Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

BSOD, restart PC při spuštění a probuzení z režimu spánku

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
killick
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 09 črc 2006 10:10
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#16 Příspěvek od killick »

Rudy píše:Smazáno. Nastala nějaká zmněna?
Prozatím nic. Je pravda, že mi modrá obrazovka naskakuje velice nepravidelně. Tzn. mám počkat tedy pár dní? pokud nenaskočí, tak problém vyřešen :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#17 Příspěvek od Rudy »

Chvíli to sledujte, příp. se znovu ozvěte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

killick
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 09 črc 2006 10:10
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#18 Příspěvek od killick »

Dobrá :)

Zatím Vám moc děkuji. Dám ještě vědět za pár dní.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#19 Příspěvek od Rudy »

Zatím nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

killick
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 09 črc 2006 10:10
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#20 Příspěvek od killick »

Přeji dobrý den,

bohužel dnes jsem se setkal znovu s BSoD. Přiznám se, že uvažuji nad variantou úplně přeinstalovat PC. Myslím si, že to bude dělat asi nějaký software. Kdybych to přeinstaloval, tak bych postupně doinstalovával software.

Každopádně pokud máte nějaký další nápad, tak sem s ním :)

killick
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 09 črc 2006 10:10
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#21 Příspěvek od killick »

Ještě zkouším aktualizovat ovladače. Stáhl jsem si DriverMax free a aktualizoval zatím:
AMD PCI IDE Controller (Version 5.2.0.57)
HX2LP Kit (version 3.3.02)

A zbývá mi ještě aktualizovat ovladače na zvukové karty.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#22 Příspěvek od Rudy »

killick píše:Přeji dobrý den,

bohužel dnes jsem se setkal znovu s BSoD. Přiznám se, že uvažuji nad variantou úplně přeinstalovat PC. Myslím si, že to bude dělat asi nějaký software. Kdybych to přeinstaloval, tak bych postupně doinstalovával software.

Každopádně pokud máte nějaký další nápad, tak sem s ním :)
Můžete zkusit opravu systému z instal. média. Problém může způsobovat i hardware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

killick
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 09 črc 2006 10:10
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#23 Příspěvek od killick »

Rudy píše:
killick píše:Přeji dobrý den,

bohužel dnes jsem se setkal znovu s BSoD. Přiznám se, že uvažuji nad variantou úplně přeinstalovat PC. Myslím si, že to bude dělat asi nějaký software. Kdybych to přeinstaloval, tak bych postupně doinstalovával software.

Každopádně pokud máte nějaký další nápad, tak sem s ním :)
Můžete zkusit opravu systému z instal. média. Problém může způsobovat i hardware.
Dobrý den,

zkusil jsem opravit, ale windows nenašel žádnou chybu. Zbývající ovladače na zvukovou kartu jsem zaktualizoval. Ovšem výsledek BSoD stejný :(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#24 Příspěvek od Rudy »

Udělejte sken GMER: http://forum.viry.cz/viewtopic.php?f=29&t=62878a dejte oba logy.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

killick
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 09 črc 2006 10:10
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#25 Příspěvek od killick »

Rudy píše:Udělejte sken GMER: http://forum.viry.cz/viewtopic.php?f=29&t=62878a dejte oba logy.
Mám problém, jelikož GMER když spustím, udělá se rychlý sken, a dám save, tak log je naprosto prázdný. Druhý log, kde mám zaškrtnout vše vpravo, tak nemám možnost, a mám tam zaškrtnuto jen Services, Registry, Files. Ostatní pole nad těmito jsou zašedlé. Spouštím jako správce...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#26 Příspěvek od Rudy »

Stáhněte OTL: http://oldtimer.geekstogo.com/OTL.exe a uložte na plochu. Spusťte, zaškrtněte "kontrola na havěť LOP", kontrola na havěť PURITY" a "Pro všechny uživatele. Klikněte na "prohledat". Dejte logy OTL a Extras.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

killick
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 09 črc 2006 10:10
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#27 Příspěvek od killick »

Rudy píše:Stáhněte OTL: http://oldtimer.geekstogo.com/OTL.exe a uložte na plochu. Spusťte, zaškrtněte "kontrola na havěť LOP", kontrola na havěť PURITY" a "Pro všechny uživatele. Klikněte na "prohledat". Dejte logy OTL a Extras.
Skvěle, už to funguje :)
OTL logfile created on: 26.1.2012 19:12:14 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\kiwi\Desktop
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 2,23 Gb Available Physical Memory | 55,78% Memory free
8,21 Gb Paging File | 6,31 Gb Available in Paging File | 76,88% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 298,09 Gb Total Space | 219,66 Gb Free Space | 73,69% Space Free | Partition Type: NTFS
Drive D: | 1863,01 Gb Total Space | 487,17 Gb Free Space | 26,15% Space Free | Partition Type: NTFS

Computer Name: KIWI-PC | User Name: kiwi | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012.01.26 19:10:49 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\kiwi\Desktop\OTL.exe
PRC - [2012.01.24 14:19:14 | 003,478,336 | ---- | M] (DT Soft Ltd) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
PRC - [2012.01.19 20:24:56 | 005,420,408 | ---- | M] () -- C:\Users\kiwi\AppData\Roaming\Mikogo\Mikogo-Host.exe
PRC - [2012.01.11 17:32:50 | 000,496,128 | ---- | M] (Crawler.com) -- D:\files\Spyware Terminator\sp_rsser.exe
PRC - [2012.01.03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011.12.10 12:49:01 | 003,246,040 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
PRC - [2011.11.24 05:59:00 | 002,348,864 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2011.11.23 19:29:22 | 000,381,248 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2011.10.13 07:01:20 | 000,394,744 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
PRC - [2011.10.13 07:00:22 | 005,574,456 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
PRC - [2011.09.22 16:00:56 | 002,537,096 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\OnlineBackupStandalone\TrueImageMonitor.exe
PRC - [2011.09.22 12:03:30 | 000,974,944 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
PRC - [2011.08.24 14:57:48 | 000,021,880 | ---- | M] (Schneider Electric) -- C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe
PRC - [2011.08.24 14:48:02 | 000,705,912 | ---- | M] (Schneider Electric) -- C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe
PRC - [2011.08.24 14:42:48 | 000,673,144 | ---- | M] (Schneider Electric) -- C:\Program Files (x86)\APC\PowerChute Personal Edition\apcsystray.exe
PRC - [2010.09.02 08:57:48 | 001,774,992 | ---- | M] (ALTAP) -- D:\files\Altap Salamander 2.5\salamand.exe
PRC - [2009.02.10 17:01:49 | 000,116,104 | ---- | M] () -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
PRC - [2008.11.18 13:15:30 | 000,307,200 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
PRC - [2007.10.15 15:59:14 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\Razer\Lachesis\razertra.exe
PRC - [2007.09.12 11:52:18 | 000,172,032 | ---- | M] () -- C:\Program Files (x86)\Razer\Lachesis\razerhid.exe
PRC - [2007.08.16 17:05:16 | 000,274,432 | ---- | M] (razercfg MFC Application) -- C:\Program Files (x86)\Razer\Lachesis\OSD.exe
PRC - [2007.07.25 16:06:30 | 002,027,792 | ---- | M] () -- C:\Program Files (x86)\Logitech\QuickCam\Quickcam.exe
PRC - [2007.07.25 16:02:54 | 000,563,984 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
PRC - [2007.07.25 16:02:32 | 000,403,728 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\LogiShrd\LQCVFX\COCIManager.exe
PRC - [2007.07.20 00:40:02 | 000,113,176 | ---- | M] (Logitech Inc.) -- c:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe
PRC - [2007.06.05 10:37:12 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files (x86)\Razer\Lachesis\razerofa.exe


========== Modules (No Company Name) ==========

MOD - [2012.01.19 20:24:56 | 005,420,408 | ---- | M] () -- C:\Users\kiwi\AppData\Roaming\Mikogo\Mikogo-Host.exe
MOD - [2012.01.05 10:48:44 | 000,411,120 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\ppgooglenaclpluginchrome.dll
MOD - [2012.01.05 10:48:43 | 003,767,792 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\pdf.dll
MOD - [2012.01.05 10:47:19 | 000,122,880 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\avutil-51.dll
MOD - [2012.01.05 10:47:18 | 000,222,208 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\avformat-53.dll
MOD - [2012.01.05 10:47:17 | 001,746,432 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\avcodec-53.dll
MOD - [2012.01.05 08:06:01 | 008,593,056 | ---- | M] () -- C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\gcswf32.dll
MOD - [2011.10.13 06:59:42 | 011,227,192 | ---- | M] () -- C:\Program Files (x86)\Acronis\TrueImageHome\Common\ti_managers.dll
MOD - [2010.09.02 12:06:18 | 000,242,176 | ---- | M] () -- D:\files\Altap Salamander 2.5\lang\czech.slg
MOD - [2009.07.10 09:07:18 | 000,166,912 | ---- | M] () -- C:\Windows\SysWOW64\APOMngr.DLL
MOD - [2009.02.06 18:52:24 | 000,073,728 | ---- | M] () -- C:\Windows\SysWOW64\CmdRtr.DLL
MOD - [2007.10.15 15:59:14 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\Razer\Lachesis\razertra.exe
MOD - [2007.09.12 11:52:18 | 000,172,032 | ---- | M] () -- C:\Program Files (x86)\Razer\Lachesis\razerhid.exe
MOD - [2007.07.25 16:13:20 | 000,094,480 | ---- | M] () -- C:\Program Files (x86)\Logitech\QuickCam\LAppRes.DLL
MOD - [2007.07.25 16:06:30 | 002,027,792 | ---- | M] () -- C:\Program Files (x86)\Logitech\QuickCam\Quickcam.exe
MOD - [2007.07.25 16:04:38 | 000,149,264 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\LogiVOIPDevicePlugin.dll
MOD - [2007.07.25 16:04:14 | 000,165,136 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\LogiCordless4001.dll
MOD - [2007.07.25 16:04:02 | 000,138,000 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\LogiCordless.dll
MOD - [2007.07.25 16:03:18 | 000,167,184 | ---- | M] () -- C:\Program Files (x86)\Logitech\QuickCam\EFVal.dll
MOD - [2007.07.25 16:02:54 | 000,563,984 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
MOD - [2007.07.25 16:02:54 | 000,343,312 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\DevMngr.dll
MOD - [2007.07.20 00:39:16 | 000,068,120 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LVCOMSER\LVCSPS.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011.09.22 12:03:30 | 000,974,944 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe -- (ekrn)
SRV:64bit: - [2011.07.12 20:51:20 | 000,027,760 | ---- | M] (VIA Technologies, Inc.) [Auto | Running] -- C:\Windows\SysNative\viakaraokesrv.exe -- (VIAKaraokeService)
SRV:64bit: - [2008.01.19 00:06:52 | 000,383,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2007.07.20 00:41:56 | 000,171,032 | ---- | M] (Logitech Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe -- (LVSrvLauncher)
SRV:64bit: - [2007.07.20 00:40:02 | 000,174,104 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV:64bit: - [2007.07.20 00:38:20 | 000,255,000 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVCSer64.exe -- (LVCOMSer)
SRV - [2012.01.25 16:17:20 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service)
SRV - [2012.01.11 17:32:50 | 000,496,128 | ---- | M] (Crawler.com) [Auto | Running] -- D:\files\Spyware Terminator\sp_rsser.exe -- (sp_rssrv)
SRV - [2012.01.03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011.12.10 12:49:01 | 003,246,040 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe -- (afcdpsrv)
SRV - [2011.11.24 05:59:00 | 002,348,864 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2011.11.23 19:29:22 | 000,381,248 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2011.10.13 07:03:02 | 001,113,696 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc)
SRV - [2011.08.24 14:57:48 | 000,021,880 | ---- | M] (Schneider Electric) [Auto | Running] -- C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe -- (APC Data Service)
SRV - [2011.08.24 14:48:02 | 000,705,912 | ---- | M] (Schneider Electric) [Auto | Running] -- C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe -- (APC UPS Service)
SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.03.29 21:42:16 | 000,066,368 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009.02.10 17:01:49 | 000,116,104 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe -- (IJPLMSVC)
SRV - [2008.11.18 13:15:30 | 000,307,200 | ---- | M] (Creative Technology Ltd) [Auto | Running] -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe -- (CTAudSvcService)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012.01.25 16:12:55 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2011.12.10 12:49:03 | 000,285,280 | ---- | M] (Acronis) [File_System | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\afcdp.sys -- (afcdp)
DRV:64bit: - [2011.12.10 12:48:57 | 001,263,200 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\tdrpm273.sys -- (tdrpman273) Acronis Try&Decide and Restore Points filter (build 273)
DRV:64bit: - [2011.12.10 12:48:53 | 000,970,336 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\timntr.sys -- (timounter)
DRV:64bit: - [2011.12.10 12:48:50 | 000,277,088 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\snapman.sys -- (snapman)
DRV:64bit: - [2011.12.10 09:46:13 | 000,142,944 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\vsflt58.sys -- (vidsflt58) Acronis Disk Storage Filter (58)
DRV:64bit: - [2011.12.10 09:46:09 | 000,132,704 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\fltsrv.sys -- (fltsrv)
DRV:64bit: - [2011.09.08 16:40:24 | 000,508,520 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\Rtlh64.sys -- (RTL8169)
DRV:64bit: - [2011.08.09 14:24:52 | 000,202,576 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\Windows\SysNative\DRIVERS\eamonm.sys -- (eamonm)
DRV:64bit: - [2011.08.04 09:20:38 | 000,187,632 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\epfw.sys -- (epfw)
DRV:64bit: - [2011.08.04 09:20:38 | 000,146,432 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\ehdrv.sys -- (ehdrv)
DRV:64bit: - [2011.08.04 09:20:38 | 000,062,496 | ---- | M] (ESET) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\epfwwfp.sys -- (epfwwfp)
DRV:64bit: - [2011.08.04 09:20:38 | 000,038,288 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\EpfwLWF.sys -- (EpfwLWF)
DRV:64bit: - [2011.07.12 20:51:16 | 002,165,360 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService)
DRV:64bit: - [2010.04.27 16:57:20 | 000,016,200 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmVirHid.sys -- (WmVirHid)
DRV:64bit: - [2010.04.27 16:57:14 | 000,036,936 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmHidLo.sys -- (WmHidLo)
DRV:64bit: - [2010.04.27 16:57:12 | 000,026,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmBEnum.sys -- (WmBEnum)
DRV:64bit: - [2010.04.27 14:03:12 | 000,077,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmXlCore.sys -- (WmXlCore)
DRV:64bit: - [2010.04.27 14:02:42 | 000,043,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmFilter.sys -- (WmFilter)
DRV:64bit: - [2010.02.24 11:20:40 | 000,191,616 | ---- | M] (Protect Software GmbH) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\acedrv11.sys -- (acedrv11)
DRV:64bit: - [2009.10.16 06:44:56 | 001,309,696 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\P17.sys -- (P17)
DRV:64bit: - [2009.10.01 01:51:42 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\wpdusb.sys -- (WpdUsb)
DRV:64bit: - [2009.07.07 20:48:16 | 000,011,832 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\amdide64.sys -- (amdide64)
DRV:64bit: - [2009.01.17 06:27:16 | 000,047,656 | ---- | M] (Cypress Semiconductor) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\Drivers\CYUSB.sys -- (CYUSB)
DRV:64bit: - [2007.08.17 15:48:46 | 000,030,336 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Lachesis.sys -- (VaneFltr)
DRV:64bit: - [2007.07.20 00:38:54 | 002,055,320 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\LVMVDrv.sys -- (LVMVDrv)
DRV:64bit: - [2007.07.20 00:37:34 | 001,599,384 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\LVcKap64.sys -- (LVcKap64)
DRV:64bit: - [2007.07.19 01:43:24 | 000,050,072 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVUSBS64.sys -- (LVUSBS64)
DRV:64bit: - [2007.07.19 01:39:04 | 001,213,592 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\LV302V64.SYS -- (PID_PEPI) Logitech QuickCam IM(PID_PEPI)
DRV:64bit: - [2007.07.19 01:39:04 | 000,015,768 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\lv302a64.sys -- (lvpepf64)
DRV:64bit: - [2007.07.18 17:41:44 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\LVPr2M64.sys -- (LVPr2M64)
DRV:64bit: - [2006.10.31 16:23:42 | 000,015,680 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\ASACPI.sys -- (MTsensor)
DRV - [2009.10.01 23:00:00 | 000,026,240 | ---- | M] () [Kernel | On_Demand | Stopped] -- D:\files\EVEREST Ultimate Edition\kerneld.amd64 -- (EverestDriver)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2012.01.10 18:24:25 | 000,000,000 | ---D | M]


========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\gcswf32.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\pdf.dll
CHR - plugin: Google Update (Enabled) = C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\
CHR - Extension: Gmail = C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012.01.23 19:06:07 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O4:64bit: - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4:64bit: - HKLM..\Run: [CanonSolutionMenu] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4:64bit: - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4:64bit: - HKLM..\Run: [Služba Acronis Scheduler2] C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
O4:64bit: - HKLM..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Logitech Inc.)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
O4 - HKLM..\Run: [Lachesis] C:\Program Files (x86)\Razer\Lachesis\razerhid.exe ()
O4 - HKLM..\Run: [LogitechCommunicationsManager] C:\Program Files (x86)\Common Files\LogiShrd\LComMgr\Communications_Helper.exe ()
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files (x86)\Logitech\QuickCam\Quickcam.exe ()
O4 - HKLM..\Run: [P17RunE] C:\Windows\SysWow64\P17RunE.dll (Creative Technology Ltd.)
O4 - HKLM..\Run: [SAOB Monitor] C:\Program Files (x86)\Acronis\OnlineBackupStandalone\TrueImageMonitor.exe (Acronis)
O4 - HKLM..\Run: [TrueImageMonitor.exe] C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
O4 - HKLM..\Run: [UpdReg] C:\Windows\Updreg.EXE (Creative Technology Ltd.)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000..\Run: [DriverMax_RESTART] D:\files\DriverMax\drivermax.exe (Innovative Solutions)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000..\Run: [Mikogo] C:\Users\kiwi\AppData\Roaming\Mikogo\Mikogo-Host.exe ()
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [DriverMax] D:\files\DriverMax\drivermax.exe (Innovative Solutions)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [DriverMax_RESTART] D:\files\DriverMax\drivermax.exe (Innovative Solutions)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [Mikogo] C:\Users\kiwi\AppData\Roaming\Mikogo\Mikogo-Host.exe ()
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001..\RunOnce: [CTAutoUpdate] C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe (Creative Technology Ltd)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2745662368-3488981636-2238734526-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} file:///D:/Games/Righteous%20Kill/Images/stg_drm.ocx (SpinTop DRM Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} file:///D:/Games/Righteous%20Kill/Images/armhelper.ocx (ArmHelper Control)
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} http://ccfiles.creative.com/Web/softwar ... PIDPDE.cab (Creative Software AutoUpdate Support Package 2)
O16 - DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} http://ccfiles.creative.com/Web/softwar ... TSUEng.cab (Creative Software AutoUpdate 2)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creative.com/Web/softwar ... /CTPID.cab (Creative Software AutoUpdate Support Package)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.36 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{00803080-07F1-4C5E-94CB-F456F8AEB0CF}: DhcpNameServer = 213.46.172.36 213.46.172.37
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\kiwi\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O24 - Desktop BackupWallPaper: C:\Users\kiwi\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta galerie Windows Fotogalerie.jpg
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (auto_reactivate \\?\Volume{A0D06768-22A7-11E1-B1F5-806E6F6E6963}\bootwiz\asrm.bin)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2012.01.26 19:10:44 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\kiwi\Desktop\OTL.exe
[2012.01.26 18:42:18 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Desktop\Log
[2012.01.26 18:13:51 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012.01.25 16:19:35 | 002,909,808 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\VIAPropPageExt.dll
[2012.01.25 16:19:34 | 000,202,864 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\ViaMicArrayAPO.dll
[2012.01.25 16:19:34 | 000,116,848 | ---- | C] (VIA Technologies,Inc.) -- C:\Windows\SysNative\ViaKaraokePropPageExt.dll
[2012.01.25 16:19:34 | 000,087,152 | ---- | C] (VIA Technologies,Inc.) -- C:\Windows\SysNative\ViaMicArrayPropPageExt.dll
[2012.01.25 16:19:34 | 000,027,760 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\ViakaraokeSrv.exe
[2012.01.25 16:19:33 | 002,165,360 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\drivers\viahduaa.sys
[2012.01.25 16:19:33 | 001,161,328 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\ViaKaraokeApo.dll
[2012.01.25 16:19:32 | 000,248,944 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\Dts2APO.dll
[2012.01.25 16:19:32 | 000,091,760 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\Dts2PropPageExt.dll
[2012.01.25 16:19:32 | 000,085,504 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\SysNative\nQPropPageExt.dll
[2012.01.25 16:19:32 | 000,083,968 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\SysNative\nQAPO.dll
[2012.01.25 16:17:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Creative
[2012.01.25 16:17:48 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Creative Installation Information
[2012.01.25 16:17:46 | 000,419,840 | ---- | C] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2012.01.25 16:17:46 | 000,413,696 | ---- | C] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2012.01.25 16:17:46 | 000,133,632 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2012.01.25 16:17:46 | 000,110,592 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2012.01.25 16:17:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Creative Labs Shared
[2012.01.25 16:17:01 | 000,000,000 | ---D | C] -- C:\Program Files\Creative
[2012.01.25 16:13:59 | 000,506,368 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\P17APO32.dll
[2012.01.25 16:13:59 | 000,057,856 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\P17pld64.dll
[2012.01.25 16:13:58 | 001,309,696 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\drivers\P17.sys
[2012.01.25 16:13:58 | 000,613,503 | ---- | C] (Creative Technology Ltd) -- C:\Windows\SysWow64\APOIM64.exe
[2012.01.25 16:13:58 | 000,581,120 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\P17APO64.dll
[2012.01.25 16:13:58 | 000,217,600 | ---- | C] (Creative Technology Limited) -- C:\Windows\SysNative\ctdvins1.dll
[2012.01.25 16:13:58 | 000,073,728 | ---- | C] (Creative Technology Limited) -- C:\Windows\SysNative\ctcoins1.dll
[2012.01.25 16:13:57 | 000,140,800 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\P17res.dll
[2012.01.25 16:13:57 | 000,008,704 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\ResDefE.exe
[2012.01.25 16:13:53 | 032,177,128 | ---- | C] (Creative Technology Ltd) -- C:\Windows\SysWow64\AppSetup.exe
[2012.01.25 16:13:50 | 000,042,496 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\AddCat.exe
[2012.01.25 16:12:55 | 000,283,200 | ---- | C] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2012.01.25 16:12:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2012.01.24 10:12:16 | 000,047,656 | ---- | C] (Cypress Semiconductor) -- C:\Windows\SysNative\drivers\CYUSB.sys
[2012.01.24 10:06:49 | 000,011,832 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\drivers\amdide64.sys
[2012.01.24 09:59:41 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\Innovative Solutions
[2012.01.24 09:59:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverMax
[2012.01.23 20:23:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xara
[2012.01.23 20:22:43 | 000,876,544 | ---- | C] (Xara Group Ltd) -- C:\Windows\SysWow64\XaraDocG.dll
[2012.01.23 20:22:43 | 000,253,952 | ---- | C] (Xara Group Ltd) -- C:\Windows\SysWow64\TemplOp.dll
[2012.01.23 20:22:43 | 000,131,072 | ---- | C] (Xara Ltd) -- C:\Windows\SysWow64\BmpImporter.dll
[2012.01.23 20:22:43 | 000,126,976 | ---- | C] (Xara Group Ltd) -- C:\Windows\SysWow64\TemplMan.dll
[2012.01.23 20:22:43 | 000,118,784 | ---- | C] (Xara Group Ltd) -- C:\Windows\SysWow64\XMUpload.dll
[2012.01.23 20:22:43 | 000,023,552 | ---- | C] (Xara Group Ltd.) -- C:\Windows\SysWow64\XFontMan.dll
[2012.01.23 19:25:36 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012.01.23 19:13:03 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2012.01.23 19:13:03 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\temp
[2012.01.23 18:22:20 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Application Data
[2012.01.23 18:18:33 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Jurecek Radek
[2012.01.22 10:09:03 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\KeepersOfDryandra
[2012.01.22 09:43:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Totem Quest
[2012.01.21 22:00:12 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Righteous Kill
[2012.01.21 20:41:59 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\Futuremark
[2012.01.20 22:31:19 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012.01.20 22:31:19 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012.01.20 22:31:19 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012.01.20 22:31:14 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2012.01.20 22:30:56 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012.01.19 20:24:35 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\Mikogo
[2012.01.19 20:24:31 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Mikogo
[2012.01.19 20:24:31 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mikogo
[2012.01.10 19:13:40 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2012.01.10 19:13:39 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2012.01.10 19:13:38 | 001,570,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2012.01.10 19:13:37 | 001,314,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2012.01.10 19:13:37 | 000,497,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2012.01.10 19:13:37 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2012.01.10 19:13:36 | 000,211,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winmm.dll
[2012.01.10 19:13:36 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcicda.dll
[2012.01.10 19:13:36 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciwave.dll
[2012.01.10 19:13:36 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciseq.dll
[2012.01.10 19:13:36 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciseq.dll
[2012.01.10 19:13:35 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2012.01.10 19:13:33 | 001,585,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2012.01.10 19:12:59 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
[2012.01.10 19:12:59 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2012.01.10 18:24:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
[2012.01.10 18:24:00 | 000,000,000 | ---D | C] -- C:\ProgramData\ESET
[2012.01.07 22:55:01 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\mojosoft
[2012.01.07 22:55:01 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\BusinessCardsMX templates
[2012.01.07 22:34:42 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\ICQ
[2012.01.07 22:33:10 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\ICQ
[2012.01.03 01:17:20 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\HateML
[2012.01.02 01:10:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Xara
[2012.01.02 00:50:32 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\My Web Pages
[2012.01.02 00:13:24 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\My Web Graphics
[2012.01.01 23:22:33 | 000,000,000 | ---D | C] -- C:\WSTemplates
[2012.01.01 23:10:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\MSSoap
[2012.01.01 23:08:13 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\Xara
[2012.01.01 23:07:03 | 000,115,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSINET.OCX
[2012.01.01 23:03:03 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\Xara
[2012.01.01 23:03:03 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\MAGIX
[2012.01.01 23:03:03 | 000,000,000 | ---D | C] -- C:\ProgramData\MAGIX
[2012.01.01 23:02:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Xara
[2012.01.01 23:01:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2012.01.01 22:54:49 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Xara
[2012.01.01 22:53:28 | 000,110,592 | ---- | C] (TechSmith Corporation) -- C:\Windows\SysWow64\tsccvid.dll
[2012.01.01 21:36:42 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Roaming\FileZilla
[2012.01.01 21:34:24 | 000,000,000 | --SD | C] -- C:\Users\kiwi\Documents\Weby
[2012.01.01 21:24:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio
[2011.12.29 22:40:24 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\Trapped Dead
[2011.12.29 22:40:24 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\CrashRpt
[2011.12.29 22:39:51 | 000,000,000 | ---D | C] -- C:\Users\kiwi\Documents\Trapped Dead
[2011.12.29 22:32:48 | 000,000,000 | --SD | C] -- C:\Users\kiwi\Documents\Zdroje dat
[2011.12.29 13:39:32 | 000,000,000 | ---D | C] -- C:\Users\kiwi\AppData\Local\SKIDROW
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012.01.26 19:10:49 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\kiwi\Desktop\OTL.exe
[2012.01.26 18:46:12 | 001,418,258 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.01.26 18:46:12 | 000,607,232 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2012.01.26 18:46:12 | 000,595,798 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.01.26 18:46:12 | 000,117,912 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2012.01.26 18:46:12 | 000,103,872 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.01.26 18:40:08 | 000,004,176 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012.01.26 18:40:06 | 000,004,176 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012.01.26 18:39:28 | 000,412,456 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012.01.26 18:39:19 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.01.26 18:39:10 | 4292,988,928 | -HS- | M] () -- C:\hiberfil.sys
[2012.01.26 08:25:45 | 422,843,633 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2012.01.25 20:15:12 | 000,001,905 | ---- | M] () -- C:\Windows\diagwrn.xml
[2012.01.25 20:15:12 | 000,001,905 | ---- | M] () -- C:\Windows\diagerr.xml
[2012.01.25 20:06:52 | 000,056,320 | ---- | M] () -- C:\Users\kiwi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.01.25 16:17:46 | 000,419,840 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2012.01.25 16:17:46 | 000,413,696 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2012.01.25 16:17:46 | 000,133,632 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2012.01.25 16:17:46 | 000,110,592 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2012.01.25 16:15:03 | 000,000,159 | RH-- | M] () -- C:\Windows\ctfile.rfc
[2012.01.25 16:12:55 | 000,283,200 | ---- | M] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2012.01.24 09:59:41 | 000,000,560 | ---- | M] () -- C:\Users\kiwi\Desktop\DriverMax.lnk
[2012.01.23 20:23:01 | 000,000,666 | ---- | M] () -- C:\Users\Public\Desktop\Webstyle 4.lnk
[2012.01.23 20:19:09 | 000,002,675 | ---- | M] () -- C:\Users\kiwi\Desktop\Microsoft Office FrontPage 2003.lnk
[2012.01.23 20:18:20 | 000,000,384 | ---- | M] () -- C:\Windows\ODBC.INI
[2012.01.23 19:06:07 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2012.01.22 15:43:33 | 000,000,725 | ---- | M] () -- C:\Users\kiwi\Desktop\Keepers – zástupce.lnk
[2012.01.22 09:37:05 | 000,000,952 | ---- | M] () -- C:\Users\kiwi\AppData\Local\SRDownloader.nast
[2012.01.19 20:24:32 | 000,001,746 | ---- | M] () -- C:\Users\kiwi\Desktop\Mikogo.lnk
[2012.01.11 17:29:20 | 000,000,600 | ---- | M] () -- C:\Users\kiwi\AppData\Local\PUTTY.RND
[2012.01.11 17:10:33 | 000,000,741 | ---- | M] () -- C:\Users\kiwi\Desktop\FileZilla Client.lnk
[2012.01.10 18:36:50 | 000,000,680 | ---- | M] () -- C:\Users\kiwi\AppData\Local\d3d9caps.dat
[2012.01.08 18:51:35 | 000,001,020 | ---- | M] () -- C:\Users\kiwi\AppData\Local\SRDownloader.err
[2012.01.07 22:55:32 | 000,000,646 | ---- | M] () -- C:\Users\kiwi\Desktop\BusinessCardsMX.lnk
[2012.01.01 23:26:22 | 000,034,308 | ---- | M] () -- C:\Windows\SysWow64\BASSMOD.dll
[2012.01.01 23:11:00 | 000,000,000 | RH-- | M] () -- C:\28645308.Dat
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012.01.25 20:13:52 | 000,001,905 | ---- | C] () -- C:\Windows\diagwrn.xml
[2012.01.25 20:13:52 | 000,001,905 | ---- | C] () -- C:\Windows\diagerr.xml
[2012.01.25 16:15:03 | 000,000,159 | RH-- | C] () -- C:\Windows\ctfile.rfc
[2012.01.25 16:13:59 | 000,008,491 | ---- | C] () -- C:\Windows\SysWow64\P17APO64.p17
[2012.01.25 16:13:57 | 000,001,489 | ---- | C] () -- C:\Windows\P17EP51.ini
[2012.01.25 16:13:56 | 000,002,177 | ---- | C] () -- C:\Windows\P17EP.ini
[2012.01.25 16:13:49 | 000,003,930 | ---- | C] () -- C:\Windows\SysNative\ludap17.ini
[2012.01.25 16:13:49 | 000,000,054 | ---- | C] () -- C:\Windows\SysNative\ctzapxx.ini
[2012.01.24 09:59:41 | 000,000,560 | ---- | C] () -- C:\Users\kiwi\Desktop\DriverMax.lnk
[2012.01.23 20:23:01 | 000,000,666 | ---- | C] () -- C:\Users\Public\Desktop\Webstyle 4.lnk
[2012.01.23 20:22:43 | 000,086,016 | ---- | C] () -- C:\Windows\SysWow64\BinCoder.dll
[2012.01.23 20:18:45 | 000,002,675 | ---- | C] () -- C:\Users\kiwi\Desktop\Microsoft Office FrontPage 2003.lnk
[2012.01.22 15:43:33 | 000,000,725 | ---- | C] () -- C:\Users\kiwi\Desktop\Keepers – zástupce.lnk
[2012.01.20 22:31:19 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012.01.20 22:31:19 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012.01.20 22:31:19 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012.01.20 22:31:19 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012.01.20 22:31:19 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012.01.19 20:24:32 | 000,001,746 | ---- | C] () -- C:\Users\kiwi\Desktop\Mikogo.lnk
[2012.01.07 22:55:32 | 000,000,646 | ---- | C] () -- C:\Users\kiwi\Desktop\BusinessCardsMX.lnk
[2012.01.03 01:44:37 | 000,000,600 | ---- | C] () -- C:\Users\kiwi\AppData\Local\PUTTY.RND
[2012.01.01 23:13:47 | 000,034,308 | ---- | C] () -- C:\Windows\SysWow64\BASSMOD.dll
[2012.01.01 23:11:00 | 000,000,000 | RH-- | C] () -- C:\28645308.Dat
[2012.01.01 23:08:13 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xwsindex.exe
[2012.01.01 21:35:44 | 000,000,741 | ---- | C] () -- C:\Users\kiwi\Desktop\FileZilla Client.lnk
[2012.01.01 21:26:42 | 000,000,384 | ---- | C] () -- C:\Windows\ODBC.INI
[2011.12.14 18:52:29 | 000,001,020 | ---- | C] () -- C:\Users\kiwi\AppData\Local\SRDownloader.err
[2011.12.10 09:05:11 | 000,000,952 | ---- | C] () -- C:\Users\kiwi\AppData\Local\SRDownloader.nast
[2011.12.10 00:40:29 | 000,056,320 | ---- | C] () -- C:\Users\kiwi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.12.10 00:37:55 | 000,003,348 | ---- | C] () -- C:\Windows\SysWow64\ludap17.ini
[2011.12.10 00:37:55 | 000,000,078 | ---- | C] () -- C:\Windows\SysWow64\ctzapxx.ini
[2011.12.10 00:37:12 | 000,166,912 | ---- | C] () -- C:\Windows\SysWow64\APOMngr.DLL
[2011.12.10 00:37:12 | 000,073,728 | ---- | C] () -- C:\Windows\SysWow64\CmdRtr.DLL
[2011.12.09 23:51:41 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2011.12.09 23:51:31 | 000,117,248 | ---- | C] () -- C:\Windows\SysWow64\EhStorAuthn.dll
[2011.12.09 23:51:05 | 000,107,612 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchema.bin
[2011.12.09 23:51:05 | 000,018,904 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchemaTrivial.bin
[2011.12.09 22:41:21 | 000,142,592 | ---- | C] () -- C:\Windows\SysWow64\drivers\sp_rsdrv2.sys
[2011.12.09 22:22:38 | 000,049,152 | R--- | C] () -- C:\Windows\DAOD.exe
[2011.12.09 22:22:38 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2011.12.09 22:22:36 | 000,030,552 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2011.12.09 22:22:35 | 000,010,296 | ---- | C] () -- C:\Windows\SysWow64\drivers\ASUSHWIO.SYS
[2011.12.09 22:15:56 | 000,000,680 | ---- | C] () -- C:\Users\kiwi\AppData\Local\d3d9caps.dat
[2011.12.09 22:06:56 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini
[2011.12.09 22:03:40 | 000,000,600 | ---- | C] () -- C:\Users\kiwi\AppData\Roaming\winscp.rnd
[2011.12.09 22:01:38 | 000,000,732 | ---- | C] () -- C:\Users\kiwi\AppData\Local\d3d9caps64.dat
[2011.11.23 19:29:36 | 000,406,336 | ---- | C] () -- C:\Windows\SysWow64\nvStreaming.exe
[2007.06.07 13:25:42 | 000,001,578 | ---- | C] () -- C:\Windows\P17EPLS.ini
[2007.04.27 09:43:58 | 000,120,200 | ---- | C] () -- C:\Windows\SysWow64\DLLDEV32i.dll
[2006.11.02 16:37:05 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 13:37:14 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2006.11.02 13:24:17 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2006.11.02 13:18:17 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2006.11.02 10:47:54 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin

========== LOP Check ==========

[2011.12.10 09:57:20 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Acronis
[2011.12.09 22:05:00 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\AnvSoft
[2011.12.09 22:06:00 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Ashampoo
[2011.12.22 19:27:57 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Canon
[2012.01.26 18:40:45 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\DAEMON Tools Lite
[2011.12.17 14:42:15 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Enlightenus2_BFG
[2011.12.09 23:38:45 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\ESET
[2011.12.10 12:49:02 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\FF218159-F359-4CF3-9D38-87BCE47C0BF5
[2012.01.19 19:25:47 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\FileZilla
[2012.01.03 01:17:26 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\HateML
[2012.01.08 00:33:27 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\ICQ
[2011.12.15 18:18:42 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\JaiboGames
[2012.01.23 18:18:33 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Jurecek Radek
[2012.01.22 10:09:03 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\KeepersOfDryandra
[2012.01.01 23:03:03 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\MAGIX
[2012.01.19 20:25:05 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Mikogo
[2012.01.07 22:55:01 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\mojosoft
[2011.12.26 10:19:26 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Photodex
[2011.12.22 10:27:02 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\ProtectDISC
[2012.01.21 22:48:13 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Righteous Kill
[2012.01.18 20:17:15 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Spyware Terminator
[2012.01.23 20:23:01 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\Xara
[2011.12.27 13:44:16 | 000,000,000 | ---D | M] -- C:\Users\kiwi\AppData\Roaming\XnView
[2012.01.26 18:37:56 | 000,019,590 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:F5096B56
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C03F5109
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:3595B780
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:5C321E34

< End of report >


****************************************************************************************************

OTL Extras logfile created on: 26.1.2012 19:12:14 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\kiwi\Desktop
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 2,23 Gb Available Physical Memory | 55,78% Memory free
8,21 Gb Paging File | 6,31 Gb Available in Paging File | 76,88% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 298,09 Gb Total Space | 219,66 Gb Free Space | 73,69% Space Free | Partition Type: NTFS
Drive D: | 1863,01 Gb Total Space | 487,17 Gb Free Space | 26,15% Space Free | Partition Type: NTFS

Computer Name: KIWI-PC | User Name: kiwi | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = 12 04 40 6B C2 B6 CC 01 [binary data]
"VistaSp2" = 11 08 13 F5 C9 B6 CC 01 [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"oobe_av" = 1

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"TCP Query User{14965544-942A-4D6B-BDEC-8870CF0053E1}D:\files\skype\phone\skype.exe" = protocol=6 | dir=in | app=d:\files\skype\phone\skype.exe |
"TCP Query User{B536CA31-0C22-4E59-950B-B4F668EDA5B1}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{153C6D2B-D2E7-468A-9A3D-3E8D75732676}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{BBEB472C-8B92-412D-ABBD-27AAD4608EAE}D:\files\skype\phone\skype.exe" = protocol=17 | dir=in | app=d:\files\skype\phone\skype.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series" = Canon MP250 series MP Drivers
"{1444D2EE-C7AD-44A8-844F-2634B49353D1}" = Logitech Gaming Software 5.10
"{4A33DA4E-EDE5-4B2D-819C-83E3BF4472E7}" = Logitech QuickCam
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 290.36
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 290.36
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 290.36
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Ovladač řídící jednotky 3D Vision 290.25
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.11.1107
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 1.6.24
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{BA0C98EF-FDD6-423D-BFFD-57580DE283F0}" = ESET Smart Security
"{C7311329-C491-427B-8880-133E84869B3A}" = Vista Shortcut Manager x64
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{04A3A6B0-8E19-49BB-82FF-65C5A55F917D}" = Acronis True Image Home 2011
"{0D5B5ED2-3E38-4585-B1F3-64B2A9EA95D6}_is1" = BusinessCards MX
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1B1DDAD2-C704-49F8-8FC2-18DAAD9A87C5}" = Sound Blaster Audigy
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{26A24AE4-039D-4CA4-87B4-2F83216029FF}" = Java(TM) 6 Update 29
"{427DDB05-8AAC-431E-A47A-F42C00493332}_is1" = Postal.3 version 1.0
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4F949C30-F3C8-459C-8126-0D174746EF9B}" = Xara FrontPage Add-in 1.01
"{675F65BF-F58A-44DD-9555-6F439759C4E4}" = SOAP3 and XML4
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{9530AE42-DAE1-4619-9594-B23487285D17}" = NVIDIA PhysX
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{AC76BA86-7AD7-1029-7B44-AA1000000001}" = Adobe Reader X (10.1.2) - Czech
"{B1656A3E-2744-48B2-95EA-52C4A316551B}" = Xara Webstyle 4
"{BE0AC13A-77D2-11E0-B15B-81BA4824019B}" = PowerChute Personal Edition 3.0.0.1
"{CB4532F7-A1BD-46D2-9938-3E7D4656FB18}" = Razer Lachesis
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"AudioCS" = Creative Audio Control Panel
"CANONIJPLM100" = Canon Inkjet Printer/Scanner/Fax Extended Survey Program
"CanonMyPrinter" = Canon Utilities My Printer
"CanonSolutionMenu" = Canon Utilities Solution Menu
"Creative Software AutoUpdate" = Creative Software AutoUpdate
"Creative Sound Blaster Properties x64 Edition" = Creative Sound Blaster Properties x64 Edition
"CrystalDiskInfo_is1" = CrystalDiskInfo 4.1.3b
"DAEMON Tools Lite" = DAEMON Tools Lite
"dips64" = Desktop Icon Position Saver (64-bit)
"DMX5_is1" = DriverMax 6
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"Heroes of Hellas 3: Athens" = Heroes of Hellas 3: Athens
"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platforma Ovladače zařízení
"Kubik SMS DreamCom_is1" = Kubik SMS DreamCom 5.89
"Mikogo" = Mikogo
"MP Navigator EX 3.0" = Canon MP Navigator EX 3.0
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"ProtectDisc Driver 11" = ProtectDisc Driver, Version 11
"QcDrv" = Logitech® Camera Driver
"Registrace uživatele zařízení Canon MP250 series" = Registrace uživatele zařízení Canon MP250 series
"RJ Tools E2010_is1" = RJ Tools E2010
"WinRAR archiver" = WinRAR

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-2745662368-3488981636-2238734526-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"FileZilla Client" = FileZilla Client 3.5.3
"Google Chrome" = Google Chrome

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-2745662368-3488981636-2238734526-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"FileZilla Client" = FileZilla Client 3.5.3
"Google Chrome" = Google Chrome

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 20.1.2012 17:34:59 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x44c, čas spuštění
aplikace 0x01ccd7b9b28d24ec.

Error - 20.1.2012 17:46:26 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x408, čas spuštění
aplikace 0x01ccd7bc67368e32.

Error - 23.1.2012 12:38:23 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x414, čas spuštění
aplikace 0x01ccd9e9bfceec67.

Error - 23.1.2012 12:49:25 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x44c, čas spuštění
aplikace 0x01ccd9ee4e133ed1.

Error - 23.1.2012 13:05:37 | Computer Name = kiwi-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files\Common Files\Microsoft
Shared\OFFICE14\MSOXMLMF.DLL se nezdařilo. Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 23.1.2012 13:06:09 | Computer Name = kiwi-PC | Source = Windows Search Service | ID = 3024
Description =

Error - 23.1.2012 13:53:20 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x444, čas spuštění
aplikace 0x01ccd9f6cc338c77.

Error - 23.1.2012 14:09:48 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace LVPrcSrv.exe, verze 11.1.0.2021, časové razítko
0x46a06202, chybující modul LVPrcSrv.exe, verze 11.1.0.2021, časové razítko 0x46a06202,
kód výjimky 0xc0000005, posun chyby 0x00000000000078e0, ID procesu 0x418, čas spuštění
aplikace 0x01ccd9f98d12cddb.

Error - 23.1.2012 15:05:58 | Computer Name = kiwi-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files\Common Files\Microsoft
Shared\OFFICE14\MSOXMLMF.DLL se nezdařilo. Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 25.1.2012 3:13:48 | Computer Name = kiwi-PC | Source = Application Error | ID = 1000
Description = Chybující aplikace drivermax.exe, verze 6.14.0.251, časové razítko
0x2a425e19, chybující modul unknown, verze 0.0.0.0, časové razítko 0x00000000,
kód výjimky 0xc0000005, posun chyby 0x30300066, ID procesu 0xe44, čas spuštění aplikace
0x01ccdb2f517f71b1.

[ System Events ]
Error - 19.12.2011 8:49:18 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.

Error - 20.12.2011 12:50:08 | Computer Name = kiwi-PC | Source = DCOM | ID = 10010
Description =

Error - 22.12.2011 8:28:15 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.

Error - 26.12.2011 5:49:11 | Computer Name = kiwi-PC | Source = EventLog | ID = 6008
Description = Předchozí vypnutí systému (10:36:55, 26.12.2011) bylo neočekávané.

Error - 27.12.2011 13:36:30 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.

Error - 29.12.2011 14:23:57 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.

Error - 29.12.2011 14:24:01 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.

Error - 29.12.2011 19:37:19 | Computer Name = kiwi-PC | Source = EventLog | ID = 6008
Description = Předchozí vypnutí systému (0:35:20, 30.12.2011) bylo neočekávané.

Error - 30.12.2011 11:00:52 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.

Error - 30.12.2011 11:01:21 | Computer Name = kiwi-PC | Source = Ntfs | ID = 262199
Description = Struktura systému souborů disku je poškozena a je nepoužitelná. Je
nutné na svazek Win spustit nástroj chkdsk.


< End of report >

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#28 Příspěvek od Rudy »

Do okna "Vlastní skenování....." zkopírujte:
:OTL
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\pdf.dll
CHR - plugin: Google Update (Enabled) = C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - Extension: YouTube = C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:F5096B56
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C03F5109
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:3595B780
@Alternate Data Stream - 104 bytes -> C:\ProgramData\TEMP:5C321E34

:files
C:\28645308.Dat
C:\Windows\P17EP51.ini
C:\Windows\P17EP.ini
C:\Windows\P17EPLS.ini

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na "opravit". Po ukončení akce restartujte PC. Dále Stáhněte, nainstalujte a spusťte CrystalDiskInfo: http://www.stahuj.centrum.cz/utility_a_ ... ldiskinfo/ a přes Úpravy>zkopírovat sem dejte log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

killick
Návštěvník
Návštěvník
Příspěvky: 20
Registrován: 09 črc 2006 10:10
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#29 Příspěvek od killick »

Po restartu a přihlášení do systému byl otevřený poznámkový blok a v něm toto:


All processes killed
========== OTL ==========
Registry key HKEY_CURRENT_USER\Software\MozillaPlugins\@tools.google.com/Google Update;version=3\ deleted successfully.
C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll moved successfully.
Registry key HKEY_CURRENT_USER\Software\MozillaPlugins\@tools.google.com/Google Update;version=9\ deleted successfully.
File C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll not found.
C:\Users\kiwi\AppData\Local\Google\Chrome\Application\16.0.912.75\pdf.dll moved successfully.
File C:\Users\kiwi\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll not found.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\__MACOSX folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\zh_TW folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\zh_CN folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\vi folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\uk folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\tr folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\th folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\sv folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\sr folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\sl folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\sk folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\ru folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\ro folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\pt_PT folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\pt_BR folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\pl folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\no folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\nl folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\lv folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\lt folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\ko folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\ja folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\it folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\id folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\hu folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\hr folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\hi folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\he folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\fr folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\fil folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\fi folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\es folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\en folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\el folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\de folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\da folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\cs folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\ca folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\bg folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales\ar folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0\_locales folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.3_0 folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\zh_TW folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\zh_CN folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\vi folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\uk folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\tr folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\th folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\sv folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\sr folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\sl folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\sk folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\ru folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\ro folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\pt_PT folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\pt_BR folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\pl folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\no folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\nl folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\lv folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\lt folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\ko folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\ja folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\it folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\id folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\hu folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\hr folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\hi folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\he folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\fr folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\fil folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\fi folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\et folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\es_419 folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\es folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\en_US folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\en_GB folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\en folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\el folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\de folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\da folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\cs folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\ca folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\bg folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales\ar folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0\_locales folder moved successfully.
C:\Users\kiwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.16_0 folder moved successfully.
ADS C:\ProgramData\TEMP:F5096B56 deleted successfully.
ADS C:\ProgramData\TEMP:C03F5109 deleted successfully.
ADS C:\ProgramData\TEMP:3595B780 deleted successfully.
ADS C:\ProgramData\TEMP:5C321E34 deleted successfully.
========== FILES ==========
C:\28645308.Dat moved successfully.
C:\Windows\P17EP51.ini moved successfully.
C:\Windows\P17EP.ini moved successfully.
C:\Windows\P17EPLS.ini moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: kiwi
->Temp folder emptied: 2672658 bytes
->Temporary Internet Files folder emptied: 481640554 bytes
->Java cache emptied: 2618853 bytes
->Google Chrome cache emptied: 167487536 bytes
->Flash cache emptied: 19783 bytes

User: Public
->Temp folder emptied: 0 bytes

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 200704 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 2425609583 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 17035175 bytes

Total Files Cleaned = 2 954,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: kiwi
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.31.0 log created on 01262012_195156

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...
****************************************************************
Dále přes CrystalDisk Info:

----------------------------------------------------------------------------
CrystalDiskInfo 4.1.3 (C) 2008-2011 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows Vista Home Premium Edition SP2 [6.0 Build 6002] (x64)
Date : 2012/01/26 19:59:53

-- Controller Map ----------------------------------------------------------
+ AMD SATA Controller (IDE Mode) [ATA]
- Kanál IDE (0)
+ Kanál IDE (1)
- ST3320620AS ATA Device
+ AMD PCI IDE Controller [ATA]
+ Kanál IDE (0)
- HL-DT-ST DVD-RAM GH22NP20 ATA Device
- HL-DT-ST DVDRAM GSA-H44N ATA Device
+ Kanál IDE (1)
- ST2000VM002-9UY166 ATA Device
- Iniciátor iSCSI společnosti Microsoft [SCSI]

-- Disk List ---------------------------------------------------------------
(1) ST3320620AS : 320.0 GB [0-1-0, pd1]
(2) ST2000VM002-9UY166 : 2000.3 GB [1-3-0, pd1]

----------------------------------------------------------------------------
(1) ST3320620AS
----------------------------------------------------------------------------
Model : ST3320620AS
Firmware : 3.AAK
Serial Number : 6QF0V5BZ
Disk Size : 320.0 GB (8.4/137.4/320.0)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 625142448
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA/ATAPI-7
Minor Version : ----
Transfer Mode : SATA/150
Power On Hours : 17890 hod.
Power On Count : 2033 krát
Temparature : 34 C (93 F)
Health Status : Dobrý
Features : S.M.A.R.T., 48bit LBA, NCQ
APM Level : ----
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 116 _95 __6 000006FB72C3 Počet chyb čtení
03 _97 _95 __0 000000000000 Čas na roztočení ploten
04 _98 _98 _20 000000000869 Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _69 _44 _30 00582B2B6EB5 Počet chybných hledání
09 _80 _80 __0 0000000045E2 Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _99 _99 _20 0000000007F1 Počet cyklů zapnutí zařízení
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _66 _52 _45 000023180022 Teplota toku vzduchu
C2 _34 _48 __0 001100000022 Teplota
C3 _66 _60 __0 000008412419 Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 00000000000C Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů
CA 100 253 __0 000000000000 Počet chyb při směrování údajů

-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0C 5A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 20 20 20 20 20 20 20
020: 36 51 46 30 56 35 42 5A 00 00 80 00 00 04 33 2E
030: 41 41 4B 20 20 20 53 54 33 33 32 30 36 32 30 41
040: 53 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 00 02 00 02 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 05 02 00 00 00 48 00 40
0A0: 00 FE 00 00 34 6B 7D 01 40 23 34 69 3C 01 40 23
0B0: 40 7F 00 00 00 00 FE FE FF FE 00 00 FE 00 00 00
0C0: 00 00 00 00 00 00 00 00 EA B0 25 42 00 00 00 00
0D0: 00 00 00 00 40 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 02
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 09 EA B0 25 42 EA B0 25 42 20 20 00 02 02 B6
110: 00 02 00 8A 3C 06 3C 0A 00 00 07 C6 01 00 08 00
120: 13 14 30 00 00 02 00 80 00 00 00 00 00 A0 02 02
130: 00 00 04 04 00 00 00 00 00 00 00 00 12 00 00 0B
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 DF A5

----------------------------------------------------------------------------
(2) ST2000VM002-9UY166
----------------------------------------------------------------------------
Model : ST2000VM002-9UY166
Firmware : SC01
Serial Number : 5YD2RH8Q
Disk Size : 2000.3 GB (8.4/137.4/2000.3)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 3907029168
Rotation Rate : 5900 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/300
Power On Hours : 2324 hod.
Power On Count : 440 krát
Temparature : 28 C (82 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : C0C0h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 117 _99 __6 000007ABAD48 Počet chyb čtení
03 _93 _92 __0 000000000000 Čas na roztočení ploten
04 100 100 _20 000000000218 Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _72 _60 _30 000000F87752 Počet chybných hledání
09 _98 _98 __0 000000000914 Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 _20 0000000001B8 Počet cyklů zapnutí zařízení
B8 100 100 _99 000000000000 Ukončovacích chyb
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000000 Časový limit příkazu
BD _86 _86 __0 00000000000E Vysoká rychlost zápisu
BE _72 _61 _45 00001D15001C Teplota toku vzduchu
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000019 Počet vypnutí disku
C1 100 100 __0 000000000218 Počet cyklů načítání/vymazání
C2 _28 _40 __0 00130000001C Teplota
C3 _36 _28 __0 000007ABAD48 Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA

-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0C 5A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 20 20 20 20 20 20 20
020: 35 59 44 32 52 48 38 51 00 00 00 00 00 04 53 43
030: 30 31 20 20 20 20 53 54 32 30 30 30 56 4D 30 30
040: 32 2D 39 55 59 31 36 36 20 20 20 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 40 00 2F 00 40 00 02 00 02 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 85 06 00 04 00 48 00 40
0A0: 01 F0 00 29 34 6B 7D 69 41 33 34 69 BC 49 41 33
0B0: 40 7F 00 A5 00 A5 C0 C0 FF FE 00 00 80 00 10 00
0C0: 00 00 00 00 27 10 00 00 88 B0 E8 E0 00 00 00 00
0D0: 00 00 00 00 60 03 00 00 50 00 C5 00 37 DC 2C 92
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 1E
0F0: 40 1C 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 29 88 B0 E8 E0 88 B0 E8 E0 20 20 00 02 01 40
110: 01 00 50 00 3C 06 3C 0A 00 00 00 3C 00 00 00 08
120: 00 00 00 00 00 7F 02 80 00 00 00 00 00 08 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 4F 00 88 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 10 B3 00 00
1A0: 00 00 40 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 17 0C 00 00 00 00 00 00 00 00 10 20 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 A5 A5

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119515
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: BSOD, restart PC při spuštění a probuzení z režimu spánk

#30 Příspěvek od Rudy »

OTL oznámil vyčištění. Spusťte ho znovu a klikněte na "Vyčisti". OTL po sobě uklidí. Disk vykazuje nějaké chyby čtení, hledání a v kontrolním součtu. To by mohl napravit systémový checkdisk s aut. opravou chyb.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět