Padá Skype, PC je zpomalený
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Padá Skype, PC je zpomalený
Zdravím,
Právě se mi dostal k rukám notebook, kde má známá problém s tím, že po zahájení hovoru ve Skypu se po cca 10-15 sekundách vždy úplně shodí Skype. Zkoušel jsem updatovat Skype i Flash, ale žádná změna. Další problém byl s funkčností avastu, který nefungoval korektně, tak šel pryč a místo něj jsem nainstaloval Aviru. Ta mi zase pro změnu pořád hlásí pokus o změnu v registrech vyskakovaím oknem.
Přidávám proto log a prosím o kontrolu.
Děkuju moc!
Logfile of random's system information tool 1.09 (written by random/random)
Run by PC at 2013-10-01 09:33:24
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 285 GB (93%) free of 305 GB
Total RAM: 3071 MB (76% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:33:31, on 1.10.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
C:\Program Files\Motorola\Bluetooth\audiosrv.exe
C:\Program Files\Motorola\Bluetooth\obexsrv.exe
C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Motorola\Bluetooth\LEsrv.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
c:\program files\avira\antivir desktop\avscan.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\dllhost.exe
C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PC\Plocha\RSIT.exe
C:\Program Files\trend micro\PC.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lem,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lemet.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jexiqed.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jyryzu.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\vivewi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qojivir.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sigezy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wygesod.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\cunuc.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qewic.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\tyzol.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\mevopy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xylul.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\dukyp.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\pyrynoz.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xopowim.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hiqizo.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sybemy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\kytel.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hozoro.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wydip.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\zekefi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\musyj.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1
O2 - BHO: Avira SearchFree Toolbar BHO - {41564952-412D-5637-00A7-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll" (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll" (file missing)
O4 - HKLM\..\Run: [BTMTrayAgent] rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [MP10_EnsureFileVer] C:\WINDOWS\inf\unregmp2.exe /EnsureFileVersions
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra button: @C:\Program Files\Motorola\Bluetooth\Resources\csy.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\Motorola\Bluetooth\Resources\csy.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 7540800328
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://hostyn.nwt.cz/activex/AxisCamControl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bluetooth Device Manager - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
O23 - Service: Bluetooth Low Energy Service - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\LEsrv.exe
O23 - Service: Bluetooth Media Service - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\audiosrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\obexsrv.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
--
End of file - 10061 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job
C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job
C:\WINDOWS\tasks\nVidiaAgent.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7}]
Avira SearchFree Toolbar - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll [2013-09-24 12240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-09-30 462248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-09-30 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{41564952-412D-5637-00A7-7A786E7484D7} - Avira SearchFree Toolbar - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll [2013-09-24 12240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files\Motorola\Bluetooth\btmshell.dll [2011-07-19 32955440]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-07-03 98304]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-09-09 16851968]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-06-19 57344]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2008-06-11 1454080]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"MP10_EnsureFileVer"=C:\WINDOWS\inf\unregmp2.exe [2008-04-14 208896]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"NeroFilterCheck"=C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [2007-03-01 153136]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2013-10-01 347192]
"ApnTBMon"=C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2013-09-24 1673680]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2007-12-13 1688872]
"Google Update"=C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2012-09-13 116648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2012-07-04 192512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7M\ICQ.exe"="C:\Program Files\ICQ7M\ICQ.exe:*:Enabled:ICQ7M"
"C:\WINDOWS\system32\javaw.exe"="C:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7M\ICQ.exe"="C:\Program Files\ICQ7M\ICQ.exe:*:Enabled:ICQ7M"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======List of files/folders created in the last 1 month======
2013-10-01 09:33:24 ----D---- C:\rsit
2013-10-01 09:33:24 ----D---- C:\Program Files\trend micro
2013-10-01 09:04:24 ----D---- C:\WINDOWS\system32\NtmsData
2013-10-01 09:01:24 ----A---- C:\Documents and Settings\All Users\Data aplikací\jojic.exe
2013-10-01 08:54:35 ----D---- C:\Documents and Settings\PC\Data aplikací\Avira
2013-10-01 08:52:43 ----D---- C:\Program Files\AskPartnerNetwork
2013-10-01 08:52:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-10-01 08:52:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\APN
2013-10-01 08:48:49 ----A---- C:\WINDOWS\system32\drivers\ssmdrv.sys
2013-10-01 08:48:48 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys
2013-10-01 08:48:48 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2013-10-01 08:48:48 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2013-10-01 08:48:47 ----D---- C:\Program Files\Avira
2013-10-01 08:48:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avira
2013-10-01 08:32:17 ----A---- C:\Documents and Settings\All Users\Data aplikací\nigizin.exe
2013-10-01 08:10:26 ----A---- C:\WINDOWS\ntbtlog.txt
2013-09-30 15:18:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-09-30 15:01:00 ----D---- C:\Program Files\Common Files\Java
2013-09-30 15:00:58 ----A---- C:\WINDOWS\system32\javaws.exe
2013-09-30 15:00:53 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-09-30 15:00:53 ----A---- C:\WINDOWS\system32\javaw.exe
2013-09-30 15:00:53 ----A---- C:\WINDOWS\system32\java.exe
2013-09-30 15:00:32 ----D---- C:\Program Files\Java
2013-09-28 17:58:49 ----D---- C:\Program Files\Common Files\Skype
2013-09-28 17:58:45 ----RD---- C:\Program Files\Skype
2013-09-24 20:10:45 ----D---- C:\WINDOWS\Sun
2013-09-13 19:36:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2876315$
2013-09-13 19:36:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2876217$
2013-09-13 19:35:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2864063$
======List of files/folders modified in the last 1 month======
2013-10-01 09:33:30 ----D---- C:\WINDOWS\Temp
2013-10-01 09:33:28 ----D---- C:\WINDOWS\Prefetch
2013-10-01 09:33:24 ----RD---- C:\Program Files
2013-10-01 09:17:20 ----SHD---- C:\System Volume Information
2013-10-01 09:05:23 ----D---- C:\Documents and Settings\PC\Data aplikací\Skype
2013-10-01 09:04:36 ----D---- C:\WINDOWS\system32\CatRoot2
2013-10-01 09:04:24 ----D---- C:\WINDOWS\system32
2013-10-01 09:04:23 ----D---- C:\WINDOWS\repair
2013-10-01 09:04:12 ----D---- C:\WINDOWS\Registration
2013-10-01 09:01:24 ----D---- C:\WINDOWS\system32\drivers
2013-10-01 09:00:12 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-10-01 08:59:33 ----SHD---- C:\WINDOWS\Installer
2013-10-01 08:59:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2013-10-01 08:41:42 ----SD---- C:\WINDOWS\Tasks
2013-10-01 08:32:34 ----ASH---- C:\boot.ini
2013-10-01 08:14:01 ----D---- C:\WINDOWS
2013-10-01 08:02:55 ----A---- C:\WINDOWS\win.ini
2013-10-01 08:02:55 ----A---- C:\WINDOWS\system.ini
2013-09-30 15:29:53 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-09-30 15:26:50 ----HD---- C:\WINDOWS\inf
2013-09-30 15:19:02 ----D---- C:\WINDOWS\WinSxS
2013-09-30 15:19:00 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-09-30 15:01:00 ----D---- C:\Program Files\Common Files
2013-09-30 15:00:37 ----A---- C:\WINDOWS\system32\npDeployJava1.dll
2013-09-30 15:00:36 ----A---- C:\WINDOWS\system32\deployJava1.dll
2013-09-30 14:51:10 ----D---- C:\WINDOWS\system32\config
2013-09-13 19:42:36 ----D---- C:\Program Files\Internet Explorer
2013-09-13 19:36:37 ----A---- C:\WINDOWS\imsins.BAK
2013-09-13 19:36:35 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-09-11 17:24:31 ----D---- C:\Documents and Settings\PC\Data aplikací\vlc
2013-09-11 11:59:20 ----D---- C:\WINDOWS\system32\MRT
2013-09-11 11:57:30 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 SiSide;SiSide; C:\WINDOWS\system32\DRIVERS\siside.sys [2003-03-25 4096]
R0 sisidex;sisidex; C:\WINDOWS\system32\drivers\sisidex.sys [2002-10-17 49024]
R0 sisperf;Add Performance Filter Driver; C:\WINDOWS\system32\drivers\sisperf.sys [2002-08-20 9472]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2013-10-01 136672]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2013-10-01 37352]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2013-10-01 28520]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2013-10-01 88840]
R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athw.sys [2009-09-07 1584448]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-07-04 7874560]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-09-09 4813824]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2012-07-05 198800]
R3 SiSGbeXP;SiS191/SiS190 Ethernet Device NDIS 5.1 Driver; C:\WINDOWS\system32\DRIVERS\SiSGbeXP.sys [2008-03-03 43392]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2008-06-11 1097856]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2008-08-05 1684736]
S3 BTMCOM;Bluetooth Serial Port; C:\WINDOWS\System32\Drivers\btmcom.sys [2011-02-22 41472]
S3 BTMUSB;Motorola Bluetooth Radio Service; C:\WINDOWS\System32\Drivers\btmusb.sys [2011-07-25 564736]
S3 bulbashy;Vba32 Armour Driver; \??\C:\WINDOWS\system32\drivers\bulbashy.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2006-01-04 1389056]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2013-10-01 108088]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2013-10-01 84024]
R2 APNMCP;Ask Update Service; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [2013-09-24 164816]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2012-07-04 643072]
R2 Bluetooth Low Energy Service;Bluetooth Low Energy Service; C:\Program Files\Motorola\Bluetooth\LEsrv.exe [2011-07-20 452656]
R2 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files\Motorola\Bluetooth\audiosrv.exe [2011-07-20 948272]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files\Motorola\Bluetooth\obexsrv.exe [2011-06-17 566832]
R2 IconMan_R;IconMan_R; C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2012-07-13 1816064]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-09-30 182696]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 Bluetooth Device Manager;Bluetooth Device Manager; C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe [2011-07-20 3538480]
R3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-09-13 647680]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2007-12-13 447784]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-07-25 162672]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-30 257416]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [2013-10-01 815160]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Právě se mi dostal k rukám notebook, kde má známá problém s tím, že po zahájení hovoru ve Skypu se po cca 10-15 sekundách vždy úplně shodí Skype. Zkoušel jsem updatovat Skype i Flash, ale žádná změna. Další problém byl s funkčností avastu, který nefungoval korektně, tak šel pryč a místo něj jsem nainstaloval Aviru. Ta mi zase pro změnu pořád hlásí pokus o změnu v registrech vyskakovaím oknem.
Přidávám proto log a prosím o kontrolu.
Děkuju moc!
Logfile of random's system information tool 1.09 (written by random/random)
Run by PC at 2013-10-01 09:33:24
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 285 GB (93%) free of 305 GB
Total RAM: 3071 MB (76% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:33:31, on 1.10.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
C:\Program Files\Motorola\Bluetooth\audiosrv.exe
C:\Program Files\Motorola\Bluetooth\obexsrv.exe
C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Motorola\Bluetooth\LEsrv.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
c:\program files\avira\antivir desktop\avscan.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\dllhost.exe
C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PC\Plocha\RSIT.exe
C:\Program Files\trend micro\PC.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lem,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lemet.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jexiqed.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jyryzu.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\vivewi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qojivir.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sigezy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wygesod.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\cunuc.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qewic.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\tyzol.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\mevopy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xylul.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\dukyp.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\pyrynoz.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xopowim.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hiqizo.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sybemy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\kytel.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hozoro.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wydip.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\zekefi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\musyj.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1
O2 - BHO: Avira SearchFree Toolbar BHO - {41564952-412D-5637-00A7-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll" (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - "C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll" (file missing)
O4 - HKLM\..\Run: [BTMTrayAgent] rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [MP10_EnsureFileVer] C:\WINDOWS\inf\unregmp2.exe /EnsureFileVersions
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra button: @C:\Program Files\Motorola\Bluetooth\Resources\csy.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\Motorola\Bluetooth\Resources\csy.dll,-247 - {bd707fe6-39f6-4bda-9265-86a76719bdc5} - C:\Program Files\Motorola\Bluetooth\btmiesend.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 7540800328
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://hostyn.nwt.cz/activex/AxisCamControl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bluetooth Device Manager - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
O23 - Service: Bluetooth Low Energy Service - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\LEsrv.exe
O23 - Service: Bluetooth Media Service - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\audiosrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files\Motorola\Bluetooth\obexsrv.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
--
End of file - 10061 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job
C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job
C:\WINDOWS\tasks\nVidiaAgent.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7}]
Avira SearchFree Toolbar - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll [2013-09-24 12240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-09-30 462248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-09-30 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{41564952-412D-5637-00A7-7A786E7484D7} - Avira SearchFree Toolbar - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll [2013-09-24 12240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BTMTrayAgent"=C:\Program Files\Motorola\Bluetooth\btmshell.dll [2011-07-19 32955440]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-07-03 98304]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-09-09 16851968]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-06-19 57344]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2008-06-11 1454080]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"MP10_EnsureFileVer"=C:\WINDOWS\inf\unregmp2.exe [2008-04-14 208896]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"NeroFilterCheck"=C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [2007-03-01 153136]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2013-10-01 347192]
"ApnTBMon"=C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2013-09-24 1673680]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2007-12-13 1688872]
"Google Update"=C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2012-09-13 116648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2012-07-04 192512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7M\ICQ.exe"="C:\Program Files\ICQ7M\ICQ.exe:*:Enabled:ICQ7M"
"C:\WINDOWS\system32\javaw.exe"="C:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7M\ICQ.exe"="C:\Program Files\ICQ7M\ICQ.exe:*:Enabled:ICQ7M"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======List of files/folders created in the last 1 month======
2013-10-01 09:33:24 ----D---- C:\rsit
2013-10-01 09:33:24 ----D---- C:\Program Files\trend micro
2013-10-01 09:04:24 ----D---- C:\WINDOWS\system32\NtmsData
2013-10-01 09:01:24 ----A---- C:\Documents and Settings\All Users\Data aplikací\jojic.exe
2013-10-01 08:54:35 ----D---- C:\Documents and Settings\PC\Data aplikací\Avira
2013-10-01 08:52:43 ----D---- C:\Program Files\AskPartnerNetwork
2013-10-01 08:52:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-10-01 08:52:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\APN
2013-10-01 08:48:49 ----A---- C:\WINDOWS\system32\drivers\ssmdrv.sys
2013-10-01 08:48:48 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys
2013-10-01 08:48:48 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2013-10-01 08:48:48 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2013-10-01 08:48:47 ----D---- C:\Program Files\Avira
2013-10-01 08:48:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avira
2013-10-01 08:32:17 ----A---- C:\Documents and Settings\All Users\Data aplikací\nigizin.exe
2013-10-01 08:10:26 ----A---- C:\WINDOWS\ntbtlog.txt
2013-09-30 15:18:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-09-30 15:01:00 ----D---- C:\Program Files\Common Files\Java
2013-09-30 15:00:58 ----A---- C:\WINDOWS\system32\javaws.exe
2013-09-30 15:00:53 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-09-30 15:00:53 ----A---- C:\WINDOWS\system32\javaw.exe
2013-09-30 15:00:53 ----A---- C:\WINDOWS\system32\java.exe
2013-09-30 15:00:32 ----D---- C:\Program Files\Java
2013-09-28 17:58:49 ----D---- C:\Program Files\Common Files\Skype
2013-09-28 17:58:45 ----RD---- C:\Program Files\Skype
2013-09-24 20:10:45 ----D---- C:\WINDOWS\Sun
2013-09-13 19:36:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2876315$
2013-09-13 19:36:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2876217$
2013-09-13 19:35:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2864063$
======List of files/folders modified in the last 1 month======
2013-10-01 09:33:30 ----D---- C:\WINDOWS\Temp
2013-10-01 09:33:28 ----D---- C:\WINDOWS\Prefetch
2013-10-01 09:33:24 ----RD---- C:\Program Files
2013-10-01 09:17:20 ----SHD---- C:\System Volume Information
2013-10-01 09:05:23 ----D---- C:\Documents and Settings\PC\Data aplikací\Skype
2013-10-01 09:04:36 ----D---- C:\WINDOWS\system32\CatRoot2
2013-10-01 09:04:24 ----D---- C:\WINDOWS\system32
2013-10-01 09:04:23 ----D---- C:\WINDOWS\repair
2013-10-01 09:04:12 ----D---- C:\WINDOWS\Registration
2013-10-01 09:01:24 ----D---- C:\WINDOWS\system32\drivers
2013-10-01 09:00:12 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-10-01 08:59:33 ----SHD---- C:\WINDOWS\Installer
2013-10-01 08:59:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2013-10-01 08:41:42 ----SD---- C:\WINDOWS\Tasks
2013-10-01 08:32:34 ----ASH---- C:\boot.ini
2013-10-01 08:14:01 ----D---- C:\WINDOWS
2013-10-01 08:02:55 ----A---- C:\WINDOWS\win.ini
2013-10-01 08:02:55 ----A---- C:\WINDOWS\system.ini
2013-09-30 15:29:53 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-09-30 15:26:50 ----HD---- C:\WINDOWS\inf
2013-09-30 15:19:02 ----D---- C:\WINDOWS\WinSxS
2013-09-30 15:19:00 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-09-30 15:01:00 ----D---- C:\Program Files\Common Files
2013-09-30 15:00:37 ----A---- C:\WINDOWS\system32\npDeployJava1.dll
2013-09-30 15:00:36 ----A---- C:\WINDOWS\system32\deployJava1.dll
2013-09-30 14:51:10 ----D---- C:\WINDOWS\system32\config
2013-09-13 19:42:36 ----D---- C:\Program Files\Internet Explorer
2013-09-13 19:36:37 ----A---- C:\WINDOWS\imsins.BAK
2013-09-13 19:36:35 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-09-11 17:24:31 ----D---- C:\Documents and Settings\PC\Data aplikací\vlc
2013-09-11 11:59:20 ----D---- C:\WINDOWS\system32\MRT
2013-09-11 11:57:30 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 SiSide;SiSide; C:\WINDOWS\system32\DRIVERS\siside.sys [2003-03-25 4096]
R0 sisidex;sisidex; C:\WINDOWS\system32\drivers\sisidex.sys [2002-10-17 49024]
R0 sisperf;Add Performance Filter Driver; C:\WINDOWS\system32\drivers\sisperf.sys [2002-08-20 9472]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2013-10-01 136672]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2013-10-01 37352]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2013-10-01 28520]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2013-10-01 88840]
R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athw.sys [2009-09-07 1584448]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-07-04 7874560]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-09-09 4813824]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2012-07-05 198800]
R3 SiSGbeXP;SiS191/SiS190 Ethernet Device NDIS 5.1 Driver; C:\WINDOWS\system32\DRIVERS\SiSGbeXP.sys [2008-03-03 43392]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2008-06-11 1097856]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2008-08-05 1684736]
S3 BTMCOM;Bluetooth Serial Port; C:\WINDOWS\System32\Drivers\btmcom.sys [2011-02-22 41472]
S3 BTMUSB;Motorola Bluetooth Radio Service; C:\WINDOWS\System32\Drivers\btmusb.sys [2011-07-25 564736]
S3 bulbashy;Vba32 Armour Driver; \??\C:\WINDOWS\system32\drivers\bulbashy.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2006-01-04 1389056]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2013-10-01 108088]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2013-10-01 84024]
R2 APNMCP;Ask Update Service; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [2013-09-24 164816]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2012-07-04 643072]
R2 Bluetooth Low Energy Service;Bluetooth Low Energy Service; C:\Program Files\Motorola\Bluetooth\LEsrv.exe [2011-07-20 452656]
R2 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files\Motorola\Bluetooth\audiosrv.exe [2011-07-20 948272]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files\Motorola\Bluetooth\obexsrv.exe [2011-06-17 566832]
R2 IconMan_R;IconMan_R; C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2012-07-13 1816064]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-09-30 182696]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 Bluetooth Device Manager;Bluetooth Device Manager; C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe [2011-07-20 3538480]
R3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2012-09-13 647680]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2007-12-13 447784]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-07-25 162672]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-30 257416]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [2013-10-01 815160]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Naposledy upravil(a) vyosek dne 01 Říj 2013 08:40, celkem upraveno 1 x.
Důvod: log odstranen z code
Důvod: log odstranen z code
Re: Padá Skype, PC je zpomalený
Zdravim
Tam toho je
Znama se dala na chov konicku trojskych ne
Poprosim o log z FRSTL http://forum.viry.cz/viewtopic.php?f=13&t=133100
Re: Padá Skype, PC je zpomalený
Já jsem si to myslel, budu jí muset udělat přednášku
Tady je log z FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-09-2013 01
Ran by PC (administrator) on PC-2016E8411FBE on 01-10-2013 09:59:35
Running from C:\Documents and Settings\PC\Plocha
Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Motorola Inc.) C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Nero AG) C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(APN LLC.) C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\audiosrv.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\obexsrv.exe
(Realsil Microelectronics Inc.) C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\LEsrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Nero AG) C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
(Macrovision Europe Ltd.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
(Avira Operations GmbH & Co. KG) c:\program files\avira\antivir desktop\avscan.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(forum.viry.cz) C:\Documents and Settings\PC\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [BTMTrayAgent] - rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2012-07-03] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [RTHDCPL] - C:\Windows\RTHDCPL.EXE [16851968 2008-09-09] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] - C:\Windows\ALCMTR.EXE [57344 2008-06-19] (Realtek Semiconductor Corp.)
HKLM\...\Run: [SMSERIAL] - C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [1454080 2008-06-11] (Motorola Inc.)
HKLM\...\Run: [KernelFaultCheck] - %systemroot%\system32\dumprep 0 -k
HKLM\...\Run: [MP10_EnsureFileVer] - C:\WINDOWS\inf\unregmp2.exe [208896 2008-04-14] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [347192 2013-10-01] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [ApnTBMon] - C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1673680 2013-09-24] (APN)
HKLM\...\Winlogon: [Userinit] C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lem,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lemet.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jexiqed.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jyryzu.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\vivewi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qojivir.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sigezy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wygesod.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\cunuc.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qewic.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\tyzol.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\mevopy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xylul.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\dukyp.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\pyrynoz.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xopowim.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hiqizo.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sybemy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\kytel.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hozoro.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wydip.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\zekefi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\musyj.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~
Winlogon\Notify\AtiExtEvent: C:\Windows\system32\Ati2evxx.dll (ATI Technologies Inc.)
HKCU\...\Run: [MSMSGS] - C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKCU\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1688872 2007-12-13] (Nero AG)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [116648 2012-09-13] (Google Inc.)
HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe [ 2007-12-13] (Nero AG)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKCU - {878713BD-AC8F-414F-B823-3B4F3A38D805} URL = http://websearch.ask.com/redirect?clien ... CFA08B16E2
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Toolbar: HKCU -&Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU -&Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\Windows\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
Toolbar: HKCU -Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} http://hostyn.nwt.cz/activex/AxisCamControl.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR RestoreOnStartup: "hxxp://www.seznam.cz/"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\29.0.1547.76\gcswf32.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\29.0.1547.76\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\29.0.1547.76\pdf.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Google Update) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U7) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Java Deployment Toolkit 7.0.70.11) - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (VLC Web Plugin) - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Shockwave for Director) - C:\WINDOWS\system32\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)
CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh\24.57772_0
CHR Extension: (YouTube) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Chrome In-App Payments service) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Gmail) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
========================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-10-01] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-10-01] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-10-01] (Avira Operations GmbH & Co. KG)
R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [164816 2013-09-24] (APN LLC.)
R3 Bluetooth Device Manager; C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe [3538480 2011-07-20] (Motorola Solutions, Inc.)
R2 Bluetooth Low Energy Service; C:\Program Files\Motorola\Bluetooth\LEsrv.exe [452656 2011-07-20] (Motorola Solutions, Inc.)
R2 Bluetooth Media Service; C:\Program Files\Motorola\Bluetooth\audiosrv.exe [948272 2011-07-20] (Motorola Solutions, Inc.)
R2 Bluetooth OBEX Service; C:\Program Files\Motorola\Bluetooth\obexsrv.exe [566832 2011-06-17] (Motorola Solutions, Inc.)
R2 IconMan_R; C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [1816064 2012-07-13] (Realsil Microelectronics Inc.)
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf"
==================== Drivers (Whitelisted) ====================
S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1684736 2008-08-05] (Creative)
R3 AR5416; C:\Windows\System32\DRIVERS\athw.sys [1584448 2009-09-07] (Atheros Communications, Inc.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-10-01] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-10-01] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-10-01] (Avira Operations GmbH & Co. KG)
S3 BTMCOM; C:\Windows\System32\Drivers\btmcom.sys [41472 2011-02-22] (Motorola Solutions, Inc.)
S3 BTMUSB; C:\Windows\System32\Drivers\btmusb.sys [564736 2011-07-25] (Motorola Solutions, Inc.)
S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1389056 2006-01-04] (Creative Technology Ltd.)
S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R3 SiSGbeXP; C:\Windows\System32\DRIVERS\SiSGbeXP.sys [43392 2008-03-03] (Silicon Integrated Systems Corp.)
R0 SiSide; C:\Windows\System32\DRIVERS\siside.sys [4096 2003-03-25] (Silicon Integrated Systems Corp.)
R0 sisidex; C:\Windows\System32\drivers\sisidex.sys [49024 2002-10-17] (Windows (R) 2000 DDK provider)
R0 sisperf; C:\Windows\System32\drivers\sisperf.sys [9472 2002-08-20] (Silicon Integrated Systems Corp.)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-10-01] (Avira GmbH)
U5 BTHPORT; C:\Windows\System32\Drivers\BTHPORT.sys [272128 2008-06-14] (Microsoft Corporation)
S3 bulbashy; \??\C:\WINDOWS\system32\drivers\bulbashy.sys [x]
S4 IntelIde; No ImagePath
U1 WS2IFSL;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-01 09:59 - 2013-10-01 09:59 - 00000000 ____D C:\FRST
2013-10-01 09:58 - 2013-10-01 09:58 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\PC\Plocha\FRSTLauncher.exe
2013-10-01 09:57 - 2013-10-01 09:57 - 01086873 _____ (Farbar) C:\Documents and Settings\PC\Plocha\FRST.exe
2013-10-01 09:33 - 2013-10-01 09:33 - 00781383 _____ C:\Documents and Settings\PC\Plocha\RSIT.exe
2013-10-01 09:33 - 2013-10-01 09:33 - 00000000 ____D C:\rsit
2013-10-01 09:33 - 2013-10-01 09:33 - 00000000 ____D C:\Program Files\trend micro
2013-10-01 09:22 - 2013-10-01 09:22 - 00000000 ___RD C:\Documents and Settings\LocalService\Oblíbené položky
2013-10-01 09:22 - 2013-10-01 09:22 - 00000000 ____D C:\Documents and Settings\LocalService\Data aplikací\Adobe
2013-10-01 09:17 - 2013-07-26 15:08 - 00185831 _____ C:\Documents and Settings\PC\Plocha\anna.WAB
2013-10-01 09:16 - 2013-10-01 09:16 - 00000546 _____ C:\Documents and Settings\PC\Plocha\POP3 atlas.iaf
2013-10-01 09:04 - 2013-10-01 09:17 - 00000000 ____D C:\WINDOWS\system32\NtmsData
2013-10-01 09:02 - 2013-10-01 09:02 - 00000012 _____ C:\Documents and Settings\All Users\Data aplikací\deadbeef
2013-10-01 09:01 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\jojic.exe
2013-10-01 08:58 - 2013-10-01 08:58 - 00000000 ____D C:\Documents and Settings\PC\Local Settings\Data aplikací\AskPartnerNetwork
2013-10-01 08:54 - 2013-10-01 08:54 - 00000000 ____D C:\Documents and Settings\PC\Data aplikací\Avira
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Program Files\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\APN
2013-10-01 08:48 - 2013-10-01 08:48 - 00001707 _____ C:\Documents and Settings\All Users\Plocha\Avira Control Center.lnk
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Program Files\Avira
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Avira
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Avira
2013-10-01 08:48 - 2013-10-01 08:47 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2013-10-01 08:48 - 2013-10-01 08:47 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2013-10-01 08:48 - 2013-10-01 08:47 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2013-10-01 08:48 - 2013-10-01 08:47 - 00028520 _____ (Avira GmbH) C:\WINDOWS\system32\Drivers\ssmdrv.sys
2013-10-01 08:32 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\nigizin.exe
2013-10-01 08:26 - 2013-10-01 08:26 - 00000396 ____H C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job
2013-09-30 15:19 - 2013-10-01 09:01 - 00000356 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2013-09-30 15:19 - 2013-09-30 16:47 - 00000364 _____ C:\Documents and Settings\PC\Data aplikací\githiqqf
2013-09-30 15:19 - 2013-09-30 16:47 - 00000017 _____ C:\Documents and Settings\PC\Data aplikací\githiqae
2013-09-30 15:18 - 2013-10-01 08:13 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-09-30 15:01 - 2013-09-30 15:01 - 00000000 ____D C:\Program Files\Common Files\Java
2013-09-30 15:00 - 2013-09-30 15:00 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00144896 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2013-09-30 15:00 - 2013-09-30 15:00 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-09-30 15:00 - 2013-09-30 15:00 - 00000000 ____D C:\Program Files\Java
2013-09-30 15:00 - 2013-09-30 15:00 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Java
2013-09-28 17:58 - 2013-10-01 08:59 - 00000000 ___RD C:\Program Files\Skype
2013-09-28 17:58 - 2013-10-01 08:39 - 00002283 _____ C:\Documents and Settings\All Users\Plocha\Skype.lnk
2013-09-28 17:58 - 2013-09-28 17:58 - 00000000 ____D C:\Program Files\Common Files\Skype
2013-09-28 17:58 - 2013-09-28 17:58 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Skype
2013-09-24 20:11 - 2013-10-01 10:00 - 00256606 _____ C:\Documents and Settings\PC\Data aplikací\soghstaa
2013-09-24 20:11 - 2013-10-01 10:00 - 00000069 _____ C:\Documents and Settings\PC\Data aplikací\soghstqr
2013-09-24 20:11 - 2013-09-24 20:11 - 00000016 _____ C:\Documents and Settings\All Users\Data aplikací\1b7d5af6
2013-09-24 20:11 - 2013-09-24 20:11 - 00000004 _____ C:\Documents and Settings\All Users\Data aplikací\995d1850
2013-09-24 20:11 - 2013-09-24 20:11 - 00000002 _____ C:\Documents and Settings\All Users\Data aplikací\da6d39a3
2013-09-24 20:10 - 2013-10-01 09:01 - 00000268 ____H C:\WINDOWS\Tasks\nVidiaAgent.job
2013-09-24 20:10 - 2013-09-24 20:10 - 00000000 ____D C:\WINDOWS\Sun
2013-09-13 19:36 - 2013-09-13 19:36 - 00014330 _____ C:\WINDOWS\KB2870699-IE8.log
2013-09-13 19:36 - 2013-09-13 19:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$
2013-09-13 19:36 - 2013-09-13 19:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$
2013-09-13 19:35 - 2013-09-13 19:35 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$
2013-09-11 11:20 - 2013-09-13 19:36 - 00029699 _____ C:\WINDOWS\KB2876315.log
2013-09-11 11:19 - 2013-09-13 19:36 - 00039839 _____ C:\WINDOWS\KB2864063.log
2013-09-11 11:19 - 2013-09-13 19:36 - 00027227 _____ C:\WINDOWS\KB2876217.log
==================== One Month Modified Files and Folders =======
2013-10-01 10:00 - 2013-09-24 20:11 - 00256606 _____ C:\Documents and Settings\PC\Data aplikací\soghstaa
2013-10-01 10:00 - 2013-09-24 20:11 - 00000069 _____ C:\Documents and Settings\PC\Data aplikací\soghstqr
2013-10-01 09:59 - 2013-10-01 09:59 - 00000000 ____D C:\FRST
2013-10-01 09:59 - 2012-09-13 11:42 - 00000000 ___HD C:\Documents and Settings\PC\Local Settings\Data aplikací
2013-10-01 09:59 - 2012-09-13 11:42 - 00000000 ____D C:\Documents and Settings\PC\Plocha
2013-10-01 09:58 - 2013-10-01 09:58 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\PC\Plocha\FRSTLauncher.exe
2013-10-01 09:57 - 2013-10-01 09:57 - 01086873 _____ (Farbar) C:\Documents and Settings\PC\Plocha\FRST.exe
2013-10-01 09:54 - 2012-09-13 13:51 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-10-01 09:33 - 2013-10-01 09:33 - 00781383 _____ C:\Documents and Settings\PC\Plocha\RSIT.exe
2013-10-01 09:33 - 2013-10-01 09:33 - 00000000 ____D C:\rsit
2013-10-01 09:33 - 2013-10-01 09:33 - 00000000 ____D C:\Program Files\trend micro
2013-10-01 09:24 - 2012-09-13 13:58 - 00001014 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job
2013-10-01 09:22 - 2013-10-01 09:22 - 00000000 ___RD C:\Documents and Settings\LocalService\Oblíbené položky
2013-10-01 09:22 - 2013-10-01 09:22 - 00000000 ____D C:\Documents and Settings\LocalService\Data aplikací\Adobe
2013-10-01 09:22 - 2012-09-13 11:41 - 00000000 __SHD C:\Documents and Settings\LocalService
2013-10-01 09:22 - 2012-09-13 11:41 - 00000000 ____D C:\Documents and Settings\LocalService\Data aplikací
2013-10-01 09:17 - 2013-10-01 09:04 - 00000000 ____D C:\WINDOWS\system32\NtmsData
2013-10-01 09:16 - 2013-10-01 09:16 - 00000546 _____ C:\Documents and Settings\PC\Plocha\POP3 atlas.iaf
2013-10-01 09:08 - 2008-04-14 14:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl
2013-10-01 09:05 - 2012-09-13 13:21 - 00000000 ____D C:\Documents and Settings\PC\Data aplikací\Skype
2013-10-01 09:05 - 2012-09-13 11:37 - 01928114 _____ C:\WINDOWS\WindowsUpdate.log
2013-10-01 09:04 - 2012-09-13 13:26 - 00585953 _____ C:\WINDOWS\setupapi.log
2013-10-01 09:04 - 2012-09-13 13:19 - 00000000 ____D C:\WINDOWS\repair
2013-10-01 09:04 - 2012-09-13 11:35 - 00000000 ____D C:\WINDOWS\Registration
2013-10-01 09:02 - 2013-10-01 09:02 - 00000012 _____ C:\Documents and Settings\All Users\Data aplikací\deadbeef
2013-10-01 09:02 - 2013-05-28 20:08 - 00002283 _____ C:\Documents and Settings\PC\Nabídka Start\Skype.lnk
2013-10-01 09:02 - 2012-09-13 13:26 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2013-10-01 09:01 - 2013-09-30 15:19 - 00000356 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2013-10-01 09:01 - 2013-09-24 20:10 - 00000268 ____H C:\WINDOWS\Tasks\nVidiaAgent.job
2013-10-01 09:01 - 2012-09-13 13:29 - 00000159 _____ C:\WINDOWS\wiadebug.log
2013-10-01 09:01 - 2012-09-13 13:29 - 00000049 _____ C:\WINDOWS\wiaservc.log
2013-10-01 09:01 - 2012-09-13 11:42 - 00000000 ___RD C:\Documents and Settings\PC\Dokumenty
2013-10-01 09:01 - 2012-09-13 11:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-10-01 09:01 - 2012-09-13 11:34 - 00292900 _____ C:\WINDOWS\wmsetup.log
2013-10-01 09:00 - 2012-09-13 12:24 - 00458752 _____ C:\WINDOWS\system32\config\ACEEvent.evt
2013-10-01 09:00 - 2012-09-13 11:42 - 00000178 ___SH C:\Documents and Settings\PC\ntuser.ini
2013-10-01 09:00 - 2012-09-13 11:42 - 00000000 ____D C:\Documents and Settings\PC
2013-10-01 09:00 - 2012-09-13 11:41 - 00032344 _____ C:\WINDOWS\SchedLgU.Txt
2013-10-01 08:59 - 2013-09-28 17:58 - 00000000 ___RD C:\Program Files\Skype
2013-10-01 08:59 - 2012-09-13 13:21 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Skype
2013-10-01 08:58 - 2013-10-01 08:58 - 00000000 ____D C:\Documents and Settings\PC\Local Settings\Data aplikací\AskPartnerNetwork
2013-10-01 08:54 - 2013-10-01 08:54 - 00000000 ____D C:\Documents and Settings\PC\Data aplikací\Avira
2013-10-01 08:54 - 2012-09-13 11:42 - 00000000 __RHD C:\Documents and Settings\PC\Data aplikací
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Program Files\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\APN
2013-10-01 08:48 - 2013-10-01 08:48 - 00001707 _____ C:\Documents and Settings\All Users\Plocha\Avira Control Center.lnk
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Program Files\Avira
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Avira
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Avira
2013-10-01 08:48 - 2012-09-13 13:27 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2013-10-01 08:48 - 2012-09-13 13:27 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2013-10-01 08:47 - 2013-10-01 08:48 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2013-10-01 08:47 - 2013-10-01 08:48 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2013-10-01 08:47 - 2013-10-01 08:48 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2013-10-01 08:47 - 2013-10-01 08:48 - 00028520 _____ (Avira GmbH) C:\WINDOWS\system32\Drivers\ssmdrv.sys
2013-10-01 08:41 - 2012-09-13 13:33 - 00001912 _____ C:\WINDOWS\epplauncher.mif
2013-10-01 08:39 - 2013-09-28 17:58 - 00002283 _____ C:\Documents and Settings\All Users\Plocha\Skype.lnk
2013-10-01 08:32 - 2012-09-13 13:25 - 00000211 ___SH C:\boot.ini
2013-10-01 08:32 - 2012-09-13 11:38 - 00002504 _____ C:\WINDOWS\system32\CONFIG.NT
2013-10-01 08:26 - 2013-10-01 08:26 - 00000396 ____H C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job
2013-10-01 08:13 - 2013-09-30 15:18 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-10-01 08:02 - 2008-04-14 14:00 - 00000477 _____ C:\WINDOWS\win.ini
2013-10-01 08:02 - 2008-04-14 14:00 - 00000227 _____ C:\WINDOWS\system.ini
2013-09-30 16:47 - 2013-09-30 15:19 - 00000364 _____ C:\Documents and Settings\PC\Data aplikací\githiqqf
2013-09-30 16:47 - 2013-09-30 15:19 - 00000017 _____ C:\Documents and Settings\PC\Data aplikací\githiqae
2013-09-30 15:29 - 2012-09-13 13:51 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-09-30 15:29 - 2012-09-13 13:51 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-09-30 15:28 - 2012-09-15 19:29 - 00000000 ____D C:\Documents and Settings\PC\Local Settings\Data aplikací\Adobe
2013-09-30 15:26 - 2012-09-13 13:26 - 00194332 _____ C:\WINDOWS\setupact.log
2013-09-30 15:19 - 2012-09-13 13:27 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-09-30 15:01 - 2013-09-30 15:01 - 00000000 ____D C:\Program Files\Common Files\Java
2013-09-30 15:00 - 2013-09-30 15:00 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00144896 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2013-09-30 15:00 - 2013-09-30 15:00 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-09-30 15:00 - 2013-09-30 15:00 - 00000000 ____D C:\Program Files\Java
2013-09-30 15:00 - 2013-09-30 15:00 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Java
2013-09-30 15:00 - 2012-09-13 13:30 - 00868264 _____ (Oracle Corporation) C:\WINDOWS\system32\npDeployJava1.dll
2013-09-30 15:00 - 2012-09-13 13:30 - 00790440 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll
2013-09-29 20:01 - 2012-09-13 13:28 - 00002315 _____ C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader X.lnk
2013-09-29 11:24 - 2012-09-13 13:58 - 00000962 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job
2013-09-28 17:58 - 2013-09-28 17:58 - 00000000 ____D C:\Program Files\Common Files\Skype
2013-09-28 17:58 - 2013-09-28 17:58 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Skype
2013-09-25 20:17 - 2012-09-13 13:27 - 01087937 _____ C:\WINDOWS\FaxSetup.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00531882 _____ C:\WINDOWS\ocgen.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00421005 _____ C:\WINDOWS\tsoc.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00371524 _____ C:\WINDOWS\comsetup.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00223707 _____ C:\WINDOWS\ntdtcsetup.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00172008 _____ C:\WINDOWS\iis6.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00068132 _____ C:\WINDOWS\ocmsn.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00054807 _____ C:\WINDOWS\msgsocm.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00001917 _____ C:\WINDOWS\imsins.log
2013-09-24 20:11 - 2013-09-24 20:11 - 00000016 _____ C:\Documents and Settings\All Users\Data aplikací\1b7d5af6
2013-09-24 20:11 - 2013-09-24 20:11 - 00000004 _____ C:\Documents and Settings\All Users\Data aplikací\995d1850
2013-09-24 20:11 - 2013-09-24 20:11 - 00000002 _____ C:\Documents and Settings\All Users\Data aplikací\da6d39a3
2013-09-24 20:10 - 2013-10-01 09:01 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\jojic.exe
2013-09-24 20:10 - 2013-10-01 08:32 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\nigizin.exe
2013-09-24 20:10 - 2013-09-24 20:10 - 00000000 ____D C:\WINDOWS\Sun
2013-09-22 19:31 - 2012-09-13 13:59 - 00002234 _____ C:\Documents and Settings\PC\Plocha\Google Chrome.lnk
2013-09-13 19:42 - 2012-09-13 13:26 - 00123728 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-09-13 19:36 - 2013-09-13 19:36 - 00014330 _____ C:\WINDOWS\KB2870699-IE8.log
2013-09-13 19:36 - 2013-09-13 19:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$
2013-09-13 19:36 - 2013-09-13 19:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$
2013-09-13 19:36 - 2013-09-11 11:20 - 00029699 _____ C:\WINDOWS\KB2876315.log
2013-09-13 19:36 - 2013-09-11 11:19 - 00039839 _____ C:\WINDOWS\KB2864063.log
2013-09-13 19:36 - 2013-09-11 11:19 - 00027227 _____ C:\WINDOWS\KB2876217.log
2013-09-13 19:36 - 2012-09-13 13:43 - 00099883 _____ C:\WINDOWS\updspapi.log
2013-09-13 19:36 - 2012-09-13 13:27 - 00001374 _____ C:\WINDOWS\imsins.BAK
2013-09-13 19:35 - 2013-09-13 19:35 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$
2013-09-11 17:24 - 2012-09-13 13:24 - 00000000 ____D C:\Documents and Settings\PC\Data aplikací\vlc
2013-09-11 11:59 - 2013-08-16 08:35 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-09-11 11:57 - 2012-09-13 13:40 - 76725432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-09-03 12:48 - 2012-09-13 11:42 - 00000000 ___RD C:\Documents and Settings\PC\Oblíbené položky
Some content of TEMP:
====================
C:\Documents and Settings\PC\Local Settings\Temp\APNStub.exe
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u40-windows-i586-iftw.exe
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u9-windows-i586-iftw.exe
C:\Documents and Settings\PC\Local Settings\Temp\setup.exe
C:\Documents and Settings\PC\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\PC\Local Settings\Temp\vlc-2.0.8-win32.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\Windows\System32\winlogon.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\Windows\System32\svchost.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\Windows\System32\services.exe
[2008-04-14 14:00] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\Windows\System32\User32.dll
[2008-04-14 14:00] - [2008-04-14 14:00] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\Windows\System32\userinit.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\Windows\System32\Drivers\volsnap.sys
[2008-04-14 14:00] - [2008-04-14 14:00] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:298.08 GB) (Free:278.95 GB) NTFS ==>[Drive with boot components (Windows XP)]
Available physical RAM: 2173 MB
Total physical RAM: 3071.29 MB
Percentage of memory in use: 29%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 298 GB) (Disk ID: BAB21F87)
Partition 1: (Active) - (Size=298 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: C:\WINDOWS\Tasks\nVidiaAgent.job => C:\Documents and Settings\All Users\Data aplikací\lemet.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avira Desktop (Disabled - Up to date) {AD166499-45F9-482A-A743-FDD3350758C7}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\PC\Plocha" je 1841 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ7M\\ICQ.exe"="C:\\Program Files\\ICQ7M\\ICQ.exe:*:Enabled:ICQ7M"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ7M\\ICQ.exe"="C:\\Program Files\\ICQ7M\\ICQ.exe:*:Enabled:ICQ7M"
"C:\\WINDOWS\\system32\\javaw.exe"="C:\\WINDOWS\\system32\\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
Tady je log z FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-09-2013 01
Ran by PC (administrator) on PC-2016E8411FBE on 01-10-2013 09:59:35
Running from C:\Documents and Settings\PC\Plocha
Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Motorola Inc.) C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Nero AG) C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(APN LLC.) C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\audiosrv.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\obexsrv.exe
(Realsil Microelectronics Inc.) C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\LEsrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Nero AG) C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
(Macrovision Europe Ltd.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Motorola Solutions, Inc.) C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
(Avira Operations GmbH & Co. KG) c:\program files\avira\antivir desktop\avscan.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(forum.viry.cz) C:\Documents and Settings\PC\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [BTMTrayAgent] - rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2012-07-03] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [RTHDCPL] - C:\Windows\RTHDCPL.EXE [16851968 2008-09-09] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] - C:\Windows\ALCMTR.EXE [57344 2008-06-19] (Realtek Semiconductor Corp.)
HKLM\...\Run: [SMSERIAL] - C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [1454080 2008-06-11] (Motorola Inc.)
HKLM\...\Run: [KernelFaultCheck] - %systemroot%\system32\dumprep 0 -k
HKLM\...\Run: [MP10_EnsureFileVer] - C:\WINDOWS\inf\unregmp2.exe [208896 2008-04-14] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [347192 2013-10-01] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [ApnTBMon] - C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1673680 2013-09-24] (APN)
HKLM\...\Winlogon: [Userinit] C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lem,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lemet.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jexiqed.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jyryzu.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\vivewi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qojivir.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sigezy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wygesod.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\cunuc.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qewic.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\tyzol.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\mevopy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xylul.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\dukyp.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\pyrynoz.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xopowim.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hiqizo.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sybemy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\kytel.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hozoro.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wydip.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\zekefi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\musyj.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~
Winlogon\Notify\AtiExtEvent: C:\Windows\system32\Ati2evxx.dll (ATI Technologies Inc.)
HKCU\...\Run: [MSMSGS] - C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKCU\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1688872 2007-12-13] (Nero AG)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [116648 2012-09-13] (Google Inc.)
HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe [ 2007-12-13] (Nero AG)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKCU - {878713BD-AC8F-414F-B823-3B4F3A38D805} URL = http://websearch.ask.com/redirect?clien ... CFA08B16E2
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Toolbar: HKCU -&Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU -&Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\Windows\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
Toolbar: HKCU -Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} http://hostyn.nwt.cz/activex/AxisCamControl.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR RestoreOnStartup: "hxxp://www.seznam.cz/"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\29.0.1547.76\gcswf32.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\29.0.1547.76\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\29.0.1547.76\pdf.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Google Update) - C:\Documents and Settings\PC\Local Settings\Data aplikac\u00ED\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U7) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Java Deployment Toolkit 7.0.70.11) - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (VLC Web Plugin) - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Shockwave for Director) - C:\WINDOWS\system32\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)
CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh\24.57772_0
CHR Extension: (YouTube) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Chrome In-App Payments service) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Gmail) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
========================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-10-01] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-10-01] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-10-01] (Avira Operations GmbH & Co. KG)
R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [164816 2013-09-24] (APN LLC.)
R3 Bluetooth Device Manager; C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe [3538480 2011-07-20] (Motorola Solutions, Inc.)
R2 Bluetooth Low Energy Service; C:\Program Files\Motorola\Bluetooth\LEsrv.exe [452656 2011-07-20] (Motorola Solutions, Inc.)
R2 Bluetooth Media Service; C:\Program Files\Motorola\Bluetooth\audiosrv.exe [948272 2011-07-20] (Motorola Solutions, Inc.)
R2 Bluetooth OBEX Service; C:\Program Files\Motorola\Bluetooth\obexsrv.exe [566832 2011-06-17] (Motorola Solutions, Inc.)
R2 IconMan_R; C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [1816064 2012-07-13] (Realsil Microelectronics Inc.)
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf"
==================== Drivers (Whitelisted) ====================
S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1684736 2008-08-05] (Creative)
R3 AR5416; C:\Windows\System32\DRIVERS\athw.sys [1584448 2009-09-07] (Atheros Communications, Inc.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-10-01] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-10-01] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-10-01] (Avira Operations GmbH & Co. KG)
S3 BTMCOM; C:\Windows\System32\Drivers\btmcom.sys [41472 2011-02-22] (Motorola Solutions, Inc.)
S3 BTMUSB; C:\Windows\System32\Drivers\btmusb.sys [564736 2011-07-25] (Motorola Solutions, Inc.)
S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1389056 2006-01-04] (Creative Technology Ltd.)
S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R3 SiSGbeXP; C:\Windows\System32\DRIVERS\SiSGbeXP.sys [43392 2008-03-03] (Silicon Integrated Systems Corp.)
R0 SiSide; C:\Windows\System32\DRIVERS\siside.sys [4096 2003-03-25] (Silicon Integrated Systems Corp.)
R0 sisidex; C:\Windows\System32\drivers\sisidex.sys [49024 2002-10-17] (Windows (R) 2000 DDK provider)
R0 sisperf; C:\Windows\System32\drivers\sisperf.sys [9472 2002-08-20] (Silicon Integrated Systems Corp.)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-10-01] (Avira GmbH)
U5 BTHPORT; C:\Windows\System32\Drivers\BTHPORT.sys [272128 2008-06-14] (Microsoft Corporation)
S3 bulbashy; \??\C:\WINDOWS\system32\drivers\bulbashy.sys [x]
S4 IntelIde; No ImagePath
U1 WS2IFSL;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-01 09:59 - 2013-10-01 09:59 - 00000000 ____D C:\FRST
2013-10-01 09:58 - 2013-10-01 09:58 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\PC\Plocha\FRSTLauncher.exe
2013-10-01 09:57 - 2013-10-01 09:57 - 01086873 _____ (Farbar) C:\Documents and Settings\PC\Plocha\FRST.exe
2013-10-01 09:33 - 2013-10-01 09:33 - 00781383 _____ C:\Documents and Settings\PC\Plocha\RSIT.exe
2013-10-01 09:33 - 2013-10-01 09:33 - 00000000 ____D C:\rsit
2013-10-01 09:33 - 2013-10-01 09:33 - 00000000 ____D C:\Program Files\trend micro
2013-10-01 09:22 - 2013-10-01 09:22 - 00000000 ___RD C:\Documents and Settings\LocalService\Oblíbené položky
2013-10-01 09:22 - 2013-10-01 09:22 - 00000000 ____D C:\Documents and Settings\LocalService\Data aplikací\Adobe
2013-10-01 09:17 - 2013-07-26 15:08 - 00185831 _____ C:\Documents and Settings\PC\Plocha\anna.WAB
2013-10-01 09:16 - 2013-10-01 09:16 - 00000546 _____ C:\Documents and Settings\PC\Plocha\POP3 atlas.iaf
2013-10-01 09:04 - 2013-10-01 09:17 - 00000000 ____D C:\WINDOWS\system32\NtmsData
2013-10-01 09:02 - 2013-10-01 09:02 - 00000012 _____ C:\Documents and Settings\All Users\Data aplikací\deadbeef
2013-10-01 09:01 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\jojic.exe
2013-10-01 08:58 - 2013-10-01 08:58 - 00000000 ____D C:\Documents and Settings\PC\Local Settings\Data aplikací\AskPartnerNetwork
2013-10-01 08:54 - 2013-10-01 08:54 - 00000000 ____D C:\Documents and Settings\PC\Data aplikací\Avira
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Program Files\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\APN
2013-10-01 08:48 - 2013-10-01 08:48 - 00001707 _____ C:\Documents and Settings\All Users\Plocha\Avira Control Center.lnk
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Program Files\Avira
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Avira
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Avira
2013-10-01 08:48 - 2013-10-01 08:47 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2013-10-01 08:48 - 2013-10-01 08:47 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2013-10-01 08:48 - 2013-10-01 08:47 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2013-10-01 08:48 - 2013-10-01 08:47 - 00028520 _____ (Avira GmbH) C:\WINDOWS\system32\Drivers\ssmdrv.sys
2013-10-01 08:32 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\nigizin.exe
2013-10-01 08:26 - 2013-10-01 08:26 - 00000396 ____H C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job
2013-09-30 15:19 - 2013-10-01 09:01 - 00000356 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2013-09-30 15:19 - 2013-09-30 16:47 - 00000364 _____ C:\Documents and Settings\PC\Data aplikací\githiqqf
2013-09-30 15:19 - 2013-09-30 16:47 - 00000017 _____ C:\Documents and Settings\PC\Data aplikací\githiqae
2013-09-30 15:18 - 2013-10-01 08:13 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-09-30 15:01 - 2013-09-30 15:01 - 00000000 ____D C:\Program Files\Common Files\Java
2013-09-30 15:00 - 2013-09-30 15:00 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00144896 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2013-09-30 15:00 - 2013-09-30 15:00 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-09-30 15:00 - 2013-09-30 15:00 - 00000000 ____D C:\Program Files\Java
2013-09-30 15:00 - 2013-09-30 15:00 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Java
2013-09-28 17:58 - 2013-10-01 08:59 - 00000000 ___RD C:\Program Files\Skype
2013-09-28 17:58 - 2013-10-01 08:39 - 00002283 _____ C:\Documents and Settings\All Users\Plocha\Skype.lnk
2013-09-28 17:58 - 2013-09-28 17:58 - 00000000 ____D C:\Program Files\Common Files\Skype
2013-09-28 17:58 - 2013-09-28 17:58 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Skype
2013-09-24 20:11 - 2013-10-01 10:00 - 00256606 _____ C:\Documents and Settings\PC\Data aplikací\soghstaa
2013-09-24 20:11 - 2013-10-01 10:00 - 00000069 _____ C:\Documents and Settings\PC\Data aplikací\soghstqr
2013-09-24 20:11 - 2013-09-24 20:11 - 00000016 _____ C:\Documents and Settings\All Users\Data aplikací\1b7d5af6
2013-09-24 20:11 - 2013-09-24 20:11 - 00000004 _____ C:\Documents and Settings\All Users\Data aplikací\995d1850
2013-09-24 20:11 - 2013-09-24 20:11 - 00000002 _____ C:\Documents and Settings\All Users\Data aplikací\da6d39a3
2013-09-24 20:10 - 2013-10-01 09:01 - 00000268 ____H C:\WINDOWS\Tasks\nVidiaAgent.job
2013-09-24 20:10 - 2013-09-24 20:10 - 00000000 ____D C:\WINDOWS\Sun
2013-09-13 19:36 - 2013-09-13 19:36 - 00014330 _____ C:\WINDOWS\KB2870699-IE8.log
2013-09-13 19:36 - 2013-09-13 19:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$
2013-09-13 19:36 - 2013-09-13 19:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$
2013-09-13 19:35 - 2013-09-13 19:35 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$
2013-09-11 11:20 - 2013-09-13 19:36 - 00029699 _____ C:\WINDOWS\KB2876315.log
2013-09-11 11:19 - 2013-09-13 19:36 - 00039839 _____ C:\WINDOWS\KB2864063.log
2013-09-11 11:19 - 2013-09-13 19:36 - 00027227 _____ C:\WINDOWS\KB2876217.log
==================== One Month Modified Files and Folders =======
2013-10-01 10:00 - 2013-09-24 20:11 - 00256606 _____ C:\Documents and Settings\PC\Data aplikací\soghstaa
2013-10-01 10:00 - 2013-09-24 20:11 - 00000069 _____ C:\Documents and Settings\PC\Data aplikací\soghstqr
2013-10-01 09:59 - 2013-10-01 09:59 - 00000000 ____D C:\FRST
2013-10-01 09:59 - 2012-09-13 11:42 - 00000000 ___HD C:\Documents and Settings\PC\Local Settings\Data aplikací
2013-10-01 09:59 - 2012-09-13 11:42 - 00000000 ____D C:\Documents and Settings\PC\Plocha
2013-10-01 09:58 - 2013-10-01 09:58 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\PC\Plocha\FRSTLauncher.exe
2013-10-01 09:57 - 2013-10-01 09:57 - 01086873 _____ (Farbar) C:\Documents and Settings\PC\Plocha\FRST.exe
2013-10-01 09:54 - 2012-09-13 13:51 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-10-01 09:33 - 2013-10-01 09:33 - 00781383 _____ C:\Documents and Settings\PC\Plocha\RSIT.exe
2013-10-01 09:33 - 2013-10-01 09:33 - 00000000 ____D C:\rsit
2013-10-01 09:33 - 2013-10-01 09:33 - 00000000 ____D C:\Program Files\trend micro
2013-10-01 09:24 - 2012-09-13 13:58 - 00001014 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job
2013-10-01 09:22 - 2013-10-01 09:22 - 00000000 ___RD C:\Documents and Settings\LocalService\Oblíbené položky
2013-10-01 09:22 - 2013-10-01 09:22 - 00000000 ____D C:\Documents and Settings\LocalService\Data aplikací\Adobe
2013-10-01 09:22 - 2012-09-13 11:41 - 00000000 __SHD C:\Documents and Settings\LocalService
2013-10-01 09:22 - 2012-09-13 11:41 - 00000000 ____D C:\Documents and Settings\LocalService\Data aplikací
2013-10-01 09:17 - 2013-10-01 09:04 - 00000000 ____D C:\WINDOWS\system32\NtmsData
2013-10-01 09:16 - 2013-10-01 09:16 - 00000546 _____ C:\Documents and Settings\PC\Plocha\POP3 atlas.iaf
2013-10-01 09:08 - 2008-04-14 14:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl
2013-10-01 09:05 - 2012-09-13 13:21 - 00000000 ____D C:\Documents and Settings\PC\Data aplikací\Skype
2013-10-01 09:05 - 2012-09-13 11:37 - 01928114 _____ C:\WINDOWS\WindowsUpdate.log
2013-10-01 09:04 - 2012-09-13 13:26 - 00585953 _____ C:\WINDOWS\setupapi.log
2013-10-01 09:04 - 2012-09-13 13:19 - 00000000 ____D C:\WINDOWS\repair
2013-10-01 09:04 - 2012-09-13 11:35 - 00000000 ____D C:\WINDOWS\Registration
2013-10-01 09:02 - 2013-10-01 09:02 - 00000012 _____ C:\Documents and Settings\All Users\Data aplikací\deadbeef
2013-10-01 09:02 - 2013-05-28 20:08 - 00002283 _____ C:\Documents and Settings\PC\Nabídka Start\Skype.lnk
2013-10-01 09:02 - 2012-09-13 13:26 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2013-10-01 09:01 - 2013-09-30 15:19 - 00000356 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2013-10-01 09:01 - 2013-09-24 20:10 - 00000268 ____H C:\WINDOWS\Tasks\nVidiaAgent.job
2013-10-01 09:01 - 2012-09-13 13:29 - 00000159 _____ C:\WINDOWS\wiadebug.log
2013-10-01 09:01 - 2012-09-13 13:29 - 00000049 _____ C:\WINDOWS\wiaservc.log
2013-10-01 09:01 - 2012-09-13 11:42 - 00000000 ___RD C:\Documents and Settings\PC\Dokumenty
2013-10-01 09:01 - 2012-09-13 11:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-10-01 09:01 - 2012-09-13 11:34 - 00292900 _____ C:\WINDOWS\wmsetup.log
2013-10-01 09:00 - 2012-09-13 12:24 - 00458752 _____ C:\WINDOWS\system32\config\ACEEvent.evt
2013-10-01 09:00 - 2012-09-13 11:42 - 00000178 ___SH C:\Documents and Settings\PC\ntuser.ini
2013-10-01 09:00 - 2012-09-13 11:42 - 00000000 ____D C:\Documents and Settings\PC
2013-10-01 09:00 - 2012-09-13 11:41 - 00032344 _____ C:\WINDOWS\SchedLgU.Txt
2013-10-01 08:59 - 2013-09-28 17:58 - 00000000 ___RD C:\Program Files\Skype
2013-10-01 08:59 - 2012-09-13 13:21 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Skype
2013-10-01 08:58 - 2013-10-01 08:58 - 00000000 ____D C:\Documents and Settings\PC\Local Settings\Data aplikací\AskPartnerNetwork
2013-10-01 08:54 - 2013-10-01 08:54 - 00000000 ____D C:\Documents and Settings\PC\Data aplikací\Avira
2013-10-01 08:54 - 2012-09-13 11:42 - 00000000 __RHD C:\Documents and Settings\PC\Data aplikací
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Program Files\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\APN
2013-10-01 08:48 - 2013-10-01 08:48 - 00001707 _____ C:\Documents and Settings\All Users\Plocha\Avira Control Center.lnk
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Program Files\Avira
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Avira
2013-10-01 08:48 - 2013-10-01 08:48 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Avira
2013-10-01 08:48 - 2012-09-13 13:27 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2013-10-01 08:48 - 2012-09-13 13:27 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2013-10-01 08:47 - 2013-10-01 08:48 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2013-10-01 08:47 - 2013-10-01 08:48 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2013-10-01 08:47 - 2013-10-01 08:48 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2013-10-01 08:47 - 2013-10-01 08:48 - 00028520 _____ (Avira GmbH) C:\WINDOWS\system32\Drivers\ssmdrv.sys
2013-10-01 08:41 - 2012-09-13 13:33 - 00001912 _____ C:\WINDOWS\epplauncher.mif
2013-10-01 08:39 - 2013-09-28 17:58 - 00002283 _____ C:\Documents and Settings\All Users\Plocha\Skype.lnk
2013-10-01 08:32 - 2012-09-13 13:25 - 00000211 ___SH C:\boot.ini
2013-10-01 08:32 - 2012-09-13 11:38 - 00002504 _____ C:\WINDOWS\system32\CONFIG.NT
2013-10-01 08:26 - 2013-10-01 08:26 - 00000396 ____H C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job
2013-10-01 08:13 - 2013-09-30 15:18 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-10-01 08:02 - 2008-04-14 14:00 - 00000477 _____ C:\WINDOWS\win.ini
2013-10-01 08:02 - 2008-04-14 14:00 - 00000227 _____ C:\WINDOWS\system.ini
2013-09-30 16:47 - 2013-09-30 15:19 - 00000364 _____ C:\Documents and Settings\PC\Data aplikací\githiqqf
2013-09-30 16:47 - 2013-09-30 15:19 - 00000017 _____ C:\Documents and Settings\PC\Data aplikací\githiqae
2013-09-30 15:29 - 2012-09-13 13:51 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-09-30 15:29 - 2012-09-13 13:51 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-09-30 15:28 - 2012-09-15 19:29 - 00000000 ____D C:\Documents and Settings\PC\Local Settings\Data aplikací\Adobe
2013-09-30 15:26 - 2012-09-13 13:26 - 00194332 _____ C:\WINDOWS\setupact.log
2013-09-30 15:19 - 2012-09-13 13:27 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-09-30 15:01 - 2013-09-30 15:01 - 00000000 ____D C:\Program Files\Common Files\Java
2013-09-30 15:00 - 2013-09-30 15:00 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2013-09-30 15:00 - 2013-09-30 15:00 - 00144896 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2013-09-30 15:00 - 2013-09-30 15:00 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-09-30 15:00 - 2013-09-30 15:00 - 00000000 ____D C:\Program Files\Java
2013-09-30 15:00 - 2013-09-30 15:00 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Java
2013-09-30 15:00 - 2012-09-13 13:30 - 00868264 _____ (Oracle Corporation) C:\WINDOWS\system32\npDeployJava1.dll
2013-09-30 15:00 - 2012-09-13 13:30 - 00790440 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll
2013-09-29 20:01 - 2012-09-13 13:28 - 00002315 _____ C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader X.lnk
2013-09-29 11:24 - 2012-09-13 13:58 - 00000962 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job
2013-09-28 17:58 - 2013-09-28 17:58 - 00000000 ____D C:\Program Files\Common Files\Skype
2013-09-28 17:58 - 2013-09-28 17:58 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Skype
2013-09-25 20:17 - 2012-09-13 13:27 - 01087937 _____ C:\WINDOWS\FaxSetup.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00531882 _____ C:\WINDOWS\ocgen.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00421005 _____ C:\WINDOWS\tsoc.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00371524 _____ C:\WINDOWS\comsetup.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00223707 _____ C:\WINDOWS\ntdtcsetup.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00172008 _____ C:\WINDOWS\iis6.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00068132 _____ C:\WINDOWS\ocmsn.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00054807 _____ C:\WINDOWS\msgsocm.log
2013-09-25 20:17 - 2012-09-13 13:27 - 00001917 _____ C:\WINDOWS\imsins.log
2013-09-24 20:11 - 2013-09-24 20:11 - 00000016 _____ C:\Documents and Settings\All Users\Data aplikací\1b7d5af6
2013-09-24 20:11 - 2013-09-24 20:11 - 00000004 _____ C:\Documents and Settings\All Users\Data aplikací\995d1850
2013-09-24 20:11 - 2013-09-24 20:11 - 00000002 _____ C:\Documents and Settings\All Users\Data aplikací\da6d39a3
2013-09-24 20:10 - 2013-10-01 09:01 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\jojic.exe
2013-09-24 20:10 - 2013-10-01 08:32 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\nigizin.exe
2013-09-24 20:10 - 2013-09-24 20:10 - 00000000 ____D C:\WINDOWS\Sun
2013-09-22 19:31 - 2012-09-13 13:59 - 00002234 _____ C:\Documents and Settings\PC\Plocha\Google Chrome.lnk
2013-09-13 19:42 - 2012-09-13 13:26 - 00123728 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-09-13 19:36 - 2013-09-13 19:36 - 00014330 _____ C:\WINDOWS\KB2870699-IE8.log
2013-09-13 19:36 - 2013-09-13 19:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$
2013-09-13 19:36 - 2013-09-13 19:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$
2013-09-13 19:36 - 2013-09-11 11:20 - 00029699 _____ C:\WINDOWS\KB2876315.log
2013-09-13 19:36 - 2013-09-11 11:19 - 00039839 _____ C:\WINDOWS\KB2864063.log
2013-09-13 19:36 - 2013-09-11 11:19 - 00027227 _____ C:\WINDOWS\KB2876217.log
2013-09-13 19:36 - 2012-09-13 13:43 - 00099883 _____ C:\WINDOWS\updspapi.log
2013-09-13 19:36 - 2012-09-13 13:27 - 00001374 _____ C:\WINDOWS\imsins.BAK
2013-09-13 19:35 - 2013-09-13 19:35 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$
2013-09-11 17:24 - 2012-09-13 13:24 - 00000000 ____D C:\Documents and Settings\PC\Data aplikací\vlc
2013-09-11 11:59 - 2013-08-16 08:35 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-09-11 11:57 - 2012-09-13 13:40 - 76725432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-09-03 12:48 - 2012-09-13 11:42 - 00000000 ___RD C:\Documents and Settings\PC\Oblíbené položky
Some content of TEMP:
====================
C:\Documents and Settings\PC\Local Settings\Temp\APNStub.exe
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u40-windows-i586-iftw.exe
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u9-windows-i586-iftw.exe
C:\Documents and Settings\PC\Local Settings\Temp\setup.exe
C:\Documents and Settings\PC\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\PC\Local Settings\Temp\vlc-2.0.8-win32.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\Windows\System32\winlogon.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\Windows\System32\svchost.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\Windows\System32\services.exe
[2008-04-14 14:00] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\Windows\System32\User32.dll
[2008-04-14 14:00] - [2008-04-14 14:00] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\Windows\System32\userinit.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\Windows\System32\Drivers\volsnap.sys
[2008-04-14 14:00] - [2008-04-14 14:00] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:298.08 GB) (Free:278.95 GB) NTFS ==>[Drive with boot components (Windows XP)]
Available physical RAM: 2173 MB
Total physical RAM: 3071.29 MB
Percentage of memory in use: 29%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 298 GB) (Disk ID: BAB21F87)
Partition 1: (Active) - (Size=298 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: C:\WINDOWS\Tasks\nVidiaAgent.job => C:\Documents and Settings\All Users\Data aplikací\lemet.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Avira Desktop (Disabled - Up to date) {AD166499-45F9-482A-A743-FDD3350758C7}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\PC\Plocha" je 1841 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ7M\\ICQ.exe"="C:\\Program Files\\ICQ7M\\ICQ.exe:*:Enabled:ICQ7M"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ7M\\ICQ.exe"="C:\\Program Files\\ICQ7M\\ICQ.exe:*:Enabled:ICQ7M"
"C:\\WINDOWS\\system32\\javaw.exe"="C:\\WINDOWS\\system32\\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (5.17 KiB) Staženo 58 x
Re: Padá Skype, PC je zpomalený
- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start (APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe HKLM\...\Run: [KernelFaultCheck] - %systemroot%\system32\dumprep 0 -k HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [ApnTBMon] - C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1673680 2013-09-24] (APN) HKLM\...\Winlogon: [Userinit] C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lem,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lemet.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jexiqed.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jyryzu.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\vivewi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qojivir.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sigezy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wygesod.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\cunuc.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qewic.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\tyzol.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\mevopy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xylul.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\dukyp.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\pyrynoz.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xopowim.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hiqizo.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sybemy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\kytel.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hozoro.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wydip.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\zekefi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\musyj.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~ HKCU\...\Run: [MSMSGS] - C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation) HKCU\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1688872 2007-12-13] (Nero AG) HKCU\...\Run: [Google Update] - C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [116648 2012-09-13] (Google Inc.) HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe [ 2007-12-13] (Nero AG) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch SearchScopes: HKCU - {878713BD-AC8F-414F-B823-3B4F3A38D805} URL = http://websearch.ask.com/redirect?clien ... src=crm&q={searchTerms}&locale=en_EU&apn_ptnrs=U3&apn_dtid=OSJ000YYCZ&apn_uid=69FC091D-183B-48D8-A717-E02E77624EC7&apn_sauid=48313EDA-CDE9-4AE6-8724-43CFA08B16E2 BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKCU -Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh\24.57772_0 CHR HKLM\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [164816 2013-09-24] (APN LLC.) S4 IntelIde; No ImagePath U1 WS2IFSL; 2013-10-01 09:02 - 2013-10-01 09:02 - 00000012 _____ C:\Documents and Settings\All Users\Data aplikací\deadbeef 2013-10-01 09:01 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\jojic.exe 2013-10-01 08:58 - 2013-10-01 08:58 - 00000000 ____D C:\Documents and Settings\PC\Local Settings\Data aplikací\AskPartnerNetwork 2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Program Files\AskPartnerNetwork 2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork 2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\APN 2013-10-01 08:32 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\nigizin.exe 2013-09-30 15:19 - 2013-09-30 16:47 - 00000364 _____ C:\Documents and Settings\PC\Data aplikací\githiqqf 2013-09-30 15:19 - 2013-09-30 16:47 - 00000017 _____ C:\Documents and Settings\PC\Data aplikací\githiqae 2013-09-24 20:11 - 2013-10-01 10:00 - 00256606 _____ C:\Documents and Settings\PC\Data aplikací\soghstaa 2013-09-24 20:11 - 2013-10-01 10:00 - 00000069 _____ C:\Documents and Settings\PC\Data aplikací\soghstqr 2013-09-24 20:11 - 2013-09-24 20:11 - 00000016 _____ C:\Documents and Settings\All Users\Data aplikací\1b7d5af6 2013-09-24 20:11 - 2013-09-24 20:11 - 00000004 _____ C:\Documents and Settings\All Users\Data aplikací\995d1850 2013-09-24 20:11 - 2013-09-24 20:11 - 00000002 _____ C:\Documents and Settings\All Users\Data aplikací\da6d39a3 2013-09-24 20:10 - 2013-10-01 09:01 - 00000268 ____H C:\WINDOWS\Tasks\nVidiaAgent.job C:\Documents and Settings\PC\Local Settings\Temp\APNStub.exe C:\Documents and Settings\PC\Local Settings\Temp\jre-7u40-windows-i586-iftw.exe C:\Documents and Settings\PC\Local Settings\Temp\jre-7u9-windows-i586-iftw.exe C:\Documents and Settings\PC\Local Settings\Temp\setup.exe C:\Documents and Settings\PC\Local Settings\Temp\SkypeSetup.exe C:\Documents and Settings\PC\Local Settings\Temp\vlc-2.0.8-win32.exe C:\Program Files\AskPartnerNetwork Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job => c:\Program Files\Microsoft Security Client\MpCmdRun.exe Task: C:\WINDOWS\Tasks\nVidiaAgent.job => C:\Documents and Settings\All Users\Data aplikací\lemet.exe Hosts: CMD: shutdown /r /f /t 2 End- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST
- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt
Re: Padá Skype, PC je zpomalený
Zde je fixlog, Avira už nehlásí pokusy o změny v registru
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 27-09-2013 01
Ran by PC at 2013-10-01 10:35:04 Run:1
Running from C:\Documents and Settings\PC\Plocha
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
(APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
HKLM\...\Run: [KernelFaultCheck] - %systemroot%\system32\dumprep 0 -k
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [ApnTBMon] - C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1673680 2013-09-24] (APN)
HKLM\...\Winlogon: [Userinit] C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lem,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lemet.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jexiqed.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jyryzu.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\vivewi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qojivir.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sigezy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wygesod.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\cunuc.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qewic.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\tyzol.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\mevopy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xylul.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\dukyp.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\pyrynoz.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xopowim.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hiqizo.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sybemy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\kytel.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hozoro.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wydip.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\zekefi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\musyj.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~
HKCU\...\Run: [MSMSGS] - C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKCU\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1688872 2007-12-13] (Nero AG)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [116648 2012-09-13] (Google Inc.)
HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe [ 2007-12-13] (Nero AG)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKCU - {878713BD-AC8F-414F-B823-3B4F3A38D805} URL = http://websearch.ask.com/redirect?clien ... src=crm&q={searchTerms}&locale=en_EU&apn_ptnrs=U3&apn_dtid=OSJ000YYCZ&apn_uid=69FC091D-183B-48D8-A717-E02E77624EC7&apn_sauid=48313EDA-CDE9-4AE6-8724-43CFA08B16E2
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
Toolbar: HKCU -Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh\24.57772_0
CHR HKLM\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [164816 2013-09-24] (APN LLC.)
S4 IntelIde; No ImagePath
U1 WS2IFSL;
2013-10-01 09:02 - 2013-10-01 09:02 - 00000012 _____ C:\Documents and Settings\All Users\Data aplikací\deadbeef
2013-10-01 09:01 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\jojic.exe
2013-10-01 08:58 - 2013-10-01 08:58 - 00000000 ____D C:\Documents and Settings\PC\Local Settings\Data aplikací\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Program Files\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\APN
2013-10-01 08:32 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\nigizin.exe
2013-09-30 15:19 - 2013-09-30 16:47 - 00000364 _____ C:\Documents and Settings\PC\Data aplikací\githiqqf
2013-09-30 15:19 - 2013-09-30 16:47 - 00000017 _____ C:\Documents and Settings\PC\Data aplikací\githiqae
2013-09-24 20:11 - 2013-10-01 10:00 - 00256606 _____ C:\Documents and Settings\PC\Data aplikací\soghstaa
2013-09-24 20:11 - 2013-10-01 10:00 - 00000069 _____ C:\Documents and Settings\PC\Data aplikací\soghstqr
2013-09-24 20:11 - 2013-09-24 20:11 - 00000016 _____ C:\Documents and Settings\All Users\Data aplikací\1b7d5af6
2013-09-24 20:11 - 2013-09-24 20:11 - 00000004 _____ C:\Documents and Settings\All Users\Data aplikací\995d1850
2013-09-24 20:11 - 2013-09-24 20:11 - 00000002 _____ C:\Documents and Settings\All Users\Data aplikací\da6d39a3
2013-09-24 20:10 - 2013-10-01 09:01 - 00000268 ____H C:\WINDOWS\Tasks\nVidiaAgent.job
C:\Documents and Settings\PC\Local Settings\Temp\APNStub.exe
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u40-windows-i586-iftw.exe
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u9-windows-i586-iftw.exe
C:\Documents and Settings\PC\Local Settings\Temp\setup.exe
C:\Documents and Settings\PC\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\PC\Local Settings\Temp\vlc-2.0.8-win32.exe
C:\Program Files\AskPartnerNetwork
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: C:\WINDOWS\Tasks\nVidiaAgent.job => C:\Documents and Settings\All Users\Data aplikací\lemet.exe
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
[1004] C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe => Process closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\KernelFaultCheck => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ApnTBMon => Value deleted successfully.
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => Value was restored successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKU\Default User\Software\Microsoft\Windows\CurrentVersion\RunOnce\\NeroHomeFirstStart => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{878713BD-AC8F-414F-B823-3B4F3A38D805} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{878713BD-AC8F-414F-B823-3B4F3A38D805} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7} => Key deleted successfully.
HKCR\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => Value deleted successfully.
HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{41564952-412D-5637-00A7-7A786E7484D7} => Value deleted successfully.
HKCR\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} => Key not found.
C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh => Moved successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaacalgebmfelllfiaoknifldpngjh => Key deleted successfully.
C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx => Moved successfully.
HKLM\SOFTWARE\Policies\Google => Key deleted successfully.
APNMCP => Service deleted successfully.
IntelIde => Service deleted successfully.
WS2IFSL => Service deleted successfully.
C:\Documents and Settings\All Users\Data aplikací\deadbeef => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\jojic.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Data aplikací\AskPartnerNetwork => Moved successfully.
C:\Program Files\AskPartnerNetwork => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\APN => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\nigizin.exe => Moved successfully.
C:\Documents and Settings\PC\Data aplikací\githiqqf => Moved successfully.
C:\Documents and Settings\PC\Data aplikací\githiqae => Moved successfully.
C:\Documents and Settings\PC\Data aplikací\soghstaa => Moved successfully.
C:\Documents and Settings\PC\Data aplikací\soghstqr => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\1b7d5af6 => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\995d1850 => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\da6d39a3 => Moved successfully.
C:\WINDOWS\Tasks\nVidiaAgent.job => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\APNStub.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u40-windows-i586-iftw.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u9-windows-i586-iftw.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\setup.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\SkypeSetup.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\vlc-2.0.8-win32.exe => Moved successfully.
"C:\Program Files\AskPartnerNetwork" => File/Directory not found.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\avast! Emergency Update.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job => Moved successfully.
C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job => Moved successfully.
C:\WINDOWS\Tasks\nVidiaAgent.job not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
The system needs a manual reboot.
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 27-09-2013 01
Ran by PC at 2013-10-01 10:35:04 Run:1
Running from C:\Documents and Settings\PC\Plocha
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
(APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
HKLM\...\Run: [KernelFaultCheck] - %systemroot%\system32\dumprep 0 -k
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [ApnTBMon] - C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1673680 2013-09-24] (APN)
HKLM\...\Winlogon: [Userinit] C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lem,C:\DOCUME~1\ALLUSE~1\DATAAP~1\lemet.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jexiqed.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\jyryzu.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\vivewi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qojivir.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sigezy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wygesod.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\cunuc.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\qewic.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\tyzol.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\mevopy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xylul.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\dukyp.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\pyrynoz.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\xopowim.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hiqizo.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\sybemy.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\kytel.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\hozoro.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\wydip.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\zekefi.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~1\musyj.exe,C:\DOCUME~1\ALLUSE~1\DATAAP~
HKCU\...\Run: [MSMSGS] - C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKCU\...\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1688872 2007-12-13] (Nero AG)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [116648 2012-09-13] (Google Inc.)
HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe [ 2007-12-13] (Nero AG)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKCU - {878713BD-AC8F-414F-B823-3B4F3A38D805} URL = http://websearch.ask.com/redirect?clien ... src=crm&q={searchTerms}&locale=en_EU&apn_ptnrs=U3&apn_dtid=OSJ000YYCZ&apn_uid=69FC091D-183B-48D8-A717-E02E77624EC7&apn_sauid=48313EDA-CDE9-4AE6-8724-43CFA08B16E2
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
Toolbar: HKCU -Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh\24.57772_0
CHR HKLM\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [164816 2013-09-24] (APN LLC.)
S4 IntelIde; No ImagePath
U1 WS2IFSL;
2013-10-01 09:02 - 2013-10-01 09:02 - 00000012 _____ C:\Documents and Settings\All Users\Data aplikací\deadbeef
2013-10-01 09:01 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\jojic.exe
2013-10-01 08:58 - 2013-10-01 08:58 - 00000000 ____D C:\Documents and Settings\PC\Local Settings\Data aplikací\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Program Files\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-10-01 08:52 - 2013-10-01 08:52 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\APN
2013-10-01 08:32 - 2013-09-24 20:10 - 00315392 _____ C:\Documents and Settings\All Users\Data aplikací\nigizin.exe
2013-09-30 15:19 - 2013-09-30 16:47 - 00000364 _____ C:\Documents and Settings\PC\Data aplikací\githiqqf
2013-09-30 15:19 - 2013-09-30 16:47 - 00000017 _____ C:\Documents and Settings\PC\Data aplikací\githiqae
2013-09-24 20:11 - 2013-10-01 10:00 - 00256606 _____ C:\Documents and Settings\PC\Data aplikací\soghstaa
2013-09-24 20:11 - 2013-10-01 10:00 - 00000069 _____ C:\Documents and Settings\PC\Data aplikací\soghstqr
2013-09-24 20:11 - 2013-09-24 20:11 - 00000016 _____ C:\Documents and Settings\All Users\Data aplikací\1b7d5af6
2013-09-24 20:11 - 2013-09-24 20:11 - 00000004 _____ C:\Documents and Settings\All Users\Data aplikací\995d1850
2013-09-24 20:11 - 2013-09-24 20:11 - 00000002 _____ C:\Documents and Settings\All Users\Data aplikací\da6d39a3
2013-09-24 20:10 - 2013-10-01 09:01 - 00000268 ____H C:\WINDOWS\Tasks\nVidiaAgent.job
C:\Documents and Settings\PC\Local Settings\Temp\APNStub.exe
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u40-windows-i586-iftw.exe
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u9-windows-i586-iftw.exe
C:\Documents and Settings\PC\Local Settings\Temp\setup.exe
C:\Documents and Settings\PC\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\PC\Local Settings\Temp\vlc-2.0.8-win32.exe
C:\Program Files\AskPartnerNetwork
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job => C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: C:\WINDOWS\Tasks\nVidiaAgent.job => C:\Documents and Settings\All Users\Data aplikací\lemet.exe
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
[1004] C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe => Process closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\KernelFaultCheck => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ApnTBMon => Value deleted successfully.
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => Value was restored successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKU\Default User\Software\Microsoft\Windows\CurrentVersion\RunOnce\\NeroHomeFirstStart => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{878713BD-AC8F-414F-B823-3B4F3A38D805} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{878713BD-AC8F-414F-B823-3B4F3A38D805} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7} => Key deleted successfully.
HKCR\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => Value deleted successfully.
HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{41564952-412D-5637-00A7-7A786E7484D7} => Value deleted successfully.
HKCR\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} => Key not found.
C:\DOCUME~1\PC\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh => Moved successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaacalgebmfelllfiaoknifldpngjh => Key deleted successfully.
C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx => Moved successfully.
HKLM\SOFTWARE\Policies\Google => Key deleted successfully.
APNMCP => Service deleted successfully.
IntelIde => Service deleted successfully.
WS2IFSL => Service deleted successfully.
C:\Documents and Settings\All Users\Data aplikací\deadbeef => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\jojic.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Data aplikací\AskPartnerNetwork => Moved successfully.
C:\Program Files\AskPartnerNetwork => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\APN => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\nigizin.exe => Moved successfully.
C:\Documents and Settings\PC\Data aplikací\githiqqf => Moved successfully.
C:\Documents and Settings\PC\Data aplikací\githiqae => Moved successfully.
C:\Documents and Settings\PC\Data aplikací\soghstaa => Moved successfully.
C:\Documents and Settings\PC\Data aplikací\soghstqr => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\1b7d5af6 => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\995d1850 => Moved successfully.
C:\Documents and Settings\All Users\Data aplikací\da6d39a3 => Moved successfully.
C:\WINDOWS\Tasks\nVidiaAgent.job => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\APNStub.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u40-windows-i586-iftw.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\jre-7u9-windows-i586-iftw.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\setup.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\SkypeSetup.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Temp\vlc-2.0.8-win32.exe => Moved successfully.
"C:\Program Files\AskPartnerNetwork" => File/Directory not found.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\avast! Emergency Update.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004Core.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-261478967-1801674531-1004UA.job => Moved successfully.
C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job => Moved successfully.
C:\WINDOWS\Tasks\nVidiaAgent.job not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
The system needs a manual reboot.
==== End of Fixlog ====
Re: Padá Skype, PC je zpomalený
- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
Re: Padá Skype, PC je zpomalený
1x log z AdwCleaneru
# AdwCleaner v3.006 - Report created 01/10/2013 at 11:30:11
# Updated 01/10/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : PC - PC-2016E8411FBE
# Running from : C:\Documents and Settings\PC\Plocha\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\Ask
Folder Deleted : C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\AskToolbar
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.6001.18702
-\\ Google Chrome v
[ File : C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [1300 octets] - [01/10/2013 11:29:13]
AdwCleaner[S0].txt - [1235 octets] - [01/10/2013 11:30:11]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1295 octets] ##########
# AdwCleaner v3.006 - Report created 01/10/2013 at 11:30:11
# Updated 01/10/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : PC - PC-2016E8411FBE
# Running from : C:\Documents and Settings\PC\Plocha\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\Ask
Folder Deleted : C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\AskToolbar
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.6001.18702
-\\ Google Chrome v
[ File : C:\Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [1300 octets] - [01/10/2013 11:29:13]
AdwCleaner[S0].txt - [1235 octets] - [01/10/2013 11:30:11]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1295 octets] ##########
Re: Padá Skype, PC je zpomalený
PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
- Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
- Pokud mate Win XP spustte pod uctem Spravce\Administratora
- Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
- Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
- Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
- Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
- Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
- Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
- Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix



Přispějete na provoz fóra?