Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

přepisuje domovslou stránku

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
oto
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 08 srp 2008 18:00

přepisuje domovslou stránku

#1 Příspěvek od oto »

zdravím,
nainstaloval jsem IE 8 a asi se tam něco připletlo, protože mi to přepisuje domovskou stránku na IE i na FF.
prosím o radu, přepsání a restart nepomáhá.
děkuji
stáhl jsem Rsit.exe
a ze je výsledek:

Logfile of random's system information tool 1.09 (written by random/random)
Run by rek at 2013-07-11 15:15:42
WIN_XP Service Pack 3
System drive C: has 12 GB (28%) free of 45 GB
Total RAM: 2047 MB (69% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:15:50, on 11.7.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Nitro PDF\Professional 7\NitroPDFDriverService2.exe
C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
C:\WINDOWS\system32\PrintCtrl.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\WINDOWS\system32\ctfmon.exe
C:\util\tclock\TClock.exe
C:\Program Files\MyPhoneExplorer\DLL\adb.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\FreeCommander\FreeCommander.exe
C:\stazeno\RSIT.exe
C:\Program Files\trend micro\rek.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - HKLM\..\Run: [ISW] C:\Program Files\CheckPoint\ZAForceField\ForceField.exe /icon="hidden"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\S-1-5-21-448539723-2052111302-1801674531-1003\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User '?')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-21-448539723-2052111302-1801674531-1003 Startup: TClock.lnk = C:\util\tclock\TClock.exe (User '?')
O4 - Startup: TClock.lnk = C:\util\tclock\TClock.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BrowserDefendert - Unknown owner - C:\Documents and Settings\All Users\Data aplikací\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ZoneAlarm LTD Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NitroPDFDriverCreatorReadSpool2 (NitroDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Nitro PDF\Professional 7\NitroPDFDriverService2.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Printer Control - ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM - C:\WINDOWS\system32\PrintCtrl.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe

--
End of file - 6181 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{8C2346FF-144F-4428-AB82-D866F975B3BE}.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\rek\Data aplikací\Mozilla\Firefox\Profiles\96qyrg82.default

prefs.js - "browser.startup.homepage" - "about:home"

"{FFB96CC1-7EB3-449D-B827-DB661701C6BB}"=C:\Program Files\CheckPoint\ZAForceField\TrustChecker
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi]
"Description"=ZoneAlarm LTD Toolbar Api
"Path"=C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Documents and Settings\rek\Data aplikací\Mozilla\Firefox\Profiles\96qyrg82.default\extensions\
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

C:\Documents and Settings\rek\Data aplikací\Mozilla\Firefox\Profiles\96qyrg82.default\searchplugins\
babylon.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
ZoneAlarm Security Engine Registrar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22 603816]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Security Engine - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22 603816]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
"ZoneAlarm"=C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe [2013-01-23 73832]
"WinFastDTV"=C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2006-12-06 69632]
"WinFast Schedule"=C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2006-12-04 372736]
"ISW"=C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [2012-11-22 738984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-03-15 2565520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM tray]
C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe [2013-03-29 2081792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2006-10-22 7700480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2006-10-22 86016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE4]
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [2007-02-04 79400]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSBkgdUpdate]
C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]

C:\Documents and Settings\rek\Nabídka Start\Programy\Po spuštění
TClock.lnk - C:\util\tclock\TClock.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=ctwdm32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv

======List of files/folders created in the last 1 month======

2013-07-11 15:15:42 ----D---- C:\rsit
2013-07-11 15:15:42 ----D---- C:\Program Files\trend micro
2013-07-11 14:02:57 ----D---- C:\Documents and Settings\rek\Data aplikací\Babylon
2013-07-11 13:34:39 ----D---- C:\Documents and Settings\rek\Data aplikací\systweak
2013-07-11 12:31:46 ----D---- C:\Program Files\Avanquest update
2013-07-11 12:31:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avanquest
2013-07-11 12:30:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\BVRP Software
2013-07-11 12:29:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sony Ericsson
2013-07-11 11:32:26 ----HDC---- C:\WINDOWS\ie8
2013-07-10 07:44:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2834904_WM11$
2013-07-10 07:44:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$
2013-07-10 07:44:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2850851$
2013-07-10 07:43:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2845187$
2013-07-10 07:42:58 ----SHD---- C:\Config.Msi
2013-07-09 21:10:05 ----D---- C:\Documents and Settings\rek\Data aplikací\Opera Software
2013-07-09 21:09:57 ----D---- C:\Program Files\Opera
2013-07-08 17:27:41 ----D---- C:\Program Files\Mozilla Firefox
2013-07-08 17:17:36 ----D---- C:\Documents and Settings\rek\Data aplikací\Mozilla
2013-07-08 17:17:32 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-07-07 07:53:37 ----D---- C:\IXUS
2013-07-05 19:06:36 ----ASH---- C:\pagefile.sys
2013-07-05 16:37:06 ----A---- C:\WINDOWS\system32\EuEpmGdi.dll
2013-07-05 16:37:05 ----A---- C:\WINDOWS\system32\setupempdrv03.exe
2013-07-05 16:37:05 ----A---- C:\WINDOWS\system32\EuGdiDrv.sys
2013-07-05 16:37:05 ----A---- C:\WINDOWS\system32\epmntdrv.sys
2013-07-05 16:37:05 ----A---- C:\WINDOWS\system32\BootMan.exe
2013-07-05 16:27:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\Acronis
2013-07-05 16:27:09 ----A---- C:\WINDOWS\system32\drivers\snapman.sys
2013-07-05 16:17:13 ----D---- C:\util
2013-07-05 14:33:29 ----D---- C:\Program Files\Toolwiz Smart Defrag FREE
2013-07-05 14:23:45 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-07-05 14:23:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\IObit
2013-07-05 14:23:09 ----D---- C:\Documents and Settings\rek\Data aplikací\IObit
2013-07-05 14:23:05 ----D---- C:\Program Files\IObit
2013-07-02 18:49:42 ----D---- C:\totalcmd
2013-07-02 18:49:42 ----D---- C:\Documents and Settings\rek\Data aplikací\GHISLER
2013-07-02 18:49:42 ----A---- C:\WINDOWS\UC.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\RAR.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\PKZIP.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\PKUNZIP.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\LHA.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\ARJ.PIF
2013-07-02 07:50:03 ----HDC---- C:\WINDOWS\$NtUninstallwinusb0200$
2013-07-02 07:36:02 ----A---- C:\WINDOWS\system32\WinUSBCoInstaller2.dll
2013-07-01 23:07:11 ----N---- C:\WINDOWS\system32\spmsg.dll
2013-07-01 23:07:02 ----HDC---- C:\WINDOWS\$NtUninstallWudf01009$
2013-07-01 23:01:09 ----D---- C:\Documents and Settings\rek\Data aplikací\Nokia
2013-07-01 23:00:15 ----D---- C:\Program Files\Common Files\PCSuite
2013-07-01 23:00:01 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys
2013-07-01 23:00:01 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys
2013-07-01 23:00:00 ----A---- C:\WINDOWS\system32\drivers\ccdcmbo.sys
2013-07-01 22:59:59 ----A---- C:\WINDOWS\system32\drivers\ccdcmb.sys
2013-07-01 22:59:57 ----D---- C:\Program Files\Nokia
2013-07-01 22:58:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Installations
2013-07-01 21:03:34 ----HDC---- C:\WINDOWS\$NtUninstallwinusb0100$
2013-07-01 21:01:23 ----A---- C:\WINDOWS\system32\WinUSBCoInstaller.dll
2013-07-01 21:01:23 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2013-06-26 12:48:54 ----D---- C:\Program Files\Mozilla Thunderbird
2013-06-25 19:14:19 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2013-06-25 19:14:19 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2013-06-25 19:14:19 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2013-06-25 19:14:19 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2013-06-25 19:14:18 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2013-06-25 19:14:04 ----A---- C:\WINDOWS\avastSS.scr
2013-06-25 18:50:39 ----D---- C:\Program Files\MyPhoneExplorer
2013-06-25 18:45:15 ----D---- C:\stazeno
2013-06-25 18:24:24 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2013-06-25 18:24:24 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2013-06-25 18:24:24 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2013-06-25 15:06:00 ----D---- C:\Documents and Settings\rek\Data aplikací\TagScanner
2013-06-12 22:55:25 ----D---- C:\WINDOWS\E89498D814304A2BA76A4A71326981E9.TMP
2013-06-12 22:55:24 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2013-06-12 22:54:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\Babylon
2013-06-12 22:53:55 ----D---- C:\Program Files\MyFree Codec
2013-06-12 14:27:17 ----D---- C:\Documents and Settings\All Users\Data aplikací\Anti-phishing Domain Advisor
2013-06-12 14:09:42 ----D---- C:\Program Files\Enigma Software Group
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadserd.sys
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadmdm.sys
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadmdfl.sys
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadcmnt.sys
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadadb.sys
2013-06-12 12:58:23 ----A---- C:\WINDOWS\system32\drivers\ssadwhnt.sys
2013-06-12 12:58:23 ----A---- C:\WINDOWS\system32\drivers\ssadbus.sys
2013-06-12 12:56:16 ----A---- C:\WINDOWS\system32\drivers\dgderdrv.sys
2013-06-12 12:56:16 ----A---- C:\WINDOWS\system32\DIFxAPI.dll
2013-06-12 12:56:16 ----A---- C:\WINDOWS\system32\dgderapi.dll
2013-06-12 12:55:48 ----D---- C:\Program Files\Samsung
2013-06-12 11:58:23 ----A---- C:\WINDOWS\system32\roboot.exe
2013-06-12 11:51:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\BrowserDefender
2013-06-12 11:50:42 ----D---- C:\Documents and Settings\rek\Data aplikací\MyPhoneExplorer
2013-06-12 09:57:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2839229$
2013-06-12 09:12:40 ----A---- C:\WINDOWS\system32\WdfCoInstaller01005.dll
2013-06-12 09:12:40 ----A---- C:\WINDOWS\system32\drivers\WdfCoInstaller01005.dll
2013-06-12 09:12:40 ----A---- C:\WINDOWS\system32\drivers\ssadwh.sys
2013-06-12 09:12:40 ----A---- C:\WINDOWS\system32\drivers\ssadcm.sys
2013-06-12 09:09:45 ----A---- C:\WINDOWS\system32\Redemption.dll
2013-06-12 09:08:54 ----D---- C:\Documents and Settings\All Users\Data aplikací\Samsung

======List of files/folders modified in the last 1 month======

2013-07-11 15:15:42 ----RD---- C:\Program Files
2013-07-11 15:04:47 ----D---- C:\WINDOWS\Prefetch
2013-07-11 14:53:49 ----D---- C:\WINDOWS\system32
2013-07-11 14:51:44 ----SD---- C:\WINDOWS\Tasks
2013-07-11 14:05:27 ----D---- C:\WINDOWS
2013-07-11 13:35:35 ----D---- C:\WINDOWS\Temp
2013-07-11 13:26:42 ----D---- C:\WINDOWS\system32\CatRoot2
2013-07-11 13:15:18 ----HD---- C:\Program Files\InstallShield Installation Information
2013-07-11 13:12:11 ----D---- C:\WINDOWS\Debug
2013-07-11 12:37:18 ----D---- C:\WINDOWS\inf
2013-07-11 12:36:39 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-07-11 11:58:32 ----D---- C:\WINDOWS\system32\CatRoot
2013-07-11 11:57:16 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-07-11 11:57:14 ----D---- C:\WINDOWS\ie8updates
2013-07-11 11:34:55 ----D---- C:\WINDOWS\system32\cs-cz
2013-07-11 11:34:54 ----D---- C:\WINDOWS\Help
2013-07-11 11:34:54 ----D---- C:\Program Files\Internet Explorer
2013-07-11 11:32:43 ----D---- C:\WINDOWS\WBEM
2013-07-11 11:32:39 ----D---- C:\WINDOWS\Media
2013-07-10 19:28:43 ----D---- C:\Documents and Settings\rek\Data aplikací\AIMP3
2013-07-10 08:14:00 ----SH---- C:\boot.ini
2013-07-10 08:14:00 ----A---- C:\WINDOWS\win.ini
2013-07-10 08:14:00 ----A---- C:\WINDOWS\system.ini
2013-07-10 07:55:03 ----RSD---- C:\WINDOWS\assembly
2013-07-10 07:51:30 ----D---- C:\WINDOWS\Microsoft.NET
2013-07-10 07:44:49 ----SHD---- C:\WINDOWS\Installer
2013-07-10 07:44:16 ----D---- C:\WINDOWS\WinSxS
2013-07-10 07:43:37 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-07-10 07:35:07 ----D---- C:\WINDOWS\system32\XPSViewer
2013-07-07 10:14:14 ----D---- C:\Documents and Settings\rek\Data aplikací\vlc
2013-07-06 20:51:45 ----D---- C:\Documents and Settings\rek\Data aplikací\Audacity
2013-07-05 22:21:09 ----A---- C:\WINDOWS\system32\Dvbpws.dll
2013-07-05 19:32:37 ----D---- C:\Program Files\EASEUS
2013-07-05 17:14:58 ----D---- C:\WINDOWS\Network Diagnostic
2013-07-05 16:29:05 ----D---- C:\Program Files\Common Files
2013-07-05 16:27:12 ----D---- C:\WINDOWS\system32\drivers
2013-07-05 14:45:04 ----D---- C:\Documents and Settings\rek\Data aplikací\Nitro PDF
2013-07-05 12:15:55 ----D---- C:\Program Files\MSXML 4.0
2013-07-05 12:13:42 ----D---- C:\Program Files\XnView
2013-07-02 07:18:10 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2013-07-01 23:06:58 ----D---- C:\WINDOWS\system32\drivers\UMDF
2013-07-01 23:06:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Suite
2013-07-01 23:00:11 ----D---- C:\Program Files\Common Files\Nokia
2013-07-01 22:42:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nokia
2013-07-01 22:33:51 ----D---- C:\Program Files\PC Connectivity Solution
2013-07-01 21:00:03 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2013-06-26 17:28:20 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-06-26 10:41:26 ----D---- C:\WINDOWS\system32\NtmsData
2013-06-26 10:07:42 ----D---- C:\WINDOWS\Registration
2013-06-26 09:57:22 ----D---- C:\Documents and Settings\rek\Data aplikací\Media Player Classic
2013-06-26 09:57:19 ----D---- C:\WINDOWS\Minidump
2013-06-26 09:21:33 ----D---- C:\WINDOWS\repair
2013-06-25 20:05:59 ----D---- C:\Program Files\Nitro PDF
2013-06-25 19:17:19 ----D---- C:\Program Files\NVIDIA Corporation
2013-06-25 19:17:12 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-06-25 19:16:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2807986$
2013-06-25 19:16:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2820917$
2013-06-25 19:16:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2820197$
2013-06-25 19:16:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2813345$
2013-06-25 19:16:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2813170$
2013-06-25 19:16:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2829361$
2013-06-25 19:14:14 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-06-25 19:14:02 ----D---- C:\Documents and Settings\rek\Data aplikací\Lasersoft Imaging
2013-06-25 19:13:50 ----D---- C:\Program Files\AVAST Software
2013-06-25 19:13:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-06-25 18:38:54 ----D---- C:\WINDOWS\system32\wbem
2013-06-25 18:38:54 ----D---- C:\WINDOWS\system32\config
2013-06-25 18:38:52 ----RD---- C:\WINDOWS\Fonts
2013-06-25 18:38:52 ----D---- C:\WINDOWS\AppPatch
2013-06-25 17:28:36 ----D---- C:\Program Files\HP
2013-06-25 17:28:15 ----HD---- C:\Program Files\Avago-HP
2013-06-24 00:37:58 ----A---- C:\WINDOWS\system32\MRT.exe
2013-06-21 11:11:26 ----D---- C:\Documents and Settings\rek\Data aplikací\XnView

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [2013-05-09 49376]
R0 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2013-06-28 175176]
R0 nvgts;nvgts; C:\WINDOWS\system32\DRIVERS\nvgts.sys [2008-08-18 145952]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-07-01 43008]
R1 asuskbnt;Enhanced Display Driver Helper Service; C:\WINDOWS\system32\drivers\atkkbnt.sys [2006-10-31 11008]
R1 AswRdr;aswRdr; C:\WINDOWS\system32\drivers\AswRdr.sys [2013-05-09 49760]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2013-06-28 770344]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2013-06-28 369584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2013-05-09 56080]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 Vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2013-01-23 527848]
R1 wfcxacap;WinFast TV PCI Audio Capture Driver; C:\WINDOWS\system32\DRIVERS\wfcxacap.sys [2006-08-07 9856]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2013-05-09 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R2 EIO;EIO; \??\C:\WINDOWS\system32\drivers\EIO.sys []
R2 ISWKL;ZoneAlarm LTD Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys []
R2 wfcxatun;WinFast TV Analog Tuner Driver; C:\WINDOWS\system32\drivers\wfcxatun.sys [2006-08-07 31616]
R2 WFCXVCAP;WinFast TV Video Capture Driver; C:\WINDOWS\system32\drivers\wfcxvcap.sys [2006-08-07 167424]
R3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\system32\DRIVERS\ctljystk.sys [2001-08-17 3712]
R3 emu10k;Creative SB Live! (WDM); C:\WINDOWS\system32\drivers\emu10k1m.sys [2001-08-17 283904]
R3 emu10k1;Creative Interface Manager Driver (WDM); C:\WINDOWS\system32\drivers\ctlfacem.sys [2001-08-17 6912]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-02-08 12648960]
R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2008-03-25 54400]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2008-03-25 22016]
R3 sfman;Creative SoundFont Manager Driver (WDM); C:\WINDOWS\system32\drivers\sfmanm.sys [2001-08-17 36480]
R3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 Video3D;ASUS Video3D Service; C:\WINDOWS\System32\Drivers\Video3D32.sys [2006-09-29 10752]
R3 wfcxdtun;WinFast DTV BDA Tuner/Demod Driver; C:\WINDOWS\system32\drivers\wfcxdtun.sys [2006-08-07 21248]
R3 wfcxtcap;WinFast DTV BDA Transport Stream Capture Driver; C:\WINDOWS\system32\drivers\wfcxtcap.sys [2006-08-07 15872]
R3 WFIOCTL;WFIOCTL; \??\C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS []
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\WINDOWS\System32\Drivers\ssadadb.sys [2013-05-02 32064]
S3 AsrCDDrv;AsrCDDrv; \??\C:\WINDOWS\system32\Drivers\AsrCDDrv.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 dgderdrv;dgderdrv; C:\WINDOWS\System32\drivers\dgderdrv.sys [2013-05-22 20032]
S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\system32\epmntdrv.sys []
S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\system32\EuGdiDrv.sys []
S3 MPE;Filtr MPE BDA; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-14 15232]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 PAC7302;Telescope Driver; C:\WINDOWS\system32\DRIVERS\PAC7302.SYS [2007-11-08 458752]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\ssadbus.sys [2013-05-02 136904]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\WINDOWS\system32\DRIVERS\ssadmdfl.sys [2013-05-02 17864]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\WINDOWS\system32\DRIVERS\ssadmdm.sys [2013-05-02 153672]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\WINDOWS\system32\DRIVERS\ssadserd.sys [2013-05-02 130248]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-14 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WinDriver6;WinDriver6; C:\WINDOWS\system32\drivers\windrvr6.sys [2010-01-17 196064]
S3 WinUSB;Sony sa0102 ADB Interface; C:\WINDOWS\system32\DRIVERS\WinUSB.sys [2009-07-13 34944]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ATKKeyboardService;ATK Keyboard Service; C:\WINDOWS\ATKKBService.exe [2006-09-29 258560]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 IswSvc;ZoneAlarm LTD Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2012-11-22 497320]
R2 NitroDriverReadSpool2;NitroPDFDriverCreatorReadSpool2; C:\Program Files\Nitro PDF\Professional 7\NitroPDFDriverService2.exe [2012-04-12 175624]
R2 Printer Control;Printer Control; C:\WINDOWS\system32\PrintCtrl.exe [2009-10-28 65536]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 vsmon;TrueVector Internet Monitor; C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe [2013-01-23 2447888]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 BrowserDefendert;BrowserDefendert; C:\Documents and Settings\All Users\Data aplikací\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [2013-05-23 2827728]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-22 159810]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-07-08 117144]
S3 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-07-11 116608]

-----------------EOF-----------------

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: přepisuje domovslou stránku

#2 Příspěvek od cernohous13 »

Zdravím,

pokud se jedná o http://www.qvo6.com/?utm_source=b&utm_m ... 1373546493
tak tenhle šmejd se přilepí do zástupců internetových prohlížečů - máš ho asi v IE i FF.

:arrow: Klik pravým myšítkem na zástupce -> Vlastnosti a tam ten odkaz v řádku "Cíl" odmaž
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

oto
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 08 srp 2008 18:00

Re: přepisuje domovslou stránku

#3 Příspěvek od oto »

díky za odpověď,
v zástupvi v řádku cíl mám jenom regulérní : "C:\Program Files\Mozilla Firefox\firefox.exe"
a IE nespouštím přes zástupce ale přes programy.
?

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: přepisuje domovslou stránku

#4 Příspěvek od cernohous13 »

:???: Jaká stránka se ti tam vnutí?

:arrow: Stáhni AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Ulož nejlépe na plochu -> ukonči všechny programy -> spusť AdwCleaner -> klikni na Vymazat
bude provedena oprava, restartuje se a vypadne log (C:\AdwCleaner [S?].txt) , jeho obsah vložíš sem
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

oto
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 08 srp 2008 18:00

Re: přepisuje domovslou stránku

#5 Příspěvek od oto »

tak to neprošlo :hlásí : "v zájmu ochrany byl tento program ukončen" nebo tak nějak, pak se mnou PC přestal komunikovat - udělal jsem studený restart

omlouvám se, nespouštěl jsem to z plochy. Podruhé z plochy to hlásilo to samé ale pak pokračoval hlášením zda poslat zprávu bilovi. Pak vytvořil sken:

# AdwCleaner v2.304 - Log vytvooen 11/07/2013 v 16:25:18
# Aktualizováno 03/07/2013 Xplode
# Operaení systém : Microsoft Windows XP Service Pack 3 (32 bits)
# Uživatel : rek - REFIK-A0D881881
# Spuštin systém : Normální
# Spuštino z : C:\Documents and Settings\rek\Plocha\adwcleaner.exe
# Volba [Vymazat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Vymazáno : C:\Documents and Settings\rek\Data aplikací\CheckPoint\ZoneAlarm LTD Toolbar

***** [Registry] *****


***** [Internetové prohlížeee] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry jsou eisté.

-\\ Mozilla Firefox v22.0 (cs)

Soubor : C:\Documents and Settings\rek\Data aplikací\Mozilla\Firefox\Profiles\96qyrg82.default\prefs.js

Vymazáno : user_pref("browser.newtab.url", "hxxp://www.yhs.delta-search.com/?babsrc=NT_ss& ... BC5FF413F2[...]

Soubor : C:\Documents and Settings\rek\Data aplikací\Mozilla\Firefox\Profiles\96qyrg82.default bak\prefs.js

[OK] Soubor je eistý.

*************************

AdwCleaner[R1].txt - [3247 octets] - [11/07/2013 16:16:24]
AdwCleaner[S1].txt - [3042 octets] - [11/07/2013 16:17:19]
AdwCleaner[S2].txt - [1158 octets] - [11/07/2013 16:25:18]

########## EOF - C:\AdwCleaner[S2].txt - [1218 octets] ##########
Naposledy upravil(a) oto dne 11 črc 2013 15:31, celkem upraveno 1 x.

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: přepisuje domovslou stránku

#6 Příspěvek od cernohous13 »

Tu hlášku vyhodí která ochrana? (FW, AV) :???:

:arrow: Zkus v Nouzovém režimu
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

oto
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 08 srp 2008 18:00

Re: přepisuje domovslou stránku

#7 Příspěvek od oto »

zdá se že je to OK, domovská stránka je jak má být.
děkuji MOC

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: přepisuje domovslou stránku

#8 Příspěvek od cernohous13 »

Udělej mi aktuální RSIT - vyčistíme
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

oto
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 08 srp 2008 18:00

Re: přepisuje domovslou stránku

#9 Příspěvek od oto »

tady je:
Logfile of random's system information tool 1.09 (written by random/random)
Run by rek at 2013-07-11 16:37:14
WIN_XP Service Pack 3
System drive C: has 12 GB (27%) free of 45 GB
Total RAM: 2047 MB (73% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:37:17, on 11.7.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Nitro PDF\Professional 7\NitroPDFDriverService2.exe
C:\WINDOWS\system32\PrintCtrl.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\util\tclock\TClock.exe
C:\Program Files\AVAST Software\Avast\Setup\277f9c8a-9434-4f50-b52f-db3aef530260.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\FreeCommander\FreeCommander.exe
C:\stazeno\RSIT.exe
C:\Program Files\trend micro\rek.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - HKLM\..\Run: [ISW] C:\Program Files\CheckPoint\ZAForceField\ForceField.exe /icon="hidden"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\S-1-5-21-448539723-2052111302-1801674531-1003\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User '?')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-21-448539723-2052111302-1801674531-1003 Startup: TClock.lnk = C:\util\tclock\TClock.exe (User '?')
O4 - Startup: TClock.lnk = C:\util\tclock\TClock.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ZoneAlarm LTD Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NitroPDFDriverCreatorReadSpool2 (NitroDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Nitro PDF\Professional 7\NitroPDFDriverService2.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Printer Control - ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM - C:\WINDOWS\system32\PrintCtrl.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe

--
End of file - 6089 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{8C2346FF-144F-4428-AB82-D866F975B3BE}.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\rek\Data aplikací\Mozilla\Firefox\Profiles\96qyrg82.default

prefs.js - "browser.startup.homepage" - "about:home"

"{FFB96CC1-7EB3-449D-B827-DB661701C6BB}"=C:\Program Files\CheckPoint\ZAForceField\TrustChecker
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.224 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Documents and Settings\rek\Data aplikací\Mozilla\Firefox\Profiles\96qyrg82.default\extensions\
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
ZoneAlarm Security Engine Registrar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22 603816]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Security Engine - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2012-11-22 603816]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
"ZoneAlarm"=C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe [2013-01-23 73832]
"WinFastDTV"=C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2006-12-06 69632]
"WinFast Schedule"=C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2006-12-04 372736]
"ISW"=C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [2012-11-22 738984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-03-15 2565520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM tray]
C:\Program Files\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe [2013-03-29 2081792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2006-10-22 7700480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2006-10-22 86016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE4]
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [2007-02-04 79400]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSBkgdUpdate]
C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]

C:\Documents and Settings\rek\Nabídka Start\Programy\Po spuštění
TClock.lnk - C:\util\tclock\TClock.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=ctwdm32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv

======List of files/folders created in the last 1 month======

2013-07-11 16:25:18 ----A---- C:\AdwCleaner[S2].txt
2013-07-11 16:17:19 ----A---- C:\AdwCleaner[S1].txt
2013-07-11 16:16:24 ----A---- C:\AdwCleaner[R1].txt
2013-07-11 15:15:42 ----D---- C:\rsit
2013-07-11 15:15:42 ----D---- C:\Program Files\trend micro
2013-07-11 13:34:39 ----D---- C:\Documents and Settings\rek\Data aplikací\systweak
2013-07-11 12:31:46 ----D---- C:\Program Files\Avanquest update
2013-07-11 12:31:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avanquest
2013-07-11 12:30:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\BVRP Software
2013-07-11 12:29:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sony Ericsson
2013-07-11 11:32:26 ----HDC---- C:\WINDOWS\ie8
2013-07-10 07:44:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2834904_WM11$
2013-07-10 07:44:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$
2013-07-10 07:44:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2850851$
2013-07-10 07:43:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2845187$
2013-07-10 07:42:58 ----SHD---- C:\Config.Msi
2013-07-09 21:10:05 ----D---- C:\Documents and Settings\rek\Data aplikací\Opera Software
2013-07-09 21:09:57 ----D---- C:\Program Files\Opera
2013-07-08 17:27:41 ----D---- C:\Program Files\Mozilla Firefox
2013-07-08 17:17:36 ----D---- C:\Documents and Settings\rek\Data aplikací\Mozilla
2013-07-08 17:17:32 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-07-07 07:53:37 ----D---- C:\IXUS
2013-07-05 19:06:36 ----ASH---- C:\pagefile.sys
2013-07-05 16:37:06 ----A---- C:\WINDOWS\system32\EuEpmGdi.dll
2013-07-05 16:37:05 ----A---- C:\WINDOWS\system32\setupempdrv03.exe
2013-07-05 16:37:05 ----A---- C:\WINDOWS\system32\EuGdiDrv.sys
2013-07-05 16:37:05 ----A---- C:\WINDOWS\system32\epmntdrv.sys
2013-07-05 16:37:05 ----A---- C:\WINDOWS\system32\BootMan.exe
2013-07-05 16:27:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\Acronis
2013-07-05 16:27:09 ----A---- C:\WINDOWS\system32\drivers\snapman.sys
2013-07-05 16:17:13 ----D---- C:\util
2013-07-05 14:33:29 ----D---- C:\Program Files\Toolwiz Smart Defrag FREE
2013-07-05 14:23:45 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-07-05 14:23:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\IObit
2013-07-05 14:23:09 ----D---- C:\Documents and Settings\rek\Data aplikací\IObit
2013-07-05 14:23:05 ----D---- C:\Program Files\IObit
2013-07-02 18:49:42 ----D---- C:\totalcmd
2013-07-02 18:49:42 ----D---- C:\Documents and Settings\rek\Data aplikací\GHISLER
2013-07-02 18:49:42 ----A---- C:\WINDOWS\UC.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\RAR.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\PKZIP.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\PKUNZIP.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\LHA.PIF
2013-07-02 18:49:42 ----A---- C:\WINDOWS\ARJ.PIF
2013-07-02 07:50:03 ----HDC---- C:\WINDOWS\$NtUninstallwinusb0200$
2013-07-02 07:36:02 ----A---- C:\WINDOWS\system32\WinUSBCoInstaller2.dll
2013-07-01 23:07:11 ----N---- C:\WINDOWS\system32\spmsg.dll
2013-07-01 23:07:02 ----HDC---- C:\WINDOWS\$NtUninstallWudf01009$
2013-07-01 23:01:09 ----D---- C:\Documents and Settings\rek\Data aplikací\Nokia
2013-07-01 23:00:15 ----D---- C:\Program Files\Common Files\PCSuite
2013-07-01 23:00:01 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys
2013-07-01 23:00:01 ----A---- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys
2013-07-01 23:00:00 ----A---- C:\WINDOWS\system32\drivers\ccdcmbo.sys
2013-07-01 22:59:59 ----A---- C:\WINDOWS\system32\drivers\ccdcmb.sys
2013-07-01 22:59:57 ----D---- C:\Program Files\Nokia
2013-07-01 22:58:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Installations
2013-07-01 21:03:34 ----HDC---- C:\WINDOWS\$NtUninstallwinusb0100$
2013-07-01 21:01:23 ----A---- C:\WINDOWS\system32\WinUSBCoInstaller.dll
2013-07-01 21:01:23 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2013-06-26 12:48:54 ----D---- C:\Program Files\Mozilla Thunderbird
2013-06-25 19:14:19 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2013-06-25 19:14:19 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2013-06-25 19:14:19 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2013-06-25 19:14:19 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2013-06-25 19:14:18 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2013-06-25 19:14:04 ----A---- C:\WINDOWS\avastSS.scr
2013-06-25 18:50:39 ----D---- C:\Program Files\MyPhoneExplorer
2013-06-25 18:45:15 ----D---- C:\stazeno
2013-06-25 18:24:24 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2013-06-25 18:24:24 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2013-06-25 18:24:24 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2013-06-25 15:06:00 ----D---- C:\Documents and Settings\rek\Data aplikací\TagScanner
2013-06-12 22:55:25 ----D---- C:\WINDOWS\E89498D814304A2BA76A4A71326981E9.TMP
2013-06-12 22:55:24 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2013-06-12 22:53:55 ----D---- C:\Program Files\MyFree Codec
2013-06-12 14:09:42 ----D---- C:\Program Files\Enigma Software Group
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadserd.sys
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadmdm.sys
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadmdfl.sys
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadcmnt.sys
2013-06-12 12:58:24 ----A---- C:\WINDOWS\system32\drivers\ssadadb.sys
2013-06-12 12:58:23 ----A---- C:\WINDOWS\system32\drivers\ssadwhnt.sys
2013-06-12 12:58:23 ----A---- C:\WINDOWS\system32\drivers\ssadbus.sys
2013-06-12 12:56:16 ----A---- C:\WINDOWS\system32\drivers\dgderdrv.sys
2013-06-12 12:56:16 ----A---- C:\WINDOWS\system32\DIFxAPI.dll
2013-06-12 12:56:16 ----A---- C:\WINDOWS\system32\dgderapi.dll
2013-06-12 12:55:48 ----D---- C:\Program Files\Samsung
2013-06-12 11:50:42 ----D---- C:\Documents and Settings\rek\Data aplikací\MyPhoneExplorer
2013-06-12 09:57:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2839229$
2013-06-12 09:12:40 ----A---- C:\WINDOWS\system32\WdfCoInstaller01005.dll
2013-06-12 09:12:40 ----A---- C:\WINDOWS\system32\drivers\WdfCoInstaller01005.dll
2013-06-12 09:12:40 ----A---- C:\WINDOWS\system32\drivers\ssadwh.sys
2013-06-12 09:12:40 ----A---- C:\WINDOWS\system32\drivers\ssadcm.sys
2013-06-12 09:09:45 ----A---- C:\WINDOWS\system32\Redemption.dll
2013-06-12 09:08:54 ----D---- C:\Documents and Settings\All Users\Data aplikací\Samsung

======List of files/folders modified in the last 1 month======

2013-07-11 16:35:53 ----D---- C:\WINDOWS\Temp
2013-07-11 16:27:10 ----D---- C:\WINDOWS\system32\CatRoot2
2013-07-11 16:25:50 ----D---- C:\Documents and Settings\rek\Data aplikací\CheckPoint
2013-07-11 16:19:05 ----D---- C:\WINDOWS\system32
2013-07-11 15:15:42 ----RD---- C:\Program Files
2013-07-11 15:04:47 ----D---- C:\WINDOWS\Prefetch
2013-07-11 14:51:44 ----SD---- C:\WINDOWS\Tasks
2013-07-11 14:05:27 ----D---- C:\WINDOWS
2013-07-11 13:15:18 ----HD---- C:\Program Files\InstallShield Installation Information
2013-07-11 13:12:11 ----D---- C:\WINDOWS\Debug
2013-07-11 12:37:18 ----D---- C:\WINDOWS\inf
2013-07-11 12:36:39 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-07-11 11:58:32 ----D---- C:\WINDOWS\system32\CatRoot
2013-07-11 11:57:16 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-07-11 11:57:14 ----D---- C:\WINDOWS\ie8updates
2013-07-11 11:34:55 ----D---- C:\WINDOWS\system32\cs-cz
2013-07-11 11:34:54 ----D---- C:\WINDOWS\Help
2013-07-11 11:34:54 ----D---- C:\Program Files\Internet Explorer
2013-07-11 11:32:43 ----D---- C:\WINDOWS\WBEM
2013-07-11 11:32:39 ----D---- C:\WINDOWS\Media
2013-07-10 19:28:43 ----D---- C:\Documents and Settings\rek\Data aplikací\AIMP3
2013-07-10 08:14:00 ----SH---- C:\boot.ini
2013-07-10 08:14:00 ----A---- C:\WINDOWS\win.ini
2013-07-10 08:14:00 ----A---- C:\WINDOWS\system.ini
2013-07-10 07:55:03 ----RSD---- C:\WINDOWS\assembly
2013-07-10 07:51:30 ----D---- C:\WINDOWS\Microsoft.NET
2013-07-10 07:44:49 ----SHD---- C:\WINDOWS\Installer
2013-07-10 07:44:16 ----D---- C:\WINDOWS\WinSxS
2013-07-10 07:43:37 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-07-10 07:35:07 ----D---- C:\WINDOWS\system32\XPSViewer
2013-07-07 10:14:14 ----D---- C:\Documents and Settings\rek\Data aplikací\vlc
2013-07-06 20:51:45 ----D---- C:\Documents and Settings\rek\Data aplikací\Audacity
2013-07-05 22:21:09 ----A---- C:\WINDOWS\system32\Dvbpws.dll
2013-07-05 19:32:37 ----D---- C:\Program Files\EASEUS
2013-07-05 17:14:58 ----D---- C:\WINDOWS\Network Diagnostic
2013-07-05 16:29:05 ----D---- C:\Program Files\Common Files
2013-07-05 16:27:12 ----D---- C:\WINDOWS\system32\drivers
2013-07-05 14:45:04 ----D---- C:\Documents and Settings\rek\Data aplikací\Nitro PDF
2013-07-05 12:15:55 ----D---- C:\Program Files\MSXML 4.0
2013-07-05 12:13:42 ----D---- C:\Program Files\XnView
2013-07-02 07:18:10 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2013-07-01 23:06:58 ----D---- C:\WINDOWS\system32\drivers\UMDF
2013-07-01 23:06:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Suite
2013-07-01 23:00:11 ----D---- C:\Program Files\Common Files\Nokia
2013-07-01 22:42:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nokia
2013-07-01 22:33:51 ----D---- C:\Program Files\PC Connectivity Solution
2013-07-01 21:00:03 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2013-06-26 17:28:20 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-06-26 10:41:26 ----D---- C:\WINDOWS\system32\NtmsData
2013-06-26 10:07:42 ----D---- C:\WINDOWS\Registration
2013-06-26 09:57:22 ----D---- C:\Documents and Settings\rek\Data aplikací\Media Player Classic
2013-06-26 09:57:19 ----D---- C:\WINDOWS\Minidump
2013-06-26 09:21:33 ----D---- C:\WINDOWS\repair
2013-06-25 20:05:59 ----D---- C:\Program Files\Nitro PDF
2013-06-25 19:17:19 ----D---- C:\Program Files\NVIDIA Corporation
2013-06-25 19:17:12 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-06-25 19:16:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2807986$
2013-06-25 19:16:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2820917$
2013-06-25 19:16:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2820197$
2013-06-25 19:16:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2813345$
2013-06-25 19:16:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2813170$
2013-06-25 19:16:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2829361$
2013-06-25 19:14:14 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-06-25 19:14:02 ----D---- C:\Documents and Settings\rek\Data aplikací\Lasersoft Imaging
2013-06-25 19:13:50 ----D---- C:\Program Files\AVAST Software
2013-06-25 19:13:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-06-25 18:38:54 ----D---- C:\WINDOWS\system32\wbem
2013-06-25 18:38:54 ----D---- C:\WINDOWS\system32\config
2013-06-25 18:38:52 ----RD---- C:\WINDOWS\Fonts
2013-06-25 18:38:52 ----D---- C:\WINDOWS\AppPatch
2013-06-25 17:28:36 ----D---- C:\Program Files\HP
2013-06-25 17:28:15 ----HD---- C:\Program Files\Avago-HP
2013-06-24 00:37:58 ----A---- C:\WINDOWS\system32\MRT.exe
2013-06-21 11:11:26 ----D---- C:\Documents and Settings\rek\Data aplikací\XnView

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [2013-05-09 49376]
R0 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2013-06-28 175176]
R0 nvgts;nvgts; C:\WINDOWS\system32\DRIVERS\nvgts.sys [2008-08-18 145952]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-07-01 43008]
R1 asuskbnt;Enhanced Display Driver Helper Service; C:\WINDOWS\system32\drivers\atkkbnt.sys [2006-10-31 11008]
R1 AswRdr;aswRdr; C:\WINDOWS\system32\drivers\AswRdr.sys [2013-05-09 49760]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2013-06-28 770344]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2013-06-28 369584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2013-05-09 56080]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 Vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2013-01-23 527848]
R1 wfcxacap;WinFast TV PCI Audio Capture Driver; C:\WINDOWS\system32\DRIVERS\wfcxacap.sys [2006-08-07 9856]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2013-05-09 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R2 EIO;EIO; \??\C:\WINDOWS\system32\drivers\EIO.sys []
R2 ISWKL;ZoneAlarm LTD Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys []
R2 wfcxatun;WinFast TV Analog Tuner Driver; C:\WINDOWS\system32\drivers\wfcxatun.sys [2006-08-07 31616]
R2 WFCXVCAP;WinFast TV Video Capture Driver; C:\WINDOWS\system32\drivers\wfcxvcap.sys [2006-08-07 167424]
R3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\system32\DRIVERS\ctljystk.sys [2001-08-17 3712]
R3 emu10k;Creative SB Live! (WDM); C:\WINDOWS\system32\drivers\emu10k1m.sys [2001-08-17 283904]
R3 emu10k1;Creative Interface Manager Driver (WDM); C:\WINDOWS\system32\drivers\ctlfacem.sys [2001-08-17 6912]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-02-08 12648960]
R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2008-03-25 54400]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2008-03-25 22016]
R3 sfman;Creative SoundFont Manager Driver (WDM); C:\WINDOWS\system32\drivers\sfmanm.sys [2001-08-17 36480]
R3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 Video3D;ASUS Video3D Service; C:\WINDOWS\System32\Drivers\Video3D32.sys [2006-09-29 10752]
R3 wfcxdtun;WinFast DTV BDA Tuner/Demod Driver; C:\WINDOWS\system32\drivers\wfcxdtun.sys [2006-08-07 21248]
R3 wfcxtcap;WinFast DTV BDA Transport Stream Capture Driver; C:\WINDOWS\system32\drivers\wfcxtcap.sys [2006-08-07 15872]
R3 WFIOCTL;WFIOCTL; \??\C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS []
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\WINDOWS\System32\Drivers\ssadadb.sys [2013-05-02 32064]
S3 AsrCDDrv;AsrCDDrv; \??\C:\WINDOWS\system32\Drivers\AsrCDDrv.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 dgderdrv;dgderdrv; C:\WINDOWS\System32\drivers\dgderdrv.sys [2013-05-22 20032]
S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\system32\epmntdrv.sys []
S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\system32\EuGdiDrv.sys []
S3 MPE;Filtr MPE BDA; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-14 15232]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 PAC7302;Telescope Driver; C:\WINDOWS\system32\DRIVERS\PAC7302.SYS [2007-11-08 458752]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\ssadbus.sys [2013-05-02 136904]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\WINDOWS\system32\DRIVERS\ssadmdfl.sys [2013-05-02 17864]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\WINDOWS\system32\DRIVERS\ssadmdm.sys [2013-05-02 153672]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\WINDOWS\system32\DRIVERS\ssadserd.sys [2013-05-02 130248]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-14 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WinDriver6;WinDriver6; C:\WINDOWS\system32\drivers\windrvr6.sys [2010-01-17 196064]
S3 WinUSB;Sony sa0102 ADB Interface; C:\WINDOWS\system32\DRIVERS\WinUSB.sys [2009-07-13 34944]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ATKKeyboardService;ATK Keyboard Service; C:\WINDOWS\ATKKBService.exe [2006-09-29 258560]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 IswSvc;ZoneAlarm LTD Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2012-11-22 497320]
R2 NitroDriverReadSpool2;NitroPDFDriverCreatorReadSpool2; C:\Program Files\Nitro PDF\Professional 7\NitroPDFDriverService2.exe [2012-04-12 175624]
R2 Printer Control;Printer Control; C:\WINDOWS\system32\PrintCtrl.exe [2009-10-28 65536]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 vsmon;TrueVector Internet Monitor; C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe [2013-01-23 2447888]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-22 159810]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-10 136120]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-07-08 117144]
S3 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2013-04-18 737616]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-07-11 116608]

-----------------EOF-----------------

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: přepisuje domovslou stránku

#10 Příspěvek od cernohous13 »

Můžeš smazat logy ADWCleaneru na C:\

:arrow: Mohu doporučit kontrolu a vyčištění Ccleanerem
Stáhni Ccleaner - http://www.slunecnice.cz/sw/ccleaner/
Při instalaci vyhodit fajfku u "Instalovat Yahoo! Toolbar" (pokud bude v nabídce)

zavřít Internetový prohlížeč a
spustit "Čistič" > "Spustit Ccleaner" - odstraní nepotřebné
spustit "Registry" > "Hledej problémy" > "Opravit vybrané problémy"
souhlas se zálohou registrů - opakovat dokud nebudou registry čisté.
spustit "Nástroje" > "Obnova systému" - 1.řádek zachovej, ostatní "Odstranit"
spustit "Nástroje" > "Start" - tady můžeš zkusit deaktivovat procesy, které při spuštění nepotřebuješ (pokud by ti potom něco nechodilo, stejným způsobem je povolíš)
Návod:http://jnp.zive.cz/Clanky/Prirucka-do-k ... fault.aspx
Ten si můžeš nechat i na budoucí občasné čištění.
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

oto
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 08 srp 2008 18:00

Re: přepisuje domovslou stránku

#11 Příspěvek od oto »

Ccleaner používám průběžně, ve volbě "obnova" nemám žádný řádek :(

Jinými slovy je comp OK ?
děkuji moc za pomoc

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: přepisuje domovslou stránku

#12 Příspěvek od cernohous13 »

Jestli je OK musíš posoudit ty, já v logu žádnou škodnou nevidím.

Můžeme ještě lehce kouknout :wink:
Stáhni a nainstaluj MBAM zde http://www.malwarebytes.org/products/malwarebytes_free/
Spustit > na 3.záložce "Aktualizace" > Kontrola aktualizací
následně na 1.záložce "Kontrolor" -> Úplná kontrola -> Prohledat
po dokončení scanu vyskočí okno Notepad s výsledkem - obsah zkopíruj do své odpovědi
zatím nic nemazat - počkej na posouzení a program nech zatím spuštěný
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

oto
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 08 srp 2008 18:00

Re: přepisuje domovslou stránku

#13 Příspěvek od oto »

asi jsem stáhl něco jiného : je tam ARO2013 tak jsem to nainstaloval a přikládám výsledek
aro.jpg
aro.jpg (122.18 KiB) Zobrazeno 1412 x

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: přepisuje domovslou stránku

#14 Příspěvek od cernohous13 »

Tak to zas odinstaluj, mně ten odkaz funguje správně http://www.malwarebytes.org/products/malwarebytes_free/
MBAM.png
MBAM.png (60.56 KiB) Zobrazeno 1410 x
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

oto
Návštěvník
Návštěvník
Příspěvky: 41
Registrován: 08 srp 2008 18:00

Re: přepisuje domovslou stránku

#15 Příspěvek od oto »

chvíli to trvalo, skenoval jsem pouze C.
Co s tím množstvím erorů z ARO ?
sken přikládám:
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
http://www.malwarebytes.org

Verze: v2013.07.11.04

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
rek :: REFIK-A0D881881 [administrátor]

Ochrana: Povolena

11.7.2013 17:18:31
mbam-log-2013-07-11 (17-18-31).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 234492
Uplynulý čas: 23 minut, 56 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)
Naposledy upravil(a) oto dne 11 črc 2013 17:23, celkem upraveno 1 x.

Zamčeno