Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Adwardhotspot - mimo jiné :(

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
miros1
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 18 pro 2013 17:27

Adwardhotspot - mimo jiné :(

#1 Příspěvek od miros1 »

Dobrý den. Jsem tu prvně, prvně zakládám něco podobného, proto prosím o trpělivost a toleranci. Nejsem moc počítačový odborník. Trápí mě "dvě" věci. 1) zblázněný počítač. Stále častěji se prostě zničehonic vypne, vypne do úsporného režimu, zapne mi samovolně různé programy (tento počítač, kalkulačka,media player...), píše mi divné znaky (rtfg) do textu, který píšu, občas mi přehodí z písmena "e" na znak eura, a podobné šílenosti - vždy to vyvrcholí vypnutím. za 2) stále častější jev je zelené slovo s označením "awardhotspot".

Prosím, pomozte mi problém najít a vyřešit. Co se nějakých antivirů týče, moc tomu nerozumí, mám nějaký superantispyware, ale moc tomu nevěřím (najde mi to nějaké "hrozby" jakože idos jízdní řády a podobně, tedy to, co asi nezpůsobuje mé problémy). Pokud je tento můj dotaz v jiné sekci, moc se omlouvám, nejsem zdejší :) Budu se těšit, že si na mě uděláte chvilku času a pomůžete mi se toho zbavit - jakkoli, ale potřebuji jít dle vašeho postupu, sám to neumím. Díky, Míra

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Adwardhotspot - mimo jiné :(

#2 Příspěvek od vyosek »

Zdravim, pekny vecer preji a vitam vas u nas na foru :welcome:

:arrow: Tema jsem presunul do spravne sekce

:arrow: Poprosim o log z RSIT http://forum.viry.cz/viewtopic.php?f=24&t=130784 at se podivame, co se nam tam ukryva
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

miros1
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 18 pro 2013 17:27

Re: Adwardhotspot - mimo jiné :(

#3 Příspěvek od miros1 »

Děkuji. Přidávám výpis ze scanu:

Logfile of random's system information tool 1.09 (written by random/random)
Run by Mirek at 2013-12-17 17:49:17
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 68 GB (59%) free of 116 GB
Total RAM: 1023 MB (27% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:49:23, on 17.12.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17023)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\Common Files\COMODO\launcher_service.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe
C:\Program Files\Comodo\Dragon\dragon_updater.exe
C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Mirek\Plocha\RSIT.exe
C:\Program Files\trend micro\Mirek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://go.microsoft.com/fwlink/?LinkId=54843
R3 - URLSearchHook: PC Tools Browser Guard - {472734EA-242A-422b-ADF8-83D1E48CC825} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
O2 - BHO: Browser Guard BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\bin\wszndesktop.exe" -q
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{D003D105-377B-4264-9B0C-C75902A995F2}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ask Update Service (APNMCP) - Unknown owner - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe (file missing)
O23 - Service: Browser Defender Update Service - Unknown owner - C:\Program Files\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe
O23 - Service: COMODO LPS Launcher (CLPSLauncher) - Comodo Security Solutions, Inc. - C:\Program Files\Common Files\COMODO\launcher_service.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (file missing)
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe (file missing)
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files\Comodo\Dragon\dragon_updater.exe
O23 - Service: GeekBuddyRSP Server (GeekBuddyRSP) - Comodo Security Solutions, Inc. - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\PC Tools\PC Tools Security\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\PC Tools\PC Tools Security\pctsSvc.exe

--
End of file - 4904 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job
C:\WINDOWS\tasks\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}.job
C:\WINDOWS\tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job
C:\WINDOWS\tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"4fbb328da3edd@4fbb328da3f17.info"=C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\9kzx24m0.default\extensions\4fbb328da3edd@4fbb328da3f17.info
"12x3q4@3244516.com"=C:\Program Files\Better-Surf\ff
"ext@bettersurfplus.com"=C:\Program Files\BetterSurf\BetterSurfPlus\ff
"{cb84136f-9c44-433a-9048-c5cd9df1dc16}"=C:\Program Files\PC Tools\PC Tools Security\BDT\Firefox\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.15.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\WINDOWS\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.15.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pages.tvunetworks.com/WebPlayer]
"Description"=TVU Web Player Plugin
"Path"=C:\WINDOWS\system32\TVUAx\npTVUAx.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2852]
"Description"=RealMedia Plugin
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.46]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1662]
"Description"=RealPlayer Version Plugin
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.46]
"Description"=6.0.12.46
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@vizzed.com/VizzedRGR]
"Description"=Vizzed Retro Game Room
"Path"=C:\Program Files\Vizzed\Vizzed Retro Game Room\NpVizzedRgr.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\extensions\
bofzxhkweo@uyujk-.com
btp-9oi@z-oeyeuoi.org
seuoy@jqms-huxc.edu
xqg@hvvouau.co.uk
zhzc-7iia@azqa-gvdyu.net
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}]
PC Tools Browser Guard BHO - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll [2012-10-23 1137784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{472734EA-242A-422B-ADF8-83D1E48CC825} - PC Tools Browser Guard - C:\Program Files\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll [2012-10-23 1137784]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-08-17 13877248]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-07-30 40960]
"cz.seznam.software.autoupdate"=C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-03-24 1983816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-03-18 767312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-07-30 40960]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2009-08-17 13877248]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2009-08-17 86016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\pdfFactory Dispatcher v3]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fppdis3a.exe [2009-02-26 593920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2010-03-17 19520544]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2008-04-27 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2013-05-07 115440]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\WINDOWS\system32\msiexec.exe"="C:\WINDOWS\system32\msiexec.exe:*:Enabled:UpdateManagerSetup"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\AVG\AVG2013\avgmfapx.exe"="C:\Program Files\AVG\AVG2013\avgmfapx.exe:*:Enabled:Instalátor AVG"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\iMesh Applications\iMesh\iMesh.exe"="C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 1 month======

2013-12-17 17:49:18 ----D---- C:\Program Files\trend micro
2013-12-17 17:49:17 ----D---- C:\rsit
2013-12-17 17:02:33 ----D---- C:\WINDOWS\ERUNT
2013-12-17 14:03:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-12-17 14:03:17 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-12-17 14:03:17 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2013-12-17 12:21:40 ----A---- C:\WINDOWS\system32\muweb.dll
2013-12-17 12:21:40 ----A---- C:\WINDOWS\system32\mucltui.dll
2013-12-16 11:15:04 ----A---- C:\WINDOWS\system32\drivers\PCTBD.sys
2013-12-16 11:15:04 ----A---- C:\WINDOWS\BDTSupport.dll
2013-12-16 11:15:03 ----A---- C:\WINDOWS\SGDetectionTool.dll
2013-12-16 11:15:03 ----A---- C:\WINDOWS\PCTBDRes.dll
2013-12-16 11:15:03 ----A---- C:\WINDOWS\PCTBDCore.dll
2013-12-16 11:14:52 ----A---- C:\WINDOWS\system32\drivers\pctgntdi.sys
2013-12-16 11:14:45 ----A---- C:\WINDOWS\system32\drivers\pctBTFix.sys
2013-12-16 11:14:37 ----A---- C:\WINDOWS\system32\drivers\pctplsm.sys
2013-12-16 11:14:37 ----A---- C:\WINDOWS\system32\drivers\pctplsg.sys
2013-12-16 11:08:14 ----A---- C:\WINDOWS\system32\drivers\pctEFA.sys
2013-12-16 11:08:14 ----A---- C:\WINDOWS\system32\drivers\pctDS.sys
2013-12-16 11:08:09 ----A---- C:\WINDOWS\system32\drivers\PCTCore.sys
2013-12-16 11:08:09 ----A---- C:\WINDOWS\system32\drivers\PCTAppEvent.sys
2013-12-16 10:09:23 ----SHD---- C:\Config.Msi
2013-12-15 18:07:52 ----D---- C:\WINDOWS\027B5748C40941FE949B7B81A8304EF4.TMP
2013-12-15 18:03:04 ----D---- C:\Program Files\Enigma Software Group
2013-12-15 15:46:20 ----D---- C:\trainztmp
2013-12-15 12:58:57 ----D---- C:\WINDOWS\system32\URTTEMP
2013-12-14 10:05:03 ----D---- C:\Documents and Settings\All Users\Data aplikací\surrf and keep
2013-12-14 10:05:02 ----D---- C:\Program Files\surrf and keep
2013-12-14 09:52:55 ----A---- C:\Documents and Settings\Mirek\Data aplikací\regsvr32.exe_log.txt
2013-12-14 09:52:55 ----A---- C:\Documents and Settings\Mirek\Data aplikací\LiveSupport.exe_log.txt
2013-12-14 09:52:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\QuickSet
2013-12-14 09:52:11 ----D---- C:\Documents and Settings\All Users\Data aplikací\YoutubeAdblocker
2013-12-14 09:52:10 ----D---- C:\Program Files\YoutubeAdblocker
2013-12-14 09:52:05 ----D---- C:\Documents and Settings\All Users\Data aplikací\surf ando kaeep
2013-12-14 09:52:04 ----D---- C:\Program Files\surf ando kaeep
2013-12-14 09:51:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\12889c35e138d404
2013-12-13 15:13:20 ----D---- C:\Documents and Settings\Mirek\Data aplikací\GestaltGames
2013-12-13 15:13:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\GestaltGames
2013-12-13 12:33:21 ----D---- C:\Program Files\Seznam.cz
2013-12-13 12:30:24 ----D---- C:\Program Files\Hry.cz
2013-12-10 13:11:30 ----D---- C:\Program Files\GridinSoft Trojan Killer
2013-12-09 19:55:51 ----D---- C:\Program Files\VS Revo Group
2013-12-09 19:27:21 ----D---- C:\Program Files\SUPERAntiSpyware
2013-12-09 19:27:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2013-12-09 16:59:59 ----D---- C:\Zachvev - Ztracena stoparka
2013-12-09 16:50:51 ----D---- C:\Program Files\Zachvev - Ztracena stoparka
2013-12-08 13:03:31 ----D---- C:\Program Files\Common Files\COMODO
2013-12-08 09:21:55 ----A---- C:\WINDOWS\system32\drivers\sfi.dat
2013-12-08 09:20:44 ----A---- C:\WINDOWS\system32\certsentry.dll
2013-12-08 09:19:54 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Shared Space
2013-12-08 09:18:38 ----A---- C:\WINDOWS\system32\mfc71.dll
2013-12-08 09:16:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\COMODO
2013-12-08 09:15:23 ----D---- C:\Program Files\Comodo
2013-12-08 09:15:15 ----D---- C:\Documents and Settings\All Users\Data aplikací\Comodo Downloader
2013-12-08 09:02:02 ----D---- C:\WINDOWS\system32\NtmsData
2013-12-08 08:45:34 ----D---- C:\Program Files\AskPartnerNetwork
2013-12-08 08:45:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-12-08 08:44:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\APN
2013-12-08 08:43:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avira
2013-12-06 19:26:12 ----D---- C:\Documents and Settings\Mirek\Data aplikací\eCyber
2013-12-06 17:46:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\CDB
2013-12-06 17:45:20 ----D---- C:\Program Files\Common Files\AVG Secure Search
2013-12-06 17:44:10 ----A---- C:\WINDOWS\Reimage.ini
2013-12-06 14:57:34 ----D---- C:\Documents and Settings\Mirek\Data aplikací\AVAST Software
2013-12-06 14:55:22 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-12-03 03:51:23 ----SHD---- C:\WINDOWS\CSC
2013-12-03 03:51:18 ----A---- C:\WINDOWS\ntbtlog.txt
2013-12-03 03:47:55 ----D---- C:\Program Files\Unlocker
2013-12-03 03:47:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Babylon
2013-12-03 02:50:51 ----HD---- C:\WINDOWS\PIF
2013-11-27 15:11:38 ----D---- C:\WINDOWS\220FB0354744483A9A0B41DF77061583.TMP

======List of files/folders modified in the last 1 month======

2013-12-17 17:49:18 ----RD---- C:\Program Files
2013-12-17 17:30:24 ----D---- C:\WINDOWS\system32\CatRoot2
2013-12-17 17:30:07 ----D---- C:\WINDOWS\system32\drivers
2013-12-17 17:23:08 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2013-12-17 17:22:55 ----D---- C:\WINDOWS
2013-12-17 17:17:48 ----D---- C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz
2013-12-17 17:12:58 ----D---- C:\WINDOWS\temp
2013-12-17 17:11:40 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-12-17 17:05:59 ----HD---- C:\WINDOWS\inf
2013-12-17 16:59:34 ----HD---- C:\WINDOWS\$hf_mig$
2013-12-17 16:31:19 ----D---- C:\Program Files\Czech Soccer Manager 2002 FE
2013-12-17 14:22:36 ----D---- C:\WINDOWS\WBEM
2013-12-17 14:22:33 ----D---- C:\WINDOWS\system32
2013-12-17 12:25:00 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-12-17 12:21:40 ----D---- C:\WINDOWS\Help
2013-12-16 11:26:06 ----SHD---- C:\WINDOWS\Installer
2013-12-16 11:17:12 ----D---- C:\Program Files\Google
2013-12-16 11:16:34 ----SD---- C:\WINDOWS\Tasks
2013-12-16 11:15:09 ----D---- C:\Program Files\Common Files\PC Tools
2013-12-16 11:14:41 ----D---- C:\WINDOWS\WinSxS
2013-12-16 11:14:40 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Tools
2013-12-16 11:14:17 ----D---- C:\Program Files\PC Tools
2013-12-16 11:08:15 ----SHD---- C:\System Volume Information
2013-12-16 10:09:29 ----SD---- C:\Documents and Settings\Mirek\Data aplikací\Microsoft
2013-12-15 18:07:46 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2013-12-15 12:59:45 ----D---- C:\WINDOWS\Registration
2013-12-15 12:59:29 ----RSD---- C:\WINDOWS\assembly
2013-12-15 12:59:21 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-15 12:45:05 ----HD---- C:\Program Files\InstallShield Installation Information
2013-12-14 19:44:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\AlawarWrapper
2013-12-14 19:43:15 ----D---- C:\WINDOWS\Prefetch
2013-12-14 18:27:44 ----D---- C:\Documents and Settings\Mirek\Data aplikací\Alawar Stargaze
2013-12-14 15:45:54 ----D---- C:\Documents and Settings\Mirek\Data aplikací\AlawarEntertainment
2013-12-14 10:06:03 ----D---- C:\Documents and Settings\All Users\Data aplikací\InstallMate
2013-12-14 09:57:20 ----D---- C:\Fifa99
2013-12-10 20:16:38 ----HD---- C:\WINDOWS\svcdotnet
2013-12-10 16:04:00 ----D---- C:\WINDOWS\Debug
2013-12-10 12:56:58 ----D---- C:\WINDOWS\system32\Restore
2013-12-08 13:03:31 ----D---- C:\Program Files\Common Files
2013-12-08 09:01:59 ----D---- C:\WINDOWS\repair
2013-12-06 17:45:40 ----D---- C:\Program Files\Mozilla Firefox
2013-12-06 14:56:41 ----A---- C:\WINDOWS\system32\aswBoot.exe
2013-12-04 17:53:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\Špidla Data Processing, s.r.o
2013-12-03 03:54:50 ----A---- C:\WINDOWS\system.ini
2013-12-03 03:34:51 ----D---- C:\Documents and Settings\Mirek\Data aplikací\uTorrent
2013-12-03 03:19:36 ----D---- C:\Documents and Settings
2013-12-03 03:18:02 ----D---- C:\Documents and Settings\Mirek\Data aplikací\Špidla Data Processing, s.r.o

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 Inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\System32\DRIVERS\inspect.sys [2013-06-18 99520]
R0 nvatabus;nvatabus; C:\WINDOWS\system32\drivers\nvatabus.sys [2008-07-30 100736]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PCTCore;PCTools KDS; C:\WINDOWS\system32\drivers\PCTCore.sys [2012-10-22 368616]
R0 pctDS;PC Tools Data Store; C:\WINDOWS\system32\drivers\pctDS.sys [2012-02-28 342168]
R0 pctEFA;PC Tools Extended File Attributes; C:\WINDOWS\system32\drivers\pctEFA.sys [2012-02-28 909728]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
R1 CFRMD;CFRMD; C:\WINDOWS\system32\DRIVERS\CFRMD.sys [2013-05-07 36112]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2013-06-18 18528]
R1 cmdGuard;COMODO Internet Security Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2013-07-08 587352]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [2013-06-18 32816]
R1 HMD;COMODO livePCsupport Hardware Monitor Driver; C:\WINDOWS\system32\DRIVERS\hmd.sys [2013-10-07 14272]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 pctgntdi;pctgntdi; \??\C:\WINDOWS\system32\drivers\pctgntdi.sys []
R1 PCTSD;PC Tools Spyware Doctor Driver; C:\WINDOWS\System32\Drivers\PCTSD.sys [2012-11-01 202280]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 NwlnkIpx;Transportní protokol kompatibilní s NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2008-04-14 88320]
R2 NwlnkNb;Služba NWLink pro rozhraní NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2001-10-25 63232]
R2 NwlnkSpx;Protokol NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2001-10-25 55936]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-03-17 5878304]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-08-16 7729568]
R3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2008-04-14 163584]
R3 PCTBD;PC Tools Browser Defender Driver; C:\WINDOWS\System32\Drivers\PCTBD.sys [2012-10-23 62688]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S1 iSafeNetFilter;iSafeNetFilter; \??\C:\Program Files\iSafe\iSafeNetFilter.sys []
S1 SABKUTIL;SABKUTIL; \??\C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABKUTIL.sys []
S2 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys []
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 catchme;catchme; \??\C:\DOCUME~1\Mirek\LOCALS~1\Temp\catchme.sys []
S3 cpuz134;cpuz134; \??\C:\DOCUME~1\Mirek\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys []
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 Lavasoft Kernexplorer;Lavasoft helper driver; \??\C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 pctplsm;pctplsm; \??\C:\WINDOWS\system32\drivers\pctplsm.sys []
S3 SABProcEnum;SABProcEnum; \??\C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABProcEnum.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;Nokia USB Serial Port Driver ; C:\WINDOWS\system32\DRIVERS\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2008-04-27 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]
S3 ZD1211BU(TP-LINK);TL-WN322G/WN322G+ Wireless USB Adapter Driver(TP-LINK); C:\WINDOWS\system32\DRIVERS\zd1211Bu.sys [2007-06-25 500736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2013-05-23 119056]
R2 Browser Defender Update Service;Browser Defender Update Service; C:\Program Files\PC Tools\PC Tools Security\BDT\BDTUpdateService.exe [2012-10-23 580728]
R2 CLPSLauncher;COMODO LPS Launcher; C:\Program Files\Common Files\COMODO\launcher_service.exe [2013-11-28 70352]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2013-11-11 2098880]
R2 GeekBuddyRSP;GeekBuddyRSP Server; C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe [2013-11-28 2327248]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-03-01 170912]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-08-17 168004]
R2 NWCWorkstation;Klient systému NetWare; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 APNMCP;Ask Update Service; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe []
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe []
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-16 136176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-11 256904]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe []
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-16 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-20 194032]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-11-16 119408]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 sdAuxService;PC Tools Auxiliary Service; C:\Program Files\PC Tools\PC Tools Security\pctsAuxs.exe [2012-10-31 403416]
S3 sdCoreService;PC Tools Security Service; C:\Program Files\PC Tools\PC Tools Security\pctsSvc.exe [2012-11-01 1162360]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Adwardhotspot - mimo jiné :(

#4 Příspěvek od vyosek »

:arrow: V prve rade budem muset udelat poradek se zabezpecenim, mate tam od vseho neco a jen zbytky a zadna poradna ochrana

:arrow: Pouzijte nasledujici removery a pripadne odinstalujte :arrow: Stahnete SecurityCheck http://screen317.spywareinfoforum.org/SecurityCheck.exe
  • Ulozte nejlepe na Plochu
  • Spustte tradicne dvouklikem a postupujte dle pokynu utility
  • Po dokonceni skenu se vytvori a otevre log, ten mi sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

miros1
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 18 pro 2013 17:27

Re: Adwardhotspot - mimo jiné :(

#5 Příspěvek od miros1 »

Tak snad je to ono...

Results of screen317's Security Check version 0.99.77
Windows XP Service Pack 3 x86
Internet Explorer 7 Out of date!
``````````````Antivirus/Firewall Check:``````````````
COMODO Antivirus
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
SUPERAntiSpyware
CCleaner
Java 7 Update 15
Java version out of Date!
Adobe Flash Player 10 Flash Player out of Date!
Adobe Reader XI
Mozilla Firefox (25.0.1)
Google Chrome 31.0.1650.63
````````Process Check: objlist.exe by Laurent````````
`````````````````System Health check`````````````````
Total Fragmentation on Drive C::
````````````````````End of Log``````````````````````
wS\

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Adwardhotspot - mimo jiné :(

#6 Příspěvek od vyosek »

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

miros1
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 18 pro 2013 17:27

Re: Adwardhotspot - mimo jiné :(

#7 Příspěvek od miros1 »

Ten Junkware:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Microsoft Windows XP x86
Ran by Mirek on út 17.12.2013 at 19:30:58,76
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

~~~ Services

~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL

~~~ Registry Keys

~~~ Files

~~~ Folders

~~~ FireFox

Successfully deleted: [File] C:\user.js
Successfully deleted the following from C:\Documents and Settings\Mirek\Data aplikací\mozilla\firefox\profiles\0f9cek7x.default-1386354203562\prefs.js

user_pref("extensions.RO8UCXM6sZE.url", "hxxp://getsync.info/sync2/?q=hfZ9ofV9CShEAen0rHC6tMqLDe49CNU0n8OMCMlNhd9FrHwGrjkEpdkGrjrMBzqUojwHrjsFpdwErTs8rih7hfs0pihPBMn0qjaFrdC6p

~~~ Chrome

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on út 17.12.2013 at 19:47:01,14
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Tak nyní posílám log z AdwC

# AdwCleaner v3.015 - Report created 17/12/2013 at 19:09:35
# Updated 10/12/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Mirek - MIRA
# Running from : C:\Documents and Settings\Mirek\Plocha\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : APNMCP

***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\apn
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\Babylon
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\boost_interprocess
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\Premium
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\QuickSet
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\StarApp
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\YoutubeAdblocker
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\ADDICT-THING
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\AlawarWrapper
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\surf ando kaeep
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\surrf and keep
Folder Deleted : C:\Program Files\AskPartnerNetwork
Folder Deleted : C:\Program Files\iMesh Applications
Folder Deleted : C:\Program Files\Moozy
Folder Deleted : C:\Program Files\YoutubeAdblocker
Folder Deleted : C:\Program Files\Common Files\AVG Secure Search
Folder Deleted : C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Babylon
Folder Deleted : C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Conduit
Folder Deleted : C:\Documents and Settings\Mirek\Local Settings\Data aplikací\GamePlayLabs Plugin
Folder Deleted : C:\Documents and Settings\Mirek\Local Settings\Data aplikací\PackageAware
Folder Deleted : C:\Documents and Settings\Mirek\Local Settings\Data aplikací\AlawarWrapper
Folder Deleted : C:\Documents and Settings\Mirek\Local Settings\Data aplikací\uTorrentBar
Folder Deleted : C:\DOCUME~1\Mirek\LOCALS~1\Temp\apn
Folder Deleted : C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\Extensions\bofzxhkweo@uyujk-.com
Folder Deleted : C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\Extensions\btp-9oi@z-oeyeuoi.org
Folder Deleted : C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\Extensions\seuoy@jqms-huxc.edu
Folder Deleted : C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\Extensions\xqg@hvvouau.co.uk
Folder Deleted : C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\Extensions\zhzc-7iia@azqa-gvdyu.net
Folder Deleted : C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[!] Folder Deleted : C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\mocblcnaofikinigmceddfghppkkjbog
[!] Folder Deleted : C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\poheodfamflhhhdcmjfeggbgigeefaco
File Deleted : C:\DOCUME~1\Mirek\LOCALS~1\Temp\Uninstall.exe

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (bez doplňků).lnk
Shortcut Disinfected : C:\Documents and Settings\Mirek\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (Žádné doplňky).lnk

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dednnpigldgdbpgcdpfppmlcnnbjciel
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jplinpmadfkdgipabgcdchbdikologlh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lpmkgpnbiojfaoklbkpfneikocaobfai
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mocblcnaofikinigmceddfghppkkjbog
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\poheodfamflhhhdcmjfeggbgigeefaco
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [Backup.old.Start Page]
Key Deleted : HKCU\Toolbar
Key Deleted : HKLM\SOFTWARE\Classes\and
Key Deleted : HKLM\SOFTWARE\Classes\SearchNewTab.SearchNewTab
Key Deleted : HKLM\SOFTWARE\Classes\SearchNewTab.SearchNewTab.1.0
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2233703
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2786678
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1973277F-87B0-4EA3-9ED2-470A91D284CF}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{65C994A2-C65A-4A20-BA92-AADAFC0DCE49}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFE8AAFD-A0F3-4329-84E9-6B679EC93EC2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{14F35FFC-522A-4DD1-A07E-6B8B65C6891E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7A4141A0-3851-4758-AEBD-B52BCBC21BC3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{950F80EF-32C2-47DD-9C35-9576E21EE66E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A0F21154-8751-468A-A40C-92E8324AB8F2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C1545464-C77C-4130-A572-1C619E2895FE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E09BA1E2-D479-46B1-A0AF-AE88238C3DFC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ED0E67AD-926C-4008-87E5-03CF72AA2A7E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF7FEC6D-451B-4452-9D26-7E10C6B5DB6E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{22B0769F-794B-4422-AC84-47B123C8986D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{255E0B2A-D747-4EEF-B7CE-159D73A3656D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{28ED590D-F5ED-4E05-A87F-1D759F1C6169}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3AE26843-9171-4F23-A8E5-5421701276A4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{45D5B93F-E2ED-4AF2-915E-DCDDBDA8C33C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{771B99AB-636F-4A11-9039-8DFEB927B061}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8E7AD93B-3E87-423D-947F-A321FA7E31C4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A8321AA2-2227-40C7-8525-6C2F4E1B0EBE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AA41A731-6814-4A70-A6F1-C0A20FBBFBD5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ABBB8A9E-D8AF-40D1-94BE-5175077465FC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BBA74401-6D6F-4BBD-9F65-E8623814F3BB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BF737694-56F6-46FA-9FDC-FA99A5B25FAD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CFCD164E-8AC9-478E-9ECC-B616A932016C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D2F39980-399F-492E-8D88-5FF7CCB3B47F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D5961CC0-B442-4567-8030-67E241EF4CC2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E450067F-1C93-41A7-928E-07E5C2EEC680}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F977D9F2-4BDC-44A6-B508-7C0284C61EED}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{BEAA0C04-ED15-4C17-800B-28716025A4E4}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2CF0D01-7657-48AA-98C9-AE5E64757FCC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{33333333-F789-11CE-86F8-0020AFD8C6DB}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4723AAA8-B2F9-4CC1-9E60-190976DB1FA4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8271B5D6-76D3-4ABF-AEB3-1721161C76BC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C8A8E59C-BA48-401B-89C5-633243AE9AC5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C8A8E59C-BA48-401B-89C5-633243AE9AC5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74C36554-31F0-49DD-8857-ED6A64DF45BE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BFF6B2CA-366C-4A90-B685-D87776DEB0D2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4990D03-017D-47A2-827F-4FB36AD383A1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B164C4C-02E1-49BB-BC4E-CB9F802033EB}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{30F5AB16-9F1E-4E99-93F2-ECB9ABB0EC12}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2421}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{30F5AB16-9F1E-4E99-93F2-ECB9ABB0EC12}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2421}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List [C:\Program Files\iMesh Applications\iMesh\iMesh.exe]
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\Imesh
Key Deleted : HKCU\Software\PIP
Key Deleted : HKCU\Software\uTorrentBar
Key Deleted : HKLM\Software\AskPartnerNetwork
Key Deleted : HKLM\Software\BetterSurf
Key Deleted : HKLM\Software\GamePlayLabs
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\iMeshSRTB
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\Speedchecker Limited
Key Deleted : HKLM\Software\SProtector
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\uTorrentBar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A35CA8FF-CB7D-8361-1CB9-83219CD11C78}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentBar Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\uTorrentBar Toolbar
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F937787D1134BBA4B846D98011F78299

***** [ Browsers ] *****

-\\ Internet Explorer v7.0.6000.17023

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Backup.Old.Start Page]

-\\ Mozilla Firefox v25.0.1 (cs)

[ File : C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\prefs.js ]

Line Deleted : user_pref("extensions.HZQBALNqM1V.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n{try{for(i=0;i<5;i[...]
Line Deleted : user_pref("extensions.RO8UCXM6sZE.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n{try{for(i=0;i<5;i[...]
Line Deleted : user_pref("extensions.XJTaRL.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};try{new function(){if(null==document.getElementById(\"id_arrrrppdjafklbvnn4440fm\[...]
Line Deleted : user_pref("extensions.s30gR.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n{try{for(i=0;i<5;i++){wi[...]
Line Deleted : user_pref("extensions.zqP.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};try{new function(){if(null==document.getElementById(\"id_arrrrppdjafklbvnn4440fm\")&[...]

-\\ Google Chrome v31.0.1650.63

[ File : C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [17653 octets] - [17/12/2013 19:08:44]
AdwCleaner[S0].txt - [14759 octets] - [17/12/2013 19:09:35]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [14820 octets] ##########
Naposledy upravil(a) miros1 dne 18 pro 2013 19:49, celkem upraveno 1 x.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Adwardhotspot - mimo jiné :(

#8 Příspěvek od vyosek »

Poprosim o log dle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

miros1
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 18 pro 2013 17:27

Re: Adwardhotspot - mimo jiné :(

#9 Příspěvek od miros1 »

ten Junkware už mám, přesto se vrhnu na tento scan. A pak tuto zprávu upravím, abych nepsal další okno

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Adwardhotspot - mimo jiné :(

#10 Příspěvek od vyosek »

Dejte mi to prosim jako novou odpoved, jinak se mi to nezobrazi jako novy prispevek. Dekuji :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

miros1
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 18 pro 2013 17:27

Re: Adwardhotspot - mimo jiné :(

#11 Příspěvek od miros1 »

Ten Junkware:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Microsoft Windows XP x86
Ran by Mirek on út 17.12.2013 at 19:30:58,76
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

~~~ Services

~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL

~~~ Registry Keys

~~~ Files

~~~ Folders

~~~ FireFox

Successfully deleted: [File] C:\user.js
Successfully deleted the following from C:\Documents and Settings\Mirek\Data aplikací\mozilla\firefox\profiles\0f9cek7x.default-1386354203562\prefs.js

user_pref("extensions.RO8UCXM6sZE.url", "hxxp://getsync.info/sync2/?q=hfZ9ofV9CShEAen0rHC6tMqLDe49CNU0n8OMCMlNhd9FrHwGrjkEpdkGrjrMBzqUojwHrjsFpdwErTs8rih7hfs0pihPBMn0qjaFrdC6p

~~~ Chrome

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on út 17.12.2013 at 19:47:01,14
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


FRST

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-12-2013 03
Ran by Mirek (administrator) on MIRA on 17-12-2013 19:56:18
Running from C:\Documents and Settings\Mirek\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 7
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Comodo Security Solutions, Inc.) C:\Program Files\Common Files\COMODO\launcher_service.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
() C:\Program Files\Comodo\Dragon\dragon_updater.exe
(Comodo Security Solutions, Inc.) C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmplayer.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(forum.viry.cz) C:\Documents and Settings\Mirek\Plocha\FRSTLauncher.exe
(Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
(Microsoft Corporation) C:\WINDOWS\system32\ping.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [seznam-listicka-distribuce] - C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\Default User\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32
HKU\Default User\...\RunOnce: [nltide_3] - rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - Backup.Old.DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847}
SearchScopes: HKCU - Backup.Old.DefaultScope {CCBDD7BB-8A0D-41C3-BD8C-53102FC40FF7}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = http://us.search.yahoo.com/search?p={se ... chr-comodo
Toolbar: HKCU - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
ShellExecuteHooks: - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No File [ ]
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [115440 2013-05-07] (SuperAdBlocker.com)
Tcpip\..\Interfaces\{D003D105-377B-4264-9B0C-C75902A995F2}: [NameServer]8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF Plugin: @canon.com/EPPEX - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.15.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.15.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pages.tvunetworks.com/WebPlayer - C:\WINDOWS\system32\TVUAx\npTVUAx.dll (TVU networks)
FF Plugin: @real.com/nppl3260;version=6.0.11.2852 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nppl3260;version=6.0.12.46 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1662 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.46 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @vizzed.com/VizzedRGR - C:\Program Files\Vizzed\Vizzed Retro Game Room\NpVizzedRgr.dll No File
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Adblock Plus - C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [4fbb328da3edd@4fbb328da3f17.info] - C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\9kzx24m0.default\extensions\4fbb328da3edd@4fbb328da3f17.info
FF HKLM\...\Firefox\Extensions: [12x3q4@3244516.com] - C:\Program Files\Better-Surf\ff
FF HKLM\...\Firefox\Extensions: [ext@bettersurfplus.com] - C:\Program Files\BetterSurf\BetterSurfPlus\ff
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/?clid=13906
CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding}
CHR Extension: (Google Docs) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Email) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig\1.3.13_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Slovn\u00EDk) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd\1.2.13_0
CHR Extension: (YouTube) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Better Surf Plus) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\mmifolfpllfdhilecpdpmemhelmanajl\1.1_0
CHR Extension: (Google Wallet) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Rychl\u00E1 volba) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak\1.5.14_0
CHR Extension: (Gmail) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx
CHR HKLM\...\Chrome\Extension: [mmifolfpllfdhilecpdpmemhelmanajl] - C:\Program Files\BetterSurf\BetterSurfPlus\ch\BetterSurfPlus.crx

========================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [119056 2013-05-23] (SUPERAntiSpyware.com)
R2 CLPSLauncher; C:\Program Files\Common Files\COMODO\launcher_service.exe [70352 2013-11-28] (Comodo Security Solutions, Inc.)
R2 DragonUpdater; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2098880 2013-11-11] ()
R2 GeekBuddyRSP; C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2013-11-28] (Comodo Security Solutions, Inc.)
R2 NWCWorkstation; C:\Windows\System32\nwwks.dll [65536 2008-04-14] (Microsoft Corporation)
S2 cmdAgent; "C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe" [x]
S3 cmdvirth; "C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe" [x]
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf"

==================== Drivers (Whitelisted) ====================

S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R1 CFRMD; C:\Windows\System32\DRIVERS\CFRMD.sys [36112 2013-05-07] (Windows (R) Win 7 DDK provider)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [18528 2013-06-18] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [587352 2013-07-08] (COMODO)
R1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [32816 2013-06-18] (COMODO)
R1 HMD; C:\Windows\System32\DRIVERS\hmd.sys [14272 2013-10-07] ()
R0 Inspect; C:\Windows\System32\DRIVERS\inspect.sys [99520 2013-06-18] (COMODO)
S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
R0 nvatabus; C:\Windows\System32\Drivers\nvatabus.sys [100736 2008-07-30] (NVIDIA Corporation)
R2 NwlnkIpx; C:\Windows\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-14] (Microsoft Corporation)
R2 NwlnkNb; C:\Windows\System32\DRIVERS\nwlnknb.sys [63232 2001-10-25] (Microsoft Corporation)
R2 NwlnkSpx; C:\Windows\System32\DRIVERS\nwlnkspx.sys [55936 2001-10-25] (Microsoft Corporation)
R3 NWRDR; C:\Windows\System32\DRIVERS\nwrdr.sys [163584 2008-04-14] (Microsoft Corporation)
R3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 ZD1211BU(TP-LINK); C:\Windows\System32\DRIVERS\zd1211Bu.sys [500736 2007-06-25] (Atheros Technology Corporation)
S3 catchme; \??\C:\DOCUME~1\Mirek\LOCALS~1\Temp\catchme.sys [x]
S3 cpuz134; \??\C:\DOCUME~1\Mirek\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
S4 IntelIde; No ImagePath
S1 iSafeNetFilter; \??\C:\Program Files\iSafe\iSafeNetFilter.sys [x]
S3 Lavasoft Kernexplorer; \??\C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys [x]
S1 SABKUTIL; \??\C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABKUTIL.sys [x]
S3 SABProcEnum; \??\C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABProcEnum.sys [x]
S2 StarOpen; No ImagePath

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-12-17 19:56 - 2013-12-17 19:56 - 00013559 _____ C:\Documents and Settings\Mirek\Plocha\FRST.txt
2013-12-17 19:56 - 2013-12-17 19:56 - 00000000 ____D C:\FRST
2013-12-17 19:55 - 2013-12-17 19:55 - 00029696 _____ C:\Documents and Settings\Mirek\Local Settings\Data aplikací\MSGBOX.EXE
2013-12-17 19:55 - 2013-12-17 19:55 - 00015327 _____ C:\Documents and Settings\Mirek\Plocha\LM.bat
2013-12-17 19:54 - 2013-12-17 19:54 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Mirek\Plocha\FRSTLauncher.exe
2013-12-17 19:53 - 2013-12-17 19:53 - 01062259 _____ (Farbar) C:\Documents and Settings\Mirek\Plocha\FRST.exe
2013-12-17 19:08 - 2013-12-17 19:09 - 00000000 ____D C:\AdwCleaner
2013-12-17 19:08 - 2013-12-17 19:08 - 01226750 _____ C:\Documents and Settings\Mirek\Plocha\adwcleaner.exe
2013-12-17 18:47 - 2013-12-17 18:47 - 01034531 _____ (Thisisu) C:\Documents and Settings\Mirek\Plocha\JRT.exe
2013-12-17 18:41 - 2013-12-17 18:41 - 00002168 _____ C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.log
2013-12-17 18:23 - 2013-12-17 18:23 - 00367616 _____ (Avira GmbH) C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.exe
2013-12-17 18:19 - 2013-12-17 18:19 - 00891200 _____ C:\Documents and Settings\Mirek\Plocha\SecurityCheck.exe
2013-12-17 18:12 - 2013-12-17 18:12 - 00490648 _____ (AVAST Software) C:\Documents and Settings\Mirek\Plocha\avastclear.exe
2013-12-17 17:49 - 2013-12-17 17:49 - 00000000 ____D C:\rsit
2013-12-17 17:49 - 2013-12-17 17:49 - 00000000 ____D C:\Program Files\trend micro
2013-12-17 17:48 - 2013-12-17 17:48 - 00781383 _____ C:\Documents and Settings\Mirek\Plocha\RSIT.exe
2013-12-17 17:02 - 2013-12-17 17:02 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-17 16:59 - 2013-12-17 17:05 - 00008130 _____ C:\WINDOWS\KB2868626.log
2013-12-17 16:59 - 2013-12-17 17:05 - 00008049 _____ C:\WINDOWS\KB2712808.log
2013-12-17 16:59 - 2013-12-17 17:05 - 00007969 _____ C:\WINDOWS\KB2758857.log
2013-12-17 16:59 - 2013-12-17 17:05 - 00007887 _____ C:\WINDOWS\KB2479943.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007813 _____ C:\WINDOWS\KB2345886.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007780 _____ C:\WINDOWS\KB2544893-v2.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007725 _____ C:\WINDOWS\KB2478971.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007563 _____ C:\WINDOWS\KB2585542.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007489 _____ C:\WINDOWS\KB2691442.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007406 _____ C:\WINDOWS\KB2631813.log
2013-12-17 16:58 - 2013-12-17 17:04 - 00007319 _____ C:\WINDOWS\KB2847311.log
2013-12-17 16:58 - 2013-12-17 17:04 - 00007316 _____ C:\WINDOWS\KB2115168.log
2013-12-17 16:58 - 2013-12-17 17:04 - 00007238 _____ C:\WINDOWS\KB2655992.log
2013-12-17 16:57 - 2013-12-17 17:04 - 00007154 _____ C:\WINDOWS\KB2443105.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00007859 _____ C:\WINDOWS\KB2481109.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00007077 _____ C:\WINDOWS\KB2802968.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00006996 _____ C:\WINDOWS\KB2898715.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00006912 _____ C:\WINDOWS\KB2598479.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00006792 _____ C:\WINDOWS\KB982132.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00006720 _____ C:\WINDOWS\KB978338.log
2013-12-17 16:56 - 2013-12-17 17:03 - 00006750 _____ C:\WINDOWS\KB2876331.log
2013-12-17 16:56 - 2013-12-17 17:03 - 00006678 _____ C:\WINDOWS\KB2507938.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00007137 _____ C:\WINDOWS\KB2859537.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006672 _____ C:\WINDOWS\KB2864063.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006596 _____ C:\WINDOWS\KB2780091.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006592 _____ C:\WINDOWS\KB2845187.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006433 _____ C:\WINDOWS\KB2757638.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006426 _____ C:\WINDOWS\KB2876217.log
2013-12-17 16:55 - 2013-12-17 17:02 - 00006867 _____ C:\WINDOWS\KB2893984.log
2013-12-17 16:55 - 2013-12-17 17:02 - 00006348 _____ C:\WINDOWS\KB2820917.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00007496 _____ C:\WINDOWS\KB2510581.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006344 _____ C:\WINDOWS\KB2850869.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006343 _____ C:\WINDOWS\KB2893294.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006192 _____ C:\WINDOWS\KB2719985.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006186 _____ C:\WINDOWS\KB2862152.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006104 _____ C:\WINDOWS\KB2749655.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006028 _____ C:\WINDOWS\KB2508429.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00005926 _____ C:\WINDOWS\KB971029.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005769 _____ C:\WINDOWS\KB979687.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005709 _____ C:\WINDOWS\KB2506212.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005631 _____ C:\WINDOWS\KB2483185.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005522 _____ C:\WINDOWS\KB977816.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005468 _____ C:\WINDOWS\KB2419632.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005384 _____ C:\WINDOWS\KB2653956.log
2013-12-17 16:51 - 2013-12-17 17:01 - 00005375 _____ C:\WINDOWS\KB2892075.log
2013-12-17 16:51 - 2013-12-17 17:01 - 00005295 _____ C:\WINDOWS\KB2619339.log
2013-12-17 16:51 - 2013-12-17 17:01 - 00005268 _____ C:\WINDOWS\KB2705219-v2.log
2013-12-17 16:51 - 2013-12-17 17:01 - 00005137 _____ C:\WINDOWS\KB2727528.log
2013-12-17 16:50 - 2013-12-17 17:01 - 00005034 _____ C:\WINDOWS\KB979482.log
2013-12-17 16:50 - 2013-12-17 17:01 - 00004973 _____ C:\WINDOWS\KB978542.log
2013-12-17 16:50 - 2013-12-17 17:00 - 00054656 _____ C:\WINDOWS\KB2898785-IE7.log
2013-12-17 16:49 - 2013-12-17 17:00 - 00006429 _____ C:\WINDOWS\KB2676562.log
2013-12-17 16:49 - 2013-12-17 17:00 - 00005750 _____ C:\WINDOWS\KB2813345.log
2013-12-17 16:49 - 2013-12-17 17:00 - 00004878 _____ C:\WINDOWS\KB2509553.log
2013-12-17 16:48 - 2013-12-17 17:00 - 00004635 _____ C:\WINDOWS\KB982665.log
2013-12-17 16:46 - 2013-12-17 16:57 - 00004478 _____ C:\WINDOWS\KB2620712.log
2013-12-17 16:46 - 2013-12-17 16:56 - 00004404 _____ C:\WINDOWS\KB2584146.log
2013-12-17 16:44 - 2013-12-17 16:46 - 00004368 _____ C:\WINDOWS\KB979309.log
2013-12-17 14:03 - 2013-12-17 18:07 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-12-17 14:03 - 2013-12-17 14:03 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-12-17 14:03 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2013-12-17 12:21 - 2012-06-02 15:19 - 00017648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mucltui.dll.mui
2013-12-17 12:21 - 2012-06-02 15:18 - 00275696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mucltui.dll
2013-12-17 12:21 - 2012-06-02 15:18 - 00214256 _____ (Microsoft Corporation) C:\WINDOWS\system32\muweb.dll
2013-12-16 11:17 - 2013-12-16 11:17 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome
2013-12-16 11:16 - 2013-12-17 19:26 - 00000938 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-16 11:16 - 2013-12-17 19:11 - 00000934 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-16 11:15 - 2013-12-16 11:15 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\Data aplikací\COMODO
2013-12-15 19:20 - 2013-12-15 19:20 - 00001386 _____ C:\WINDOWS\COM+.log
2013-12-15 18:07 - 2013-12-16 10:09 - 00000000 ____D C:\WINDOWS\027B5748C40941FE949B7B81A8304EF4.TMP
2013-12-15 15:46 - 2013-12-15 15:47 - 00000000 ____D C:\trainztmp
2013-12-15 12:57 - 2013-12-15 12:57 - 00000503 _____ C:\WINDOWS\DirectX.log
2013-12-14 09:51 - 2013-12-15 18:47 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\12889c35e138d404
2013-12-13 15:13 - 2013-12-13 15:13 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\GestaltGames
2013-12-13 15:13 - 2013-12-13 15:13 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\GestaltGames
2013-12-13 12:33 - 2013-12-13 12:33 - 00000000 ____D C:\Program Files\Seznam.cz
2013-12-13 12:30 - 2013-12-14 20:44 - 00000000 ____D C:\Program Files\Hry.cz
2013-12-13 12:30 - 2013-12-14 20:44 - 00000000 ____D C:\Documents and Settings\Mirek\Nabídka Start\Programy\Hry.cz
2013-12-10 18:46 - 2013-12-10 18:46 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\ESET
2013-12-10 16:04 - 2013-12-10 16:04 - 00000457 _____ C:\WINDOWS\nsw.log
2013-12-09 19:55 - 2013-12-09 19:55 - 00000000 ____D C:\Program Files\VS Revo Group
2013-12-09 19:43 - 2013-12-09 19:43 - 00000000 ____D C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\COMODO
2013-12-09 19:27 - 2013-12-09 19:45 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-12-09 19:27 - 2013-12-09 19:27 - 00001678 _____ C:\Documents and Settings\All Users\Plocha\SUPERAntiSpyware Free Edition.lnk
2013-12-09 19:27 - 2013-12-09 19:27 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2013-12-09 19:24 - 2013-12-09 19:24 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\COMODO
2013-12-09 17:51 - 2013-12-09 17:51 - 00066206 _____ C:\WINDOWS\system32\ScanResults.xml
2013-12-09 17:47 - 2013-12-09 17:47 - 00001056 _____ C:\WINDOWS\system32\SettingsFile
2013-12-09 16:59 - 2013-12-15 18:47 - 00000000 ____D C:\Zachvev - Ztracena stoparka
2013-12-08 13:03 - 2013-12-08 13:03 - 00000000 ____D C:\Program Files\Common Files\COMODO
2013-12-08 09:22 - 2013-12-17 16:59 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job
2013-12-08 09:22 - 2013-12-17 15:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job
2013-12-08 09:22 - 2013-12-11 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job
2013-12-08 09:22 - 2013-12-09 19:44 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}.job
2013-12-08 09:21 - 2013-12-17 19:31 - 00216465 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2013-12-08 09:20 - 2013-12-08 09:20 - 00048392 _____ (COMODO CA Limited) C:\WINDOWS\system32\certsentry.dll
2013-12-08 09:19 - 2013-12-08 09:20 - 00000000 ___SD C:\Documents and Settings\All Users\Data aplikací\Shared Space
2013-12-08 09:18 - 2013-12-08 09:18 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc71.dll
2013-12-08 09:16 - 2013-12-08 09:22 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\COMODO
2013-12-08 09:15 - 2013-12-09 21:24 - 00000000 ____D C:\Program Files\Comodo
2013-12-08 09:15 - 2013-12-08 09:15 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Comodo Downloader
2013-12-08 09:02 - 2013-12-08 09:02 - 00000000 ____D C:\WINDOWS\system32\NtmsData
2013-12-08 08:43 - 2013-12-08 09:07 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Avira
2013-12-06 19:26 - 2013-12-06 19:26 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\eCyber
2013-12-06 17:46 - 2013-12-06 17:46 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\CDB
2013-12-06 17:44 - 2013-12-06 17:47 - 00000154 _____ C:\WINDOWS\Reimage.ini
2013-12-06 14:57 - 2013-12-17 18:17 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\AVAST Software
2013-12-06 14:55 - 2013-12-08 08:55 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-12-04 17:47 - 2013-12-07 23:23 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\Stažené soubory
2013-12-03 03:51 - 2013-12-03 03:51 - 00000000 __SHD C:\WINDOWS\CSC
2013-12-03 03:47 - 2013-12-06 14:48 - 00000000 ____D C:\Program Files\Unlocker
2013-12-03 02:50 - 2013-12-03 02:50 - 00000000 ___HD C:\WINDOWS\PIF
2013-11-28 03:13 - 2013-11-28 03:13 - 00000104 _____ C:\Documents and Settings\Mirek\Plocha\Tento počítač.lnk
2013-11-27 15:13 - 2013-11-28 03:07 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\pudl
2013-11-27 15:11 - 2013-11-27 15:55 - 00000000 ____D C:\WINDOWS\220FB0354744483A9A0B41DF77061583.TMP
2013-11-21 03:49 - 2013-11-21 03:49 - 00000045 _____ C:\WINDOWS\system32\initdebug.nfo

==================== One Month Modified Files and Folders =======

2013-12-17 19:56 - 2013-12-17 19:56 - 00013559 _____ C:\Documents and Settings\Mirek\Plocha\FRST.txt
2013-12-17 19:56 - 2013-12-17 19:56 - 00000000 ____D C:\FRST
2013-12-17 19:56 - 2010-04-09 20:56 - 00000000 ____D C:\Documents and Settings\Mirek\Plocha
2013-12-17 19:55 - 2013-12-17 19:55 - 00029696 _____ C:\Documents and Settings\Mirek\Local Settings\Data aplikací\MSGBOX.EXE
2013-12-17 19:55 - 2013-12-17 19:55 - 00015327 _____ C:\Documents and Settings\Mirek\Plocha\LM.bat
2013-12-17 19:55 - 2010-04-09 20:56 - 00000000 ___HD C:\Documents and Settings\Mirek\Local Settings\Data aplikací
2013-12-17 19:54 - 2013-12-17 19:54 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Mirek\Plocha\FRSTLauncher.exe
2013-12-17 19:53 - 2013-12-17 19:53 - 01062259 _____ (Farbar) C:\Documents and Settings\Mirek\Plocha\FRST.exe
2013-12-17 19:33 - 2012-05-25 22:17 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-12-17 19:31 - 2013-12-08 09:21 - 00216465 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2013-12-17 19:26 - 2013-12-16 11:16 - 00000938 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-17 19:16 - 2013-03-06 13:14 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz
2013-12-17 19:12 - 2010-04-09 20:40 - 01565416 _____ C:\WINDOWS\WindowsUpdate.log
2013-12-17 19:11 - 2013-12-16 11:16 - 00000934 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-17 19:11 - 2010-04-09 22:23 - 00000157 _____ C:\WINDOWS\wiadebug.log
2013-12-17 19:11 - 2010-04-09 22:23 - 00000050 _____ C:\WINDOWS\wiaservc.log
2013-12-17 19:11 - 2010-04-09 20:55 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-12-17 19:11 - 2009-08-17 02:03 - 00249324 _____ C:\WINDOWS\system32\NvApps.xml
2013-12-17 19:10 - 2010-04-09 20:56 - 00000178 ___SH C:\Documents and Settings\Mirek\ntuser.ini
2013-12-17 19:10 - 2010-04-09 20:55 - 00032610 _____ C:\WINDOWS\SchedLgU.Txt
2013-12-17 19:09 - 2013-12-17 19:08 - 00000000 ____D C:\AdwCleaner
2013-12-17 19:09 - 2010-04-09 22:21 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2013-12-17 19:08 - 2013-12-17 19:08 - 01226750 _____ C:\Documents and Settings\Mirek\Plocha\adwcleaner.exe
2013-12-17 18:47 - 2013-12-17 18:47 - 01034531 _____ (Thisisu) C:\Documents and Settings\Mirek\Plocha\JRT.exe
2013-12-17 18:47 - 2010-07-19 14:40 - 00000000 ____D C:\Program Files\Czech Soccer Manager 2002 FE
2013-12-17 18:41 - 2013-12-17 18:41 - 00002168 _____ C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.log
2013-12-17 18:23 - 2013-12-17 18:23 - 00367616 _____ (Avira GmbH) C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.exe
2013-12-17 18:22 - 2010-04-09 20:56 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\Notepad++
2013-12-17 18:19 - 2013-12-17 18:19 - 00891200 _____ C:\Documents and Settings\Mirek\Plocha\SecurityCheck.exe
2013-12-17 18:17 - 2013-12-06 14:57 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\AVAST Software
2013-12-17 18:17 - 2010-04-09 22:22 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2013-12-17 18:17 - 2010-04-09 20:41 - 00002504 _____ C:\WINDOWS\system32\CONFIG.NT
2013-12-17 18:13 - 2010-04-09 22:22 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2013-12-17 18:12 - 2013-12-17 18:12 - 00490648 _____ (AVAST Software) C:\Documents and Settings\Mirek\Plocha\avastclear.exe
2013-12-17 18:07 - 2013-12-17 14:03 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-12-17 18:03 - 2012-10-30 22:13 - 00000000 ____D C:\Program Files\Common Files\PC Tools
2013-12-17 18:02 - 2013-10-24 18:07 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\PC Tools
2013-12-17 17:49 - 2013-12-17 17:49 - 00000000 ____D C:\rsit
2013-12-17 17:49 - 2013-12-17 17:49 - 00000000 ____D C:\Program Files\trend micro
2013-12-17 17:48 - 2013-12-17 17:48 - 00781383 _____ C:\Documents and Settings\Mirek\Plocha\RSIT.exe
2013-12-17 17:44 - 2010-04-09 20:56 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty
2013-12-17 17:41 - 2012-01-27 02:01 - 00000000 ____D C:\Documents and Settings\Mirek\Plocha\učení
2013-12-17 17:08 - 2010-04-09 20:56 - 00000000 __RHD C:\Documents and Settings\Mirek\Data aplikací
2013-12-17 17:05 - 2013-12-17 16:59 - 00008130 _____ C:\WINDOWS\KB2868626.log
2013-12-17 17:05 - 2013-12-17 16:59 - 00008049 _____ C:\WINDOWS\KB2712808.log
2013-12-17 17:05 - 2013-12-17 16:59 - 00007969 _____ C:\WINDOWS\KB2758857.log
2013-12-17 17:05 - 2013-12-17 16:59 - 00007887 _____ C:\WINDOWS\KB2479943.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007813 _____ C:\WINDOWS\KB2345886.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007780 _____ C:\WINDOWS\KB2544893-v2.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007725 _____ C:\WINDOWS\KB2478971.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007563 _____ C:\WINDOWS\KB2585542.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007489 _____ C:\WINDOWS\KB2691442.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007406 _____ C:\WINDOWS\KB2631813.log
2013-12-17 17:05 - 2013-10-24 18:08 - 00529105 _____ C:\WINDOWS\system32\Drivers\Cat.DB
2013-12-17 17:04 - 2013-12-17 16:58 - 00007319 _____ C:\WINDOWS\KB2847311.log
2013-12-17 17:04 - 2013-12-17 16:58 - 00007316 _____ C:\WINDOWS\KB2115168.log
2013-12-17 17:04 - 2013-12-17 16:58 - 00007238 _____ C:\WINDOWS\KB2655992.log
2013-12-17 17:04 - 2013-12-17 16:57 - 00007154 _____ C:\WINDOWS\KB2443105.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00007859 _____ C:\WINDOWS\KB2481109.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00007077 _____ C:\WINDOWS\KB2802968.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00006996 _____ C:\WINDOWS\KB2898715.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00006912 _____ C:\WINDOWS\KB2598479.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00006792 _____ C:\WINDOWS\KB982132.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00006720 _____ C:\WINDOWS\KB978338.log
2013-12-17 17:03 - 2013-12-17 16:56 - 00006750 _____ C:\WINDOWS\KB2876331.log
2013-12-17 17:03 - 2013-12-17 16:56 - 00006678 _____ C:\WINDOWS\KB2507938.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00007137 _____ C:\WINDOWS\KB2859537.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006672 _____ C:\WINDOWS\KB2864063.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006596 _____ C:\WINDOWS\KB2780091.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006592 _____ C:\WINDOWS\KB2845187.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006433 _____ C:\WINDOWS\KB2757638.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006426 _____ C:\WINDOWS\KB2876217.log
2013-12-17 17:02 - 2013-12-17 17:02 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-17 17:02 - 2013-12-17 16:55 - 00006867 _____ C:\WINDOWS\KB2893984.log
2013-12-17 17:02 - 2013-12-17 16:55 - 00006348 _____ C:\WINDOWS\KB2820917.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00007496 _____ C:\WINDOWS\KB2510581.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006344 _____ C:\WINDOWS\KB2850869.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006343 _____ C:\WINDOWS\KB2893294.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006192 _____ C:\WINDOWS\KB2719985.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006186 _____ C:\WINDOWS\KB2862152.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006104 _____ C:\WINDOWS\KB2749655.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006028 _____ C:\WINDOWS\KB2508429.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00005926 _____ C:\WINDOWS\KB971029.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005769 _____ C:\WINDOWS\KB979687.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005709 _____ C:\WINDOWS\KB2506212.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005631 _____ C:\WINDOWS\KB2483185.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005522 _____ C:\WINDOWS\KB977816.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005468 _____ C:\WINDOWS\KB2419632.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005384 _____ C:\WINDOWS\KB2653956.log
2013-12-17 17:01 - 2013-12-17 16:51 - 00005375 _____ C:\WINDOWS\KB2892075.log
2013-12-17 17:01 - 2013-12-17 16:51 - 00005295 _____ C:\WINDOWS\KB2619339.log
2013-12-17 17:01 - 2013-12-17 16:51 - 00005268 _____ C:\WINDOWS\KB2705219-v2.log
2013-12-17 17:01 - 2013-12-17 16:51 - 00005137 _____ C:\WINDOWS\KB2727528.log
2013-12-17 17:01 - 2013-12-17 16:50 - 00005034 _____ C:\WINDOWS\KB979482.log
2013-12-17 17:01 - 2013-12-17 16:50 - 00004973 _____ C:\WINDOWS\KB978542.log
2013-12-17 17:00 - 2013-12-17 16:50 - 00054656 _____ C:\WINDOWS\KB2898785-IE7.log
2013-12-17 17:00 - 2013-12-17 16:49 - 00006429 _____ C:\WINDOWS\KB2676562.log
2013-12-17 17:00 - 2013-12-17 16:49 - 00005750 _____ C:\WINDOWS\KB2813345.log
2013-12-17 17:00 - 2013-12-17 16:49 - 00004878 _____ C:\WINDOWS\KB2509553.log
2013-12-17 17:00 - 2013-12-17 16:48 - 00004635 _____ C:\WINDOWS\KB982665.log
2013-12-17 16:59 - 2013-12-08 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job
2013-12-17 16:59 - 2010-04-10 14:14 - 00000000 ___HD C:\WINDOWS\$hf_mig$
2013-12-17 16:57 - 2013-12-17 16:46 - 00004478 _____ C:\WINDOWS\KB2620712.log
2013-12-17 16:56 - 2013-12-17 16:46 - 00004404 _____ C:\WINDOWS\KB2584146.log
2013-12-17 16:46 - 2013-12-17 16:44 - 00004368 _____ C:\WINDOWS\KB979309.log
2013-12-17 15:22 - 2013-12-08 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job
2013-12-17 14:03 - 2013-12-17 14:03 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-12-17 12:38 - 2010-04-09 22:16 - 00000000 ___RD C:\Documents and Settings\Mirek\Plocha\mp3
2013-12-17 12:21 - 2013-03-11 12:03 - 00366321 _____ C:\WINDOWS\setupapi.log
2013-12-17 12:21 - 2010-04-09 22:16 - 00000000 ____D C:\WINDOWS\Help
2013-12-16 19:14 - 2010-04-09 22:22 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start
2013-12-16 11:21 - 2011-03-06 13:34 - 00000000 ____D C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Google
2013-12-16 11:17 - 2013-12-16 11:17 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome
2013-12-16 11:17 - 2011-03-06 13:29 - 00000000 ____D C:\Program Files\Google
2013-12-16 11:17 - 2010-07-11 17:08 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google
2013-12-16 11:15 - 2013-12-16 11:15 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\Data aplikací\COMODO
2013-12-16 11:15 - 2010-04-09 20:55 - 00000000 ___HD C:\Documents and Settings\LocalService\Local Settings\Data aplikací
2013-12-16 10:09 - 2013-12-15 18:07 - 00000000 ____D C:\WINDOWS\027B5748C40941FE949B7B81A8304EF4.TMP
2013-12-16 10:09 - 2010-04-09 20:56 - 00000000 ___RD C:\Documents and Settings\Mirek\Nabídka Start\Programy
2013-12-15 19:20 - 2013-12-15 19:20 - 00001386 _____ C:\WINDOWS\COM+.log
2013-12-15 18:49 - 2013-08-03 22:17 - 00000000 ____D C:\Documents and Settings\Mirek\Nabídka Start\Programy\Ultimate Turbine Sound - 737NG v2
2013-12-15 18:47 - 2013-12-14 09:51 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\12889c35e138d404
2013-12-15 18:47 - 2013-12-09 16:59 - 00000000 ____D C:\Zachvev - Ztracena stoparka
2013-12-15 18:42 - 2011-12-26 18:58 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\PowerChallenge
2013-12-15 18:07 - 2013-10-24 12:18 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard
2013-12-15 15:47 - 2013-12-15 15:46 - 00000000 ____D C:\trainztmp
2013-12-15 12:59 - 2010-04-09 22:22 - 01119426 ____C C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-15 12:59 - 2010-04-09 20:38 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy\Nástroje pro správu
2013-12-15 12:59 - 2010-04-09 20:38 - 00000000 ____D C:\WINDOWS\Registration
2013-12-15 12:57 - 2013-12-15 12:57 - 00000503 _____ C:\WINDOWS\DirectX.log
2013-12-15 12:45 - 2010-04-09 22:13 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-12-15 11:25 - 2001-10-25 17:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl
2013-12-14 20:44 - 2013-12-13 12:30 - 00000000 ____D C:\Program Files\Hry.cz
2013-12-14 20:44 - 2013-12-13 12:30 - 00000000 ____D C:\Documents and Settings\Mirek\Nabídka Start\Programy\Hry.cz
2013-12-14 18:27 - 2013-04-26 12:25 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\Alawar Stargaze
2013-12-14 18:27 - 2010-04-09 22:22 - 00000000 ___RD C:\Documents and Settings\All Users\Dokumenty
2013-12-14 15:45 - 2012-09-23 11:41 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\AlawarEntertainment
2013-12-14 10:06 - 2012-05-21 16:33 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\InstallMate
2013-12-14 09:57 - 2010-12-14 09:55 - 00000000 ____D C:\Fifa99
2013-12-13 15:13 - 2013-12-13 15:13 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\GestaltGames
2013-12-13 15:13 - 2013-12-13 15:13 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\GestaltGames
2013-12-13 12:33 - 2013-12-13 12:33 - 00000000 ____D C:\Program Files\Seznam.cz
2013-12-11 09:22 - 2013-12-08 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job
2013-12-10 20:16 - 2011-12-07 18:24 - 00000000 ___HD C:\WINDOWS\svcdotnet
2013-12-10 18:46 - 2013-12-10 18:46 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\ESET
2013-12-10 16:04 - 2013-12-10 16:04 - 00000457 _____ C:\WINDOWS\nsw.log
2013-12-10 12:56 - 2010-04-09 20:39 - 00000000 ____D C:\WINDOWS\system32\Restore
2013-12-09 21:24 - 2013-12-08 09:15 - 00000000 ____D C:\Program Files\Comodo
2013-12-09 19:55 - 2013-12-09 19:55 - 00000000 ____D C:\Program Files\VS Revo Group
2013-12-09 19:45 - 2013-12-09 19:27 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-12-09 19:44 - 2013-12-08 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}.job
2013-12-09 19:43 - 2013-12-09 19:43 - 00000000 ____D C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\COMODO
2013-12-09 19:43 - 2010-04-09 20:48 - 00000000 ___HD C:\Documents and Settings\NetworkService\Local Settings\Data aplikací
2013-12-09 19:37 - 2010-04-09 22:22 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
2013-12-09 19:27 - 2013-12-09 19:27 - 00001678 _____ C:\Documents and Settings\All Users\Plocha\SUPERAntiSpyware Free Edition.lnk
2013-12-09 19:27 - 2013-12-09 19:27 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2013-12-09 19:24 - 2013-12-09 19:24 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\COMODO
2013-12-09 18:59 - 2013-03-11 13:23 - 00153242 _____ C:\WINDOWS\wmsetup.log
2013-12-09 17:51 - 2013-12-09 17:51 - 00066206 _____ C:\WINDOWS\system32\ScanResults.xml
2013-12-09 17:47 - 2013-12-09 17:47 - 00001056 _____ C:\WINDOWS\system32\SettingsFile
2013-12-08 13:03 - 2013-12-08 13:03 - 00000000 ____D C:\Program Files\Common Files\COMODO
2013-12-08 09:22 - 2013-12-08 09:16 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\COMODO
2013-12-08 09:20 - 2013-12-08 09:20 - 00048392 _____ (COMODO CA Limited) C:\WINDOWS\system32\certsentry.dll
2013-12-08 09:20 - 2013-12-08 09:19 - 00000000 ___SD C:\Documents and Settings\All Users\Data aplikací\Shared Space
2013-12-08 09:18 - 2013-12-08 09:18 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc71.dll
2013-12-08 09:15 - 2013-12-08 09:15 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Comodo Downloader
2013-12-08 09:07 - 2013-12-08 08:43 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Avira
2013-12-08 09:02 - 2013-12-08 09:02 - 00000000 ____D C:\WINDOWS\system32\NtmsData
2013-12-08 09:01 - 2010-04-09 22:16 - 00000000 ____D C:\WINDOWS\repair
2013-12-08 08:55 - 2013-12-06 14:55 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-12-08 08:53 - 2010-04-09 20:56 - 00000000 ____D C:\Documents and Settings\Mirek
2013-12-07 23:23 - 2013-12-04 17:47 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\Stažené soubory
2013-12-07 00:06 - 2010-04-09 22:15 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty\plocha stará
2013-12-06 19:26 - 2013-12-06 19:26 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\eCyber
2013-12-06 19:26 - 2010-04-09 22:21 - 00000000 __RHD C:\Documents and Settings\Default User\Data aplikací
2013-12-06 19:18 - 2012-11-04 21:17 - 00000924 _____ C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2013-12-06 17:47 - 2013-12-06 17:44 - 00000154 _____ C:\WINDOWS\Reimage.ini
2013-12-06 17:46 - 2013-12-06 17:46 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\CDB
2013-12-06 17:45 - 2013-11-16 18:59 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-12-06 15:42 - 2013-03-11 10:48 - 00008166 _____ C:\WINDOWS\setupact.log
2013-12-06 14:48 - 2013-12-03 03:47 - 00000000 ____D C:\Program Files\Unlocker
2013-12-04 17:53 - 2013-08-09 17:46 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Špidla Data Processing, s.r.o
2013-12-03 04:09 - 2010-04-09 21:19 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty\Obrázky
2013-12-03 03:54 - 2001-10-25 17:00 - 00000454 _____ C:\WINDOWS\system.ini
2013-12-03 03:51 - 2013-12-03 03:51 - 00000000 __SHD C:\WINDOWS\CSC
2013-12-03 03:34 - 2011-03-20 15:24 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\uTorrent
2013-12-03 03:18 - 2010-12-24 09:19 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\Špidla Data Processing, s.r.o
2013-12-03 03:09 - 2010-04-09 21:32 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty\Filmy
2013-12-03 02:50 - 2013-12-03 02:50 - 00000000 ___HD C:\WINDOWS\PIF
2013-12-03 02:48 - 2013-06-24 19:01 - 00000000 ___RD C:\Documents and Settings\Mirek\Plocha\FOTKY
2013-12-03 00:35 - 2010-06-18 13:00 - 00088576 _____ C:\Documents and Settings\Mirek\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-12-02 23:41 - 2012-04-27 11:31 - 00000000 ___RD C:\Documents and Settings\Mirek\Plocha\propaganda
2013-12-02 22:57 - 2012-03-13 01:28 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\turk
2013-12-02 22:26 - 2010-04-09 21:19 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty\Hudba
2013-11-28 03:13 - 2013-11-28 03:13 - 00000104 _____ C:\Documents and Settings\Mirek\Plocha\Tento počítač.lnk
2013-11-28 03:07 - 2013-11-27 15:13 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\pudl
2013-11-27 15:55 - 2013-11-27 15:11 - 00000000 ____D C:\WINDOWS\220FB0354744483A9A0B41DF77061583.TMP
2013-11-27 00:54 - 2010-04-11 10:41 - 03805234 ___SH C:\Documents and Settings\Mirek\Plocha\Thumbs.db
2013-11-21 03:49 - 2013-11-21 03:49 - 00000045 _____ C:\WINDOWS\system32\initdebug.nfo
2013-11-19 00:32 - 2010-07-19 14:33 - 00000000 ____D C:\Documents and Settings\Mirek\Plocha\Manažer
2013-11-17 15:53 - 2012-11-04 21:17 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service

Some content of TEMP:
====================
C:\Documents and Settings\Mirek\Local Settings\temp\avgnt.exe
C:\Documents and Settings\Mirek\Local Settings\temp\GC_PCTOOLS.exe
C:\Documents and Settings\Mirek\Local Settings\temp\InstHelper.exe
C:\Documents and Settings\Mirek\Local Settings\temp\JiveXViewerStart1382817313.exe
C:\Documents and Settings\Mirek\Local Settings\temp\LiveSupport_setup.exe
C:\Documents and Settings\Mirek\Local Settings\temp\oi_{6B3013E7-1B16-4D16-BC10-4C54452A3608}.exe
C:\Documents and Settings\Mirek\Local Settings\temp\Quarantine.exe
C:\Documents and Settings\Mirek\Local Settings\temp\ReimagePackage.exe
C:\Documents and Settings\Mirek\Local Settings\temp\sfamcc00001.dll
C:\Documents and Settings\Mirek\Local Settings\temp\sfextra.dll
C:\Documents and Settings\Mirek\Local Settings\temp\SHSetup.exe
C:\Documents and Settings\Mirek\Local Settings\temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe
[2008-07-30 09:10] - [2008-07-30 09:10] - 1589760 ____A (Microsoft Corporation) dd7e25e20aebd672dae7e1d911c2d824

C:\Windows\System32\winlogon.exe
[2008-07-30 09:17] - [2008-07-30 09:17] - 0557056 ____A (Microsoft Corporation) 12a799ad9415ae9c8abcc5f75e9cf034

C:\Windows\System32\svchost.exe
[2008-04-14 09:52] - [2008-04-14 09:52] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93

C:\Windows\System32\services.exe
[2008-04-14 09:52] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7

C:\Windows\System32\User32.dll
[2008-07-30 09:16] - [2008-07-30 09:16] - 0578560 ____A (Microsoft Corporation) ccb32d10c69a89822e9134c0c4894be1

C:\Windows\System32\userinit.exe
[2008-04-14 09:52] - [2008-04-14 09:52] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239

C:\Windows\System32\Drivers\volsnap.sys
[2008-04-14 08:42] - [2008-04-14 08:42] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1


==================== End Of Log ============================

miros1
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 18 pro 2013 17:27

Re: Adwardhotspot - mimo jiné :(

#12 Příspěvek od miros1 »

FRST2

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-12-2013 03
Ran by Mirek (administrator) on MIRA on 17-12-2013 19:56:18
Running from C:\Documents and Settings\Mirek\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 7
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Comodo Security Solutions, Inc.) C:\Program Files\Common Files\COMODO\launcher_service.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
() C:\Program Files\Comodo\Dragon\dragon_updater.exe
(Comodo Security Solutions, Inc.) C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmplayer.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(forum.viry.cz) C:\Documents and Settings\Mirek\Plocha\FRSTLauncher.exe
(Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
(Microsoft Corporation) C:\WINDOWS\system32\ping.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [seznam-listicka-distribuce] - C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\Default User\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32
HKU\Default User\...\RunOnce: [nltide_3] - rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - Backup.Old.DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847}
SearchScopes: HKCU - Backup.Old.DefaultScope {CCBDD7BB-8A0D-41C3-BD8C-53102FC40FF7}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = http://us.search.yahoo.com/search?p={se ... chr-comodo
Toolbar: HKCU - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
ShellExecuteHooks: - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No File [ ]
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [115440 2013-05-07] (SuperAdBlocker.com)
Tcpip\..\Interfaces\{D003D105-377B-4264-9B0C-C75902A995F2}: [NameServer]8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF Plugin: @canon.com/EPPEX - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.15.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.15.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pages.tvunetworks.com/WebPlayer - C:\WINDOWS\system32\TVUAx\npTVUAx.dll (TVU networks)
FF Plugin: @real.com/nppl3260;version=6.0.11.2852 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nppl3260;version=6.0.12.46 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1662 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.46 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @vizzed.com/VizzedRGR - C:\Program Files\Vizzed\Vizzed Retro Game Room\NpVizzedRgr.dll No File
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Adblock Plus - C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\0f9cek7x.default-1386354203562\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [4fbb328da3edd@4fbb328da3f17.info] - C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\9kzx24m0.default\extensions\4fbb328da3edd@4fbb328da3f17.info
FF HKLM\...\Firefox\Extensions: [12x3q4@3244516.com] - C:\Program Files\Better-Surf\ff
FF HKLM\...\Firefox\Extensions: [ext@bettersurfplus.com] - C:\Program Files\BetterSurf\BetterSurfPlus\ff
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/?clid=13906
CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding}
CHR Extension: (Google Docs) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Email) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig\1.3.13_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Slovn\u00EDk) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd\1.2.13_0
CHR Extension: (YouTube) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Better Surf Plus) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\mmifolfpllfdhilecpdpmemhelmanajl\1.1_0
CHR Extension: (Google Wallet) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Seznam Li\u0161ti\u010Dka - Rychl\u00E1 volba) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak\1.5.14_0
CHR Extension: (Gmail) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx
CHR HKLM\...\Chrome\Extension: [mmifolfpllfdhilecpdpmemhelmanajl] - C:\Program Files\BetterSurf\BetterSurfPlus\ch\BetterSurfPlus.crx

========================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [119056 2013-05-23] (SUPERAntiSpyware.com)
R2 CLPSLauncher; C:\Program Files\Common Files\COMODO\launcher_service.exe [70352 2013-11-28] (Comodo Security Solutions, Inc.)
R2 DragonUpdater; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2098880 2013-11-11] ()
R2 GeekBuddyRSP; C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2013-11-28] (Comodo Security Solutions, Inc.)
R2 NWCWorkstation; C:\Windows\System32\nwwks.dll [65536 2008-04-14] (Microsoft Corporation)
S2 cmdAgent; "C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe" [x]
S3 cmdvirth; "C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe" [x]
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf"

==================== Drivers (Whitelisted) ====================

S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R1 CFRMD; C:\Windows\System32\DRIVERS\CFRMD.sys [36112 2013-05-07] (Windows (R) Win 7 DDK provider)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [18528 2013-06-18] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [587352 2013-07-08] (COMODO)
R1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [32816 2013-06-18] (COMODO)
R1 HMD; C:\Windows\System32\DRIVERS\hmd.sys [14272 2013-10-07] ()
R0 Inspect; C:\Windows\System32\DRIVERS\inspect.sys [99520 2013-06-18] (COMODO)
S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
R0 nvatabus; C:\Windows\System32\Drivers\nvatabus.sys [100736 2008-07-30] (NVIDIA Corporation)
R2 NwlnkIpx; C:\Windows\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-14] (Microsoft Corporation)
R2 NwlnkNb; C:\Windows\System32\DRIVERS\nwlnknb.sys [63232 2001-10-25] (Microsoft Corporation)
R2 NwlnkSpx; C:\Windows\System32\DRIVERS\nwlnkspx.sys [55936 2001-10-25] (Microsoft Corporation)
R3 NWRDR; C:\Windows\System32\DRIVERS\nwrdr.sys [163584 2008-04-14] (Microsoft Corporation)
R3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 ZD1211BU(TP-LINK); C:\Windows\System32\DRIVERS\zd1211Bu.sys [500736 2007-06-25] (Atheros Technology Corporation)
S3 catchme; \??\C:\DOCUME~1\Mirek\LOCALS~1\Temp\catchme.sys [x]
S3 cpuz134; \??\C:\DOCUME~1\Mirek\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
S4 IntelIde; No ImagePath
S1 iSafeNetFilter; \??\C:\Program Files\iSafe\iSafeNetFilter.sys [x]
S3 Lavasoft Kernexplorer; \??\C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys [x]
S1 SABKUTIL; \??\C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABKUTIL.sys [x]
S3 SABProcEnum; \??\C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABProcEnum.sys [x]
S2 StarOpen; No ImagePath

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-12-17 19:56 - 2013-12-17 19:56 - 00013559 _____ C:\Documents and Settings\Mirek\Plocha\FRST.txt
2013-12-17 19:56 - 2013-12-17 19:56 - 00000000 ____D C:\FRST
2013-12-17 19:55 - 2013-12-17 19:55 - 00029696 _____ C:\Documents and Settings\Mirek\Local Settings\Data aplikací\MSGBOX.EXE
2013-12-17 19:55 - 2013-12-17 19:55 - 00015327 _____ C:\Documents and Settings\Mirek\Plocha\LM.bat
2013-12-17 19:54 - 2013-12-17 19:54 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Mirek\Plocha\FRSTLauncher.exe
2013-12-17 19:53 - 2013-12-17 19:53 - 01062259 _____ (Farbar) C:\Documents and Settings\Mirek\Plocha\FRST.exe
2013-12-17 19:08 - 2013-12-17 19:09 - 00000000 ____D C:\AdwCleaner
2013-12-17 19:08 - 2013-12-17 19:08 - 01226750 _____ C:\Documents and Settings\Mirek\Plocha\adwcleaner.exe
2013-12-17 18:47 - 2013-12-17 18:47 - 01034531 _____ (Thisisu) C:\Documents and Settings\Mirek\Plocha\JRT.exe
2013-12-17 18:41 - 2013-12-17 18:41 - 00002168 _____ C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.log
2013-12-17 18:23 - 2013-12-17 18:23 - 00367616 _____ (Avira GmbH) C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.exe
2013-12-17 18:19 - 2013-12-17 18:19 - 00891200 _____ C:\Documents and Settings\Mirek\Plocha\SecurityCheck.exe
2013-12-17 18:12 - 2013-12-17 18:12 - 00490648 _____ (AVAST Software) C:\Documents and Settings\Mirek\Plocha\avastclear.exe
2013-12-17 17:49 - 2013-12-17 17:49 - 00000000 ____D C:\rsit
2013-12-17 17:49 - 2013-12-17 17:49 - 00000000 ____D C:\Program Files\trend micro
2013-12-17 17:48 - 2013-12-17 17:48 - 00781383 _____ C:\Documents and Settings\Mirek\Plocha\RSIT.exe
2013-12-17 17:02 - 2013-12-17 17:02 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-17 16:59 - 2013-12-17 17:05 - 00008130 _____ C:\WINDOWS\KB2868626.log
2013-12-17 16:59 - 2013-12-17 17:05 - 00008049 _____ C:\WINDOWS\KB2712808.log
2013-12-17 16:59 - 2013-12-17 17:05 - 00007969 _____ C:\WINDOWS\KB2758857.log
2013-12-17 16:59 - 2013-12-17 17:05 - 00007887 _____ C:\WINDOWS\KB2479943.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007813 _____ C:\WINDOWS\KB2345886.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007780 _____ C:\WINDOWS\KB2544893-v2.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007725 _____ C:\WINDOWS\KB2478971.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007563 _____ C:\WINDOWS\KB2585542.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007489 _____ C:\WINDOWS\KB2691442.log
2013-12-17 16:58 - 2013-12-17 17:05 - 00007406 _____ C:\WINDOWS\KB2631813.log
2013-12-17 16:58 - 2013-12-17 17:04 - 00007319 _____ C:\WINDOWS\KB2847311.log
2013-12-17 16:58 - 2013-12-17 17:04 - 00007316 _____ C:\WINDOWS\KB2115168.log
2013-12-17 16:58 - 2013-12-17 17:04 - 00007238 _____ C:\WINDOWS\KB2655992.log
2013-12-17 16:57 - 2013-12-17 17:04 - 00007154 _____ C:\WINDOWS\KB2443105.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00007859 _____ C:\WINDOWS\KB2481109.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00007077 _____ C:\WINDOWS\KB2802968.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00006996 _____ C:\WINDOWS\KB2898715.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00006912 _____ C:\WINDOWS\KB2598479.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00006792 _____ C:\WINDOWS\KB982132.log
2013-12-17 16:56 - 2013-12-17 17:04 - 00006720 _____ C:\WINDOWS\KB978338.log
2013-12-17 16:56 - 2013-12-17 17:03 - 00006750 _____ C:\WINDOWS\KB2876331.log
2013-12-17 16:56 - 2013-12-17 17:03 - 00006678 _____ C:\WINDOWS\KB2507938.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00007137 _____ C:\WINDOWS\KB2859537.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006672 _____ C:\WINDOWS\KB2864063.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006596 _____ C:\WINDOWS\KB2780091.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006592 _____ C:\WINDOWS\KB2845187.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006433 _____ C:\WINDOWS\KB2757638.log
2013-12-17 16:55 - 2013-12-17 17:03 - 00006426 _____ C:\WINDOWS\KB2876217.log
2013-12-17 16:55 - 2013-12-17 17:02 - 00006867 _____ C:\WINDOWS\KB2893984.log
2013-12-17 16:55 - 2013-12-17 17:02 - 00006348 _____ C:\WINDOWS\KB2820917.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00007496 _____ C:\WINDOWS\KB2510581.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006344 _____ C:\WINDOWS\KB2850869.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006343 _____ C:\WINDOWS\KB2893294.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006192 _____ C:\WINDOWS\KB2719985.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006186 _____ C:\WINDOWS\KB2862152.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006104 _____ C:\WINDOWS\KB2749655.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00006028 _____ C:\WINDOWS\KB2508429.log
2013-12-17 16:54 - 2013-12-17 17:02 - 00005926 _____ C:\WINDOWS\KB971029.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005769 _____ C:\WINDOWS\KB979687.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005709 _____ C:\WINDOWS\KB2506212.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005631 _____ C:\WINDOWS\KB2483185.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005522 _____ C:\WINDOWS\KB977816.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005468 _____ C:\WINDOWS\KB2419632.log
2013-12-17 16:53 - 2013-12-17 17:01 - 00005384 _____ C:\WINDOWS\KB2653956.log
2013-12-17 16:51 - 2013-12-17 17:01 - 00005375 _____ C:\WINDOWS\KB2892075.log
2013-12-17 16:51 - 2013-12-17 17:01 - 00005295 _____ C:\WINDOWS\KB2619339.log
2013-12-17 16:51 - 2013-12-17 17:01 - 00005268 _____ C:\WINDOWS\KB2705219-v2.log
2013-12-17 16:51 - 2013-12-17 17:01 - 00005137 _____ C:\WINDOWS\KB2727528.log
2013-12-17 16:50 - 2013-12-17 17:01 - 00005034 _____ C:\WINDOWS\KB979482.log
2013-12-17 16:50 - 2013-12-17 17:01 - 00004973 _____ C:\WINDOWS\KB978542.log
2013-12-17 16:50 - 2013-12-17 17:00 - 00054656 _____ C:\WINDOWS\KB2898785-IE7.log
2013-12-17 16:49 - 2013-12-17 17:00 - 00006429 _____ C:\WINDOWS\KB2676562.log
2013-12-17 16:49 - 2013-12-17 17:00 - 00005750 _____ C:\WINDOWS\KB2813345.log
2013-12-17 16:49 - 2013-12-17 17:00 - 00004878 _____ C:\WINDOWS\KB2509553.log
2013-12-17 16:48 - 2013-12-17 17:00 - 00004635 _____ C:\WINDOWS\KB982665.log
2013-12-17 16:46 - 2013-12-17 16:57 - 00004478 _____ C:\WINDOWS\KB2620712.log
2013-12-17 16:46 - 2013-12-17 16:56 - 00004404 _____ C:\WINDOWS\KB2584146.log
2013-12-17 16:44 - 2013-12-17 16:46 - 00004368 _____ C:\WINDOWS\KB979309.log
2013-12-17 14:03 - 2013-12-17 18:07 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-12-17 14:03 - 2013-12-17 14:03 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-12-17 14:03 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2013-12-17 12:21 - 2012-06-02 15:19 - 00017648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mucltui.dll.mui
2013-12-17 12:21 - 2012-06-02 15:18 - 00275696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mucltui.dll
2013-12-17 12:21 - 2012-06-02 15:18 - 00214256 _____ (Microsoft Corporation) C:\WINDOWS\system32\muweb.dll
2013-12-16 11:17 - 2013-12-16 11:17 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome
2013-12-16 11:16 - 2013-12-17 19:26 - 00000938 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-16 11:16 - 2013-12-17 19:11 - 00000934 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-16 11:15 - 2013-12-16 11:15 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\Data aplikací\COMODO
2013-12-15 19:20 - 2013-12-15 19:20 - 00001386 _____ C:\WINDOWS\COM+.log
2013-12-15 18:07 - 2013-12-16 10:09 - 00000000 ____D C:\WINDOWS\027B5748C40941FE949B7B81A8304EF4.TMP
2013-12-15 15:46 - 2013-12-15 15:47 - 00000000 ____D C:\trainztmp
2013-12-15 12:57 - 2013-12-15 12:57 - 00000503 _____ C:\WINDOWS\DirectX.log
2013-12-14 09:51 - 2013-12-15 18:47 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\12889c35e138d404
2013-12-13 15:13 - 2013-12-13 15:13 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\GestaltGames
2013-12-13 15:13 - 2013-12-13 15:13 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\GestaltGames
2013-12-13 12:33 - 2013-12-13 12:33 - 00000000 ____D C:\Program Files\Seznam.cz
2013-12-13 12:30 - 2013-12-14 20:44 - 00000000 ____D C:\Program Files\Hry.cz
2013-12-13 12:30 - 2013-12-14 20:44 - 00000000 ____D C:\Documents and Settings\Mirek\Nabídka Start\Programy\Hry.cz
2013-12-10 18:46 - 2013-12-10 18:46 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\ESET
2013-12-10 16:04 - 2013-12-10 16:04 - 00000457 _____ C:\WINDOWS\nsw.log
2013-12-09 19:55 - 2013-12-09 19:55 - 00000000 ____D C:\Program Files\VS Revo Group
2013-12-09 19:43 - 2013-12-09 19:43 - 00000000 ____D C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\COMODO
2013-12-09 19:27 - 2013-12-09 19:45 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-12-09 19:27 - 2013-12-09 19:27 - 00001678 _____ C:\Documents and Settings\All Users\Plocha\SUPERAntiSpyware Free Edition.lnk
2013-12-09 19:27 - 2013-12-09 19:27 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2013-12-09 19:24 - 2013-12-09 19:24 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\COMODO
2013-12-09 17:51 - 2013-12-09 17:51 - 00066206 _____ C:\WINDOWS\system32\ScanResults.xml
2013-12-09 17:47 - 2013-12-09 17:47 - 00001056 _____ C:\WINDOWS\system32\SettingsFile
2013-12-09 16:59 - 2013-12-15 18:47 - 00000000 ____D C:\Zachvev - Ztracena stoparka
2013-12-08 13:03 - 2013-12-08 13:03 - 00000000 ____D C:\Program Files\Common Files\COMODO
2013-12-08 09:22 - 2013-12-17 16:59 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job
2013-12-08 09:22 - 2013-12-17 15:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job
2013-12-08 09:22 - 2013-12-11 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job
2013-12-08 09:22 - 2013-12-09 19:44 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}.job
2013-12-08 09:21 - 2013-12-17 19:31 - 00216465 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2013-12-08 09:20 - 2013-12-08 09:20 - 00048392 _____ (COMODO CA Limited) C:\WINDOWS\system32\certsentry.dll
2013-12-08 09:19 - 2013-12-08 09:20 - 00000000 ___SD C:\Documents and Settings\All Users\Data aplikací\Shared Space
2013-12-08 09:18 - 2013-12-08 09:18 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc71.dll
2013-12-08 09:16 - 2013-12-08 09:22 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\COMODO
2013-12-08 09:15 - 2013-12-09 21:24 - 00000000 ____D C:\Program Files\Comodo
2013-12-08 09:15 - 2013-12-08 09:15 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Comodo Downloader
2013-12-08 09:02 - 2013-12-08 09:02 - 00000000 ____D C:\WINDOWS\system32\NtmsData
2013-12-08 08:43 - 2013-12-08 09:07 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Avira
2013-12-06 19:26 - 2013-12-06 19:26 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\eCyber
2013-12-06 17:46 - 2013-12-06 17:46 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\CDB
2013-12-06 17:44 - 2013-12-06 17:47 - 00000154 _____ C:\WINDOWS\Reimage.ini
2013-12-06 14:57 - 2013-12-17 18:17 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\AVAST Software
2013-12-06 14:55 - 2013-12-08 08:55 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-12-04 17:47 - 2013-12-07 23:23 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\Stažené soubory
2013-12-03 03:51 - 2013-12-03 03:51 - 00000000 __SHD C:\WINDOWS\CSC
2013-12-03 03:47 - 2013-12-06 14:48 - 00000000 ____D C:\Program Files\Unlocker
2013-12-03 02:50 - 2013-12-03 02:50 - 00000000 ___HD C:\WINDOWS\PIF
2013-11-28 03:13 - 2013-11-28 03:13 - 00000104 _____ C:\Documents and Settings\Mirek\Plocha\Tento počítač.lnk
2013-11-27 15:13 - 2013-11-28 03:07 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\pudl
2013-11-27 15:11 - 2013-11-27 15:55 - 00000000 ____D C:\WINDOWS\220FB0354744483A9A0B41DF77061583.TMP
2013-11-21 03:49 - 2013-11-21 03:49 - 00000045 _____ C:\WINDOWS\system32\initdebug.nfo

==================== One Month Modified Files and Folders =======

2013-12-17 19:56 - 2013-12-17 19:56 - 00013559 _____ C:\Documents and Settings\Mirek\Plocha\FRST.txt
2013-12-17 19:56 - 2013-12-17 19:56 - 00000000 ____D C:\FRST
2013-12-17 19:56 - 2010-04-09 20:56 - 00000000 ____D C:\Documents and Settings\Mirek\Plocha
2013-12-17 19:55 - 2013-12-17 19:55 - 00029696 _____ C:\Documents and Settings\Mirek\Local Settings\Data aplikací\MSGBOX.EXE
2013-12-17 19:55 - 2013-12-17 19:55 - 00015327 _____ C:\Documents and Settings\Mirek\Plocha\LM.bat
2013-12-17 19:55 - 2010-04-09 20:56 - 00000000 ___HD C:\Documents and Settings\Mirek\Local Settings\Data aplikací
2013-12-17 19:54 - 2013-12-17 19:54 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Mirek\Plocha\FRSTLauncher.exe
2013-12-17 19:53 - 2013-12-17 19:53 - 01062259 _____ (Farbar) C:\Documents and Settings\Mirek\Plocha\FRST.exe
2013-12-17 19:33 - 2012-05-25 22:17 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-12-17 19:31 - 2013-12-08 09:21 - 00216465 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2013-12-17 19:26 - 2013-12-16 11:16 - 00000938 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-17 19:16 - 2013-03-06 13:14 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz
2013-12-17 19:12 - 2010-04-09 20:40 - 01565416 _____ C:\WINDOWS\WindowsUpdate.log
2013-12-17 19:11 - 2013-12-16 11:16 - 00000934 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-17 19:11 - 2010-04-09 22:23 - 00000157 _____ C:\WINDOWS\wiadebug.log
2013-12-17 19:11 - 2010-04-09 22:23 - 00000050 _____ C:\WINDOWS\wiaservc.log
2013-12-17 19:11 - 2010-04-09 20:55 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-12-17 19:11 - 2009-08-17 02:03 - 00249324 _____ C:\WINDOWS\system32\NvApps.xml
2013-12-17 19:10 - 2010-04-09 20:56 - 00000178 ___SH C:\Documents and Settings\Mirek\ntuser.ini
2013-12-17 19:10 - 2010-04-09 20:55 - 00032610 _____ C:\WINDOWS\SchedLgU.Txt
2013-12-17 19:09 - 2013-12-17 19:08 - 00000000 ____D C:\AdwCleaner
2013-12-17 19:09 - 2010-04-09 22:21 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2013-12-17 19:08 - 2013-12-17 19:08 - 01226750 _____ C:\Documents and Settings\Mirek\Plocha\adwcleaner.exe
2013-12-17 18:47 - 2013-12-17 18:47 - 01034531 _____ (Thisisu) C:\Documents and Settings\Mirek\Plocha\JRT.exe
2013-12-17 18:47 - 2010-07-19 14:40 - 00000000 ____D C:\Program Files\Czech Soccer Manager 2002 FE
2013-12-17 18:41 - 2013-12-17 18:41 - 00002168 _____ C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.log
2013-12-17 18:23 - 2013-12-17 18:23 - 00367616 _____ (Avira GmbH) C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.exe
2013-12-17 18:22 - 2010-04-09 20:56 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\Notepad++
2013-12-17 18:19 - 2013-12-17 18:19 - 00891200 _____ C:\Documents and Settings\Mirek\Plocha\SecurityCheck.exe
2013-12-17 18:17 - 2013-12-06 14:57 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\AVAST Software
2013-12-17 18:17 - 2010-04-09 22:22 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2013-12-17 18:17 - 2010-04-09 20:41 - 00002504 _____ C:\WINDOWS\system32\CONFIG.NT
2013-12-17 18:13 - 2010-04-09 22:22 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2013-12-17 18:12 - 2013-12-17 18:12 - 00490648 _____ (AVAST Software) C:\Documents and Settings\Mirek\Plocha\avastclear.exe
2013-12-17 18:07 - 2013-12-17 14:03 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-12-17 18:03 - 2012-10-30 22:13 - 00000000 ____D C:\Program Files\Common Files\PC Tools
2013-12-17 18:02 - 2013-10-24 18:07 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\PC Tools
2013-12-17 17:49 - 2013-12-17 17:49 - 00000000 ____D C:\rsit
2013-12-17 17:49 - 2013-12-17 17:49 - 00000000 ____D C:\Program Files\trend micro
2013-12-17 17:48 - 2013-12-17 17:48 - 00781383 _____ C:\Documents and Settings\Mirek\Plocha\RSIT.exe
2013-12-17 17:44 - 2010-04-09 20:56 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty
2013-12-17 17:41 - 2012-01-27 02:01 - 00000000 ____D C:\Documents and Settings\Mirek\Plocha\učení
2013-12-17 17:08 - 2010-04-09 20:56 - 00000000 __RHD C:\Documents and Settings\Mirek\Data aplikací
2013-12-17 17:05 - 2013-12-17 16:59 - 00008130 _____ C:\WINDOWS\KB2868626.log
2013-12-17 17:05 - 2013-12-17 16:59 - 00008049 _____ C:\WINDOWS\KB2712808.log
2013-12-17 17:05 - 2013-12-17 16:59 - 00007969 _____ C:\WINDOWS\KB2758857.log
2013-12-17 17:05 - 2013-12-17 16:59 - 00007887 _____ C:\WINDOWS\KB2479943.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007813 _____ C:\WINDOWS\KB2345886.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007780 _____ C:\WINDOWS\KB2544893-v2.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007725 _____ C:\WINDOWS\KB2478971.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007563 _____ C:\WINDOWS\KB2585542.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007489 _____ C:\WINDOWS\KB2691442.log
2013-12-17 17:05 - 2013-12-17 16:58 - 00007406 _____ C:\WINDOWS\KB2631813.log
2013-12-17 17:05 - 2013-10-24 18:08 - 00529105 _____ C:\WINDOWS\system32\Drivers\Cat.DB
2013-12-17 17:04 - 2013-12-17 16:58 - 00007319 _____ C:\WINDOWS\KB2847311.log
2013-12-17 17:04 - 2013-12-17 16:58 - 00007316 _____ C:\WINDOWS\KB2115168.log
2013-12-17 17:04 - 2013-12-17 16:58 - 00007238 _____ C:\WINDOWS\KB2655992.log
2013-12-17 17:04 - 2013-12-17 16:57 - 00007154 _____ C:\WINDOWS\KB2443105.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00007859 _____ C:\WINDOWS\KB2481109.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00007077 _____ C:\WINDOWS\KB2802968.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00006996 _____ C:\WINDOWS\KB2898715.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00006912 _____ C:\WINDOWS\KB2598479.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00006792 _____ C:\WINDOWS\KB982132.log
2013-12-17 17:04 - 2013-12-17 16:56 - 00006720 _____ C:\WINDOWS\KB978338.log
2013-12-17 17:03 - 2013-12-17 16:56 - 00006750 _____ C:\WINDOWS\KB2876331.log
2013-12-17 17:03 - 2013-12-17 16:56 - 00006678 _____ C:\WINDOWS\KB2507938.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00007137 _____ C:\WINDOWS\KB2859537.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006672 _____ C:\WINDOWS\KB2864063.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006596 _____ C:\WINDOWS\KB2780091.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006592 _____ C:\WINDOWS\KB2845187.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006433 _____ C:\WINDOWS\KB2757638.log
2013-12-17 17:03 - 2013-12-17 16:55 - 00006426 _____ C:\WINDOWS\KB2876217.log
2013-12-17 17:02 - 2013-12-17 17:02 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-17 17:02 - 2013-12-17 16:55 - 00006867 _____ C:\WINDOWS\KB2893984.log
2013-12-17 17:02 - 2013-12-17 16:55 - 00006348 _____ C:\WINDOWS\KB2820917.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00007496 _____ C:\WINDOWS\KB2510581.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006344 _____ C:\WINDOWS\KB2850869.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006343 _____ C:\WINDOWS\KB2893294.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006192 _____ C:\WINDOWS\KB2719985.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006186 _____ C:\WINDOWS\KB2862152.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006104 _____ C:\WINDOWS\KB2749655.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00006028 _____ C:\WINDOWS\KB2508429.log
2013-12-17 17:02 - 2013-12-17 16:54 - 00005926 _____ C:\WINDOWS\KB971029.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005769 _____ C:\WINDOWS\KB979687.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005709 _____ C:\WINDOWS\KB2506212.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005631 _____ C:\WINDOWS\KB2483185.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005522 _____ C:\WINDOWS\KB977816.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005468 _____ C:\WINDOWS\KB2419632.log
2013-12-17 17:01 - 2013-12-17 16:53 - 00005384 _____ C:\WINDOWS\KB2653956.log
2013-12-17 17:01 - 2013-12-17 16:51 - 00005375 _____ C:\WINDOWS\KB2892075.log
2013-12-17 17:01 - 2013-12-17 16:51 - 00005295 _____ C:\WINDOWS\KB2619339.log
2013-12-17 17:01 - 2013-12-17 16:51 - 00005268 _____ C:\WINDOWS\KB2705219-v2.log
2013-12-17 17:01 - 2013-12-17 16:51 - 00005137 _____ C:\WINDOWS\KB2727528.log
2013-12-17 17:01 - 2013-12-17 16:50 - 00005034 _____ C:\WINDOWS\KB979482.log
2013-12-17 17:01 - 2013-12-17 16:50 - 00004973 _____ C:\WINDOWS\KB978542.log
2013-12-17 17:00 - 2013-12-17 16:50 - 00054656 _____ C:\WINDOWS\KB2898785-IE7.log
2013-12-17 17:00 - 2013-12-17 16:49 - 00006429 _____ C:\WINDOWS\KB2676562.log
2013-12-17 17:00 - 2013-12-17 16:49 - 00005750 _____ C:\WINDOWS\KB2813345.log
2013-12-17 17:00 - 2013-12-17 16:49 - 00004878 _____ C:\WINDOWS\KB2509553.log
2013-12-17 17:00 - 2013-12-17 16:48 - 00004635 _____ C:\WINDOWS\KB982665.log
2013-12-17 16:59 - 2013-12-08 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job
2013-12-17 16:59 - 2010-04-10 14:14 - 00000000 ___HD C:\WINDOWS\$hf_mig$
2013-12-17 16:57 - 2013-12-17 16:46 - 00004478 _____ C:\WINDOWS\KB2620712.log
2013-12-17 16:56 - 2013-12-17 16:46 - 00004404 _____ C:\WINDOWS\KB2584146.log
2013-12-17 16:46 - 2013-12-17 16:44 - 00004368 _____ C:\WINDOWS\KB979309.log
2013-12-17 15:22 - 2013-12-08 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job
2013-12-17 14:03 - 2013-12-17 14:03 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-12-17 12:38 - 2010-04-09 22:16 - 00000000 ___RD C:\Documents and Settings\Mirek\Plocha\mp3
2013-12-17 12:21 - 2013-03-11 12:03 - 00366321 _____ C:\WINDOWS\setupapi.log
2013-12-17 12:21 - 2010-04-09 22:16 - 00000000 ____D C:\WINDOWS\Help
2013-12-16 19:14 - 2010-04-09 22:22 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start
2013-12-16 11:21 - 2011-03-06 13:34 - 00000000 ____D C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Google
2013-12-16 11:17 - 2013-12-16 11:17 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome
2013-12-16 11:17 - 2011-03-06 13:29 - 00000000 ____D C:\Program Files\Google
2013-12-16 11:17 - 2010-07-11 17:08 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google
2013-12-16 11:15 - 2013-12-16 11:15 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\Data aplikací\COMODO
2013-12-16 11:15 - 2010-04-09 20:55 - 00000000 ___HD C:\Documents and Settings\LocalService\Local Settings\Data aplikací
2013-12-16 10:09 - 2013-12-15 18:07 - 00000000 ____D C:\WINDOWS\027B5748C40941FE949B7B81A8304EF4.TMP
2013-12-16 10:09 - 2010-04-09 20:56 - 00000000 ___RD C:\Documents and Settings\Mirek\Nabídka Start\Programy
2013-12-15 19:20 - 2013-12-15 19:20 - 00001386 _____ C:\WINDOWS\COM+.log
2013-12-15 18:49 - 2013-08-03 22:17 - 00000000 ____D C:\Documents and Settings\Mirek\Nabídka Start\Programy\Ultimate Turbine Sound - 737NG v2
2013-12-15 18:47 - 2013-12-14 09:51 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\12889c35e138d404
2013-12-15 18:47 - 2013-12-09 16:59 - 00000000 ____D C:\Zachvev - Ztracena stoparka
2013-12-15 18:42 - 2011-12-26 18:58 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\PowerChallenge
2013-12-15 18:07 - 2013-10-24 12:18 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard
2013-12-15 15:47 - 2013-12-15 15:46 - 00000000 ____D C:\trainztmp
2013-12-15 12:59 - 2010-04-09 22:22 - 01119426 ____C C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-15 12:59 - 2010-04-09 20:38 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy\Nástroje pro správu
2013-12-15 12:59 - 2010-04-09 20:38 - 00000000 ____D C:\WINDOWS\Registration
2013-12-15 12:57 - 2013-12-15 12:57 - 00000503 _____ C:\WINDOWS\DirectX.log
2013-12-15 12:45 - 2010-04-09 22:13 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-12-15 11:25 - 2001-10-25 17:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl
2013-12-14 20:44 - 2013-12-13 12:30 - 00000000 ____D C:\Program Files\Hry.cz
2013-12-14 20:44 - 2013-12-13 12:30 - 00000000 ____D C:\Documents and Settings\Mirek\Nabídka Start\Programy\Hry.cz
2013-12-14 18:27 - 2013-04-26 12:25 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\Alawar Stargaze
2013-12-14 18:27 - 2010-04-09 22:22 - 00000000 ___RD C:\Documents and Settings\All Users\Dokumenty
2013-12-14 15:45 - 2012-09-23 11:41 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\AlawarEntertainment
2013-12-14 10:06 - 2012-05-21 16:33 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\InstallMate
2013-12-14 09:57 - 2010-12-14 09:55 - 00000000 ____D C:\Fifa99
2013-12-13 15:13 - 2013-12-13 15:13 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\GestaltGames
2013-12-13 15:13 - 2013-12-13 15:13 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\GestaltGames
2013-12-13 12:33 - 2013-12-13 12:33 - 00000000 ____D C:\Program Files\Seznam.cz
2013-12-11 09:22 - 2013-12-08 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job
2013-12-10 20:16 - 2011-12-07 18:24 - 00000000 ___HD C:\WINDOWS\svcdotnet
2013-12-10 18:46 - 2013-12-10 18:46 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\ESET
2013-12-10 16:04 - 2013-12-10 16:04 - 00000457 _____ C:\WINDOWS\nsw.log
2013-12-10 12:56 - 2010-04-09 20:39 - 00000000 ____D C:\WINDOWS\system32\Restore
2013-12-09 21:24 - 2013-12-08 09:15 - 00000000 ____D C:\Program Files\Comodo
2013-12-09 19:55 - 2013-12-09 19:55 - 00000000 ____D C:\Program Files\VS Revo Group
2013-12-09 19:45 - 2013-12-09 19:27 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-12-09 19:44 - 2013-12-08 09:22 - 00000440 _____ C:\WINDOWS\Tasks\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}.job
2013-12-09 19:43 - 2013-12-09 19:43 - 00000000 ____D C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\COMODO
2013-12-09 19:43 - 2010-04-09 20:48 - 00000000 ___HD C:\Documents and Settings\NetworkService\Local Settings\Data aplikací
2013-12-09 19:37 - 2010-04-09 22:22 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
2013-12-09 19:27 - 2013-12-09 19:27 - 00001678 _____ C:\Documents and Settings\All Users\Plocha\SUPERAntiSpyware Free Edition.lnk
2013-12-09 19:27 - 2013-12-09 19:27 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2013-12-09 19:24 - 2013-12-09 19:24 - 00000000 ____D C:\Documents and Settings\Mirek\Local Settings\Data aplikací\COMODO
2013-12-09 18:59 - 2013-03-11 13:23 - 00153242 _____ C:\WINDOWS\wmsetup.log
2013-12-09 17:51 - 2013-12-09 17:51 - 00066206 _____ C:\WINDOWS\system32\ScanResults.xml
2013-12-09 17:47 - 2013-12-09 17:47 - 00001056 _____ C:\WINDOWS\system32\SettingsFile
2013-12-08 13:03 - 2013-12-08 13:03 - 00000000 ____D C:\Program Files\Common Files\COMODO
2013-12-08 09:22 - 2013-12-08 09:16 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\COMODO
2013-12-08 09:20 - 2013-12-08 09:20 - 00048392 _____ (COMODO CA Limited) C:\WINDOWS\system32\certsentry.dll
2013-12-08 09:20 - 2013-12-08 09:19 - 00000000 ___SD C:\Documents and Settings\All Users\Data aplikací\Shared Space
2013-12-08 09:18 - 2013-12-08 09:18 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc71.dll
2013-12-08 09:15 - 2013-12-08 09:15 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Comodo Downloader
2013-12-08 09:07 - 2013-12-08 08:43 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Avira
2013-12-08 09:02 - 2013-12-08 09:02 - 00000000 ____D C:\WINDOWS\system32\NtmsData
2013-12-08 09:01 - 2010-04-09 22:16 - 00000000 ____D C:\WINDOWS\repair
2013-12-08 08:55 - 2013-12-06 14:55 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-12-08 08:53 - 2010-04-09 20:56 - 00000000 ____D C:\Documents and Settings\Mirek
2013-12-07 23:23 - 2013-12-04 17:47 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\Stažené soubory
2013-12-07 00:06 - 2010-04-09 22:15 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty\plocha stará
2013-12-06 19:26 - 2013-12-06 19:26 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\eCyber
2013-12-06 19:26 - 2010-04-09 22:21 - 00000000 __RHD C:\Documents and Settings\Default User\Data aplikací
2013-12-06 19:18 - 2012-11-04 21:17 - 00000924 _____ C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2013-12-06 17:47 - 2013-12-06 17:44 - 00000154 _____ C:\WINDOWS\Reimage.ini
2013-12-06 17:46 - 2013-12-06 17:46 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\CDB
2013-12-06 17:45 - 2013-11-16 18:59 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-12-06 15:42 - 2013-03-11 10:48 - 00008166 _____ C:\WINDOWS\setupact.log
2013-12-06 14:48 - 2013-12-03 03:47 - 00000000 ____D C:\Program Files\Unlocker
2013-12-04 17:53 - 2013-08-09 17:46 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Špidla Data Processing, s.r.o
2013-12-03 04:09 - 2010-04-09 21:19 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty\Obrázky
2013-12-03 03:54 - 2001-10-25 17:00 - 00000454 _____ C:\WINDOWS\system.ini
2013-12-03 03:51 - 2013-12-03 03:51 - 00000000 __SHD C:\WINDOWS\CSC
2013-12-03 03:34 - 2011-03-20 15:24 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\uTorrent
2013-12-03 03:18 - 2010-12-24 09:19 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\Špidla Data Processing, s.r.o
2013-12-03 03:09 - 2010-04-09 21:32 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty\Filmy
2013-12-03 02:50 - 2013-12-03 02:50 - 00000000 ___HD C:\WINDOWS\PIF
2013-12-03 02:48 - 2013-06-24 19:01 - 00000000 ___RD C:\Documents and Settings\Mirek\Plocha\FOTKY
2013-12-03 00:35 - 2010-06-18 13:00 - 00088576 _____ C:\Documents and Settings\Mirek\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-12-02 23:41 - 2012-04-27 11:31 - 00000000 ___RD C:\Documents and Settings\Mirek\Plocha\propaganda
2013-12-02 22:57 - 2012-03-13 01:28 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\turk
2013-12-02 22:26 - 2010-04-09 21:19 - 00000000 ___RD C:\Documents and Settings\Mirek\Dokumenty\Hudba
2013-11-28 03:13 - 2013-11-28 03:13 - 00000104 _____ C:\Documents and Settings\Mirek\Plocha\Tento počítač.lnk
2013-11-28 03:07 - 2013-11-27 15:13 - 00000000 ____D C:\Documents and Settings\Mirek\Dokumenty\pudl
2013-11-27 15:55 - 2013-11-27 15:11 - 00000000 ____D C:\WINDOWS\220FB0354744483A9A0B41DF77061583.TMP
2013-11-27 00:54 - 2010-04-11 10:41 - 03805234 ___SH C:\Documents and Settings\Mirek\Plocha\Thumbs.db
2013-11-21 03:49 - 2013-11-21 03:49 - 00000045 _____ C:\WINDOWS\system32\initdebug.nfo
2013-11-19 00:32 - 2010-07-19 14:33 - 00000000 ____D C:\Documents and Settings\Mirek\Plocha\Manažer
2013-11-17 15:53 - 2012-11-04 21:17 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service

Some content of TEMP:
====================
C:\Documents and Settings\Mirek\Local Settings\temp\avgnt.exe
C:\Documents and Settings\Mirek\Local Settings\temp\GC_PCTOOLS.exe
C:\Documents and Settings\Mirek\Local Settings\temp\InstHelper.exe
C:\Documents and Settings\Mirek\Local Settings\temp\JiveXViewerStart1382817313.exe
C:\Documents and Settings\Mirek\Local Settings\temp\LiveSupport_setup.exe
C:\Documents and Settings\Mirek\Local Settings\temp\oi_{6B3013E7-1B16-4D16-BC10-4C54452A3608}.exe
C:\Documents and Settings\Mirek\Local Settings\temp\Quarantine.exe
C:\Documents and Settings\Mirek\Local Settings\temp\ReimagePackage.exe
C:\Documents and Settings\Mirek\Local Settings\temp\sfamcc00001.dll
C:\Documents and Settings\Mirek\Local Settings\temp\sfextra.dll
C:\Documents and Settings\Mirek\Local Settings\temp\SHSetup.exe
C:\Documents and Settings\Mirek\Local Settings\temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe
[2008-07-30 09:10] - [2008-07-30 09:10] - 1589760 ____A (Microsoft Corporation) dd7e25e20aebd672dae7e1d911c2d824

C:\Windows\System32\winlogon.exe
[2008-07-30 09:17] - [2008-07-30 09:17] - 0557056 ____A (Microsoft Corporation) 12a799ad9415ae9c8abcc5f75e9cf034

C:\Windows\System32\svchost.exe
[2008-04-14 09:52] - [2008-04-14 09:52] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93

C:\Windows\System32\services.exe
[2008-04-14 09:52] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7

C:\Windows\System32\User32.dll
[2008-07-30 09:16] - [2008-07-30 09:16] - 0578560 ____A (Microsoft Corporation) ccb32d10c69a89822e9134c0c4894be1

C:\Windows\System32\userinit.exe
[2008-04-14 09:52] - [2008-04-14 09:52] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239

C:\Windows\System32\Drivers\volsnap.sys
[2008-04-14 08:42] - [2008-04-14 08:42] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1





===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:113.2 GB) (Free:67.32 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: () (Fixed) (Total:6.83 GB) (Free:6.71 GB) NTFS
Drive f: (KINGSTON) (Removable) (Total:1.89 GB) (Free:1.66 GB) FAT
Drive i: (DATA) (Fixed) (Total:112.85 GB) (Free:99.97 GB) NTFS
Drive j: (Disk1) (CDROM) (Total:3.51 GB) (Free:0 GB) CDFS

Available physical RAM: 289.01 MB
Total physical RAM: 1023.48 MB
Percentage of memory in use: 71%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 233 GB) (Disk ID: C5BC1D68)
Partition 1: (Not Active) - (Size=7 GB) - (Type=05)
Partition 2: (Active) - (Size=113 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=113 GB) - (Type=07 NTFS)
Disk: 2 (Size: 2 GB) (Disk ID: 001C2022)
Partition 1: (Active) - (Size=2 GB) - (Type=06)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:373E1720
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:3D36932D
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:430C6D84
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:CC8191DD
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2

==================== Security Center ==================

AV: COMODO Antivirus (Disabled - Up to date) {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
FW: COMODO Firewall (Disabled) {043803A3-4F86-4ef6-AFC5-F6E02A79969B}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****


Addition:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-12-2013 03
Ran by Mirek at 2013-12-17 19:57:22
Running from C:\Documents and Settings\Mirek\Plocha
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: COMODO Antivirus (Disabled - Up to date) {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
FW: COMODO Firewall (Disabled) {043803A3-4F86-4ef6-AFC5-F6E02A79969B}

==================== Installed Programs ======================

µTorrent (Version: 3.3.0.29625)
7-Zip 4.57
Adobe Acrobat 4.0
Adobe Flash Player 10 Plugin (Version: 10.0.45.2)
Adobe Reader XI (11.0.05) - Czech (Version: 11.0.05)
Aktualizace systému Windows Internet Explorer 7 (KB980182) (Version: 1)
Aktualizace systému Windows XP (KB898461) (Version: 1)
Aktualizace systému Windows XP (KB951978) (Version: 1)
Aktualizace systému Windows XP (KB955759) (Version: 1)
Aktualizace systému Windows XP (KB967715) (Version: 1)
Aktualizace systému Windows XP (KB968389) (Version: 1)
Aktualizace systému Windows XP (KB971737) (Version: 1)
Aktualizace systému Windows XP (KB973687) (Version: 1)
Aktualizace systému Windows XP (KB973815) (Version: 1)
Aktualizace zabezpečení aplikace Windows Media Player (KB952069)
Aktualizace zabezpečení aplikace Windows Media Player (KB954155)
Aktualizace zabezpečení aplikace Windows Media Player (KB968816)
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)
Aktualizace zabezpečení aplikace Windows Media Player 11 (KB954154)
Aktualizace zabezpečení produktu Windows XP (KB941569)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB938127-v2) (Version: 2)
Aktualizace zabezpečení systému Windows XP (KB923561) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB923789)
Aktualizace zabezpečení systému Windows XP (KB950760) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB950762) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB950974) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB951066) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB951376-v2) (Version: 2)
Aktualizace zabezpečení systému Windows XP (KB951748) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB952004) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB952954) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB954459) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB955069) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956572) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956744) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956802) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956803) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB956844) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB958644) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB958869) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB959426) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB960225) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB960803) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB960859) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB961501) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB969059) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB969947) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB970238) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB970430) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB971468) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB971657) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB971961) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB972270) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973354) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973507) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973869) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB973904) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB974112) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB974318) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB974392) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB974571) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975025) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975467) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975560) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975561) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB975713) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB977165-v2) (Version: 2)
Aktualizace zabezpečení systému Windows XP (KB977914) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978037) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978251) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978262) (Version: 1)
Aktualizace zabezpečení systému Windows XP (KB978706) (Version: 1)
Antalya 2010
Canon Easy-WebPrint EX
Canon MP Navigator EX 3.0
Canon MP550 series MP Drivers
Canon Utilities Easy-PhotoPrint EX
Canon Utilities My Printer
Canon Utilities Solution Menu
CCleaner (Version: 3.20)
Czech Soccer Manager 2002 FE
Czech Soccer Manager 2002 Final Edition (Version: verze 4.0 (31.3.2006))
Djerba 2005
FSRepaint
FSRepaint V2.06 (Version: 2.06.0000)
Google Chrome (Version: 31.0.1650.63)
Google Update Helper (Version: 1.3.22.3)
IrfanView (remove only) (Version: 4.28)
Java 7 Update 15 (Version: 7.0.150)
Java Auto Updater (Version: 2.1.9.0)
K-Lite Mega Codec Pack 3.9.5 (Version: 3.9.5)
Malwarebytes Anti-Malware verze 1.75.0.1300 (Version: 1.75.0.1300)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1)
Microsoft Flight Simulator 2002
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft National Language Support Downlevel APIs
Microsoft Office Small Business Edition 2003 (Version: 11.0.5614.0)
Microsoft User-Mode Driver Framework Feature Pack 1.9
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Mozilla Firefox 25.0.1 (x86 cs) (Version: 25.0.1)
Mozilla Maintenance Service (Version: 25.0.1)
MSVC90_x86 (Version: 1.0.1.2)
Nokia Connectivity Cable Driver (Version: 7.1.78.0)
Notepad++
Oprava Hotfix systému Windows XP (KB952287) (Version: 1)
Oprava Hotfix systému Windows XP (KB979306) (Version: 1)
pdfFactory
Picasa 3 (Version: 3.9)
Postranní panel systému Windows (Version: 6.0.6001.18000)
QuickTime (Version: 7.74.80.86)
rajče průvodce verze 1.59.25.240
Realtek High Definition Audio Driver (Version: 5.10.0.6069)
Registrace uživatele zařízení Canon MP550 series
Revo Uninstaller 1.95 (Version: 1.95)
Roll
Seznam Software
SUPERAntiSpyware (Version: 5.6.1030)
WebFldrs XP (Version: 9.50.7523)
Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray (Version: 1.0)
Windows Media Format 11 runtime
WinRAR
XML Paper Specification Shared Components Pack 1.0

==================== Restore Points =========================

14-12-2013 13:57:31 Kontrolní bod systému
15-12-2013 11:45:05 Instalováno TRS2006
15-12-2013 11:58:35 Installed Microsoft .NET Framework 1.1
15-12-2013 17:08:27 Nainstalováno: SpyHunter
15-12-2013 17:44:58 Odstraněno TRS2006
16-12-2013 09:09:22 Odebráno: SpyHunter
17-12-2013 16:11:27 Software Distribution Service 3.0

==================== Hosts content: ==========================

2001-10-25 17:00 - 2012-11-02 16:27 - 00000027 ____N C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2008-04-14 09:51 - 2008-04-14 09:51 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2010-04-09 20:45 - 2008-06-02 16:02 - 02486272 _____ () C:\Program Files\K-Lite Codec Pack\ffdshow\ffdshow.ax
2013-11-16 18:59 - 2013-11-16 18:59 - 03363952 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2013-06-11 07:33 - 2013-06-11 07:33 - 16033160 _____ () C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:373E1720
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:3D36932D
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:430C6D84
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:CC8191DD
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== Faulty Device Manager Devices =============

Name: Řadič sběrnice SM
Description: Řadič sběrnice SM
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Síťový adaptér Ethernet
Description: Síťový adaptér Ethernet
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (12/09/2013 08:29:16 PM) (Source: MsiInstaller) (User: MIRA)
Description: Product: GeekBuddy -- Error 1719. Windows Installer service could not be accessed. Contact your support personnel to verify that it is properly registered and enabled.

Error: (12/09/2013 08:18:29 PM) (Source: MsiInstaller) (User: MIRA)
Description: Product: Avira SearchFree Toolbar -- Error 1719. The Windows Installer Service could not be accessed. This can occur if the Windows Installer is not correctly installed. Contact your support personnel for assistance.

Error: (12/09/2013 08:13:13 PM) (Source: MsiInstaller) (User: MIRA)
Description: Produkt: COMODO Internet Security - Chyba 1719. Instalační služba Windows Installer není přístupná. To může nastat, pokud je systém Windows spuštěn v nouzovém režimu nebo pokud není služba Windows Installer správně nainstalována. Obraťte se na pracovníky odborné pomoci.

Error: (12/09/2013 08:10:15 PM) (Source: MsiInstaller) (User: MIRA)
Description: Product: Vizzed Retro Game Room -- Error 1719. The Windows Installer Service could not be accessed. This can occur if you are running Windows in safe mode, or if the Windows Installer is not correctly installed. Contact your support personnel for assistance.

Error: (12/09/2013 08:09:19 PM) (Source: MsiInstaller) (User: MIRA)
Description: Product: Avira SearchFree Toolbar -- Error 1719. The Windows Installer Service could not be accessed. This can occur if the Windows Installer is not correctly installed. Contact your support personnel for assistance.

Error: (12/09/2013 08:06:07 PM) (Source: MsiInstaller) (User: MIRA)
Description: Product: Vizzed Retro Game Room -- Error 1721. There is a problem with this Windows Installer package. A program required for this install to complete could not be run. Contact your support personnel or package vendor. Action: _ADFB0C7D_30DC_45B5_937D_6355A22C4DA6, location: C:\Program Files\Vizzed\Vizzed Retro Game Room\VizzedRgrUtil.exe, command: /Uninstall /nofail

Error: (12/09/2013 07:47:36 PM) (Source: MsiInstaller) (User: MIRA)
Description: Produkt: COMODO Internet Security - Chyba 1719. Instalační služba Windows Installer není přístupná. To může nastat, pokud je systém Windows spuštěn v nouzovém režimu nebo pokud není služba Windows Installer správně nainstalována. Obraťte se na pracovníky odborné pomoci.

Error: (12/08/2013 09:35:33 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Product: GeekBuddy -- Error 1306. Another application has exclusive access to the file C:\Program Files\COMODO\GeekBuddy\lps-cspm\components\core\component-2\configuration_1033.db. Please shut down all other applications, then click Retry.

Error: (12/06/2013 07:33:34 PM) (Source: MsiInstaller) (User: MIRA)
Description: Product: Vizzed Retro Game Room -- Error 1721. There is a problem with this Windows Installer package. A program required for this install to complete could not be run. Contact your support personnel or package vendor. Action: _ADFB0C7D_30DC_45B5_937D_6355A22C4DA6, location: C:\Program Files\Vizzed\Vizzed Retro Game Room\VizzedRgrUtil.exe, command: /Uninstall /nofail

Error: (12/06/2013 07:19:01 PM) (Source: crypt32) (User: )
Description: Načtení automatické aktualizace pořadového čísla kořenového seznamu jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt> se nezdařilo. Chyba: Takové síťové připojení neexistuje.


System errors:
=============
Error: (12/17/2013 07:11:29 PM) (Source: Service Control Manager) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
iSafeNetFilter
SABKUTIL

Error: (12/17/2013 07:11:27 PM) (Source: Service Control Manager) (User: )
Description: Služba StarOpen neuspěla při spuštění v důsledku následující chyby:
%%2

Error: (12/17/2013 07:11:27 PM) (Source: Service Control Manager) (User: )
Description: Služba COMODO Internet Security Helper Service neuspěla při spuštění v důsledku následující chyby:
%%3

Error: (12/17/2013 06:18:51 PM) (Source: Service Control Manager) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
iSafeNetFilter
SABKUTIL

Error: (12/17/2013 06:18:49 PM) (Source: Service Control Manager) (User: )
Description: Služba StarOpen neuspěla při spuštění v důsledku následující chyby:
%%2

Error: (12/17/2013 06:18:49 PM) (Source: Service Control Manager) (User: )
Description: Služba COMODO Internet Security Helper Service neuspěla při spuštění v důsledku následující chyby:
%%3

Error: (12/17/2013 06:16:32 PM) (Source: Service Control Manager) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
iSafeNetFilter
SABKUTIL

Error: (12/17/2013 06:16:29 PM) (Source: Service Control Manager) (User: )
Description: Služba StarOpen neuspěla při spuštění v důsledku následující chyby:
%%2

Error: (12/17/2013 06:16:29 PM) (Source: Service Control Manager) (User: )
Description: Služba COMODO Internet Security Helper Service neuspěla při spuštění v důsledku následující chyby:
%%3

Error: (12/17/2013 06:15:10 PM) (Source: Service Control Manager) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
iSafeNetFilter
SABKUTIL


Microsoft Office Sessions:
=========================

==================== Memory info ===========================

Percentage of memory in use: 71%
Total physical RAM: 1023.48 MB
Available physical RAM: 289.01 MB
Total Pagefile: 2460.21 MB
Available Pagefile: 1665.11 MB
Total Virtual: 2047.88 MB
Available Virtual: 1947.09 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:113.2 GB) (Free:67.32 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: () (Fixed) (Total:6.83 GB) (Free:6.71 GB) NTFS
Drive f: (KINGSTON) (Removable) (Total:1.89 GB) (Free:1.66 GB) FAT
Drive i: (DATA) (Fixed) (Total:112.85 GB) (Free:99.97 GB) NTFS
Drive j: (Disk1) (CDROM) (Total:3.51 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 233 GB) (Disk ID: C5BC1D68)
Partition 1: (Not Active) - (Size=7 GB) - (Type=05)
Partition 2: (Active) - (Size=113 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=113 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 2 GB) (Disk ID: 001C2022)
Partition 1: (Active) - (Size=2 GB) - (Type=06)

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Adwardhotspot - mimo jiné :(

#13 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [seznam-listicka-distribuce] - C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
    HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
    HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Documents and Settings\Mirek\Data aplikací\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
    HKU\Default User\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32
    HKU\Default User\...\RunOnce: [nltide_3] - rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
    
    HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
    HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
    URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
    SearchScopes: HKLM - DefaultScope value is missing.
    SearchScopes: HKLM - Backup.Old.DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847}
    SearchScopes: HKCU - Backup.Old.DefaultScope {CCBDD7BB-8A0D-41C3-BD8C-53102FC40FF7}
    SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search
    SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
    SearchScopes: HKCU - {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = http://us.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo
    Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
    Toolbar: HKCU - No Name - {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
    ShellExecuteHooks: - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No File [ ]
    Tcpip\..\Interfaces\{D003D105-377B-4264-9B0C-C75902A995F2}: [NameServer]8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
    
    FF Plugin: @vizzed.com/VizzedRGR - C:\Program Files\Vizzed\Vizzed Retro Game Room\NpVizzedRgr.dll No File
    FF HKLM\...\Firefox\Extensions: [4fbb328da3edd@4fbb328da3f17.info] - C:\Documents and Settings\Mirek\Data aplikací\Mozilla\Firefox\Profiles\9kzx24m0.default\extensions\4fbb328da3edd@4fbb328da3f17.info
    FF HKLM\...\Firefox\Extensions: [12x3q4@3244516.com] - C:\Program Files\Better-Surf\ff
    FF HKLM\...\Firefox\Extensions: [ext@bettersurfplus.com] - C:\Program Files\BetterSurf\BetterSurfPlus\ff
    FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
    
    CHR Extension: (Better Surf Plus) - C:\Documents and Settings\Mirek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\mmifolfpllfdhilecpdpmemhelmanajl\1.1_0
    CHR HKLM\...\Chrome\Extension: [mmifolfpllfdhilecpdpmemhelmanajl] - C:\Program Files\BetterSurf\BetterSurfPlus\ch\BetterSurfPlus.crx
    
    S3 catchme; \??\C:\DOCUME~1\Mirek\LOCALS~1\Temp\catchme.sys [x]
    S3 cpuz134; \??\C:\DOCUME~1\Mirek\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys [x]
    S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
    S4 IntelIde; No ImagePath
    S1 iSafeNetFilter; \??\C:\Program Files\iSafe\iSafeNetFilter.sys [x]
    S3 Lavasoft Kernexplorer; \??\C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys [x]
    S1 SABKUTIL; \??\C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABKUTIL.sys [x]
    S3 SABProcEnum; \??\C:\Program Files\SuperAdBlocker.com\Super Ad Blocker\SABProcEnum.sys [x]
    S2 StarOpen; No ImagePath
    
    C:\Program Files\Lavasoft
    C:\Program Files\Enigma Software Group
    C:\Program Files\Better-Surf
    2013-12-17 19:08 - 2013-12-17 19:08 - 01226750 _____ C:\Documents and Settings\Mirek\Plocha\adwcleaner.exe
    2013-12-17 18:47 - 2013-12-17 18:47 - 01034531 _____ (Thisisu) C:\Documents and Settings\Mirek\Plocha\JRT.exe
    2013-12-17 18:41 - 2013-12-17 18:41 - 00002168 _____ C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.log
    2013-12-17 18:23 - 2013-12-17 18:23 - 00367616 _____ (Avira GmbH) C:\Documents and Settings\Mirek\Plocha\removaltool-win32-en.exe
    2013-12-17 18:19 - 2013-12-17 18:19 - 00891200 _____ C:\Documents and Settings\Mirek\Plocha\SecurityCheck.exe
    2013-12-17 18:12 - 2013-12-17 18:12 - 00490648 _____ (AVAST Software) C:\Documents and Settings\Mirek\Plocha\avastclear.exe
    2013-12-06 14:57 - 2013-12-17 18:17 - 00000000 ____D C:\Documents and Settings\Mirek\Data aplikací\AVAST Software
    2013-12-06 14:55 - 2013-12-08 08:55 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\AVAST Software
    2013-12-17 19:55 - 2013-12-17 19:55 - 00029696 _____ C:\Documents and Settings\Mirek\Local Settings\Data aplikací\MSGBOX.EXE
    2013-12-17 19:55 - 2013-12-17 19:55 - 00015327 _____ C:\Documents and Settings\Mirek\Plocha\LM.bat
    C:\Documents and Settings\Mirek\Local Settings\temp\avgnt.exe
    C:\Documents and Settings\Mirek\Local Settings\temp\GC_PCTOOLS.exe
    C:\Documents and Settings\Mirek\Local Settings\temp\InstHelper.exe
    C:\Documents and Settings\Mirek\Local Settings\temp\JiveXViewerStart1382817313.exe
    C:\Documents and Settings\Mirek\Local Settings\temp\LiveSupport_setup.exe
    C:\Documents and Settings\Mirek\Local Settings\temp\oi_{6B3013E7-1B16-4D16-BC10-4C54452A3608}.exe
    C:\Documents and Settings\Mirek\Local Settings\temp\Quarantine.exe
    C:\Documents and Settings\Mirek\Local Settings\temp\ReimagePackage.exe
    C:\Documents and Settings\Mirek\Local Settings\temp\sfamcc00001.dll
    C:\Documents and Settings\Mirek\Local Settings\temp\sfextra.dll
    C:\Documents and Settings\Mirek\Local Settings\temp\SHSetup.exe
    C:\Documents and Settings\Mirek\Local Settings\temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
    
    Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\WINDOWS\Tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
    Task: C:\WINDOWS\Tasks\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
    Task: C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
    Task: C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    
    AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:373E1720
    AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:3D36932D
    AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:430C6D84
    AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:CC8191DD
    AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1
    AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2
    
    Hosts:
    CMD: shutdown /r /f /t 2
    
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

miros1
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 18 pro 2013 17:27

Re: Adwardhotspot - mimo jiné :(

#14 Příspěvek od miros1 »

Presunte vytvoreny fixlist vedle FRST:

Omlouvám se, ale jak myslíte přesunout vedle FRST? Jako na plochu vedle ikonky FRST?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Adwardhotspot - mimo jiné :(

#15 Příspěvek od vyosek »

aaaano, presne tak :thumbsup: Proste aby FRST.exe nebyl na plose a fixlist nekde ve slozce :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět