ActiveX=C:\Windows\Downloaded Program Files
AdministrativeTools=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
ALLUSERSPROFILE=C:\ProgramData
APPDATA=C:\Users\Matouskovi\AppData\Roaming
Cache=C:\Users\Matouskovi\AppData\Local\Microsoft\Windows\Temporary Internet Files
CacheSum=60D07E849424C037056076F40C4C03A9
CDBurning=C:\Users\Matouskovi\AppData\Local\Microsoft\Windows\Burn\Burn
cfExt=3XE
ChkSum=E9CF15539B89C66E108838303EC10090
Command switches used=Pouit ovldac pepnae
CommonAdministrativeTools=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
CommonAppData=C:\ProgramData
CommonDesktop=C:\Users\Public\Desktop
CommonDocuments=C:\Users\Public\Documents
CommonFavorites=C:\Users\Matouskovi\Favorites
CommonFonts=C:\Windows\Fonts
CommonMusic=C:\Users\Public\Music
CommonPersonal=C:\Users\Public\Documents
CommonPictures=C:\Users\Public\Pictures
CommonProgFiles=C:\Program Files (x86)\Common Files
CommonProgramFiles=C:\Program Files\Common Files
CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files
CommonPrograms=C:\ProgramData\Microsoft\Windows\Start Menu\Programs
CommonProgramW6432=C:\Program Files\Common Files
CommonStartMenu=C:\ProgramData\Microsoft\Windows\Start Menu
CommonStartup=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
CommonTemp=C:\Users\MATOUS~1\AppData\Local\Temp
CommonTemplates=C:\ProgramData\Microsoft\Windows\Templates
CommonVideo=C:\Users\Public\Videos
CommonVideos=C:\Users\Public\Videos
Completion time=Celkov as
COMPUTERNAME=MATOUSKOVI-PC
ComSpec=C:\ComboFix\CF3044.3XE
Connecting to=Pipojuji se k
Connecting to ComboFix servers=Pipojuji se k serverm ComboFixu
ControlSet=ControlSet001
Cookies=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Cookies
Cryptography Services Error=Chyba ifrovac sluby
CS000=HKEY_LOCAL_MACHINE\system\ControlSet001\Services
Desktop=C:\Users\Matouskovi\Desktop
Disclaimer=Nsledujc internetov strnky nepat ke ComboFixu:~n~n    http://www.combofixdownload.biz~n    http://www.combofix.org~n    http://www.combofixdownload.com~n~nV ppad, e jste se od nich rozhodli cokoli zakoupit, doporuujeme~nVm objednvku zruit.~n~n       -----------------------  -----------------------~n~nPrvodce pro sprvn pouit ComboFixu je k dispozici zde:~n~nhttp://www.bleepingcomputer.com/combofix/how-to-use-combofix~n~nTento nstroj slou k soukrommu uit. Nikdy by neml bt pouit v~nprosted bez dozoru zkuen osoby. Pokud bude nalezena infekce,~nComboFix automaticky restartuje pota pro dokonen istcho~nprocesu. Prosm ujistte se, e mte ukoneny veker aplikace pedtm,~nne budete pokraovat.~n~nTato aplikace je poskytnuta 'tak jak je', bez jakkoli zruky jakhokoli~ndruhu. Veker uplatnn zruky budou vslovn zamtnuty. Pokud~nnesouhlaste s ve uvedenmi podmnkami, kliknte na 'Ne' pro~nskonen." "ZEKNUT SE PRVA ZRUKY NA FUNKNOST SOFTWARE (14-06-10.01)
DLLs Loaded Under Running Processes=Knihovny navzan na bc procesy
Drivers/Services=Ovladae/Sluby
DTT=2014-06-10_20.09.08
EndTime=2014-06-10  20:09:08
ESET_OPTIONS=                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               
EXEDIR=C:\Users\Matouskovi\Desktop
EXEFILE=ComboFix.exe
EXEPATH=C:\Users\Matouskovi\Desktop\ComboFix.exe
Fail2Delete=nemohl bt smazn
Failed to find a valid replacement=Failed to find a valid replacement
Failed to restore.=Failed to restore. Attempting to replace on reboot
Favorites=C:\Users\Matouskovi\Favorites
File Associations=Asociace soubor
File Replicators=Souborov repliktoi
Files Infected - Patched=Infikovan - patchnut soubory
FIREFOX POLICIES=NASTAVEN FIREFOXU
Fonts=C:\Windows\Fonts
FP_NO_HOST_CHECK=NO
hidden files=skryt soubory
History=C:\Users\Matouskovi\AppData\Local\Microsoft\Windows\History
HOME=C:\ComboFix\
HOMEDRIVE=C:
HOMEPATH=\Users\Matouskovi
is infected=je infikovn
is missing=chyb
KMD=CF3044.3XE
LANG_CF=CS
Line1=Prosm ekejte.
Line10=ComboFix detekoval ptomnost aktivity rootkitu a vyaduje restart potae.~nProsm zapite si na papr cestu ke kadmu z ne uvedench soubor. Jejich seznam me bt pozdji poteba.~n~n%~G" "Rootkit !!
Line100=Recommend that you manually delete the folder.
Line101=Some 3rd party browsers were infected and had to be removed. Do not be alarmed.
Line102=C:\Windows\system32\sfc.dll is missing~n~nCopy one from another machine and reboot once" "Terminal Error - Missing file
Line103=You have asked ComboFix to remove AVG using brute force methods.~n~nClick 'YES' to continue .. or .. click 'NO' to exit now" "Do you want to remove AVG?
Line104=ComboFix cannot run when AVG is installed.~nThis is due to AVG's targeting of ComboFix's files/processes.~nIt would be dangerous to continue.~n~nPlease uninstall AVG or use another tool" "Warning
Line105=ComboFix cannot run when CA Anti-Virus is installed.~nIt would be dangerous to continue.~n~nPlease uninstall CA Anti-Virus or use another tool" "Warning
Line106=A readily available replacement was not found.~nComboFix needs to do an intensive search.~n~nThis may take some time." "Disk Search
Line107=Rootkit is detected~n~nBe patient as this may take some moments" "ROOTKIT
Line108=You are infected with Rootkit.ZeroAccess! It has inserted itself into the~ntcp/ip stack. This is a particularly difficult infection.~n~nIf for any reason that you're unable to connect to the internet after~nrunning ComboFix, reboot once and see if that fixes it.~n~nIf it's not fixed, run ComboFix one more time.
Line10A=ComboFix detekoval ptomnost aktivity rootkitu a vyaduje restart potae." "Rootkit !!
Line10B=Rootkit activity persists. Have to attempt other methods~nComboFix needs to reboot the machine again~nKindly note down on paper, the data below. We may need it later
Line10C=ComboFix has detected the presence of rootkit activity and needs to reboot the machine~nKindly note down on paper, the data below. We may need it later
Line11=Vyhledvm nakaen soubory . . .
Line12=Obvykle tento proces nezabere vce ne 10 minut.
Line13=Nicmn, as skenovn se me v ppad tاce nakaench pota zdvojnsobit.
Line14=%G ...... ovlada spn znekodnn.
Line15=Rootkit ovlada %G je stle aktivn. Je vyadovn rootkit sken. 
Line16=ComboFix zmnil Vae nastaven hodin.
Line17=Nemte jej zptky. Bude obnoveno pozdji.
Line18=ComboFix zaznamenal kritickou chybu!! Prosm uploadnte tento soubor - C:\ComboFix_error.dat 
Line19=na toto umstn: http://www.bleepingcomputer.com/submit-malware.php?channel=4 
Line2=ComboFix se pipravuje ke sputn.
Line20=Pipravuji Log Report.
Line21=Nespoutjte dn aplikace dokud ComboFix neskon svou innost.
Line22=V tomto asovm seku nebyly vytvoeny dn nov soubory.
Line23=*Poznmka* przdn zznamy a legitimn vchoz daje nejsou zobrazeny.
Line24=Obsah adrese 'Naplnovan lohy'
Line25=Tm hotovo . . Toto okno se za malou chvli zave.
Line26=Prosm vykejte pr sekund na zobrazen logu.
Line27=Log z ComboFixu bude umstn v C:\COMBOFIX.TXT.
Line28=Restartuji Windows . . . Prosm ekejte.
Line29=Prosm dovolte ComboFixu restartovat pota.
Line3=Potebujete administrtorsk prva pro sputn tto aplikace." "Nemte prva administrtora !!
Line30=Perueno ... Prosm spuste ComboFix znovu.
Line31=Chybn datum: ~%CurrDate.yyyy-MM-dd%~n~nZkontrolujte sv nastaven." "CHYBN DATUM
Line32=C:\Windows\SysWow64\HAL.DLL chyb !!~n~nDleit: NERESTARTUJTE/NEVYPNEJTE pota.~n~nPodejte o pomoc na foru. Neklikejte na 'OK', dokud neobdrte dal pokyny." "VN UPOZORNN !!
Line33=ComboFix potebuje podrobit vzorky malware dal analze.~n~nProsm ujistte se, e jste pipojeni k Internetu, ne kliknete na 'OK'." "Podroben vzork dal analze
Line34=Zalete vzorky malware Bleeping Computeru k dal analze.
Line35=Zkoprujte/Vlote cestu k souboru uvedenou ne do okna nahoe a kliknte na Send.
Line36=Nakaen kopie %~1 byla nalezena a vylena.
Line36A=Obnovena kopie z - %~2
Line37=%~1 . . . je infikovn!!
Line37A=%~1 . . . was deleted!! You should re-install the program it pertains to
Line38=(((((((((((((((((((((((((   Soubory vytvoen od %thirty% do %dateX%  )))))))))))))))))))))))))))))))
Line39=((((((((((((((((((((((((((((((((((((((((   Find3M vpis   ))))))))))))))))))))))))))))))))))))))))))))))))))))
Line4=C:\Windows\regedit.exe chyb.~n~nZkoprujte ho z jinho potae." "Kritick chyba - chybjc soubor
Line40=Webov server se zd bt doasn nedostupn.~nPro zjednoduen ComboFix vytvoil zaslac formul umstn v:~n~n* C:\CF-Submit.htm~n~nProsm pouijte ho k nahrn vzork pozdji. " "Nahrn selhalo!!
Line41=(((((((((((((((((((((((((((((((((((((((   Ostatn vmazy   )))))))))))))))))))))))))))))))))))))))))))))))))
Line42=((((((((((((((((((((((((((((((((((   Spoutc body v registru   )))))))))))))))))))))))))))))))))))))))))))))
Line43=Mau soubory:
Line43A=Mau sloky:
Line44=- REIM S OMEZENOU FUNKNOST -
Line45=SafeBoot kl v registru mus bt opraven. Tento pota neme nastartovat do Nouzovho Reimu.
Line46=skenovn skrytch proces ... 
Line47=skenovn skrytch poloek 'Po sputn' ...
Line48=skenovn skrytch soubor ... 
Line49=-- Snmek resetovn k souasnmu datu --
Line5=Aktuln datum je ~%%CurrDate.yyyy-MM-dd%%. Platnost ComboFixu vyprela.~n~nKliknte na 'Ano' pro sputn v REIMU S OMEZENOU FUNKNOST.~n~nKliknte na 'Ne' pro skonen." "Verze_%ver_CF%
Line50=ComboFix byl odinstalovn." "Info
Line51=Konzolu pro zotaven lze tmto zpsobem nainstalovat pouze na Windows XP.
Line52=Spoutc oddl se nepodailo sprvn nast.
Line53=%BootDir%Boot.ini nen sprvn formtovan.
Line54=Tento pota ji m Konzolu pro zotaven nainstalovanou.~n~nPeruuji innost.
Line55=Prosm kliknte na 'Ano' pi nsledujc vzv, kter po vs bude vyadovat potvrzen licenn smlouvy s koncovm uivatelem (EULA) ..." "Instalace Konzoly pro zotaven
Line56=Instalan soubor - %~G - nemohl bt nalezen.
Line57=Nezvolili jste 'Ano'.~n~nInstalace byla peruena.
Line58=Obsah sloky %BootDir%cmdcons nen v podku.~n~nProsm ukonete vechny ochrann programy (antivir, antispyware, firewall) a postup zopakujte.
Line59=Gratulujeme !!! Konzola pro zotaven byla spn nainstalovna.~n~nKdykoli restartujete pota, objev se ern obrazovka, kter Vm nabdne vybrat si mezi sputnm operanho systmu a sputnm zotavovac konzoly.~nPi kadodennm pouvn potae mete tuto ernou obrazovku ignorovat. Windows samy zanou nabhat do 2 sekund.~n~nKliknte na 'Ano' k proskenovn potae." "Info
Line6=Zkoueli jste aplikovat CFScript?~n~nNzev CFScript se zd bt nesprvn hlskovan." "CFScript chyba nzvu
Line60=Kliknte na 'Ano' k proskenovn potae.~n~nKliknte na 'Ne' pro skonen." "Co dle ?
Line62=Nov verze ComboFixu je dostupn ke staen.~n~nPejete si ComboFix aktualizovat?" "Aktualizace
Line63=--- UPOZORNN !! ---~n~nJe vyadovna kritick aktualizace.~n~nComboFix se nyn sm zaktualizuje.~n~n--- UPOZORNN !! ---" "Nutn aktualizace
Line64=Nepodailo se sthnout aktualizovanou verzi.~n~nBude pouita souasn kopie." "Nespn aktualizace
Line65=ComboFix se nyn restartuje." "Aktualizovn
Line66=Byl detekovn zsah do innosti ComboFixu.~n~nProsm provete rootkit sken." "Perueno!
Line67=ComboFix nemete pejmenovat na %FileName%~n~nProsm zvolte jin nzev, sloen nejlpe z alfanumerickch znak.
Line68=%cd% se nenachz v pedpokldanm umstn.~n~nInformujte okamit autora programu (sUBs)!!
Line69=ComboFix nahradil chybjc soubor C:\Windows\SysWow64\hal.dll.
Line7=Pokoum se vytvoit nov Bod Obnoven.
Line70=Tento pota nem nainstalovanou 'KONZOLU PRO ZOTAVEN'.~n~nBez n ComboFix nebude automaticky odstraovat nkter druhy odoln a nebezpen potaov havti.~n~nKliknte na 'Ano', pejete-li si, aby ji ComboFix sthl a nainstaloval.~n~nPOZNMKA: Tato akce vyaduje aktivn pipojen k internetu." "Konzola pro zotaven systmu Windows
Line71=Kliknte na 'Ano', jestlie tento pota pouv operan systm Windows XP *HOME EDITION*." "XP Home Edition
Line72=Nepodailo se sthnout poadovan soubory. Peruuji ... ~n~nZahjm vyhledvn nakaench soubor.
Line73=Vnitn chyba! Nepodailo se nast cestu ke staenmu souboru. ~n~nPeruuji ... Zahjm vyhledvn nakaench soubor.
Line74=Zd se, e nejste pipojeni k internetu. Prosm pipojte se pedtm, ne kliknete na 'OK'.
Line75=Nkter soubory se pokouely navzat na ComboFix. Budou deaktivovny.~nProsm zapite si na papr cestu ke kadmu z ne uvedench soubor. Jejich seznam me bt pozdji poteba.~n~n%~G" "Nalezeni paraziti !!
Line76=ComboFix zjistil, e nsledujc bezpenostn programy maj zapnut rezidentn tty:~n~n%G~n~nAntivirov a jin ochrann programy asto zasahuj do innosti ComboFixu.~nTo me vst k nepedvdatelnm vsledkm a monmu pokozen potae.~nProsm ukonete tyto programy ped kliknutm na 'OK'." "Varovn !!
Line77=%G~n~nVe uveden bezpenostn programy jsou stle aktivn, ale ComboFix nyn bude pokraovat~nve sv innosti. Berte prosm v vahu, e je tomu tak na vae vlastn riziko." "Varovn !!
Line78=%~1 chybl.
Line79=%~1 . . . chyb !!
Line8=Rich text formty (RTF) jsou nekompatibiln !!~n~nProsm ulote CFScript jako textov dokument, pouijte Poznmkov blok." "Chyba - formt skriptu je nesprvn
Line80=!! VAROVN !! Nen bezpen dle pokraovat!~n~nObsah a sousti ComboFixu byly narueny.~n~nSthnte si prosm novou kopii z:~n~nhttp://www.bleepingcomputer.com/combofix/how-to-use-combofix~n~nPoznmka: Mete bt infikovni parazitickm souborovm virem (typicky: Virut)." "Chyba
Line81=S naprogramovnm ComboFixu mohlo bt bhem jeho innosti manipulovno. Nen bezpen dle pokraovat.~nComboFix se nyn ukon. Informujte o tom prosm rdce, kter vm na foru s odvirovvnm potae pomh.~nComboFix u znovu nespoutjte, dokud o to nebudete pmo podni." "Oven selhalo
Line82=Webov server se zd bt doasn nedostupn.~nPro zjednoduen ComboFix vytvoil zaslac balek umstn v:~n~nC:\CFCollect.zip~n~nNahrajte ho prosm na BleepingComputer: http://www.bleepingcomputer.com/submit-malware.php?channel=4~n~nNezapomete zanechat koment." "Nahrn selhalo!!
Line83=NETSVCS MUS BT OPRAVENY - dosavadn poloky jsou:
Line83b=Rebuilding ... You need to reboot your machine for this to take effect.
Line84=http://download.bleepingcomputer.com/sUBs/ComboFix.exe~n~nComboFix.exe me bt oficiln staen z kterhokoli z ve uvedench odkaz.~nPokud jste ho sthli z jinch internetovch strnek, nememe zaruit jeho pravost.~nPro klid due doporuejeme tuto kopii smazat a sthnout ComboFix znovu z~nnkterho z vypsanch legitimnch odkaz." "Vstraha
Line85=CommonStartup hodnoty v registru mus bt manuln opraveny.
Line86=~t!! Warning !!~n~NCD-emulation drivers are running on this machine.~nComboFix needs to temporarily disable them.~n~nWhen you uninstall ComboFix, they will be re-enabled." "CD-emulation !!
Line87=%G~n~nThese files are part of ComboFix.~nThis CFScript shall not be processed.
Line88=The Master Boot Record is infected !!~n~nMake sure your antivirus programs are disabled before clicking OK" "Warning !!
Line89=These were found but they are too many and shall take too long to quarantine.
Line9=Rootkit ovlada %G je ptomen ... pokoum se o odstrann. 
Line90=ComboFix provede dkladnj kontrolu potae.
Line91=To by nemlo trvat dle ne 10-15 minut.
Line92=Nalezeny infikovan HTML soubory.
Line93=ComboFix se je nyn pokus vylit.
Line94=To me njakou chvli trvat.
Line95=Len dokoneno !!! ... pokrauji v pprav logu.
Line96=Probh obnova ...
Line97=Varovn !!! Nesnate se restartovat pota sami.
LOCALAPPDATA=C:\Users\Matouskovi\AppData\Local
LOCKED REGISTRY KEYS=ZAMKNUT KLE V REGISTRU
LOGONSERVER=\\MATOUSKOVI-PC
machine was rebooted=pota byl restartovn
MyMusic=C:\Users\Matouskovi\Music
MyPictures=C:\Users\Matouskovi\Pictures
MyVideo=C:\Users\Matouskovi\Videos
MyVideos=C:\Users\Matouskovi\Videos
NetHood=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Network Shortcuts
not completed=nedokonena
NUMBER_OF_PROCESSORS=2
OEMLinks=C:\ProgramData\OEM Links
ORPHANS REMOVED=NEPLATN POLOKY ODSTRANN Z REGISTRU
OS=Windows_NT
Other Running Processes=Jin sputen procesy
Other Services/Drivers In Memory=Ostatn sluby/ovladae v pamti
Path=C:\ComboFix;C:\Windows\system32;C:\Windows;C:\Windows\system32\wbem;
PATHEXT=.3XE;.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
Personal=C:\Users\Matouskovi\Documents
Possible infected sites=Mon infikovan strnky
Post-Run=Po sputn
Pre-Run=Ped sputnm
Previous Run=Pedchoz sputn
PrintHood=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
PROCESS=PROCES
PROCESSOR_ARCHITECTURE=AMD64
PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 23 Stepping 6, GenuineIntel
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=1706
ProfilesDirectory=C:\Users
ProgFiles=C:\Program Files (x86)
ProgramData=C:\ProgramData
ProgramFiles=C:\Program Files
ProgramFiles(x86)=C:\Program Files (x86)
Programs=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
ProgramW6432=C:\Program Files
PROMPT=$
PSModulePath=C:\Windows\system32\WindowsPowerShell\v1.0\Modules\
PUBLIC=C:\Users\Public
Qrntn=C:\Qoobox\Quarantine
QuickLaunch=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch
Recent=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Recent
RecoveryConsole=VAROVN - NA TOMTO POTAI NEN NAINSTALOVNA KONZOLA PRO ZOTAVEN !!
Resident AV is active=Rezidentn tt AV je zapnut
RestorePoint= * Vytvoen nov Bod Obnoven
Running from=Sputn z
scan completed successfully=sken byl spen dokonen
SendTo=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\SendTo
SfxCmd="C:\Users\Matouskovi\Desktop\CFScript.txt"
SfxName=C:\Users\Matouskovi\Desktop\ComboFix.exe
Stage=Dokonena fze_
StartMenu=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Start Menu
Startup=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Successfully restored=Successfully restored
Supplementary Scan=Doplkov sken
SysDir=C:\Windows\system32
SysNative=C:\Windows\SysNative
System=C:\Windows\SysWow64
SystemDrive=C:
SysTemp=C:\Windows\TEMP
SystemRoot=C:\Windows
Systemx86=C:\Windows\SysWow64
Tasks=C:\Windows\Tasks
TEMP=C:\Users\MATOUS~1\AppData\Local\Temp
Templates=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Templates
Temp_LFN=C:\Users\Matouskovi\AppData\Local\Temp
The following files were disabled during the run=Tyto soubory byly bhem aplikovn deaktivovny
TMP=C:\Users\MATOUS~1\AppData\Local\Temp
Upload was successful=Nahrn probhlo spn
Uploading files to server=Nahrvm soubory na server
USERDOMAIN=Matouskovi-PC
USERNAME=Matouskovi
USERPROFILE=C:\Users\Matouskovi
userX=Matouskovi
Ver_CF=14-06-10.01
windir=C:\Windows
windows_tracing_flags=3
windows_tracing_logfile=C:\BVTBin\Tests\installpackage\csilogfile.log
{1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE}=C:\Users\Matouskovi\AppData\Roaming\Microsoft\Windows\Libraries
{374DE290-123F-4565-9164-39C4925E467B}=C:\Users\Matouskovi\Downloads
{4C5C32FF-BB9D-43B0-B5B4-2D72E54EAAA4}=C:\Users\Matouskovi\Saved Games
{56784854-C6CB-462B-8169-88E350ACB882}=C:\Users\Matouskovi\Contacts
{7D1D3A04-DEBB-4115-95CF-2F29DA2920DA}=C:\Users\Matouskovi\Searches
{A520A1A4-1780-4FF6-BD18-167343C5AF16}=C:\Users\Matouskovi\AppData\LocalLow
{BFB9D5E0-C6A9-404C-B2B2-AE6DB6AF4968}=C:\Users\Matouskovi\Links
