 | ---- | M] () (No name found) -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi
[2013.03.21 08:15:42 | 000,007,919 | ---- | M] () (No name found) -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\extensions\ffxtlbr@zonealarm.com\content\Abine\chrome\content\ff\view_expiry.js
[2011.07.20 16:37:12 | 000,003,449 | ---- | M] () -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\google-uk.xml
[2011.07.20 16:41:28 | 000,001,449 | ---- | M] () -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\100-search-engines.xml
[2011.07.20 16:45:24 | 000,005,598 | ---- | M] () -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\google-ssl.xml
[2011.07.20 17:26:36 | 000,002,202 | ---- | M] () -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\seznam.xml
[2011.07.20 17:26:50 | 000,002,048 | ---- | M] () -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\mapycz.xml
[2011.07.20 17:28:02 | 000,002,053 | ---- | M] () -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\firmycz.xml
[2011.07.20 17:28:12 | 000,002,214 | ---- | M] () -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\zbocz.xml
[2011.07.20 17:45:44 | 000,000,355 | ---- | M] () -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\flickr.xml
[2012.04.09 08:03:44 | 000,002,122 | ---- | M] () -- C:\Documents and Settings\Jarmila\Data aplikací\Mozilla\Firefox\Profiles\lqpiggyd.default\searchplugins\hledejcenycz.xml
[2014.03.30 11:03:48 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2014.03.30 11:03:56 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2014.03.30 11:03:56 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2014.03.30 11:03:56 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2014.03.30 11:03:56 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\JARMILA\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\LQPIGGYD.DEFAULT\EXTENSIONS\FFXTLBR@ZONEALARM.COM
[2009.02.02 21:46:40 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2007.03.10 00:16:44 | 000,189,496 | ---- | M] (Yahoo! Inc.) -- C:\Program Files\mozilla firefox\plugins\npyaxmpb.dll

========== Chrome ==========

CHR - default_search_provider: Google SSL (Enabled)
CHR - default_search_provider: search_url = https://encrypted.google.com/search?q={ ... utf-8&aq=t
CHR - default_search_provider: suggest_url = https://clients1.google.com/complete/se ... earchTerms}
CHR - homepage: http://www.seznam.cz/
CHR - plugin: npFFApi (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: Skype Click to Call = C:\Documents and Settings\Jarmila\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.1.15383.6004_0\
CHR - Extension: Avira SearchFree Toolbar plus Web Protection = C:\Documents and Settings\Jarmila\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm\32.5_0\

O1 HOSTS File: ([2010.06.22 08:42:04 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
O2 - BHO: (Avira SearchFree Toolbar) - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Avira SearchFree Toolbar) - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
O3 - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\..\Toolbar\WebBrowser: (Avira SearchFree Toolbar) - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
O3 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\..\Toolbar\WebBrowser: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [ZoneAlarm] C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe (Check Point Software Technologies LTD)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Feed Discovery present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Feeds present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Security present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Toolbar present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Toolbars present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Feed Discovery present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Feeds present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Security present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Toolbar present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Toolbars present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Feed Discovery present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Feeds present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Security present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Toolbar present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Toolbars present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Feed Discovery present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Feeds present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Security present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Toolbar present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Toolbars present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\Software\Policies\Microsoft\Internet Explorer\Feed Discovery present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\Software\Policies\Microsoft\Internet Explorer\Feeds present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\Software\Policies\Microsoft\Internet Explorer\Security present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\Software\Policies\Microsoft\Internet Explorer\Toolbar present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\Software\Policies\Microsoft\Internet Explorer\Toolbars present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoBandCustomize = 0
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\Software\Policies\Microsoft\Internet Explorer\Feed Discovery present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\Software\Policies\Microsoft\Internet Explorer\Feeds present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\Software\Policies\Microsoft\Internet Explorer\Security present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\Software\Policies\Microsoft\Internet Explorer\Toolbar present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\Software\Policies\Microsoft\Internet Explorer\Toolbars present
O7 - HKU\S-1-5-21-483520890-1613990964-3558181899-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 9294041796 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microso ... 7391940556 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Reg Error: Value error.)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.36 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{13152352-FE09-48F5-93B2-7097D3FF7575}: DhcpNameServer = 213.46.172.36 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CF532C0A-62AE-4377-8369-224FAFEE8373}: DhcpNameServer = 172.16.4.6
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Jarmila\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Jarmila\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2014.04.16 22:16:58 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jarmila\Plocha\OTL.exe
[2014.04.15 16:19:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\snack
[2014.04.15 16:17:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jarmila\Plocha\RK_Quarantine
[2014.04.12 18:22:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\GlarySoft
[2014.04.12 18:18:38 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Jarmila\Recent
[2014.04.12 17:41:29 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2014.04.12 16:50:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jarmila\Plocha\Nepoužívané odkazy plochy
[2014.04.01 21:51:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jarmila\Local Settings\Data aplikací\PCHealth
[2014.03.30 11:03:43 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2014.03.01 19:40:24 | 010,285,040 | ---- | C] (Malwarebytes Corporation ) -- C:\Program Files\mbam-setup-1.75.0.1300.exe
[2014.02.20 18:42:17 | 040,367,128 | ---- | C] (Check Point Software Technologies LTD) -- C:\Program Files\zafwSetup_120_121_000.exe
[2014.01.11 14:37:16 | 006,796,432 | ---- | C] (Mindspark Interactive Network) -- C:\Program Files\VideoDownloadConverterSetup.exe
[2013.10.07 20:45:28 | 001,087,213 | ---- | C] (Farbar) -- C:\Program Files\FRST.exe
[2013.10.07 20:43:00 | 000,112,107 | ---- | C] (forum.viry.cz) -- C:\Program Files\VerzeOS.exe
[2013.05.05 13:17:52 | 002,402,208 | ---- | C] (Check Point Software Technologies LTD) -- C:\Program Files\zafwSetupWeb_110_000_504.exe
[2013.05.05 12:26:12 | 002,400,808 | ---- | C] (Check Point Software Technologies LTD) -- C:\Program Files\zaSetupWeb_110_000_057.exe
[2013.03.13 20:26:27 | 006,700,896 | ---- | C] (Glarysoft Ltd ) -- C:\Program Files\gupsetup-13776.exe
[2013.02.20 21:48:43 | 030,836,576 | ---- | C] (Google Inc.) -- C:\Program Files\24.0.1312.57_chrome_installer.exe
[2013.02.20 21:41:39 | 032,912,736 | ---- | C] (Google Inc.) -- C:\Program Files\26.0.1410.5_chrome_installer.exe
[2012.12.09 12:26:44 | 008,998,895 | ---- | C] (Glarysoft Ltd ) -- C:\Program Files\Glary Utilities_v2.51.0.1666.exe
[2012.11.03 22:46:30 | 108,694,976 | ---- | C] (NVIDIA Corporation) -- C:\Program Files\306.81-desktop-winxp-32bit-english-whql.exe
[2012.11.03 21:37:52 | 005,993,024 | ---- | C] (Uniblue Systems Ltd ) -- C:\Program Files\speedupmypc.exe
[2012.09.07 20:43:50 | 031,810,472 | ---- | C] (Google Inc.) -- C:\Program Files\21.0.1180.89_chrome_installer.exe
[2012.09.07 20:27:06 | 100,834,120 | ---- | C] (NVIDIA Corporation) -- C:\Program Files\301.42-desktop-winxp-32bit-english-whql.exe
[2012.08.22 15:49:02 | 002,198,792 | ---- | C] (Check Point Software Technologies LTD) -- C:\Program Files\zafwSetupWeb_102_074_000.exe
[2012.06.29 09:16:34 | 000,347,424 | ---- | C] (Microsoft Corporation) -- C:\Program Files\MicrosoftFixit.Printing.Run.exe
[2012.06.04 20:38:48 | 004,586,776 | ---- | C] (Check Point Software Technologies LTD) -- C:\Program Files\zaSetupWeb_101_101_000_en.exe
[2011.11.30 22:23:53 | 003,243,768 | ---- | C] (Javacool Software LLC ) -- C:\Program Files\spywareblastersetup45.exe
[2011.11.23 08:57:14 | 005,062,120 | ---- | C] (Check Point Software Technologies LTD) -- C:\Program Files\zaSetupWeb_101_065_000.exe
[2011.11.22 21:32:05 | 002,423,328 | ---- | C] (SPAMfighter ApS) -- C:\Program Files\spamfighter_web.exe
[2011.11.18 21:50:58 | 009,852,544 | ---- | C] (Malwarebytes Corporation ) -- C:\Program Files\mbam-setup-1.51.2.1300.exe
[2011.10.16 13:15:34 | 017,172,505 | ---- | C] (KASTNER software s.r.o. ) -- C:\Program Files\fsstart.exe
[2011.09.03 09:33:09 | 014,255,848 | ---- | C] (Mozilla) -- C:\Program Files\Thunderbird Setup 6.0.1.exe
[2011.07.20 18:04:55 | 000,589,632 | ---- | C] (Google Inc.) -- C:\Program Files\ChromeSetup.exe
[2011.04.02 09:34:18 | 088,544,032 | ---- | C] (NVIDIA Corporation) -- C:\Program Files\266.58_desktop_winxp_32bit_english_whql.exe
[2011.04.02 09:18:49 | 006,696,960 | ---- | C] (Glarysoft Ltd ) -- C:\Program Files\gusetup.exe
[2010.12.17 19:06:25 | 003,194,296 | ---- | C] (Javacool Software LLC ) -- C:\Program Files\spywareblastersetup44.exe
[2010.06.23 21:23:44 | 009,575,112 | ---- | C] (Adobe Systems Incorporated) -- C:\Program Files\install_flash_player_ax.exe
[2010.06.23 21:23:21 | 010,217,672 | ---- | C] (Adobe Systems Incorporated) -- C:\Program Files\install_flash_player.exe
[2010.01.16 14:16:57 | 017,143,568 | ---- | C] (ICQ) -- C:\Program Files\install_icq7.exe
[2009.08.20 15:43:01 | 001,557,504 | ---- | C] (Topala Software Solutions) -- C:\Program Files\siw.exe
[2009.08.19 19:11:39 | 006,142,363 | ---- | C] (Yamicsoft) -- C:\Program Files\xpmanager.exe
[2009.07.20 20:30:21 | 002,104,360 | ---- | C] (My Privacy Tools, Inc. ) -- C:\Program Files\hidemyip.exe
[2009.07.14 17:30:58 | 045,836,320 | ---- | C] (PC Tools ) -- C:\Program Files\avinstall.exe
[2009.07.14 16:57:30 | 007,802,960 | ---- | C] (PC Tools ) -- C:\Program Files\tfinstall_4.5.0.24_EN.exe
[2009.06.26 18:26:53 | 075,755,808 | ---- | C] (COMODO) -- C:\Program Files\CIS_Setup_3.9.95478.509_XP_Vista_x32.exe
[2009.05.18 08:39:02 | 001,144,168 | ---- | C] (Microsoft Corporation) -- C:\Program Files\wlsetup-custom.exe
[2009.05.13 06:48:05 | 079,887,032 | ---- | C] (NVIDIA Corporation ) -- C:\Program Files\185.85_desktop_winxp_32bit_english_whql.exe
[2009.03.06 18:19:08 | 001,962,544 | ---- | C] (Adobe Systems Incorporated) -- C:\Program Files\install_flash_player_10_active_x.exe
[2009.01.03 20:22:37 | 000,153,144 | ---- | C] (Antimalware Development a.s.) -- C:\Program Files\ewido_micro.exe
[2008.12.13 15:58:21 | 003,775,176 | ---- | C] (Malwarebytes Corporation ) -- C:\Program Files\mbam-setup.exe
[2008.06.17 21:27:58 | 007,496,920 | ---- | C] (Mozilla) -- C:\Program Files\Firefox Setup 3.0.exe
[2008.06.17 20:24:17 | 008,926,832 | ---- | C] (Opera Software ASA ) -- C:\Program Files\Opera_950_in_Setup.exe
[2008.06.15 13:49:11 | 004,257,184 | ---- | C] (Uniblue ) -- C:\Program Files\registryboosteraff.exe
[2008.06.12 18:05:53 | 000,196,608 | ---- | C] (Malwarebytes) -- C:\Program Files\StartUpLite.exe
[2008.06.03 09:54:35 | 004,080,070 | ---- | C] (Gavrila Martau ) -- C:\Program Files\tu_setup_total uninstall.exe
[2008.05.03 14:09:43 | 001,551,008 | ---- | C] (Skype Technologies S.A.) -- C:\Program Files\SkypeSetup.exe
[2008.05.01 10:59:23 | 028,868,320 | ---- | C] (Microsoft Corporation) -- C:\Program Files\FileFormatConverters.exe
[2008.03.16 13:30:35 | 021,170,696 | ---- | C] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware.exe
[2008.02.26 14:22:46 | 023,510,720 | ---- | C] (Microsoft Corporation) -- C:\Program Files\dotnetfx.exe
[2007.10.20 11:00:09 | 008,706,680 | ---- | C] (Microsoft Corporation) -- C:\Program Files\Windows-KB890830-V1.34.exe
[2007.01.28 17:29:55 | 000,958,109 | ---- | C] (rajče.net ) -- C:\Program Files\rajce_beta40.exe
[2006.12.09 20:44:35 | 000,370,276 | ---- | C] (ICQ) -- C:\Program Files\ICQSMS.dll
[2006.12.09 20:44:35 | 000,203,896 | ---- | C] (icq) -- C:\Program Files\ICQVoice.dll
[2006.12.09 20:44:35 | 000,143,450 | ---- | C] (Icq) -- C:\Program Files\ICQWebsr.ocx
[2006.12.09 20:44:35 | 000,049,248 | ---- | C] (ICQ Ltd.) -- C:\Program Files\ICQSwatchCtrl.ocx
[2006.12.09 20:44:34 | 000,105,060 | ---- | C] (ICQ Ltd.) -- C:\Program Files\ICQGreet.dll
[2006.12.09 20:44:34 | 000,090,112 | ---- | C] (ICQ Ltd.) -- C:\Program Files\ICQHttp_.dll
[2006.12.09 20:44:33 | 002,123,845 | ---- | C] (ICQ Inc.) -- C:\Program Files\Icq.exe
[2006.12.09 20:44:33 | 000,076,899 | ---- | C] (ICQ Ltd.) -- C:\Program Files\ICQABM.dll
[2006.12.09 20:44:33 | 000,061,543 | ---- | C] (ICQ Ltd.) -- C:\Program Files\ICQChnl.ocx
[2006.12.09 20:44:33 | 000,057,430 | ---- | C] (ICQ, Inc.) -- C:\Program Files\icqateres.dll
[2006.10.22 12:07:56 | 015,520,048 | ---- | C] (Microsoft Corporation) -- C:\Program Files\IE7-WindowsXP-x86-enu.exe
[2006.02.01 17:02:16 | 000,237,651 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Program Files\RootkitRevealer.exe

========== Files - Modified Within 30 Days ==========

[2014.04.16 22:21:30 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.04.16 22:16:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jarmila\Plocha\OTL.exe
[2014.04.16 10:09:50 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014.04.16 10:09:48 | 2649,280,512 | -HS- | M] () -- C:\hiberfil.sys
[2014.04.16 09:35:14 | 000,143,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\fastfat.sys.bak
[2014.04.16 09:35:14 | 000,071,168 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxg.sys.bak
[2014.04.16 09:35:14 | 000,060,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\drmk.sys.bak
[2014.04.16 09:35:14 | 000,044,544 | ---- | M] () -- C:\WINDOWS\System32\drivers\fips.sys.bak
[2014.04.16 09:35:14 | 000,036,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidclass.sys.bak
[2014.04.16 09:35:14 | 000,027,392 | ---- | M] () -- C:\WINDOWS\System32\drivers\fdc.sys.bak
[2014.04.16 09:35:14 | 000,020,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\flpydisk.sys.bak
[2014.04.16 09:35:14 | 000,010,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidusb.sys.bak
[2014.04.16 09:35:14 | 000,002,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\drmkaud.sys.bak
[2014.04.16 09:35:12 | 000,172,416 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmixer.sys.bak
[2014.04.16 09:35:12 | 000,152,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipnat.sys.bak
[2014.04.16 09:35:12 | 000,141,056 | ---- | M] () -- C:\WINDOWS\System32\drivers\ks.sys.bak
[2014.04.16 09:35:12 | 000,075,264 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipsec.sys.bak
[2014.04.16 09:35:12 | 000,063,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\mf.sys.bak
[2014.04.16 09:35:12 | 000,052,096 | ---- | M] () -- C:\WINDOWS\System32\drivers\i8042prt.sys.bak
[2014.04.16 09:35:12 | 000,042,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\imapi.sys.bak
[2014.04.16 09:35:12 | 000,037,248 | ---- | M] () -- C:\WINDOWS\System32\drivers\isapnp.sys.bak
[2014.04.16 09:35:12 | 000,024,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\kbdclass.sys.bak
[2014.04.16 09:35:12 | 000,020,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipinip.sys.bak
[2014.04.16 09:35:12 | 000,011,264 | ---- | M] () -- C:\WINDOWS\System32\drivers\irenum.sys.bak
[2014.04.16 09:35:10 | 000,182,656 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndis.sys.bak
[2014.04.16 09:35:10 | 000,180,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\mrxdav.sys.bak
[2014.04.16 09:35:10 | 000,091,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndiswan.sys.bak
[2014.04.16 09:35:10 | 000,042,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\mountmgr.sys.bak
[2014.04.16 09:35:10 | 000,035,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\msgpc.sys.bak
[2014.04.16 09:35:10 | 000,030,080 | ---- | M] () -- C:\WINDOWS\System32\drivers\modem.sys.bak
[2014.04.16 09:35:10 | 000,023,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\mouclass.sys.bak
[2014.04.16 09:35:10 | 000,019,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\msfs.sys.bak
[2014.04.16 09:35:10 | 000,014,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndisuio.sys.bak
[2014.04.16 09:35:10 | 000,007,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\mskssrv.sys.bak
[2014.04.16 09:35:10 | 000,005,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\mspclock.sys.bak
[2014.04.16 09:35:10 | 000,004,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\mspqm.sys.bak
[2014.04.16 09:35:08 | 000,574,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\ntfs.sys.bak
[2014.04.16 09:35:08 | 000,162,816 | ---- | M] () -- C:\WINDOWS\System32\drivers\netbt.sys.bak
[2014.04.16 09:35:08 | 000,088,320 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkipx.sys.bak
[2014.04.16 09:35:08 | 000,080,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\parport.sys.bak
[2014.04.16 09:35:08 | 000,068,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\pci.sys.bak
[2014.04.16 09:35:08 | 000,061,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\nic1394.sys.bak
[2014.04.16 09:35:08 | 000,046,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\p3.sys.bak
[2014.04.16 09:35:08 | 000,040,320 | ---- | M] () -- C:\WINDOWS\System32\drivers\nmnt.sys.bak
[2014.04.16 09:35:08 | 000,034,688 | ---- | M] () -- C:\WINDOWS\System32\drivers\netbios.sys.bak
[2014.04.16 09:35:08 | 000,030,848 | ---- | M] () -- C:\WINDOWS\System32\drivers\npfs.sys.bak
[2014.04.16 09:35:08 | 000,019,712 | ---- | M] () -- C:\WINDOWS\System32\drivers\partmgr.sys.bak
[2014.04.16 09:35:06 | 000,175,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdbss.sys.bak
[2014.04.16 09:35:06 | 000,146,048 | ---- | M] () -- C:\WINDOWS\System32\drivers\portcls.sys.bak
[2014.04.16 09:35:06 | 000,120,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\pcmcia.sys.bak
[2014.04.16 09:35:06 | 000,069,120 | ---- | M] () -- C:\WINDOWS\System32\drivers\psched.sys.bak
[2014.04.16 09:35:06 | 000,051,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\rasl2tp.sys.bak
[2014.04.16 09:35:06 | 000,048,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspptp.sys.bak
[2014.04.16 09:35:06 | 000,041,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspppoe.sys.bak
[2014.04.16 09:35:06 | 000,039,680 | ---- | M] () -- C:\WINDOWS\System32\drivers\processr.sys.bak
[2014.04.16 09:35:06 | 000,024,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\pciidex.sys.bak
[2014.04.16 09:35:04 | 000,196,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpdr.sys.bak
[2014.04.16 09:35:04 | 000,096,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\scsiport.sys.bak
[2014.04.16 09:35:04 | 000,073,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\sr.sys.bak
[2014.04.16 09:35:04 | 000,064,256 | ---- | M] () -- C:\WINDOWS\System32\drivers\serial.sys.bak
[2014.04.16 09:35:04 | 000,058,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\redbook.sys.bak
[2014.04.16 09:35:04 | 000,049,408 | ---- | M] () -- C:\WINDOWS\System32\drivers\stream.sys.bak
[2014.04.16 09:35:04 | 000,030,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\rndismp.sys.bak
[2014.04.16 09:35:04 | 000,025,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\sonydcam.sys.bak
[2014.04.16 09:35:04 | 000,015,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\serenum.sys.bak
[2014.04.16 09:35:04 | 000,011,392 | ---- | M] () -- C:\WINDOWS\System32\drivers\sfloppy.sys.bak
[2014.04.16 09:35:04 | 000,006,272 | ---- | M] () -- C:\WINDOWS\System32\drivers\splitter.sys.bak
[2014.04.16 09:35:04 | 000,004,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\swenum.sys.bak
[2014.04.16 09:35:02 | 000,066,048 | ---- | M] () -- C:\WINDOWS\System32\drivers\udfs.sys.bak
[2014.04.16 09:35:02 | 000,060,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\sysaudio.sys.bak
[2014.04.16 09:35:02 | 000,059,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbhub.sys.bak
[2014.04.16 09:35:02 | 000,056,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\swmidi.sys.bak
[2014.04.16 09:35:02 | 000,040,840 | ---- | M] () -- C:\WINDOWS\System32\drivers\termdd.sys.bak
[2014.04.16 09:35:02 | 000,026,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbstor.sys.bak
[2014.04.16 09:35:02 | 000,025,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbprint.sys.bak
[2014.04.16 09:35:02 | 000,025,728 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbcamd2.sys.bak
[2014.04.16 09:35:02 | 000,025,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbcamd.sys.bak
[2014.04.16 09:35:02 | 000,021,896 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdtcp.sys.bak
[2014.04.16 09:35:02 | 000,019,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdi.sys.bak
[2014.04.16 09:35:02 | 000,017,152 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbohci.sys.bak
[2014.04.16 09:35:02 | 000,015,872 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbintel.sys.bak
[2014.04.16 09:35:02 | 000,014,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\tape.sys.bak
[2014.04.16 09:35:02 | 000,012,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdpipe.sys.bak
[2014.04.16 09:35:00 | 000,131,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\CnxEtP.sys.bak
[2014.04.16 09:35:00 | 000,083,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\wdmaud.sys.bak
[2014.04.16 09:35:00 | 000,082,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\WudfRd.sys.bak
[2014.04.16 09:35:00 | 000,081,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\videoprt.sys.bak
[2014.04.16 09:35:00 | 000,077,568 | ---- | M] () -- C:\WINDOWS\System32\drivers\WudfPf.sys.bak
[2014.04.16 09:35:00 | 000,052,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\CnxTgNW.sys.bak
[2014.04.16 09:35:00 | 000,052,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\volsnap.sys.bak
[2014.04.16 09:35:00 | 000,038,528 | ---- | M] () -- C:\WINDOWS\System32\drivers\wpdusb.sys.bak
[2014.04.16 09:35:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\System32\drivers\wanarp.sys.bak
[2014.04.16 09:35:00 | 000,020,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\vga.sys.bak
[2014.04.16 09:34:58 | 000,618,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\CnxEtU.sys.bak
[2014.04.16 09:34:58 | 000,393,088 | ---- | M] () -- C:\WINDOWS\System32\drivers\senfilt.sys.bak
[2014.04.16 09:34:58 | 000,305,152 | ---- | M] () -- C:\WINDOWS\System32\drivers\nvnrm.sys.bak
[2014.04.16 09:34:58 | 000,222,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\nvsnpu.sys.bak
[2014.04.16 09:34:58 | 000,101,632 | ---- | M] () -- C:\WINDOWS\System32\drivers\nvtcp.sys.bak
[2014.04.16 09:34:58 | 000,034,176 | ---- | M] () -- C:\WINDOWS\System32\drivers\NVENETFD.sys.bak
[2014.04.16 09:34:58 | 000,013,056 | ---- | M] () -- C:\WINDOWS\System32\drivers\nvnetbus.sys.bak
[2014.04.16 09:34:58 | 000,012,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\mouhid.sys.bak
[2014.04.16 09:34:56 | 000,145,920 | ---- | M] () -- C:\WINDOWS\System32\drivers\Hdaudio.sys.bak
[2014.04.16 09:34:56 | 000,005,810 | ---- | M] () -- C:\WINDOWS\System32\drivers\ASACPI.sys.bak
[2014.04.16 09:34:54 | 000,456,320 | ---- | M] () -- C:\WINDOWS\System32\drivers\mrxsmb.sys.bak
[2014.04.16 09:34:54 | 000,101,720 | ---- | M] () -- C:\WINDOWS\System32\drivers\SBREDrv.sys.bak
[2014.04.16 09:34:54 | 000,040,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndproxy.sys.bak
[2014.04.16 09:34:54 | 000,025,088 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidparse.sys.bak
[2014.04.16 09:34:54 | 000,013,504 | ---- | M] () -- C:\WINDOWS\System32\drivers\BootDefragDriver.sys.bak
[2014.04.16 09:34:54 | 000,012,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\usb8023x.sys.bak
[2014.04.16 09:34:52 | 000,265,728 | ---- | M] () -- C:\WINDOWS\System32\drivers\http.sys.bak
[2014.04.16 09:34:52 | 000,226,880 | ---- | M] () -- C:\WINDOWS\System32\drivers\tcpip6.sys.bak
[2014.04.16 09:34:52 | 000,139,784 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpwd.sys.bak
[2014.04.16 09:34:52 | 000,105,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\mup.sys.bak
[2014.04.16 09:34:52 | 000,030,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbehci.sys.bak
[2014.04.16 09:34:52 | 000,010,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndistapi.sys.bak
[2014.04.16 09:34:52 | 000,005,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbd.sys.bak
[2014.04.16 09:34:50 | 000,361,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\tcpip.sys.bak
[2014.04.16 09:34:50 | 000,357,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\srv.sys.bak
[2014.04.16 09:34:50 | 000,203,136 | ---- | M] () -- C:\WINDOWS\System32\drivers\RMCast.sys.bak
[2014.04.16 09:34:50 | 000,144,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbport.sys.bak
[2014.04.16 09:34:50 | 000,138,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\afd.sys.bak
[2014.04.16 09:34:50 | 000,092,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\ksecdd.sys.bak
[2014.04.16 09:34:50 | 000,044,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\agpcpq.sys.bak
[2014.04.16 09:34:50 | 000,042,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\agp440.sys.bak
[2014.04.16 09:34:50 | 000,028,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\ssmdrv.sys.bak
[2014.04.16 09:34:50 | 000,003,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\audstub.sys.bak
[2014.04.16 09:34:48 | 000,063,663 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1rvxx.sys.bak
[2014.04.16 09:34:48 | 000,056,623 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1btxx.sys.bak
[2014.04.16 09:34:48 | 000,042,752 | ---- | M] () -- C:\WINDOWS\System32\drivers\alim1541.sys.bak
[2014.04.16 09:34:48 | 000,041,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\amdk7.sys.bak
[2014.04.16 09:34:48 | 000,036,463 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1tuxx.sys.bak
[2014.04.16 09:34:48 | 000,034,735 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1xsxx.sys.bak
[2014.04.16 09:34:48 | 000,030,671 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1raxx.sys.bak
[2014.04.16 09:34:48 | 000,029,455 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1xbxx.sys.bak
[2014.04.16 09:34:48 | 000,026,367 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1snxx.sys.bak
[2014.04.16 09:34:48 | 000,021,343 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1ttxx.sys.bak
[2014.04.16 09:34:48 | 000,012,047 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1pdxx.sys.bak
[2014.04.16 09:34:48 | 000,011,615 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1mdxx.sys.bak
[2014.04.16 09:34:46 | 000,701,440 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati2mtag.sys.bak
[2014.04.16 09:34:46 | 000,326,912 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati2mtaa.sys.bak
[2014.04.16 09:34:46 | 000,104,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinrvxx.sys.bak
[2014.04.16 09:34:46 | 000,073,216 | ---- | M] () -- C:\WINDOWS\System32\drivers\atintuxx.sys.bak
[2014.04.16 09:34:46 | 000,063,488 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinxsxx.sys.bak
[2014.04.16 09:34:46 | 000,057,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinbtxx.sys.bak
[2014.04.16 09:34:46 | 000,052,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinraxx.sys.bak
[2014.04.16 09:34:46 | 000,031,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinxbxx.sys.bak
[2014.04.16 09:34:46 | 000,028,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinsnxx.sys.bak
[2014.04.16 09:34:46 | 000,014,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinpdxx.sys.bak
[2014.04.16 09:34:46 | 000,013,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinttxx.sys.bak
[2014.04.16 09:34:46 | 000,013,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinmdxx.sys.bak
[2014.04.16 09:34:44 | 000,272,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthport.sys.bak
[2014.04.16 09:34:44 | 000,129,792 | ---- | M] () -- C:\WINDOWS\System32\drivers\fltMgr.sys.bak
[2014.04.16 09:34:44 | 000,101,120 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthpan.sys.bak
[2014.04.16 09:34:44 | 000,046,464 | ---- | M] () -- C:\WINDOWS\System32\drivers\gagp30kx.sys.bak
[2014.04.16 09:34:44 | 000,037,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthmodem.sys.bak
[2014.04.16 09:34:44 | 000,036,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthprint.sys.bak
[2014.04.16 09:34:44 | 000,025,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidbth.sys.bak
[2014.04.16 09:34:44 | 000,019,200 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidir.sys.bak
[2014.04.16 09:34:44 | 000,018,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthusb.sys.bak
[2014.04.16 09:34:44 | 000,017,024 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthenum.sys.bak
[2014.04.16 09:34:42 | 000,040,192 | ---- | M] () -- C:\WINDOWS\System32\drivers\intelppm.sys.bak
[2014.04.16 09:34:42 | 000,022,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\mbam.sys.bak
[2014.04.16 09:34:40 | 001,309,184 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtlstrm.sys.bak
[2014.04.16 09:34:40 | 000,452,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtxparhm.sys.bak
[2014.04.16 09:34:40 | 000,180,360 | ---- | M] () -- C:\WINDOWS\System32\drivers\ntmtlfax.sys.bak
[2014.04.16 09:34:40 | 000,126,686 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtlmnt5.sys.bak
[2014.04.16 09:34:40 | 000,059,136 | ---- | M] () -- C:\WINDOWS\System32\drivers\rfcomm.sys.bak
[2014.04.16 09:34:40 | 000,036,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\ip6fw.sys.bak
[2014.04.16 09:34:40 | 000,015,488 | ---- | M] () -- C:\WINDOWS\System32\drivers\mssmbios.sys.bak
[2014.04.16 09:34:40 | 000,013,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\recagent.sys.bak
[2014.04.16 09:34:40 | 000,012,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\mutohpen.sys.bak
[2014.04.16 09:34:38 | 000,404,990 | ---- | M] () -- C:\WINDOWS\System32\drivers\slntamr.sys.bak
[2014.04.16 09:34:38 | 000,166,912 | ---- | M] () -- C:\WINDOWS\System32\drivers\s3gnbm.sys.bak
[2014.04.16 09:34:38 | 000,129,535 | ---- | M] () -- C:\WINDOWS\System32\drivers\slnt7554.sys.bak
[2014.04.16 09:34:38 | 000,095,424 | ---- | M] () -- C:\WINDOWS\System32\drivers\slnthal.sys.bak
[2014.04.16 09:34:38 | 000,079,232 | ---- | M] () -- C:\WINDOWS\System32\drivers\sdbus.sys.bak
[2014.04.16 09:34:38 | 000,030,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\rndismpx.sys.bak
[2014.04.16 09:34:38 | 000,013,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\slwdmsup.sys.bak
[2014.04.16 09:34:38 | 000,011,904 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffdisk.sys.bak
[2014.04.16 09:34:38 | 000,011,008 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffp_sd.sys.bak
[2014.04.16 09:34:38 | 000,010,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffp_mmc.sys.bak
[2014.04.16 09:34:38 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\smbali.sys.bak
[2014.04.16 09:34:36 | 000,384,768 | ---- | M] () -- C:\WINDOWS\System32\drivers\update.sys.bak
[2014.04.16 09:34:36 | 000,123,008 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbvideo.sys.bak
[2014.04.16 09:34:36 | 000,044,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\uagp35.sys.bak
[2014.04.16 09:34:36 | 000,042,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\viaagp.sys.bak
[2014.04.16 09:34:36 | 000,014,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbscan.sys.bak
[2014.04.16 09:34:36 | 000,014,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\wacompen.sys.bak
[2014.04.16 09:34:36 | 000,012,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\usb8023.sys.bak
[2014.04.16 09:34:36 | 000,012,288 | ---- | M] () -- C:\WINDOWS\System32\drivers\tunmp.sys.bak
[2014.04.16 09:34:36 | 000,011,871 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv09nt.sys.bak
[2014.04.16 09:34:36 | 000,011,807 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv07nt.sys.bak
[2014.04.16 09:34:36 | 000,011,295 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv08nt.sys.bak
[2014.04.16 09:34:34 | 000,188,288 | ---- | M] () -- C:\WINDOWS\System32\drivers\acpi.sys.bak
[2014.04.16 09:34:34 | 000,142,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\aec.sys.bak
[2014.04.16 09:34:34 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sys.bak
[2014.04.16 09:34:34 | 000,071,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\bridge.sys.bak
[2014.04.16 09:34:34 | 000,060,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\arp1394.sys.bak
[2014.04.16 09:34:34 | 000,059,904 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmarpc.sys.bak
[2014.04.16 09:34:34 | 000,055,808 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmlane.sys.bak
[2014.04.16 09:34:34 | 000,041,216 | ---- | M] () -- C:\WINDOWS\System32\drivers\amdk6.sys.bak
[2014.04.16 09:34:34 | 000,025,471 | ---- | M] () -- C:\WINDOWS\System32\drivers\watv10nt.sys.bak
[2014.04.16 09:34:34 | 000,022,271 | ---- | M] () -- C:\WINDOWS\System32\drivers\watv06nt.sys.bak
[2014.04.16 09:34:34 | 000,014,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\asyncmac.sys.bak
[2014.04.16 09:34:34 | 000,011,935 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv11nt.sys.bak
[2014.04.16 09:34:32 | 000,063,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdfs.sys.bak
[2014.04.16 09:34:32 | 000,062,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdrom.sys.bak
[2014.04.16 09:34:32 | 000,058,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\vdmindvd.sys.bak
[2014.04.16 09:34:32 | 000,049,536 | ---- | M] () -- C:\WINDOWS\System32\drivers\classpnp.sys.bak
[2014.04.16 09:34:32 | 000,032,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbccgp.sys.bak
[2014.04.16 09:34:32 | 000,021,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\tsbvcap.sys.bak
[2014.04.16 09:34:32 | 000,012,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\fsvga.sys.bak
[2014.04.16 09:34:32 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\ws2ifsl.sys.bak
[2014.04.16 09:34:32 | 000,011,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\acpiec.sys.bak
[2014.04.16 09:34:32 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\mnmdd.sys.bak
[2014.04.16 09:34:32 | 000,003,456 | ---- | M] () -- C:\WINDOWS\System32\drivers\oprghdlr.sys.bak
[2014.04.16 09:34:32 | 000,003,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\pciide.sys.bak
[2014.04.16 09:34:30 | 000,063,232 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnknb.sys.bak
[2014.04.16 09:34:30 | 000,055,936 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkspx.sys.bak
[2014.04.16 09:34:30 | 000,052,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\DMusic.sys.bak
[2014.04.16 09:34:30 | 000,051,712 | ---- | M] () -- C:\WINDOWS\System32\drivers\tosdvd.sys.bak
[2014.04.16 09:34:30 | 000,040,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\crusoe.sys.bak
[2014.04.16 09:34:30 | 000,034,432 | ---- | M] () -- C:\WINDOWS\System32\drivers\rawwan.sys.bak
[2014.04.16 09:34:30 | 000,032,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkfwd.sys.bak
[2014.04.16 09:34:30 | 000,014,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\smclib.sys.bak
[2014.04.16 09:34:30 | 000,012,416 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkflt.sys.bak
[2014.04.16 09:34:30 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\riodrv.sys.bak
[2014.04.16 09:34:30 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\rio8drv.sys.bak
[2014.04.16 09:34:30 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\nikedrv.sys.bak
[2014.04.16 09:34:30 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\rootmdm.sys.bak
[2014.04.16 09:34:28 | 000,352,256 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmuni.sys.bak
[2014.04.16 09:34:28 | 000,262,528 | ---- | M] () -- C:\WINDOWS\System32\drivers\cinemst2.sys.bak
[2014.04.16 09:34:28 | 000,032,896 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipfltdrv.sys.bak
[2014.04.16 09:34:28 | 000,031,360 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmepvc.sys.bak
[2014.04.16 09:34:28 | 000,013,952 | ---- | M] () -- C:\WINDOWS\System32\drivers\cbidf2k.sys.bak
[2014.04.16 09:34:28 | 000,011,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\cpqdap01.sys.bak
[2014.04.16 09:34:28 | 000,010,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxapi.sys.bak
[2014.04.16 09:34:28 | 000,007,680 | ---- | M] () -- C:\WINDOWS\System32\drivers\mcd.sys.bak
[2014.04.16 09:34:28 | 000,006,784 | ---- | M] () -- C:\WINDOWS\System32\drivers\parvdm.sys.bak
[2014.04.16 09:34:28 | 000,003,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxgthk.sys.bak
[2014.04.16 09:34:26 | 000,800,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmboot.sys.bak
[2014.04.16 09:34:26 | 000,036,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\disk.sys.bak
[2014.04.16 09:34:26 | 000,018,688 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdaudio.sys.bak
[2014.04.16 09:34:26 | 000,016,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspti.sys.bak
[2014.04.16 09:34:26 | 000,014,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\diskdump.sys.bak
[2014.04.16 09:34:26 | 000,008,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\rasacd.sys.bak
[2014.04.16 09:34:26 | 000,007,936 | ---- | M] () -- C:\WINDOWS\System32\drivers\fs_rec.sys.bak
[2014.04.16 09:34:26 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpcdd.sys.bak
[2014.04.16 09:34:26 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\beep.sys.bak
[2014.04.16 09:34:26 | 000,002,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\null.sys.bak
[2014.04.16 09:34:24 | 000,153,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmio.sys.bak
[2014.04.16 09:34:24 | 000,125,184 | ---- | M] () -- C:\WINDOWS\System32\drivers\ftdisk.sys.bak
[2014.04.16 09:34:24 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmload.sys.bak
[2014.04.16 09:34:24 | 000,004,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\wmilib.sys.bak
[2014.04.15 16:20:16 | 000,060,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\drmk.sys.dump
[2014.04.15 16:20:16 | 000,002,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\drmkaud.sys.dump
[2014.04.15 16:20:14 | 000,152,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipnat.sys.dump
[2014.04.15 16:20:14 | 000,143,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\fastfat.sys.dump
[2014.04.15 16:20:14 | 000,075,264 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipsec.sys.dump
[2014.04.15 16:20:14 | 000,071,168 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxg.sys.dump
[2014.04.15 16:20:14 | 000,052,096 | ---- | M] () -- C:\WINDOWS\System32\drivers\i8042prt.sys.dump
[2014.04.15 16:20:14 | 000,044,544 | ---- | M] () -- C:\WINDOWS\System32\drivers\fips.sys.dump
[2014.04.15 16:20:14 | 000,042,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\imapi.sys.dump
[2014.04.15 16:20:14 | 000,036,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidclass.sys.dump
[2014.04.15 16:20:14 | 000,027,392 | ---- | M] () -- C:\WINDOWS\System32\drivers\fdc.sys.dump
[2014.04.15 16:20:14 | 000,020,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipinip.sys.dump
[2014.04.15 16:20:14 | 000,020,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\flpydisk.sys.dump
[2014.04.15 16:20:14 | 000,010,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidusb.sys.dump
[2014.04.15 16:20:12 | 000,180,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\mrxdav.sys.dump
[2014.04.15 16:20:12 | 000,172,416 | ---- | M] () -- C:\WINDOWS\System32\drivers\kmixer.sys.dump
[2014.04.15 16:20:12 | 000,141,056 | ---- | M] () -- C:\WINDOWS\System32\drivers\ks.sys.dump
[2014.04.15 16:20:12 | 000,063,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\mf.sys.dump
[2014.04.15 16:20:12 | 000,042,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\mountmgr.sys.dump
[2014.04.15 16:20:12 | 000,037,248 | ---- | M] () -- C:\WINDOWS\System32\drivers\isapnp.sys.dump
[2014.04.15 16:20:12 | 000,035,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\msgpc.sys.dump
[2014.04.15 16:20:12 | 000,030,080 | ---- | M] () -- C:\WINDOWS\System32\drivers\modem.sys.dump
[2014.04.15 16:20:12 | 000,024,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\kbdclass.sys.dump
[2014.04.15 16:20:12 | 000,023,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\mouclass.sys.dump
[2014.04.15 16:20:12 | 000,019,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\msfs.sys.dump
[2014.04.15 16:20:12 | 000,011,264 | ---- | M] () -- C:\WINDOWS\System32\drivers\irenum.sys.dump
[2014.04.15 16:20:12 | 000,007,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\mskssrv.sys.dump
[2014.04.15 16:20:10 | 000,574,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\ntfs.sys.dump
[2014.04.15 16:20:10 | 000,182,656 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndis.sys.dump
[2014.04.15 16:20:10 | 000,162,816 | ---- | M] () -- C:\WINDOWS\System32\drivers\netbt.sys.dump
[2014.04.15 16:20:10 | 000,091,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndiswan.sys.dump
[2014.04.15 16:20:10 | 000,088,320 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkipx.sys.dump
[2014.04.15 16:20:10 | 000,061,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\nic1394.sys.dump
[2014.04.15 16:20:10 | 000,046,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\p3.sys.dump
[2014.04.15 16:20:10 | 000,040,320 | ---- | M] () -- C:\WINDOWS\System32\drivers\nmnt.sys.dump
[2014.04.15 16:20:10 | 000,034,688 | ---- | M] () -- C:\WINDOWS\System32\drivers\netbios.sys.dump
[2014.04.15 16:20:10 | 000,030,848 | ---- | M] () -- C:\WINDOWS\System32\drivers\npfs.sys.dump
[2014.04.15 16:20:10 | 000,014,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndisuio.sys.dump
[2014.04.15 16:20:10 | 000,005,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\mspclock.sys.dump
[2014.04.15 16:20:10 | 000,004,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\mspqm.sys.dump
[2014.04.15 16:20:08 | 000,175,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdbss.sys.dump
[2014.04.15 16:20:08 | 000,146,048 | ---- | M] () -- C:\WINDOWS\System32\drivers\portcls.sys.dump
[2014.04.15 16:20:08 | 000,120,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\pcmcia.sys.dump
[2014.04.15 16:20:08 | 000,080,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\parport.sys.dump
[2014.04.15 16:20:08 | 000,069,120 | ---- | M] () -- C:\WINDOWS\System32\drivers\psched.sys.dump
[2014.04.15 16:20:08 | 000,068,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\pci.sys.dump
[2014.04.15 16:20:08 | 000,051,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\rasl2tp.sys.dump
[2014.04.15 16:20:08 | 000,048,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspptp.sys.dump
[2014.04.15 16:20:08 | 000,041,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspppoe.sys.dump
[2014.04.15 16:20:08 | 000,039,680 | ---- | M] () -- C:\WINDOWS\System32\drivers\processr.sys.dump
[2014.04.15 16:20:08 | 000,024,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\pciidex.sys.dump
[2014.04.15 16:20:08 | 000,019,712 | ---- | M] () -- C:\WINDOWS\System32\drivers\partmgr.sys.dump
[2014.04.15 16:20:06 | 000,196,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpdr.sys.dump
[2014.04.15 16:20:06 | 000,096,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\scsiport.sys.dump
[2014.04.15 16:20:06 | 000,073,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\sr.sys.dump
[2014.04.15 16:20:06 | 000,064,256 | ---- | M] () -- C:\WINDOWS\System32\drivers\serial.sys.dump
[2014.04.15 16:20:06 | 000,058,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\redbook.sys.dump
[2014.04.15 16:20:06 | 000,049,408 | ---- | M] () -- C:\WINDOWS\System32\drivers\stream.sys.dump
[2014.04.15 16:20:06 | 000,030,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\rndismp.sys.dump
[2014.04.15 16:20:06 | 000,025,344 | ---- | M] () -- C:\WINDOWS\System32\drivers\sonydcam.sys.dump
[2014.04.15 16:20:06 | 000,015,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\serenum.sys.dump
[2014.04.15 16:20:06 | 000,011,392 | ---- | M] () -- C:\WINDOWS\System32\drivers\sfloppy.sys.dump
[2014.04.15 16:20:06 | 000,006,272 | ---- | M] () -- C:\WINDOWS\System32\drivers\splitter.sys.dump
[2014.04.15 16:20:06 | 000,004,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\swenum.sys.dump
[2014.04.15 16:20:04 | 000,066,048 | ---- | M] () -- C:\WINDOWS\System32\drivers\udfs.sys.dump
[2014.04.15 16:20:04 | 000,060,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\sysaudio.sys.dump
[2014.04.15 16:20:04 | 000,059,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbhub.sys.dump
[2014.04.15 16:20:04 | 000,056,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\swmidi.sys.dump
[2014.04.15 16:20:04 | 000,040,840 | ---- | M] () -- C:\WINDOWS\System32\drivers\termdd.sys.dump
[2014.04.15 16:20:04 | 000,025,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbprint.sys.dump
[2014.04.15 16:20:04 | 000,025,728 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbcamd2.sys.dump
[2014.04.15 16:20:04 | 000,025,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbcamd.sys.dump
[2014.04.15 16:20:04 | 000,021,896 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdtcp.sys.dump
[2014.04.15 16:20:04 | 000,019,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdi.sys.dump
[2014.04.15 16:20:04 | 000,017,152 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbohci.sys.dump
[2014.04.15 16:20:04 | 000,015,872 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbintel.sys.dump
[2014.04.15 16:20:04 | 000,014,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\tape.sys.dump
[2014.04.15 16:20:04 | 000,012,040 | ---- | M] () -- C:\WINDOWS\System32\drivers\tdpipe.sys.dump
[2014.04.15 16:20:02 | 000,131,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\CnxEtP.sys.dump
[2014.04.15 16:20:02 | 000,083,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\wdmaud.sys.dump
[2014.04.15 16:20:02 | 000,082,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\WudfRd.sys.dump
[2014.04.15 16:20:02 | 000,081,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\videoprt.sys.dump
[2014.04.15 16:20:02 | 000,077,568 | ---- | M] () -- C:\WINDOWS\System32\drivers\WudfPf.sys.dump
[2014.04.15 16:20:02 | 000,052,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\CnxTgNW.sys.dump
[2014.04.15 16:20:02 | 000,052,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\volsnap.sys.dump
[2014.04.15 16:20:02 | 000,038,528 | ---- | M] () -- C:\WINDOWS\System32\drivers\wpdusb.sys.dump
[2014.04.15 16:20:02 | 000,034,560 | ---- | M] () -- C:\WINDOWS\System32\drivers\wanarp.sys.dump
[2014.04.15 16:20:02 | 000,026,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbstor.sys.dump
[2014.04.15 16:20:02 | 000,020,992 | ---- | M] () -- C:\WINDOWS\System32\drivers\vga.sys.dump
[2014.04.15 16:20:00 | 000,618,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\CnxEtU.sys.dump
[2014.04.15 16:20:00 | 000,393,088 | ---- | M] () -- C:\WINDOWS\System32\drivers\senfilt.sys.dump
[2014.04.15 16:20:00 | 000,305,152 | ---- | M] () -- C:\WINDOWS\System32\drivers\nvnrm.sys.dump
[2014.04.15 16:20:00 | 000,222,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\nvsnpu.sys.dump
[2014.04.15 16:20:00 | 000,145,920 | ---- | M] () -- C:\WINDOWS\System32\drivers\Hdaudio.sys.dump
[2014.04.15 16:20:00 | 000,101,632 | ---- | M] () -- C:\WINDOWS\System32\drivers\nvtcp.sys.dump
[2014.04.15 16:20:00 | 000,034,176 | ---- | M] () -- C:\WINDOWS\System32\drivers\NVENETFD.sys.dump
[2014.04.15 16:20:00 | 000,013,056 | ---- | M] () -- C:\WINDOWS\System32\drivers\nvnetbus.sys.dump
[2014.04.15 16:20:00 | 000,012,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\mouhid.sys.dump
[2014.04.15 16:19:58 | 000,012,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\usb8023x.sys.dump
[2014.04.15 16:19:58 | 000,005,810 | ---- | M] () -- C:\WINDOWS\System32\drivers\ASACPI.sys.dump
[2014.04.15 16:19:56 | 000,456,320 | ---- | M] () -- C:\WINDOWS\System32\drivers\mrxsmb.sys.dump
[2014.04.15 16:19:56 | 000,265,728 | ---- | M] () -- C:\WINDOWS\System32\drivers\http.sys.dump
[2014.04.15 16:19:56 | 000,226,880 | ---- | M] () -- C:\WINDOWS\System32\drivers\tcpip6.sys.dump
[2014.04.15 16:19:56 | 000,105,472 | ---- | M] () -- C:\WINDOWS\System32\drivers\mup.sys.dump
[2014.04.15 16:19:56 | 000,101,720 | ---- | M] () -- C:\WINDOWS\System32\drivers\SBREDrv.sys.dump
[2014.04.15 16:19:56 | 000,040,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndproxy.sys.dump
[2014.04.15 16:19:56 | 000,030,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbehci.sys.dump
[2014.04.15 16:19:56 | 000,025,088 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidparse.sys.dump
[2014.04.15 16:19:56 | 000,013,504 | ---- | M] () -- C:\WINDOWS\System32\drivers\BootDefragDriver.sys.dump
[2014.04.15 16:19:56 | 000,010,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\ndistapi.sys.dump
[2014.04.15 16:19:56 | 000,005,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbd.sys.dump
[2014.04.15 16:19:54 | 000,361,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\tcpip.sys.dump
[2014.04.15 16:19:54 | 000,357,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\srv.sys.dump
[2014.04.15 16:19:54 | 000,203,136 | ---- | M] () -- C:\WINDOWS\System32\drivers\RMCast.sys.dump
[2014.04.15 16:19:54 | 000,144,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbport.sys.dump
[2014.04.15 16:19:54 | 000,139,784 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpwd.sys.dump
[2014.04.15 16:19:54 | 000,138,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\afd.sys.dump
[2014.04.15 16:19:54 | 000,092,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\ksecdd.sys.dump
[2014.04.15 16:19:54 | 000,044,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\agpcpq.sys.dump
[2014.04.15 16:19:54 | 000,042,752 | ---- | M] () -- C:\WINDOWS\System32\drivers\alim1541.sys.dump
[2014.04.15 16:19:54 | 000,042,368 | ---- | M] () -- C:\WINDOWS\System32\drivers\agp440.sys.dump
[2014.04.15 16:19:54 | 000,028,520 | ---- | M] () -- C:\WINDOWS\System32\drivers\ssmdrv.sys.dump
[2014.04.15 16:19:54 | 000,003,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\audstub.sys.dump
[2014.04.15 16:19:52 | 000,326,912 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati2mtaa.sys.dump
[2014.04.15 16:19:52 | 000,063,663 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1rvxx.sys.dump
[2014.04.15 16:19:52 | 000,056,623 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1btxx.sys.dump
[2014.04.15 16:19:52 | 000,041,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\amdk7.sys.dump
[2014.04.15 16:19:52 | 000,036,463 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1tuxx.sys.dump
[2014.04.15 16:19:52 | 000,034,735 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1xsxx.sys.dump
[2014.04.15 16:19:52 | 000,030,671 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1raxx.sys.dump
[2014.04.15 16:19:52 | 000,029,455 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1xbxx.sys.dump
[2014.04.15 16:19:52 | 000,026,367 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1snxx.sys.dump
[2014.04.15 16:19:52 | 000,021,343 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1ttxx.sys.dump
[2014.04.15 16:19:52 | 000,012,047 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1pdxx.sys.dump
[2014.04.15 16:19:52 | 000,011,615 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati1mdxx.sys.dump
[2014.04.15 16:19:50 | 000,701,440 | ---- | M] () -- C:\WINDOWS\System32\drivers\ati2mtag.sys.dump
[2014.04.15 16:19:50 | 000,272,128 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthport.sys.dump
[2014.04.15 16:19:50 | 000,104,960 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinrvxx.sys.dump
[2014.04.15 16:19:50 | 000,101,120 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthpan.sys.dump
[2014.04.15 16:19:50 | 000,073,216 | ---- | M] () -- C:\WINDOWS\System32\drivers\atintuxx.sys.dump
[2014.04.15 16:19:50 | 000,063,488 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinxsxx.sys.dump
[2014.04.15 16:19:50 | 000,057,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinbtxx.sys.dump
[2014.04.15 16:19:50 | 000,052,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinraxx.sys.dump
[2014.04.15 16:19:50 | 000,037,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthmodem.sys.dump
[2014.04.15 16:19:50 | 000,031,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinxbxx.sys.dump
[2014.04.15 16:19:50 | 000,028,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinsnxx.sys.dump
[2014.04.15 16:19:50 | 000,017,024 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthenum.sys.dump
[2014.04.15 16:19:50 | 000,014,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinpdxx.sys.dump
[2014.04.15 16:19:50 | 000,013,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinttxx.sys.dump
[2014.04.15 16:19:50 | 000,013,824 | ---- | M] () -- C:\WINDOWS\System32\drivers\atinmdxx.sys.dump
[2014.04.15 16:19:48 | 000,129,792 | ---- | M] () -- C:\WINDOWS\System32\drivers\fltMgr.sys.dump
[2014.04.15 16:19:48 | 000,046,464 | ---- | M] () -- C:\WINDOWS\System32\drivers\gagp30kx.sys.dump
[2014.04.15 16:19:48 | 000,036,480 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthprint.sys.dump
[2014.04.15 16:19:48 | 000,025,600 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidbth.sys.dump
[2014.04.15 16:19:48 | 000,019,200 | ---- | M] () -- C:\WINDOWS\System32\drivers\hidir.sys.dump
[2014.04.15 16:19:48 | 000,018,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\bthusb.sys.dump
[2014.04.15 16:19:46 | 001,309,184 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtlstrm.sys.dump
[2014.04.15 16:19:46 | 000,452,736 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtxparhm.sys.dump
[2014.04.15 16:19:46 | 000,180,360 | ---- | M] () -- C:\WINDOWS\System32\drivers\ntmtlfax.sys.dump
[2014.04.15 16:19:46 | 000,126,686 | ---- | M] () -- C:\WINDOWS\System32\drivers\mtlmnt5.sys.dump
[2014.04.15 16:19:46 | 000,040,192 | ---- | M] () -- C:\WINDOWS\System32\drivers\intelppm.sys.dump
[2014.04.15 16:19:46 | 000,036,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\ip6fw.sys.dump
[2014.04.15 16:19:46 | 000,022,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\mbam.sys.dump
[2014.04.15 16:19:46 | 000,015,488 | ---- | M] () -- C:\WINDOWS\System32\drivers\mssmbios.sys.dump
[2014.04.15 16:19:46 | 000,012,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\mutohpen.sys.dump
[2014.04.15 16:19:44 | 000,404,990 | ---- | M] () -- C:\WINDOWS\System32\drivers\slntamr.sys.dump
[2014.04.15 16:19:44 | 000,166,912 | ---- | M] () -- C:\WINDOWS\System32\drivers\s3gnbm.sys.dump
[2014.04.15 16:19:44 | 000,129,535 | ---- | M] () -- C:\WINDOWS\System32\drivers\slnt7554.sys.dump
[2014.04.15 16:19:44 | 000,095,424 | ---- | M] () -- C:\WINDOWS\System32\drivers\slnthal.sys.dump
[2014.04.15 16:19:44 | 000,079,232 | ---- | M] () -- C:\WINDOWS\System32\drivers\sdbus.sys.dump
[2014.04.15 16:19:44 | 000,059,136 | ---- | M] () -- C:\WINDOWS\System32\drivers\rfcomm.sys.dump
[2014.04.15 16:19:44 | 000,030,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\rndismpx.sys.dump
[2014.04.15 16:19:44 | 000,013,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\recagent.sys.dump
[2014.04.15 16:19:44 | 000,013,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\slwdmsup.sys.dump
[2014.04.15 16:19:44 | 000,011,904 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffdisk.sys.dump
[2014.04.15 16:19:44 | 000,011,008 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffp_sd.sys.dump
[2014.04.15 16:19:44 | 000,010,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\sffp_mmc.sys.dump
[2014.04.15 16:19:42 | 000,384,768 | ---- | M] () -- C:\WINDOWS\System32\drivers\update.sys.dump
[2014.04.15 16:19:42 | 000,123,008 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbvideo.sys.dump
[2014.04.15 16:19:42 | 000,044,672 | ---- | M] () -- C:\WINDOWS\System32\drivers\uagp35.sys.dump
[2014.04.15 16:19:42 | 000,042,240 | ---- | M] () -- C:\WINDOWS\System32\drivers\viaagp.sys.dump
[2014.04.15 16:19:42 | 000,022,271 | ---- | M] () -- C:\WINDOWS\System32\drivers\watv06nt.sys.dump
[2014.04.15 16:19:42 | 000,014,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbscan.sys.dump
[2014.04.15 16:19:42 | 000,014,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\wacompen.sys.dump
[2014.04.15 16:19:42 | 000,012,928 | ---- | M] () -- C:\WINDOWS\System32\drivers\usb8023.sys.dump
[2014.04.15 16:19:42 | 000,012,288 | ---- | M] () -- C:\WINDOWS\System32\drivers\tunmp.sys.dump
[2014.04.15 16:19:42 | 000,011,935 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv11nt.sys.dump
[2014.04.15 16:19:42 | 000,011,871 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv09nt.sys.dump
[2014.04.15 16:19:42 | 000,011,807 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv07nt.sys.dump
[2014.04.15 16:19:42 | 000,011,295 | ---- | M] () -- C:\WINDOWS\System32\drivers\wadv08nt.sys.dump
[2014.04.15 16:19:42 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\smbali.sys.dump
[2014.04.15 16:19:40 | 000,188,288 | ---- | M] () -- C:\WINDOWS\System32\drivers\acpi.sys.dump
[2014.04.15 16:19:40 | 000,142,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\aec.sys.dump
[2014.04.15 16:19:40 | 000,096,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\atapi.sys.dump
[2014.04.15 16:19:40 | 000,071,552 | ---- | M] () -- C:\WINDOWS\System32\drivers\bridge.sys.dump
[2014.04.15 16:19:40 | 000,060,800 | ---- | M] () -- C:\WINDOWS\System32\drivers\arp1394.sys.dump
[2014.04.15 16:19:40 | 000,059,904 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmarpc.sys.dump
[2014.04.15 16:19:40 | 000,055,808 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmlane.sys.dump
[2014.04.15 16:19:40 | 000,041,216 | ---- | M] () -- C:\WINDOWS\System32\drivers\amdk6.sys.dump
[2014.04.15 16:19:40 | 000,032,384 | ---- | M] () -- C:\WINDOWS\System32\drivers\usbccgp.sys.dump
[2014.04.15 16:19:40 | 000,025,471 | ---- | M] () -- C:\WINDOWS\System32\drivers\watv10nt.sys.dump
[2014.04.15 16:19:40 | 000,014,336 | ---- | M] () -- C:\WINDOWS\System32\drivers\asyncmac.sys.dump
[2014.04.15 16:19:40 | 000,003,456 | ---- | M] () -- C:\WINDOWS\System32\drivers\oprghdlr.sys.dump
[2014.04.15 16:19:40 | 000,003,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\pciide.sys.dump
[2014.04.15 16:19:38 | 000,063,744 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdfs.sys.dump
[2014.04.15 16:19:38 | 000,062,976 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdrom.sys.dump
[2014.04.15 16:19:38 | 000,058,112 | ---- | M] () -- C:\WINDOWS\System32\drivers\vdmindvd.sys.dump
[2014.04.15 16:19:38 | 000,051,712 | ---- | M] () -- C:\WINDOWS\System32\drivers\tosdvd.sys.dump
[2014.04.15 16:19:38 | 000,049,536 | ---- | M] () -- C:\WINDOWS\System32\drivers\classpnp.sys.dump
[2014.04.15 16:19:38 | 000,040,576 | ---- | M] () -- C:\WINDOWS\System32\drivers\crusoe.sys.dump
[2014.04.15 16:19:38 | 000,021,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\tsbvcap.sys.dump
[2014.04.15 16:19:38 | 000,014,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\smclib.sys.dump
[2014.04.15 16:19:38 | 000,012,160 | ---- | M] () -- C:\WINDOWS\System32\drivers\fsvga.sys.dump
[2014.04.15 16:19:38 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\ws2ifsl.sys.dump
[2014.04.15 16:19:38 | 000,011,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\acpiec.sys.dump
[2014.04.15 16:19:38 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\rootmdm.sys.dump
[2014.04.15 16:19:38 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\mnmdd.sys.dump
[2014.04.15 16:19:36 | 000,063,232 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnknb.sys.dump
[2014.04.15 16:19:36 | 000,055,936 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkspx.sys.dump
[2014.04.15 16:19:36 | 000,052,864 | ---- | M] () -- C:\WINDOWS\System32\drivers\DMusic.sys.dump
[2014.04.15 16:19:36 | 000,034,432 | ---- | M] () -- C:\WINDOWS\System32\drivers\rawwan.sys.dump
[2014.04.15 16:19:36 | 000,032,896 | ---- | M] () -- C:\WINDOWS\System32\drivers\ipfltdrv.sys.dump
[2014.04.15 16:19:36 | 000,032,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkfwd.sys.dump
[2014.04.15 16:19:36 | 000,012,416 | ---- | M] () -- C:\WINDOWS\System32\drivers\nwlnkflt.sys.dump
[2014.04.15 16:19:36 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\riodrv.sys.dump
[2014.04.15 16:19:36 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\rio8drv.sys.dump
[2014.04.15 16:19:36 | 000,012,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\nikedrv.sys.dump
[2014.04.15 16:19:36 | 000,011,776 | ---- | M] () -- C:\WINDOWS\System32\drivers\cpqdap01.sys.dump
[2014.04.15 16:19:36 | 000,010,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxapi.sys.dump
[2014.04.15 16:19:36 | 000,007,680 | ---- | M] () -- C:\WINDOWS\System32\drivers\mcd.sys.dump
[2014.04.15 16:19:34 | 000,352,256 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmuni.sys.dump
[2014.04.15 16:19:34 | 000,262,528 | ---- | M] () -- C:\WINDOWS\System32\drivers\cinemst2.sys.dump
[2014.04.15 16:19:34 | 000,036,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\disk.sys.dump
[2014.04.15 16:19:34 | 000,031,360 | ---- | M] () -- C:\WINDOWS\System32\drivers\atmepvc.sys.dump
[2014.04.15 16:19:34 | 000,018,688 | ---- | M] () -- C:\WINDOWS\System32\drivers\cdaudio.sys.dump
[2014.04.15 16:19:34 | 000,014,208 | ---- | M] () -- C:\WINDOWS\System32\drivers\diskdump.sys.dump
[2014.04.15 16:19:34 | 000,013,952 | ---- | M] () -- C:\WINDOWS\System32\drivers\cbidf2k.sys.dump
[2014.04.15 16:19:34 | 000,008,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\rasacd.sys.dump
[2014.04.15 16:19:34 | 000,007,936 | ---- | M] () -- C:\WINDOWS\System32\drivers\fs_rec.sys.dump
[2014.04.15 16:19:34 | 000,006,784 | ---- | M] () -- C:\WINDOWS\System32\drivers\parvdm.sys.dump
[2014.04.15 16:19:34 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\rdpcdd.sys.dump
[2014.04.15 16:19:34 | 000,004,224 | ---- | M] () -- C:\WINDOWS\System32\drivers\beep.sys.dump
[2014.04.15 16:19:34 | 000,003,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\dxgthk.sys.dump
[2014.04.15 16:19:34 | 000,002,944 | ---- | M] () -- C:\WINDOWS\System32\drivers\null.sys.dump
[2014.04.15 16:19:32 | 000,800,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmboot.sys.dump
[2014.04.15 16:19:32 | 000,153,856 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmio.sys.dump
[2014.04.15 16:19:32 | 000,125,184 | ---- | M] () -- C:\WINDOWS\System32\drivers\ftdisk.sys.dump
[2014.04.15 16:19:32 | 000,016,512 | ---- | M] () -- C:\WINDOWS\System32\drivers\raspti.sys.dump
[2014.04.15 16:19:32 | 000,005,888 | ---- | M] () -- C:\WINDOWS\System32\drivers\dmload.sys.dump
[2014.04.15 16:19:32 | 000,004,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\wmilib.sys.dump
[2014.04.15 16:16:34 | 003,972,608 | ---- | M] () -- C:\Documents and Settings\Jarmila\Plocha\RogueKiller.exe
[2014.04.15 11:55:56 | 000,002,497 | ---- | M] () -- C:\Documents and Settings\Jarmila\Plocha\Microsoft Office Word 2003.lnk
[2014.04.13 17:59:22 | 000,781,383 | ---- | M] () -- C:\Program Files\RSIT.exe
[2014.04.12 17:22:32 | 000,000,458 | ---- | M] () -- C:\Documents and Settings\Jarmila\Plocha\Zástupce - RSIT.lnk
[2014.04.10 09:24:18 | 000,270,984 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT

Zamčeno