
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Bezduvodne Vypinani pC
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Bezduvodne Vypinani pC
Ahoj,
Z niceho nic se mi samo vypina PC, pri vetsim "zatizeni" nevim ejslti to muze byt virem. Prosim o kontrolu. Diky
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kika a Eva at 2011-12-13 16:30:09
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 21 GB (27%) free of 78 GB
Total RAM: 511 MB (30% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:30:15, on 13.12.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
C:\Program Files\Olympus\ib\olycamdetect.exe
C:\WINDOWS\system32\FsUsbExService.Exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\rundll32.exe
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\Kika a Eva.exe
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://search13.net/search.php?clid=486&q=%s
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qip.ru/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search13.net/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1060933
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60076
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60076
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search13.net/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search13.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60076
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll
O2 - BHO: AC-Pro - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\AutocompletePro.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O2 - BHO: Softonic-Eng7 - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (file missing)
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (file missing)
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [MDS_Menu] "C:\Program Files\Olympus\ib\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Olympus\ib" UpdateWithCreateOnce "Software\OLYMPUS\ib\1.0"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
O4 - HKCU\..\Run: [Olympus ib] "C:\Program Files\Olympus\ib\olycamdetect.exe" /Startup
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKLM\..\Policies\Explorer\Run: [RTHDBPL] C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc\lsass.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Search - ?p=GRxdm066YYCZ
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm
O9 - Extra 'Tools' menuitem: StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (file missing)
O23 - Service: BarDiscover Service - Unknown owner - C:\Documents and Settings\All Users.WINDOWS\Data aplikací\BarDiscover\bardiscover141.exe (file missing)
O23 - Service: FsUsbExService - Teruten - C:\WINDOWS\system32\FsUsbExService.Exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - Unknown owner - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe (file missing)
O23 - Service: NBService - Unknown owner - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (file missing)
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: UltiDev Cassini Web Server for ASP.NET 2.0 - UltiDev LLC - C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe
--
End of file - 11067 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\CCleaner.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://ahoolly.com"
prefs.js - "extensions.enabledItems" - "toolbar@ask.com:3.12.2.16749, wrc@avast.com:6.0.1203, {AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}:1.0, {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.3.3.2, {33e0daa6-3af3-d8b5-6752-10e949c61516}:1.1, {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.9.3, {6236BA26-C117-4007-928C-DE0716C7FA82}:1.0.2, {6236BA26-C117-4007-928C-DE0716C7FA99}:1.0.1, {9CE11043-9A15-4207-A565-0C94C42D590D}:2.0, {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, jqs@sun.com:1.0, {8675f4b3-2f19-11ed-2d6b-0800600c0a16}:1.0, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, personas@christopher.beard:1.6.2, {63414328-3ab4-2c84-6c41-5a473c4b2ff7}:1.0, {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}:3.5.0.12, {6236BA26-C117-4007-928C-DE0716C7FA80}:1.0.24, {EEE6C361-6118-11DC-9C72-001320C79847}:1.0.0.10, {7645f4b1-1f19-13dd-2d6b-0200600c2a56}:1.0, {6236BA26-C117-4007-928C-DE0716C7FA96}:1.0.6, {8675f4b3-2f19-11ed-2d6b-0800600c0a17}:1.0, {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.16.1, engine@conduit.com:3.3.3.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.20"
prefs.js - "keyword.URL" - "http://websearch.ask.com/redirect?clien ... YYYYCZ&&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"wrc@avast.com"=C:\Program Files\Alwil Software\Avast5\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{9CE11043-9A15-4207-A565-0C94C42D590D}
{AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}
C:\Program Files\Mozilla Firefox\components\
AskHPRFF.js
AskSearch.js
binary.manifest
browsercomps.dll
npscriptable.xpt
nsIBitCometAgent.xpt
C:\Program Files\Mozilla Firefox\plugins\
npBitCometAgent.dll
npdeployJava1.dll
npdnu.dll
npdnu.xpt
npdnupdater2.dll
npdnupdater2.xpt
nppdf32.dll
npracplug.dll
C:\Program Files\Mozilla Firefox\searchplugins\
crawlersrch.bak
crawlersrch.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\
engine@conduit.com
personas@christopher.beard
toolbar@ask.com
{0b38152b-1b20-484d-a11f-5e04a9b0661f}
{20a82645-c095-46ed-80e3-08825760534b}
{33e0daa6-3af3-d8b5-6752-10e949c61516}
{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}
{6236BA26-C117-4007-928C-DE0716C7FA82}
{6236BA26-C117-4007-928C-DE0716C7FA99}
{63414328-3ab4-2c84-6c41-5a473c4b2ff7}
{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
{8675f4b3-2f19-11ed-2d6b-0800600c0a16}
{8675f4b3-2f19-11ed-2d6b-0800600c0a17}
{8675f4b3-2f19-11ed-2d6b-0800600c0a19}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\
aol-web-search.xml
ask.uk.xml
askcom.xml
conduit.xml
crawlersrch.xml
sweetim.xml
web-search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}]
AC-Pro - C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\AutocompletePro.dll [2011-02-27 139768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}]
Softonic-Eng7 Toolbar - C:\Program Files\Softonic-Eng7\prxtbSof0.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Program Files\Internet Explorer\qipsearchbar.dll [2009-07-09 150768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-08-23 1515688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-02-09 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-02-09 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - Softonic-Eng7 Toolbar - C:\Program Files\Softonic-Eng7\prxtbSof0.dll [2011-01-17 175912]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-08-23 1515688]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2003-12-19 65024]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-14 644696]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-03 1603152]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"OpwareSE4"=C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [2007-02-04 79400]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"NPSStartup"= []
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui []
"MDS_Menu"=C:\Program Files\Olympus\ib\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064]
""= []
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2011-08-23 887976]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"RTHDBPL"=C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc\lsass.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"AutoStartNPSAgent"=C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe [2009-11-30 102400]
"Olympus ib"=C:\Program Files\Olympus\ib\olycamdetect.exe [2009-10-30 93376]
"Google Update"=C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2011-07-28 136176]
C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Po spuštění
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-07-10 155648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\QIP\qip.exe"="C:\Program Files\QIP\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\BitComet\BitComet.exe"="C:\Program Files\BitComet\BitComet.exe:*:Disabled:BitComet - a BitTorrent Client"
"C:\Program Files\uTorrent\utorrent.exe"="C:\Program Files\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"D:\Installation\Setupx.exe"="D:\Installation\Setupx.exe:*:Enabled:Nero ProductSetup"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Crawler Spyware Terminator"
"C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe"="C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe:LocalSubNet:Enabled:UltiDev Cassini Web Server for ASP.NET 2.0"
"C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe"="C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe:*:Enabled:KTF MUSIC AoD Server"
"C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe"="C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe:*:Enabled:KTF MUSIC VoD Server"
"C:\Program Files\Electronic Arts\EADM\Core.exe"="C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager"
"C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent\utorrent.exe"="C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe"="C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe:*:Enabled:Nero ProductSetup"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Java\jre6\launch4j-tmp\frd.exe"="C:\Program Files\Java\jre6\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe"="C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe:*:Disabled:aTube Catcher to download and convert videos."
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"D:\EasySetupAssistant\wr741n\EasySetupAssistant.exe"="D:\EasySetupAssistant\wr741n\EasySetupAssistant.exe:*:Enabled:TP-LINK Easy Setup Assistant"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll
======List of files/folders created in the last 2 months======
2011-12-13 16:30:09 ----D---- C:\rsit
2011-12-13 16:30:09 ----D---- C:\Program Files\trend micro
2011-12-13 16:28:55 ----ASH---- C:\hiberfil.sys
2011-12-13 16:23:31 ----A---- C:\WINDOWS\ntbtlog.txt
2011-12-13 16:20:04 ----D---- C:\WINDOWS\pss
2011-12-13 15:49:28 ----SHD---- C:\Config.Msi
2011-12-13 15:46:20 ----D---- C:\Nová složka
2011-11-11 21:13:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2011-11-09 22:35:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2011-10-27 17:25:30 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PhotoScape
2011-10-27 17:24:53 ----D---- C:\Program Files\PhotoScape
======List of files/folders modified in the last 2 months======
2011-12-13 16:30:09 ----D---- C:\Program Files
2011-12-13 16:29:24 ----D---- C:\WINDOWS\Temp
2011-12-13 16:24:01 ----D---- C:\Documents and Settings
2011-12-13 16:23:31 ----D---- C:\WINDOWS
2011-12-13 16:20:15 ----D---- C:\WINDOWS\Prefetch
2011-12-13 16:15:48 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-12-13 16:15:16 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Spybot - Search & Destroy
2011-12-13 16:12:13 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Alwil Software
2011-12-13 16:12:04 ----D---- C:\WINDOWS\system32
2011-12-13 16:11:58 ----D---- C:\WINDOWS\system32\drivers
2011-12-13 16:04:35 ----SHD---- C:\WINDOWS\Installer
2011-12-13 16:02:31 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Zoner
2011-12-13 15:51:58 ----D---- C:\Program Files\Common Files\Ahead
2011-12-12 21:05:25 ----N---- C:\WINDOWS\SchedLgU.Txt
2011-12-12 19:06:23 ----A---- C:\WINDOWS\NeroDigital.ini
2011-12-11 20:42:24 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\vlc
2011-12-11 20:33:05 ----D---- C:\WINDOWS\system32\CatRoot2
2011-12-11 10:46:09 ----D---- C:\Program Files\Softonic-Eng7
2011-12-11 10:45:33 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PriceGong
2011-12-05 07:11:35 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CanonIJPLM
2011-12-04 20:12:03 ----D---- C:\Program Files\Mozilla Firefox
2011-11-30 17:07:00 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Skype
2011-11-30 16:07:28 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\skypePM
2011-11-28 13:01:33 ----D---- C:\Program Files\Ask.com
2011-11-28 13:01:29 ----SD---- C:\WINDOWS\Tasks
2011-11-22 20:41:52 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer
2011-11-22 18:43:49 ----HD---- C:\WINDOWS\inf
2011-11-12 15:22:10 ----D---- C:\WINDOWS\Debug
2011-11-11 21:13:34 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-11-11 07:24:50 ----HD---- C:\WINDOWS\$hf_mig$
2011-11-09 22:31:46 ----A---- C:\WINDOWS\system32\MRT.exe
2011-11-08 10:29:14 ----D---- C:\Program Files\Common Files\Adobe
2011-11-08 10:27:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-11-06 15:09:57 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canon
2011-10-24 07:18:36 ----D---- C:\WINDOWS\network diagnostic
2011-10-14 06:16:46 ----D---- C:\WINDOWS\Microsoft.NET
2011-10-14 06:16:38 ----RSD---- C:\WINDOWS\assembly
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 AmdK7;Ovladač procesoru AMD K7; C:\WINDOWS\system32\DRIVERS\amdk7.sys [2008-04-14 41600]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-11-30 5632]
R2 npf;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-11-16 50704]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-07-10 4407808]
R3 FsUsbExDisk;FsUsbExDisk; \??\C:\WINDOWS\system32\FsUsbExDisk.SYS []
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-18 12160]
R3 nvax;Service for NVIDIA(R) nForce(TM) Audio Enumerator; C:\WINDOWS\system32\drivers\nvax.sys [2002-12-05 13056]
R3 nvnforce;Service for NVIDIA(R) nForce(TM) Audio; C:\WINDOWS\system32\drivers\nvapu.sys [2002-12-05 241664]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys []
S1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys []
S1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys []
S1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys []
S1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys []
S2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys []
S2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys []
S3 ALCXSENS;Service for WDM 3D Audio Driver; C:\WINDOWS\system32\drivers\ALCXSENS.SYS [2003-12-11 391424]
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2003-12-19 541548]
S3 androidusb;ADB Interface Driver; C:\WINDOWS\System32\Drivers\smhwadb.sys [2009-12-24 25728]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\WINDOWS\system32\DRIVERS\k750bus.sys []
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\k750mdfl.sys []
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\k750mdm.sys []
S3 k750mgmt;Sony Ericsson 750 USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\k750mgmt.sys []
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\k750obex.sys []
S3 KMWDFILTER;HIDUASDesc; C:\WINDOWS\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2007-09-17 21632]
S3 smhwdev;SmartPhone dummy USB PNP Device (Normal); C:\WINDOWS\system32\DRIVERS\smhwdev.sys [2010-01-14 100864]
S3 smhwser;USB Device for Legacy Serial Communication (Normal); C:\WINDOWS\system32\DRIVERS\smhwser.sys [2010-02-04 108032]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\WINDOWS\system32\DRIVERS\ss_bbus.sys [2009-03-20 90112]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\WINDOWS\system32\DRIVERS\ss_bmdfl.sys [2009-03-20 14976]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\WINDOWS\system32\DRIVERS\ss_bmdm.sys [2009-03-20 121856]
S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ssm_bus.sys [2005-08-30 58320]
S3 ssm_mdfl;SAMSUNG Mobile USB Modem II 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ssm_mdfl.sys [2005-08-30 8336]
S3 ssm_mdm;SAMSUNG Mobile USB Modem II 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ssm_mdm.sys [2005-08-30 94000]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-07-10 602112]
R2 FsUsbExService;FsUsbExService; C:\WINDOWS\system32\FsUsbExService.Exe [2009-03-31 233472]
R2 IJPLMSVC;PIXMA Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2007-04-13 97432]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-02-02 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-08-23 79136]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-10-20 71096]
R2 UltiDev Cassini Web Server for ASP.NET 2.0;UltiDev Cassini Web Server for ASP.NET 2.0; C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe [2007-02-07 49152]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe []
S2 BarDiscover Service;BarDiscover Service; C:\Documents and Settings\All Users.WINDOWS\Data aplikací\BarDiscover\bardiscover141.exe C:\Program Files\BarDiscover\bardiscover.dll iylswzdzboj []
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe []
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe []
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-04-07 430592]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------
Z niceho nic se mi samo vypina PC, pri vetsim "zatizeni" nevim ejslti to muze byt virem. Prosim o kontrolu. Diky
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kika a Eva at 2011-12-13 16:30:09
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 21 GB (27%) free of 78 GB
Total RAM: 511 MB (30% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:30:15, on 13.12.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
C:\Program Files\Olympus\ib\olycamdetect.exe
C:\WINDOWS\system32\FsUsbExService.Exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\rundll32.exe
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\Kika a Eva.exe
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://search13.net/search.php?clid=486&q=%s
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qip.ru/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search13.net/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1060933
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60076
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60076
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search13.net/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search13.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60076
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll
O2 - BHO: AC-Pro - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\AutocompletePro.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O2 - BHO: Softonic-Eng7 - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (file missing)
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (file missing)
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [MDS_Menu] "C:\Program Files\Olympus\ib\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Olympus\ib" UpdateWithCreateOnce "Software\OLYMPUS\ib\1.0"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
O4 - HKCU\..\Run: [Olympus ib] "C:\Program Files\Olympus\ib\olycamdetect.exe" /Startup
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKLM\..\Policies\Explorer\Run: [RTHDBPL] C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc\lsass.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Search - ?p=GRxdm066YYCZ
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm
O9 - Extra 'Tools' menuitem: StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (file missing)
O23 - Service: BarDiscover Service - Unknown owner - C:\Documents and Settings\All Users.WINDOWS\Data aplikací\BarDiscover\bardiscover141.exe (file missing)
O23 - Service: FsUsbExService - Teruten - C:\WINDOWS\system32\FsUsbExService.Exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - Unknown owner - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe (file missing)
O23 - Service: NBService - Unknown owner - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (file missing)
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: UltiDev Cassini Web Server for ASP.NET 2.0 - UltiDev LLC - C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe
--
End of file - 11067 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\CCleaner.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://ahoolly.com"
prefs.js - "extensions.enabledItems" - "toolbar@ask.com:3.12.2.16749, wrc@avast.com:6.0.1203, {AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}:1.0, {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.3.3.2, {33e0daa6-3af3-d8b5-6752-10e949c61516}:1.1, {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.9.3, {6236BA26-C117-4007-928C-DE0716C7FA82}:1.0.2, {6236BA26-C117-4007-928C-DE0716C7FA99}:1.0.1, {9CE11043-9A15-4207-A565-0C94C42D590D}:2.0, {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, jqs@sun.com:1.0, {8675f4b3-2f19-11ed-2d6b-0800600c0a16}:1.0, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, personas@christopher.beard:1.6.2, {63414328-3ab4-2c84-6c41-5a473c4b2ff7}:1.0, {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}:3.5.0.12, {6236BA26-C117-4007-928C-DE0716C7FA80}:1.0.24, {EEE6C361-6118-11DC-9C72-001320C79847}:1.0.0.10, {7645f4b1-1f19-13dd-2d6b-0200600c2a56}:1.0, {6236BA26-C117-4007-928C-DE0716C7FA96}:1.0.6, {8675f4b3-2f19-11ed-2d6b-0800600c0a17}:1.0, {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.16.1, engine@conduit.com:3.3.3.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.20"
prefs.js - "keyword.URL" - "http://websearch.ask.com/redirect?clien ... YYYYCZ&&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"wrc@avast.com"=C:\Program Files\Alwil Software\Avast5\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{9CE11043-9A15-4207-A565-0C94C42D590D}
{AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}
C:\Program Files\Mozilla Firefox\components\
AskHPRFF.js
AskSearch.js
binary.manifest
browsercomps.dll
npscriptable.xpt
nsIBitCometAgent.xpt
C:\Program Files\Mozilla Firefox\plugins\
npBitCometAgent.dll
npdeployJava1.dll
npdnu.dll
npdnu.xpt
npdnupdater2.dll
npdnupdater2.xpt
nppdf32.dll
npracplug.dll
C:\Program Files\Mozilla Firefox\searchplugins\
crawlersrch.bak
crawlersrch.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\
engine@conduit.com
personas@christopher.beard
toolbar@ask.com
{0b38152b-1b20-484d-a11f-5e04a9b0661f}
{20a82645-c095-46ed-80e3-08825760534b}
{33e0daa6-3af3-d8b5-6752-10e949c61516}
{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}
{6236BA26-C117-4007-928C-DE0716C7FA82}
{6236BA26-C117-4007-928C-DE0716C7FA99}
{63414328-3ab4-2c84-6c41-5a473c4b2ff7}
{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
{8675f4b3-2f19-11ed-2d6b-0800600c0a16}
{8675f4b3-2f19-11ed-2d6b-0800600c0a17}
{8675f4b3-2f19-11ed-2d6b-0800600c0a19}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\
aol-web-search.xml
ask.uk.xml
askcom.xml
conduit.xml
crawlersrch.xml
sweetim.xml
web-search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}]
AC-Pro - C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\AutocompletePro.dll [2011-02-27 139768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}]
Softonic-Eng7 Toolbar - C:\Program Files\Softonic-Eng7\prxtbSof0.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Program Files\Internet Explorer\qipsearchbar.dll [2009-07-09 150768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-08-23 1515688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-02-09 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-02-09 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - Softonic-Eng7 Toolbar - C:\Program Files\Softonic-Eng7\prxtbSof0.dll [2011-01-17 175912]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-08-23 1515688]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2003-12-19 65024]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-14 644696]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-03 1603152]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"OpwareSE4"=C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [2007-02-04 79400]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"NPSStartup"= []
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui []
"MDS_Menu"=C:\Program Files\Olympus\ib\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064]
""= []
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2011-08-23 887976]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"RTHDBPL"=C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc\lsass.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"AutoStartNPSAgent"=C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe [2009-11-30 102400]
"Olympus ib"=C:\Program Files\Olympus\ib\olycamdetect.exe [2009-10-30 93376]
"Google Update"=C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2011-07-28 136176]
C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Po spuštění
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-07-10 155648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\QIP\qip.exe"="C:\Program Files\QIP\qip.exe:*:Enabled:Quiet Internet Pager"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\BitComet\BitComet.exe"="C:\Program Files\BitComet\BitComet.exe:*:Disabled:BitComet - a BitTorrent Client"
"C:\Program Files\uTorrent\utorrent.exe"="C:\Program Files\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"D:\Installation\Setupx.exe"="D:\Installation\Setupx.exe:*:Enabled:Nero ProductSetup"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Crawler Spyware Terminator"
"C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe"="C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe:LocalSubNet:Enabled:UltiDev Cassini Web Server for ASP.NET 2.0"
"C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe"="C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe:*:Enabled:KTF MUSIC AoD Server"
"C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe"="C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe:*:Enabled:KTF MUSIC VoD Server"
"C:\Program Files\Electronic Arts\EADM\Core.exe"="C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager"
"C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent\utorrent.exe"="C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe"="C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe:*:Enabled:Nero ProductSetup"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Java\jre6\launch4j-tmp\frd.exe"="C:\Program Files\Java\jre6\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe"="C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe:*:Disabled:aTube Catcher to download and convert videos."
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"D:\EasySetupAssistant\wr741n\EasySetupAssistant.exe"="D:\EasySetupAssistant\wr741n\EasySetupAssistant.exe:*:Enabled:TP-LINK Easy Setup Assistant"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll
======List of files/folders created in the last 2 months======
2011-12-13 16:30:09 ----D---- C:\rsit
2011-12-13 16:30:09 ----D---- C:\Program Files\trend micro
2011-12-13 16:28:55 ----ASH---- C:\hiberfil.sys
2011-12-13 16:23:31 ----A---- C:\WINDOWS\ntbtlog.txt
2011-12-13 16:20:04 ----D---- C:\WINDOWS\pss
2011-12-13 15:49:28 ----SHD---- C:\Config.Msi
2011-12-13 15:46:20 ----D---- C:\Nová složka
2011-11-11 21:13:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2011-11-09 22:35:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2011-10-27 17:25:30 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PhotoScape
2011-10-27 17:24:53 ----D---- C:\Program Files\PhotoScape
======List of files/folders modified in the last 2 months======
2011-12-13 16:30:09 ----D---- C:\Program Files
2011-12-13 16:29:24 ----D---- C:\WINDOWS\Temp
2011-12-13 16:24:01 ----D---- C:\Documents and Settings
2011-12-13 16:23:31 ----D---- C:\WINDOWS
2011-12-13 16:20:15 ----D---- C:\WINDOWS\Prefetch
2011-12-13 16:15:48 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-12-13 16:15:16 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Spybot - Search & Destroy
2011-12-13 16:12:13 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Alwil Software
2011-12-13 16:12:04 ----D---- C:\WINDOWS\system32
2011-12-13 16:11:58 ----D---- C:\WINDOWS\system32\drivers
2011-12-13 16:04:35 ----SHD---- C:\WINDOWS\Installer
2011-12-13 16:02:31 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Zoner
2011-12-13 15:51:58 ----D---- C:\Program Files\Common Files\Ahead
2011-12-12 21:05:25 ----N---- C:\WINDOWS\SchedLgU.Txt
2011-12-12 19:06:23 ----A---- C:\WINDOWS\NeroDigital.ini
2011-12-11 20:42:24 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\vlc
2011-12-11 20:33:05 ----D---- C:\WINDOWS\system32\CatRoot2
2011-12-11 10:46:09 ----D---- C:\Program Files\Softonic-Eng7
2011-12-11 10:45:33 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PriceGong
2011-12-05 07:11:35 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CanonIJPLM
2011-12-04 20:12:03 ----D---- C:\Program Files\Mozilla Firefox
2011-11-30 17:07:00 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Skype
2011-11-30 16:07:28 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\skypePM
2011-11-28 13:01:33 ----D---- C:\Program Files\Ask.com
2011-11-28 13:01:29 ----SD---- C:\WINDOWS\Tasks
2011-11-22 20:41:52 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer
2011-11-22 18:43:49 ----HD---- C:\WINDOWS\inf
2011-11-12 15:22:10 ----D---- C:\WINDOWS\Debug
2011-11-11 21:13:34 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-11-11 07:24:50 ----HD---- C:\WINDOWS\$hf_mig$
2011-11-09 22:31:46 ----A---- C:\WINDOWS\system32\MRT.exe
2011-11-08 10:29:14 ----D---- C:\Program Files\Common Files\Adobe
2011-11-08 10:27:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-11-06 15:09:57 ----D---- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canon
2011-10-24 07:18:36 ----D---- C:\WINDOWS\network diagnostic
2011-10-14 06:16:46 ----D---- C:\WINDOWS\Microsoft.NET
2011-10-14 06:16:38 ----RSD---- C:\WINDOWS\assembly
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 AmdK7;Ovladač procesoru AMD K7; C:\WINDOWS\system32\DRIVERS\amdk7.sys [2008-04-14 41600]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-11-30 5632]
R2 npf;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-11-16 50704]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-07-10 4407808]
R3 FsUsbExDisk;FsUsbExDisk; \??\C:\WINDOWS\system32\FsUsbExDisk.SYS []
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-18 12160]
R3 nvax;Service for NVIDIA(R) nForce(TM) Audio Enumerator; C:\WINDOWS\system32\drivers\nvax.sys [2002-12-05 13056]
R3 nvnforce;Service for NVIDIA(R) nForce(TM) Audio; C:\WINDOWS\system32\drivers\nvapu.sys [2002-12-05 241664]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys []
S1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys []
S1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys []
S1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys []
S1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys []
S2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys []
S2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys []
S3 ALCXSENS;Service for WDM 3D Audio Driver; C:\WINDOWS\system32\drivers\ALCXSENS.SYS [2003-12-11 391424]
S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2003-12-19 541548]
S3 androidusb;ADB Interface Driver; C:\WINDOWS\System32\Drivers\smhwadb.sys [2009-12-24 25728]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\WINDOWS\system32\DRIVERS\k750bus.sys []
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\k750mdfl.sys []
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\k750mdm.sys []
S3 k750mgmt;Sony Ericsson 750 USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\k750mgmt.sys []
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\k750obex.sys []
S3 KMWDFILTER;HIDUASDesc; C:\WINDOWS\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2007-09-17 21632]
S3 smhwdev;SmartPhone dummy USB PNP Device (Normal); C:\WINDOWS\system32\DRIVERS\smhwdev.sys [2010-01-14 100864]
S3 smhwser;USB Device for Legacy Serial Communication (Normal); C:\WINDOWS\system32\DRIVERS\smhwser.sys [2010-02-04 108032]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\WINDOWS\system32\DRIVERS\ss_bbus.sys [2009-03-20 90112]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\WINDOWS\system32\DRIVERS\ss_bmdfl.sys [2009-03-20 14976]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\WINDOWS\system32\DRIVERS\ss_bmdm.sys [2009-03-20 121856]
S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ssm_bus.sys [2005-08-30 58320]
S3 ssm_mdfl;SAMSUNG Mobile USB Modem II 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ssm_mdfl.sys [2005-08-30 8336]
S3 ssm_mdm;SAMSUNG Mobile USB Modem II 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ssm_mdm.sys [2005-08-30 94000]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-07-10 602112]
R2 FsUsbExService;FsUsbExService; C:\WINDOWS\system32\FsUsbExService.Exe [2009-03-31 233472]
R2 IJPLMSVC;PIXMA Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2007-04-13 97432]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-02-02 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-08-23 79136]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-10-20 71096]
R2 UltiDev Cassini Web Server for ASP.NET 2.0;UltiDev Cassini Web Server for ASP.NET 2.0; C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe [2007-02-07 49152]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe []
S2 BarDiscover Service;BarDiscover Service; C:\Documents and Settings\All Users.WINDOWS\Data aplikací\BarDiscover\bardiscover141.exe C:\Program Files\BarDiscover\bardiscover.dll iylswzdzboj []
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe []
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe []
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-04-07 430592]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------
Re: Bezduvodne Vypinani pC
Zdravim a pekny podvecer preji
Koukam, ze vam Avast vypovedel sluzbu
Odstrante pozustatky timto http://files.avast.com/files/eng/aswclear.exe a pak jej nainstalujte znovu http://www.avast.com/cs-cz/free-antivirus-download
Bordelu je tam dost, uvidime jestli vycisteni pomuze, jestli to nebude zavada soucastek
Stahnete OTL (viz muj podpis) a ulozte jej na plochu





- Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
- Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
- Zaskrtnete okenko Pro vsechny uzivatele
- Zaskrtnete okenko Kontrola na havet "LOP"
- Zaskrtnete okenko Kontrola na havet "Purity"
- Stari souboru zmente z 30 dnu na 7 dnu
- Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
Kód: Vybrat vše
CREATERESTOREPOINT netsvcs drivers32 savembr:0 /md5start atapi.sys autochk.exe cdrom.sys explorer.exe hal.dll scecli.dll svchost.exe tcpip.sys userinit.exe winlogon.exe /md5stop %systemroot%*.* /U /s %SYSTEMDRIVE%\*.exe %ALLUSERSPROFILE%\Application Data\*. %ALLUSERSPROFILE%\Application Data\*.exe /s %APPDATA%\*. %APPDATA%\*.exe /s %systemroot%\*. /mp /s %systemroot%\system32\*.dll /lockedfiles %systemroot%\Tasks\*.job %systemroot%\system32\drivers\*.sys /lockedfiles %systemroot%\System32\config\*.sav %systemroot%\system32\*.dll /lockedfiles %systemroot%\system32\drivers\*.sys /3 %systemroot%\system32\*.* /3 %SYSTEMDRIVE%\*.exe HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c type c:\boot.ini >> test.txt /c %SystemDrive%\PhysicalMBR.bin /md5 *crack* /s *keygen* /s *loader* /s
- Kliknete na tlacitko Prohledat
- Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
Re: Bezduvodne Vypinani pC
OTL logfile created on: 13.12.2011 17:22:28 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
511,49 Mb Total Physical Memory | 176,48 Mb Available Physical Memory | 34,50% Memory free
3,40 Gb Paging File | 3,11 Gb Available in Paging File | 91,47% Paging File free
Paging file location(s): C:\pagefile.sys 3000 3000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 76,32 Gb Total Space | 18,69 Gb Free Space | 24,48% Space Free | Partition Type: NTFS
Computer Name: BRNAKOVI-F6C11A | User Name: Kika a Eva | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - [2011.12.13 17:20:50 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads\OTL.exe
PRC - [2011.11.15 06:39:56 | 001,036,344 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
PRC - [2011.08.23 21:20:18 | 000,887,976 | ---- | M] (Ask) -- C:\Program Files\Ask.com\Updater\Updater.exe
PRC - [2011.08.09 16:38:38 | 000,328,536 | ---- | M] (IObit) -- C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
PRC - [2009.11.30 09:02:58 | 000,102,400 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
PRC - [2009.10.30 19:45:22 | 000,093,376 | ---- | M] (OLYMPUS IMAGING CORP.) -- C:\Program Files\Olympus\ib\olycamdetect.exe
PRC - [2009.03.31 09:39:36 | 000,233,472 | ---- | M] (Teruten) -- C:\WINDOWS\system32\FsUsbExService.Exe
PRC - [2008.10.20 21:18:26 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe
PRC - [2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007.04.13 08:20:22 | 000,097,432 | ---- | M] () -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe
PRC - [2007.04.03 17:50:00 | 001,603,152 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
PRC - [2007.02.07 22:06:10 | 000,049,152 | ---- | M] (UltiDev LLC) -- C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe
PRC - [2007.02.04 12:02:14 | 000,079,400 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
PRC - [2003.12.19 10:53:18 | 000,065,024 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\soundman.exe
========== Modules (No Company Name) ==========
MOD - [2011.11.15 06:39:54 | 000,420,920 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\ppgooglenaclpluginchrome.dll
MOD - [2011.11.15 06:39:53 | 003,702,840 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\pdf.dll
MOD - [2011.11.15 06:38:16 | 000,122,952 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\avutil-51.dll
MOD - [2011.11.15 06:38:15 | 000,222,280 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\avformat-53.dll
MOD - [2011.11.15 06:38:14 | 001,746,504 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\avcodec-53.dll
MOD - [2011.11.15 03:36:18 | 008,593,056 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\gcswf32.dll
MOD - [2011.10.14 06:15:40 | 011,800,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\60df958ca96c9b8945f836759b6abd34\System.Web.ni.dll
MOD - [2011.10.14 06:15:25 | 000,212,992 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\abef85f2fb8ba830eda73e2d12e8d41e\System.ServiceProcess.ni.dll
MOD - [2011.10.14 06:15:08 | 000,141,312 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\29d7091f6eab0ec61c4eb625ed221b73\System.Configuration.Install.ni.dll
MOD - [2011.10.14 06:13:14 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\bce0720436dc6cb76006377f295ea365\System.Configuration.ni.dll
MOD - [2011.10.14 06:08:34 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\70cacc44f0b4257f6037eda7a59a0aeb\System.Xml.ni.dll
MOD - [2011.10.14 06:03:50 | 007,950,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\af39f6e644af02873b9bae319f2bfb13\System.ni.dll
MOD - [2011.10.14 06:03:36 | 000,061,440 | ---- | M] () -- c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\App_Web_qpzgfuo8.dll
MOD - [2011.10.14 06:03:31 | 000,004,096 | ---- | M] () -- c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\App_global.asax.-ilzzekx.dll
MOD - [2011.10.14 06:03:09 | 011,490,816 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\ca87ba84221991839abbe7d4bc9c6721\mscorlib.ni.dll
MOD - [2011.10.13 21:15:30 | 002,048,000 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll
MOD - [2011.10.13 21:15:29 | 003,182,592 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
MOD - [2011.10.13 21:15:27 | 002,933,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2011.10.13 21:15:26 | 000,425,984 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
MOD - [2011.10.13 21:15:17 | 000,626,688 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
MOD - [2011.10.13 21:15:10 | 000,749,568 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
MOD - [2011.10.13 21:15:08 | 000,114,688 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
MOD - [2011.10.13 21:14:59 | 000,077,824 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
MOD - [2011.10.13 21:14:58 | 000,835,584 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
MOD - [2011.10.13 21:14:44 | 005,242,880 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
MOD - [2010.06.11 22:55:25 | 005,967,872 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
MOD - [2010.06.11 22:55:19 | 000,110,592 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMDiagnostics.dll
MOD - [2009.11.03 18:14:08 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\UltiDevCassiniHttpRequestProcessor2.0\2.1.4.3__cc16caed94880aaa\UltiDevCassiniHttpRequestProcessor2.0.dll
MOD - [2009.10.24 15:31:06 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll
MOD - [2009.10.24 15:30:57 | 000,593,920 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Web.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Web.resources.dll
MOD - [2008.10.20 21:18:26 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe
MOD - [2007.04.13 08:20:22 | 000,097,432 | ---- | M] () -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe
========== Win32 Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- -- (NMIndexingService)
SRV - File not found [On_Demand | Stopped] -- -- (NBService)
SRV - File not found [On_Demand | Stopped] -- -- (McComponentHostService)
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [Auto | Stopped] -- -- (BarDiscover Service)
SRV - File not found [Auto | Stopped] -- -- (avast! Antivirus)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011.08.09 16:38:38 | 000,328,536 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe -- (AdvancedSystemCareService)
SRV - [2009.03.31 09:39:36 | 000,233,472 | ---- | M] (Teruten) [Auto | Running] -- C:\WINDOWS\system32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2008.10.20 21:18:26 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU)
SRV - [2008.04.07 09:17:30 | 000,430,592 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2007.04.13 08:20:22 | 000,097,432 | ---- | M] () [Auto | Running] -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe -- (IJPLMSVC)
SRV - [2007.02.07 22:06:10 | 000,049,152 | ---- | M] (UltiDev LLC) [Auto | Running] -- C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe -- (UltiDev Cassini Web Server for ASP.NET 2.0)
========== Driver Services (SafeList) ==========
DRV - [2010.02.04 05:21:49 | 000,108,032 | R--- | M] (QUALCOMM Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smhwser.sys -- (smhwser) USB Device for Legacy Serial Communication (Normal)
DRV - [2010.01.14 00:02:28 | 000,100,864 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smhwdev.sys -- (smhwdev) SmartPhone dummy USB PNP Device (Normal)
DRV - [2009.12.24 09:00:40 | 000,025,728 | R--- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smhwadb.sys -- (androidusb)
DRV - [2009.11.30 09:02:35 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009.11.16 17:33:38 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf)
DRV - [2009.07.10 05:36:18 | 004,407,808 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2009.03.31 09:39:36 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2009.03.20 10:01:26 | 000,121,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdm.sys -- (ss_bmdm)
DRV - [2009.03.20 10:01:26 | 000,090,112 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM)
DRV - [2009.03.20 10:01:26 | 000,014,976 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter)
DRV - [2008.10.09 15:42:42 | 000,017,408 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\KMWDFILTER.sys -- (KMWDFILTER)
DRV - [2008.04.13 19:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2007.09.17 15:53:26 | 000,021,632 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2005.08.30 00:49:38 | 000,094,000 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssm_mdm.sys -- (ssm_mdm)
DRV - [2005.08.30 00:49:34 | 000,008,336 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssm_mdfl.sys -- (ssm_mdfl)
DRV - [2005.08.30 00:47:38 | 000,058,320 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssm_bus.sys -- (ssm_bus) SAMSUNG Mobile USB Device II 1.0 driver (WDM)
DRV - [2004.08.03 23:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2003.12.19 13:07:50 | 000,541,548 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2003.12.11 16:54:14 | 000,391,424 | ---- | M] (Sensaura Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcxsens.sys -- (ALCXSENS)
DRV - [2002.12.05 05:01:00 | 000,241,664 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvapu.sys -- (nvnforce) Service for NVIDIA(R) nForce(TM)
DRV - [2002.12.05 05:01:00 | 000,013,056 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvax.sys -- (nvax) Service for NVIDIA(R) nForce(TM)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60076
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qip.ru/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search13.net/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.seznam.cz/ [binary data]
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1060933
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.seznam.cz/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search13.net/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search13.net/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "Softonic-Eng7 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.winamp.com/search/search? ... 011&query="
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Ask.com"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://ahoolly.com"
FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.12.2.16749
FF - prefs.js..extensions.enabledItems: wrc@avast.com:6.0.1203
FF - prefs.js..extensions.enabledItems: {AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}:1.0
FF - prefs.js..extensions.enabledItems: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.3.3.2
FF - prefs.js..extensions.enabledItems: {33e0daa6-3af3-d8b5-6752-10e949c61516}:1.1
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.9.3
FF - prefs.js..extensions.enabledItems: {6236BA26-C117-4007-928C-DE0716C7FA82}:1.0.2
FF - prefs.js..extensions.enabledItems: {6236BA26-C117-4007-928C-DE0716C7FA99}:1.0.1
FF - prefs.js..extensions.enabledItems: {9CE11043-9A15-4207-A565-0C94C42D590D}:2.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {8675f4b3-2f19-11ed-2d6b-0800600c0a16}:1.0
FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.6.2
FF - prefs.js..extensions.enabledItems: {63414328-3ab4-2c84-6c41-5a473c4b2ff7}:1.0
FF - prefs.js..extensions.enabledItems: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}:3.5.0.12
FF - prefs.js..extensions.enabledItems: {6236BA26-C117-4007-928C-DE0716C7FA80}:1.0.24
FF - prefs.js..extensions.enabledItems: {EEE6C361-6118-11DC-9C72-001320C79847}:1.0.0.10
FF - prefs.js..extensions.enabledItems: {7645f4b1-1f19-13dd-2d6b-0200600c2a56}:1.0
FF - prefs.js..extensions.enabledItems: {6236BA26-C117-4007-928C-DE0716C7FA96}:1.0.6
FF - prefs.js..extensions.enabledItems: {8675f4b3-2f19-11ed-2d6b-0800600c0a17}:1.0
FF - prefs.js..extensions.enabledItems: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.16.1
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
FF - prefs.js..keyword.URL: "http://websearch.ask.com/redirect?clien ... YYYYCZ&&q="
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "Crawler Search"
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "http://www.crawler.com/search/dispatche ... 60076&qkw="
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.11.17 18:54:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.11.17 18:54:25 | 000,000,000 | ---D | M]
[2009.10.24 15:03:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Extensions
[2011.12.08 14:32:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions
[2011.07.18 18:07:10 | 000,000,000 | ---D | M] ("Winamp Toolbar") -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2011.07.18 18:06:42 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.03.13 20:19:23 | 000,000,000 | ---D | M] (Complitly - Speed up your search with your personal search suggestions tool) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}
[2011.12.08 14:32:16 | 000,000,000 | ---D | M] (Softonic-Eng7 Community Toolbar) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}
[2010.02.07 15:28:45 | 000,000,000 | ---D | M] ("Express Tab") -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{6236BA26-C117-4007-928C-DE0716C7FA82}
[2010.02.07 15:28:45 | 000,000,000 | ---D | M] (FBFan) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{6236BA26-C117-4007-928C-DE0716C7FA99}
[2010.06.09 18:48:34 | 000,000,000 | ---D | M] (QAssistant) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{63414328-3ab4-2c84-6c41-5a473c4b2ff7}
[2010.03.20 22:57:59 | 000,000,000 | ---D | M] (U Flv) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
[2011.03.18 15:46:17 | 000,000,000 | ---D | M] (KFD Flv) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{8675f4b3-2f19-11ed-2d6b-0800600c0a16}
[2011.06.14 15:21:26 | 000,000,000 | ---D | M] (VFD Flv) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{8675f4b3-2f19-11ed-2d6b-0800600c0a17}
[2011.11.23 10:45:13 | 000,000,000 | ---D | M] (Feedback module) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{8675f4b3-2f19-11ed-2d6b-0800600c0a19}
[2011.11.23 10:44:47 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011.12.08 14:32:22 | 000,000,000 | ---D | M] (BS Player Community Toolbar) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
[2011.07.18 18:06:33 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com
[2011.07.18 18:06:41 | 000,000,000 | ---D | M] (Personas) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\personas@christopher.beard
[2011.12.03 18:25:36 | 000,000,000 | ---D | M] ("Ask Toolbar") -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com
[2011.06.24 15:05:07 | 000,002,362 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\aol-web-search.xml
[2011.03.13 20:19:13 | 000,001,735 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\ask.uk.xml
[2011.12.13 15:42:22 | 000,002,399 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\askcom.xml
[2010.06.08 10:28:50 | 000,000,929 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\conduit.xml
[2009.12.22 13:43:59 | 000,001,331 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\crawlersrch.xml
[2010.01.03 21:53:36 | 000,003,915 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\sweetim.xml
[2010.03.10 11:35:16 | 000,001,586 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\web-search.xml
[2011.11.17 18:54:31 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.06.22 19:33:16 | 000,000,000 | ---D | M] (Firefox security) -- C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}
[2010.07.10 19:38:17 | 000,000,000 | ---D | M] (BarDiscover) -- C:\Program Files\Mozilla Firefox\extensions\{AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{6236BA26-C117-4007-928C-DE0716C7FA80}.XPI
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{6236BA26-C117-4007-928C-DE0716C7FA96}.XPI
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{B9DB16A4-6EDC-47EC-A1F4-B86292ED211D}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{EEE6C361-6118-11DC-9C72-001320C79847}.XPI
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\PERSONAS@CHRISTOPHER.BEARD
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\TOOLBAR@ASK.COM
[2011.11.05 08:07:56 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2008.11.11 08:38:54 | 000,663,552 | ---- | M] (BitComet) -- C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll
[2011.02.02 21:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2005.04.27 21:10:49 | 000,102,400 | ---- | M] (RealNetworks) -- C:\Program Files\mozilla firefox\plugins\npracplug.dll
[2009.09.21 10:24:16 | 000,001,329 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\crawlersrch.bak
[2009.09.21 10:24:16 | 000,001,329 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\crawlersrch.xml
[2011.11.05 05:51:00 | 000,002,208 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
[2011.11.05 05:51:00 | 000,000,638 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
[2011.11.05 05:51:00 | 000,001,367 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
[2011.11.05 05:51:00 | 000,000,654 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
[2011.11.05 05:51:00 | 000,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-cz.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\15.0.874.121\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\15.0.874.121\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\15.0.874.121\pdf.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: BitCometAgent (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll
CHR - plugin: downloadUpdater (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdnu.dll
CHR - plugin: downloadUpdater2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdnupdater2.dll
CHR - plugin: RealArcade Mozilla Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npracplug.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikac\u00ED\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: CANON iMAGE GATEWAY Album Plugin Utility (Enabled) = C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
CHR - plugin: Picasa (Enabled) = C:\Program Files\Google\Picasa3\npPicasa3.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Complitly plugin for chrome = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.1_0\
O1 HOSTS File: ([2004.08.18 13:00:00 | 000,000,737 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AC-Pro) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\AutocompletePro.dll (SimplyGen)
O2 - BHO: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll File not found
O2 - BHO: (QIPBHO Class) - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll (qip.ru)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll File not found
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\Toolbar\WebBrowser: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\Toolbar\WebBrowser: (Softonic-Eng7 Toolbar) - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui File not found
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [MDS_Menu] C:\Program Files\Olympus\ib\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.)
O4 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004..\Run: [Advanced SystemCare 4] C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe (IObit)
O4 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004..\Run: [Olympus ib] C:\Program Files\Olympus\ib\olycamdetect.exe (OLYMPUS IMAGING CORP.)
O4 - Startup: C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Nabídka Start\Programy\Po spuštění\Shrink Pic.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: RTHDBPL = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc\lsass.exe
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O8 - Extra context menu item: &Search - ?p=GRxdm066YYCZ File not found
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O9 - Extra Button: StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm ()
O9 - Extra 'Tools' menuitem : StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm ()
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/200 ... oader5.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shoc ... tor/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab (Reg Error: Key error.)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/200 ... ader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BB400F44-20A3-409E-96E1-CD5935F1C87A}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008.08.17 15:22:34 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{a617a21f-a58b-11e0-84ac-004f4e60d278}\Shell - "" = AutoRun
O33 - MountPoints2\{a617a21f-a58b-11e0-84ac-004f4e60d278}\Shell\AutoRun\command - "" = E:\PcOptions.exe
O33 - MountPoints2\{a617a226-a58b-11e0-84ac-004f4e60d278}\Shell - "" = AutoRun
O33 - MountPoints2\{a617a226-a58b-11e0-84ac-004f4e60d278}\Shell\AutoRun\command - "" = E:\PcOptions.exe
O33 - MountPoints2\{c2679be6-d1f2-11dd-9363-004f4e60d278}\Shell - "" = AutoRun
O33 - MountPoints2\{c2679be6-d1f2-11dd-9363-004f4e60d278}\Shell\AutoRun\command - "" = E:\start.exe
O33 - MountPoints2\{d0a56e82-f4f1-11dd-8047-004f4e60d278}\Shell\AutoRun\command - "" = E:\sdc.bat
O33 - MountPoints2\{d0a56e82-f4f1-11dd-8047-004f4e60d278}\Shell\explore\Command - "" = E:\sdc.bat
O33 - MountPoints2\{d0a56e82-f4f1-11dd-8047-004f4e60d278}\Shell\open\Command - "" = E:\sdc.bat
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
CREATERESTOREPOINT
Error creating restore point.
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - File not found
NetSvcs: HidServ - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FMVC - C:\WINDOWS\System32\fmcodec.DLL (Fox Magic Software)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.VP60 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2011.12.13 16:46:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Advanced SystemCare 4
[2011.12.13 16:45:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit
[2011.12.13 16:45:56 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2011.12.13 16:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Advanced SystemCare Pro 4.1.0.235
[2011.12.13 16:30:09 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.12.13 16:30:09 | 000,000,000 | ---D | C] -- C:\rsit
[2011.12.13 16:20:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011.12.13 16:15:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Spybot - Search & Destroy
[2011.12.13 15:58:09 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Recent
[2011.12.13 15:49:28 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011.12.13 15:46:20 | 000,000,000 | ---D | C] -- C:\Nová složka
[2008.11.11 16:20:25 | 000,774,144 | ---- | C] (RealNetworks, Inc.) -- C:\Program Files\RngInterstitial.dll
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2011.12.13 17:24:50 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2011.12.13 17:11:35 | 000,000,280 | ---- | M] () -- C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
[2011.12.13 17:07:45 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.12.13 17:07:42 | 536,403,968 | -HS- | M] () -- C:\hiberfil.sys
[2011.12.13 16:47:41 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\ASC4_AutoCare.job
[2011.12.13 16:46:08 | 000,000,896 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Quick Care.lnk
[2011.12.13 16:46:06 | 000,000,874 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Advanced SystemCare 4.lnk
[2011.12.13 16:45:00 | 000,001,078 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job
[2011.12.13 16:45:00 | 000,001,026 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job
[2011.12.13 16:15:11 | 000,000,933 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Spybot - Search & Destroy.lnk
[2011.12.13 16:11:57 | 000,002,504 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011.12.13 16:01:05 | 000,000,244 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2011.12.13 15:22:09 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\CCleaner.job
[2011.12.13 11:17:09 | 000,002,539 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Microsoft Word.lnk
[2011.12.12 19:06:23 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011.12.12 15:15:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
511,49 Mb Total Physical Memory | 176,48 Mb Available Physical Memory | 34,50% Memory free
3,40 Gb Paging File | 3,11 Gb Available in Paging File | 91,47% Paging File free
Paging file location(s): C:\pagefile.sys 3000 3000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 76,32 Gb Total Space | 18,69 Gb Free Space | 24,48% Space Free | Partition Type: NTFS
Computer Name: BRNAKOVI-F6C11A | User Name: Kika a Eva | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - [2011.12.13 17:20:50 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads\OTL.exe
PRC - [2011.11.15 06:39:56 | 001,036,344 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
PRC - [2011.08.23 21:20:18 | 000,887,976 | ---- | M] (Ask) -- C:\Program Files\Ask.com\Updater\Updater.exe
PRC - [2011.08.09 16:38:38 | 000,328,536 | ---- | M] (IObit) -- C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
PRC - [2009.11.30 09:02:58 | 000,102,400 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
PRC - [2009.10.30 19:45:22 | 000,093,376 | ---- | M] (OLYMPUS IMAGING CORP.) -- C:\Program Files\Olympus\ib\olycamdetect.exe
PRC - [2009.03.31 09:39:36 | 000,233,472 | ---- | M] (Teruten) -- C:\WINDOWS\system32\FsUsbExService.Exe
PRC - [2008.10.20 21:18:26 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe
PRC - [2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007.04.13 08:20:22 | 000,097,432 | ---- | M] () -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe
PRC - [2007.04.03 17:50:00 | 001,603,152 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
PRC - [2007.02.07 22:06:10 | 000,049,152 | ---- | M] (UltiDev LLC) -- C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe
PRC - [2007.02.04 12:02:14 | 000,079,400 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
PRC - [2003.12.19 10:53:18 | 000,065,024 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\soundman.exe
========== Modules (No Company Name) ==========
MOD - [2011.11.15 06:39:54 | 000,420,920 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\ppgooglenaclpluginchrome.dll
MOD - [2011.11.15 06:39:53 | 003,702,840 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\pdf.dll
MOD - [2011.11.15 06:38:16 | 000,122,952 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\avutil-51.dll
MOD - [2011.11.15 06:38:15 | 000,222,280 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\avformat-53.dll
MOD - [2011.11.15 06:38:14 | 001,746,504 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\avcodec-53.dll
MOD - [2011.11.15 03:36:18 | 008,593,056 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\Application\15.0.874.121\gcswf32.dll
MOD - [2011.10.14 06:15:40 | 011,800,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\60df958ca96c9b8945f836759b6abd34\System.Web.ni.dll
MOD - [2011.10.14 06:15:25 | 000,212,992 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\abef85f2fb8ba830eda73e2d12e8d41e\System.ServiceProcess.ni.dll
MOD - [2011.10.14 06:15:08 | 000,141,312 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\29d7091f6eab0ec61c4eb625ed221b73\System.Configuration.Install.ni.dll
MOD - [2011.10.14 06:13:14 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\bce0720436dc6cb76006377f295ea365\System.Configuration.ni.dll
MOD - [2011.10.14 06:08:34 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\70cacc44f0b4257f6037eda7a59a0aeb\System.Xml.ni.dll
MOD - [2011.10.14 06:03:50 | 007,950,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\af39f6e644af02873b9bae319f2bfb13\System.ni.dll
MOD - [2011.10.14 06:03:36 | 000,061,440 | ---- | M] () -- c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\App_Web_qpzgfuo8.dll
MOD - [2011.10.14 06:03:31 | 000,004,096 | ---- | M] () -- c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\App_global.asax.-ilzzekx.dll
MOD - [2011.10.14 06:03:09 | 011,490,816 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\ca87ba84221991839abbe7d4bc9c6721\mscorlib.ni.dll
MOD - [2011.10.13 21:15:30 | 002,048,000 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll
MOD - [2011.10.13 21:15:29 | 003,182,592 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
MOD - [2011.10.13 21:15:27 | 002,933,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2011.10.13 21:15:26 | 000,425,984 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
MOD - [2011.10.13 21:15:17 | 000,626,688 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
MOD - [2011.10.13 21:15:10 | 000,749,568 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
MOD - [2011.10.13 21:15:08 | 000,114,688 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
MOD - [2011.10.13 21:14:59 | 000,077,824 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
MOD - [2011.10.13 21:14:58 | 000,835,584 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
MOD - [2011.10.13 21:14:44 | 005,242,880 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
MOD - [2010.06.11 22:55:25 | 005,967,872 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
MOD - [2010.06.11 22:55:19 | 000,110,592 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMDiagnostics.dll
MOD - [2009.11.03 18:14:08 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\UltiDevCassiniHttpRequestProcessor2.0\2.1.4.3__cc16caed94880aaa\UltiDevCassiniHttpRequestProcessor2.0.dll
MOD - [2009.10.24 15:31:06 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll
MOD - [2009.10.24 15:30:57 | 000,593,920 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Web.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Web.resources.dll
MOD - [2008.10.20 21:18:26 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe
MOD - [2007.04.13 08:20:22 | 000,097,432 | ---- | M] () -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe
========== Win32 Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- -- (NMIndexingService)
SRV - File not found [On_Demand | Stopped] -- -- (NBService)
SRV - File not found [On_Demand | Stopped] -- -- (McComponentHostService)
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [Auto | Stopped] -- -- (BarDiscover Service)
SRV - File not found [Auto | Stopped] -- -- (avast! Antivirus)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011.08.09 16:38:38 | 000,328,536 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe -- (AdvancedSystemCareService)
SRV - [2009.03.31 09:39:36 | 000,233,472 | ---- | M] (Teruten) [Auto | Running] -- C:\WINDOWS\system32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2008.10.20 21:18:26 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU)
SRV - [2008.04.07 09:17:30 | 000,430,592 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2007.04.13 08:20:22 | 000,097,432 | ---- | M] () [Auto | Running] -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe -- (IJPLMSVC)
SRV - [2007.02.07 22:06:10 | 000,049,152 | ---- | M] (UltiDev LLC) [Auto | Running] -- C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe -- (UltiDev Cassini Web Server for ASP.NET 2.0)
========== Driver Services (SafeList) ==========
DRV - [2010.02.04 05:21:49 | 000,108,032 | R--- | M] (QUALCOMM Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smhwser.sys -- (smhwser) USB Device for Legacy Serial Communication (Normal)
DRV - [2010.01.14 00:02:28 | 000,100,864 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smhwdev.sys -- (smhwdev) SmartPhone dummy USB PNP Device (Normal)
DRV - [2009.12.24 09:00:40 | 000,025,728 | R--- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smhwadb.sys -- (androidusb)
DRV - [2009.11.30 09:02:35 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009.11.16 17:33:38 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf)
DRV - [2009.07.10 05:36:18 | 004,407,808 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2009.03.31 09:39:36 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2009.03.20 10:01:26 | 000,121,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdm.sys -- (ss_bmdm)
DRV - [2009.03.20 10:01:26 | 000,090,112 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM)
DRV - [2009.03.20 10:01:26 | 000,014,976 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter)
DRV - [2008.10.09 15:42:42 | 000,017,408 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\KMWDFILTER.sys -- (KMWDFILTER)
DRV - [2008.04.13 19:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2007.09.17 15:53:26 | 000,021,632 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2005.08.30 00:49:38 | 000,094,000 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssm_mdm.sys -- (ssm_mdm)
DRV - [2005.08.30 00:49:34 | 000,008,336 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssm_mdfl.sys -- (ssm_mdfl)
DRV - [2005.08.30 00:47:38 | 000,058,320 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssm_bus.sys -- (ssm_bus) SAMSUNG Mobile USB Device II 1.0 driver (WDM)
DRV - [2004.08.03 23:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2003.12.19 13:07:50 | 000,541,548 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2003.12.11 16:54:14 | 000,391,424 | ---- | M] (Sensaura Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcxsens.sys -- (ALCXSENS)
DRV - [2002.12.05 05:01:00 | 000,241,664 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvapu.sys -- (nvnforce) Service for NVIDIA(R) nForce(TM)
DRV - [2002.12.05 05:01:00 | 000,013,056 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvax.sys -- (nvax) Service for NVIDIA(R) nForce(TM)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60076
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qip.ru/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search13.net/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.seznam.cz/ [binary data]
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1060933
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.seznam.cz/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search13.net/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search13.net/
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "Softonic-Eng7 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.winamp.com/search/search? ... 011&query="
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Ask.com"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://ahoolly.com"
FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.12.2.16749
FF - prefs.js..extensions.enabledItems: wrc@avast.com:6.0.1203
FF - prefs.js..extensions.enabledItems: {AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}:1.0
FF - prefs.js..extensions.enabledItems: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.3.3.2
FF - prefs.js..extensions.enabledItems: {33e0daa6-3af3-d8b5-6752-10e949c61516}:1.1
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.9.3
FF - prefs.js..extensions.enabledItems: {6236BA26-C117-4007-928C-DE0716C7FA82}:1.0.2
FF - prefs.js..extensions.enabledItems: {6236BA26-C117-4007-928C-DE0716C7FA99}:1.0.1
FF - prefs.js..extensions.enabledItems: {9CE11043-9A15-4207-A565-0C94C42D590D}:2.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {8675f4b3-2f19-11ed-2d6b-0800600c0a16}:1.0
FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.6.2
FF - prefs.js..extensions.enabledItems: {63414328-3ab4-2c84-6c41-5a473c4b2ff7}:1.0
FF - prefs.js..extensions.enabledItems: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}:3.5.0.12
FF - prefs.js..extensions.enabledItems: {6236BA26-C117-4007-928C-DE0716C7FA80}:1.0.24
FF - prefs.js..extensions.enabledItems: {EEE6C361-6118-11DC-9C72-001320C79847}:1.0.0.10
FF - prefs.js..extensions.enabledItems: {7645f4b1-1f19-13dd-2d6b-0200600c2a56}:1.0
FF - prefs.js..extensions.enabledItems: {6236BA26-C117-4007-928C-DE0716C7FA96}:1.0.6
FF - prefs.js..extensions.enabledItems: {8675f4b3-2f19-11ed-2d6b-0800600c0a17}:1.0
FF - prefs.js..extensions.enabledItems: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.16.1
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
FF - prefs.js..keyword.URL: "http://websearch.ask.com/redirect?clien ... YYYYCZ&&q="
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "Crawler Search"
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "http://www.crawler.com/search/dispatche ... 60076&qkw="
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.11.17 18:54:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.11.17 18:54:25 | 000,000,000 | ---D | M]
[2009.10.24 15:03:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Extensions
[2011.12.08 14:32:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions
[2011.07.18 18:07:10 | 000,000,000 | ---D | M] ("Winamp Toolbar") -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2011.07.18 18:06:42 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.03.13 20:19:23 | 000,000,000 | ---D | M] (Complitly - Speed up your search with your personal search suggestions tool) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}
[2011.12.08 14:32:16 | 000,000,000 | ---D | M] (Softonic-Eng7 Community Toolbar) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}
[2010.02.07 15:28:45 | 000,000,000 | ---D | M] ("Express Tab") -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{6236BA26-C117-4007-928C-DE0716C7FA82}
[2010.02.07 15:28:45 | 000,000,000 | ---D | M] (FBFan) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{6236BA26-C117-4007-928C-DE0716C7FA99}
[2010.06.09 18:48:34 | 000,000,000 | ---D | M] (QAssistant) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{63414328-3ab4-2c84-6c41-5a473c4b2ff7}
[2010.03.20 22:57:59 | 000,000,000 | ---D | M] (U Flv) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{7645f4b1-1f19-13dd-2d6b-0200600c2a56}
[2011.03.18 15:46:17 | 000,000,000 | ---D | M] (KFD Flv) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{8675f4b3-2f19-11ed-2d6b-0800600c0a16}
[2011.06.14 15:21:26 | 000,000,000 | ---D | M] (VFD Flv) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{8675f4b3-2f19-11ed-2d6b-0800600c0a17}
[2011.11.23 10:45:13 | 000,000,000 | ---D | M] (Feedback module) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{8675f4b3-2f19-11ed-2d6b-0800600c0a19}
[2011.11.23 10:44:47 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011.12.08 14:32:22 | 000,000,000 | ---D | M] (BS Player Community Toolbar) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
[2011.07.18 18:06:33 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com
[2011.07.18 18:06:41 | 000,000,000 | ---D | M] (Personas) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\personas@christopher.beard
[2011.12.03 18:25:36 | 000,000,000 | ---D | M] ("Ask Toolbar") -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com
[2011.06.24 15:05:07 | 000,002,362 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\aol-web-search.xml
[2011.03.13 20:19:13 | 000,001,735 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\ask.uk.xml
[2011.12.13 15:42:22 | 000,002,399 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\askcom.xml
[2010.06.08 10:28:50 | 000,000,929 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\conduit.xml
[2009.12.22 13:43:59 | 000,001,331 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\crawlersrch.xml
[2010.01.03 21:53:36 | 000,003,915 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\sweetim.xml
[2010.03.10 11:35:16 | 000,001,586 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\web-search.xml
[2011.11.17 18:54:31 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.06.22 19:33:16 | 000,000,000 | ---D | M] (Firefox security) -- C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}
[2010.07.10 19:38:17 | 000,000,000 | ---D | M] (BarDiscover) -- C:\Program Files\Mozilla Firefox\extensions\{AC57FCAF-E6FC-4BE9-ADC0-D00129C4C1E7}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{6236BA26-C117-4007-928C-DE0716C7FA80}.XPI
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{6236BA26-C117-4007-928C-DE0716C7FA96}.XPI
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{B9DB16A4-6EDC-47EC-A1F4-B86292ED211D}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{EEE6C361-6118-11DC-9C72-001320C79847}.XPI
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\PERSONAS@CHRISTOPHER.BEARD
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\TOOLBAR@ASK.COM
[2011.11.05 08:07:56 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2008.11.11 08:38:54 | 000,663,552 | ---- | M] (BitComet) -- C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll
[2011.02.02 21:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2005.04.27 21:10:49 | 000,102,400 | ---- | M] (RealNetworks) -- C:\Program Files\mozilla firefox\plugins\npracplug.dll
[2009.09.21 10:24:16 | 000,001,329 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\crawlersrch.bak
[2009.09.21 10:24:16 | 000,001,329 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\crawlersrch.xml
[2011.11.05 05:51:00 | 000,002,208 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
[2011.11.05 05:51:00 | 000,000,638 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
[2011.11.05 05:51:00 | 000,001,367 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
[2011.11.05 05:51:00 | 000,000,654 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
[2011.11.05 05:51:00 | 000,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-cz.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\15.0.874.121\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\15.0.874.121\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\15.0.874.121\pdf.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: BitCometAgent (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll
CHR - plugin: downloadUpdater (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdnu.dll
CHR - plugin: downloadUpdater2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdnupdater2.dll
CHR - plugin: RealArcade Mozilla Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npracplug.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikac\u00ED\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: CANON iMAGE GATEWAY Album Plugin Utility (Enabled) = C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
CHR - plugin: Picasa (Enabled) = C:\Program Files\Google\Picasa3\npPicasa3.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Complitly plugin for chrome = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.1_0\
O1 HOSTS File: ([2004.08.18 13:00:00 | 000,000,737 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AC-Pro) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\AutocompletePro.dll (SimplyGen)
O2 - BHO: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll File not found
O2 - BHO: (QIPBHO Class) - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll (qip.ru)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll File not found
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\Toolbar\WebBrowser: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\Toolbar\WebBrowser: (Softonic-Eng7 Toolbar) - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui File not found
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [MDS_Menu] C:\Program Files\Olympus\ib\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.)
O4 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004..\Run: [Advanced SystemCare 4] C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe (IObit)
O4 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004..\Run: [Olympus ib] C:\Program Files\Olympus\ib\olycamdetect.exe (OLYMPUS IMAGING CORP.)
O4 - Startup: C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Nabídka Start\Programy\Po spuštění\Shrink Pic.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: RTHDBPL = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc\lsass.exe
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O8 - Extra context menu item: &Search - ?p=GRxdm066YYCZ File not found
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O9 - Extra Button: StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm ()
O9 - Extra 'Tools' menuitem : StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm ()
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/200 ... oader5.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shoc ... tor/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab (Reg Error: Key error.)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/200 ... ader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BB400F44-20A3-409E-96E1-CD5935F1C87A}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008.08.17 15:22:34 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{a617a21f-a58b-11e0-84ac-004f4e60d278}\Shell - "" = AutoRun
O33 - MountPoints2\{a617a21f-a58b-11e0-84ac-004f4e60d278}\Shell\AutoRun\command - "" = E:\PcOptions.exe
O33 - MountPoints2\{a617a226-a58b-11e0-84ac-004f4e60d278}\Shell - "" = AutoRun
O33 - MountPoints2\{a617a226-a58b-11e0-84ac-004f4e60d278}\Shell\AutoRun\command - "" = E:\PcOptions.exe
O33 - MountPoints2\{c2679be6-d1f2-11dd-9363-004f4e60d278}\Shell - "" = AutoRun
O33 - MountPoints2\{c2679be6-d1f2-11dd-9363-004f4e60d278}\Shell\AutoRun\command - "" = E:\start.exe
O33 - MountPoints2\{d0a56e82-f4f1-11dd-8047-004f4e60d278}\Shell\AutoRun\command - "" = E:\sdc.bat
O33 - MountPoints2\{d0a56e82-f4f1-11dd-8047-004f4e60d278}\Shell\explore\Command - "" = E:\sdc.bat
O33 - MountPoints2\{d0a56e82-f4f1-11dd-8047-004f4e60d278}\Shell\open\Command - "" = E:\sdc.bat
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
CREATERESTOREPOINT
Error creating restore point.
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - File not found
NetSvcs: HidServ - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FMVC - C:\WINDOWS\System32\fmcodec.DLL (Fox Magic Software)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.VP60 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2011.12.13 16:46:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Advanced SystemCare 4
[2011.12.13 16:45:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit
[2011.12.13 16:45:56 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2011.12.13 16:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Advanced SystemCare Pro 4.1.0.235
[2011.12.13 16:30:09 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.12.13 16:30:09 | 000,000,000 | ---D | C] -- C:\rsit
[2011.12.13 16:20:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011.12.13 16:15:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Spybot - Search & Destroy
[2011.12.13 15:58:09 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Recent
[2011.12.13 15:49:28 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011.12.13 15:46:20 | 000,000,000 | ---D | C] -- C:\Nová složka
[2008.11.11 16:20:25 | 000,774,144 | ---- | C] (RealNetworks, Inc.) -- C:\Program Files\RngInterstitial.dll
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2011.12.13 17:24:50 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2011.12.13 17:11:35 | 000,000,280 | ---- | M] () -- C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
[2011.12.13 17:07:45 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.12.13 17:07:42 | 536,403,968 | -HS- | M] () -- C:\hiberfil.sys
[2011.12.13 16:47:41 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\ASC4_AutoCare.job
[2011.12.13 16:46:08 | 000,000,896 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Quick Care.lnk
[2011.12.13 16:46:06 | 000,000,874 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Advanced SystemCare 4.lnk
[2011.12.13 16:45:00 | 000,001,078 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job
[2011.12.13 16:45:00 | 000,001,026 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job
[2011.12.13 16:15:11 | 000,000,933 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Spybot - Search & Destroy.lnk
[2011.12.13 16:11:57 | 000,002,504 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011.12.13 16:01:05 | 000,000,244 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2011.12.13 15:22:09 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\CCleaner.job
[2011.12.13 11:17:09 | 000,002,539 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Microsoft Word.lnk
[2011.12.12 19:06:23 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011.12.12 15:15:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
Re: Bezduvodne Vypinani pC
[2011.12.11 13:04:22 | 000,064,000 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.12.09 17:38:45 | 1013,295,104 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Lidice-2011.avi
[2011.12.06 17:45:37 | 000,223,508 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Rady pro zaky konajici opravnou MZ.pdf
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.12.13 17:24:50 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2011.12.13 16:47:40 | 000,000,298 | ---- | C] () -- C:\WINDOWS\tasks\ASC4_AutoCare.job
[2011.12.13 16:46:24 | 000,000,280 | ---- | C] () -- C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
[2011.12.13 16:46:08 | 000,000,896 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Quick Care.lnk
[2011.12.13 16:46:06 | 000,000,874 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Advanced SystemCare 4.lnk
[2011.12.13 16:28:55 | 536,403,968 | -HS- | C] () -- C:\hiberfil.sys
[2011.12.13 16:15:11 | 000,000,933 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Spybot - Search & Destroy.lnk
[2011.12.09 17:35:19 | 1013,295,104 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Lidice-2011.avi
[2011.12.06 17:45:45 | 000,223,508 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Rady pro zaky konajici opravnou MZ.pdf
[2011.07.03 20:28:32 | 002,530,671 | ---- | C] () -- C:\WINDOWS\System32\adb.exe
[2010.10.27 12:12:18 | 000,000,038 | ---- | C] () -- C:\WINDOWS\AviSplitter.INI
[2010.10.16 21:48:02 | 000,002,292 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ASSDraw3.cfg
[2010.09.12 15:00:30 | 000,000,037 | ---- | C] () -- C:\WINDOWS\CONTEXT.INI
[2010.08.26 17:06:18 | 000,000,060 | ---- | C] () -- C:\WINDOWS\CoolYouTubeDownloader.ini
[2010.07.27 16:35:06 | 000,000,063 | ---- | C] () -- C:\WINDOWS\mdm.ini
[2010.06.20 20:39:21 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2010.04.19 15:49:11 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2010.04.19 15:48:56 | 000,887,724 | R--- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2010.04.19 15:48:56 | 000,197,655 | R--- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2010.04.19 15:48:56 | 000,000,003 | R--- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2010.04.19 15:25:25 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2009.12.26 12:24:24 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009.11.25 18:17:23 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll
[2009.11.25 18:17:23 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys
[2009.11.25 18:16:36 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\$_hpcst$.hpc
[2009.11.16 17:33:38 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
[2009.09.08 17:57:21 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2009.08.14 15:33:33 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\LauncherAccess.dt
[2009.08.14 15:21:18 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2009.07.30 19:39:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\mngui.INI
[2009.06.07 12:27:20 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\vbzlib1.dll
[2009.05.13 19:43:12 | 000,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2009.04.20 20:17:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009.02.18 18:55:20 | 000,294,912 | ---- | C] () -- C:\WINDOWS\System32\ATIODE.exe
[2009.02.07 09:49:02 | 000,064,000 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.02.05 19:03:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009.02.05 18:51:59 | 000,000,164 | ---- | C] () -- C:\WINDOWS\avrack.ini
[2009.02.05 18:30:45 | 000,006,548 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2009.02.05 17:50:24 | 000,000,146 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\fusioncache.dat
[2009.02.05 15:43:22 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI
[2009.02.05 15:26:29 | 000,155,648 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll
[2009.02.05 15:26:13 | 000,001,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\alcxinit.dat
[2009.02.05 15:25:36 | 000,038,559 | ---- | C] () -- C:\WINDOWS\System32\En.ini
[2009.02.05 15:25:36 | 000,008,828 | ---- | C] () -- C:\WINDOWS\System32\Autorun.ini
[2009.02.05 15:25:28 | 000,000,017 | ---- | C] () -- C:\WINDOWS\System32\auto.ini
[2009.02.05 14:16:02 | 000,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009.02.04 21:56:28 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2009.02.04 21:54:55 | 000,138,056 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009.02.04 21:30:27 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009.02.04 21:21:44 | 000,021,812 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009.02.03 21:52:02 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ATIODCLI.exe
[2004.08.18 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004.08.18 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004.08.18 13:00:00 | 000,441,552 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004.08.18 13:00:00 | 000,437,986 | ---- | C] () -- C:\WINDOWS\System32\perfh005.dat
[2004.08.18 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004.08.18 13:00:00 | 000,269,162 | ---- | C] () -- C:\WINDOWS\System32\perfi005.dat
[2004.08.18 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004.08.18 13:00:00 | 000,082,800 | ---- | C] () -- C:\WINDOWS\System32\perfc005.dat
[2004.08.18 13:00:00 | 000,071,488 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004.08.18 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2004.08.18 13:00:00 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\perfd005.dat
[2004.08.18 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004.08.18 13:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004.08.18 13:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004.08.18 13:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004.08.18 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004.04.23 22:02:10 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.exe
[2003.02.19 01:26:28 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.dll
[1999.01.22 21:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
========== LOP Check ==========
[2011.12.13 16:12:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Alwil Software
[2009.08.30 22:35:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Azureus
[2010.07.10 19:38:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\BarDiscover
[2009.02.05 15:36:57 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CanonBJ
[2011.12.05 07:11:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CanonIJPLM
[2010.08.26 17:06:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CoolYouTubeDownloader
[2010.03.06 20:43:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Electronic Arts
[2009.02.06 15:11:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ICQ
[2009.07.22 14:25:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\LightScribe
[2010.02.05 16:33:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\PC Suite
[2009.02.05 15:43:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ScanSoft
[2010.12.28 10:28:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Temp
[2009.11.03 18:13:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\UltiDev
[2010.09.25 20:10:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Aegisub
[2009.08.30 22:40:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Azureus
[2011.11.22 20:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer
[2009.02.05 20:29:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer Pro
[2009.02.10 16:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canneverbe_Limited
[2011.11.06 15:09:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canon
[2011.03.13 20:19:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly
[2010.08.26 17:06:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\CoolYouTubeDownloader
[2011.01.06 18:45:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\eBookPro6
[2009.04.13 08:33:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ImgBurn
[2011.12.13 16:46:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit
[2009.11.25 18:20:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PC Suite
[2011.10.27 17:41:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PhotoScape
[2011.12.11 10:45:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PriceGong
[2010.06.22 18:33:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\QIP
[2010.10.16 22:37:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Samsung
[2009.02.05 15:43:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ScanSoft
[2010.06.24 06:24:00 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc
[2009.07.30 19:37:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Teleca
[2010.04.27 16:48:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Uniblue
[2010.08.24 13:54:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent
[2010.08.25 21:09:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\VitySoft
[2009.02.07 20:06:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Windows Search
[2011.06.06 20:08:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\YouTube Downloader
[2011.12.13 16:02:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Zoner
[2011.01.25 18:02:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Canon
[2009.12.10 18:41:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\PC Suite
[2010.12.28 10:39:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\PriceGong
[2011.11.08 10:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Samsung
[2011.11.17 18:52:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\shrink_pic
[2009.10.24 18:04:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Spyware Terminator
[2009.07.31 18:45:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Teleca
[2009.02.05 19:01:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Windows Desktop Search
[2011.12.12 15:15:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
[2011.12.13 16:47:41 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_AutoCare.job
[2011.12.13 17:11:35 | 000,000,280 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job
[2011.12.13 15:22:09 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\CCleaner.job
[2011.12.13 16:01:05 | 000,000,244 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
========== Purity Check ==========
========== Custom Scans ==========
< >
< >
< MD5 for: ATAPI.SYS >
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 18:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008.04.13 18:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0031\DriverFiles\i386\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 04:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 04:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2004.08.18 13:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
< MD5 for: CDROM.SYS >
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2009.12.22 19:39:20 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\system32\dllcache\cdrom.sys
[2004.08.18 13:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2004.08.18 13:00:00 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: HAL.DLL >
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.13 19:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2008.04.13 19:31:28 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\HAL.DLL
[2004.08.18 13:00:00 | 000,131,968 | ---- | M] (Microsoft Corporation) MD5=F9A0F579FC18036FFDD9E26E0D268CCD -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll
< MD5 for: SCECLI.DLL >
[2004.08.18 13:00:00 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SVCHOST.EXE >
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.18 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
< MD5 for: TCPIP.SYS >
[2008.06.20 11:45:13 | 000,360,320 | ---- | M] (Microsoft Corporation) MD5=2A5554FC5B1E04E131230E3CE035C3F9 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.06.20 11:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2008.04.13 20:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.18 13:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
< MD5 for: WINLOGON.EXE >
[2004.08.18 13:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 04:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 04:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< >
< %systemroot%*.* /U /s >
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[20 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[7 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[2 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\*.tmp files -> C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\*.tmp -> ]
[1 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\*.tmp files -> C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\*.tmp -> ]
[3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[4 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ]
[1 C:\WINDOWS\Temp\_avast_\*.tmp files -> C:\WINDOWS\Temp\_avast_\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2010.05.27 10:10:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Adobe
[2010.09.25 20:10:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Aegisub
[2009.07.22 14:26:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Ahead
[2009.08.30 22:40:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Azureus
[2011.11.22 20:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer
[2009.02.05 20:29:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer Pro
[2009.02.10 16:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canneverbe_Limited
[2011.11.06 15:09:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canon
[2011.03.13 20:19:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly
[2010.08.26 17:06:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\CoolYouTubeDownloader
[2010.05.22 19:44:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\DivX
[2011.07.18 18:03:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\dvdcss
[2011.01.06 18:45:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\eBookPro6
[2009.02.15 10:37:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Google
[2009.02.04 21:33:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Identities
[2009.04.13 08:33:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ImgBurn
[2011.12.13 16:46:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit
[2010.05.27 10:10:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Macromedia
[2009.04.13 08:35:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Media Player Classic
[2011.02.22 16:59:40 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Microsoft
[2009.02.05 14:08:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Microsoft Web Folders
[2009.10.24 15:03:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla
[2009.11.25 18:20:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PC Suite
[2011.10.27 17:41:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PhotoScape
[2011.12.11 10:45:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PriceGong
[2010.06.22 18:33:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\QIP
[2010.10.16 22:37:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Samsung
[2009.02.05 15:43:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ScanSoft
[2011.11.30 17:07:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Skype
[2011.11.30 16:07:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\skypePM
[2009.08.30 17:23:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Sun
[2010.06.24 06:24:00 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc
[2009.07.30 19:37:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Teleca
[2011.04.26 21:09:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3
[2010.04.27 16:48:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Uniblue
[2010.08.24 13:54:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent
[2010.08.25 21:09:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\VitySoft
[2011.12.11 20:42:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\vlc
[2009.02.07 20:06:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Windows Search
[2009.02.06 06:09:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\WinRAR
[2011.06.06 20:08:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\YouTube Downloader
[2011.12.13 16:02:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Zoner
< %APPDATA%\*.exe /s >
[2009.08.11 20:21:26 | 000,087,552 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 20:21:30 | 000,090,112 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 13:52:04 | 000,697,690 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\AC3 Filter\unins000.exe
[2010.02.23 16:01:52 | 001,185,871 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\FFDShow\unins000.exe
[2010.08.14 09:42:54 | 000,113,152 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 09:45:10 | 000,358,400 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 09:42:06 | 000,137,728 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 14:30:22 | 000,042,305 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\Haali media splitter\uninstall.exe
[2011.02.27 18:10:40 | 000,091,128 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\KeepMeUpdated.exe
[2011.02.27 18:10:40 | 000,091,128 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\64\KeepMeUpdated.exe
[2009.07.19 18:31:24 | 001,915,520 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Macromedia\Flash Player\www.macromedia.com\bin\fpupdateax\fpupdateax.exe
[2009.11.03 18:13:30 | 000,003,638 | R--- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Microsoft\Installer\{40247AAC-AB0D-449C-882F-90401C3351E8}\_69525f90.exe
[2009.12.17 19:36:37 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
[2011.11.28 11:36:17 | 003,623,592 | ---- | M] (Ask) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\askToolbar.exe
[2009.11.30 08:58:33 | 089,289,872 | ---- | M] (Samsung Electronics Co., Ltd. ) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Samsung\New PC Studio\LiveUpdate\Setup_For_Full_Update_IH2_6_4.exe
[2007.10.23 08:27:20 | 000,110,592 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\0572930A289112A1\cleanup.exe
[2008.05.02 09:41:48 | 003,493,888 | ---- | M] (SanDisk Corporation) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\0572930A289112A1\Launchpad Removal.exe
[2008.05.04 15:02:26 | 004,603,904 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\0572930A289112A1\LaunchPad.exe
[2007.10.23 08:44:48 | 000,054,584 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\0572930A289112A1\U3AccessGrant.exe
[2007.10.23 08:27:20 | 000,110,592 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\temp\cleanup.exe
[2008.05.02 09:41:48 | 003,493,888 | -H-- | M] (SanDisk Corporation) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\temp\Launchpad Removal.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job >
[2011.12.12 15:15:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
[2011.12.13 16:47:41 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_AutoCare.job
[2011.12.13 17:11:35 | 000,000,280 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job
[2011.12.13 15:22:09 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\CCleaner.job
[2011.12.13 16:45:00 | 000,001,026 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job
[2011.12.13 16:45:00 | 000,001,078 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job
[2011.12.13 16:01:05 | 000,000,244 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2009.02.04 21:54:12 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2009.02.04 21:54:12 | 000,638,976 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2009.02.04 21:54:12 | 000,466,944 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< %systemroot%\system32\*.dll /lockedfiles >
[3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2011.12.13 17:36:22 | 000,002,504 | ---- | M] () -- C:\WINDOWS\system32\CONFIG.NT
[3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 04:22:17 | 000,015,360 | ---- | M] (Microsoft Corporation)
"AutoStartNPSAgent" = C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe -- [2009.11.30 09:02:58 | 000,102,400 | ---- | M] (Samsung Electronics Co., Ltd.)
"Olympus ib" = "C:\Program Files\Olympus\ib\olycamdetect.exe" /Startup -- [2009.10.30 19:45:22 | 000,093,376 | ---- | M] (OLYMPUS IMAGING CORP.)
"Google Update" = "C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c -- [2011.07.28 18:23:54 | 000,136,176 | ---- | M] (Google Inc.)
"Advanced SystemCare 4" = C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe -- [2011.08.09 16:56:40 | 000,417,112 | ---- | M] (IObit)
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs
< >
< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2011.12.13 17:24:50 | 000,000,512 | ---- | M] () MD5=21D1B2C60B1057BC7B5DDDE9E3BC38FD -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2010.10.16 22:38:24 | 000,000,000 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\CT2405280\feed\http___crackle_com_rss_media_sxsw_featured_rss_history.xml
[2010.10.16 22:38:24 | 000,000,000 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\CT2405280\feed\http___crackle_com_rss_media_sxsw_featured_rss_structured.xml
[2010.12.27 13:21:17 | 000,001,055 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Softonic-Eng7\Rss\http___crackle_com_rss_media_sxsw_featured_rss.xml
[2009.12.16 04:22:58 | 000,062,238 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\share\gimp\2.0\patterns\cracked.pat
[2010.12.28 10:39:41 | 000,001,055 | ---- | M] () -- \Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Softonic-Eng7\Rss\http___crackle_com_rss_media_sxsw_featured_rss.xml
[2008.07.11 21:26:10 | 006,791,965 | ---- | M] () -- \Nová složka\HUDBA\Hudba\MEGAMIX\dR.crack feat.venusa-Pod mrakom smutku.mp3
[2008.07.11 21:26:10 | 006,791,965 | ---- | M] () -- \Nová složka\HUDBA\CHATA-MIX\dR.crack feat.venusa-Pod mrakom smutku.mp3
[2008.12.07 10:14:04 | 000,000,099 | ---- | M] () -- \old\Kika a Eva\Cookies\kika_a_eva@crackle[2].txt
[2009.01.02 00:52:06 | 000,062,238 | ---- | M] () -- \Program Files\GIMP-2.0\share\gimp\2.0\patterns\cracked.pat
< *keygen* /s >
< *loader* /s >
[2011.03.13 20:19:02 | 000,001,676 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Free YouTube Downloader\Free YouTube Downloader.lnk
[2010.08.26 17:07:21 | 000,000,031 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\CoolYouTubeDownloader\CoolYouTubeDownloader.ini
[2011.12.05 13:42:58 | 000,010,144 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\modules\ExternalLibraryLoader.jsm
[2011.12.05 13:55:10 | 000,010,144 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\modules\ExternalLibraryLoader.jsm
[9 \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads\*.tmp files -> \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads\*.tmp -> ]
[2010.10.16 21:44:19 | 000,293,144 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\SoftonicDownloader_for_aegisub.exe
[2009.09.03 05:09:22 | 000,003,614 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\etc\gtk-2.0\gdk-pixbuf.loaders
[2009.12.15 23:58:18 | 000,011,424 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2009.12.15 23:58:20 | 000,012,448 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2009.12.15 23:58:24 | 000,015,520 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-
2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2009.12.15 23:58:26 | 000,009,376 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2009.12.15 23:58:28 | 000,011,936 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2009.12.15 23:58:56 | 000,013,472 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2009.12.15 23:59:04 | 000,010,400 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2009.12.15 23:59:06 | 000,012,448 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2009.12.15 23:59:10 | 000,011,936 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2009.12.15 23:59:14 | 000,009,376 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2009.12.15 23:59:16 | 000,011,424 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2009.12.15 23:59:20 | 000,011,424 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2009.12.15 23:59:22 | 000,009,376 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2009.12.15 23:59:24 | 000,009,888 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2009.12.15 23:59:28 | 000,017,056 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2009.05.02 01:42:00 | 000,007,832 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\svg_loader.dll
[2009.12.10 16:40:54 | 000,003,427 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSAdminControls\MetaFiles\FileUploader.ascx
[2009.12.10 16:40:54 | 000,006,174 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSAdminControls\MetaFiles\FileUploader.ascx.cs
[2009.12.16 05:02:48 | 000,000,668 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Attachments\DirectFileUploader\FileUploader.aspx
[2009.12.10 16:41:08 | 000,006,802 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Attachments\DirectFileUploader\FileUploader.aspx.cs
[2009.12.10 16:41:10 | 000,000,533 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploader.ascx
[2009.12.10 16:41:10 | 000,012,030 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploader.ascx.cs
[2009.12.10 16:41:10 | 000,003,471 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploader.js
[2009.12.10 16:41:10 | 000,001,276 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploaderControl.ascx
[2009.12.11 14:53:54 | 000,020,129 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploaderControl.ascx.cs
[2009.12.10 16:41:10 | 000,002,089 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DocumentAttachments\DirectUploader.ascx
[2009.12.16 14:19:38 | 000,036,546 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DocumentAttachments\DirectUploader.ascx.cs
[2009.12.10 16:41:10 | 000,000,896 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DocumentAttachments\DirectUploader.xml
[2009.12.10 16:41:26 | 000,001,308 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\MediaLibrary\Controls\Dialogs\DirectFileUploader\DirectMediaFileUploaderControl.ascx
[2009.12.17 15:02:38 | 000,015,743 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\MediaLibrary\Controls\Dialogs\DirectFileUploader\DirectMediaFileUploaderControl.ascx.cs
[2009.12.10 16:41:26 | 000,001,580 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\MediaLibrary\Controls\LiveControls\MediaFileUploader.ascx
[2009.12.10 16:41:26 | 000,007,585 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\MediaLibrary\Controls\LiveControls\MediaFileUploader.ascx.cs
[2009.12.10 16:41:44 | 000,003,298 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSScripts\lightbox\lightboxLoader.js
[2009.12.10 16:42:04 | 000,000,598 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSWebParts\MediaLibrary\MediaFileUploader.ascx
[2009.12.10 16:42:04 | 000,003,844 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSWebParts\MediaLibrary\MediaFileUploader.ascx.cs
[2008.12.03 18:34:30 | 000,005,455 | ---- | M] () -- \old\Kika a Eva\Data aplikací\CTVoD\Resources\Downloader.css
[2008.11.30 11:23:52 | 000,000,156 | ---- | M] () -- \old\Kika a Eva\Oblíbené položky\mp3s.cz YouTube Downloader - Stahování z YouTube.url
[2011.03.06 21:01:36 | 000,179,712 | ---- | M] () -- \Program Files\Free YouTube Downloader\YouTubeDownloader.exe
[2010.07.03 16:07:44 | 000,119,675 | ---- | M] () -- \Program Files\Free YouTube Downloader\YouTubeDownloader.ico
[2008.12.16 12:37:16 | 000,003,614 | ---- | M] () -- \Program Files\GIMP-2.0\etc\gtk-2.0\gdk-pixbuf.loaders
[2009.01.01 23:52:40 | 000,016,440 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2009.01.01 23:52:24 | 000,019,000 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2009.01.01 23:52:40 | 000,027,192 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2009.01.01 23:52:46 | 000,012,344 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2009.01.01 23:52:24 | 000,016,952 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2009.01.01 23:52:26 | 000,019,512 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2009.01.01 23:52:32 | 000,014,392 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2009.01.01 23:52:30 | 000,019,000 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2009.01.01 23:52:32 | 000,015,928 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2009.01.01 23:52:34 | 000,011,832 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2009.01.01 23:52:56 | 000,016,952 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2009.01.01 23:52:40 | 000,016,440 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2009.01.01 23:52:38 | 000,011,320 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2009.01.01 23:52:40 | 000,013,880 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2009.01.01 23:52:42 | 000,028,216 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2008.05.18 16:51:34 | 000,005,795 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.jpg
[2008.09.22 11:43:29 | 000,004,089 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.swf
[2008.05.18 16:51:35 | 000,005,520 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\MUICoreLib\xtraLoader.swf
[2009.01.19 16:48:11 | 000,002,886 | ---- | M] () -- \Program Files\ICQ6\services\icqXtraz\ver1\content\babylon_feed\preloader01_b.swf
[2008.12.21 22:01:41 | 000,552,798 | ---- | M] () -- \Program Files\ICQ6\services\icqXtraz\ver1\theme\game_center\loaderBkg.png
[2009.10.30 20:10:38 | 000,056,512 | ---- | M] () -- \Program Files\Olympus\ib\Koan\pyloader.dll
[2009.10.30 19:46:28 | 000,020,664 | ---- | M] () -- \Program Files\Olympus\ib\subsys\DataCenter\ImageLoader.kc
[2009.10.30 19:46:38 | 000,008,896 | ---- | M] () -- \Program Files\Olympus\ib\subsys\HTMLView\pycom\win32\_win32sysloader.pyd
[2009.11.30 09:02:59 | 000,086,016 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\cryptoloader.dll
[2009.11.30 09:03:13 | 000,287,744 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\NPSAndroidDownloader.dll
[2009.11.30 09:02:55 | 000,069,632 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\NPSEmpLoader.dll
[2009.11.30 09:03:24 | 000,285,184 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\NPSLinuxMitsDownloader.dll
[2009.11.30 09:02:44 | 000,281,600 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\NPSLinuxMitsNpDownloader.dll
[2009.11.30 09:01:35 | 000,208,896 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\Symbian_Downloader_DLL.dll
[2009.11.30 09:02:42 | 000,262,144 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\ModelExtension\NPSBinaryLoader.dll
[2009.11.30 09:03:53 | 000,266,240 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\ModelExtension\NPSBinaryLoader2.dll
[2008.07.30 17:49:22 | 000,081,920 | ---- | M] () -- \Program Files\VisualConnection\VideopujcovnaCT\CTVoD.Downloader.dll
[2008.06.20 19:13:32 | 000,044,032 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2010.08.26 17:06:18 | 000,000,060 | ---- | M] () -- \WINDOWS\CoolYouTubeDownloader.ini
[5 \WINDOWS\*.tmp files -> \WINDOWS\*.tmp -> ]
[2004.08.18 13:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2008.10.10 14:43:42 | 000,000,335 | ---- | M] () -- \WINDOWS\Downloaded Program Files\PhotoUploader5.inf
[2008.10.10 14:44:58 | 003,536,384 | ---- | M] () -- \WINDOWS\Downloaded Program Files\PhotoUploader5.ocx
[2009.07.29 02:00:56 | 000,000,338 | ---- | M] () -- \WINDOWS\Downloaded Program Files\PhotoUploader55.inf
[2009.07.29 20:21:24 | 003,540,488 | ---- | M] () -- \WINDOWS\Downloaded Program Files\PhotoUploader55.ocx
[2002.12.11 23:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dmloader.dll
[2008.04.14 04:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.13 19:31:47 | 000,230,912 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.13 19:31:48 | 000,278,528 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 04:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[3 \WINDOWS\system32\*.tmp files -> \WINDOWS\system32\*.tmp -> ]
[2011.06.10 14:42:32 | 000,012,532 | ---- | M] () -- \WINDOWS\system32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2002.12.11 23:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll
[2010.04.29 11:11:00 | 000,009,622 | ---- | M] () -- \WINDOWS\system32\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
< End of report >
[2011.12.09 17:38:45 | 1013,295,104 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Lidice-2011.avi
[2011.12.06 17:45:37 | 000,223,508 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Rady pro zaky konajici opravnou MZ.pdf
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.12.13 17:24:50 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2011.12.13 16:47:40 | 000,000,298 | ---- | C] () -- C:\WINDOWS\tasks\ASC4_AutoCare.job
[2011.12.13 16:46:24 | 000,000,280 | ---- | C] () -- C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
[2011.12.13 16:46:08 | 000,000,896 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Quick Care.lnk
[2011.12.13 16:46:06 | 000,000,874 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Advanced SystemCare 4.lnk
[2011.12.13 16:28:55 | 536,403,968 | -HS- | C] () -- C:\hiberfil.sys
[2011.12.13 16:15:11 | 000,000,933 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Spybot - Search & Destroy.lnk
[2011.12.09 17:35:19 | 1013,295,104 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Lidice-2011.avi
[2011.12.06 17:45:45 | 000,223,508 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Rady pro zaky konajici opravnou MZ.pdf
[2011.07.03 20:28:32 | 002,530,671 | ---- | C] () -- C:\WINDOWS\System32\adb.exe
[2010.10.27 12:12:18 | 000,000,038 | ---- | C] () -- C:\WINDOWS\AviSplitter.INI
[2010.10.16 21:48:02 | 000,002,292 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ASSDraw3.cfg
[2010.09.12 15:00:30 | 000,000,037 | ---- | C] () -- C:\WINDOWS\CONTEXT.INI
[2010.08.26 17:06:18 | 000,000,060 | ---- | C] () -- C:\WINDOWS\CoolYouTubeDownloader.ini
[2010.07.27 16:35:06 | 000,000,063 | ---- | C] () -- C:\WINDOWS\mdm.ini
[2010.06.20 20:39:21 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2010.04.19 15:49:11 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2010.04.19 15:48:56 | 000,887,724 | R--- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2010.04.19 15:48:56 | 000,197,655 | R--- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2010.04.19 15:48:56 | 000,000,003 | R--- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2010.04.19 15:25:25 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2009.12.26 12:24:24 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009.11.25 18:17:23 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll
[2009.11.25 18:17:23 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys
[2009.11.25 18:16:36 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\$_hpcst$.hpc
[2009.11.16 17:33:38 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
[2009.09.08 17:57:21 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2009.08.14 15:33:33 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\LauncherAccess.dt
[2009.08.14 15:21:18 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2009.07.30 19:39:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\mngui.INI
[2009.06.07 12:27:20 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\vbzlib1.dll
[2009.05.13 19:43:12 | 000,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2009.04.20 20:17:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009.02.18 18:55:20 | 000,294,912 | ---- | C] () -- C:\WINDOWS\System32\ATIODE.exe
[2009.02.07 09:49:02 | 000,064,000 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.02.05 19:03:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009.02.05 18:51:59 | 000,000,164 | ---- | C] () -- C:\WINDOWS\avrack.ini
[2009.02.05 18:30:45 | 000,006,548 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2009.02.05 17:50:24 | 000,000,146 | ---- | C] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\fusioncache.dat
[2009.02.05 15:43:22 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI
[2009.02.05 15:26:29 | 000,155,648 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll
[2009.02.05 15:26:13 | 000,001,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\alcxinit.dat
[2009.02.05 15:25:36 | 000,038,559 | ---- | C] () -- C:\WINDOWS\System32\En.ini
[2009.02.05 15:25:36 | 000,008,828 | ---- | C] () -- C:\WINDOWS\System32\Autorun.ini
[2009.02.05 15:25:28 | 000,000,017 | ---- | C] () -- C:\WINDOWS\System32\auto.ini
[2009.02.05 14:16:02 | 000,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009.02.04 21:56:28 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2009.02.04 21:54:55 | 000,138,056 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009.02.04 21:30:27 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009.02.04 21:21:44 | 000,021,812 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009.02.03 21:52:02 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ATIODCLI.exe
[2004.08.18 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004.08.18 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004.08.18 13:00:00 | 000,441,552 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004.08.18 13:00:00 | 000,437,986 | ---- | C] () -- C:\WINDOWS\System32\perfh005.dat
[2004.08.18 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004.08.18 13:00:00 | 000,269,162 | ---- | C] () -- C:\WINDOWS\System32\perfi005.dat
[2004.08.18 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004.08.18 13:00:00 | 000,082,800 | ---- | C] () -- C:\WINDOWS\System32\perfc005.dat
[2004.08.18 13:00:00 | 000,071,488 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004.08.18 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2004.08.18 13:00:00 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\perfd005.dat
[2004.08.18 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004.08.18 13:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004.08.18 13:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004.08.18 13:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004.08.18 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004.04.23 22:02:10 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.exe
[2003.02.19 01:26:28 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.dll
[1999.01.22 21:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
========== LOP Check ==========
[2011.12.13 16:12:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Alwil Software
[2009.08.30 22:35:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Azureus
[2010.07.10 19:38:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\BarDiscover
[2009.02.05 15:36:57 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CanonBJ
[2011.12.05 07:11:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CanonIJPLM
[2010.08.26 17:06:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\CoolYouTubeDownloader
[2010.03.06 20:43:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Electronic Arts
[2009.02.06 15:11:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ICQ
[2009.07.22 14:25:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\LightScribe
[2010.02.05 16:33:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\PC Suite
[2009.02.05 15:43:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ScanSoft
[2010.12.28 10:28:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Temp
[2009.11.03 18:13:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\UltiDev
[2010.09.25 20:10:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Aegisub
[2009.08.30 22:40:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Azureus
[2011.11.22 20:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer
[2009.02.05 20:29:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer Pro
[2009.02.10 16:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canneverbe_Limited
[2011.11.06 15:09:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canon
[2011.03.13 20:19:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly
[2010.08.26 17:06:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\CoolYouTubeDownloader
[2011.01.06 18:45:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\eBookPro6
[2009.04.13 08:33:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ImgBurn
[2011.12.13 16:46:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit
[2009.11.25 18:20:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PC Suite
[2011.10.27 17:41:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PhotoScape
[2011.12.11 10:45:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PriceGong
[2010.06.22 18:33:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\QIP
[2010.10.16 22:37:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Samsung
[2009.02.05 15:43:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ScanSoft
[2010.06.24 06:24:00 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc
[2009.07.30 19:37:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Teleca
[2010.04.27 16:48:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Uniblue
[2010.08.24 13:54:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent
[2010.08.25 21:09:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\VitySoft
[2009.02.07 20:06:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Windows Search
[2011.06.06 20:08:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\YouTube Downloader
[2011.12.13 16:02:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Zoner
[2011.01.25 18:02:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Canon
[2009.12.10 18:41:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\PC Suite
[2010.12.28 10:39:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\PriceGong
[2011.11.08 10:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Samsung
[2011.11.17 18:52:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\shrink_pic
[2009.10.24 18:04:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Spyware Terminator
[2009.07.31 18:45:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Teleca
[2009.02.05 19:01:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Data aplikací\Windows Desktop Search
[2011.12.12 15:15:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
[2011.12.13 16:47:41 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_AutoCare.job
[2011.12.13 17:11:35 | 000,000,280 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job
[2011.12.13 15:22:09 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\CCleaner.job
[2011.12.13 16:01:05 | 000,000,244 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
========== Purity Check ==========
========== Custom Scans ==========
< >
< >
< MD5 for: ATAPI.SYS >
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 18:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008.04.13 18:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0031\DriverFiles\i386\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 04:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 04:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2004.08.18 13:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
< MD5 for: CDROM.SYS >
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2009.12.22 19:39:20 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\system32\dllcache\cdrom.sys
[2004.08.18 13:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2004.08.18 13:00:00 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: HAL.DLL >
[2004.08.18 13:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2009.02.05 15:55:34 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.13 19:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2008.04.13 19:31:28 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\HAL.DLL
[2004.08.18 13:00:00 | 000,131,968 | ---- | M] (Microsoft Corporation) MD5=F9A0F579FC18036FFDD9E26E0D268CCD -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll
< MD5 for: SCECLI.DLL >
[2004.08.18 13:00:00 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SVCHOST.EXE >
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.18 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
< MD5 for: TCPIP.SYS >
[2008.06.20 11:45:13 | 000,360,320 | ---- | M] (Microsoft Corporation) MD5=2A5554FC5B1E04E131230E3CE035C3F9 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.06.20 11:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2008.04.13 20:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.18 13:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
< MD5 for: WINLOGON.EXE >
[2004.08.18 13:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 04:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 04:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< >
< %systemroot%*.* /U /s >
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[20 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[7 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[2 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\*.tmp files -> C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\*.tmp -> ]
[1 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\*.tmp files -> C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\*.tmp -> ]
[3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[4 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ]
[1 C:\WINDOWS\Temp\_avast_\*.tmp files -> C:\WINDOWS\Temp\_avast_\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2010.05.27 10:10:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Adobe
[2010.09.25 20:10:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Aegisub
[2009.07.22 14:26:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Ahead
[2009.08.30 22:40:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Azureus
[2011.11.22 20:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer
[2009.02.05 20:29:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer Pro
[2009.02.10 16:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canneverbe_Limited
[2011.11.06 15:09:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Canon
[2011.03.13 20:19:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly
[2010.08.26 17:06:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\CoolYouTubeDownloader
[2010.05.22 19:44:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\DivX
[2011.07.18 18:03:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\dvdcss
[2011.01.06 18:45:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\eBookPro6
[2009.02.15 10:37:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Google
[2009.02.04 21:33:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Identities
[2009.04.13 08:33:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ImgBurn
[2011.12.13 16:46:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit
[2010.05.27 10:10:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Macromedia
[2009.04.13 08:35:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Media Player Classic
[2011.02.22 16:59:40 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Microsoft
[2009.02.05 14:08:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Microsoft Web Folders
[2009.10.24 15:03:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla
[2009.11.25 18:20:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PC Suite
[2011.10.27 17:41:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PhotoScape
[2011.12.11 10:45:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\PriceGong
[2010.06.22 18:33:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\QIP
[2010.10.16 22:37:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Samsung
[2009.02.05 15:43:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\ScanSoft
[2011.11.30 17:07:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Skype
[2011.11.30 16:07:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\skypePM
[2009.08.30 17:23:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Sun
[2010.06.24 06:24:00 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc
[2009.07.30 19:37:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Teleca
[2011.04.26 21:09:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3
[2010.04.27 16:48:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Uniblue
[2010.08.24 13:54:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent
[2010.08.25 21:09:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\VitySoft
[2011.12.11 20:42:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\vlc
[2009.02.07 20:06:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Windows Search
[2009.02.06 06:09:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\WinRAR
[2011.06.06 20:08:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\YouTube Downloader
[2011.12.13 16:02:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Zoner
< %APPDATA%\*.exe /s >
[2009.08.11 20:21:26 | 000,087,552 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 20:21:30 | 000,090,112 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 13:52:04 | 000,697,690 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\AC3 Filter\unins000.exe
[2010.02.23 16:01:52 | 001,185,871 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\FFDShow\unins000.exe
[2010.08.14 09:42:54 | 000,113,152 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 09:45:10 | 000,358,400 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 09:42:06 | 000,137,728 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 14:30:22 | 000,042,305 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\BSplayer\Haali media splitter\uninstall.exe
[2011.02.27 18:10:40 | 000,091,128 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\KeepMeUpdated.exe
[2011.02.27 18:10:40 | 000,091,128 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Complitly\64\KeepMeUpdated.exe
[2009.07.19 18:31:24 | 001,915,520 | ---- | M] (Adobe Systems Incorporated) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Macromedia\Flash Player\www.macromedia.com\bin\fpupdateax\fpupdateax.exe
[2009.11.03 18:13:30 | 000,003,638 | R--- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Microsoft\Installer\{40247AAC-AB0D-449C-882F-90401C3351E8}\_69525f90.exe
[2009.12.17 19:36:37 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
[2011.11.28 11:36:17 | 003,623,592 | ---- | M] (Ask) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\askToolbar.exe
[2009.11.30 08:58:33 | 089,289,872 | ---- | M] (Samsung Electronics Co., Ltd. ) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Samsung\New PC Studio\LiveUpdate\Setup_For_Full_Update_IH2_6_4.exe
[2007.10.23 08:27:20 | 000,110,592 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\0572930A289112A1\cleanup.exe
[2008.05.02 09:41:48 | 003,493,888 | ---- | M] (SanDisk Corporation) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\0572930A289112A1\Launchpad Removal.exe
[2008.05.04 15:02:26 | 004,603,904 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\0572930A289112A1\LaunchPad.exe
[2007.10.23 08:44:48 | 000,054,584 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\0572930A289112A1\U3AccessGrant.exe
[2007.10.23 08:27:20 | 000,110,592 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\temp\cleanup.exe
[2008.05.02 09:41:48 | 003,493,888 | -H-- | M] (SanDisk Corporation) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\U3\temp\Launchpad Removal.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job >
[2011.12.12 15:15:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
[2011.12.13 16:47:41 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_AutoCare.job
[2011.12.13 17:11:35 | 000,000,280 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job
[2011.12.13 15:22:09 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\CCleaner.job
[2011.12.13 16:45:00 | 000,001,026 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job
[2011.12.13 16:45:00 | 000,001,078 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job
[2011.12.13 16:01:05 | 000,000,244 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2009.02.04 21:54:12 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2009.02.04 21:54:12 | 000,638,976 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2009.02.04 21:54:12 | 000,466,944 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< %systemroot%\system32\*.dll /lockedfiles >
[3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2011.12.13 17:36:22 | 000,002,504 | ---- | M] () -- C:\WINDOWS\system32\CONFIG.NT
[3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 04:22:17 | 000,015,360 | ---- | M] (Microsoft Corporation)
"AutoStartNPSAgent" = C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe -- [2009.11.30 09:02:58 | 000,102,400 | ---- | M] (Samsung Electronics Co., Ltd.)
"Olympus ib" = "C:\Program Files\Olympus\ib\olycamdetect.exe" /Startup -- [2009.10.30 19:45:22 | 000,093,376 | ---- | M] (OLYMPUS IMAGING CORP.)
"Google Update" = "C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c -- [2011.07.28 18:23:54 | 000,136,176 | ---- | M] (Google Inc.)
"Advanced SystemCare 4" = C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe -- [2011.08.09 16:56:40 | 000,417,112 | ---- | M] (IObit)
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs
< >
< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2011.12.13 17:24:50 | 000,000,512 | ---- | M] () MD5=21D1B2C60B1057BC7B5DDDE9E3BC38FD -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2010.10.16 22:38:24 | 000,000,000 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\CT2405280\feed\http___crackle_com_rss_media_sxsw_featured_rss_history.xml
[2010.10.16 22:38:24 | 000,000,000 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\CT2405280\feed\http___crackle_com_rss_media_sxsw_featured_rss_structured.xml
[2010.12.27 13:21:17 | 000,001,055 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Softonic-Eng7\Rss\http___crackle_com_rss_media_sxsw_featured_rss.xml
[2009.12.16 04:22:58 | 000,062,238 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\share\gimp\2.0\patterns\cracked.pat
[2010.12.28 10:39:41 | 000,001,055 | ---- | M] () -- \Documents and Settings\Rodiče.BRNAKOVI-F6C11A\Local Settings\Data aplikací\Softonic-Eng7\Rss\http___crackle_com_rss_media_sxsw_featured_rss.xml
[2008.07.11 21:26:10 | 006,791,965 | ---- | M] () -- \Nová složka\HUDBA\Hudba\MEGAMIX\dR.crack feat.venusa-Pod mrakom smutku.mp3
[2008.07.11 21:26:10 | 006,791,965 | ---- | M] () -- \Nová složka\HUDBA\CHATA-MIX\dR.crack feat.venusa-Pod mrakom smutku.mp3
[2008.12.07 10:14:04 | 000,000,099 | ---- | M] () -- \old\Kika a Eva\Cookies\kika_a_eva@crackle[2].txt
[2009.01.02 00:52:06 | 000,062,238 | ---- | M] () -- \Program Files\GIMP-2.0\share\gimp\2.0\patterns\cracked.pat
< *keygen* /s >
< *loader* /s >
[2011.03.13 20:19:02 | 000,001,676 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Free YouTube Downloader\Free YouTube Downloader.lnk
[2010.08.26 17:07:21 | 000,000,031 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\CoolYouTubeDownloader\CoolYouTubeDownloader.ini
[2011.12.05 13:42:58 | 000,010,144 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\modules\ExternalLibraryLoader.jsm
[2011.12.05 13:55:10 | 000,010,144 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\modules\ExternalLibraryLoader.jsm
[9 \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads\*.tmp files -> \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads\*.tmp -> ]
[2010.10.16 21:44:19 | 000,293,144 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\SoftonicDownloader_for_aegisub.exe
[2009.09.03 05:09:22 | 000,003,614 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\etc\gtk-2.0\gdk-pixbuf.loaders
[2009.12.15 23:58:18 | 000,011,424 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2009.12.15 23:58:20 | 000,012,448 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2009.12.15 23:58:24 | 000,015,520 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-
2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2009.12.15 23:58:26 | 000,009,376 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2009.12.15 23:58:28 | 000,011,936 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2009.12.15 23:58:56 | 000,013,472 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2009.12.15 23:59:04 | 000,010,400 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2009.12.15 23:59:06 | 000,012,448 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2009.12.15 23:59:10 | 000,011,936 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2009.12.15 23:59:14 | 000,009,376 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2009.12.15 23:59:16 | 000,011,424 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2009.12.15 23:59:20 | 000,011,424 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2009.12.15 23:59:22 | 000,009,376 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2009.12.15 23:59:24 | 000,009,888 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2009.12.15 23:59:28 | 000,017,056 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2009.05.02 01:42:00 | 000,007,832 | ---- | M] () -- \Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Programy\GIMPPortable\App\gimp\lib\gtk-2.0\2.10.0\loaders\svg_loader.dll
[2009.12.10 16:40:54 | 000,003,427 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSAdminControls\MetaFiles\FileUploader.ascx
[2009.12.10 16:40:54 | 000,006,174 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSAdminControls\MetaFiles\FileUploader.ascx.cs
[2009.12.16 05:02:48 | 000,000,668 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Attachments\DirectFileUploader\FileUploader.aspx
[2009.12.10 16:41:08 | 000,006,802 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Attachments\DirectFileUploader\FileUploader.aspx.cs
[2009.12.10 16:41:10 | 000,000,533 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploader.ascx
[2009.12.10 16:41:10 | 000,012,030 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploader.ascx.cs
[2009.12.10 16:41:10 | 000,003,471 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploader.js
[2009.12.10 16:41:10 | 000,001,276 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploaderControl.ascx
[2009.12.11 14:53:54 | 000,020,129 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DirectFileUploader\DirectFileUploaderControl.ascx.cs
[2009.12.10 16:41:10 | 000,002,089 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DocumentAttachments\DirectUploader.ascx
[2009.12.16 14:19:38 | 000,036,546 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DocumentAttachments\DirectUploader.ascx.cs
[2009.12.10 16:41:10 | 000,000,896 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\Content\Controls\Attachments\DocumentAttachments\DirectUploader.xml
[2009.12.10 16:41:26 | 000,001,308 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\MediaLibrary\Controls\Dialogs\DirectFileUploader\DirectMediaFileUploaderControl.ascx
[2009.12.17 15:02:38 | 000,015,743 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\MediaLibrary\Controls\Dialogs\DirectFileUploader\DirectMediaFileUploaderControl.ascx.cs
[2009.12.10 16:41:26 | 000,001,580 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\MediaLibrary\Controls\LiveControls\MediaFileUploader.ascx
[2009.12.10 16:41:26 | 000,007,585 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSModules\MediaLibrary\Controls\LiveControls\MediaFileUploader.ascx.cs
[2009.12.10 16:41:44 | 000,003,298 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSScripts\lightbox\lightboxLoader.js
[2009.12.10 16:42:04 | 000,000,598 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSWebParts\MediaLibrary\MediaFileUploader.ascx
[2009.12.10 16:42:04 | 000,003,844 | ---- | M] () -- \Inetpub\wwwroot\KenticoCMS\CMSWebParts\MediaLibrary\MediaFileUploader.ascx.cs
[2008.12.03 18:34:30 | 000,005,455 | ---- | M] () -- \old\Kika a Eva\Data aplikací\CTVoD\Resources\Downloader.css
[2008.11.30 11:23:52 | 000,000,156 | ---- | M] () -- \old\Kika a Eva\Oblíbené položky\mp3s.cz YouTube Downloader - Stahování z YouTube.url
[2011.03.06 21:01:36 | 000,179,712 | ---- | M] () -- \Program Files\Free YouTube Downloader\YouTubeDownloader.exe
[2010.07.03 16:07:44 | 000,119,675 | ---- | M] () -- \Program Files\Free YouTube Downloader\YouTubeDownloader.ico
[2008.12.16 12:37:16 | 000,003,614 | ---- | M] () -- \Program Files\GIMP-2.0\etc\gtk-2.0\gdk-pixbuf.loaders
[2009.01.01 23:52:40 | 000,016,440 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ani.dll
[2009.01.01 23:52:24 | 000,019,000 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-bmp.dll
[2009.01.01 23:52:40 | 000,027,192 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-gif.dll
[2009.01.01 23:52:46 | 000,012,344 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-icns.dll
[2009.01.01 23:52:24 | 000,016,952 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ico.dll
[2009.01.01 23:52:26 | 000,019,512 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-jpeg.dll
[2009.01.01 23:52:32 | 000,014,392 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pcx.dll
[2009.01.01 23:52:30 | 000,019,000 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-png.dll
[2009.01.01 23:52:32 | 000,015,928 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-pnm.dll
[2009.01.01 23:52:34 | 000,011,832 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-ras.dll
[2009.01.01 23:52:56 | 000,016,952 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tga.dll
[2009.01.01 23:52:40 | 000,016,440 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-tiff.dll
[2009.01.01 23:52:38 | 000,011,320 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-wbmp.dll
[2009.01.01 23:52:40 | 000,013,880 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xbm.dll
[2009.01.01 23:52:42 | 000,028,216 | ---- | M] () -- \Program Files\GIMP-2.0\lib\gtk-2.0\2.10.0\loaders\libpixbufloader-xpm.dll
[2008.05.18 16:51:34 | 000,005,795 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.jpg
[2008.09.22 11:43:29 | 000,004,089 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.swf
[2008.05.18 16:51:35 | 000,005,520 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\MUICoreLib\xtraLoader.swf
[2009.01.19 16:48:11 | 000,002,886 | ---- | M] () -- \Program Files\ICQ6\services\icqXtraz\ver1\content\babylon_feed\preloader01_b.swf
[2008.12.21 22:01:41 | 000,552,798 | ---- | M] () -- \Program Files\ICQ6\services\icqXtraz\ver1\theme\game_center\loaderBkg.png
[2009.10.30 20:10:38 | 000,056,512 | ---- | M] () -- \Program Files\Olympus\ib\Koan\pyloader.dll
[2009.10.30 19:46:28 | 000,020,664 | ---- | M] () -- \Program Files\Olympus\ib\subsys\DataCenter\ImageLoader.kc
[2009.10.30 19:46:38 | 000,008,896 | ---- | M] () -- \Program Files\Olympus\ib\subsys\HTMLView\pycom\win32\_win32sysloader.pyd
[2009.11.30 09:02:59 | 000,086,016 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\cryptoloader.dll
[2009.11.30 09:03:13 | 000,287,744 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\NPSAndroidDownloader.dll
[2009.11.30 09:02:55 | 000,069,632 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\NPSEmpLoader.dll
[2009.11.30 09:03:24 | 000,285,184 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\NPSLinuxMitsDownloader.dll
[2009.11.30 09:02:44 | 000,281,600 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\NPSLinuxMitsNpDownloader.dll
[2009.11.30 09:01:35 | 000,208,896 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\Symbian_Downloader_DLL.dll
[2009.11.30 09:02:42 | 000,262,144 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\ModelExtension\NPSBinaryLoader.dll
[2009.11.30 09:03:53 | 000,266,240 | ---- | M] () -- \Program Files\Samsung\Samsung New PC Studio\ModelExtension\NPSBinaryLoader2.dll
[2008.07.30 17:49:22 | 000,081,920 | ---- | M] () -- \Program Files\VisualConnection\VideopujcovnaCT\CTVoD.Downloader.dll
[2008.06.20 19:13:32 | 000,044,032 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2010.08.26 17:06:18 | 000,000,060 | ---- | M] () -- \WINDOWS\CoolYouTubeDownloader.ini
[5 \WINDOWS\*.tmp files -> \WINDOWS\*.tmp -> ]
[2004.08.18 13:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2008.10.10 14:43:42 | 000,000,335 | ---- | M] () -- \WINDOWS\Downloaded Program Files\PhotoUploader5.inf
[2008.10.10 14:44:58 | 003,536,384 | ---- | M] () -- \WINDOWS\Downloaded Program Files\PhotoUploader5.ocx
[2009.07.29 02:00:56 | 000,000,338 | ---- | M] () -- \WINDOWS\Downloaded Program Files\PhotoUploader55.inf
[2009.07.29 20:21:24 | 003,540,488 | ---- | M] () -- \WINDOWS\Downloaded Program Files\PhotoUploader55.ocx
[2002.12.11 23:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dmloader.dll
[2008.04.14 04:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.13 19:31:47 | 000,230,912 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.13 19:31:48 | 000,278,528 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 04:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[3 \WINDOWS\system32\*.tmp files -> \WINDOWS\system32\*.tmp -> ]
[2011.06.10 14:42:32 | 000,012,532 | ---- | M] () -- \WINDOWS\system32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2002.12.11 23:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll
[2010.04.29 11:11:00 | 000,009,622 | ---- | M] () -- \WINDOWS\system32\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr
< End of report >
Re: Bezduvodne Vypinani pC
OTL Extras logfile created on: 13.12.2011 17:22:28 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
511,49 Mb Total Physical Memory | 176,48 Mb Available Physical Memory | 34,50% Memory free
3,40 Gb Paging File | 3,11 Gb Available in Paging File | 91,47% Paging File free
Paging file location(s): C:\pagefile.sys 3000 3000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 76,32 Gb Total Space | 18,69 Gb Free Space | 24,48% Space Free | Partition Type: NTFS
Computer Name: BRNAKOVI-F6C11A | User Name: Kika a Eva | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
[HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office\msohtmed.exe" %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"25673:TCP" = 25673:TCP:*:Enabled:BitComet 25673 TCP
"25673:UDP" = 25673:UDP:*:Enabled:BitComet 25673 UDP
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\QIP\qip.exe" = C:\Program Files\QIP\qip.exe:*:Enabled:Quiet Internet Pager
"C:\Program Files\ICQ6.5\ICQ.exe" = C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6
"C:\Program Files\BitComet\BitComet.exe" = C:\Program Files\BitComet\BitComet.exe:*:Disabled:BitComet - a BitTorrent Client
"C:\Program Files\uTorrent\utorrent.exe" = C:\Program Files\uTorrent\utorrent.exe:*:Enabled:µTorrent
"D:\Installation\Setupx.exe" = D:\Installation\Setupx.exe:*:Enabled:Nero ProductSetup
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe" = C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Crawler Spyware Terminator
"C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe" = C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe:LocalSubNet:Enabled:UltiDev Cassini Web Server for ASP.NET 2.0 -- (UltiDev LLC)
"C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe:*:Enabled:KTF MUSIC AoD Server -- (PeeringPortal)
"C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe:*:Enabled:KTF MUSIC VoD Server -- (PeeringPortal)
"C:\Program Files\Electronic Arts\EADM\Core.exe" = C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager
"C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent\utorrent.exe" = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent
"C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe" = C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe:*:Enabled:Nero ProductSetup
"C:\Program Files\Java\jre6\launch4j-tmp\frd.exe" = C:\Program Files\Java\jre6\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
"C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe" = C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe:*:Disabled:aTube Catcher to download and convert videos. -- (DsNET)
"C:\Program Files\Winamp\winamp.exe" = C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp
"D:\EasySetupAssistant\wr741n\EasySetupAssistant.exe" = D:\EasySetupAssistant\wr741n\EasySetupAssistant.exe:*:Enabled:TP-LINK Easy Setup Assistant
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00000405-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Premium
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP520_series" = Canon MP520 series
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 24
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{40247AAC-AB0D-449C-882F-90401C3351E8}" = UltiDev Cassini Web Server Explorer
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5E65E94D-69F2-4850-9E93-6459C53A0F50}" = Microsoft .NET Framework 1.1 Czech Language Pack
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{62A211E4-CE6F-4EEB-AACC-7EF75335413F}_is1" = Mr Smoozles Goes Nutso version 1.6
"{66239456-F8B1-49EC-818C-822603C5B712}" = ZTE Smartphone Driver 1.2066.1.3
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7AC15160-A49B-4A89-B181-D4619C025FFF}" = Samsung Samples Installer
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver
"{7F947BFE-C2DF-4779-9909-5BEE746BD0C4}" = Microsoft .NET Framework 2.0 Language Pack - CSY
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{89A43E80-AC6C-4DA8-9800-F4B30ED577C0}" = OLYMPUS ib
"{8E72B982-D54F-486F-B35A-C24B6F171029}" = Nero 7 Essentials
"{95120000-00AF-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Czech)
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A7E19604-93AF-4611-8C9F-CE509C2B286F}_is1" = Free YouTube Downloader 3.2.77
"{AC599724-5755-48C1-ABE7-ABB857652930}" = PC Connectivity Solution
"{AC76BA86-7AD7-1029-7B44-A90000000001}" = Adobe Reader 9 - Czech
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CC4A73BF-938E-4C19-A553-853C035C9BA1}" = LightScribe System Software 1.10.13.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.1
"{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}" = Samsung PC Studio 3 USB Driver Installer
"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"{F27E8649-2FC3-4171-BD52-BD8BE8D19A93}" = ATI AVIVO Codecs
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F6C8DAED-8CC7-43FD-9DA4-1F629B873A17}" = UltiDev Cassini Web Server for ASP.NET 2.0
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F" = Balíček ovladače systému Windows - Nokia pccsmcfd (10/12/2007 6.85.4.0)
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"All ATI Software" = Softarová utilita ATI - Odinstalovat
"ATI Display Driver" = ATI Display Driver
"aTube Catcher" = aTube Catcher
"AviSynth" = AviSynth 2.5
"BSPlayerf" = BS.Player FREE
"CANONIJPLM100" = PIXMA Extended Survey Program
"CanonMyPrinter" = Canon My Printer
"CanonSolutionMenu" = Canon Utilities Solution Menu
"CCleaner" = CCleaner (remove only)
"C-Media Audio Driver" = C-Media WDM Audio Driver
"Complitly_is1" = Complitly
"conduitEngine" = Conduit Engine
"Dialup For Android Handset" = Dialup For Android Handset
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"FMCODEC" = FM Screen Capture Codec (Remove Only)
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"InstallShield_{89A43E80-AC6C-4DA8-9800-F4B30ED577C0}" = OLYMPUS ib
"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 2.0 Language Pack - CSY" = Microsoft .NET Framework 2.0 Language Pack - CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 8.0 (x86 cs)" = Mozilla Firefox 8.0 (x86 cs)
"MP Navigator EX 1.0" = Canon MP Navigator EX 1.0
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIAnForce" = NVIDIA Ovladače nForce pro Windows 2000/XP
"PhotoScape" = PhotoScape
"Picasa 3" = Picasa 3
"SAMSUNG CDMA Modem" = SAMSUNG CDMA Modem Driver Set
"SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software
"Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"SAMSUNG USB Mobile Device" = SAMSUNG USB Mobile Device Software
"Softonic-Eng7 Toolbar" = Softonic-Eng7 Toolbar
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"Stylish Profile" = Stylish Profile
"VLC media player" = VLC media player 1.1.9
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = WinRAR
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"yBook_is1" = yBook
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 21.12.2010 14:07:51 | Computer Name = BRNAKOVI-F6C11A | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.
Error - 21.12.2010 14:07:51 | Computer Name = BRNAKOVI-F6C11A | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.
Error - 28.12.2010 5:29:51 | Computer Name = BRNAKOVI-F6C11A | Source = MsiInstaller | ID = 11311
Description = Produkt: Olympus ib - Chyba 1311. Zdrojový soubor nelze najít(soubor
CAB): C:\DOCUME~1\RODIE~1~BRN\LOCALS~1\Temp\pft4~tmp\ibSetup\Data1.cab. Přesvědčte
se, zda soubor existuje a zda k němu máte přístup.
Error - 28.12.2010 5:30:04 | Computer Name = BRNAKOVI-F6C11A | Source = MsiInstaller | ID = 11311
Description = Produkt: Olympus ib - Chyba 1311. Zdrojový soubor nelze najít(soubor
CAB): C:\DOCUME~1\RODIE~1~BRN\LOCALS~1\Temp\pft4~tmp\ibSetup\Data1.cab. Přesvědčte
se, zda soubor existuje a zda k němu máte přístup.
Error - 28.12.2010 5:30:16 | Computer Name = BRNAKOVI-F6C11A | Source = MsiInstaller | ID = 11311
Description = Produkt: Olympus ib - Chyba 1311. Zdrojový soubor nelze najít(soubor
CAB): C:\DOCUME~1\RODIE~1~BRN\LOCALS~1\Temp\pft4~tmp\ibSetup\Data1.cab. Přesvědčte
se, zda soubor existuje a zda k němu máte přístup.
Error - 6.1.2011 1:38:20 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1000
Description = Chybující aplikace newpcstudio.exe, verze 1.0.0.1, chybující modul
unknown, verze 0.0.0.0, adresa chyby 0x00e40293.
Error - 20.1.2011 14:59:22 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1000
Description = Chybující aplikace newpcstudio.exe, verze 1.0.0.1, chybující modul
unknown, verze 0.0.0.0, adresa chyby 0x00ec0293.
Error - 17.3.2011 15:03:38 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1000
Description = Chybující aplikace newpcstudio.exe, verze 1.0.0.1, chybující modul
newpcstudio.exe, verze 1.0.0.1, adresa chyby 0x0003839b.
Error - 13.5.2011 3:10:31 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1000
Description = Chybující aplikace UltiDevCassinWebServer2a.exe, verze 2.1.0.3, chybující
modul msvcr80.dll, verze 8.0.50727.3053, adresa chyby 0x0000bde7.
Error - 13.5.2011 3:12:23 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1004
Description = Chybující aplikace UltiDevCassinWebServer2a.exe, verze 2.1.0.3, chybující
modul msvcr80.dll, verze 8.0.50727.3053, adresa chyby 0x0000bde7.
[ System Events ]
Error - 13.12.2011 10:40:28 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:28 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:28 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
< End of report >
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Dokumenty\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
511,49 Mb Total Physical Memory | 176,48 Mb Available Physical Memory | 34,50% Memory free
3,40 Gb Paging File | 3,11 Gb Available in Paging File | 91,47% Paging File free
Paging file location(s): C:\pagefile.sys 3000 3000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 76,32 Gb Total Space | 18,69 Gb Free Space | 24,48% Space Free | Partition Type: NTFS
Computer Name: BRNAKOVI-F6C11A | User Name: Kika a Eva | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
[HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office\msohtmed.exe" %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"25673:TCP" = 25673:TCP:*:Enabled:BitComet 25673 TCP
"25673:UDP" = 25673:UDP:*:Enabled:BitComet 25673 UDP
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\QIP\qip.exe" = C:\Program Files\QIP\qip.exe:*:Enabled:Quiet Internet Pager
"C:\Program Files\ICQ6.5\ICQ.exe" = C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6
"C:\Program Files\BitComet\BitComet.exe" = C:\Program Files\BitComet\BitComet.exe:*:Disabled:BitComet - a BitTorrent Client
"C:\Program Files\uTorrent\utorrent.exe" = C:\Program Files\uTorrent\utorrent.exe:*:Enabled:µTorrent
"D:\Installation\Setupx.exe" = D:\Installation\Setupx.exe:*:Enabled:Nero ProductSetup
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe" = C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Crawler Spyware Terminator
"C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe" = C:\Program Files\UltiDev\Cassini Web Server for ASP.NET 2.0\UltiDevCassinWebServer2a.exe:LocalSubNet:Enabled:UltiDev Cassini Web Server for ASP.NET 2.0 -- (UltiDev LLC)
"C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe:*:Enabled:KTF MUSIC AoD Server -- (PeeringPortal)
"C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe:*:Enabled:KTF MUSIC VoD Server -- (PeeringPortal)
"C:\Program Files\Electronic Arts\EADM\Core.exe" = C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager
"C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent\utorrent.exe" = C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent
"C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe" = C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe:*:Enabled:Nero ProductSetup
"C:\Program Files\Java\jre6\launch4j-tmp\frd.exe" = C:\Program Files\Java\jre6\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
"C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe" = C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe:*:Disabled:aTube Catcher to download and convert videos. -- (DsNET)
"C:\Program Files\Winamp\winamp.exe" = C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp
"D:\EasySetupAssistant\wr741n\EasySetupAssistant.exe" = D:\EasySetupAssistant\wr741n\EasySetupAssistant.exe:*:Enabled:TP-LINK Easy Setup Assistant
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00000405-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Premium
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP520_series" = Canon MP520 series
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 24
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{40247AAC-AB0D-449C-882F-90401C3351E8}" = UltiDev Cassini Web Server Explorer
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5E65E94D-69F2-4850-9E93-6459C53A0F50}" = Microsoft .NET Framework 1.1 Czech Language Pack
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{62A211E4-CE6F-4EEB-AACC-7EF75335413F}_is1" = Mr Smoozles Goes Nutso version 1.6
"{66239456-F8B1-49EC-818C-822603C5B712}" = ZTE Smartphone Driver 1.2066.1.3
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7AC15160-A49B-4A89-B181-D4619C025FFF}" = Samsung Samples Installer
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver
"{7F947BFE-C2DF-4779-9909-5BEE746BD0C4}" = Microsoft .NET Framework 2.0 Language Pack - CSY
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{89A43E80-AC6C-4DA8-9800-F4B30ED577C0}" = OLYMPUS ib
"{8E72B982-D54F-486F-B35A-C24B6F171029}" = Nero 7 Essentials
"{95120000-00AF-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Czech)
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A7E19604-93AF-4611-8C9F-CE509C2B286F}_is1" = Free YouTube Downloader 3.2.77
"{AC599724-5755-48C1-ABE7-ABB857652930}" = PC Connectivity Solution
"{AC76BA86-7AD7-1029-7B44-A90000000001}" = Adobe Reader 9 - Czech
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CC4A73BF-938E-4C19-A553-853C035C9BA1}" = LightScribe System Software 1.10.13.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.1
"{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}" = Samsung PC Studio 3 USB Driver Installer
"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"{F27E8649-2FC3-4171-BD52-BD8BE8D19A93}" = ATI AVIVO Codecs
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F6C8DAED-8CC7-43FD-9DA4-1F629B873A17}" = UltiDev Cassini Web Server for ASP.NET 2.0
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F" = Balíček ovladače systému Windows - Nokia pccsmcfd (10/12/2007 6.85.4.0)
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"All ATI Software" = Softarová utilita ATI - Odinstalovat
"ATI Display Driver" = ATI Display Driver
"aTube Catcher" = aTube Catcher
"AviSynth" = AviSynth 2.5
"BSPlayerf" = BS.Player FREE
"CANONIJPLM100" = PIXMA Extended Survey Program
"CanonMyPrinter" = Canon My Printer
"CanonSolutionMenu" = Canon Utilities Solution Menu
"CCleaner" = CCleaner (remove only)
"C-Media Audio Driver" = C-Media WDM Audio Driver
"Complitly_is1" = Complitly
"conduitEngine" = Conduit Engine
"Dialup For Android Handset" = Dialup For Android Handset
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"FMCODEC" = FM Screen Capture Codec (Remove Only)
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"InstallShield_{89A43E80-AC6C-4DA8-9800-F4B30ED577C0}" = OLYMPUS ib
"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 2.0 Language Pack - CSY" = Microsoft .NET Framework 2.0 Language Pack - CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 8.0 (x86 cs)" = Mozilla Firefox 8.0 (x86 cs)
"MP Navigator EX 1.0" = Canon MP Navigator EX 1.0
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIAnForce" = NVIDIA Ovladače nForce pro Windows 2000/XP
"PhotoScape" = PhotoScape
"Picasa 3" = Picasa 3
"SAMSUNG CDMA Modem" = SAMSUNG CDMA Modem Driver Set
"SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software
"Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"SAMSUNG USB Mobile Device" = SAMSUNG USB Mobile Device Software
"Softonic-Eng7 Toolbar" = Softonic-Eng7 Toolbar
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"Stylish Profile" = Stylish Profile
"VLC media player" = VLC media player 1.1.9
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = WinRAR
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"yBook_is1" = yBook
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 21.12.2010 14:07:51 | Computer Name = BRNAKOVI-F6C11A | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.
Error - 21.12.2010 14:07:51 | Computer Name = BRNAKOVI-F6C11A | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.
Error - 28.12.2010 5:29:51 | Computer Name = BRNAKOVI-F6C11A | Source = MsiInstaller | ID = 11311
Description = Produkt: Olympus ib - Chyba 1311. Zdrojový soubor nelze najít(soubor
CAB): C:\DOCUME~1\RODIE~1~BRN\LOCALS~1\Temp\pft4~tmp\ibSetup\Data1.cab. Přesvědčte
se, zda soubor existuje a zda k němu máte přístup.
Error - 28.12.2010 5:30:04 | Computer Name = BRNAKOVI-F6C11A | Source = MsiInstaller | ID = 11311
Description = Produkt: Olympus ib - Chyba 1311. Zdrojový soubor nelze najít(soubor
CAB): C:\DOCUME~1\RODIE~1~BRN\LOCALS~1\Temp\pft4~tmp\ibSetup\Data1.cab. Přesvědčte
se, zda soubor existuje a zda k němu máte přístup.
Error - 28.12.2010 5:30:16 | Computer Name = BRNAKOVI-F6C11A | Source = MsiInstaller | ID = 11311
Description = Produkt: Olympus ib - Chyba 1311. Zdrojový soubor nelze najít(soubor
CAB): C:\DOCUME~1\RODIE~1~BRN\LOCALS~1\Temp\pft4~tmp\ibSetup\Data1.cab. Přesvědčte
se, zda soubor existuje a zda k němu máte přístup.
Error - 6.1.2011 1:38:20 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1000
Description = Chybující aplikace newpcstudio.exe, verze 1.0.0.1, chybující modul
unknown, verze 0.0.0.0, adresa chyby 0x00e40293.
Error - 20.1.2011 14:59:22 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1000
Description = Chybující aplikace newpcstudio.exe, verze 1.0.0.1, chybující modul
unknown, verze 0.0.0.0, adresa chyby 0x00ec0293.
Error - 17.3.2011 15:03:38 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1000
Description = Chybující aplikace newpcstudio.exe, verze 1.0.0.1, chybující modul
newpcstudio.exe, verze 1.0.0.1, adresa chyby 0x0003839b.
Error - 13.5.2011 3:10:31 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1000
Description = Chybující aplikace UltiDevCassinWebServer2a.exe, verze 2.1.0.3, chybující
modul msvcr80.dll, verze 8.0.50727.3053, adresa chyby 0x0000bde7.
Error - 13.5.2011 3:12:23 | Computer Name = BRNAKOVI-F6C11A | Source = Application Error | ID = 1004
Description = Chybující aplikace UltiDevCassinWebServer2a.exe, verze 2.1.0.3, chybující
modul msvcr80.dll, verze 8.0.50727.3053, adresa chyby 0x0000bde7.
[ System Events ]
Error - 13.12.2011 10:40:28 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:28 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:28 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
Error - 13.12.2011 10:40:29 | Computer Name = BRNAKOVI-F6C11A | Source = Service Control Manager | ID = 7023
Description = Služba Správa aplikací byla ukončena s následující chybou: %%126
< End of report >
Re: Bezduvodne Vypinani pC





- Stahne a ulozte na plochu UsbFix http://www.viry.cz/forum/viewtopic.php?f=24&t=102308
- Spustte a kliknete na Deletion
- Po dokonceni sem vlozte log, pokud na Vas nevyskoci, najdete jej zde C:\UsbFix.txt

- Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
- Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
Kód: Vybrat vše
:otl SRV - File not found [Disabled | Stopped] -- -- (NMIndexingService) SRV - File not found [On_Demand | Stopped] -- -- (NBService) SRV - File not found [On_Demand | Stopped] -- -- (McComponentHostService) SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - File not found [Auto | Stopped] -- -- (BarDiscover Service) SRV - File not found [Auto | Stopped] -- -- (avast! Antivirus) SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt) SRV - [2011.08.09 16:38:38 | 000,328,536 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe -- (AdvancedSystemCareService) IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60076 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qip.ru/ IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search13.net/ IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.seznam.cz/ [binary data] IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1060933 IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.seznam.cz/ IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search13.net/ IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search13.net/ IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: - No CLSID value found IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.) IE - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\URLSearchHook: {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll (qip.ru) FF - prefs.js..browser.search.defaultengine: "Ask.com" FF - prefs.js..browser.search.defaultenginename: "Ask.com" FF - prefs.js..browser.search.defaultthis.engineName: "Softonic-Eng7 Customized Web Search" FF - prefs.js..browser.search.defaulturl: "http://search.winamp.com/search/search?query={searchTerms}&invocationType=tb50-ff-winamp-chromesbox-en-us&tb_uuid=20110621174551687&tb_oid=24-06-2011&tb_mrud=24-06-2011&query=" FF - prefs.js..browser.search.order.1: "Ask.com" FF - prefs.js..browser.search.selectedEngine: "Ask.com" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://ahoolly.com" FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.12.2.16749 FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2 FF - prefs.js..keyword.URL: "http://websearch.ask.com/redirect?client=ff&src=kw&tb=FF&o=14594&locale=en_EU&apn_uid=66439E27-973A-4BAF-84B5-7DFA612FC426&apn_ptnrs=FV&apn_sauid=711F6BA7-55DF-4EE7-A6D3-6FEC94D74B0E&apn_dtid=YYYYYYYYCZ&&q=" FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "Crawler Search" FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "http://www.crawler.com/search/dispatcher.aspx?tp=aus&tbid=60076&qkw=" [2011.07.18 18:07:10 | 000,000,000 | ---D | M] ("Winamp Toolbar") -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f} [2011.12.08 14:32:16 | 000,000,000 | ---D | M] (Softonic-Eng7 Community Toolbar) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} [2011.07.18 18:06:33 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com [2011.12.03 18:25:36 | 000,000,000 | ---D | M] ("Ask Toolbar") -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com [2011.06.24 15:05:07 | 000,002,362 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\aol-web-search.xml [2011.03.13 20:19:13 | 000,001,735 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\ask.uk.xml [2011.12.13 15:42:22 | 000,002,399 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\askcom.xml [2010.06.08 10:28:50 | 000,000,929 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\conduit.xml [2009.12.22 13:43:59 | 000,001,331 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\crawlersrch.xml [2010.01.03 21:53:36 | 000,003,915 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\sweetim.xml [2010.03.10 11:35:16 | 000,001,586 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\web-search.xml File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{6236BA26-C117-4007-928C-DE0716C7FA80}.XPI File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{6236BA26-C117-4007-928C-DE0716C7FA96}.XPI File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{B9DB16A4-6EDC-47EC-A1F4-B86292ED211D} File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{EEE6C361-6118-11DC-9C72-001320C79847}.XPI File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\PERSONAS@CHRISTOPHER.BEARD File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\KIKA A EVA.BRNAKOVI-F6C11A\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\LBILA2UU.DEFAULT\EXTENSIONS\TOOLBAR@ASK.COM O2 - BHO: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.) O2 - BHO: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.) O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll File not found O2 - BHO: (QIPBHO Class) - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Program Files\Internet Explorer\qipsearchbar.dll (qip.ru) O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKLM\..\Toolbar: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll File not found O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\Toolbar\WebBrowser: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.) O3 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\Toolbar\WebBrowser: (Softonic-Eng7 Toolbar) - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - C:\Program Files\Softonic-Eng7\prxtbSof0.dll (Conduit Ltd.) O3 - HKU\S-1-5-21-1547161642-1085031214-725345543-1004\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask) O8 - Extra context menu item: &Search - ?p=GRxdm066YYCZ File not found O9 - Extra 'Tools' menuitem : StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm () O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab (Reg Error: Key error.) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab (Reg Error: Key error.) [2011.12.13 16:46:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Advanced SystemCare 4 [2011.12.13 16:45:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit [2011.12.13 16:45:56 | 000,000,000 | ---D | C] -- C:\Program Files\IObit [2011.12.13 16:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Advanced SystemCare Pro 4.1.0.235 [2011.12.13 16:15:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Spybot - Search & Destroy [2011.12.13 17:11:35 | 000,000,280 | ---- | M] () -- C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job [2011.12.13 16:47:41 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\ASC4_AutoCare.job [2011.12.13 16:46:08 | 000,000,896 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Quick Care.lnk [2011.12.13 16:46:06 | 000,000,874 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Plocha\Advanced SystemCare 4.lnk [2011.12.13 16:45:00 | 000,001,078 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job [2011.12.13 16:45:00 | 000,001,026 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job [2011.12.13 16:15:11 | 000,000,933 | ---- | M] () -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Spybot - Search & Destroy.lnk [2011.12.13 16:01:05 | 000,000,244 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job [2011.12.12 15:15:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2011.12.13 16:46:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [20 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ] [7 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ] [2 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\*.tmp files -> C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\*.tmp -> ] [1 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\*.tmp files -> C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\*.tmp -> ] [3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ] [4 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ] [1 C:\WINDOWS\Temp\_avast_\*.tmp files -> C:\WINDOWS\Temp\_avast_\*.tmp -> ] [2011.12.12 15:15:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job [2011.12.13 16:47:41 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_AutoCare.job [2011.12.13 17:11:35 | 000,000,280 | ---- | M] () -- C:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job [2011.12.13 16:45:00 | 000,001,026 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job [2011.12.13 16:45:00 | 000,001,078 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job [2011.12.13 16:01:05 | 000,000,244 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job :services gusvc NBService :reg [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "SSBkgdUpdate"=- "Adobe Reader Speed Launcher"=- "NPSStartup"=- "SunJavaUpdateSched"=- ""=- "ApnUpdater"=- "KernelFaultCheck"=- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] "RTHDBPL"=- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Google Update"=- :files C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc\lsass.exe C:\Program Files\IObit C:\Program Files\Ask.com %windir%\system32\*.tmp.dll /s %windir%\system32\SET*.tmp /s %windir%\*.tmp :commands [RESETHOSTS] [EMPTYTEMP] [EMPTYFLASH]
- Nasledne kliknete na Opravit
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: Bezduvodne Vypinani pC
IOBIT je odinstalovan
Avast hotov.
USB disky uz nepouzivam jelikoz jsem je nekde poztracel
A pri spusteni testu se PC pri 70% restartuje a zadny log nevyjede
Tady je log z OTL:
All processes killed
========== OTL ==========
Service NMIndexingService stopped successfully!
Service NMIndexingService deleted successfully!
Service NBService stopped successfully!
Service NBService deleted successfully!
Service McComponentHostService stopped successfully!
Service McComponentHostService deleted successfully!
Service HidServ stopped successfully!
Service HidServ deleted successfully!
Service BarDiscover Service stopped successfully!
Service BarDiscover Service deleted successfully!
Service avast! Antivirus stopped successfully!
Service avast! Antivirus deleted successfully!
Service AppMgmt stopped successfully!
Service AppMgmt deleted successfully!
Error: No service named AdvancedSystemCareService was found to stop!
Service\Driver key AdvancedSystemCareService not found.
File C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\CustomizeSearch| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Search_URL| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Secondary Start Pages| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Restore| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search\\CustomizeSearch| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search\\Default_Search_URL| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}\ deleted successfully.
C:\Program Files\Ask.com\GenericAskToolbar.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\ deleted successfully.
C:\Program Files\Softonic-Eng7\prxtbSof0.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}\ deleted successfully.
C:\Program Files\Internet Explorer\qipsearchbar.dll moved successfully.
Prefs.js: "Ask.com" removed from browser.search.defaultengine
Prefs.js: "Ask.com" removed from browser.search.defaultenginename
Prefs.js: "Softonic-Eng7 Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "http://search.winamp.com/search/search? ... 011&query=" removed from browser.search.defaulturl
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "Ask.com" removed from browser.search.selectedEngine
Prefs.js: true removed from browser.search.useDBForOrder
Prefs.js: "http://ahoolly.com" removed from browser.startup.homepage
Prefs.js: toolbar@ask.com:3.12.2.16749 removed from extensions.enabledItems
Prefs.js: engine@conduit.com:3.3.3.2 removed from extensions.enabledItems
Prefs.js: "http://websearch.ask.com/redirect?clien ... YYYYCZ&&q=" removed from keyword.URL
Prefs.js: "Crawler Search" removed from sweetim.toolbar.previous.browser.search.defaultenginename
Prefs.js: "http://www.crawler.com/search/dispatche ... 60076&qkw=" removed from sweetim.toolbar.previous.keyword.URL
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\META-INF folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\components folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\chrome folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f} folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\searchplugin folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\modules folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\META-INF folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\defaults folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\components folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\chrome folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\searchplugin folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\META-INF folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\lib folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\DualPackage folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\defaults folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\components folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\chrome folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\searchplugins folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\logs folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\defaults folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\datastore folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-23-Nov-2011-09-45-04-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-20-Oct-2010-14-38-40-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-11-May-2011-19-32-05-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-08-Dec-2010-18-13-46-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Tue-31-May-2011-15-22-07-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Tue-01-Mar-2011-15-11-37-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sun-24-Oct-2010-13-35-37-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sun-13-Feb-2011-12-35-27-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sun-01-May-2011-10-28-09-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sat-29-Jan-2011-22-47-48-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sat-28-May-2011-07-45-04-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Mon-05-Sep-2011-15-01-45-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Fri-18-Mar-2011-14-45-24-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Fri-02-Dec-2011-15-50-29-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\content folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\aol-web-search.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\ask.uk.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\askcom.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\conduit.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\crawlersrch.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\sweetim.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\web-search.xml moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ deleted successfully.
C:\Program Files\ConduitEngine\prxConduitEngine.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\ not found.
File C:\Program Files\Softonic-Eng7\prxtbSof0.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}\ not found.
File C:\Program Files\Internet Explorer\qipsearchbar.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{30F9B915-B755-4826-820B-08FBA6BD249D} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found.
File C:\Program Files\ConduitEngine\prxConduitEngine.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\ not found.
File Eng7\prxtbSof0.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{30F9B915-B755-4826-820B-08FBA6BD249D} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found.
File C:\Program Files\ConduitEngine\prxConduitEngine.dll not found.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3}\ not found.
File Eng7\prxtbSof0.dll not found.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater deleted successfully.
C:\Program Files\Ask.com\Updater\Updater.exe moved successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\&Search\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{14CD42DD-ABCD-3586-DCAB-40E3693E3737}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14CD42DD-ABCD-3586-DCAB-40E3693E3737}\ not found.
C:\Program Files\Stylish Profile\ct.htm moved successfully.
Starting removal of ActiveX control {67DABFBF-D0AB-41FA-9C46-CC0F21721616}
C:\WINDOWS\Downloaded Program Files\DivXPlugin.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{67DABFBF-D0AB-41FA-9C46-CC0F21721616}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67DABFBF-D0AB-41FA-9C46-CC0F21721616}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{67DABFBF-D0AB-41FA-9C46-CC0F21721616}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67DABFBF-D0AB-41FA-9C46-CC0F21721616}\ not found.
Starting removal of ActiveX control {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
C:\WINDOWS\Downloaded Program Files\erma.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Folder C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Advanced SystemCare 4\ not found.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\Advanced SystemCare V4\PMonitor folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\Advanced SystemCare V4\Log folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\Advanced SystemCare V4\Backup folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\Advanced SystemCare V4 folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit folder moved successfully.
C:\Program Files\IObit\Advanced SystemCare 4\Update folder moved successfully.
C:\Program Files\IObit\Advanced SystemCare 4\SecurityHoles_Download folder moved successfully.
C:\Program Files\IObit\Advanced SystemCare 4\LatestNews folder moved successfully.
C:\Program Files\IObit\Advanced SystemCare 4 folder moved successfully.
C:\Program Files\IObit folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Advanced SystemCare Pro 4.1.0.235 folder moved successfully.
C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Spybot - Search & Destroy folder moved successfully.
File C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job not found.
File C:\WINDOWS\tasks\ASC4_AutoCare.job not found.
File C:\Documents and Settings\All Users.WINDOWS\Plocha\Quick Care.lnk not found.
File C:\Documents and Settings\All Users.WINDOWS\Plocha\Advanced SystemCare 4.lnk not found.
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Spybot - Search & Destroy.lnk moved successfully.
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job moved successfully.
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job moved successfully.
Folder C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\ not found.
C:\WINDOWS\002563_.tmp deleted successfully.
C:\WINDOWS\msdownld.tmp folder deleted successfully.
C:\WINDOWS\SET3.tmp deleted successfully.
C:\WINDOWS\SET4.tmp deleted successfully.
C:\WINDOWS\SET8.tmp deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP10C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP117.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP17.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP174.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP18E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP190.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1A4.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1A6.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP20F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP22D.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP24.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP248.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP26.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP26C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP30F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP337.tmp\mscorlib.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP337.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP47.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE3.tmp folder deleted successfully.
C:\WINDOWS\Installer\MSI1C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1F.tmp deleted successfully.
C:\WINDOWS\Installer\MSI206.tmp deleted successfully.
C:\WINDOWS\Installer\MSI20C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI38.tmp deleted successfully.
C:\WINDOWS\Installer\MSI3D.tmp deleted successfully.
C:\WINDOWS\Installer\MSI90.tmp deleted successfully.
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\a8g4dibg.tmp deleted successfully.
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\qfnzq407.tmp deleted successfully.
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\qpzgfuo8.tmp deleted successfully.
C:\WINDOWS\system32\ConduitEngine.tmp deleted successfully.
C:\WINDOWS\system32\CONFIG.TMP deleted successfully.
C:\WINDOWS\system32\SET20.tmp deleted successfully.
C:\WINDOWS\Temp\_avast_\unp37391758.tmp deleted successfully.
File C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job not found.
File C:\WINDOWS\Tasks\ASC4_AutoCare.job not found.
File C:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job not found.
File C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job not found.
File C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job not found.
File C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job not found.
========== SERVICES/DRIVERS ==========
Service gusvc stopped successfully!
Service gusvc deleted successfully!
Error: No service named NBService was found to stop!
Service\Driver key NBService not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SSBkgdUpdate deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NPSStartup not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\KernelFaultCheck deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\\RTHDBPL not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update deleted successfully.
========== FILES ==========
File\Folder C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc\lsass.exe not found.
File\Folder C:\Program Files\IObit not found.
C:\Program Files\Ask.com\Updater folder moved successfully.
C:\Program Files\Ask.com\assets\oobe folder moved successfully.
C:\Program Files\Ask.com\assets folder moved successfully.
C:\Program Files\Ask.com folder moved successfully.
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Administrator.BRNAKOVI-F6C11A
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: All Users.WINDOWS
User: Default User.WINDOWS
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Kika a Eva.BRNAKOVI-F6C11A
->Temp folder emptied: 1093745 bytes
->Temporary Internet Files folder emptied: 55863 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 44139126 bytes
->Google Chrome cache emptied: 16545291 bytes
->Flash cache emptied: 1927640 bytes
User: KIKAAE~1~BRN
User: LocalService.NT AUTHORITY
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 3375927 bytes
User: NetworkService.NT AUTHORITY
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33237 bytes
User: RODIE~1~BRN
User: Rodiče.BRNAKOVI-F6C11A
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 50068748 bytes
->Flash cache emptied: 1065 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 146095502 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 251,00 mb
[EMPTYFLASH]
User: Administrator
User: Administrator.BRNAKOVI-F6C11A
User: All Users.WINDOWS
User: Default User.WINDOWS
User: Kika a Eva.BRNAKOVI-F6C11A
->Flash cache emptied: 0 bytes
User: KIKAAE~1~BRN
User: LocalService.NT AUTHORITY
User: NetworkService.NT AUTHORITY
User: RODIE~1~BRN
User: Rodiče.BRNAKOVI-F6C11A
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.31.0 log created on 12132011_183309
Files\Folders moved on Reboot...
Registry entries deleted on Reboot...
Avast hotov.
USB disky uz nepouzivam jelikoz jsem je nekde poztracel

Tady je log z OTL:
All processes killed
========== OTL ==========
Service NMIndexingService stopped successfully!
Service NMIndexingService deleted successfully!
Service NBService stopped successfully!
Service NBService deleted successfully!
Service McComponentHostService stopped successfully!
Service McComponentHostService deleted successfully!
Service HidServ stopped successfully!
Service HidServ deleted successfully!
Service BarDiscover Service stopped successfully!
Service BarDiscover Service deleted successfully!
Service avast! Antivirus stopped successfully!
Service avast! Antivirus deleted successfully!
Service AppMgmt stopped successfully!
Service AppMgmt deleted successfully!
Error: No service named AdvancedSystemCareService was found to stop!
Service\Driver key AdvancedSystemCareService not found.
File C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\CustomizeSearch| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Search_URL| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Secondary Start Pages| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Restore| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search\\CustomizeSearch| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search\\Default_Search_URL| /E : value set successfully!
HKU\S-1-5-21-1547161642-1085031214-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}\ deleted successfully.
C:\Program Files\Ask.com\GenericAskToolbar.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\ deleted successfully.
C:\Program Files\Softonic-Eng7\prxtbSof0.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}\ deleted successfully.
C:\Program Files\Internet Explorer\qipsearchbar.dll moved successfully.
Prefs.js: "Ask.com" removed from browser.search.defaultengine
Prefs.js: "Ask.com" removed from browser.search.defaultenginename
Prefs.js: "Softonic-Eng7 Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "http://search.winamp.com/search/search? ... 011&query=" removed from browser.search.defaulturl
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "Ask.com" removed from browser.search.selectedEngine
Prefs.js: true removed from browser.search.useDBForOrder
Prefs.js: "http://ahoolly.com" removed from browser.startup.homepage
Prefs.js: toolbar@ask.com:3.12.2.16749 removed from extensions.enabledItems
Prefs.js: engine@conduit.com:3.3.3.2 removed from extensions.enabledItems
Prefs.js: "http://websearch.ask.com/redirect?clien ... YYYYCZ&&q=" removed from keyword.URL
Prefs.js: "Crawler Search" removed from sweetim.toolbar.previous.browser.search.defaultenginename
Prefs.js: "http://www.crawler.com/search/dispatche ... 60076&qkw=" removed from sweetim.toolbar.previous.keyword.URL
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\META-INF folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\components folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\chrome folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f} folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\searchplugin folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\modules folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\META-INF folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\defaults folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\components folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\chrome folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\searchplugin folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\META-INF folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\lib folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\DualPackage folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\defaults folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\components folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com\chrome folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\engine@conduit.com folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\searchplugins folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\logs folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\defaults folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\datastore folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-23-Nov-2011-09-45-04-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-20-Oct-2010-14-38-40-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-11-May-2011-19-32-05-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-08-Dec-2010-18-13-46-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Tue-31-May-2011-15-22-07-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Tue-01-Mar-2011-15-11-37-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sun-24-Oct-2010-13-35-37-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sun-13-Feb-2011-12-35-27-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sun-01-May-2011-10-28-09-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sat-29-Jan-2011-22-47-48-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sat-28-May-2011-07-45-04-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Mon-05-Sep-2011-15-01-45-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Fri-18-Mar-2011-14-45-24-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Fri-02-Dec-2011-15-50-29-GMT folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\temp folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome\content folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com\chrome folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\extensions\toolbar@ask.com folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\aol-web-search.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\ask.uk.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\askcom.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\conduit.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\crawlersrch.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\sweetim.xml moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\Mozilla\Firefox\Profiles\lbila2uu.default\searchplugins\web-search.xml moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ deleted successfully.
C:\Program Files\ConduitEngine\prxConduitEngine.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\ not found.
File C:\Program Files\Softonic-Eng7\prxtbSof0.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}\ not found.
File C:\Program Files\Internet Explorer\qipsearchbar.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{30F9B915-B755-4826-820B-08FBA6BD249D} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found.
File C:\Program Files\ConduitEngine\prxConduitEngine.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}\ not found.
File Eng7\prxtbSof0.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{30F9B915-B755-4826-820B-08FBA6BD249D} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found.
File C:\Program Files\ConduitEngine\prxConduitEngine.dll not found.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3}\ not found.
File Eng7\prxtbSof0.dll not found.
Registry value HKEY_USERS\S-1-5-21-1547161642-1085031214-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater deleted successfully.
C:\Program Files\Ask.com\Updater\Updater.exe moved successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\&Search\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{14CD42DD-ABCD-3586-DCAB-40E3693E3737}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14CD42DD-ABCD-3586-DCAB-40E3693E3737}\ not found.
C:\Program Files\Stylish Profile\ct.htm moved successfully.
Starting removal of ActiveX control {67DABFBF-D0AB-41FA-9C46-CC0F21721616}
C:\WINDOWS\Downloaded Program Files\DivXPlugin.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{67DABFBF-D0AB-41FA-9C46-CC0F21721616}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67DABFBF-D0AB-41FA-9C46-CC0F21721616}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{67DABFBF-D0AB-41FA-9C46-CC0F21721616}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{67DABFBF-D0AB-41FA-9C46-CC0F21721616}\ not found.
Starting removal of ActiveX control {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
C:\WINDOWS\Downloaded Program Files\erma.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Folder C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Advanced SystemCare 4\ not found.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\Advanced SystemCare V4\PMonitor folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\Advanced SystemCare V4\Log folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\Advanced SystemCare V4\Backup folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\Advanced SystemCare V4 folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit folder moved successfully.
C:\Program Files\IObit\Advanced SystemCare 4\Update folder moved successfully.
C:\Program Files\IObit\Advanced SystemCare 4\SecurityHoles_Download folder moved successfully.
C:\Program Files\IObit\Advanced SystemCare 4\LatestNews folder moved successfully.
C:\Program Files\IObit\Advanced SystemCare 4 folder moved successfully.
C:\Program Files\IObit folder moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Advanced SystemCare Pro 4.1.0.235 folder moved successfully.
C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Spybot - Search & Destroy folder moved successfully.
File C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job not found.
File C:\WINDOWS\tasks\ASC4_AutoCare.job not found.
File C:\Documents and Settings\All Users.WINDOWS\Plocha\Quick Care.lnk not found.
File C:\Documents and Settings\All Users.WINDOWS\Plocha\Advanced SystemCare 4.lnk not found.
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job moved successfully.
C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Plocha\Spybot - Search & Destroy.lnk moved successfully.
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job moved successfully.
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job moved successfully.
Folder C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\IObit\ not found.
C:\WINDOWS\002563_.tmp deleted successfully.
C:\WINDOWS\msdownld.tmp folder deleted successfully.
C:\WINDOWS\SET3.tmp deleted successfully.
C:\WINDOWS\SET4.tmp deleted successfully.
C:\WINDOWS\SET8.tmp deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP10C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP117.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP17.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP174.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP18E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP190.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1A4.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1A6.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP20F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP22D.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP24.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP248.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP26.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP26C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP30F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP337.tmp\mscorlib.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP337.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP47.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE3.tmp folder deleted successfully.
C:\WINDOWS\Installer\MSI1C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1F.tmp deleted successfully.
C:\WINDOWS\Installer\MSI206.tmp deleted successfully.
C:\WINDOWS\Installer\MSI20C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI38.tmp deleted successfully.
C:\WINDOWS\Installer\MSI3D.tmp deleted successfully.
C:\WINDOWS\Installer\MSI90.tmp deleted successfully.
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\a8g4dibg.tmp deleted successfully.
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\376fc3e3\c0362a59\qfnzq407.tmp deleted successfully.
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files\root\93a10de6\c715adc6\qpzgfuo8.tmp deleted successfully.
C:\WINDOWS\system32\ConduitEngine.tmp deleted successfully.
C:\WINDOWS\system32\CONFIG.TMP deleted successfully.
C:\WINDOWS\system32\SET20.tmp deleted successfully.
C:\WINDOWS\Temp\_avast_\unp37391758.tmp deleted successfully.
File C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job not found.
File C:\WINDOWS\Tasks\ASC4_AutoCare.job not found.
File C:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job not found.
File C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004Core.job not found.
File C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-1085031214-725345543-1004UA.job not found.
File C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job not found.
========== SERVICES/DRIVERS ==========
Service gusvc stopped successfully!
Service gusvc deleted successfully!
Error: No service named NBService was found to stop!
Service\Driver key NBService not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SSBkgdUpdate deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NPSStartup not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\KernelFaultCheck deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\\RTHDBPL not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update deleted successfully.
========== FILES ==========
File\Folder C:\Documents and Settings\Kika a Eva.BRNAKOVI-F6C11A\Data aplikací\SystemProc\lsass.exe not found.
File\Folder C:\Program Files\IObit not found.
C:\Program Files\Ask.com\Updater folder moved successfully.
C:\Program Files\Ask.com\assets\oobe folder moved successfully.
C:\Program Files\Ask.com\assets folder moved successfully.
C:\Program Files\Ask.com folder moved successfully.
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Administrator.BRNAKOVI-F6C11A
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: All Users.WINDOWS
User: Default User.WINDOWS
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Kika a Eva.BRNAKOVI-F6C11A
->Temp folder emptied: 1093745 bytes
->Temporary Internet Files folder emptied: 55863 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 44139126 bytes
->Google Chrome cache emptied: 16545291 bytes
->Flash cache emptied: 1927640 bytes
User: KIKAAE~1~BRN
User: LocalService.NT AUTHORITY
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 3375927 bytes
User: NetworkService.NT AUTHORITY
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33237 bytes
User: RODIE~1~BRN
User: Rodiče.BRNAKOVI-F6C11A
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 50068748 bytes
->Flash cache emptied: 1065 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 146095502 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 251,00 mb
[EMPTYFLASH]
User: Administrator
User: Administrator.BRNAKOVI-F6C11A
User: All Users.WINDOWS
User: Default User.WINDOWS
User: Kika a Eva.BRNAKOVI-F6C11A
->Flash cache emptied: 0 bytes
User: KIKAAE~1~BRN
User: LocalService.NT AUTHORITY
User: NetworkService.NT AUTHORITY
User: RODIE~1~BRN
User: Rodiče.BRNAKOVI-F6C11A
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.31.0 log created on 12132011_183309
Files\Folders moved on Reboot...
Registry entries deleted on Reboot...
Re: Bezduvodne Vypinani pC
Poprosim o novy log z RSIT kde doufam ze jiz bude funkcni Avast