Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

nestandardní chování PC

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
kewin
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 27 srp 2004 08:36

nestandardní chování PC

#1 Příspěvek od kewin »

Prosím o kontrolu. Na PC nejakou dobu chybel antivir, zasekává se, nevypina

Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2013-08-29 19:33:47
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 196 GB (88%) free of 222 GB
Total RAM: 1977 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:33:56, on 29.8.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Hewlett-Packard\IAM\Bin\AsGHost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe
C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Program Files\Hewlett-Packard\File Sanitizer\CoreShredder.exe
C:\WINDOWS\SMINST\Scheduler.exe
C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe
C:\Program Files\SafeNet\BSecClient\axmonitor.exe
C:\Program Files\SafeNet\BSecClient\DkAutoReg.exe
C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
C:\Program Files\ActivIdentity\ActivClient\accoca.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\dklog.exe
C:\WINDOWS\system32\dkvcm.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Intel\AMT\LMS.exe
C:\Alis\MySQL51\server\bin\mysqld.exe
C:\Program Files\ActivIdentity\ActivClient\acevents.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\PDF Complete\pdfsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\dkcktkn.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Documents and Settings\Administrator\Plocha\RSIT.exe
C:\Program Files\trend micro\Administrator.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... ll&pf=cmdt
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\7.4\pdfforgeToolbarIE.dll
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll
O2 - BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\7.4\pdfforgeToolbarIE.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\7.4\pdfforgeToolbarIE.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [picon] "C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe" -startup
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [accrdsub] "C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe"
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [File Sanitizer] C:\Program Files\Hewlett-Packard\File Sanitizer\CoreShredder.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\Sminst\Recguard.exe
O4 - HKLM\..\Run: [Reminder] C:\WINDOWS\Creator\Remind_XP.exe
O4 - HKLM\..\Run: [Scheduler] C:\WINDOWS\SMINST\Scheduler.exe
O4 - HKLM\..\Run: [HPPQVideo] "C:\Program Files\HP\ScheduledLaunch\HP Color LaserJet CM1312 MFP Series\bin\hppschlnch.exe" -r SOFTWARE\Hewlett-Packard\ScheduledLaunch\CLJ_CM1312_MFP_Series -f PQOptimizerVideo.xml -o remindLater
O4 - HKLM\..\Run: [ToolBoxFX] "C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [DkStartup] C:\Program Files\SafeNet\BSecClient\dkstartup.exe
O4 - HKLM\..\Run: [AxMonitor] C:\Program Files\SafeNet\BSecClient\axmonitor.exe
O4 - HKLM\..\Run: [DkAutoReg] C:\Program Files\SafeNet\BSecClient\DkAutoReg.exe
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: McAfee Security Scan.lnk = ?
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 2306865921
O16 - DPF: {672EE252-D813-4F5E-81BB-5DD163DD4FA5} (Active602XMLFiller Control) - https://www.mojedatovaschranka.cz/stati ... ?3,16,13,0
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 5524531375
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O20 - AppInit_DLLs: APSHook.dll
O20 - Winlogon Notify: ackpbsc - C:\WINDOWS\system32\ackpbsc.dll
O20 - Winlogon Notify: acunlock - C:\Program Files\ActivIdentity\ActivClient\acunlock.dll
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O20 - Winlogon Notify: DkWLNP - DkWLNP.dll (file missing)
O20 - Winlogon Notify: OneCard - C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: ActivClient Middleware Service (accoca) - ActivIdentity - C:\Program Files\ActivIdentity\ActivClient\accoca.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: SafeNet Log Service (DkLogger) - SafeNet, Inc. - C:\WINDOWS\system32\dklog.exe
O23 - Service: SafeNet Token Service (DkTknSrv) - SafeNet, Inc. - C:\WINDOWS\system32\dkcktkn.exe
O23 - Service: SafeNet Virtual Channel Monitor (DkVcm) - SafeNet, Inc. - C:\WINDOWS\system32\dkvcm.exe
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Ltd - C:\WINDOWS\system32\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - SafeBoot International - C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: File Sanitizer for HP ProtectTools (HPFSService) - Hewlett-Packard - C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel(R) Active Management Technology Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\AMT\LMS.exe
O23 - Service: MySQL7 - Unknown owner - C:\Alis\MySQL51\server\bin\mysqld.exe
O23 - Service: PC Angel (PCA) - SoftThinks - C:\WINDOWS\SMINST\PCAngel.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files\PDF Complete\pdfsvc.exe
O23 - Service: Intel(R) Active Management Technology User Notification Service (UNS) - Intel Corporation - C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe

--
End of file - 13823 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{599704E7-84FD-4082-8793-FF57966970B6}.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "wrc@avast.com:8.0.1489, {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}:6.0.14, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}:6.0.30, jqs@sun.com:1.0, {20a82645-c095-46ed-80e3-08825760534b}:1.1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.19"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =971163&p="

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=602XML Filler Plugin
"Path"=C:\Program Files\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
aboutRights.js
aboutRobots.js
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
jsconsole-clhandler.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsHandlerService.js
nsHelperAppDlg.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesTransactionsService.js
nsPostUpdateWin.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
txEXSLTRegExFunctions.js
WebContentConverter.js

C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
nppdf32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml

C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\extensions\
danish@dictionaries.addons.mozilla.org
es-AR@dictionaries.addons.mozilla.org
es-es@dictionaries.addons.mozilla.org
fi@dictionaries.addons.mozilla.org
fr-FR@dictionaries.addons.mozilla.org
fr@dictionaries.addons.mozilla.org
nl-NL@dictionaries.addons.mozilla.org
pl@dictionaries.addons.mozilla.org
pt-PT@dictionaries.addons.mozilla.org
ru@dictionaries.addons.mozilla.org
sl@dictionaries.addons.mozilla.org
{20a82645-c095-46ed-80e3-08825760534b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
BHO_Startup Class - C:\Program Files\Hewlett-Packard\File Sanitizer\IEBHO.dll [2008-10-14 110592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2011-11-10 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-06-27 192592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll [2013-01-26 1000984]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}]
pdfforge Toolbar - C:\Program Files\pdfforge Toolbar\IE\7.4\pdfforgeToolbarIE.dll [2013-08-08 1356096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-06-06 1519304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-10 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
Credential Manager for HP ProtectTools - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll [2008-07-23 96528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-11-10 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-06-06 1519304]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2013-06-27 192592]
{B922D405-6D13-4A2B-AE89-08A030DA4402} - pdfforge Toolbar - C:\Program Files\pdfforge Toolbar\IE\7.4\pdfforgeToolbarIE.dll [2013-08-08 1356096]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2008-07-01 150040]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2008-07-01 170520]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2008-07-01 141848]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2008-04-04 1044480]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2008-03-24 884736]
"picon"=C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe [2008-07-19 773144]
"PDF Complete"=C:\Program Files\PDF Complete\pdfsty.exe [2008-04-07 318488]
"accrdsub"=C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [2007-11-27 298536]
"PTHOSTTR"=C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [2008-08-19 329520]
"CognizanceTS"=C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll [2008-07-23 24848]
"SetRefresh"=C:\Program Files\Compaq\SetRefresh\SetRefresh.exe [2003-11-20 525824]
"File Sanitizer"=C:\Program Files\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2008-10-14 10248192]
"Recguard"=C:\WINDOWS\Sminst\Recguard.exe [2006-05-12 1138688]
"Reminder"=C:\WINDOWS\Creator\Remind_XP.exe [2006-03-31 761856]
"Scheduler"=C:\WINDOWS\SMINST\Scheduler.exe [2006-07-10 872448]
"HPPQVideo"=C:\Program Files\HP\ScheduledLaunch\HP Color LaserJet CM1312 MFP Series\bin\hppschlnch.exe [2007-05-07 106496]
"ToolBoxFX"=C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe [2008-08-01 53248]
"DkStartup"=C:\Program Files\SafeNet\BSecClient\dkstartup.exe [2007-09-13 49152]
"AxMonitor"=C:\Program Files\SafeNet\BSecClient\axmonitor.exe [2007-09-13 450560]
"DkAutoReg"=C:\Program Files\SafeNet\BSecClient\DkAutoReg.exe [2007-09-13 253952]
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2012-06-06 1564872]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
""= []
"SearchSettings"=C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe [2013-08-08 1303360]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11 958576]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-10-26 39408]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
McAfee Security Scan.lnk - C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="APSHook.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ackpbsc]
C:\WINDOWS\system32\ackpbsc.dll [2007-11-27 109568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\acunlock]
C:\Program Files\ActivIdentity\ActivClient\acunlock.dll [2007-11-27 286720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DeviceNP]
C:\WINDOWS\system32\DeviceNP.dll [2008-08-06 69632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DkWLNP]
C:\WINDOWS\system32\DkWLNP.dll [2007-09-13 61440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2008-06-27 212992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OneCard]
C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll [2008-07-23 158992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ASWLNPkg

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\SMINST\Scheduler.exe"="C:\WINDOWS\SMINST\Scheduler.exe:*:Enabled:Scheduler "
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\HP\HP Color LaserJet CM1312 MFP Series\hppfsu_cm1312.exe"="C:\Program Files\HP\HP Color LaserJet CM1312 MFP Series\hppfsu_cm1312.exe:*:Enabled:HP Networked Printer Installer"
"C:\Program Files\Common Files\soft602\langserv.exe"="C:\Program Files\Common Files\soft602\langserv.exe:*:Enabled:Software602 Spell Checker"
"C:\Documents and Settings\Administrator\Plocha\btest.exe"="C:\Documents and Settings\Administrator\Plocha\btest.exe:*:Enabled:btest"
"C:\Program Files\Microsoft Office\Office12\MSACCESS.EXE"="C:\Program Files\Microsoft Office\Office12\MSACCESS.EXE:*:Enabled:C:\Program Files\Microsoft Office\Office12\\MSACCESS.exe"
"C:\Program Files\HP\HP Color LaserJet CM1312 MFP Series\hppfaxnc2.exe"="C:\Program Files\HP\HP Color LaserJet CM1312 MFP Series\hppfaxnc2.exe:*:Enabled:HP Networked Printer Installer"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.txt - open - notepad.exe %1

======List of files/folders created in the last 1 month======

2013-08-29 19:33:47 ----D---- C:\rsit
2013-08-29 19:33:47 ----D---- C:\Program Files\trend micro
2013-08-29 19:31:51 ----D---- C:\Program Files\Common Files\Adobe
2013-08-29 19:30:03 ----HD---- C:\Documents and Settings\All Users\Data aplikací\Common Files
2013-08-29 19:29:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\MFAData
2013-08-26 18:48:24 ----D---- C:\Program Files\CCleaner
2013-08-15 16:32:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2850869$
2013-08-15 16:31:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2859537$
2013-08-15 16:31:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2849470$
2013-08-15 16:22:45 ----D---- C:\WINDOWS\system32\MRT
2013-08-15 16:19:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2863058$
2013-08-15 16:08:18 ----D---- C:\Documents and Settings\Administrator\Data aplikací\Search Settings
2013-08-15 16:08:15 ----D---- C:\Program Files\Common Files\Spigot
2013-08-15 16:08:15 ----D---- C:\Program Files\Application Updater
2013-08-15 16:08:14 ----D---- C:\Program Files\pdfforge Toolbar
2013-08-03 12:38:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2834904_WM11$
2013-08-03 12:37:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$
2013-08-03 12:36:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2850851$
2013-08-03 12:35:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2845187$
2013-08-03 12:30:26 ----D---- C:\Documents and Settings\Administrator\Data aplikací\Software602
2013-08-03 12:28:42 ----D---- C:\WINDOWS\system32\602xps2pdf
2013-08-03 12:28:38 ----D---- C:\Program Files\Common Files\Freedom Scientific

======List of files/folders modified in the last 1 month======

2013-08-29 19:33:47 ----RD---- C:\Program Files
2013-08-29 19:33:06 ----SHD---- C:\WINDOWS\Installer
2013-08-29 19:33:06 ----HD---- C:\Config.Msi
2013-08-29 19:32:22 ----D---- C:\WINDOWS\system32
2013-08-29 19:31:54 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2013-08-29 19:31:51 ----D---- C:\Program Files\Common Files
2013-08-29 19:31:51 ----D---- C:\Program Files\Adobe
2013-08-29 19:29:16 ----D---- C:\WINDOWS\Temp
2013-08-29 19:28:39 ----D---- C:\WINDOWS\system32\CatRoot2
2013-08-29 19:28:18 ----D---- C:\WINDOWS
2013-08-29 19:26:40 ----A---- C:\WINDOWS\system32\log.txt
2013-08-29 19:26:35 ----D---- C:\WINDOWS\SMINST
2013-08-29 19:08:58 ----D---- C:\Program Files\Mozilla Firefox
2013-08-29 18:24:01 ----D---- C:\WINDOWS\Minidump
2013-08-26 19:23:57 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-08-26 19:17:01 ----D---- C:\Program Files\PDFCreator
2013-08-26 19:16:59 ----D---- C:\WINDOWS\Debug
2013-08-26 18:46:36 ----D---- C:\WINDOWS\Prefetch
2013-08-26 18:46:33 ----HD---- C:\WINDOWS\inf
2013-08-22 18:00:41 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-08-22 17:57:39 ----D---- C:\WINDOWS\Microsoft.NET
2013-08-22 17:57:32 ----RSD---- C:\WINDOWS\assembly
2013-08-15 16:43:05 ----D---- C:\Program Files\Common Files\Adobe AIR
2013-08-15 16:32:08 ----RSHD---- C:\WINDOWS\system32\dllcache
2013-08-15 16:25:49 ----D---- C:\Program Files\Internet Explorer
2013-08-15 16:25:38 ----D---- C:\WINDOWS\ie8updates
2013-08-15 16:22:33 ----A---- C:\WINDOWS\system32\MRT.exe
2013-08-15 16:22:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2013-08-15 16:18:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-08-15 16:18:36 ----D---- C:\WINDOWS\WinSxS
2013-08-15 16:10:44 ----D---- C:\WINDOWS\system32\drivers
2013-08-15 16:10:37 ----SD---- C:\WINDOWS\Tasks
2013-08-03 12:44:34 ----D---- C:\Program Files\Microsoft Silverlight
2013-08-03 12:30:23 ----D---- C:\Documents and Settings\Administrator\Data aplikací\602XML
2013-08-03 12:28:41 ----D---- C:\Program Files\Common Files\soft602
2013-08-03 12:17:18 ----D---- C:\WINDOWS\system32\XPSViewer
2013-08-03 12:08:58 ----SD---- C:\WINDOWS\Downloaded Program Files

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [2013-05-09 49376]
R0 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2013-08-15 175176]
R0 iaStor;Intel AHCI Controller; C:\WINDOWS\System32\DRIVERS\iaStor.sys [2008-12-04 328728]
R0 SafeBoot;SafeBoot; C:\WINDOWS\system32\drivers\SafeBoot.sys [2008-08-07 109184]
R0 SbAlg;SbAlg; C:\WINDOWS\system32\drivers\SbAlg.sys [2008-08-07 51376]
R0 SbFsLock;SbFsLock; C:\WINDOWS\system32\drivers\SbFsLock.sys [2008-08-07 12928]
R0 SFAUDIO;Sonic Focus DSP Driver; C:\WINDOWS\system32\drivers\sfaudio.sys [2008-03-28 24064]
R1 AswRdr;aswRdr; C:\WINDOWS\system32\drivers\AswRdr.sys [2013-05-09 49760]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2013-08-15 770344]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2013-08-15 369584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2013-05-09 56080]
R1 FSLX;FSLX; \??\C:\WINDOWS\system32\drivers\fslx.sys []
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 RsvLock;RsvLock; C:\WINDOWS\system32\drivers\RsvLock.sys [2008-08-07 12496]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-13 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2013-05-09 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2008-05-13 338944]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2007-07-13 94976]
R3 cxbu0wdm;FSC SmartCard-Reader USB 2A; C:\WINDOWS\system32\DRIVERS\cxbu0wdm.sys [2007-02-28 91008]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K; C:\WINDOWS\system32\DRIVERS\e1k5132.sys [2008-10-24 149600]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HECI;Intel(R) Management Engine Interface; C:\WINDOWS\system32\DRIVERS\HECI.sys [2008-07-19 40832]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HPFXBULK;HPFXBULK; C:\WINDOWS\system32\drivers\hpfxbulk.sys [2007-07-16 17432]
R3 HPFXFAX;HPFXFAX; C:\WINDOWS\system32\drivers\hpfxfax.sys [2007-07-16 20504]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2008-06-27 6023072]
R3 IFXTPM;IFXTPM; C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS [2007-12-18 44800]
R3 iKeyEnum;Rainbow iKey Enumerator; C:\WINDOWS\system32\DRIVERS\ikeyenum.sys [2007-12-17 12480]
R3 iKeyIFD;Rainbow iKey Virtual Reader; C:\WINDOWS\system32\DRIVERS\ikeyifd.sys [2007-12-17 19232]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 P3;Ovladač procesoru Intel PentiumIII; C:\WINDOWS\system32\DRIVERS\p3.sys [2008-04-14 46592]
S3 DAMDrv;DAMDrv; C:\WINDOWS\system32\DRIVERS\DAMDrv.sys [2008-08-06 32256]
S3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-10-24 117760]
S3 i81x;i81x; C:\WINDOWS\system32\DRIVERS\i81xnt5.sys [2004-08-04 161020]
S3 iAimFP0;iAimFP0; C:\WINDOWS\system32\DRIVERS\wADV01nt.sys [2004-08-04 12415]
S3 iAimFP1;iAimFP1; C:\WINDOWS\system32\DRIVERS\wADV02NT.sys [2004-08-04 12127]
S3 iAimFP2;iAimFP2; C:\WINDOWS\system32\DRIVERS\wADV05NT.sys [2004-08-04 11775]
S3 iAimFP3;iAimFP3; C:\WINDOWS\system32\DRIVERS\wSiINTxx.sys [2004-08-04 12063]
S3 iAimFP4;iAimFP4; C:\WINDOWS\system32\DRIVERS\wVchNTxx.sys [2004-08-04 19455]
S3 iAimFP5;iAimFP5; C:\WINDOWS\system32\DRIVERS\wADV07nt.sys [2004-08-04 11807]
S3 iAimFP6;iAimFP6; C:\WINDOWS\system32\DRIVERS\wADV08nt.sys [2004-08-04 11295]
S3 iAimFP7;iAimFP7; C:\WINDOWS\system32\DRIVERS\wADV09nt.sys [2004-08-04 11871]
S3 iAimTV0;iAimTV0; C:\WINDOWS\system32\DRIVERS\wATV01nt.sys [2004-08-04 29311]
S3 iAimTV1;iAimTV1; C:\WINDOWS\system32\DRIVERS\wATV02NT.sys [2004-08-04 19551]
S3 iAimTV3;iAimTV3; C:\WINDOWS\system32\DRIVERS\wATV04nt.sys [2004-08-04 33599]
S3 iAimTV4;iAimTV4; C:\WINDOWS\system32\DRIVERS\wCh7xxNT.sys [2004-08-04 23615]
S3 iAimTV5;iAimTV5; C:\WINDOWS\system32\DRIVERS\wATV10nt.sys [2004-08-04 25471]
S3 iAimTV6;iAimTV6; C:\WINDOWS\system32\DRIVERS\wATV06nt.sys [2004-08-04 22271]
S3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw32.sys []
S3 RnbToken;Rainbow iKey Token Service; C:\WINDOWS\system32\DRIVERS\rnbtoken.sys [2007-12-17 22304]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 adpu320;adpu320; C:\WINDOWS\system32\DRIVERS\adpu320.sys [2002-05-09 105472]
S4 Symmpi;Symmpi; C:\WINDOWS\system32\DRIVERS\symmpi.sys [2002-04-04 28416]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 accoca;ActivClient Middleware Service; C:\Program Files\ActivIdentity\ActivClient\accoca.exe [2007-11-27 185896]
R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2013-08-08 807800]
R2 ASBroker;Logon Session Broker; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 ASChannel;Local Communication Channel; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 DkLogger;SafeNet Log Service; C:\WINDOWS\system32\dklog.exe [2007-09-13 106496]
R2 DkTknSrv;SafeNet Token Service; C:\WINDOWS\system32\dkcktkn.exe [2007-09-13 737280]
R2 DkVcm;SafeNet Virtual Channel Monitor; C:\WINDOWS\system32\dkvcm.exe [2007-09-13 122880]
R2 HP ProtectTools Service;HP ProtectTools Service; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [2008-08-19 32768]
R2 HpFkCryptService;Drive Encryption Service; C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [2008-08-07 256512]
R2 HPFSService;File Sanitizer for HP ProtectTools; C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe [2008-10-14 77824]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-11-10 153376]
R2 LMS;Intel(R) Active Management Technology Local Management Service; C:\Program Files\Intel\AMT\LMS.exe [2008-07-19 174616]
R2 MySQL7;MySQL7; C:\Alis\MySQL51\server\bin\mysqld.exe [2010-08-13 6094848]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files\PDF Complete\pdfsvc.exe [2008-04-07 576024]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 UNS;Intel(R) Active Management Technology User Notification Service; C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe [2008-07-19 2054680]
R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-04-16 165192]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-11 135664]
S2 PCA;PC Angel; C:\WINDOWS\SMINST\PCAngel.exe [2006-06-13 364544]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-22 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing; C:\WINDOWS\system32\flcdlock.exe [2008-08-06 349432]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-11 135664]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-23 194032]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2008-10-24 145248]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nestandardní chování PC

#2 Příspěvek od vyosek »

Zdravim a pekny vecer preji
Vas log se studuje Obrázek a pracuje se na nem Obrázek.
Prosim o strpeni!Obrázek
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nestandardní chování PC

#3 Příspěvek od vyosek »

:arrow: Jste se dal na chov konicku trojskych a stadecka rootkitu nebo co. Mate tam celou zoo i s babkou pokladni :arcisit:

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
  • Ukoncete vsechny programy
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pockejte na dokonceni PreScanu
  • Zvolte moznost Prohledat (scan)
  • Po dokonceni skenu kliknete na Zpráva (Report)- otevre se log, ten sem vlozte
  • Detailni postup vc. obrazku mate zde http://forum.viry.cz/viewtopic.php?f=24&t=120452
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kewin
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 27 srp 2004 08:36

Re: nestandardní chování PC

#4 Příspěvek od kewin »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.5.5 (08.28.2013:1)
OS: Microsoft Windows XP x86
Ran by Administrator on źt 29.08.2013 at 21:20:36,62
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ FireFox

Successfully deleted: [Folder] C:\Documents and Settings\Administrator\Data aplikacˇ\mozilla\firefox\profiles\zp34u4sv.default\extensions\wtxpcom@mybrowserbar.com





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źt 29.08.2013 at 21:27:36,12
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

RogueKiller V8.6.7 [Aug 28 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Administrator [Práva správce]
Mód : Kontrola -- Datum : 08/29/2013 20:55:24
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 3 ¤¤¤
[All Users][SUSP UNIC] HP Digital Imaging Monitor.lnk : C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\HP Digital Imaging Monitor.lnk @C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [-][7] -> NALEZENO
[All Users][SUSP UNIC] McAfee Security Scan.lnk : C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\McAfee Security Scan.lnk @C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe [-][7] -> NALEZENO
[All Users][SUSP UNIC] Windows Search.lnk : C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Windows Search.lnk @C:\Program Files\Windows Desktop Search\WindowsSearch.exe /startup [-][-] -> NALEZENO

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: Hitachi HDP725025GLA380 +++++
--- User ---
[MBR] 6d369494407dce9fef0b30f16f1043a5
[BSP] 53cb7bcf893d480acf9f55e191dd7036 : MBR Code unknown
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 222078 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 454816215 | Size: 16394 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: Hitachi HDP725025GLA380 +++++
Error reading User MBR!
User = LL1 ... OK!
Error reading LL2 MBR!

Dokončeno : << RKreport[0]_S_08292013_205524.txt >>


# AdwCleaner v3.001 - Report created 29/08/2013 at 20:26:57
# Updated 24/08/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Administrator - HP26930271881
# Running from : C:\Documents and Settings\Administrator\Plocha\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\.autoreg
File Found : C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\wtxpcom@mybrowserbar.com
File Found : C:\Program Files\Mozilla Firefox\.autoreg
Folder Found C:\Documents and Settings\Administrator\IECompatCache
Folder Found C:\Documents and Settings\Administrator\Local Settings\Data aplikací\AskToolbar
Folder Found C:\Documents and Settings\All Users\Data aplikací\Ask

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\Software\pdfforge
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Found : HKCU\Software\pdfforge
Key Found : HKCU\Software\Search Settings
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A0B139A7-E8D5-49E8-A7BF-12421E652208}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Found : HKLM\Software\pdfforge
Key Found : HKLM\Software\Search Settings
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{B922D405-6D13-4A2B-AE89-08A030DA4402}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{B922D405-6D13-4A2B-AE89-08A030DA4402}]

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v3.6.13 (cs)

[ File : C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\prefs.js ]


-\\ Google Chrome v28.0.1500.95

[ File : C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [3042 octets] - [29/08/2013 20:26:57]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [3102 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nestandardní chování PC

#5 Příspěvek od vyosek »

:arrow: Spustte znovu AdwCleaner
  • Pokud pouzivate Win Vista ci W7, kliknete na AdwCleaner pravym a dejte Run As Administrator ci Spustit jako spravce
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kewin
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 27 srp 2004 08:36

Re: nestandardní chování PC

#6 Příspěvek od kewin »

Posilam log AdwCleaner a jdu na ComboFix

# AdwCleaner v3.001 - Report created 30/08/2013 at 17:02:21
# Updated 24/08/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Administrator - HP26930271881
# Running from : C:\Documents and Settings\Administrator\Plocha\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v3.6.13 (cs)

[ File : C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\prefs.js ]


-\\ Google Chrome v28.0.1500.95

[ File : C:\Documents and Settings\Administrator\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [3182 octets] - [29/08/2013 20:26:57]
AdwCleaner[R1].txt - [1112 octets] - [30/08/2013 16:32:38]
AdwCleaner[S0].txt - [3297 octets] - [29/08/2013 20:46:33]
AdwCleaner[S1].txt - [1034 octets] - [30/08/2013 17:02:21]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1094 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nestandardní chování PC

#7 Příspěvek od vyosek »

OK, pockam si na log z ComboFixu
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kewin
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 27 srp 2004 08:36

Re: nestandardní chování PC

#8 Příspěvek od kewin »

ComboFix 13-08-29.02 - Administrator 30.08.2013 17:10:59.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.1977.1168 [GMT 2:00]
Spuštěný z: c:\documents and settings\Administrator\Plocha\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msmqinst.log
c:\windows\system32\_000005_.tmp.dll
c:\windows\system32\OLD13.tmp
c:\windows\system32\OLDB.tmp
c:\windows\system32\OLDF.tmp
c:\windows\system32\TZLog.log
D:\Autorun.inf
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-07-28 do 2013-08-30 )))))))))))))))))))))))))))))))
.
.
2013-08-29 18:26 . 2013-08-30 15:02 -------- d-----w- C:\AdwCleaner
2013-08-29 18:15 . 2013-08-29 18:15 -------- d-----w- c:\windows\ERUNT
2013-08-29 17:38 . 2013-08-29 17:38 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Data aplikací\Sun
2013-08-29 17:37 . 2013-08-29 17:37 867240 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-08-29 17:37 . 2013-08-29 17:37 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-08-29 17:34 . 2013-08-29 17:34 16856 ----a-w- c:\program files\Mozilla Firefox\plugin-container.exe
2013-08-29 17:34 . 2013-08-29 17:34 719832 ----a-w- c:\program files\Mozilla Firefox\mozcpp19.dll
2013-08-29 17:33 . 2013-08-29 17:34 -------- d-----w- C:\rsit
2013-08-29 17:33 . 2013-08-29 17:33 -------- d-----w- c:\program files\trend micro
2013-08-29 17:31 . 2013-08-29 17:32 -------- d-----w- c:\program files\Common Files\Adobe
2013-08-29 17:30 . 2013-08-29 17:30 -------- d--h--w- c:\documents and settings\All Users\Data aplikací\Common Files
2013-08-29 17:29 . 2013-08-29 17:30 -------- d-----w- c:\documents and settings\All Users\Data aplikací\MFAData
2013-08-26 16:48 . 2013-08-26 16:48 -------- d-----w- c:\program files\CCleaner
2013-08-15 14:22 . 2013-08-15 14:25 -------- d-----w- c:\windows\system32\MRT
2013-08-03 10:30 . 2013-08-03 10:30 -------- d-----w- c:\documents and settings\Administrator\Data aplikací\Software602
2013-08-03 10:28 . 2013-08-03 10:29 -------- d-----w- c:\windows\system32\602xps2pdf
2013-08-03 10:28 . 2013-08-03 10:28 -------- d-----w- c:\program files\Common Files\Freedom Scientific
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-08-29 18:07 . 2013-01-31 17:24 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-08-29 18:07 . 2013-01-31 17:24 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-08-29 17:37 . 2009-05-14 12:55 144896 ----a-w- c:\windows\system32\javacpl.cpl
2013-08-29 17:37 . 2011-02-22 09:05 789416 ----a-w- c:\windows\system32\deployJava1.dll
2013-08-15 14:10 . 2013-03-07 12:05 175176 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-08-15 14:10 . 2012-08-16 16:20 369584 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-08-15 14:10 . 2012-08-16 16:20 770344 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-08-02 23:48 . 2006-10-18 19:47 1543680 ------w- c:\windows\system32\wmvdecod.dll
2013-07-26 02:49 . 2004-08-17 22:49 920064 ----a-w- c:\windows\system32\wininet.dll
2013-07-26 02:48 . 2004-08-17 22:49 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2013-07-26 02:48 . 2004-08-17 22:49 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-07-25 15:52 . 2004-08-17 22:44 385024 ----a-w- c:\windows\system32\html.iec
2013-07-10 10:37 . 2004-08-17 22:49 406016 ----a-w- c:\windows\system32\usp10.dll
2013-07-04 07:34 . 2004-08-17 22:45 2151936 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-07-04 07:33 . 2006-03-02 09:00 2030592 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-06-05 09:08 . 2004-08-17 22:44 1876736 ----a-w- c:\windows\system32\win32k.sys
2013-06-04 07:23 . 2004-08-17 22:49 563712 ----a-w- c:\windows\system32\qedit.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-05-09 08:58 121968 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-10-26 39408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-07-01 150040]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-07-01 170520]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-07-01 141848]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2008-04-04 1044480]
"picon"="c:\program files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe" [2008-07-19 773144]
"PDF Complete"="c:\program files\PDF Complete\pdfsty.exe" [2008-04-07 318488]
"accrdsub"="c:\program files\ActivIdentity\ActivClient\accrdsub.exe" [2007-11-27 298536]
"PTHOSTTR"="c:\program files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE" [2008-08-19 329520]
"CognizanceTS"="c:\progra~1\HEWLET~1\IAM\Bin\ASTSVCC.dll" [2008-07-23 24848]
"SetRefresh"="c:\program files\Compaq\SetRefresh\SetRefresh.exe" [2003-11-20 525824]
"File Sanitizer"="c:\program files\Hewlett-Packard\File Sanitizer\CoreShredder.exe" [2008-10-14 10248192]
"Recguard"="c:\windows\Sminst\Recguard.exe" [2006-05-12 1138688]
"Reminder"="c:\windows\Creator\Remind_XP.exe" [2006-03-31 761856]
"Scheduler"="c:\windows\SMINST\Scheduler.exe" [2006-07-10 872448]
"ToolBoxFX"="c:\program files\HP\ToolBoxFX\bin\HPTLBXFX.exe" [2008-08-01 53248]
"DkStartup"="c:\program files\SafeNet\BSecClient\dkstartup.exe" [2007-09-13 49152]
"AxMonitor"="c:\program files\SafeNet\BSecClient\axmonitor.exe" [2007-09-13 450560]
"DkAutoReg"="c:\program files\SafeNet\BSecClient\DkAutoReg.exe" [2007-09-13 253952]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-05-11 958576]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-10-14 214360]
McAfee Security Scan.lnk - c:\program files\McAfee Security Scan\1.0.150\SSScheduler.exe [2009-7-28 199184]
Windows Search.lnk - c:\program files\Windows Desktop Search\WindowsSearch.exe /startup [2008-5-26 123904]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ackpbsc]
2007-11-27 15:41 109568 ----a-w- c:\windows\system32\ackpbsc.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\acunlock]
2007-11-27 15:40 286720 ----a-w- c:\program files\ActivIdentity\ActivClient\acunlock.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\DeviceNP]
2008-08-06 13:23 69632 ----a-w- c:\windows\system32\DeviceNP.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\DkWLNP]
2007-09-13 12:21 61440 ----a-w- c:\windows\system32\DkWLNP.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\OneCard]
2008-07-23 12:03 158992 ----a-w- c:\program files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\system32\APSHook.dll
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\SMINST\\Scheduler.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\HP\\HP Color LaserJet CM1312 MFP Series\\hppfsu_cm1312.exe"=
"c:\\Program Files\\Common Files\\soft602\\langserv.exe"=
"c:\\Documents and Settings\\Administrator\\Plocha\\btest.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\MSACCESS.EXE"=
"c:\\Program Files\\HP\\HP Color LaserJet CM1312 MFP Series\\hppfaxnc2.exe"=
.
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [7.3.2013 14:05 49376]
R0 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [7.3.2013 14:05 175176]
R0 SafeBoot;SafeBoot;c:\windows\system32\drivers\SafeBoot.sys [7.8.2008 17:47 109184]
R0 SbAlg;SbAlg;c:\windows\system32\drivers\SbAlg.sys [7.8.2008 17:47 51376]
R0 SbFsLock;SbFsLock;c:\windows\system32\drivers\SbFsLock.sys [7.8.2008 17:47 12928]
R0 SFAUDIO;Sonic Focus DSP Driver;c:\windows\system32\drivers\sfaudio.sys [14.5.2009 23:30 24064]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [16.8.2012 18:20 770344]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [16.8.2012 18:20 369584]
R1 FSLX;FSLX;c:\windows\system32\drivers\fslx.sys [11.7.2008 14:44 191872]
R1 RsvLock;RsvLock;c:\windows\system32\drivers\rsvlock.sys [7.8.2008 17:47 12496]
R2 602XML Updater;602Updater;c:\program files\Common Files\soft602\602updsvc\602updsvc.exe [10.10.2011 13:55 85344]
R2 accoca;ActivClient Middleware Service;c:\program files\ActivIdentity\ActivClient\accoca.exe [27.11.2007 17:42 185896]
R2 ASBroker;Logon Session Broker;c:\windows\System32\svchost.exe -k Cognizance [18.8.2004 0:49 14336]
R2 ASChannel;Local Communication Channel;c:\windows\System32\svchost.exe -k Cognizance [18.8.2004 0:49 14336]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [16.8.2012 18:20 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [7.3.2013 14:05 66336]
R2 DkVcm;SafeNet Virtual Channel Monitor;c:\windows\system32\dkvcm.exe [13.9.2007 14:21 122880]
R2 HP ProtectTools Service;HP ProtectTools Service;c:\program files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [19.8.2008 17:03 32768]
R2 HpFkCryptService;Drive Encryption Service;c:\program files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [7.8.2008 16:23 256512]
R2 HPFSService;File Sanitizer for HP ProtectTools;c:\program files\Hewlett-Packard\File Sanitizer\HPFSService.exe [14.5.2009 15:01 77824]
R2 MySQL7;MySQL7;c:\alis\MySQL51\server\bin\mysqld.exe --defaults-file=c:\alis\MySQL51\server\my.ini MySQL7 --> c:\alis\MySQL51\server\bin\mysqld.exe --defaults-file=c:\alis\MySQL51\server\my.ini MySQL7 [?]
R2 pdfcDispatcher;PDF Document Manager;c:\program files\PDF Complete\pdfsvc.exe [14.5.2009 14:59 576024]
R2 UNS;Intel(R) Active Management Technology User Notification Service;c:\program files\Common Files\Intel\Privacy Icon\UNS\UNS.exe [14.5.2009 14:56 2054680]
R3 cxbu0wdm;FSC SmartCard-Reader USB 2A;c:\windows\system32\drivers\cxbu0wdm.sys [2.9.2009 9:23 91008]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K;c:\windows\system32\drivers\e1k5132.sys [14.5.2009 23:43 149600]
R3 HPFXFAX;HPFXFAX;c:\windows\system32\drivers\hpfxfax.sys [4.8.2009 15:48 20504]
R3 IFXTPM;IFXTPM;c:\windows\system32\drivers\ifxtpm.sys [14.5.2009 23:29 44800]
R3 iKeyEnum;Rainbow iKey Enumerator;c:\windows\system32\drivers\IKEYENUM.SYS [1.9.2009 13:20 12480]
R3 iKeyIFD;Rainbow iKey Virtual Reader;c:\windows\system32\drivers\IKEYIFD.SYS [1.9.2009 13:20 19232]
S3 DAMDrv;DAMDrv;c:\windows\system32\drivers\DAMDrv.sys [6.8.2008 14:43 32256]
S3 FLCDLOCK;HP ProtectTools Device Locking / Auditing;c:\windows\system32\flcdlock.exe [6.8.2008 15:24 349432]
S3 RnbToken;Rainbow iKey Token Service;c:\windows\system32\drivers\RNBTOKEN.SYS [1.9.2009 13:20 22304]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
Cognizance REG_MULTI_SZ ASBroker ASChannel
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-08-03 10:33 1173456 ----a-w- c:\program files\Google\Chrome\Application\28.0.1500.95\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-08-30 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-31 18:07]
.
2013-08-30 c:\windows\Tasks\avast! Emergency Update.job
- c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2012-08-16 08:58]
.
2013-08-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-11 19:27]
.
2013-08-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-11 19:27]
.
2013-08-30 c:\windows\Tasks\User_Feed_Synchronization-{599704E7-84FD-4082-8793-FF57966970B6}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 89.235.16.1 91.237.238.253
DPF: {672EE252-D813-4F5E-81BB-5DD163DD4FA5} - hxxps://www.mojedatovaschranka.cz/static/pages/ ... ?3,16,13,0
FF - ProfilePath - c:\documents and settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: avast! Online Security: wrc@avast.com - c:\program files\AVAST Software\Avast\WebRep\FF
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKLM-Run-HPPQVideo - c:\program files\HP\ScheduledLaunch\HP Color LaserJet CM1312 MFP Series\bin\hppschlnch.exe -r SOFTWARE\Hewlett-Packard\ScheduledLaunch\CLJ_CM1312_MFP_Series -f PQOptimizerVideo.xml
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-08-30 17:19
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pdfcDispatcher]
"ImagePath"="c:\program files\PDF Complete\pdfsvc.exe /startedbyscm:66B66708-40E2BE4D-pdfcService"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-2399297946-3703716234-1408078153-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,83,e4,95,19,f2,9a,c4,4e,9c,60,b9,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,83,e4,95,19,f2,9a,c4,4e,9c,60,b9,\
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_94_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_94_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(816)
c:\windows\system32\ackpbsc.dll
c:\windows\system32\aclog.dll
c:\windows\system32\accrypto.dll
c:\windows\system32\ACLIBEAY.dll
c:\windows\system32\acevtsub.dll
c:\windows\system32\asphat32.dll
c:\windows\system32\acerrmes.dll
c:\windows\system32\aspcom.dll
c:\program files\ActivIdentity\ActivClient\Resources\Localized\acerrmrc.dll
c:\program files\ActivIdentity\ActivClient\Resources\Localized\asphatrc.dll
c:\windows\system32\DkWLNP.dll
c:\program files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll
c:\program files\Hewlett-Packard\IAM\bin\itmsg.dll
c:\program files\ActivIdentity\ActivClient\acunlock.dll
c:\windows\system32\aipingui.dll
c:\windows\system32\aicext.dll
c:\program files\ActivIdentity\ActivClient\Resources\Localized\aipinguirc.dll
c:\program files\ActivIdentity\ActivClient\resources\acCobAPIrc.dll
c:\program files\ActivIdentity\ActivClient\Resources\Localized\acunlockrc.dll
c:\windows\system32\DeviceNP.dll
c:\windows\system32\SSREGLIB.dll
c:\windows\system32\HPPTLog.dll
c:\program files\Hewlett-Packard\IAM\Bin\TrayIcon.dll
c:\program files\Hewlett-Packard\IAM\bin\brand.dll
c:\program files\Hewlett-Packard\IAM\Bin\AsChnl.dll
c:\program files\Hewlett-Packard\IAM\Bin\HPPlugIn.dll
c:\program files\Hewlett-Packard\HP ProtectTools Security Manager\PTHostServices.dll
c:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_cs_b77a5c561934e089\mscorlib.resources.dll
c:\windows\assembly\GAC_MSIL\System.Configuration.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Configuration.resources.dll
.
- - - - - - - > 'explorer.exe'(5728)
c:\windows\system32\APSHook.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\ActivIdentity\ActivClient\acevents.exe
c:\windows\System32\SCardSvr.exe
c:\program files\Hewlett-Packard\IAM\Bin\AsGHost.exe
c:\windows\system32\dklog.exe
c:\program files\Java\jre7\bin\jqs.exe
c:\program files\Intel\AMT\LMS.exe
c:\alis\MySQL51\server\bin\mysqld.exe
c:\windows\system32\SearchIndexer.exe
c:\windows\system32\igfxsrvc.exe
c:\windows\system32\dkcktkn.exe
c:\program files\Windows Desktop Search\WindowsSearch.exe
c:\program files\ActivIdentity\ActivClient\acevents.exe
c:\program files\Hewlett-Packard\Shared\hpqwmiex.exe
c:\windows\system32\SearchProtocolHost.exe
c:\windows\system32\SearchFilterHost.exe
.
**************************************************************************
.
Celkový čas: 2013-08-30 17:21:57 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-08-30 15:21
.
Před spuštěním: Volných bajtů: 205 832 671 232
Po spuštění: Volných bajtů: 206 359 228 416
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - 3BB707C4EC11A66EA94EA29525B93489
49D709F1F6A92F6FAE17E7E843E51101

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nestandardní chování PC

#9 Příspěvek od vyosek »

:arrow: Stahnete Malwarebytes Anti-Rootkit http://www.bleepingcomputer.com/downloa ... i-rootkit/
  • Ulozte nejlepe na Plochu a rozbalte
  • Spustte kliknutim na mbanr
  • Nyni postupne kliknete na Next a Update
  • Po dokonceni update (aktualizace) databaze kliknete opet na Next
  • Nechte zaskrtnute vsechny tri moznosti a klinete na Scan cimz spustite prohledavani PC
  • Po dokonceni skenu (cca 5 minutek) zkontrolujte, zda-li je u vsech nalezu (samozrejme pokud budou) zatrzitko
  • Tez zkontrolujte, jetsli je zatrzitko u Create Restore point
  • Nyni kliknete na CleanUp cimz nalezenou infekci odstranime
  • PC bude restartovan
  • Slozka mbar by mela obsahovat log (a zrejme se i sam otevre) mbar-log-rok-mesic-den (hodina-minuta-sekunda).txt, ten mi sem dejte
:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM) http://forum.viry.cz/viewtopic.php?f=29&t=115222
  • Provedte aktualizaci
  • Provedte uplny sken - nic nemazte :!:
  • MBAM miva obcas falesne detekce, proto vlozte log do prispevku a pockejte na posouzeni
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kewin
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 27 srp 2004 08:36

Re: nestandardní chování PC

#10 Příspěvek od kewin »

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Verze: v2013.08.31.03

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Administrator :: HP26930271881 [administrátor]

31.8.2013 20:03:58
mbam-log-2013-08-31 (20-03-58).txt

Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 328193
Uplynulý čas: 48 minut, 46 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

Malwarebytes Anti-Rootkit BETA 1.07.0.1005
www.malwarebytes.org

Database version: v2013.08.31.02

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Administrator :: HP26930271881 [administrator]

31.8.2013 13:41:10
mbar-log-2013-08-31 (13-41-10).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 215842
Time elapsed: 24 minute(s), 22 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nestandardní chování PC

#11 Příspěvek od vyosek »

Poprosim o spusteni nasledujiciho

:arrow: Aplikace ke stažení:
:arrow: Po stažení FRSTLauncher spustte, objevi se mozna varovani od antiviru, ignorujte a nechte FRSTL spustit

:arrow: Následně dojde ke stažení FRST a inicializaci
  • Po spuštění FRST odsouhlasíme licenční podmínky kliknutím na Ano.
  • Dooznačíme položku Addition.txt - viz obrázek.
    Obrázek
  • Klikneme na tlačítko Scan čímž spustíme skenování.
  • Počkáme na dokončení skenování FRST a vytvoření doplňkových informací naší nástavbou.
  • Otevře se nám textový soubor FRST.txt, což je požadovaný log a jehož obsah vložíme do svého tématu na fóru.
  • Po uzavření logu se FRSTLauncher.exe ukončí a na ploše nám zbyde utilta FRST a dva logy FRST.txt a Addition.txt - nic z toho zatím nemažeme.
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kewin
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 27 srp 2004 08:36

Re: nestandardní chování PC

#12 Příspěvek od kewin »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-09-2013
Ran by Administrator (administrator) on HP26930271881 on 01-09-2013 14:05:25
Running from C:\Documents and Settings\Administrator\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Hewlett-Packard) C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe
(SafeBoot International) C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\WINDOWS\System32\SCardSvr.exe
(Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\AsGHost.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\accoca.exe
(SafeNet, Inc.) C:\WINDOWS\system32\dklog.exe
(SafeNet, Inc.) C:\WINDOWS\system32\dkvcm.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Intel Corporation) C:\Program Files\Intel\AMT\LMS.exe
(Intel Corporation) C:\WINDOWS\system32\igfxtray.exe
() C:\Alis\MySQL51\server\bin\mysqld.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Intel Corporation) C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\File Sanitizer\CoreShredder.exe
(SafeNet, Inc.) C:\WINDOWS\system32\dkcktkn.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
() C:\WINDOWS\SMINST\Scheduler.exe
(HP) C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe
() C:\Program Files\SafeNet\BSecClient\axmonitor.exe
(SafeNet, Inc.) C:\Program Files\SafeNet\BSecClient\DkAutoReg.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
(Microsoft Corporation) C:\Program Files\Windows Desktop Search\WindowsSearch.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SoundMAXPnP] - C:\Program Files\Analog Devices\Core\smax4pnp.exe [1044480 2008-04-04] (Analog Devices, Inc.)
HKLM\...\Run: [picon] - C:\Program Files\Common Files\Intel\Privacy Icon\PrivacyIconClient.exe [773144 2008-07-19] (Intel Corporation)
HKLM\...\Run: [PDF Complete] - C:\Program Files\PDF Complete\pdfsty.exe [318488 2008-04-07] (PDF Complete Inc)
HKLM\...\Run: [accrdsub] - C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [298536 2007-11-27] (ActivIdentity)
HKLM\...\Run: [PTHOSTTR] - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [329520 2008-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [CognizanceTS] - C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll [24848 2008-07-23] (Bioscrypt Inc.)
HKLM\...\Run: [SetRefresh] - C:\Program Files\Compaq\SetRefresh\SetRefresh.exe [525824 2003-11-20] (Hewlett-Packard Company)
HKLM\...\Run: [File Sanitizer] - C:\Program Files\Hewlett-Packard\File Sanitizer\CoreShredder.exe [10248192 2008-10-14] (Hewlett-Packard)
HKLM\...\Run: [Recguard] - C:\WINDOWS\Sminst\Recguard.exe [1138688 2006-05-12] ()
HKLM\...\Run: [Reminder] - C:\WINDOWS\Creator\Remind_XP.exe [761856 2006-03-31] ()
HKLM\...\Run: [Scheduler] - C:\WINDOWS\SMINST\Scheduler.exe [872448 2006-07-10] ()
HKLM\...\Run: [ToolBoxFX] - C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe [53248 2008-08-01] (HP)
HKLM\...\Run: [DkStartup] - C:\Program Files\SafeNet\BSecClient\dkstartup.exe [49152 2007-09-13] (SafeNet, Inc.)
HKLM\...\Run: [AxMonitor] - C:\Program Files\SafeNet\BSecClient\axmonitor.exe [450560 2007-09-13] ()
HKLM\...\Run: [DkAutoReg] - C:\Program Files\SafeNet\BSecClient\DkAutoReg.exe [253952 2007-09-13] (SafeNet, Inc.)
HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
Winlogon\Notify\ackpbsc: C:\WINDOWS\system32\ackpbsc.dll (ActivIdentity)
Winlogon\Notify\acunlock: C:\Program Files\ActivIdentity\ActivClient\acunlock.dll [X]
Winlogon\Notify\DeviceNP: DeviceNP.dll (Hewlett-Packard Limited)
Winlogon\Notify\DkWLNP: DkWLNP.dll (SafeNet, Inc.)
Winlogon\Notify\OneCard: C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll [X]
Winlogon\Notify\WgaLogon: WgaLogon.dll (Microsoft Corporation)
HKLM\...\Policies\Explorer: [HonorAutoRunSetting] 1
HKLM\...\Policies\Explorer: [NoDriveAutoRun] 67108863
HKLM\...\Policies\Explorer: [NoDriveTypeAutoRun] 323
HKLM\...\Policies\Explorer: [NoDrives] 0
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2009-10-26] (Google Inc.)
HKCU\...\Policies\Explorer: [NoDriveTypeAutoRun] 323
HKCU\...\Policies\Explorer: [NoDriveAutoRun] 67108863
HKCU\...\Policies\Explorer: [NoDrives] 0
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Windows Search.lnk
ShortcutTarget: Windows Search.lnk -> C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
SearchScopes: HKLM - DefaultScope value is missing.
BHO: BHO_Startup Class - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll (Bioscrypt Inc.)
Toolbar: HKLM - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU -&Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU -&Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\Windows\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU -Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 2306865921
DPF: {672EE252-D813-4F5E-81BB-5DD163DD4FA5} https://www.mojedatovaschranka.cz/stati ... ?3,16,13,0
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 89.235.16.1 91.237.238.253

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @software602.cz/602XML Filler - C:\Program Files\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Diccionario español Argentina - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\es-AR@dictionaries.addons.mozilla.org
FF Extension: Diccionario de Español/España - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\es-es@dictionaries.addons.mozilla.org
FF Extension: Suomen kielen oikoluku - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\fi@dictionaries.addons.mozilla.org
FF Extension: Dictionnaire HunSpell en Français - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\fr-FR@dictionaries.addons.mozilla.org
FF Extension: Dictionnaire HunSpell en Français (réforme 1990) - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\fr@dictionaries.addons.mozilla.org
FF Extension: Woordenboek Nederlands - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\nl-NL@dictionaries.addons.mozilla.org
FF Extension: Polski slownik poprawnej pisowni - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\pl@dictionaries.addons.mozilla.org
FF Extension: Corrector para Português Europeu - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\pt-PT@dictionaries.addons.mozilla.org
FF Extension: Russian spellchecking dictionary - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\ru@dictionaries.addons.mozilla.org
FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\zp34u4sv.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF

Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://www.google.com"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.300.12) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U30) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File
CHR Plugin: (Software602 Form Filler) - C:\Program Files\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)

========================== Services (Whitelisted) =================

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
R2 accoca; C:\Program Files\ActivIdentity\ActivClient\accoca.exe [185896 2007-11-27] (ActivIdentity)
R2 ASBroker; C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll [158992 2008-07-23] (Bioscrypt Inc.)
R2 ASChannel; C:\Program Files\Hewlett-Packard\IAM\Bin\AsChnl.dll [137488 2008-07-23] (Bioscrypt Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software)
R2 DkLogger; C:\WINDOWS\system32\dklog.exe [106496 2007-09-13] (SafeNet, Inc.)
R2 DkTknSrv; C:\WINDOWS\system32\dkcktkn.exe [737280 2007-09-13] (SafeNet, Inc.)
R2 DkVcm; C:\WINDOWS\system32\dkvcm.exe [122880 2007-09-13] (SafeNet, Inc.)
S3 FLCDLOCK; C:\WINDOWS\system32\flcdlock.exe [349432 2008-08-06] (Hewlett-Packard Ltd)
R2 HP ProtectTools Service; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [32768 2008-08-19] (Hewlett-Packard Development Company, L.P)
R2 HpFkCryptService; C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [256512 2008-08-07] (SafeBoot International)
R2 HPFSService; C:\Program Files\Hewlett-Packard\File Sanitizer\HPFSService.exe [77824 2008-10-14] (Hewlett-Packard)
R2 MySQL7; C:\Alis\MySQL51\server\my.ini [9111 2013-03-07] ()
S2 PCA; C:\WINDOWS\SMINST\PCAngel.exe [364544 2006-06-13] (SoftThinks)
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [576024 2008-04-07] (PDF Complete Inc)
R2 UNS; C:\Program Files\Common Files\Intel\Privacy Icon\UNS\UNS.exe [2054680 2008-07-19] (Intel Corporation)
S4 HidServ; %SystemRoot%\System32\hidserv.dll [x]
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf" [x]

==================== Drivers (Whitelisted) ====================

S3 ac97intc; C:\Windows\System32\drivers\ac97intc.sys [96256 2001-08-18] (Intel Corporation)
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [29816 2013-05-09] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [66336 2013-05-09] (AVAST Software)
R1 AswRdr; C:\Windows\System32\Drivers\AswRdr.sys [49760 2013-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49376 2013-05-09] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [770344 2013-08-15] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [369584 2013-08-15] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [56080 2013-05-09] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [175176 2013-08-15] ()
R3 cxbu0wdm; C:\Windows\System32\DRIVERS\cxbu0wdm.sys [91008 2007-02-28] (OMNIKEY)
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv.sys [32256 2008-08-06] (Hewlett-Packard Development Company L.P.)
R3 e1kexpress; C:\Windows\System32\DRIVERS\e1k5132.sys [149600 2008-10-24] (Intel Corporation)
R1 FSLX; C:\WINDOWS\system32\drivers\fslx.sys [191872 2008-07-11] (Altiris, Inc.)
R3 HPFXBULK; C:\Windows\System32\drivers\hpfxbulk.sys [17432 2007-07-16] (Hewlett Packard)
R3 HPFXFAX; C:\Windows\System32\drivers\hpfxfax.sys [20504 2007-07-16] (Hewlett Packard)
S3 i81x; C:\Windows\System32\DRIVERS\i81xnt5.sys [161020 2004-08-04] (Intel(R) Corporation)
S3 iAimFP0; C:\Windows\System32\DRIVERS\wADV01nt.sys [12415 2004-08-04] (Intel(R) Corporation)
S3 iAimFP1; C:\Windows\System32\DRIVERS\wADV02NT.sys [12127 2004-08-04] (Intel(R) Corporation)
S3 iAimFP2; C:\Windows\System32\DRIVERS\wADV05NT.sys [11775 2004-08-04] (Intel(R) Corporation)
S3 iAimFP3; C:\Windows\System32\DRIVERS\wSiINTxx.sys [12063 2004-08-04] (Intel(R) Corporation)
S3 iAimFP4; C:\Windows\System32\DRIVERS\wVchNTxx.sys [19455 2004-08-04] (Intel(R) Corporation)
S3 iAimFP5; C:\Windows\System32\DRIVERS\wADV07nt.sys [11807 2004-08-04] (Intel(R) Corporation)
S3 iAimFP6; C:\Windows\System32\DRIVERS\wADV08nt.sys [11295 2004-08-04] (Intel(R) Corporation)
S3 iAimFP7; C:\Windows\System32\DRIVERS\wADV09nt.sys [11871 2004-08-04] (Intel(R) Corporation)
S3 iAimTV0; C:\Windows\System32\DRIVERS\wATV01nt.sys [29311 2004-08-04] (Intel(R) Corporation)
S3 iAimTV1; C:\Windows\System32\DRIVERS\wATV02NT.sys [19551 2004-08-04] (Intel(R) Corporation)
S3 iAimTV3; C:\Windows\System32\DRIVERS\wATV04nt.sys [33599 2004-08-04] (Intel(R) Corporation)
S3 iAimTV4; C:\Windows\System32\DRIVERS\wCh7xxNT.sys [23615 2004-08-04] (Intel(R) Corporation)
S3 iAimTV5; C:\Windows\System32\DRIVERS\wATV10nt.sys [25471 2004-08-04] (Intel(R) Corporation)
S3 iAimTV6; C:\Windows\System32\DRIVERS\wATV06nt.sys [22271 2004-08-04] (Intel(R) Corporation)
R3 IFXTPM; C:\Windows\System32\DRIVERS\IFXTPM.SYS [44800 2007-12-18] (Infineon Technologies AG)
R3 iKeyEnum; C:\Windows\System32\DRIVERS\ikeyenum.sys [12480 2007-12-17] (SafeNet, Inc.)
R3 iKeyIFD; C:\Windows\System32\DRIVERS\ikeyifd.sys [19232 2007-12-17] (SafeNet, Inc.)
S3 mbamchameleon; C:\WINDOWS\system32\drivers\mbamchameleon.sys [48728 2013-08-31] (MalwareBytes)
S3 NAL; C:\WINDOWS\system32\Drivers\iqvw32.sys [30816 2008-11-26] (Intel Corporation )
S1 P3; C:\Windows\System32\DRIVERS\p3.sys [46592 2008-04-14] (Microsoft Corporation)
S3 RnbToken; C:\Windows\System32\DRIVERS\rnbtoken.sys [22304 2007-12-17] (SafeNet, Inc.)
R1 RsvLock; C:\Windows\System32\Drivers\RsvLock.sys [12496 2008-08-07] (SafeBoot International)
R0 SafeBoot; C:\Windows\System32\Drivers\SafeBoot.sys [109184 2008-08-07] ()
R0 SbAlg; C:\Windows\System32\Drivers\SbAlg.sys [51376 2008-08-07] (SafeBoot N.V.)
R0 SbFsLock; C:\Windows\System32\Drivers\SbFsLock.sys [12928 2008-08-07] (SafeBoot International)
R0 SFAUDIO; C:\Windows\System32\drivers\sfaudio.sys [24064 2008-03-28] (Sonic Focus, Inc)
S4 Symmpi; C:\Windows\system32\DRIVERS\symmpi.sys [28416 2002-04-04] (LSI Logic)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-09-01 14:05 - 2013-08-27 11:56 - 00044923 _____ C:\Documents and Settings\Administrator\Plocha\logmodification.bat
2013-09-01 14:04 - 2013-09-01 14:04 - 00364544 _____ (forum.viry.cz) C:\Documents and Settings\Administrator\Plocha\FRSTLauncher.exe
2013-09-01 14:04 - 2013-09-01 01:34 - 01085571 _____ (Farbar) C:\Documents and Settings\Administrator\Plocha\FRST.exe
2013-09-01 14:03 - 2013-09-01 14:03 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-09-01 14:01 - 2013-09-01 14:01 - 00281816 _____ (Mozilla) C:\Documents and Settings\Administrator\Plocha\Firefox Setup Stub 23.0.1.exe
2013-08-31 21:13 - 2013-08-31 21:13 - 00006340 _____ C:\Documents and Settings\Administrator\Dokumenty\cc_20130831_211323.reg
2013-08-31 15:37 - 2013-08-31 15:37 - 00000000 ____D C:\Documents and Settings\Administrator\Data aplikací\Malwarebytes
2013-08-31 15:31 - 2013-08-31 15:31 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-08-31 15:31 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2013-08-31 13:39 - 2013-08-31 15:24 - 00000000 ____D C:\Documents and Settings\Administrator\Plocha\mbar
2013-08-31 13:39 - 2013-08-31 13:39 - 00048728 _____ (MalwareBytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2013-08-31 13:37 - 2013-08-31 13:37 - 10285040 _____ (Malwarebytes Corporation ) C:\Documents and Settings\Administrator\Plocha\mbam-setup-1.75.0.1300.exe
2013-08-31 13:36 - 2013-08-31 13:36 - 12907592 _____ (Malwarebytes Corp.) C:\Documents and Settings\Administrator\Plocha\mbar-1.07.0.1005.exe
2013-08-30 17:21 - 2013-08-30 17:21 - 00021200 _____ C:\ComboFix.txt
2013-08-30 17:16 - 2013-08-30 17:16 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.tmp.LOG
2013-08-30 17:16 - 2013-08-30 17:16 - 00000000 ____H C:\WINDOWS\system32\config\system.tmp.LOG
2013-08-30 17:16 - 2013-08-30 17:16 - 00000000 ____H C:\WINDOWS\system32\config\software.tmp.LOG
2013-08-30 17:16 - 2013-08-30 17:16 - 00000000 ____H C:\WINDOWS\system32\config\SAM.tmp.LOG
2013-08-30 17:16 - 2013-08-30 17:16 - 00000000 ____H C:\WINDOWS\system32\config\default.tmp.LOG
2013-08-30 17:09 - 2013-08-30 17:09 - 00000000 _RSHD C:\cmdcons
2013-08-30 17:09 - 2009-05-14 15:06 - 00000211 _____ C:\Boot.bak
2013-08-30 17:09 - 2004-08-03 23:00 - 00261312 __RSH C:\cmldr
2013-08-30 17:08 - 2011-06-26 08:45 - 00256000 _____ C:\WINDOWS\PEV.exe
2013-08-30 17:08 - 2010-11-07 19:20 - 00208896 _____ C:\WINDOWS\MBR.exe
2013-08-30 17:08 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe
2013-08-30 17:08 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe
2013-08-30 17:08 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe
2013-08-30 17:08 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe
2013-08-30 17:08 - 2000-08-31 02:00 - 00098816 _____ C:\WINDOWS\sed.exe
2013-08-30 17:08 - 2000-08-31 02:00 - 00080412 _____ C:\WINDOWS\grep.exe
2013-08-30 17:08 - 2000-08-31 02:00 - 00068096 _____ C:\WINDOWS\zip.exe
2013-08-30 17:07 - 2013-08-30 17:22 - 00000000 ____D C:\Qoobox
2013-08-30 17:07 - 2013-08-30 17:20 - 00000000 ____D C:\WINDOWS\erdnt
2013-08-30 17:07 - 2013-08-30 17:07 - 00000000 ___RD C:\Documents and Settings\Administrator\Nabídka Start\Programy\Nástroje pro správu
2013-08-30 16:32 - 2013-08-30 16:32 - 05114906 ____R (Swearware) C:\Documents and Settings\Administrator\Plocha\ComboFix.exe
2013-08-29 20:55 - 2013-08-29 20:55 - 00002441 _____ C:\Documents and Settings\Administrator\Plocha\RKreport[0]_S_08292013_205524.txt
2013-08-29 20:52 - 2013-08-29 21:08 - 00000000 ____D C:\Documents and Settings\Administrator\Plocha\RK_Quarantine
2013-08-29 20:26 - 2013-08-30 17:02 - 00000000 ____D C:\AdwCleaner
2013-08-29 20:15 - 2013-08-29 20:15 - 00000000 ____D C:\WINDOWS\ERUNT
2013-08-29 20:14 - 2013-08-31 13:38 - 00001066 _____ C:\Documents and Settings\Administrator\Plocha\Nový objekt - Textový dokument.txt
2013-08-29 20:13 - 2013-08-29 20:13 - 01023533 _____ (Thisisu) C:\Documents and Settings\Administrator\Plocha\JRT.exe
2013-08-29 20:13 - 2013-08-29 20:13 - 00994642 _____ C:\Documents and Settings\Administrator\Plocha\adwcleaner.exe
2013-08-29 20:13 - 2013-08-29 20:13 - 00913408 _____ C:\Documents and Settings\Administrator\Plocha\RogueKiller.exe
2013-08-29 19:57 - 2013-08-29 19:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$
2013-08-29 19:37 - 2013-08-29 19:37 - 00867240 _____ (Oracle Corporation) C:\WINDOWS\system32\npDeployJava1.dll
2013-08-29 19:37 - 2013-08-29 19:37 - 00263592 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2013-08-29 19:37 - 2013-08-29 19:37 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2013-08-29 19:37 - 2013-08-29 19:37 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2013-08-29 19:37 - 2013-08-29 19:37 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-08-29 19:35 - 2013-08-30 16:30 - 00000000 ____D C:\Documents and Settings\Administrator\Dokumenty\Stažené soubory
2013-08-29 19:33 - 2013-08-29 19:34 - 00000000 ____D C:\rsit
2013-08-29 19:33 - 2013-08-29 19:33 - 00000000 ____D C:\Program Files\trend micro
2013-08-29 19:31 - 2013-08-29 19:32 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-08-29 19:30 - 2013-05-24 07:44 - 00781383 _____ C:\Documents and Settings\Administrator\Plocha\RSIT.exe
2013-08-29 17:36 - 2013-08-29 17:36 - 00000104 _____ C:\Documents and Settings\Administrator\Plocha\Zástupce (2) - Internet Explorer.lnk
2013-08-29 17:35 - 2013-08-29 17:35 - 00000104 _____ C:\Documents and Settings\Administrator\Plocha\Zástupce - Internet Explorer.lnk
2013-08-26 19:20 - 2013-08-26 19:20 - 00200276 _____ C:\Documents and Settings\Administrator\Dokumenty\cc_20130826_192017.reg
2013-08-26 18:48 - 2013-08-26 18:48 - 00000000 ____D C:\Program Files\CCleaner
2013-08-26 18:47 - 2013-08-26 18:23 - 10847639 _____ C:\Documents and Settings\Administrator\Plocha\cc-setup.exe
2013-08-15 16:32 - 2013-08-15 16:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$
2013-08-15 16:31 - 2013-08-15 16:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$
2013-08-15 16:31 - 2013-08-15 16:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$
2013-08-15 16:22 - 2013-08-15 16:25 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-08-15 16:19 - 2013-08-15 16:19 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$
2013-08-15 16:10 - 2013-08-15 16:10 - 00000175 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys.sum
2013-08-15 16:10 - 2013-08-15 16:10 - 00000175 _____ C:\WINDOWS\system32\Drivers\aswSP.sys.sum
2013-08-15 16:10 - 2013-08-15 16:10 - 00000175 _____ C:\WINDOWS\system32\Drivers\aswSnx.sys.sum
2013-08-03 12:38 - 2013-08-03 12:38 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$
2013-08-03 12:37 - 2013-08-03 12:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$
2013-08-03 12:36 - 2013-08-03 12:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$
2013-08-03 12:35 - 2013-08-03 12:35 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$
2013-08-03 12:30 - 2013-08-03 12:30 - 00000000 ____D C:\Documents and Settings\Administrator\Data aplikací\Software602
2013-08-03 12:28 - 2013-08-03 12:29 - 00000000 ____D C:\WINDOWS\system32\602xps2pdf
2013-08-03 12:28 - 2013-08-03 12:28 - 00000000 ____D C:\Program Files\Common Files\Freedom Scientific

==================== One Month Modified Files and Folders =======

2013-09-01 14:05 - 2013-09-01 14:05 - 00000000 ____D C:\FRST
2013-09-01 14:05 - 2009-05-14 23:42 - 00000000 ____D C:\Documents and Settings\Administrator\Plocha
2013-09-01 14:04 - 2013-09-01 14:04 - 00364544 _____ (forum.viry.cz) C:\Documents and Settings\Administrator\Plocha\FRSTLauncher.exe
2013-09-01 14:04 - 2009-05-14 23:42 - 00000000 ___HD C:\DOCUME~1\ADMINI~1\LOCALS~1\Data aplikací
2013-09-01 14:03 - 2013-09-01 14:03 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-09-01 14:03 - 2010-06-28 11:38 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-09-01 14:03 - 2009-05-14 23:42 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2013-09-01 14:03 - 2006-05-05 00:50 - 01581431 _____ C:\WINDOWS\WindowsUpdate.log
2013-09-01 14:01 - 2013-09-01 14:01 - 00281816 _____ (Mozilla) C:\Documents and Settings\Administrator\Plocha\Firefox Setup Stub 23.0.1.exe
2013-09-01 14:00 - 2013-01-31 19:24 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-09-01 14:00 - 2012-08-16 18:20 - 00000316 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2013-09-01 14:00 - 2009-05-14 23:32 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl
2013-09-01 13:58 - 2010-03-11 21:28 - 00000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-01 13:58 - 2009-05-14 23:32 - 00000159 _____ C:\WINDOWS\wiadebug.log
2013-09-01 13:58 - 2009-05-14 23:32 - 00000048 _____ C:\WINDOWS\wiaservc.log
2013-09-01 13:58 - 2009-05-14 15:07 - 00000000 ____D C:\WINDOWS\SMINST
2013-09-01 13:58 - 2009-05-14 15:00 - 00000000 ____D C:\Documents and Settings\All Users\HPQLOG
2013-09-01 13:57 - 2006-05-16 18:07 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-09-01 01:34 - 2013-09-01 14:04 - 01085571 _____ (Farbar) C:\Documents and Settings\Administrator\Plocha\FRST.exe
2013-08-31 21:16 - 2009-05-14 23:42 - 00000000 ____D C:\Documents and Settings\Administrator
2013-08-31 21:16 - 2009-05-14 23:31 - 00032586 _____ C:\WINDOWS\SchedLgU.Txt
2013-08-31 21:16 - 2006-05-16 18:00 - 00000178 ___SH C:\Documents and Settings\Administrator\ntuser.ini
2013-08-31 21:13 - 2013-08-31 21:13 - 00006340 _____ C:\Documents and Settings\Administrator\Dokumenty\cc_20130831_211323.reg
2013-08-31 21:13 - 2009-05-14 23:42 - 00000000 ___RD C:\Documents and Settings\Administrator\Dokumenty
2013-08-31 21:12 - 2012-10-10 20:09 - 00000000 ____D C:\WINDOWS\Minidump
2013-08-31 20:33 - 2010-03-11 21:28 - 00000940 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-31 20:02 - 2009-05-14 23:42 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2013-08-31 15:37 - 2013-08-31 15:37 - 00000000 ____D C:\Documents and Settings\Administrator\Data aplikací\Malwarebytes
2013-08-31 15:37 - 2009-05-14 23:42 - 00000000 __RHD C:\Documents and Settings\Administrator\Data aplikací
2013-08-31 15:31 - 2013-08-31 15:31 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-08-31 15:24 - 2013-08-31 13:39 - 00000000 ____D C:\Documents and Settings\Administrator\Plocha\mbar
2013-08-31 13:39 - 2013-08-31 13:39 - 00048728 _____ (MalwareBytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2013-08-31 13:38 - 2013-08-29 20:14 - 00001066 _____ C:\Documents and Settings\Administrator\Plocha\Nový objekt - Textový dokument.txt
2013-08-31 13:37 - 2013-08-31 13:37 - 10285040 _____ (Malwarebytes Corporation ) C:\Documents and Settings\Administrator\Plocha\mbam-setup-1.75.0.1300.exe
2013-08-31 13:36 - 2013-08-31 13:36 - 12907592 _____ (Malwarebytes Corp.) C:\Documents and Settings\Administrator\Plocha\mbar-1.07.0.1005.exe
2013-08-31 13:36 - 2009-05-14 16:00 - 00000482 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{599704E7-84FD-4082-8793-FF57966970B6}.job
2013-08-31 13:33 - 2009-05-14 23:42 - 00000000 __SHD C:\Documents and Settings\NetworkService
2013-08-30 17:22 - 2013-08-30 17:07 - 00000000 ____D C:\Qoobox
2013-08-30 17:21 - 2013-08-30 17:21 - 00021200 _____ C:\ComboFix.txt
2013-08-30 17:20 - 2013-08-30 17:07 - 00000000 ____D C:\WINDOWS\erdnt
2013-08-30 17:18 - 2009-05-14 23:31 - 00000227 _____ C:\WINDOWS\system.ini
2013-08-30 17:16 - 2013-08-30 17:16 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.tmp.LOG
2013-08-30 17:16 - 2013-08-30 17:16 - 00000000 ____H C:\WINDOWS\system32\config\system.tmp.LOG
2013-08-30 17:16 - 2013-08-30 17:16 - 00000000 ____H C:\WINDOWS\system32\config\software.tmp.LOG
2013-08-30 17:16 - 2013-08-30 17:16 - 00000000 ____H C:\WINDOWS\system32\config\SAM.tmp.LOG
2013-08-30 17:16 - 2013-08-30 17:16 - 00000000 ____H C:\WINDOWS\system32\config\default.tmp.LOG
2013-08-30 17:16 - 2006-05-05 09:51 - 35389440 _____ C:\WINDOWS\system32\config\software.bak
2013-08-30 17:16 - 2006-05-05 00:50 - 05505024 _____ C:\WINDOWS\system32\config\system.bak
2013-08-30 17:16 - 2006-05-05 00:50 - 00524288 _____ C:\WINDOWS\system32\config\default.bak
2013-08-30 17:16 - 2006-05-05 00:50 - 00262144 _____ C:\WINDOWS\system32\config\SECURITY.bak
2013-08-30 17:16 - 2006-05-05 00:50 - 00262144 _____ C:\WINDOWS\system32\config\SAM.bak
2013-08-30 17:09 - 2013-08-30 17:09 - 00000000 _RSHD C:\cmdcons
2013-08-30 17:09 - 2009-05-14 23:32 - 00000327 __RSH C:\boot.ini
2013-08-30 17:07 - 2013-08-30 17:07 - 00000000 ___RD C:\Documents and Settings\Administrator\Nabídka Start\Programy\Nástroje pro správu
2013-08-30 17:07 - 2009-05-14 23:42 - 00000000 ___RD C:\Documents and Settings\Administrator\Nabídka Start\Programy
2013-08-30 17:02 - 2013-08-29 20:26 - 00000000 ____D C:\AdwCleaner
2013-08-30 16:32 - 2013-08-30 16:32 - 05114906 ____R (Swearware) C:\Documents and Settings\Administrator\Plocha\ComboFix.exe
2013-08-30 16:30 - 2013-08-29 19:35 - 00000000 ____D C:\Documents and Settings\Administrator\Dokumenty\Stažené soubory
2013-08-29 21:08 - 2013-08-29 20:52 - 00000000 ____D C:\Documents and Settings\Administrator\Plocha\RK_Quarantine
2013-08-29 20:55 - 2013-08-29 20:55 - 00002441 _____ C:\Documents and Settings\Administrator\Plocha\RKreport[0]_S_08292013_205524.txt
2013-08-29 20:15 - 2013-08-29 20:15 - 00000000 ____D C:\WINDOWS\ERUNT
2013-08-29 20:13 - 2013-08-29 20:13 - 01023533 _____ (Thisisu) C:\Documents and Settings\Administrator\Plocha\JRT.exe
2013-08-29 20:13 - 2013-08-29 20:13 - 00994642 _____ C:\Documents and Settings\Administrator\Plocha\adwcleaner.exe
2013-08-29 20:13 - 2013-08-29 20:13 - 00913408 _____ C:\Documents and Settings\Administrator\Plocha\RogueKiller.exe
2013-08-29 20:07 - 2013-01-31 19:24 - 00692104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-08-29 20:07 - 2013-01-31 19:24 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-08-29 19:57 - 2013-08-29 19:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$
2013-08-29 19:37 - 2013-08-29 19:37 - 00867240 _____ (Oracle Corporation) C:\WINDOWS\system32\npDeployJava1.dll
2013-08-29 19:37 - 2013-08-29 19:37 - 00263592 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2013-08-29 19:37 - 2013-08-29 19:37 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2013-08-29 19:37 - 2013-08-29 19:37 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2013-08-29 19:37 - 2013-08-29 19:37 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-08-29 19:37 - 2011-02-22 11:05 - 00789416 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll
2013-08-29 19:37 - 2009-05-14 14:55 - 00144896 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2013-08-29 19:37 - 2009-05-14 14:55 - 00000000 ____D C:\Program Files\Java
2013-08-29 19:37 - 2009-05-14 14:55 - 00000000 ____D C:\Program Files\Common Files\Java
2013-08-29 19:34 - 2013-08-29 19:33 - 00000000 ____D C:\rsit
2013-08-29 19:33 - 2013-08-29 19:33 - 00000000 ____D C:\Program Files\trend micro
2013-08-29 19:32 - 2013-08-29 19:31 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-08-29 19:31 - 2011-01-27 17:58 - 00000000 ____D C:\Program Files\Adobe
2013-08-29 17:36 - 2013-08-29 17:36 - 00000104 _____ C:\Documents and Settings\Administrator\Plocha\Zástupce (2) - Internet Explorer.lnk
2013-08-29 17:35 - 2013-08-29 17:35 - 00000104 _____ C:\Documents and Settings\Administrator\Plocha\Zástupce - Internet Explorer.lnk
2013-08-27 11:56 - 2013-09-01 14:05 - 00044923 _____ C:\Documents and Settings\Administrator\Plocha\logmodification.bat
2013-08-26 19:20 - 2013-08-26 19:20 - 00200276 _____ C:\Documents and Settings\Administrator\Dokumenty\cc_20130826_192017.reg
2013-08-26 19:17 - 2009-10-26 13:06 - 00000000 ____D C:\Program Files\PDFCreator
2013-08-26 18:48 - 2013-08-26 18:48 - 00000000 ____D C:\Program Files\CCleaner
2013-08-26 18:23 - 2013-08-26 18:47 - 10847639 _____ C:\Documents and Settings\Administrator\Plocha\cc-setup.exe
2013-08-22 20:44 - 2012-09-20 18:31 - 00000000 ____D C:\Documents and Settings\Administrator\Plocha\HŘBITOV EVIDENCE
2013-08-22 17:57 - 2009-05-14 14:46 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2013-08-15 16:43 - 2009-10-26 13:00 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-08-15 16:37 - 2012-09-20 18:32 - 00028672 _____ C:\Documents and Settings\Administrator\Plocha\Seznam narozeniny 2012.xls
2013-08-15 16:32 - 2013-08-15 16:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$
2013-08-15 16:31 - 2013-08-15 16:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$
2013-08-15 16:31 - 2013-08-15 16:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$
2013-08-15 16:25 - 2013-08-15 16:22 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-08-15 16:25 - 2009-05-14 15:51 - 00000000 ____D C:\WINDOWS\ie8updates
2013-08-15 16:22 - 2009-05-14 15:33 - 75778376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-08-15 16:19 - 2013-08-15 16:19 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$
2013-08-15 16:18 - 2006-05-05 00:29 - 01044904 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-08-15 16:10 - 2013-08-15 16:10 - 00000175 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys.sum
2013-08-15 16:10 - 2013-08-15 16:10 - 00000175 _____ C:\WINDOWS\system32\Drivers\aswSP.sys.sum
2013-08-15 16:10 - 2013-08-15 16:10 - 00000175 _____ C:\WINDOWS\system32\Drivers\aswSnx.sys.sum
2013-08-15 16:10 - 2013-03-07 14:05 - 00175176 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys
2013-08-15 16:10 - 2012-08-16 18:20 - 00770344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2013-08-15 16:10 - 2012-08-16 18:20 - 00369584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2013-08-15 16:10 - 2001-10-24 20:16 - 00002504 _____ C:\WINDOWS\system32\CONFIG.NT
2013-08-08 19:46 - 2009-10-26 13:25 - 00001018 _____ C:\WINDOWS\90307284.dk2
2013-08-08 19:43 - 2009-10-21 14:57 - 00005026 _____ C:\WINDOWS\90307284.dk1
2013-08-03 12:44 - 2009-05-14 16:49 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-08-03 12:44 - 2006-05-05 00:24 - 00334664 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-08-03 12:38 - 2013-08-03 12:38 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$
2013-08-03 12:37 - 2013-08-03 12:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$
2013-08-03 12:36 - 2013-08-03 12:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$
2013-08-03 12:35 - 2013-08-03 12:35 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$
2013-08-03 12:30 - 2013-08-03 12:30 - 00000000 ____D C:\Documents and Settings\Administrator\Data aplikací\Software602
2013-08-03 12:30 - 2010-05-26 19:15 - 00000000 ____D C:\Documents and Settings\Administrator\Data aplikací\602XML
2013-08-03 12:29 - 2013-08-03 12:28 - 00000000 ____D C:\WINDOWS\system32\602xps2pdf
2013-08-03 12:28 - 2013-08-03 12:28 - 00000000 ____D C:\Program Files\Common Files\Freedom Scientific
2013-08-03 12:28 - 2009-08-04 14:42 - 00000000 ____D C:\Program Files\Common Files\soft602
2013-08-03 12:17 - 2009-05-14 14:50 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2013-08-03 01:48 - 2006-10-18 21:47 - 01543680 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmvdecod.dll

Files to move or delete:
====================
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\kqezudyo.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\is-8NMT2.tmp\mbam.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\is-8NMT2.tmp\_isetup\_shfoldr.dll

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe
[2004-08-18 00:49] - [2008-04-14 05:22] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1

C:\Windows\System32\winlogon.exe
[2004-08-18 00:49] - [2008-04-14 05:22] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea

C:\Windows\System32\svchost.exe
[2004-08-18 00:49] - [2008-04-14 05:22] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93

C:\Windows\System32\services.exe
[2004-08-18 00:49] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7

C:\Windows\System32\User32.dll
[2004-08-18 00:49] - [2008-04-14 05:22] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53

C:\Windows\System32\userinit.exe
[2004-08-18 00:49] - [2008-04-14 05:22] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239

C:\Windows\System32\Drivers\volsnap.sys
[2004-08-18 00:44] - [2008-04-14 04:12] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1


==================== End Of Log ============================

kewin
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 27 srp 2004 08:36

Re: nestandardní chování PC

#13 Příspěvek od kewin »

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 01-09-2013
Ran by Administrator at 2013-09-01 14:06:13
Running from C:\Documents and Settings\Administrator\Plocha
Boot Mode: Normal
==========================================================


==================== Installed Programs =======================

2007 Microsoft Office system (Version: 12.0.6612.1000)
32 Bit HP BiDi Channel Components Installer (Version: 1.1.0.2)
ActivClient 6.1 x86 (Version: 6.1.100)
Adobe AIR (Version: 3.8.0.870)
Adobe Flash Player 11 ActiveX (Version: 11.8.800.94)
Adobe Flash Player 11 Plugin (Version: 11.8.800.94)
Adobe Reader XI (11.0.03) - Czech (Version: 11.0.03)
Aktualizace pro systém Windows XP (KB943729)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665)
Aktualizace systému Windows Internet Explorer 8 (KB2447568) (Version: 1)
Aktualizace systému Windows Internet Explorer 8 (KB969497) (Version: 1)
Aktualizace systému Windows Internet Explorer 8 (KB972636) (Version: 1)
Aktualizace systému Windows Internet Explorer 8 (KB973874) (Version: 1)
Aktualizace systému Windows Internet Explorer 8 (KB976662) (Version: 1)
Aktualizace systému Windows Internet Explorer 8 (KB976749) (Version: 1)
Aktualizace systému Windows Internet Explorer 8 (KB980182) (Version: 1)
Aktualizace systému Windows XP (KB2141007) (Version: 1)
Aktualizace systému Windows XP (KB2345886) (Version: 1)
Aktualizace systému Windows XP (KB2467659) (Version: 1)
Aktualizace systému Windows XP (KB2541763) (Version: 1)
Aktualizace systému Windows XP (KB2607712) (Version: 1)
Aktualizace systému Windows XP (KB2616676) (Version: 1)
Aktualizace systému Windows XP (KB2641690) (Version: 1)
Aktualizace systému Windows XP (KB2661254-v2) (Version: 2)
Aktualizace systému Windows XP (KB2718704) (Version: 1)
Aktualizace systému Windows XP (KB2736233) (Version: 1)
Aktualizace systému Windows XP (KB2749655) (Version: 1)
Aktualizace systému Windows XP (KB2863058) (Version: 1)
Aktualizace systému Windows XP (KB951978) (Version: 1)
Aktualizace systému Windows XP (KB955759) (Version: 1)
Aktualizace systému Windows XP (KB955839) (Version: 1)
Aktualizace systému Windows XP (KB967715) (Version: 1)
Aktualizace systému Windows XP (KB968389) (Version: 1)
Aktualizace systému Windows XP (KB971029) (Version: 1)
Aktualizace systému Windows XP (KB971737) (Version: 1)
Aktualizace systému Windows XP (KB973687) (Version: 1)
Aktualizace systému Windows XP (KB973815) (Version: 1)
Aktualizace zabezpečení aplikace Windows Media Player (KB2378111)
Aktualizace zabezpečení aplikace Windows Media Player (KB2834904)
Aktualizace zabezpečení aplikace Windows Media Player (KB2834904-v2)
Aktualizace zabezpečení aplikace Windows Media Player (KB911564)
Aktualizace zabezpečení aplikace Windows Media Player (KB952069)
Aktualizace zabezpečení aplikace Windows Media Player (KB954155)
Aktualizace zabezpečení aplikace Windows Media Player (KB968816)
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)
Aktualizace zabezpečení aplikace Windows Media Player (KB975558)
Aktualizace zabezpečení aplikace Windows Media Player (KB978695)
Aktualizace zabezpečení aplikace Windows Media Player 11 (KB936782)
Aktualizace zabezpečení aplikace Windows Media Player 11 (KB954154)
Aktualizace zabezpečení aplikace Windows Media Player 6.4 (KB925398)
Aktualizace zabezpečení aplikace Windows Media Player 9 (KB936782)
Aktualizace zabezpečení pro Microsoft Windows (KB2564958)
Aktualizace zabezpečení produktu Windows XP (KB941569)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2183461) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2360131) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2416400) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2482017) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2497640) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2510531) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2530548) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2544521) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2559049) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2586448) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2618444) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2647516) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2675157) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2699988) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2722913) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2744842) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2761465) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2792100) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2797052) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2799329) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2809289) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2817183) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2838727) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2846071) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2862772) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB969897) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB971961) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB972260) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB974455) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB976325) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB978207) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB981332) (Version: 1)
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB982381) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2079403) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2115168) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2121546) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2160329) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2229593) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2259922) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2279986) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2286198) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2296011) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2296199) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2347290) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2360937) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2387149) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2393802) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2412687) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2419632) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2423089) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2436673) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2440591) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2443105) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2476490) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2476687) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2478960) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2478971) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2479628) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2479943) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2481109) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2483185) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2485376) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2485663) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2503658) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2503665) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2506212) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2506223) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2507618) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2507938) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2508272) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2508429) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2509553) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2511455) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2524375) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2535512) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2536276) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2536276-v2) (Version: 2)
Aktualizace zabezpečení systému Windows XP (KB2544893) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2544893-v2) (Version: 2)
Aktualizace zabezpečení systému Windows XP (KB2555917) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2562937) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2566454) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2567053) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2567680) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2570222) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2570947) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2584146) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2585542) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2592799) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2598479) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2603381) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2618451) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2619339) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2620712) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2621440) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2624667) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2631813) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2633171) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2639417) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2641653) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2646524) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2647518) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2653956) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2655992) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2659262) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2660465) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2661637) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2676562) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2685939) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2686509) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2691442) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2695962) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2698365) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2705219) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2707511) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2709162) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2712808) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2718523) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2719985) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2723135) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2724197) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2727528) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2731847) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2753842) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2753842-v2) (Version: 2)
Aktualizace zabezpečení systému Windows XP (KB2757638) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2758857) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2761226) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2770660) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2778344) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2779030) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2780091) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2799494) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2802968) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2807986) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2808735) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2813170) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2813345) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2820197) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2820917) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2829361) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2834886) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2839229) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2845187) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2849470) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2850851) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2850869) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB2859537) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB923561) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB923789)
Aktualizace zabezpečení systému Windows XP (KB938464-v2) (Version: 2)
Aktualizace zabezpečení systému Windows XP (KB946648) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB950760) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB950762) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB950974) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB951066) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB951376-v2) (Version: 2)
Aktualizace zabezpečení systému Windows XP (KB951748) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB952004) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB952954) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB954600) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB955069) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956572) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956744) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956802) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956803) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956844) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB957097) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB958644) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB958687) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB958690) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB958869) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB959426) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB960225) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB960715) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB960803) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB960859) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB961371) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB961373) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB961501) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB963027) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB968537) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB969059) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB969947) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB970238) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB970430) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB971468) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB971486) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB971557) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB971633) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB971657) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB972270) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973346) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973354) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973507) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973525) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973869) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973904) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB974112) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB974318) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB974392) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB974571) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975025) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975467) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975560) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975561) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975562) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975713) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB977165-v2) (Version: 2)
Aktualizace zabezpečení systému Windows XP (KB977816) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB977914) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978037) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978251) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978262) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978338) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978542) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978601) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978706) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB979309) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB979482) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB979559) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB979683) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB979687) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB980195) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB980218) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB980232) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB980436) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB981322) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB981852) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB981957) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB981997) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB982132) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB982214) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB982665) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB982802) (Version: 1)
Altiris Software Virtualization Agent (Version: 2.1.2096)
avast! Free Antivirus (Version: 8.0.1489.0)
Balíček zprostředkovatele služby Microsoft Base Smart Card Cryptographic Service
BIOS Configuration for HP ProtectTools (Version: 4.00 C1)
BufferChm (Version: 100.0.170.000)
CCleaner (Version: 4.04)
Credential Manager for HP ProtectTools (Version: 4.0.7.1259)
CustomerResearchQFolder (Version: 1.00.0000)
Destination Component (Version: 100.0.0.0)
Device Access Manager for HP ProtectTools (Version: 3.0.0.12)
DeviceDiscovery (Version: 100.0.190.000)
DeviceManagementQFolder (Version: 1.00.0000)
DocMgr (Version: 100.0.201.000)
DocProc (Version: 10.0.0.0)
Drive Encryption for HP ProtectTools (Version: 4.0.11)
Důležitá aktualizace aplikace Windows Media Player 11 (KB959772)
EO - ActiveX
eSupportQFolder (Version: 1.00.0000)
File Sanitizer For HP ProtectTools (Version: 1.0.0.24)
Google Chrome (Version: 29.0.1547.62)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.5.4413.1752)
Google Update Helper (Version: 1.3.21.153)
GPBaseService (Version: 100.0.187.000)
GPBaseService2 (Version: 130.0.371.000)
High Definition Audio - KB888111 (Version: 20040219.000000)
HP Backup and Recovery Manager (Version: 2.5C)
HP Color LaserJet CM1312 MFP Series 4.0 (Version: 4.0)
HP Customer Participation Program 10.0 (Version: 10.0)
HP Document Manager 1.0 (Version: 1.0)
HP Help and Support (Version: 4.2.0010)
HP Imaging Device Functions 10.0 (Version: 10.0)
HP JavaCard for HP ProtectTools (Version: 04.00.06.0006)
HP ProtectTools Security Manager (Version: 4.00 F6)
HP ProtectTools Security Manager Suite (Version: 04.00.06.0006)
HP Solution Center 13.0 (Version: 13.0)
HP Update (Version: 5.002.007.004)
hppCLJCM1312 (Version: 001.000.00111)
hppFaxDrvCM1312 (Version: 001.000.00115)
hppFaxUtilityCM1312 (Version: 001.000.00110)
hppFonts (Version: 001.001.00061)
hppManualsCM1312 (Version: 001.000.00111)
hppPQVideoCM1312 (Version: 001.000.00111)
hppQFolderCM1312 (Version: 1.00.0000)
HPProductAssistant (Version: 130.0.371.000)
hppscanCM1312 (Version: 001.000.00117)
hppScanToCM1312 (Version: 001.000.00110)
hppSendFaxCM1312 (Version: 001.000.00112)
hppTLBXFXCM1312 (Version: 001.016.00048)
hppusgCM1312 (Version: 000.000.00010)
HPSSupply (Version: 100.0.170.000)
hpzTLBXFX (Version: 004.017.00154)
Intel(R) Graphics Media Accelerator Driver
Intel(R) Network Connections 13.5.32.0 (Version: 13.5.32.0)
Intel® Active Management Technology
Java 7 Update 25 (Version: 7.0.250)
Java Auto Updater (Version: 2.1.9.5)
Java(TM) 6 Update 30 (Version: 6.0.300)
Java(TM) 6 Update 7 (Version: 1.6.0.70)
JSignPdf 0.9.0 (Version: 0.9.0)
Malwarebytes Anti-Malware verze 1.75.0.1300 (Version: 1.75.0.1300)
MarketResearch (Version: 100.0.170.000)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Czech Language Pack (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2833941)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Czech Language Pack
Microsoft .NET Framework 3.0 Czech Language Pack (Version: 3.0.04506.30)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY (Version: 3.2.30729)
Microsoft .NET Framework 3.5 Language Pack SP1 - csy (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Office Access Runtime (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Outlook MUI (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Office Professional Hybrid 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Slovak) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (Czech) 2007 (Version: 12.0.4518.1025)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (Czech) 2007 (Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft Software Update for Web Folders (Czech) 12 (Version: 12.0.6612.1000)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Mozilla Firefox (2.0.0.15) (Version: 2.0.0.15 (en-US))
Mozilla Firefox (3.5.3) (Version: 3.5.3 (cs))
Mozilla Firefox 23.0.1 (x86 cs) (Version: 23.0.1)
Mozilla Maintenance Service (Version: 23.0.1)
MSVCSetup (Version: 1.00.0000)
MSXML 4.0 SP3 Parser (KB2721691) (Version: 4.30.2114.0)
MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0)
MSXML 4.0 SP3 Parser (KB973685) (Version: 4.30.2107.0)
MSXML 6 Service Pack 2 (KB954459) (Version: 6.20.1099.0)
MySQL Connector/ODBC 5.1 (Version: 5.1.8)
Oprava hotfix aplikace Windows Media Player 11 (KB939683)
Oprava Hotfix systému Windows XP (KB2158563) (Version: 1)
Oprava Hotfix systému Windows XP (KB2443685) (Version: 1)
Oprava Hotfix systému Windows XP (KB2570791) (Version: 1)
Oprava Hotfix systému Windows XP (KB2633952) (Version: 1)
Oprava Hotfix systému Windows XP (KB2756822) (Version: 1)
Oprava Hotfix systému Windows XP (KB2779562) (Version: 1)
Oprava Hotfix systému Windows XP (KB952117-v2) (Version: 2)
Oprava Hotfix systému Windows XP (KB952287) (Version: 1)
Oprava Hotfix systému Windows XP (KB961118) (Version: 1)
Oprava Hotfix systému Windows XP (KB970653-v3) (Version: 3)
Oprava Hotfix systému Windows XP (KB976098-v2) (Version: 2)
Oprava Hotfix systému Windows XP (KB979306) (Version: 1)
Oprava Hotfix systému Windows XP (KB981793) (Version: 1)
PDF Complete (Version: 3.5.22)
PDFCreator (Version: 0.9.8)
pdfforge Toolbar v7.4 (Version: 7.4)
Privacy Manager for HP ProtectTools (Version: 1.0.0.560)
SafeNet Borderless Security PK Client (Version: 7.0.2)
SafeNet iKey Driver v4.0.0.20 (Version: 4.0.0)
Scan (Version: 10.1.0.0)
Shop for HP Supplies (Version: 10.0)
Software602 Form Filler (Version: 4.52)
Software602 Form Filler rozšíření pro internetové prohlížeče (Version: 4.00)
SolutionCenter (Version: 130.0.373.000)
SoundMAX (Version: 5.10.01.5830)
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0)
Total Commander (Remove or Repair) (Version: 7.56a)
TrayApp (Version: 100.0.170.000)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2768023) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2817642) 32-Bit Edition
WebFldrs XP (Version: 9.50.7523)
WebReg (Version: 100.0.170.000)
Windows Genuine Advantage Notifications (KB905474) (Version: 1.9.0040.0)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2)
Windows Imaging Component (Version: 3.0.0.0)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Media Format 11 runtime
Windows Media Format SDK Hotfix - KB891122
Windows Presentation Foundation (Version: 3.0.6920.0)
Windows Presentation Foundation Language Pack (CSY) (Version: 3.0.6920.0)
Windows Search 4.0 (Version: 04.00.6001.503)
Windows XP Service Pack 3 (Version: 20080414.031517)
WinKDF
XML Paper Specification Shared Components Language Pack 1.0
XML Paper Specification Shared Components Pack 1.0


==================== Restore Points =========================

31-08-2013 19:00:55 Kontrolní bod systému

==================== Hosts content: ==========================

2009-05-14 23:31 - 2013-08-30 17:17 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\User_Feed_Synchronization-{599704E7-84FD-4082-8793-FF57966970B6}.job => C:\WINDOWS\system32\msfeedssync.exe

==================== Loaded Modules (whitelisted) =============

2008-07-23 14:03 - 2008-07-23 14:03 - 00076048 _____ (Bioscrypt Inc.) C:\WINDOWS\system32\APSHook.dll
2004-08-18 00:48 - 2008-04-14 05:18 - 00177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfime.ime
2007-11-27 17:41 - 2007-11-27 17:41 - 00109568 _____ (ActivIdentity) C:\WINDOWS\system32\ackpbsc.dll
2007-11-27 17:41 - 2007-11-27 17:41 - 00118784 _____ (ActivIdentity) C:\WINDOWS\system32\aclog.dll
2007-11-27 17:41 - 2007-11-27 17:41 - 00073216 _____ (ActivIdentity) C:\WINDOWS\system32\accrypto.dll
2007-11-27 17:42 - 2007-11-27 17:42 - 00909312 _____ (ActivIdentity) C:\WINDOWS\system32\ACLIBEAY.dll
2011-05-13 20:04 - 2011-05-13 20:04 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_150c9e8b\MFC80.DLL
2007-11-27 17:42 - 2007-11-27 17:42 - 00100864 _____ (ActivIdentity) C:\WINDOWS\system32\acevtsub.dll
2007-11-27 17:41 - 2007-11-27 17:41 - 00310272 _____ (ActivIdentity) C:\WINDOWS\system32\asphat32.dll
2007-11-27 17:41 - 2007-11-27 17:41 - 00032256 _____ (ActivIdentity) C:\WINDOWS\system32\acerrmes.dll
2007-11-27 17:41 - 2007-11-27 17:41 - 00087040 _____ (ActivIdentity) C:\WINDOWS\system32\aspcom.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCARDDLG.dll
2007-11-27 17:41 - 2007-11-27 17:41 - 00064512 _____ (ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\Resources\Localized\acerrmrc.dll
2006-03-02 11:00 - 2006-03-02 11:00 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFC42LOC.DLL
2007-11-27 17:41 - 2007-11-27 17:41 - 00042496 _____ (ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\Resources\Localized\asphatrc.dll
2007-09-13 14:21 - 2007-09-13 14:21 - 00061440 _____ (SafeNet, Inc.) C:\WINDOWS\system32\DkWLNP.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00158992 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll
2009-05-14 15:00 - 2005-01-19 19:25 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVCR70.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00685328 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\bin\itmsg.dll
2009-03-10 22:18 - 2009-03-10 22:18 - 00265096 ____N (Microsoft Corporation) C:\WINDOWS\system32\WgaLogon.dll
2007-11-27 17:40 - 2007-11-27 17:40 - 00286720 _____ (ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acunlock.dll
2007-11-27 17:40 - 2007-11-27 17:40 - 00235520 _____ (ActivIdentity) C:\WINDOWS\system32\aipingui.dll
2007-11-27 17:41 - 2007-11-27 17:41 - 00114688 _____ () C:\WINDOWS\system32\aicext.dll
2007-11-27 17:40 - 2007-11-27 17:40 - 00253440 _____ (ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\Resources\Localized\aipinguirc.dll
2007-11-27 17:42 - 2007-11-27 17:42 - 00206848 _____ (ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\resources\acCobAPIrc.dll
2007-11-27 17:40 - 2007-11-27 17:40 - 00056832 _____ (ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\Resources\Localized\acunlockrc.dll
2008-08-06 15:23 - 2008-08-06 15:23 - 00069632 _____ (Hewlett-Packard Limited) C:\WINDOWS\system32\DeviceNP.dll
2008-07-08 10:30 - 2008-07-08 10:30 - 00152064 _____ (Hewlett-Packard Limited) C:\WINDOWS\system32\SSREGLIB.dll
2008-04-30 10:39 - 2008-04-30 10:39 - 00021504 _____ (Hewlett-Packard Limited) C:\WINDOWS\system32\HPPTLog.dll
2008-07-23 14:04 - 2008-07-23 14:04 - 00285456 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\TrayIcon.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00187664 _____ (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\IAM\bin\brand.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00137488 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\AsChnl.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00480016 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\HPPlugIn.dll
2013-04-22 05:45 - 2013-04-22 05:45 - 05920408 _____ (Microsoft Corporation) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
2013-08-03 12:35 - 2013-08-03 12:35 - 11497984 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\b14359470744c840c59fbe4e58034fd6\mscorlib.ni.dll
2008-08-19 17:03 - 2008-08-19 17:03 - 01433600 _____ (Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHostServices.dll
2012-10-03 07:44 - 2012-10-03 07:44 - 00364640 _____ (Microsoft Corporation) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
2008-07-25 11:17 - 2008-07-25 11:17 - 00575496 _____ (Microsoft Corporation) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
2013-08-03 12:34 - 2013-08-15 16:18 - 02052096 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll
2013-08-03 12:34 - 2013-08-15 16:18 - 03194880 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
2013-08-03 12:34 - 2013-08-15 16:18 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
2009-05-14 15:37 - 2009-05-14 15:37 - 00303104 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_cs_b77a5c561934e089\mscorlib.resources.dll
2009-05-14 15:37 - 2009-05-14 15:37 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.Configuration.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Configuration.resources.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00076048 _____ (Bioscrypt Inc.) C:\WINDOWS\System32\APSHook.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00158992 _____ (Bioscrypt Inc.) c:\program files\hewlett-packard\iam\bin\aswlnpkg.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00685328 _____ (Bioscrypt Inc.) c:\program files\hewlett-packard\iam\bin\itmsg.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00137488 _____ (Bioscrypt Inc.) c:\program files\hewlett-packard\iam\bin\aschnl.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\System32\adsldp.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00421136 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ItVCard.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00162576 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ItReports.DLL
2008-07-23 14:03 - 2008-07-23 14:03 - 00232208 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ItAPS.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00154896 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\BioAuthSrv.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00718096 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ItDac.DLL
2004-08-18 00:49 - 2008-04-14 05:21 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\System32\adsnt.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\System32\RASSAPI.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00382736 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ItAuth.dll
2004-07-17 20:39 - 2004-07-17 20:39 - 00175224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xenroll.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00640272 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\AuthWiz.dll
2008-07-23 14:04 - 2008-07-23 14:04 - 00255248 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\TpmAuth.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00191760 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ItVCServer.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00131856 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ItVCClient.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00183568 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\NetAdmin.dll
2004-08-18 00:49 - 2009-03-08 04:32 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\advpack.dll
2004-08-18 00:49 - 2012-06-02 15:19 - 00577048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00380528 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswCmnBS.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00116848 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswCmnOS.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00206440 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswCmnIS.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00943408 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\ashBase.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00051952 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngLdr.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00089520 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\1029\Base.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00273408 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\ashServ.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00682824 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswAux.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00156512 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\ashTask.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00062752 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\ashTaskEx.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00226552 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswLog.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00476800 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswSqLt.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00260536 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswProperty.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00149272 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\AavmRpch.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00902720 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\Aavm4h.dll
2013-03-07 14:05 - 2013-05-09 10:58 - 00073064 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\avastIP.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00014376 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswIdle.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00114264 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswDld.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00274920 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswStrm.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00064336 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\AhResBhv.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00035448 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\AhResJs.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00054536 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\AhResMai.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00090592 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\AhResMes.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00221384 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\AhResNS.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00091616 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\AhResP2P.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00087520 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\AhResStd.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00078208 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\AhResWS.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00395960 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\ashMaiSv.dll
2013-03-07 14:05 - 2013-04-02 15:14 - 00265216 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Program Files\AVAST Software\Avast\SSLEAY32.dll
2013-03-07 14:05 - 2013-04-02 15:14 - 01169408 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Program Files\AVAST Software\Avast\LIBEAY32.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00371752 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\ashWebSv.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\security.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00048856 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\ashWsFtr.dll
2013-03-07 14:05 - 2013-05-09 10:58 - 00932072 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswpatchmgt.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgrprxy.dll
2013-09-01 14:02 - 2013-08-22 18:44 - 01334296 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\aswEngin.dll
2013-09-01 14:02 - 2013-08-19 15:26 - 00304272 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\aswCmnIS.dll
2013-09-01 14:02 - 2013-07-23 14:23 - 00119408 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\aswCmnOS.dll
2013-09-01 14:02 - 2013-08-19 15:26 - 00402128 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\aswCmnBS.dll
2013-09-01 14:02 - 2013-08-22 18:44 - 00141544 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\aswScan.dll
2013-09-01 14:02 - 2013-07-12 16:39 - 00341376 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\aswRep.dll
2013-09-01 14:02 - 2013-04-09 23:03 - 00430968 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\aswFiDb.dll
2013-09-01 14:03 - 2013-09-01 10:08 - 02098176 _____ () C:\Program Files\AVAST Software\Avast\defs\13090100\algo.dll
2013-09-01 14:02 - 2013-08-30 10:30 - 00390816 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\swhealthex.dll
2013-09-01 14:02 - 2013-07-17 15:57 - 00047832 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\arPot.dll
2009-08-04 15:50 - 2007-04-01 18:19 - 00013385 ____N (Hewlett-Packard Company) C:\WINDOWS\system32\hppfaxprintermon5.dll
2008-03-03 11:39 - 2008-03-03 11:39 - 00200704 _____ (Hewlett Packard) C:\WINDOWS\system32\HpTcpMon.dll
2008-03-03 11:40 - 2008-03-03 11:40 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\HPTcpMUI.dll
2006-10-03 10:55 - 2006-10-03 10:55 - 00139264 _____ (Hewlett Packard) C:\WINDOWS\system32\hpzjrd01.dll
2008-03-03 11:38 - 2008-03-03 11:38 - 00118784 _____ (Hewlett Packard) C:\WINDOWS\system32\hptcpmib.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mgmtapi.dll
2004-08-18 00:49 - 2008-04-14 05:22 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsnmp32.dll
2009-05-14 14:59 - 2008-04-07 07:11 - 00015368 _____ (PDF Complete, Inc.) C:\WINDOWS\system32\pdfc_port.dll
2009-10-26 13:06 - 2001-10-28 18:42 - 00116224 _____ () C:\WINDOWS\system32\pdfcmnnt.dll
2012-07-25 11:49 - 2012-07-25 11:49 - 00034656 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\602localmon.dll
2009-08-04 15:48 - 2008-01-16 18:45 - 00241664 _____ (Hewlett-Packard Corporation) C:\WINDOWS\System32\spool\PRTPROCS\W32X86\hpzpp5k4.DLL
2009-05-14 14:50 - 2008-07-06 14:06 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\System32\spool\PRTPROCS\W32X86\filterpipelineprintproc.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00685328 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\itmsg.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00214288 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ASWallet.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00664848 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ItSSO.dll
2008-07-23 14:04 - 2008-07-23 14:04 - 00134416 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\RasAdmin.dll
2008-07-23 14:04 - 2008-07-23 14:04 - 00142608 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\PkiAdmin.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00781072 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\BioAuth.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00080656 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ItClient.dll
2008-07-23 14:04 - 2008-07-23 14:04 - 00266000 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\SSOMngr.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00193808 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ASBioATFSS.dll
2008-07-23 14:03 - 2008-07-23 14:03 - 00328976 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\ittal.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\scarddlg.dll
2008-07-23 14:04 - 2008-07-23 14:04 - 00098064 _____ (Bioscrypt Inc.) C:\Program Files\Hewlett-Packard\IAM\Bin\STEngine.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00121968 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\ashShell.dll
2008-05-26 22:19 - 2009-05-24 22:41 - 00304128 ____N (Microsoft Corporation) C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll
2007-11-27 17:42 - 2007-11-27 17:42 - 00043008 _____ (ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\resources\accocarc.dll
2013-08-15 16:19 - 2013-08-15 16:19 - 07977984 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\10df39542df7d48462451fc39bce8418\System.ni.dll
2013-08-15 16:21 - 2013-08-15 16:21 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\15fd2d2f4e709154b44187a6915db244\System.ServiceProcess.ni.dll
2013-08-15 16:19 - 2013-08-15 16:19 - 05462016 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\f93600ac836b9140e1df13bb0f6bfccf\System.Xml.ni.dll
2009-05-14 15:37 - 2009-05-14 15:37 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll
2009-05-14 15:37 - 2009-05-14 15:37 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.resources\2.0.0.0_cs_b77a5c561934e089\System.resources.dll
2013-08-15 16:25 - 2013-08-15 16:25 - 00998400 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\cf3c9d1496acdcb836853e59fe20223b\System.Management.ni.dll
2008-07-25 11:17 - 2008-07-25 11:17 - 00037896 _____ (Microsoft Corporation) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
2013-08-15 16:19 - 2013-08-15 16:19 - 00978944 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\14d1a28674a9f78c5759e7dcf74a13fd\System.Configuration.ni.dll
2009-05-14 15:37 - 2009-05-14 15:37 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.Xml.resources\2.0.0.0_cs_b77a5c561934e089\System.Xml.resources.dll
2008-08-19 17:03 - 2008-08-19 17:03 - 00007168 _____ ( ) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Interop.PTHstServsLib.dll
2008-08-19 16:57 - 2008-08-19 16:57 - 00057344 _____ (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTStrings.dll
2008-08-19 16:58 - 2008-08-19 16:58 - 01216512 _____ (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\HPjCard.dll
2007-11-27 17:41 - 2007-11-27 17:41 - 00169984 _____ (ActivIdentity) C:\WINDOWS\system32\acomx.dll
2007-11-27 17:41 - 2007-11-27 17:41 - 00141824 _____ (ActivIdentity) C:\WINDOWS\system32\acbsi21.dll
2008-08-19 17:03 - 2008-08-19 17:03 - 00005632 _____ ( ) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Interop.HPQWMIEXLib.dll
2013-08-15 16:21 - 2013-08-15 16:21 - 00771584 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\f4ea3ea9bbe98bbc32c6def83bd2962d\System.Runtime.Remoting.ni.dll
2008-08-06 15:23 - 2008-08-06 15:23 - 00425984 _____ (Hewlett-Packard Ltd) C:\Program Files\Hewlett-Packard\DeviceAccessManager\0009\PTDMLiteResource.dll
2008-08-06 15:19 - 2008-08-06 15:19 - 00294912 _____ () C:\WINDOWS\system32\flcdlmsg.dll
2009-05-14 15:37 - 2009-05-14 15:37 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_cs_b77a5c561934e089\System.Runtime.Remoting.resources.dll
2013-08-15 16:20 - 2013-08-15 16:20 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\3b34cb206ab0cec687c3730b14cdff57\System.Drawing.ni.dll
2013-08-15 16:20 - 2013-08-15 16:20 - 12434432 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\a12a09aaa2c560a808dea7eaba5040c1\System.Windows.Forms.ni.dll
2007-11-06 21:16 - 2007-11-06 21:16 - 00139264 _____ (Hewlett-Packard Co.) c:\program files\hp\digital imaging\bin\hpqddsvc.dll
2007-11-06 21:16 - 2007-11-06 21:16 - 00184320 _____ (Hewlett-Packard Co.) c:\program files\hp\digital imaging\bin\hpqddcmn.dll
2009-05-21 20:21 - 2009-05-21 20:21 - 00248832 _____ (Hewlett-Packard Co.) c:\program files\hp\digital imaging\bin\hpqcxs08.dll
2004-08-18 00:49 - 2009-03-06 16:23 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcbcp.dll
2009-11-07 01:07 - 2009-11-07 01:07 - 00049488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netfxperf.dll
2008-07-25 11:17 - 2008-07-25 11:17 - 00088584 _____ (Microsoft Corporation) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\perfcounter.dll
2008-07-25 11:17 - 2008-07-25 11:17 - 00089608 _____ (Microsoft Corporation) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CorperfmonExt.dll
2008-07-25 11:16 - 2008-07-25 11:16 - 00033800 _____ (Microsoft Corporation) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_perf.dll
2013-04-03 01:00 - 2013-04-03 01:00 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
2003-03-05 05:02 - 2003-03-05 05:02 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MSVCR71.dll
2008-05-26 22:17 - 2008-05-26 22:17 - 00060416 ____N (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2013-01-03 23:40 - 2013-01-03 23:40 - 03019376 _____ (Microsoft Corporation) C:\PROGRA~1\MICROS~2\Office12\OLMAPI32.DLL
2012-06-11 23:33 - 2012-06-11 23:33 - 17323640 _____ (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\office12\mso.dll
2001-10-24 21:25 - 2008-04-14 05:21 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfnet.dll
2001-10-24 21:25 - 2001-10-24 21:25 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\pschdprf.dll
2001-10-24 21:25 - 2001-10-24 21:25 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\TRAFFIC.dll
2001-10-24 21:25 - 2001-10-24 21:25 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\System32\rsvpperf.dll
2001-10-24 21:25 - 2001-10-24 21:25 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapiperf.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Perfctrs.dll
2001-10-24 21:25 - 2001-10-24 21:25 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll
2001-10-24 21:25 - 2001-10-24 21:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\UTILDLL.dll
2004-08-18 00:49 - 2008-04-14 05:22 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbem\wmiaprpl.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\loadperf.dll
2001-10-24 21:25 - 2001-10-24 21:25 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\System32\rasctrs.dll
2009-05-14 23:43 - 2008-06-27 10:10 - 00106496 _____ (Intel Corporation) C:\WINDOWS\system32\hccutils.DLL
2009-05-14 23:43 - 2008-06-27 10:10 - 00051712 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.dll
2009-05-14 23:43 - 2008-06-27 10:14 - 00253952 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrCSY.lrc
2009-05-14 23:43 - 2008-06-27 10:09 - 05697536 _____ (Intel Corporation) C:\WINDOWS\system32\igfxress.dll
2009-05-14 23:43 - 2008-06-27 10:10 - 00212992 _____ (Intel Corporation) C:\WINDOWS\system32\igfxdev.dll
2006-11-08 16:35 - 2006-11-08 16:35 - 00043520 _____ (Hewlett-Packard) c:\windows\system32\hpzinw12.dll
2006-11-08 16:35 - 2006-11-08 16:35 - 00053248 _____ (Hewlett-Packard) c:\windows\system32\hpzipm12.dll
2004-08-18 00:49 - 2008-04-14 05:22 - 00334336 _____ (Microsoft Corporation) c:\windows\system32\wiaservc.dll
2009-08-04 15:47 - 2007-10-24 21:18 - 00729088 ____R (Hewlett-Packard) C:\WINDOWS\system32\hpxp1312.dll
2009-08-04 15:47 - 2007-12-08 01:26 - 00757760 ____R (Hewlett-Packard) C:\WINDOWS\system32\hpptsp04.dll
2009-05-14 14:56 - 2008-07-19 12:40 - 00069632 _____ (Intel Corporation) C:\Program Files\Common Files\Intel\Privacy Icon\UNS\StatusStrings.dll
2009-05-14 14:56 - 2008-07-19 12:40 - 01892352 _____ (Apache Software Foundation) C:\Program Files\Common Files\Intel\Privacy Icon\UNS\xerces-c_2_7.dll
2009-05-14 23:30 - 2008-05-13 16:35 - 00290816 _____ (Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\SMWDMIF.dll
2004-08-18 00:49 - 2011-02-08 15:33 - 00978944 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFC42.DLL
2009-05-14 14:56 - 2008-07-19 12:40 - 00065536 _____ (Intel Corporation) C:\Program Files\Common Files\Intel\Privacy Icon\cs-CZ\PrivacyIconClient.resources.dll
2009-05-14 15:37 - 2009-05-14 15:37 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_cs_b77a5c561934e089\System.Windows.Forms.resources.dll
2009-05-14 15:37 - 2009-05-14 15:37 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.Drawing.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Drawing.resources.dll
2008-05-26 22:21 - 2008-05-26 22:21 - 01418240 ____N (Microsoft Corporation) C:\WINDOWS\system32\MSSRCH.DLL
2008-05-26 22:22 - 2008-05-26 22:22 - 00225280 ____N (Microsoft Corporation) C:\WINDOWS\system32\cs-cz\tQuery.dll.mui
2008-05-26 22:17 - 2008-05-26 22:17 - 00034816 ____N (Microsoft Corporation) C:\WINDOWS\system32\msscb.dll
2008-06-27 20:16 - 2008-06-27 20:16 - 00949552 _____ (Hewlett-Packard) C:\Program Files\Hewlett-Packard\BIOS Configuration for HP ProtectTools\HPWMIBIOSSettings.dll
2008-08-07 16:22 - 2008-08-07 16:22 - 02255448 _____ (SafeBoot International) C:\Program Files\Hewlett-Packard\Drive Encryption\SbHpFve.dll
2008-02-22 16:36 - 2008-02-22 16:36 - 00483328 _____ (SafeBoot International) C:\Program Files\Hewlett-Packard\Drive Encryption\SbUILib.dll
2008-06-26 16:41 - 2008-06-26 16:41 - 00654400 _____ (DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\Privacy Manager Sign and Chat\Bin\DpPrivSuiteCfg.dll
2009-05-14 15:01 - 2008-10-14 16:58 - 14364672 _____ (Hewlett-Packard) C:\Program Files\Hewlett-Packard\File Sanitizer\PTPMPlugin.dll
2008-08-06 15:22 - 2008-08-06 15:22 - 00372736 _____ (Hewlett-Packard Ltd) C:\Program Files\Hewlett-Packard\DeviceAccessManager\ptdmlitemanager.dll
2008-08-07 12:25 - 2008-08-07 12:25 - 00425984 _____ (Hewlett-Packard Ltd) C:\Program Files\Hewlett-Packard\DeviceAccessManager\PTDMInformationStore.dll
2007-09-13 14:15 - 2007-09-13 14:15 - 00081920 _____ (SafeNet, Inc.) C:\WINDOWS\system32\dklog.dll
2008-08-01 09:46 - 2008-08-01 09:46 - 00069632 _____ () C:\Program Files\HP\ToolBoxFX\bin\HPTools.dll
2008-08-01 09:46 - 2008-08-01 09:46 - 00069632 _____ () C:\Program Files\HP\ToolBoxFX\bin\AppConstants.dll
2008-08-01 09:46 - 2008-08-01 09:46 - 00593920 _____ () C:\Program Files\HP\ToolBoxFX\bin\HPAppTools.dll
2008-08-01 09:46 - 2008-08-01 09:46 - 00126976 _____ () C:\Program Files\HP\ToolBoxFX\bin\HPToolkit.dll
2013-08-15 16:20 - 2013-08-15 16:20 - 01801216 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Deployment\863a9c512a81536e87b22e3d666c56bb\System.Deployment.ni.dll
2009-05-14 15:37 - 2009-05-14 15:37 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\assembly\GAC_MSIL\System.Deployment.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Deployment.resources.dll
2008-08-01 09:46 - 2008-08-01 09:46 - 00040960 _____ () C:\Program Files\HP\ToolBoxFX\bin\Enumeration.dll
2013-08-15 16:20 - 2013-08-15 16:20 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\a95e0af6fa5d2e8ffd5e0091f6513271\System.Runtime.Serialization.Formatters.Soap.ni.dll
2008-08-01 09:47 - 2008-08-01 09:47 - 00102400 _____ () C:\Program Files\HP\ToolBoxFX\bin\HPFaxUtilities.dll
2008-08-01 09:47 - 2008-08-01 09:47 - 00552960 _____ () C:\Program Files\HP\ToolBoxFX\bin\Alerts.dll
2008-08-01 09:46 - 2008-08-01 09:46 - 00016384 _____ () C:\Program Files\HP\ToolBoxFX\bin\HPStreamsInterface.dll
2009-08-04 15:48 - 2007-07-16 15:29 - 00059928 _____ (Hewlett-Packard) C:\WINDOWS\system32\FXCompChannel.dll
2008-07-31 14:37 - 2008-07-31 14:37 - 00086016 _____ () C:\Program Files\HP\ToolBoxFX\bin\nativeutils.dll
2007-09-13 14:21 - 2007-09-13 14:21 - 00024576 _____ () C:\Program Files\SafeNet\BSecClient\Res\SNAXCmn.dll
2007-09-13 14:21 - 2007-09-13 14:21 - 00024576 _____ () C:\Program Files\SafeNet\BSecClient\Res\SNAX0409.dll
2007-09-13 14:22 - 2007-09-13 14:22 - 00233472 _____ () C:\WINDOWS\system32\DKAXCIP.dll
2007-09-13 14:15 - 2007-09-13 14:15 - 00200704 _____ (SafeNet, Inc.) C:\WINDOWS\system32\DKcert.dll
2007-03-09 13:06 - 2007-03-09 13:06 - 00856064 _____ () C:\WINDOWS\system32\BSEAY32.dll
2007-09-13 14:16 - 2007-09-13 14:16 - 01028096 _____ (SafeNet, Inc.) C:\WINDOWS\system32\dkck201.dll
2007-09-13 14:17 - 2007-09-13 14:17 - 00274432 _____ (SafeNet, Inc.) C:\WINDOWS\system32\DKTools.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00038032 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswUtil.dll
2011-04-18 22:51 - 2011-04-18 22:51 - 03781960 _____ (Microsoft Corporation) C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_028bc148\mfc90u.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 02105248 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswAra.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00206976 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\aswData.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00254856 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\1029\UILangRes.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 06449776 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\CommonRes.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsldp.dll
2013-09-01 14:02 - 2013-08-19 15:26 - 00042688 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\defs\13090100\uiExt.dll
2004-08-18 00:48 - 2010-01-29 16:45 - 00307260 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\l3codeca.acm
2007-10-14 20:38 - 2007-10-14 20:38 - 00159744 _____ (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpquio08.dll
2007-10-14 20:38 - 2007-10-14 20:38 - 00047616 _____ (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.rsc
2007-10-14 20:38 - 2007-10-14 20:38 - 00098304 _____ (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqtao08.dll
2008-01-03 20:24 - 2008-01-03 20:24 - 00077824 _____ (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpotradd.dll
2007-10-14 20:43 - 2007-10-14 20:43 - 00303104 _____ (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqmif08.dll
2009-05-21 20:05 - 2009-05-21 20:05 - 00326144 _____ (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqrif08.dll
2007-11-06 21:16 - 2007-11-06 21:16 - 00061440 _____ (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqddusr.dll
2007-11-06 21:16 - 2007-11-06 21:16 - 00184320 _____ (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqddcmn.dll
2007-10-14 20:43 - 2007-10-14 20:43 - 00405504 _____ (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqusg.dll
2008-05-26 22:19 - 2008-05-26 22:19 - 00143872 ____N (Microsoft Corporation) C:\WINDOWS\system32\uncdms.dll
2008-05-26 22:19 - 2008-05-26 22:19 - 00273408 ____N (Microsoft Corporation) C:\WINDOWS\system32\oeph.dll
2008-05-26 22:18 - 2009-05-25 00:24 - 00350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2006-03-02 11:00 - 2006-03-02 11:00 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\MAPI32.dll
2008-05-26 22:22 - 2008-05-26 22:22 - 00006656 ____N (Microsoft Corporation) C:\Program Files\Windows Desktop Search\cs-cz\WindowsSearchRes.dll.mui
2008-05-26 22:19 - 2008-05-26 22:19 - 00124928 ____N (Microsoft Corporation) C:\Program Files\Windows Desktop Search\WindowsSearchRes.dll
2008-05-26 22:18 - 2008-05-26 22:18 - 00259584 ____N (Microsoft Corporation) C:\Program Files\Windows Desktop Search\WdsMktTools.dll
2004-08-18 00:49 - 2010-01-29 17:01 - 01315328 _____ (Microsoft Corporation) C:\Program Files\Outlook Express\msoe.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSOERT2.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSOEACCT.dll
2004-08-18 00:49 - 2011-10-10 16:22 - 00692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\INETCOMM.dll
2001-10-24 21:22 - 2001-10-24 21:22 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\acctres.dll
2004-08-18 00:48 - 2008-04-14 04:24 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetres.dll
2004-08-18 00:48 - 2008-04-14 04:28 - 02481664 _____ (Microsoft Corporation) C:\Program Files\Outlook Express\msoeres.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msident.dll
2001-10-24 21:23 - 2001-10-24 21:23 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msidntld.dll
2004-08-18 00:49 - 2008-04-14 05:21 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PSTOREC.DLL
2004-08-18 00:49 - 2008-04-14 05:21 - 00086528 _____ (Microsoft Corporation) C:\Program Files\Common Files\System\directdb.dll
2012-08-16 18:20 - 2013-05-09 10:58 - 00246592 _____ (AVAST Software) C:\Program Files\AVAST Software\Avast\snxhk.dll
2008-05-26 22:19 - 2008-05-26 22:19 - 00131072 ____N (Microsoft Corporation) C:\WINDOWS\system32\UNCPH.dll
2009-03-08 04:32 - 2013-07-26 04:48 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll

==================== Alternate Data Streams (whitelisted) ==========

AlternateDataStreams: C:\Documents and Settings\Administrator\Plocha\Czech POINT.url:favicon

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/31/2013 09:06:48 PM) (Source: Userenv) (User: NT AUTHORITY)
Description: Systém Windows nemůže uvolnit soubor registru. Nebyla uvolněna paměť používaná registrem. To je často způsobeno tím, že jsou služby spuštěny pomocí uživatelského účtu. Zkuste služby konfigurovat pro spuštění pomocí účtu místní nebo síťové služby. Pokud problém přetrvává, obraťte se na správce.


DETAIL - Vstupně-výstupní operace inicializovaná registrem se nezdařila. Registr nemohl přečíst nebo zapsat jeden ze souborů, které obsahují systémovou bitovou kopii registru.

Error: (08/31/2013 04:55:36 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace souboru CAB kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Zvolený server nemůže provést požadovanou operaci.

Error: (08/31/2013 04:55:36 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace souboru CAB kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Zvolený server nemůže provést požadovanou operaci.

Error: (08/31/2013 04:55:36 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace souboru CAB kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Zvolený server nemůže provést požadovanou operaci.

Error: (08/31/2013 04:55:36 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace souboru CAB kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Zvolený server nemůže provést požadovanou operaci.

Error: (08/31/2013 04:55:36 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace souboru CAB kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Zvolený server nemůže provést požadovanou operaci.

Error: (08/31/2013 04:55:36 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace souboru CAB kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Zvolený server nemůže provést požadovanou operaci.

Error: (08/31/2013 04:55:36 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace souboru CAB kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Zvolený server nemůže provést požadovanou operaci.

Error: (08/31/2013 04:55:36 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace souboru CAB kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Zvolený server nemůže provést požadovanou operaci.

Error: (08/31/2013 04:55:36 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace souboru CAB kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootstl.cab> se nezdařilo. Chyba: Zvolený server nemůže provést požadovanou operaci.


System errors:
=============
Error: (09/01/2013 02:00:18 PM) (Source: Service Control Manager) (User: )
Description: Služba Služba HP CUE DeviceDiscovery přestala během spouštění reagovat.

Error: (08/31/2013 09:10:43 PM) (Source: Service Control Manager) (User: )
Description: Služba Služba HP CUE DeviceDiscovery přestala během spouštění reagovat.

Error: (08/31/2013 09:01:38 PM) (Source: 0) (User: )
Description: C:

Error: (08/31/2013 09:00:55 PM) (Source: 0) (User: )
Description: 0xC000009Achange.logHarddiskVolume1

Error: (08/31/2013 09:00:51 PM) (Source: Service Control Manager) (User: )
Description: Služba Adobe Flash Player Update Service neuspěla při spuštění v důsledku následující chyby:
%%1053

Error: (08/31/2013 09:00:51 PM) (Source: Service Control Manager) (User: )
Description: Vypršel časový limit (30000 milisekund) čekání na připojení služby Adobe Flash Player Update Service.

Error: (08/31/2013 08:01:11 PM) (Source: Service Control Manager) (User: )
Description: Služba Služba HP CUE DeviceDiscovery přestala během spouštění reagovat.

Error: (08/31/2013 05:00:09 PM) (Source: 0) (User: )
Description: 0xC000009Achange.logHarddiskVolume1

Error: (08/31/2013 04:57:22 PM) (Source: Service Control Manager) (User: )
Description: Služba HP ProtectTools Service neuspěla při spuštění v důsledku následující chyby:
%%1053

Error: (08/31/2013 04:57:22 PM) (Source: Service Control Manager) (User: )
Description: Vypršel časový limit (30000 milisekund) čekání na připojení služby HP ProtectTools Service.


Microsoft Office Sessions:
=========================
Error: (10/13/2012 01:05:34 AM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6662.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 42800 seconds with 120 seconds of active time. This session ended with a crash.


==================== Memory info ===========================

Percentage of memory in use: 38%
Total physical RAM: 1977.17 MB
Available physical RAM: 1215.69 MB
Total Pagefile: 3869.48 MB
Available Pagefile: 2506.86 MB
Total Virtual: 2047.88 MB
Available Virtual: 1943.72 MB

==================== Drives ================================

Drive c: (SYSTEM) (Fixed) (Total:216.87 GB) (Free:192.14 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (HP_RECOVERY) (Fixed) (Total:16.01 GB) (Free:10.27 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 233 GB) (Disk ID: 2BD2C32A)
Partition 1: (Active) - (Size=217 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=16 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: nestandardní chování PC

#14 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [PDF Complete] - C:\Program Files\PDF Complete\pdfsty.exe [318488 2008-04-07] (PDF Complete Inc)
    HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
    HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
    HKLM\...\Policies\Explorer: [HonorAutoRunSetting] 1
    HKLM\...\Policies\Explorer: [NoDriveAutoRun] 67108863
    HKLM\...\Policies\Explorer: [NoDriveTypeAutoRun] 323
    HKLM\...\Policies\Explorer: [NoDrives] 0
    HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2009-10-26] (Google Inc.)
    HKCU\...\Policies\Explorer: [NoDriveTypeAutoRun] 323
    HKCU\...\Policies\Explorer: [NoDriveAutoRun] 67108863
    HKCU\...\Policies\Explorer: [NoDrives] 0)
    Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Windows Search.lnk
    ShortcutTarget: Windows Search.lnk -> C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)
    
    HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
    SearchScopes: HKLM - DefaultScope value is missing.
    
    C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\kqezudyo.dll
    C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\is-8NMT2.tmp\mbam.dll
    C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\is-8NMT2.tmp\_isetup\_shfoldr.dll
    c:\windows\Tasks\Adobe Flash Player Updater.job
    c:\windows\Tasks\avast! Emergency Update.job
    c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    c:\windows\Tasks\User_Feed_Synchronization-{599704E7-84FD-4082-8793-FF57966970B6}.job
    
    Hosts:
    CMD: shutdown /r /f /t 2
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kewin
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 27 srp 2004 08:36

Re: nestandardní chování PC

#15 Příspěvek od kewin »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 03-09-2013
Ran by Administrator at 2013-09-03 17:33:06 Run:1
Running from C:\Documents and Settings\Administrator\Plocha
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [PDF Complete] - C:\Program Files\PDF Complete\pdfsty.exe [318488 2008-04-07] (PDF Complete Inc)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM\...\Policies\Explorer: [HonorAutoRunSetting] 1
HKLM\...\Policies\Explorer: [NoDriveAutoRun] 67108863
HKLM\...\Policies\Explorer: [NoDriveTypeAutoRun] 323
HKLM\...\Policies\Explorer: [NoDrives] 0
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2009-10-26] (Google Inc.)
HKCU\...\Policies\Explorer: [NoDriveTypeAutoRun] 323
HKCU\...\Policies\Explorer: [NoDriveAutoRun] 67108863
HKCU\...\Policies\Explorer: [NoDrives] 0)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Windows Search.lnk
ShortcutTarget: Windows Search.lnk -> C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
SearchScopes: HKLM - DefaultScope value is missing.

C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\kqezudyo.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\is-8NMT2.tmp\mbam.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\is-8NMT2.tmp\_isetup\_shfoldr.dll
c:\windows\Tasks\Adobe Flash Player Updater.job
c:\windows\Tasks\avast! Emergency Update.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\Tasks\User_Feed_Synchronization-{599704E7-84FD-4082-8793-FF57966970B6}.job

Hosts:
CMD: shutdown /r /f /t 2
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\PDF Complete => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\HonorAutoRunSetting => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDriveAutoRun => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDriveTypeAutoRun => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDrives => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\swg => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDriveTypeAutoRun => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDriveAutoRun => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDrives => Value deleted successfully.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Windows Search.lnk => Moved successfully.
C:\Program Files\Windows Desktop Search\WindowsSearch.exe => Moved successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value deleted successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Bar => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\kqezudyo.dll => Moved successfully.
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\is-8NMT2.tmp\mbam.dll => Moved successfully.
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\is-8NMT2.tmp\_isetup\_shfoldr.dll => Moved successfully.
c:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
c:\windows\Tasks\avast! Emergency Update.job => Moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
c:\windows\Tasks\User_Feed_Synchronization-{599704E7-84FD-4082-8793-FF57966970B6}.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

========= shutdown /r /f /t 2 =========


========= End of CMD: =========


==== End of Fixlog ====

Zamčeno