
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu FRST logu děkuji
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu FRST logu děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-11-2013
Ran by Matt (administrator) on MATT-A14BB20269 on 16-11-2013 13:13:45
Running from C:\Documents and Settings\Matt\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Ralink Technology, Corp.) C:\Program Files\ZyXEL\NWD-270N\Common\RalinkRegistryWriter.exe
(Microsoft Corp.) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [19573352 2010-09-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [995176 2013-08-12] (Microsoft Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [136176 2010-12-01] (Google Inc.)
HKU\Administrator\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\Default User\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\UpdatusUser\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
Toolbar: HKCU - No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
DPF: {33564D57-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/ ... mv9VCM.CAB
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin: @t.garena.com/garenatalk - C:\Program Files\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll No File
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\searchplugins\wowhead.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\firmycz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mall-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mapycz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\zbocz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: defaults - C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi
FF Extension: dta - C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Seznam lištička - C:\Program Files\Mozilla Firefox\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
FF HKLM\...\Firefox\Extensions: [jqs@sun.com] - C:\Program Files\Java\jre6\lib\deploy\jqs\ff
FF Extension: Java Quick Starter - C:\Program Files\Java\jre6\lib\deploy\jqs\ff
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
Chrome:
=======
CHR RestoreOnStartup: "hxxp://www.google.cz/"
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\31.0.1650.57\pdf.dll No File
CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\31.0.1650.57\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll No File
CHR Plugin: (Skype Click to Call) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.0.0.10201_0\npSkypeChromePlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.310.5) - C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (2007 Microsoft Office system) - C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft\\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft\\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Google Update) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (Skype Click to Call) - C:\DOCUME~1\Matt\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.4.0.11328_0
CHR Extension: (Google Wallet) - C:\DOCUME~1\Matt\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM\...\Chrome\Extension: [niogeckbkdcabhnapjbkeiklablhjoca] - C:\Program Files\Perion\ChromeInfoBar\ChromeInfoBar.crx
CHR HKLM\...\Chrome\Extension: [pacgpkgadgmibnhpdidcnfafllnmeomc] - C:\Documents and Settings\Matt\Local Settings\Data aplikací\CRE\pacgpkgadgmibnhpdidcnfafllnmeomc.crx
CHR StartMenuInternet: Google Chrome - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22208 2013-08-12] (Microsoft Corporation)
R2 RalinkRegistryWriter; C:\Program Files\ZyXEL\NWD-270N\Common\RalinkRegistryWriter.exe [69632 2008-05-13] (Ralink Technology, Corp.)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 WinDefend; %ProgramFiles%\Windows Defender\mpsvc.dll [x]
==================== Drivers (Whitelisted) ====================
R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21361 2010-11-24] (Cisco Systems, Inc.)
S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
S1 AmdK8; C:\Windows\System32\DRIVERS\AmdK8.sys [43008 2006-07-01] (Advanced Micro Devices)
R1 AmdPPM; C:\Windows\System32\DRIVERS\AmdPPM.sys [33792 2007-04-16] (Advanced Micro Devices)
R2 Aspi32; C:\Windows\System32\drivers\aspi32.sys [16877 2002-07-17] (Adaptec)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2013-01-27] (DT Soft Ltd)
S3 gdrv; C:\WINDOWS\gdrv.sys [16608 2010-11-24] (Windows (R) 2000 DDK provider)
R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] ()
S3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [211560 2013-06-18] (Microsoft Corporation)
R0 nvata; C:\Windows\System32\DRIVERS\nvata.sys [105472 2006-10-18] (NVIDIA Corporation)
S3 NVENETFD; C:\Windows\System32\DRIVERS\NVENETFD.sys [71936 2010-08-12] (NVIDIA Corporation)
R3 nvnetbus; C:\Windows\System32\DRIVERS\nvnetbus.sys [19968 2006-11-27] (NVIDIA Corporation)
R3 rt2870; C:\Windows\System32\DRIVERS\rt2870.sys [637952 2008-10-01] (Ralink Technology, Corp.)
R0 speedfan; C:\Windows\System32\speedfan.sys [5248 2006-09-24] (Windows (R) 2000 DDK provider)
S0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2010-11-25] (Duplex Secure Ltd.)
S3 AmdLLD; system32\DRIVERS\AmdLLD.sys [x]
S3 GGSAFERDriver; \??\C:\Program Files\Garena Plus\Room\safedrv.sys [x]
S4 IntelIde; No ImagePath
S3 MSI_MSIBIOS_010507; \??\C:\Program Files\MSI\Live Update 5\msibios32_100507.sys [x]
S3 NTIOLib_1_0_4; \??\C:\Program Files\MSI\Live Update 5\NTIOLib.sys [x]
U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U5 Tcpip6; C:\Windows\System32\Drivers\Tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-16 13:13 - 2013-11-16 13:14 - 00013392 _____ C:\Documents and Settings\Matt\Plocha\FRST.txt
2013-11-16 13:13 - 2013-11-16 13:13 - 00000000 ____D C:\FRST
2013-11-16 13:12 - 2013-11-16 13:12 - 01090529 _____ (Farbar) C:\Documents and Settings\Matt\Plocha\FRST.exe
2013-11-16 13:04 - 2013-11-16 13:04 - 00000694 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131116_130417.reg
2013-11-14 23:49 - 2013-11-14 23:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$
2013-11-14 23:49 - 2013-11-14 23:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$
2013-11-14 23:48 - 2013-11-14 23:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$
2013-11-14 23:48 - 2013-11-14 23:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$
2013-11-13 19:54 - 2013-11-16 12:59 - 00001022 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-606747145-484763869-839522115-1003UA.job
2013-11-13 19:54 - 2013-11-15 19:59 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-606747145-484763869-839522115-1003Core.job
2013-11-13 19:53 - 2013-11-13 19:53 - 00000000 ____D C:\Program Files\GUM3A.tmp
2013-11-12 14:53 - 2013-11-12 14:53 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\vedení
2013-11-11 21:10 - 2013-11-11 22:30 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\11.11.2013 video sklad
2013-11-10 23:13 - 2013-11-10 23:13 - 00010124 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131110_231302.reg
2013-11-06 18:59 - 2013-11-07 10:06 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-01 15:43 - 2013-11-01 15:43 - 00000000 ____D C:\Documents and Settings\Matt\Nabídka Start\Programy\The KMPlayer
2013-10-30 13:18 - 2013-10-30 13:18 - 00032002 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131030_131814.reg
2013-10-30 13:18 - 2013-10-30 13:18 - 00001034 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131030_131826.reg
2013-10-30 12:36 - 2013-10-30 12:36 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\Foto svatba
2013-10-28 22:33 - 2013-10-28 22:33 - 00000000 ____D C:\KMPlayer
2013-10-28 22:13 - 2013-10-28 22:32 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\služebák
2013-10-20 13:37 - 2013-10-20 21:44 - 00000000 ____D C:\Documents and Settings\Matt\Dokumenty\StarCraft II
==================== One Month Modified Files and Folders =======
2013-11-16 13:14 - 2013-11-16 13:13 - 00013392 _____ C:\Documents and Settings\Matt\Plocha\FRST.txt
2013-11-16 13:13 - 2013-11-16 13:13 - 00000000 ____D C:\FRST
2013-11-16 13:13 - 2010-11-24 16:34 - 00000000 ____D C:\Documents and Settings\Matt\Plocha
2013-11-16 13:12 - 2013-11-16 13:12 - 01090529 _____ (Farbar) C:\Documents and Settings\Matt\Plocha\FRST.exe
2013-11-16 13:04 - 2013-11-16 13:04 - 00000694 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131116_130417.reg
2013-11-16 13:04 - 2010-11-24 16:34 - 00000000 ___RD C:\Documents and Settings\Matt\Dokumenty
2013-11-16 13:03 - 2013-03-22 19:30 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Down
2013-11-16 13:03 - 2010-11-24 16:34 - 00000000 ____D C:\Documents and Settings\Matt
2013-11-16 12:59 - 2013-11-13 19:54 - 00001022 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-606747145-484763869-839522115-1003UA.job
2013-11-16 12:52 - 2012-06-19 16:05 - 01568402 ____N C:\WINDOWS\WindowsUpdate.log
2013-11-16 12:46 - 2013-10-16 19:50 - 00000396 ____H C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job
2013-11-16 12:36 - 2012-04-01 16:39 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2013-11-16 12:35 - 2010-11-24 16:52 - 00000159 ____N C:\WINDOWS\wiadebug.log
2013-11-16 12:35 - 2010-11-24 16:52 - 00000050 ____N C:\WINDOWS\wiaservc.log
2013-11-16 12:35 - 2010-11-24 16:25 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-11-16 12:35 - 2001-10-25 14:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl
2013-11-15 22:09 - 2010-11-24 16:34 - 00000178 ___SH C:\Documents and Settings\Matt\ntuser.ini
2013-11-15 22:09 - 2010-11-24 16:25 - 00032466 ____N C:\WINDOWS\SchedLgU.Txt
2013-11-15 21:24 - 2013-06-25 20:45 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-11-15 19:59 - 2013-11-13 19:54 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-606747145-484763869-839522115-1003Core.job
2013-11-14 23:49 - 2013-11-14 23:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$
2013-11-14 23:49 - 2013-11-14 23:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$
2013-11-14 23:49 - 2010-11-25 13:10 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2013-11-14 23:48 - 2013-11-14 23:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$
2013-11-14 23:48 - 2013-11-14 23:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$
2013-11-14 23:48 - 2010-11-30 14:36 - 00000000 ____D C:\WINDOWS\ie8updates
2013-11-14 23:47 - 2013-08-08 00:19 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-11-14 23:44 - 2010-11-25 16:24 - 80340640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-11-14 19:27 - 2012-04-07 11:01 - 00000000 ____D C:\Program Files\PokerStars
2013-11-14 19:18 - 2010-11-24 16:50 - 01269308 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-11-13 19:53 - 2013-11-13 19:53 - 00000000 ____D C:\Program Files\GUM3A.tmp
2013-11-12 14:53 - 2013-11-12 14:53 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\vedení
2013-11-12 00:41 - 2011-10-18 19:57 - 00000000 ____D C:\Program Files\The KMPlayer
2013-11-11 22:30 - 2013-11-11 21:10 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\11.11.2013 video sklad
2013-11-11 22:30 - 2010-11-24 17:01 - 00027648 _____ C:\Documents and Settings\Matt\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-11-10 23:13 - 2013-11-10 23:13 - 00010124 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131110_231302.reg
2013-11-10 23:12 - 2012-04-09 21:04 - 00000000 ____D C:\Documents and Settings\Matt\Data aplikací\uTorrent
2013-11-10 23:12 - 2010-11-25 11:46 - 00000000 ____D C:\Documents and Settings\Matt\Data aplikací\DAEMON Tools Lite
2013-11-10 22:56 - 2010-11-24 16:34 - 00000000 ___HD C:\Documents and Settings\Matt\Okolní síť
2013-11-10 22:53 - 2010-11-24 16:34 - 00000000 ___RD C:\Documents and Settings\Matt\Nabídka Start\Programy
2013-11-08 22:54 - 2010-12-01 21:19 - 00000069 _____ C:\WINDOWS\NeroDigital.ini
2013-11-08 20:33 - 2010-11-24 16:34 - 00000000 ___HD C:\Documents and Settings\Matt\Local Settings\Data aplikací
2013-11-07 10:06 - 2013-11-06 18:59 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-02 10:05 - 2010-11-24 18:51 - 00000000 ____D C:\Documents and Settings\Matt\Dokumenty\Stažené soubory
2013-11-01 15:43 - 2013-11-01 15:43 - 00000000 ____D C:\Documents and Settings\Matt\Nabídka Start\Programy\The KMPlayer
2013-11-01 15:42 - 2010-11-24 16:49 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy
2013-10-30 13:22 - 2012-06-12 14:25 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Matt
2013-10-30 13:21 - 2011-10-16 22:56 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Programy
2013-10-30 13:18 - 2013-10-30 13:18 - 00032002 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131030_131814.reg
2013-10-30 13:18 - 2013-10-30 13:18 - 00001034 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131030_131826.reg
2013-10-30 13:17 - 2013-08-03 00:23 - 00000000 ____D C:\Program Files\Steam
2013-10-30 13:07 - 2010-11-24 16:34 - 00000000 ___RD C:\Documents and Settings\Matt\Dokumenty\Obrázky
2013-10-30 12:36 - 2013-10-30 12:36 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\Foto svatba
2013-10-30 12:36 - 2013-05-12 14:44 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Svatba
2013-10-30 12:34 - 2013-04-14 12:33 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Games
2013-10-30 12:34 - 2010-11-24 16:49 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2013-10-30 12:33 - 2012-07-31 19:08 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\Work
2013-10-30 12:32 - 2012-10-07 14:23 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\Nehty
2013-10-28 22:33 - 2013-10-28 22:33 - 00000000 ____D C:\KMPlayer
2013-10-28 22:32 - 2013-10-28 22:13 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\služebák
2013-10-22 19:09 - 2011-10-16 23:35 - 00000000 ____D C:\Program Files\Defraggler
2013-10-22 19:09 - 2010-11-24 17:36 - 00000000 ____D C:\Program Files\Common Files\Blizzard Entertainment
2013-10-20 21:44 - 2013-10-20 13:37 - 00000000 ____D C:\Documents and Settings\Matt\Dokumenty\StarCraft II
2013-10-20 13:37 - 2010-11-24 18:18 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Blizzard Entertainment
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2004-08-17 16:49] - [2008-04-14 04:22] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\Windows\System32\winlogon.exe
[2004-08-17 16:49] - [2008-04-14 04:22] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\Windows\System32\svchost.exe
[2004-08-17 16:49] - [2008-04-14 04:22] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\Windows\System32\services.exe
[2004-08-17 16:49] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\Windows\System32\User32.dll
[2004-08-17 16:49] - [2008-04-14 04:22] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\Windows\System32\userinit.exe
[2004-08-17 16:49] - [2008-04-14 04:22] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\Windows\System32\Drivers\volsnap.sys
[2004-08-17 16:44] - [2008-04-14 03:12] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
==================== End Of Log ============================
Ran by Matt (administrator) on MATT-A14BB20269 on 16-11-2013 13:13:45
Running from C:\Documents and Settings\Matt\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Ralink Technology, Corp.) C:\Program Files\ZyXEL\NWD-270N\Common\RalinkRegistryWriter.exe
(Microsoft Corp.) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [19573352 2010-09-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [995176 2013-08-12] (Microsoft Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [136176 2010-12-01] (Google Inc.)
HKU\Administrator\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\Default User\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\UpdatusUser\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
Toolbar: HKCU - No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
DPF: {33564D57-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/ ... mv9VCM.CAB
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin: @t.garena.com/garenatalk - C:\Program Files\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll No File
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\searchplugins\wowhead.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\firmycz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mall-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mapycz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\zbocz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: defaults - C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi
FF Extension: dta - C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Seznam lištička - C:\Program Files\Mozilla Firefox\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
FF HKLM\...\Firefox\Extensions: [jqs@sun.com] - C:\Program Files\Java\jre6\lib\deploy\jqs\ff
FF Extension: Java Quick Starter - C:\Program Files\Java\jre6\lib\deploy\jqs\ff
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
Chrome:
=======
CHR RestoreOnStartup: "hxxp://www.google.cz/"
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\31.0.1650.57\pdf.dll No File
CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\31.0.1650.57\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll No File
CHR Plugin: (Skype Click to Call) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.0.0.10201_0\npSkypeChromePlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.310.5) - C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (2007 Microsoft Office system) - C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft\\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft\\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Google Update) - C:\Documents and Settings\Matt\Local Settings\Data aplikac\u00ED\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (Skype Click to Call) - C:\DOCUME~1\Matt\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.4.0.11328_0
CHR Extension: (Google Wallet) - C:\DOCUME~1\Matt\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM\...\Chrome\Extension: [niogeckbkdcabhnapjbkeiklablhjoca] - C:\Program Files\Perion\ChromeInfoBar\ChromeInfoBar.crx
CHR HKLM\...\Chrome\Extension: [pacgpkgadgmibnhpdidcnfafllnmeomc] - C:\Documents and Settings\Matt\Local Settings\Data aplikací\CRE\pacgpkgadgmibnhpdidcnfafllnmeomc.crx
CHR StartMenuInternet: Google Chrome - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22208 2013-08-12] (Microsoft Corporation)
R2 RalinkRegistryWriter; C:\Program Files\ZyXEL\NWD-270N\Common\RalinkRegistryWriter.exe [69632 2008-05-13] (Ralink Technology, Corp.)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 WinDefend; %ProgramFiles%\Windows Defender\mpsvc.dll [x]
==================== Drivers (Whitelisted) ====================
R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21361 2010-11-24] (Cisco Systems, Inc.)
S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
S1 AmdK8; C:\Windows\System32\DRIVERS\AmdK8.sys [43008 2006-07-01] (Advanced Micro Devices)
R1 AmdPPM; C:\Windows\System32\DRIVERS\AmdPPM.sys [33792 2007-04-16] (Advanced Micro Devices)
R2 Aspi32; C:\Windows\System32\drivers\aspi32.sys [16877 2002-07-17] (Adaptec)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2013-01-27] (DT Soft Ltd)
S3 gdrv; C:\WINDOWS\gdrv.sys [16608 2010-11-24] (Windows (R) 2000 DDK provider)
R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] ()
S3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [211560 2013-06-18] (Microsoft Corporation)
R0 nvata; C:\Windows\System32\DRIVERS\nvata.sys [105472 2006-10-18] (NVIDIA Corporation)
S3 NVENETFD; C:\Windows\System32\DRIVERS\NVENETFD.sys [71936 2010-08-12] (NVIDIA Corporation)
R3 nvnetbus; C:\Windows\System32\DRIVERS\nvnetbus.sys [19968 2006-11-27] (NVIDIA Corporation)
R3 rt2870; C:\Windows\System32\DRIVERS\rt2870.sys [637952 2008-10-01] (Ralink Technology, Corp.)
R0 speedfan; C:\Windows\System32\speedfan.sys [5248 2006-09-24] (Windows (R) 2000 DDK provider)
S0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2010-11-25] (Duplex Secure Ltd.)
S3 AmdLLD; system32\DRIVERS\AmdLLD.sys [x]
S3 GGSAFERDriver; \??\C:\Program Files\Garena Plus\Room\safedrv.sys [x]
S4 IntelIde; No ImagePath
S3 MSI_MSIBIOS_010507; \??\C:\Program Files\MSI\Live Update 5\msibios32_100507.sys [x]
S3 NTIOLib_1_0_4; \??\C:\Program Files\MSI\Live Update 5\NTIOLib.sys [x]
U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U5 Tcpip6; C:\Windows\System32\Drivers\Tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-16 13:13 - 2013-11-16 13:14 - 00013392 _____ C:\Documents and Settings\Matt\Plocha\FRST.txt
2013-11-16 13:13 - 2013-11-16 13:13 - 00000000 ____D C:\FRST
2013-11-16 13:12 - 2013-11-16 13:12 - 01090529 _____ (Farbar) C:\Documents and Settings\Matt\Plocha\FRST.exe
2013-11-16 13:04 - 2013-11-16 13:04 - 00000694 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131116_130417.reg
2013-11-14 23:49 - 2013-11-14 23:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$
2013-11-14 23:49 - 2013-11-14 23:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$
2013-11-14 23:48 - 2013-11-14 23:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$
2013-11-14 23:48 - 2013-11-14 23:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$
2013-11-13 19:54 - 2013-11-16 12:59 - 00001022 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-606747145-484763869-839522115-1003UA.job
2013-11-13 19:54 - 2013-11-15 19:59 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-606747145-484763869-839522115-1003Core.job
2013-11-13 19:53 - 2013-11-13 19:53 - 00000000 ____D C:\Program Files\GUM3A.tmp
2013-11-12 14:53 - 2013-11-12 14:53 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\vedení
2013-11-11 21:10 - 2013-11-11 22:30 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\11.11.2013 video sklad
2013-11-10 23:13 - 2013-11-10 23:13 - 00010124 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131110_231302.reg
2013-11-06 18:59 - 2013-11-07 10:06 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-01 15:43 - 2013-11-01 15:43 - 00000000 ____D C:\Documents and Settings\Matt\Nabídka Start\Programy\The KMPlayer
2013-10-30 13:18 - 2013-10-30 13:18 - 00032002 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131030_131814.reg
2013-10-30 13:18 - 2013-10-30 13:18 - 00001034 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131030_131826.reg
2013-10-30 12:36 - 2013-10-30 12:36 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\Foto svatba
2013-10-28 22:33 - 2013-10-28 22:33 - 00000000 ____D C:\KMPlayer
2013-10-28 22:13 - 2013-10-28 22:32 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\služebák
2013-10-20 13:37 - 2013-10-20 21:44 - 00000000 ____D C:\Documents and Settings\Matt\Dokumenty\StarCraft II
==================== One Month Modified Files and Folders =======
2013-11-16 13:14 - 2013-11-16 13:13 - 00013392 _____ C:\Documents and Settings\Matt\Plocha\FRST.txt
2013-11-16 13:13 - 2013-11-16 13:13 - 00000000 ____D C:\FRST
2013-11-16 13:13 - 2010-11-24 16:34 - 00000000 ____D C:\Documents and Settings\Matt\Plocha
2013-11-16 13:12 - 2013-11-16 13:12 - 01090529 _____ (Farbar) C:\Documents and Settings\Matt\Plocha\FRST.exe
2013-11-16 13:04 - 2013-11-16 13:04 - 00000694 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131116_130417.reg
2013-11-16 13:04 - 2010-11-24 16:34 - 00000000 ___RD C:\Documents and Settings\Matt\Dokumenty
2013-11-16 13:03 - 2013-03-22 19:30 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Down
2013-11-16 13:03 - 2010-11-24 16:34 - 00000000 ____D C:\Documents and Settings\Matt
2013-11-16 12:59 - 2013-11-13 19:54 - 00001022 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-606747145-484763869-839522115-1003UA.job
2013-11-16 12:52 - 2012-06-19 16:05 - 01568402 ____N C:\WINDOWS\WindowsUpdate.log
2013-11-16 12:46 - 2013-10-16 19:50 - 00000396 ____H C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job
2013-11-16 12:36 - 2012-04-01 16:39 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2013-11-16 12:35 - 2010-11-24 16:52 - 00000159 ____N C:\WINDOWS\wiadebug.log
2013-11-16 12:35 - 2010-11-24 16:52 - 00000050 ____N C:\WINDOWS\wiaservc.log
2013-11-16 12:35 - 2010-11-24 16:25 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-11-16 12:35 - 2001-10-25 14:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl
2013-11-15 22:09 - 2010-11-24 16:34 - 00000178 ___SH C:\Documents and Settings\Matt\ntuser.ini
2013-11-15 22:09 - 2010-11-24 16:25 - 00032466 ____N C:\WINDOWS\SchedLgU.Txt
2013-11-15 21:24 - 2013-06-25 20:45 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-11-15 19:59 - 2013-11-13 19:54 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-606747145-484763869-839522115-1003Core.job
2013-11-14 23:49 - 2013-11-14 23:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$
2013-11-14 23:49 - 2013-11-14 23:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$
2013-11-14 23:49 - 2010-11-25 13:10 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2013-11-14 23:48 - 2013-11-14 23:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$
2013-11-14 23:48 - 2013-11-14 23:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$
2013-11-14 23:48 - 2010-11-30 14:36 - 00000000 ____D C:\WINDOWS\ie8updates
2013-11-14 23:47 - 2013-08-08 00:19 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-11-14 23:44 - 2010-11-25 16:24 - 80340640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-11-14 19:27 - 2012-04-07 11:01 - 00000000 ____D C:\Program Files\PokerStars
2013-11-14 19:18 - 2010-11-24 16:50 - 01269308 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-11-13 19:53 - 2013-11-13 19:53 - 00000000 ____D C:\Program Files\GUM3A.tmp
2013-11-12 14:53 - 2013-11-12 14:53 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\vedení
2013-11-12 00:41 - 2011-10-18 19:57 - 00000000 ____D C:\Program Files\The KMPlayer
2013-11-11 22:30 - 2013-11-11 21:10 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\11.11.2013 video sklad
2013-11-11 22:30 - 2010-11-24 17:01 - 00027648 _____ C:\Documents and Settings\Matt\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-11-10 23:13 - 2013-11-10 23:13 - 00010124 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131110_231302.reg
2013-11-10 23:12 - 2012-04-09 21:04 - 00000000 ____D C:\Documents and Settings\Matt\Data aplikací\uTorrent
2013-11-10 23:12 - 2010-11-25 11:46 - 00000000 ____D C:\Documents and Settings\Matt\Data aplikací\DAEMON Tools Lite
2013-11-10 22:56 - 2010-11-24 16:34 - 00000000 ___HD C:\Documents and Settings\Matt\Okolní síť
2013-11-10 22:53 - 2010-11-24 16:34 - 00000000 ___RD C:\Documents and Settings\Matt\Nabídka Start\Programy
2013-11-08 22:54 - 2010-12-01 21:19 - 00000069 _____ C:\WINDOWS\NeroDigital.ini
2013-11-08 20:33 - 2010-11-24 16:34 - 00000000 ___HD C:\Documents and Settings\Matt\Local Settings\Data aplikací
2013-11-07 10:06 - 2013-11-06 18:59 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-02 10:05 - 2010-11-24 18:51 - 00000000 ____D C:\Documents and Settings\Matt\Dokumenty\Stažené soubory
2013-11-01 15:43 - 2013-11-01 15:43 - 00000000 ____D C:\Documents and Settings\Matt\Nabídka Start\Programy\The KMPlayer
2013-11-01 15:42 - 2010-11-24 16:49 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy
2013-10-30 13:22 - 2012-06-12 14:25 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Matt
2013-10-30 13:21 - 2011-10-16 22:56 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Programy
2013-10-30 13:18 - 2013-10-30 13:18 - 00032002 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131030_131814.reg
2013-10-30 13:18 - 2013-10-30 13:18 - 00001034 _____ C:\Documents and Settings\Matt\Dokumenty\cc_20131030_131826.reg
2013-10-30 13:17 - 2013-08-03 00:23 - 00000000 ____D C:\Program Files\Steam
2013-10-30 13:07 - 2010-11-24 16:34 - 00000000 ___RD C:\Documents and Settings\Matt\Dokumenty\Obrázky
2013-10-30 12:36 - 2013-10-30 12:36 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\Foto svatba
2013-10-30 12:36 - 2013-05-12 14:44 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Svatba
2013-10-30 12:34 - 2013-04-14 12:33 - 00000000 ___RD C:\Documents and Settings\Matt\Plocha\Games
2013-10-30 12:34 - 2010-11-24 16:49 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2013-10-30 12:33 - 2012-07-31 19:08 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\Work
2013-10-30 12:32 - 2012-10-07 14:23 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\Nehty
2013-10-28 22:33 - 2013-10-28 22:33 - 00000000 ____D C:\KMPlayer
2013-10-28 22:32 - 2013-10-28 22:13 - 00000000 ____D C:\Documents and Settings\Matt\Plocha\služebák
2013-10-22 19:09 - 2011-10-16 23:35 - 00000000 ____D C:\Program Files\Defraggler
2013-10-22 19:09 - 2010-11-24 17:36 - 00000000 ____D C:\Program Files\Common Files\Blizzard Entertainment
2013-10-20 21:44 - 2013-10-20 13:37 - 00000000 ____D C:\Documents and Settings\Matt\Dokumenty\StarCraft II
2013-10-20 13:37 - 2010-11-24 18:18 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Blizzard Entertainment
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2004-08-17 16:49] - [2008-04-14 04:22] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\Windows\System32\winlogon.exe
[2004-08-17 16:49] - [2008-04-14 04:22] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\Windows\System32\svchost.exe
[2004-08-17 16:49] - [2008-04-14 04:22] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\Windows\System32\services.exe
[2004-08-17 16:49] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\Windows\System32\User32.dll
[2004-08-17 16:49] - [2008-04-14 04:22] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\Windows\System32\userinit.exe
[2004-08-17 16:49] - [2008-04-14 04:22] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\Windows\System32\Drivers\volsnap.sys
[2004-08-17 16:44] - [2008-04-14 03:12] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
==================== End Of Log ============================
Re: Prosím o kontrolu FRST logu děkuji
Zdravim
Stahnete jeste prosim FRSTLauncher a udelejte log dle tohoto navodu http://forum.viry.cz/viewtopic.php?f=30&t=133101


Re: Prosím o kontrolu FRST logu děkuji
Omlouvám se tak snad už je to správně.
Re: Prosím o kontrolu FRST logu děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 17-11-2013 01
Ran by Matt (administrator) on MATT-A14BB20269 on 17-11-2013 13:05:35
Running from C:\Documents and Settings\Matt\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Ralink Technology, Corp.) C:\Program Files\ZyXEL\NWD-270N\Common\RalinkRegistryWriter.exe
(Microsoft Corp.) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(forum.viry.cz) C:\Documents and Settings\Matt\Plocha\FRSTLauncher.exe
(Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
(Microsoft Corporation) C:\WINDOWS\system32\ping.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [19573352 2010-09-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [995176 2013-08-12] (Microsoft Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [136176 2010-12-01] (Google Inc.)
HKU\Administrator\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\Default User\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\UpdatusUser\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
Toolbar: HKCU - No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
DPF: {33564D57-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/ ... mv9VCM.CAB
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin: @t.garena.com/garenatalk - C:\Program Files\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll No File
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\searchplugins\wowhead.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\firmycz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mall-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mapycz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\zbocz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: defaults - C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi
Ran by Matt (administrator) on MATT-A14BB20269 on 17-11-2013 13:05:35
Running from C:\Documents and Settings\Matt\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Ralink Technology, Corp.) C:\Program Files\ZyXEL\NWD-270N\Common\RalinkRegistryWriter.exe
(Microsoft Corp.) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(forum.viry.cz) C:\Documents and Settings\Matt\Plocha\FRSTLauncher.exe
(Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
(Microsoft Corporation) C:\WINDOWS\system32\ping.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [19573352 2010-09-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [995176 2013-08-12] (Microsoft Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [136176 2010-12-01] (Google Inc.)
HKU\Administrator\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\Default User\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\UpdatusUser\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
Toolbar: HKCU - No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
DPF: {33564D57-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/ ... mv9VCM.CAB
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin: @t.garena.com/garenatalk - C:\Program Files\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll No File
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\searchplugins\wowhead.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\firmycz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mall-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\mapycz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\zbocz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: defaults - C:\Documents and Settings\Matt\Data aplikací\Mozilla\Firefox\Profiles\umqgq4uc.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi
Re: Prosím o kontrolu FRST logu děkuji



- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd) HKCU\...\Run: [Google Update] - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [136176 2010-12-01] (Google Inc.) HKU\Administrator\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation) HKU\Default User\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation) HKU\UpdatusUser\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch SearchScopes: HKLM - DefaultScope value is missing. Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File Toolbar: HKCU - No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File Hosts: CMD: shutdown /r /f /t 2 End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: Prosím o kontrolu FRST logu děkuji
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 17-11-2013 01
Ran by Matt at 2013-11-18 17:58:54 Run:1
Running from C:\Documents and Settings\Matt\Plocha
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [136176 2010-12-01] (Google Inc.)
HKU\Administrator\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\Default User\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\UpdatusUser\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM - DefaultScope value is missing.
Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
Toolbar: HKCU - No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKU\Administrator\Software\Microsoft\Windows\CurrentVersion\Run\\DWQueuedReporting => Value deleted successfully.
HKU\Default User\Software\Microsoft\Windows\CurrentVersion\Run\\DWQueuedReporting => Value deleted successfully.
HKU\UpdatusUser\Software\Microsoft\Windows\CurrentVersion\Run\\DWQueuedReporting => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} => Value deleted successfully.
HKCR\CLSID\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EE5D279F-081B-4404-994D-C6B60AAEBA6D} => Value deleted successfully.
HKCR\CLSID\{EE5D279F-081B-4404-994D-C6B60AAEBA6D} => Key not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Ran by Matt at 2013-11-18 17:58:54 Run:1
Running from C:\Documents and Settings\Matt\Plocha
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd)
HKCU\...\Run: [Google Update] - C:\Documents and Settings\Matt\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [136176 2010-12-01] (Google Inc.)
HKU\Administrator\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\Default User\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKU\UpdatusUser\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [ 2011-07-27] (Microsoft Corporation)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM - DefaultScope value is missing.
Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
Toolbar: HKCU - No Name - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - No File
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Value deleted successfully.
HKU\Administrator\Software\Microsoft\Windows\CurrentVersion\Run\\DWQueuedReporting => Value deleted successfully.
HKU\Default User\Software\Microsoft\Windows\CurrentVersion\Run\\DWQueuedReporting => Value deleted successfully.
HKU\UpdatusUser\Software\Microsoft\Windows\CurrentVersion\Run\\DWQueuedReporting => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} => Value deleted successfully.
HKCR\CLSID\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EE5D279F-081B-4404-994D-C6B60AAEBA6D} => Value deleted successfully.
HKCR\CLSID\{EE5D279F-081B-4404-994D-C6B60AAEBA6D} => Key not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Re: Prosím o kontrolu FRST logu děkuji
Tak jeste uklidime
T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 


- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy


Re: Prosím o kontrolu FRST logu děkuji
Zatím bez problémů velice děkuji 
