log extras
OTL Extras logfile created on: 28.3.2013 13:26:56 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\zeman\Desktop
64bit- Professional (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,86 Gb Total Physical Memory | 2,04 Gb Available Physical Memory | 52,89% Memory free
7,72 Gb Paging File | 5,19 Gb Available in Paging File | 67,25% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 288,49 Gb Total Space | 46,36 Gb Free Space | 16,07% Space Free | Partition Type: NTFS
Drive E: | 14,17 Mb Total Space | 13,75 Mb Free Space | 97,02% Space Free | Partition Type: FAT
Computer Name: FILIPZ | User Name: zeman | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [CEWE prezentace fotografií] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet 4\CEWE prezentace fotografií.exe" -d "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Fotolab Fotosvet] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet 4\Fotolab Fotosvet.exe" "%1" ()
Directory [Fotolab Fotosvet 4] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet 4\Fotolab Fotosvet 4.exe" "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [CEWE prezentace fotografií] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet 4\CEWE prezentace fotografií.exe" -d "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Fotolab Fotosvet] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet 4\Fotolab Fotosvet.exe" "%1" ()
Directory [Fotolab Fotosvet 4] -- "C:\Program Files (x86)\Fotolab\Fotolab Fotosvet 4\Fotolab Fotosvet 4.exe" "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00AA8699-50E0-4F6B-B7B7-3492930805DB}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{01BEE915-A70F-4497-A0F0-8B216EB97F07}" = lport=138 | protocol=17 | dir=in | app=system |
"{15EE1E03-ACDC-465E-980F-5EA35EAF1BD9}" = lport=139 | protocol=6 | dir=in | app=system |
"{170B9312-DCE4-49FB-BEE4-7B5E797A9958}" = rport=445 | protocol=6 | dir=out | app=system |
"{21E2C879-15CC-41E0-97FC-C7D36D618AEF}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{2EB412A2-F35C-46C8-B504-D895C876F32F}" = lport=445 | protocol=6 | dir=in | app=system |
"{2EB7AE2B-1AAC-4510-9FC1-941786DE68D1}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe |
"{303F4250-25F3-401B-8E56-1C2AB1289FC2}" = rport=138 | protocol=17 | dir=out | app=system |
"{617AD362-CEB1-4ECB-8068-3A50520B31BE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{74B04221-464A-4275-BD12-CEEBA861FDF7}" = lport=2869 | protocol=6 | dir=in | app=system |
"{7529091E-907A-4D97-B4F7-3001F68A575E}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{7989BB21-8E1C-4897-96EC-37986CD460E6}" = rport=137 | protocol=17 | dir=out | app=system |
"{7A1F2937-BC3B-4AFA-BA7F-B12D21C2E631}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{848F067D-F863-443F-A15F-AF58AFF40B8E}" = rport=2869 | protocol=6 | dir=out | app=system |
"{9640EAFB-C8E6-47CD-B59C-E5598968C043}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{96AD0B9C-4526-486D-A189-C52407A14BCF}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{9B20CDD3-A310-4948-A08D-2810F117053E}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{9C51A829-2D0E-4662-A98A-D656E308E065}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{9DE922AD-84EA-4C42-9A47-8A482EBC5D5D}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A4ECDA0A-F9AE-476D-801D-8554FC4AA43C}" = lport=10243 | protocol=6 | dir=in | app=system |
"{A821746C-3A8F-4594-B64C-C0B7C56D5105}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A8685985-8162-4BD7-8C26-52145F324EE9}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{C7AB5FD8-4795-4CD8-8E45-087F0E74E186}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{CA566805-777F-4BDE-91DD-BF36DFA87FE1}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{CC8B5603-08DF-4DB3-95FA-765AFBDFD798}" = lport=137 | protocol=17 | dir=in | app=system |
"{CDB152C2-5002-472D-BB85-6F9FBC68528E}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{D2A4F6CC-6325-46C3-B06A-0812640D3344}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D78B97F7-838A-4C4F-A7C3-3E62429BAF5F}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{DD1BCB15-63FD-4128-BFB0-5379AF893C4F}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{E66FAB1F-1395-4568-9763-174226A9C972}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{E7B6FB35-0F67-483A-A010-63A66A04D02F}" = rport=139 | protocol=6 | dir=out | app=system |
"{F0A85ED0-B9B9-45C5-B2E7-B2D040C74FAC}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{FE3D9763-8C6D-413D-9468-1926907066E6}" = lport=2869 | protocol=6 | dir=in | app=system |
"{FF06A2CF-8B00-4A6F-88DF-7E9CFC116FA9}" = rport=10243 | protocol=6 | dir=out | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00648757-7E04-455B-B42C-761A7FDBF00A}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{019ECD67-4612-44D4-8725-4B296D344304}" = protocol=17 | dir=in | app=c:\program files (x86)\activision\prototype\prototypef.exe |
"{0DFAF8AC-78DF-4F54-972A-41A0879EABA6}" = protocol=58 | dir=in | app=system |
"{0EEEFF91-4DCC-41E3-96AE-4B74E4D446A5}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{1189C41F-4F9D-40B8-8744-AB028AD4E97E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{14C4271B-07DD-47D8-B131-2D603753AC7D}" = protocol=17 | dir=in | app=c:\program files (x86)\activision\blur(tm)\blur.exe |
"{1A05E008-DAA4-4F10-931C-108C4014C242}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{1ABB8C3D-C0C8-468E-838D-E56A41DAAD4A}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{1BBC1021-4275-497A-B353-E99B0DC2EC1F}" = protocol=6 | dir=in | app=c:\program files (x86)\activision\blur(tm)\blur.exe |
"{1EE7FDF1-0451-4FA2-8324-953A85BA714A}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{25B228CA-48B9-45F7-A9B2-EBB752DBE689}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{38E412BF-910C-48D8-9414-18D24A3091B1}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{3B0AF8B2-7796-4D05-93E3-59AA2BDCC1DA}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{522DCC25-79E0-4815-AB5F-1E4ADA36154F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{52656066-C155-4E1D-8672-BC2609A2332B}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{526F832D-5C9B-4FF2-B13F-E493ABFD4374}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{529486B5-138A-41C2-8525-1D84B6200E2E}" = protocol=17 | dir=in | app=c:\program files (x86)\asus\802.11g wlan ap utilities\discoverya.exe |
"{5409D1B5-59F5-4AB3-B118-106C8311F18E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{546DDD60-8811-4A4E-BD57-267CC781D275}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\prince of persia\princeofpersia_launcher.exe |
"{5D1F860E-AE64-45FB-96FD-B158AD01EC5A}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{64787EFE-1FC5-411E-A259-649C6FFF7C94}" = protocol=6 | dir=in | app=c:\program files (x86)\activision\prototype\prototypef.exe |
"{65ED73EF-DB9F-4C61-ABF6-890B5F45726E}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{6A81E8F3-7389-46C9-9010-3D6F0DF3A642}" = protocol=6 | dir=in | app=c:\program files (x86)\asus\802.11g wlan ap utilities\discoverya.exe |
"{6DBA8FF4-EA20-41F6-A9C1-4B437832BFF5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7B0AF323-B4DD-4B43-AF15-ABA1C5D7182C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{7DAF8261-F0BA-4388-B83C-08A9F68F8AB3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{8462A5D9-C50F-4C16-9CEA-C32BC109547A}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\prince of persia\prince of persia.exe |
"{89B1DE06-96B3-4A8F-BC9C-110E23030081}" = protocol=6 | dir=out | app=system |
"{8A7948E4-200D-4FFE-B4F1-4634C010E50E}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\launcher.exe |
"{8C12AE93-626E-41F1-AC57-4D731E7E57E7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9352CD5F-A459-4683-A3CD-BB8668C04982}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\prince of persia\prince of persia.exe |
"{9A035B86-7F28-4F83-9E58-DA63B18D9928}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 |
"{9AB5452D-33E2-4123-A70F-C0A053266D6F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{A0E0B614-BDEE-441F-94D5-B3B4C94E7509}" = protocol=17 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe |
"{A21A3223-3158-4448-A005-2CECEFD21CC3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mafia ii\pc\mafia2.exe |
"{A3FDA8A7-C6CB-45D2-BF3C-39ABD6E41A16}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hitman absolution\hma.exe |
"{A6C5CE44-241A-46DB-B689-84B123948185}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{A8A1FEDF-5DEA-45DF-AC6B-1102F14FB625}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{AD4FD418-F17F-428C-83EC-1287D7A4D49E}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{AEC08F48-FB05-49A6-8C37-646D949A60EC}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{B431D953-BD53-45A4-AA40-A71D97208682}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{B433BE7F-050D-408F-A20E-08745ABF7C1C}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\launcher.exe |
"{B51D1609-28B8-4EDE-B20E-E5F071227A16}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hitman absolution\hma.exe |
"{B51DC4DE-2126-4CCB-8F63-5E047634BCB0}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{BD189A8C-B36E-4B0F-A399-B68A03034137}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{BE4A38AF-C141-43E0-B91E-8359D9977275}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
"{C0291ACB-B31C-42E7-A988-1B97E06DE9CF}" = protocol=17 | dir=in | app=c:\program files (x86)\activision\blur(tm)\blur.exe |
"{C57C26EC-16A5-40F0-B9B6-5E01137EC0BB}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C8E9883E-F7F6-43A7-9295-FAAEB565983A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{CBBB2263-8484-4C34-A54F-BC5CB262FD91}" = protocol=6 | dir=in | app=c:\program files (x86)\pandora.tv\panservice\pandoraservice.exe |
"{CCC27B7F-C022-4B08-8B3D-1AA332768854}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{D4375108-8D5E-46D0-84DC-B160CF756B3E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D9055A93-9777-4326-A3EE-A9D81D14CF14}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D9673E8D-69A8-4132-8B93-D3F31540DAA9}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\prince of persia\princeofpersia_launcher.exe |
"{E00E0C43-2026-45E5-80B4-4B40E1D214A5}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{E817F619-3C72-4048-9A6B-7D691A182FA2}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{EA61DC45-2D37-44D4-B5BC-BA178AEE2294}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{EE5B1B35-8A2C-49D5-9C38-CB4FC19AE0F9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{F8A406ED-BEA9-4B1F-8EDE-C2FEEEFEF557}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\mafia ii\pc\mafia2.exe |
"{F9D4D740-6B0C-4DA3-878A-4FB170CA92F6}" = protocol=6 | dir=in | app=c:\program files (x86)\activision\blur(tm)\blur.exe |
"TCP Query User{1556FA86-00A9-408A-8DB8-4B99184E8FBF}C:\users\zeman\desktop\call of duty 4 - modern warfare\iw3mp.exe" = protocol=6 | dir=in | app=c:\users\zeman\desktop\call of duty 4 - modern warfare\iw3mp.exe |
"TCP Query User{163AF98C-CF1D-47DB-835E-346CBC1628EE}C:\users\zeman\desktop\counter-strike\hl.exe" = protocol=6 | dir=in | app=c:\users\zeman\desktop\counter-strike\hl.exe |
"TCP Query User{36F5407D-BA17-4376-B5F8-907938D3DAB3}C:\users\zeman\desktop\fotky\1\filmy\hry\rndlabs\baboviolent 2\bv2.exe" = protocol=6 | dir=in | app=c:\users\zeman\desktop\fotky\1\filmy\hry\rndlabs\baboviolent 2\bv2.exe |
"TCP Query User{3E36A92C-4074-4FB4-BFF1-8AE33CBD5F08}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"TCP Query User{457246BE-9DAB-4F1C-AD64-534117A8CED8}C:\users\zeman\desktop\call of duty 4 - modern warfare\iw3mp.exe" = protocol=6 | dir=in | app=c:\users\zeman\desktop\call of duty 4 - modern warfare\iw3mp.exe |
"TCP Query User{46A5E184-57F1-4697-A0E3-A70200B4DAE0}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |
"TCP Query User{6CA1BA78-2531-483B-8186-CE2511A11C7C}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"TCP Query User{7F5440F3-8B90-4B0E-B5C8-DC51D96B41AB}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"TCP Query User{94A95ED8-7F2D-4F59-8493-4584BD4D0BC3}G:\filip\hry\call of duty 4 - modern warfare\iw3mp.exe" = protocol=6 | dir=in | app=g:\filip\hry\call of duty 4 - modern warfare\iw3mp.exe |
"TCP Query User{ABD39FAE-11D0-44E1-BDAC-EBC725DD405C}C:\users\zeman\desktop\rndlabs\baboviolent 2\bv2.exe" = protocol=6 | dir=in | app=c:\users\zeman\desktop\rndlabs\baboviolent 2\bv2.exe |
"TCP Query User{B4D77630-465E-4053-904C-59FCF19442F7}C:\users\zeman\desktop\rndlabs\baboviolent 2\bv2.exe" = protocol=6 | dir=in | app=c:\users\zeman\desktop\rndlabs\baboviolent 2\bv2.exe |
"TCP Query User{C8EB8C0D-C0EA-427D-A04B-A10941C88631}E:\counter-strike\hl.exe" = protocol=6 | dir=in | app=e:\counter-strike\hl.exe |
"TCP Query User{D0F21FDD-3DF3-4630-BBCE-C64A03E09C21}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe |
"TCP Query User{D72A8117-7465-4587-A9F4-E533DB5AA1BE}C:\windows\syswow64\javaw.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\javaw.exe |
"TCP Query User{E48716C0-090C-49CC-846C-F8317560A9D9}C:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe |
"TCP Query User{F65B985F-EF4B-49C8-A3F4-937E914C0EDC}C:\users\zeman\desktop\fotky\1\filmy\hry\counter-strike\hl.exe" = protocol=6 | dir=in | app=c:\users\zeman\desktop\fotky\1\filmy\hry\counter-strike\hl.exe |
"TCP Query User{F9DF601A-EF9B-4E61-BD9B-6E2C996C32B5}C:\program files (x86)\asus\802.11g wlan ap utilities\discoverya.exe" = protocol=6 | dir=in | app=c:\program files (x86)\asus\802.11g wlan ap utilities\discoverya.exe |
"TCP Query User{FB0D8E69-ED58-4C73-ADAB-7D3E6CDBA799}C:\program files\armies of exigo\exigo.exe" = protocol=6 | dir=in | app=c:\program files\armies of exigo\exigo.exe |
"UDP Query User{0578B499-D8AB-4794-8FAB-077A8E6B2A4E}C:\users\zeman\desktop\fotky\1\filmy\hry\rndlabs\baboviolent 2\bv2.exe" = protocol=17 | dir=in | app=c:\users\zeman\desktop\fotky\1\filmy\hry\rndlabs\baboviolent 2\bv2.exe |
"UDP Query User{2A0E164C-C2E5-4AA4-A348-8496F7BD1AFF}C:\users\zeman\desktop\fotky\1\filmy\hry\counter-strike\hl.exe" = protocol=17 | dir=in | app=c:\users\zeman\desktop\fotky\1\filmy\hry\counter-strike\hl.exe |
"UDP Query User{2B51686E-19BA-4B5B-A5BF-90274E8E6F71}C:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe |
"UDP Query User{3E04C316-288E-4B23-96FF-9357BEF4398E}E:\counter-strike\hl.exe" = protocol=17 | dir=in | app=e:\counter-strike\hl.exe |
"UDP Query User{5CD0AE4F-A7D3-4986-9073-15DC2B19D8AC}C:\program files (x86)\asus\802.11g wlan ap utilities\discoverya.exe" = protocol=17 | dir=in | app=c:\program files (x86)\asus\802.11g wlan ap utilities\discoverya.exe |
"UDP Query User{64385E2F-85DE-413B-AA0F-189A8BC57041}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 2\cod2mp_s.exe |
"UDP Query User{6B3A264D-3A84-4AA7-A8F5-1618ECAAF27D}C:\users\zeman\desktop\rndlabs\baboviolent 2\bv2.exe" = protocol=17 | dir=in | app=c:\users\zeman\desktop\rndlabs\baboviolent 2\bv2.exe |
"UDP Query User{6CF9DFF6-4AC3-4597-AEF7-6A067B6F7359}C:\users\zeman\desktop\call of duty 4 - modern warfare\iw3mp.exe" = protocol=17 | dir=in | app=c:\users\zeman\desktop\call of duty 4 - modern warfare\iw3mp.exe |
"UDP Query User{82681F70-E861-4AF6-B2BC-2F2657D25F84}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"UDP Query User{84422730-23D1-4F0D-AA75-428E2FC78D8A}C:\users\zeman\desktop\call of duty 4 - modern warfare\iw3mp.exe" = protocol=17 | dir=in | app=c:\users\zeman\desktop\call of duty 4 - modern warfare\iw3mp.exe |
"UDP Query User{8B38AFF2-3614-4CF3-96AC-88F4130BA33A}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
"UDP Query User{947E4965-581F-4C45-89DA-D29045852856}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe |
"UDP Query User{A1EFD617-3E26-45AB-9C14-F13944C0489F}C:\users\zeman\desktop\counter-strike\hl.exe" = protocol=17 | dir=in | app=c:\users\zeman\desktop\counter-strike\hl.exe |
"UDP Query User{A3168626-6F22-4FB9-9CE9-C24025927E64}C:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"UDP Query User{AF18B050-3F0A-4D50-B8E2-7D280D02B49F}C:\program files\armies of exigo\exigo.exe" = protocol=17 | dir=in | app=c:\program files\armies of exigo\exigo.exe |
"UDP Query User{B445EC7F-B45B-4942-8D45-01AACA2F55AA}C:\users\zeman\desktop\rndlabs\baboviolent 2\bv2.exe" = protocol=17 | dir=in | app=c:\users\zeman\desktop\rndlabs\baboviolent 2\bv2.exe |
"UDP Query User{D849C961-8C26-4282-9193-6244F9760C29}C:\windows\syswow64\javaw.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\javaw.exe |
"UDP Query User{EEBD65FC-F1A2-43B0-8253-D9B29F277D86}G:\filip\hry\call of duty 4 - modern warfare\iw3mp.exe" = protocol=17 | dir=in | app=g:\filip\hry\call of duty 4 - modern warfare\iw3mp.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{1493B2AE-0261-47D2-B1AA-F4DAD0F6C48B}" = iTunes
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{24811C12-F4A9-4D0F-8494-A7B8FE46123C}" = TOSHIBA ReelTime
"{34384A2A-2CA2-4446-AB0E-1F360BA2AAC5}" = Windows Live Remote Service Resources
"{3921492E-82D2-4180-8124-E347AD2F2DB4}" = Windows Live Remote Client Resources
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}" = Windows Live Family Safety
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{5F1DFCC1-595D-4235-A044-E05B706D800A}" = AuthenTec Fingerprint Software
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{701D8EE6-6A5A-4509-9740-35F551193CE0}" = Windows Live Family Safety
"{7446FE8D-C1F9-4D42-AAAE-5DBCE58605A6}" = Apple Mobile Device Support
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0405-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Czech) 2010
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{94A90C69-71C1-470A-88F5-AA47ECC96B40}" = TOSHIBA HDD Protection
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}" = TOSHIBA PC Health Monitor
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = ALPS Touch Pad Driver
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{A7760E07-4C23-4766-A99E-F715F298E99C}" = TFPU
"{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{C14518AF-1A0F-4D39-8011-69BAA01CD380}" = TOSHIBA Bulletin Board
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Výstraha HDD/SSD TOSHIBA
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
"PROSet" = Intel(R) Network Connections Drivers
"TFPU{A7760E07-4C23-4766-A99E-F715F298E99C}" = TOSHIBA Fingerprint Utility
"WinRAR archiver" = WinRAR 4.01 beta 1 (64-bit)
"ZonerPhotoStudio15_CZ_is1" = Zoner Photo Studio 15
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{022CBB38-CEF0-42BA-906A-A49BEFAE0BEE}" = RICOH R5U230 Media Driver ver.2.08.03.03
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}" = Nero BackItUp 10 Help (CHM)
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0C1B3A6B-B467-474D-97E4-D8BAC3E839CD}" = YTD Toolbar v7.0
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{0FF68F26-416C-4954-ACA5-6AD5F9DE99C1}" = Nero Multimedia Suite 10 Essentials
"{16987E99-C95C-4513-9239-7B44A0A71DB5}" = Nero SoundTrax 10 Help (CHM)
"{1B87C40B-A60B-4EF3-9A68-706CF4B69978}" = Toshiba Assist
"{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}" = Windows Live UX Platform Language Pack
"{1E445925-273D-4186-88A0-B8D1B6B119E2}" = WRC FIA World Rally Championship
"{1E63ACB5-D45E-4856-8FC9-78F4B0D7BB80}" = TOSHIBA Asistent zabezpecení
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}" = Nero MediaHub 10
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{2290A680-4083-410A-ADCC-7092C67FC052}" = TOSHIBA Online Product Information
"{237CCB62-8454-43E3-B158-3ACD0134852E}" = High-Definition Video Playback 10
"{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}" = Nero Core Components 10
"{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 30
"{26A24AE4-039D-4CA4-87B4-2F83217009FF}" = Java 7 Update 9
"{277C1559-4CF7-44FF-8D07-98AA9C13AABD}" = Nero Multimedia Suite 10
"{329411A0-19F3-4740-874F-17400B126F27}" = Nero Vision 10 Help (CHM)
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{33643918-7957-4839-92C7-EA96CB621A98}" = Nero Express 10 Help (CHM)
"{34490F4E-48D0-492E-8249-B48BECF0537C}" = Nero DiscSpeed 10
"{361AA6F2-124E-4E98-9402-83B1445B8448}" = GameSpy Comrade
"{3D047C6C-19EE-46E3-C14B-9FA84260DF9B}" = Photo Service - powered by myphotobook
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
"{42C8B7DF-FEB0-4D51-B169-506B6BEC5797}" = Nero 10 Menu TemplatePack 1
"{43FBAB46-5969-4200-9958-1FF81FEE506F}" = Nero 10 Movie ThemePack 1
"{468D22C0-8080-11E2-B86E-B8AC6F98CCE3}" = Google Earth
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1
"{50300123-F8FC-4B50-B449-E847D04F1BA2}" = Windows Live Messenger
"{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}" = Nero ControlCenter 10 Help (CHM)
"{555868C6-49FB-484F-BB43-8980651A1B00}" = Nero BurnRights 10 Help (CHM)
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{589A63D3-89E1-4D9B-8DBC-6039BB27289E}" = Activision(R)
"{5E6F6CF3-BACC-4144-868C-E14622C658F3}" = TOSHIBA Web Camera Application
"{607BE7BF-7C28-4ADB-A4A0-385962B901C3}" = TOSHIBA ConfigFree
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63AA3EAB-23BB-48B2-9AD0-44F878075604}" = Nero 10 Menu TemplatePack Basic
"{63EC2120-1742-4625-AA47-C6A8AEC9C64C}" = Apple Application Support
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update
"{66049135-9659-4AAD-9169-9CCA269EBB3E}" = Nero InfoTool 10 Help (CHM)
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{68AB6930-5BFF-4FF6-923B-516A91984FE6}" = Nero BackItUp 10
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER
"{6DFB899F-17A2-48F0-A533-ED8D6866CF38}" = Nero Control Center 10
"{6E1F38D1-1F37-4E0E-BB08-97BFA65EB139}" = LEGO® Harry Potter™: Years 5-7
"{70550193-1C22-445C-8FA4-564E155DB1A7}" = Nero Express 10
"{70F19404-B96C-4EBB-AD2B-3574F8736197}" = Nero 10 Movie ThemePack 2
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Media Creator Reminder
"{77F8A71E-3515-4832-B8B2-2F1EDBD2E0F1}" = Bing Bar
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
"{7A295D8F-484B-4FFB-89AB-C1FD497591FE}" = Nero WaveEditor 10 Help (CHM)
"{7A5D731D-B4B3-490E-B339-75685712BAAB}" = Nero Burning ROM 10
"{80E8C65A-8F70-4585-88A2-ABC54BABD576}" = Windows Live Mesh
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}" = Nero Recode 10
"{90140000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2010
"{90140000-0015-0405-0000-0000000FF1CE}_Office14.SingleImage_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2010
"{90140000-0016-0405-0000-0000000FF1CE}_Office14.SingleImage_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2010
"{90140000-0018-0405-0000-0000000FF1CE}_Office14.SingleImage_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2010
"{90140000-0019-0405-0000-0000000FF1CE}_Office14.SingleImage_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2010
"{90140000-001A-0405-0000-0000000FF1CE}_Office14.SingleImage_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2010
"{90140000-001B-0405-0000-0000000FF1CE}_Office14.SingleImage_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2010
"{90140000-001F-0405-0000-0000000FF1CE}_Office14.SingleImage_{2304F942-79D2-46F7-A512-269A7F5B7EFC}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{65A2328E-FDFB-4CA3-8582-357EA6825FEA}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{99ACCA38-6DD3-48A8-96AE-A283C9759279}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2010
"{90140000-001F-041B-0000-0000000FF1CE}_Office14.SingleImage_{A162C5E6-7778-4D5B-9F0A-38F0122DD859}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002A-0405-1000-0000000FF1CE}_Office14.SingleImage_{AB90513B-B892-41B5-8F8B-1D356A449652}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2010
"{90140000-002C-0405-0000-0000000FF1CE}_Office14.SingleImage_{8148DB19-71B1-4415-8B26-DF5B9E873FC3}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010
"{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{047B0968-E622-4FAA-9B4B-121FA109EDDE}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2010
"{90140000-006E-0405-0000-0000000FF1CE}_Office14.SingleImage_{EEF3E2C0-135B-44DC-BEDD-7F01CFBEFF46}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90140000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2010
"{90140000-00A1-0405-0000-0000000FF1CE}_Office14.SingleImage_{E6C0DAE8-3840-4117-AB4D-674930D0DDE9}" = Microsoft Office 2010 Service Pack 1 (SP1)
"{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}" = Toshiba Manuals
"{92146419-AE44-4C8B-A48B-0ABB1B5EC026}" = Nero 10 Menu TemplatePack 3
"{92A10E9D-EA00-4A46-8F22-EEA660992D61}" = Nero 10 Sample Videos
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92E25238-61A3-4ACD-A407-3C480EEF47A7}" = Nero RescueAgent 10 Help (CHM)
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{943CFD7D-5336-47AF-9418-E02473A5A517}" = Nero BurnRights 10
"{95140000-007A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{95140000-007D-0409-0000-0000000FF1CE}" = Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit
"{96ED4B78-300E-4033-AE6C-C115CEB4DF07}" = Nero 10 ClipartPack
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}" = Nero Vision 10
"{9B6B24BE-80E7-46C4-9FA5-B167D5E0F345}" = Nero BurningROM 10 Help (CHM)
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
"{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station
"{AC76BA86-7AD7-1029-7B44-A95000000001}" = Adobe Reader 9.5.0 - Czech
"{ACD15FDF-FC42-4175-B477-576F92FF2256}" = Nero 10 Sample ImagePack
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"{B44F3823-52DD-45CA-A916-8B320778715D}" = Messenger Companion
"{B6190387-0036-4BEB-8D74-A0AFC5F14706}" = Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení
"{B6E3F2A0-DDBB-4F0A-BA7C-09138605DDAC}" = WRC FIA World Rally Championship
"{BEAD39CD-901D-4267-8B8B-EAA83CB4B70D}" = Pivot Stickfigure Animator
"{C18A0418-442A-4186-AF98-D08F5054A2FC}" = Nero DiscSpeed 10 Help (CHM)
"{C3273C55-E1E4-41FF-8D69-0158090DB8D8}" = Nero CoverDesigner 10 Help (CHM)
"{C3580AC4-C827-4332-B935-9A282ED5BB97}" = Nero Dolby Files 10
"{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}" = Microsoft Primary Interoperability Assemblies 2005
"{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Výstraha HDD/SSD TOSHIBA
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}" = Intel(R) Turbo Boost Technology Driver
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DB7C1D4A-08BA-4C7E-A8AA-B7F9BB372DCF}" = Nero Recode 10 Help (CHM)
"{DBB7021A-3437-446F-ACE5-7261644A972C}" = Toshiba TEMPRO
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E17141A6-211D-5854-61D9-69827A430D82}" = EA Download Manager UI
"{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}" = Nero SoundTrax 10
"{E337E787-CF61-4B7B-B84F-509202A54023}" = Nero RescueAgent 10
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E487EE7D-EAAA-4E2A-9116-E3B477D8A74F}" = TOSHIBA USB Sleep and Charge Utility
"{E712C273-7564-4C8E-AA59-0FA19BC35117}" = Nero 10 Menu TemplatePack 2
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EDCDFAD5-DF80-4600-A493-E9DAD6810230}" = Nero WaveEditor 10
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F412B4AF-388C-4FF5-9B2F-33DB1C536953}" = Nero InfoTool 10
"{F467862A-D9CA-47ED-8D81-B4B3C9399272}" = Nero MediaHub 10 Help (CHM)
"{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}" = Nero 10 Movie ThemePack Basic
"{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}" = Nero StartSmart 10 Help (CHM)
"{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}" = Nero StartSmart 10
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FCF00A6E-FB58-477A-ABE9-232907105521}" = Nero CoverDesigner 10
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FEDFB4DC-E149-4897-B616-4811C718E54F}" = TOSHIBA 180 Degrees Rotation Utility
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"4F6D5E84-5826-4394-9F40-3A9A19165651_is1" = Pandora Service
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Airplane mod v.1" = Airplane mod v.1
"avast" = avast! Free Antivirus
"Busy Mod" = Busy Mod
"Call of Juarez_is1" = Call of Juarez
"CityBars Mod v1.0" = CityBars Mod v1.0
"CoD 2 čeština_is1" = CoD 2 čeština
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.ea.Vault.919CACB699904AC5D41B606703500DD39747C02D.1" = EA Download Manager UI
"Cuban Mod" = Cuban Mod
"Cuban Mod v1.1" = Cuban Mod v1.1
"DAEMON Tools Lite" = DAEMON Tools Lite
"DAEMON Tools Toolbar" = DAEMON Tools Toolbar
"EA Download Manager" = EA Download Manager
"EAX Unified" = EAX Unified
"eu.myphotobook.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1" = Photo Service - powered by myphotobook
"Extreme Ride Mod" = Extreme Ride Mod
"Extreme Ride Mod 2" = Extreme Ride Mod 2
"Fotolab Fotosvet" = Fotolab Fotosvet
"Fotolab Fotosvet 4" = Fotolab Fotosvet 4
"HL3" = Žhavé léto 3 a půl
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"InstallShield_{24811C12-F4A9-4D0F-8494-A7B8FE46123C}" = TOSHIBA ReelTime
"InstallShield_{589A63D3-89E1-4D9B-8DBC-6039BB27289E}" = Blur(TM)
"InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Media Creator Reminder
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"InstallShield_{C14518AF-1A0F-4D39-8011-69BAA01CD380}" = TOSHIBA Bulletin Board
"InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Výstraha HDD/SSD TOSHIBA
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"Mafia 1.0 patch" = Mafia 1.0 patch
"Mafia Game" = Mafia Game
"Mafia II Winter_is1" = Mafia II Winter
"Minecraft (Beta v1.3) Beta v1.3" = Minecraft (Beta v1.3)
"Mozilla Firefox 11.0 (x86 cs)" = Mozilla Firefox 11.0 (x86 cs)
"Office14.SingleImage" = Microsoft Office 2010 pro podnikatele
"Rage_is1" = Rage
"Registry Mechanic_is1" = PC Tools Registry Mechanic 11.0
"Steam App 203140" = Hitman: Absolution
"The KMPlayer" = The KMPlayer (remove only)
"WinLiveSuite" = Windows Live Essentials
"Xilisoft Download Youtube Toolbar" = Xilisoft Download Youtube Toolbar
"ZonerPhotoStudio12_EN_is1" = Zoner Photo Studio 12
========== HKEY_USERS Uninstall List ==========
[HKEY_USERS\S-1-5-21-2371161765-1356260776-2885291319-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Game Organizer" = GameXN GO
"Google Chrome" = Google Chrome
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 27.3.2013 17:28:15 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 3276
Error - 28.3.2013 8:21:11 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 28.3.2013 8:21:11 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 53579261
Error - 28.3.2013 8:21:11 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 53579261
Error - 28.3.2013 8:21:12 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 28.3.2013 8:21:12 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 53580275
Error - 28.3.2013 8:21:12 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 53580275
Error - 28.3.2013 8:21:13 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 28.3.2013 8:21:13 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 53581523
Error - 28.3.2013 8:21:13 | Computer Name = FilipZ | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 53581523
[ System Events ]
Error - 27.3.2013 15:50:03 | Computer Name = FilipZ | Source = Service Control Manager | ID = 7001
Description = Služba Prohledávání počítačů závisí na službě Server, která neuspěla
při spuštění v důsledku následující chyby: %%1068
Error - 27.3.2013 15:50:03 | Computer Name = FilipZ | Source = DCOM | ID = 10005
Description =
Error - 27.3.2013 15:50:03 | Computer Name = FilipZ | Source = DCOM | ID = 10005
Description =
Error - 27.3.2013 15:50:05 | Computer Name = FilipZ | Source = Service Control Manager | ID = 7001
Description = Služba Zprostředkovatel domácích skupin závisí na službě Hostitel
poskytovatele rozpoznávání funkce, která neuspěla při spuštění v důsledku následující
chyby: %%1068
Error - 27.3.2013 15:55:04 | Computer Name = FilipZ | Source = ipnathlp | ID = 34001
Description =
Error - 27.3.2013 15:55:04 | Computer Name = FilipZ | Source = ipnathlp | ID = 30013
Description =
Error - 27.3.2013 17:28:00 | Computer Name = FilipZ | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby iphlpsvc bylo dosaženo časového
limitu (30000 ms).
Error - 28.3.2013 8:21:21 | Computer Name = FilipZ | Source = ipnathlp | ID = 31004
Description =
Error - 28.3.2013 8:21:31 | Computer Name = FilipZ | Source = ipnathlp | ID = 31004
Description =
Error - 28.3.2013 8:21:33 | Computer Name = FilipZ | Source = ipnathlp | ID = 30013
Description =
< End of report >

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Zablokovaný pc- police Čr
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Zablokovaný pc- police Čr

- Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
- Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
Kód: Vybrat vše
:otl IE:64bit: - HKLM\..\SearchScopes\{AFA97666-DE0D-499D-AC73-782084F61F11}: "URL" = http://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = IE - HKLM\..\SearchScopes\{8430263A-7867-4E1D-84E8-372C59082544}: "URL" = http://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox IE - HKU\S-1-5-21-2371161765-1356260776-2885291319-1000\..\SearchScopes\{3DB8C139-6EFD-466E-B1D6-B47062990574}: "URL" = http://www.amazon.co.uk/gp/search?ie=UTF8&keywords={searchTerms}&tag=tochibauk-win7-ie-search-21&index=blended&linkCode=ur2 IE - HKU\S-1-5-21-2371161765-1356260776-2885291319-1000\..\SearchScopes\{45D35D20-A682-42D9-A5E0-2E84D222D186}: "URL" = http://search.yahoo.com/search?fr=chr-g ... =937811&p={searchTerms} IE - HKU\S-1-5-21-2371161765-1356260776-2885291319-1000\..\SearchScopes\{623AE1B8-3731-48B1-B53E-AFB854108EE4}: "URL" = http://rover.ebay.com/rover/1/710-71511 ... 4?satitle={searchTerms} FF - prefs.js..browser.search.defaultenginename: "Yahoo" FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=937811" FF - prefs.js..browser.search.selectedEngine: "Yahoo" FF - prefs.js..extensions.enabledAddons: ytd@mybrowserbar.com:7.0 FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=937811&p=" FF - prefs.js..network.proxy.no_proxies_on: "*.local" [2013.03.10 17:19:04 | 000,000,000 | ---D | M] (YTD Toolbar) -- C:\PROGRAM FILES (X86)\YTD TOOLBAR\FF CHR - default_search_provider: Ask (Enabled) CHR - default_search_provider: search_url = http://websearch.ask.com/redirect?clien ... V2%5ECZ&q={searchTerms} CHR - default_search_provider: suggest_url = http://ss.websearch.ask.com/query?qsrc= ... =prefix&q={searchTerms} O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O4 - HKLM..\Run: [] File not found O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Value error.) O18:64bit: - Protocol\Handler\livecall - No CLSID value found O18:64bit: - Protocol\Handler\ms-help - No CLSID value found O18:64bit: - Protocol\Handler\msnim - No CLSID value found O18:64bit: - Protocol\Handler\skype4com - No CLSID value found O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found O18:64bit: - Protocol\Handler\wlpg - No CLSID value found O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. [1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ] [7 C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ] [14 C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ] [4 C:\windows\Installer\*.tmp files -> C:\windows\Installer\*.tmp -> ] [1 C:\windows\System32\config\systemprofile\AppData\LocalLow\Application Updater\temp\*.tmp files -> C:\windows\System32\config\systemprofile\AppData\LocalLow\Application Updater\temp\*.tmp -> ] [1 C:\windows\SysWOW64\config\systemprofile\AppData\LocalLow\Application Updater\temp\*.tmp files -> C:\windows\SysWOW64\config\systemprofile\AppData\LocalLow\Application Updater\temp\*.tmp -> ] [1 C:\windows\temp\*.tmp files -> C:\windows\temp\*.tmp -> ] [2013.03.28 13:41:05 | 000,000,914 | ---- | M] () -- C:\windows\Tasks\Adobe Flash Player Updater.job [2013.03.27 20:54:36 | 000,000,946 | ---- | M] () -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job [2013.03.28 13:26:00 | 000,000,950 | ---- | M] () -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job [2013.03.25 17:04:00 | 000,000,910 | ---- | M] () -- C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2371161765-1356260776-2885291319-1000Core.job [2013.03.28 14:04:12 | 000,000,962 | ---- | M] () -- C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2371161765-1356260776-2885291319-1000UA.job @Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:D1B5B4F1 :files c:\Program Files (x86)\Activision\Prototype\prototype-crack-funkcni-100.exe c:\Program Files (x86)\Electronic Arts\Harry Potter a Fénixův řád\Crack Czech.exe c:\Qoobox\Quarantine\C\Root\Setup\rsrc\prototype-crack-funkcni-100.exe.vir c:\Users\zeman\AppData\Roaming\Microsoft\Windows\Recent\CRACK-NO-CD-NFS-MOST-WANTED.lnk c:\Users\zeman\AppData\Roaming\Microsoft\Windows\Recent\Mafia-1-crack.lnk c:\Users\zeman\Downloads\CRACK-NO-CD-NFS-MOST-WANTED.rar c:\Users\zeman\Downloads\GTA-san-andreas-crack-by-Nykki.rar c:\Users\zeman\Downloads\Mafia-1-crack.rar %windir%\system32\*.tmp.dll /s %windir%\system32\SET*.tmp /s %windir%\*.tmp :commands [RESETHOSTS] [EMPTYTEMP] [EMPTYFLASH] [EMPTYJAVA]
- Nasledne kliknete na Opravit
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: Zablokovaný pc- police Čr
All processes killed
========== OTL ==========
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFA97666-DE0D-499D-AC73-782084F61F11}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFA97666-DE0D-499D-AC73-782084F61F11}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8430263A-7867-4E1D-84E8-372C59082544}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8430263A-7867-4E1D-84E8-372C59082544}\ not found.
Registry key HKEY_USERS\S-1-5-21-2371161765-1356260776-2885291319-1000\Software\Microsoft\Internet Explorer\SearchScopes\{3DB8C139-6EFD-466E-B1D6-B47062990574}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DB8C139-6EFD-466E-B1D6-B47062990574}\ not found.
Registry key HKEY_USERS\S-1-5-21-2371161765-1356260776-2885291319-1000\Software\Microsoft\Internet Explorer\SearchScopes\{45D35D20-A682-42D9-A5E0-2E84D222D186}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45D35D20-A682-42D9-A5E0-2E84D222D186}\ not found.
Registry key HKEY_USERS\S-1-5-21-2371161765-1356260776-2885291319-1000\Software\Microsoft\Internet Explorer\SearchScopes\{623AE1B8-3731-48B1-B53E-AFB854108EE4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{623AE1B8-3731-48B1-B53E-AFB854108EE4}\ not found.
Prefs.js: "Yahoo" removed from browser.search.defaultenginename
Prefs.js: "chr-greentree_ff&ilc=12&type=937811" removed from browser.search.param.yahoo-fr
Prefs.js: "Yahoo" removed from browser.search.selectedEngine
Prefs.js: ytd@mybrowserbar.com:7.0 removed from extensions.enabledAddons
Prefs.js: "http://search.yahoo.com/search?fr=green ... =937811&p=" removed from keyword.URL
Prefs.js: "*.local" removed from network.proxy.no_proxies_on
C:\PROGRAM FILES (X86)\YTD TOOLBAR\FF\components folder moved successfully.
C:\PROGRAM FILES (X86)\YTD TOOLBAR\FF\chrome folder moved successfully.
C:\PROGRAM FILES (X86)\YTD TOOLBAR\FF folder moved successfully.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\livecall\ deleted successfully.
File Protocol\Handler\livecall - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
File Protocol\Handler\ms-help - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\msnim\ deleted successfully.
File Protocol\Handler\msnim - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype4com\ deleted successfully.
File Protocol\Handler\skype4com - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype-ie-addon-data\ deleted successfully.
File Protocol\Handler\skype-ie-addon-data - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlmailhtml\ deleted successfully.
File Protocol\Handler\wlmailhtml - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlpg\ deleted successfully.
File Protocol\Handler\wlpg - No CLSID value found not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\windows\msdownld.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP31B9.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4E00.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPA1E7.tmp\System.Xml.dll deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPA1E7.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPB6A2.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE5AD.tmp\WindowsLive.Writer.PostEditor.dll deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE5AD.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPF121.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2616.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP4E2E.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP509F.tmp\ehshell.dll deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP509F.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP7B95.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP84C9.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP8C45.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP9636.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPAC26.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPCFBB.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPDCF6.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPEFAC.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPF2B7.tmp folder deleted successfully.
C:\windows\Installer\MSI24DC.tmp deleted successfully.
C:\windows\Installer\MSI467.tmp deleted successfully.
C:\windows\Installer\MSI9C4C.tmp deleted successfully.
C:\windows\Installer\MSICA3B.tmp deleted successfully.
C:\windows\System32\config\systemprofile\AppData\LocalLow\Application Updater\temp\~wtCE77.tmp deleted successfully.
C:\windows\temp\~8833.tmp deleted successfully.
C:\windows\temp\~98A7.tmp deleted successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2371161765-1356260776-2885291319-1000Core.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2371161765-1356260776-2885291319-1000UA.job moved successfully.
ADS C:\ProgramData\TEMP:D1B5B4F1 deleted successfully.
========== FILES ==========
c:\Program Files (x86)\Activision\Prototype\prototype-crack-funkcni-100.exe moved successfully.
c:\Program Files (x86)\Electronic Arts\Harry Potter a Fénixův řád\Crack Czech.exe moved successfully.
c:\Qoobox\Quarantine\C\Root\Setup\rsrc\prototype-crack-funkcni-100.exe.vir moved successfully.
c:\Users\zeman\AppData\Roaming\Microsoft\Windows\Recent\CRACK-NO-CD-NFS-MOST-WANTED.lnk moved successfully.
c:\Users\zeman\AppData\Roaming\Microsoft\Windows\Recent\Mafia-1-crack.lnk moved successfully.
c:\Users\zeman\Downloads\CRACK-NO-CD-NFS-MOST-WANTED.rar moved successfully.
c:\Users\zeman\Downloads\GTA-san-andreas-crack-by-Nykki.rar moved successfully.
c:\Users\zeman\Downloads\Mafia-1-crack.rar moved successfully.
File/Folder C:\windows\system32\*.tmp.dll not found.
File/Folder C:\windows\system32\SET*.tmp not found.
File/Folder C:\windows\*.tmp not found.
========== COMMANDS ==========
C:\windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 56504 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Minecraft
->Temp folder emptied: 0 bytes
User: Public
->Temp folder emptied: 0 bytes
User: zeman
->Temp folder emptied: 750550 bytes
->Temporary Internet Files folder emptied: 719981076 bytes
->Java cache emptied: 4425998 bytes
->FireFox cache emptied: 438914716 bytes
->Google Chrome cache emptied: 389079522 bytes
->Flash cache emptied: 106561 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 11116 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 68045 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 1 481,00 mb
[EMPTYFLASH]
User: All Users
User: Default
->Flash cache emptied: 0 bytes
User: Default User
->Flash cache emptied: 0 bytes
User: Minecraft
User: Public
User: zeman
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
[EMPTYJAVA]
User: All Users
User: Default
User: Default User
User: Minecraft
User: Public
User: zeman
->Java cache emptied: 0 bytes
Total Java Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 03302013_112122
Files\Folders moved on Reboot...
C:\Users\zeman\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
========== OTL ==========
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFA97666-DE0D-499D-AC73-782084F61F11}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFA97666-DE0D-499D-AC73-782084F61F11}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8430263A-7867-4E1D-84E8-372C59082544}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8430263A-7867-4E1D-84E8-372C59082544}\ not found.
Registry key HKEY_USERS\S-1-5-21-2371161765-1356260776-2885291319-1000\Software\Microsoft\Internet Explorer\SearchScopes\{3DB8C139-6EFD-466E-B1D6-B47062990574}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DB8C139-6EFD-466E-B1D6-B47062990574}\ not found.
Registry key HKEY_USERS\S-1-5-21-2371161765-1356260776-2885291319-1000\Software\Microsoft\Internet Explorer\SearchScopes\{45D35D20-A682-42D9-A5E0-2E84D222D186}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{45D35D20-A682-42D9-A5E0-2E84D222D186}\ not found.
Registry key HKEY_USERS\S-1-5-21-2371161765-1356260776-2885291319-1000\Software\Microsoft\Internet Explorer\SearchScopes\{623AE1B8-3731-48B1-B53E-AFB854108EE4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{623AE1B8-3731-48B1-B53E-AFB854108EE4}\ not found.
Prefs.js: "Yahoo" removed from browser.search.defaultenginename
Prefs.js: "chr-greentree_ff&ilc=12&type=937811" removed from browser.search.param.yahoo-fr
Prefs.js: "Yahoo" removed from browser.search.selectedEngine
Prefs.js: ytd@mybrowserbar.com:7.0 removed from extensions.enabledAddons
Prefs.js: "http://search.yahoo.com/search?fr=green ... =937811&p=" removed from keyword.URL
Prefs.js: "*.local" removed from network.proxy.no_proxies_on
C:\PROGRAM FILES (X86)\YTD TOOLBAR\FF\components folder moved successfully.
C:\PROGRAM FILES (X86)\YTD TOOLBAR\FF\chrome folder moved successfully.
C:\PROGRAM FILES (X86)\YTD TOOLBAR\FF folder moved successfully.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\livecall\ deleted successfully.
File Protocol\Handler\livecall - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
File Protocol\Handler\ms-help - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\msnim\ deleted successfully.
File Protocol\Handler\msnim - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype4com\ deleted successfully.
File Protocol\Handler\skype4com - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype-ie-addon-data\ deleted successfully.
File Protocol\Handler\skype-ie-addon-data - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlmailhtml\ deleted successfully.
File Protocol\Handler\wlmailhtml - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlpg\ deleted successfully.
File Protocol\Handler\wlpg - No CLSID value found not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\windows\msdownld.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP31B9.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4E00.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPA1E7.tmp\System.Xml.dll deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPA1E7.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPB6A2.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE5AD.tmp\WindowsLive.Writer.PostEditor.dll deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE5AD.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPF121.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2616.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP4E2E.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP509F.tmp\ehshell.dll deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP509F.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP7B95.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP84C9.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP8C45.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP9636.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPAC26.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPCFBB.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPDCF6.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPEFAC.tmp folder deleted successfully.
C:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPF2B7.tmp folder deleted successfully.
C:\windows\Installer\MSI24DC.tmp deleted successfully.
C:\windows\Installer\MSI467.tmp deleted successfully.
C:\windows\Installer\MSI9C4C.tmp deleted successfully.
C:\windows\Installer\MSICA3B.tmp deleted successfully.
C:\windows\System32\config\systemprofile\AppData\LocalLow\Application Updater\temp\~wtCE77.tmp deleted successfully.
C:\windows\temp\~8833.tmp deleted successfully.
C:\windows\temp\~98A7.tmp deleted successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2371161765-1356260776-2885291319-1000Core.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2371161765-1356260776-2885291319-1000UA.job moved successfully.
ADS C:\ProgramData\TEMP:D1B5B4F1 deleted successfully.
========== FILES ==========
c:\Program Files (x86)\Activision\Prototype\prototype-crack-funkcni-100.exe moved successfully.
c:\Program Files (x86)\Electronic Arts\Harry Potter a Fénixův řád\Crack Czech.exe moved successfully.
c:\Qoobox\Quarantine\C\Root\Setup\rsrc\prototype-crack-funkcni-100.exe.vir moved successfully.
c:\Users\zeman\AppData\Roaming\Microsoft\Windows\Recent\CRACK-NO-CD-NFS-MOST-WANTED.lnk moved successfully.
c:\Users\zeman\AppData\Roaming\Microsoft\Windows\Recent\Mafia-1-crack.lnk moved successfully.
c:\Users\zeman\Downloads\CRACK-NO-CD-NFS-MOST-WANTED.rar moved successfully.
c:\Users\zeman\Downloads\GTA-san-andreas-crack-by-Nykki.rar moved successfully.
c:\Users\zeman\Downloads\Mafia-1-crack.rar moved successfully.
File/Folder C:\windows\system32\*.tmp.dll not found.
File/Folder C:\windows\system32\SET*.tmp not found.
File/Folder C:\windows\*.tmp not found.
========== COMMANDS ==========
C:\windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 56504 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Minecraft
->Temp folder emptied: 0 bytes
User: Public
->Temp folder emptied: 0 bytes
User: zeman
->Temp folder emptied: 750550 bytes
->Temporary Internet Files folder emptied: 719981076 bytes
->Java cache emptied: 4425998 bytes
->FireFox cache emptied: 438914716 bytes
->Google Chrome cache emptied: 389079522 bytes
->Flash cache emptied: 106561 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 11116 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 68045 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 1 481,00 mb
[EMPTYFLASH]
User: All Users
User: Default
->Flash cache emptied: 0 bytes
User: Default User
->Flash cache emptied: 0 bytes
User: Minecraft
User: Public
User: zeman
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
[EMPTYJAVA]
User: All Users
User: Default
User: Default User
User: Minecraft
User: Public
User: zeman
->Java cache emptied: 0 bytes
Total Java Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 03302013_112122
Files\Folders moved on Reboot...
C:\Users\zeman\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
Re: Zablokovaný pc- police Čr
Fajn, jak se chova PC 

Re: Zablokovaný pc- police Čr
Pc se chová normálně už od doby, co ho restartoval combofix, takže nevím.
Ale pokud se můžu ještě na pár věcí zeptat
Jak se mi tam objevil virus, hledal jsem na mobilu něco o virech a dozvěděl jsem se (myslím, na oficiálních stránkách microsoftu) že jeden z příznaků, jak poznat, že je v počítači virus je, že se na ploše objevují věci, které tam nebyly a které jsem na plochu neumístil. No a ten den, kdy se mi tam objevil virus se na ploše objevila ikonka google earth. No a i po dokončení čištění tam stále je, tak nevím, zkoušel jsem to a program se normálně zapíná. Zřejmě je to jen chyba windowsu.
No a ještě bych se chtěl zeptat: den před tím, než se virus objevil jsem stahoval část PC hry. Tak jsem si myslel, že virus byl v tom, ale ta hra tu stále je tak, nevím jestli se mám vůbec pokoušet stáhnout další část, nebo pokud byste mi mohl říct, která část mého PC byla zavirovaná, nebo pokud se dá zjistit, pomocí čeho se vir do počítače dostal, dost by mi to pomohlo.
No a závěrem, děkuji za pomoc, hodně mi to usnadnilo život a doufám, že už vaši pomoc potřebovat nebudu
, ale pokud by se mi zase něco přihodilo, obrátím se na vás
Filip
Ale pokud se můžu ještě na pár věcí zeptat
Jak se mi tam objevil virus, hledal jsem na mobilu něco o virech a dozvěděl jsem se (myslím, na oficiálních stránkách microsoftu) že jeden z příznaků, jak poznat, že je v počítači virus je, že se na ploše objevují věci, které tam nebyly a které jsem na plochu neumístil. No a ten den, kdy se mi tam objevil virus se na ploše objevila ikonka google earth. No a i po dokončení čištění tam stále je, tak nevím, zkoušel jsem to a program se normálně zapíná. Zřejmě je to jen chyba windowsu.
No a ještě bych se chtěl zeptat: den před tím, než se virus objevil jsem stahoval část PC hry. Tak jsem si myslel, že virus byl v tom, ale ta hra tu stále je tak, nevím jestli se mám vůbec pokoušet stáhnout další část, nebo pokud byste mi mohl říct, která část mého PC byla zavirovaná, nebo pokud se dá zjistit, pomocí čeho se vir do počítače dostal, dost by mi to pomohlo.
No a závěrem, děkuji za pomoc, hodně mi to usnadnilo život a doufám, že už vaši pomoc potřebovat nebudu


Filip
Re: Zablokovaný pc- police Čr
Pokud v PC objevite neco, co jste tam nedal a je to nejasneho puvodu, muze to byt znakem infekce a projevem viru.
Hry se nestahuji,hry se kupuji. Jednak je to v 99% poruseni autorskeho zakona a dale cracky\keygeny nutne k obchazeni licence v sobe ve vetsine pripadu obsahuji bonusek v podobe prave nejakeho viru. Takze opravdu na bezpecnostnim foru nebudme radit, jakou cast hry muzete stahovat.
Jinak nemate zac, rado se stalo
Hry se nestahuji,hry se kupuji. Jednak je to v 99% poruseni autorskeho zakona a dale cracky\keygeny nutne k obchazeni licence v sobe ve vetsine pripadu obsahuji bonusek v podobe prave nejakeho viru. Takze opravdu na bezpecnostnim foru nebudme radit, jakou cast hry muzete stahovat.
Jinak nemate zac, rado se stalo

Re: Zablokovaný pc- police Čr
Tak jeste uklidime
Odinstalujte Combofix
T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel èistiè
A pokud nejsou problemy ci dotazy, je to z me strany vse 


- Prejmenujte ComboFix na Uninstall
- Spustte jej
- Tohle smaze Combofix a jeho slozky

- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel èistiè
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy

