Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Vyskakování reklamních banerů

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
kuba7710
Návštěvník
Návštěvník
Příspěvky: 102
Registrován: 13 dub 2007 18:08

Vyskakování reklamních banerů

#1 Příspěvek od kuba7710 »

Prosím o pomoc v exploreru se samovolně otevírají okna s reklamou.
Velmi pomalý počítač, prosím o kontrolu logu, předem děkuji

Logfile of random's system information tool 1.09 (written by random/random)
Run by spravce at 2014-01-08 16:12:29
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 5 GB (21%) free of 25 GB
Total RAM: 2039 MB (39% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:12:36, on 8.1.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\vVX3000.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Pando Networks\Media Booster\PMB.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\program files\real\realplayer\update\realsched.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\msfeedssync.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
D:\Documents and Settings\spravce\Plocha\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\spravce.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/?st=6&barid={DE ... 6EF4B9B731}
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:1975;https=localhost:1976
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: OLE (Part 1 of 5) - - (no file)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - D:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: WebexpEnhancedV1alpha736 - {b1f1d99d-9fff-4933-ab08-7bdae61c4500} - C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha736\ie\WebexpEnhancedV1alpha736.dll
O2 - BHO: uTorrentBar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.3.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: (no name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\COMPAQ\SetRefresh\\SetRefresh.exe
O4 - HKLM\..\Run: [Zástupce stránky vlastností sběrnice High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ConnectionCenter] "C:\Program Files\Citrix\ICA Client\concentr.exe" /startup
O4 - HKLM\..\Run: [Redirector] "C:\Program Files\Citrix\ICA Client\redirector.exe" /startup
O4 - HKLM\..\Run: [TkBellExe] "C:\program files\real\realplayer\update\realsched.exe" -osboot
O4 - HKCU\..\Run: [NextLive] C:\WINDOWS\system32\rundll32.exe "D:\Documents and Settings\spravce\Data aplikací\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [Pando Media Booster] "C:\Program Files\Pando Networks\Media Booster\PMB.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = D:\Microsoft Office\Office10\OSA.EXE
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {672EE252-D813-4F5E-81BB-5DD163DD4FA5} (Active602XMLFiller Control) - https://www.mojedatovaschranka.cz/stati ... ?3,16,13,0
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Broadcom Management Agent (BrcmMgmtAgent) - Broadcom Corporation - C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: stllssvr - Unknown owner - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--
End of file - 11900 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-83760419-1899083256-532270227-1003Core.job
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-83760419-1899083256-532270227-1003UA.job
C:\WINDOWS\tasks\GlaryInitialize 4.job
C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-83760419-1899083256-532270227-1003.job
C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-83760419-1899083256-532270227-1003.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{E2B8A939-637A-41FB-8333-59D3A7D30102}.job

=========Mozilla firefox=========

ProfilePath - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default

prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "about:home"
prefs.js - "extensions.enabledItems" - "DTToolbar@toolbarnet.com:1.1.3.0244, {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.8, twitternotifier@naan.net:1.9.7.3, {c36177c0-224a-11da-8cd6-0800200c9a91}:3.9.4, {0538E3E3-7E9B-4d49-8831-A227C80A7AD3}:2.0.2, {9AA46F4F-4DC7-4c06-97AF-5035170634FE}:4.0, {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}:6.0.03, {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}:6.0.05, {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07, {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11, {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}:6.0.14, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, jqs@sun.com:1.0, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.1.4, treestyletab@piro.sakura.ne.jp:0.11.2011021901, {7b13ec3e-999a-4b70-b9cb-2617b8323822}:3.3.3.2, cs@dictionaries.addons.mozilla.org:1.0.2, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.3.42, bkmrksync@nokia.com:1.0.0.732, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, info@lingea.com:1.2, engine@conduit.com:3.2.5.2, {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.5.2, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, toolbar@ask.com:3.11.3.15590, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1.6.2.100, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.8"
prefs.js - "keyword.URL" - "http://www.google.com/search?ie=UTF-8&oe=utf-8&q="

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=D:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
"12x3q4@3244516.com"=C:\Program Files\Better-Surf\ff
"ext@bettersurfplus.com"=C:\Program Files\BetterSurf\BetterSurfPlus\ff
"ext@WebexpEnhancedV1alpha736.net"=C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha736\ff
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Citrix.com/npican]
"Description"=Citrix ICA Client Plugin
"Path"=C:\Program Files\Citrix\ICA Client\npicaN.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=15.0.1.13]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=15.0.1.13]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.1.13]
"Description"=RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In
"Path"=D:\Documents and Settings\All users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.1.13]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=D:\Documents and Settings\All users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=15.0.1.13]
"Description"=15.0.1.13
"Path"=c:\program files\real\realplayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=Software602 Form Filler Plugin
"Path"=C:\Program Files\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


C:\Program Files\Mozilla Firefox\components\
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
np32dsw.dll
nppdf32.dll
nppl3260.dll
nppl3260.xpt
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprjplug.dll
nprpjplug.dll
nsjsrealplayerplugin.xpt
QuickTimePlugin.class
ShockwavePlugin.class

C:\Program Files\Mozilla Firefox\searchplugins\
yahoo.xml

D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\extensions\
cs@dictionaries.addons.mozilla.org
nostmp
{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}

D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\
askcom.xml
conduit.xml
daemon-search.xml
icqplugin-1.xml
icqplugin.xml
my-web-search.xml
sweetim.xml
uloto.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - D:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-12-15 425680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-10-19 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-27 606544]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b1f1d99d-9fff-4933-ab08-7bdae61c4500}]
Webexp Enhanced - C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha736\ie\WebexpEnhancedV1alpha736.dll [2013-12-19 87552]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-10-19 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Ukazatel S-Rank - C:\Program Files\Seznam.cz\core.3.dll [2011-01-19 1175152]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2002-09-19 110592]
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-27 606544]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SetRefresh"=C:\Program Files\COMPAQ\SetRefresh\\SetRefresh.exe [2003-11-20 525824]
"Zástupce stránky vlastností sběrnice High Definition Audio"=C:\WINDOWS\system32\HDAShCut.exe [2005-01-07 61952]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-06-13 16871936]
"Tweak UI"=TWEAKUI.CPL,TweakMeUp []
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-03 1603152]
"VX3000"=C:\WINDOWS\vVX3000.exe [2010-05-20 762736]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2008-12-12 143360]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2008-12-12 172032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2008-12-12 143360]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-12-27 3568312]
"ConnectionCenter"=C:\Program Files\Citrix\ICA Client\concentr.exe [2013-10-01 395656]
"Redirector"=C:\Program Files\Citrix\ICA Client\redirector.exe [2013-10-01 153992]
"TkBellExe"=C:\program files\real\realplayer\update\realsched.exe [2011-12-15 296056]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"NextLive"=D:\Documents and Settings\spravce\Data aplikací\newnext.me\nengine.dll [2013-11-14 1283584]
"Pando Media Booster"=C:\Program Files\Pando Networks\Media Booster\PMB.exe [2013-05-18 4284976]

D:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Microsoft Office.lnk - D:\Microsoft Office\Office10\OSA.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2008-12-12 217088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Fair Strike\FS.EXE"="C:\Program Files\Fair Strike\FS.EXE:*:Enabled:FS"
"C:\WINDOWS\network diagnostic\xpnetdiag.exe"="C:\WINDOWS\network diagnostic\xpnetdiag.exe:*:Enabled:Network Diagnostic for Windows XP"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\Program Files\Mozilla Thunderbird\thunderbird.exe"="C:\Program Files\Mozilla Thunderbird\thunderbird.exe:*:Enabled:Mozilla Thunderbird"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe"="C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe"="C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
"C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe"="C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe:*:Enabled:Nokia Ovi Suite 2"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Mozilla Firefox\plugin-container.exe"="C:\Program Files\Mozilla Firefox\plugin-container.exe:*:Enabled:Plugin Container for Firefox"
"C:\WINDOWS\system32\msiexec.exe"="C:\WINDOWS\system32\msiexec.exe:*:Enabled:UpdateManagerSetup"
"C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe"="C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe:*:Enabled:SweetPacksUpdateManager"
"D:\Databox\Server\nxServer.exe"="D:\Databox\Server\nxServer.exe:*:Enabled:nxServer"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\WS_FTP\ws_ftp95.exe"="C:\Program Files\WS_FTP\ws_ftp95.exe:*:Enabled:WS_FTP 95"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Emergency 4\Em4.exe"="D:\Emergency 4\Em4.exe:*:Enabled:Em4"
"D:\Hry\Traktor 2\game.exe"="D:\Hry\Traktor 2\game.exe:*:Enabled:GIANTS Game Engine"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=L3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"vidc.div4"=DivXc32f.dll
"vidc.div3"=DivXc32.dll
"vidc.xvid"=xvid.dll
"vidc.mp43"=mpg4c32.dll
"msacm.l3radius"=l3codecp.acm
"msacm.divxa"=divxa32.acm
"msacm.a3d"=a3d.dll
"msacm.ogg"=ogg.dll
"msacm.vorbisenc"=vorbisenc.dll
"VIDC.FMVC"=fmcodec.dll
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
"VIDC.XFR1"=xfcodec.dll

======List of files/folders created in the last 1 month======

2014-01-08 16:12:29 ----D---- C:\rsit
2014-01-08 16:12:29 ----D---- C:\Program Files\trend micro
2014-01-07 09:47:01 ----D---- C:\WINDOWS\LastGood
2013-12-30 14:41:14 ----A---- C:\WINDOWS\system32\RegBootDefrag.exe
2013-12-30 14:30:24 ----D---- D:\Documents and Settings\All Users\Data aplikací\GlarySoft
2013-12-30 14:23:04 ----A---- C:\WINDOWS\system32\BootDefrag.exe
2013-12-30 14:22:43 ----D---- C:\Program Files\Glary Utilities 4
2013-12-30 14:09:55 ----SHD---- C:\AI_RecycleBin
2013-12-27 11:03:28 ----D---- D:\Documents and Settings\spravce\Data aplikací\AVAST Software
2013-12-27 11:02:30 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2013-12-27 11:02:30 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2013-12-27 11:02:29 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2013-12-27 11:02:29 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2013-12-27 11:02:29 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2013-12-27 11:02:28 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2013-12-27 11:02:28 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2013-12-27 11:02:28 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2013-12-27 11:02:26 ----A---- C:\WINDOWS\system32\aswBoot.exe
2013-12-27 11:02:24 ----A---- C:\WINDOWS\avastSS.scr
2013-12-27 11:01:55 ----D---- C:\Program Files\AVAST Software
2013-12-27 11:01:03 ----D---- D:\Documents and Settings\All Users\Data aplikací\AVAST Software
2013-12-20 15:59:02 ----D---- D:\Documents and Settings\spravce\Data aplikací\ImgBurn
2013-12-20 15:52:04 ----D---- C:\Program Files\WebexpEnhancedV1
2013-12-20 15:49:53 ----D---- D:\Documents and Settings\spravce\Data aplikací\newnext.me
2013-12-20 15:48:58 ----D---- C:\Program Files\Mobogenie
2013-12-20 15:47:56 ----D---- D:\Documents and Settings\spravce\Data aplikací\OpenCandy
2013-12-20 15:47:56 ----D---- C:\Program Files\ImgBurn
2013-12-20 05:22:12 ----D---- C:\Program Files\Mozilla Firefox
2013-12-19 02:53:04 ----SHD---- C:\RECYCLER
2013-12-16 20:07:30 ----D---- D:\Documents and Settings\spravce\Data aplikací\TweakNow RegCleaner
2013-12-16 20:07:30 ----D---- C:\Program Files\TweakNow RegCleaner
2013-12-16 19:21:01 ----A---- C:\WINDOWS\system32\igfxCoIn_v5016.dll
2013-12-16 19:20:45 ----D---- C:\Intel
2013-12-16 19:17:21 ----D---- C:\Program Files\SystemRequirementsLab
2013-12-16 18:11:27 ----D---- C:\Program Files\NVIDIA Corporation
2013-12-16 18:11:13 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2013-12-12 07:45:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2898715$
2013-12-12 07:45:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2904266$
2013-12-12 07:34:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2893294$
2013-12-12 07:34:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2893984$
2013-12-12 07:34:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2892075$

======List of files/folders modified in the last 1 month======

2014-01-08 16:12:35 ----D---- C:\WINDOWS\Prefetch
2014-01-08 16:12:29 ----RD---- C:\Program Files
2014-01-08 14:59:57 ----D---- C:\WINDOWS\Temp
2014-01-08 08:09:35 ----A---- C:\WINDOWS\SchedLgU.Txt
2014-01-07 11:40:52 ----D---- C:\WINDOWS\system32\CatRoot2
2014-01-07 11:40:50 ----D---- C:\WINDOWS
2014-01-07 09:51:28 ----D---- D:\Documents and Settings\spravce\Data aplikací\SwvUpdater
2014-01-07 09:51:25 ----SD---- C:\WINDOWS\Tasks
2014-01-07 09:47:01 ----HD---- C:\WINDOWS\inf
2014-01-07 09:47:01 ----D---- C:\WINDOWS\system32
2014-01-07 09:44:50 ----SHD---- C:\WINDOWS\Installer
2014-01-07 09:44:50 ----D---- C:\Config.Msi
2014-01-07 09:43:02 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-01-07 09:41:04 ----D---- C:\Program Files\Microsoft
2014-01-07 09:41:04 ----ASD---- D:\Documents and Settings\All Users\Data aplikací\Microsoft
2014-01-07 09:35:55 ----D---- C:\WINDOWS\Help
2013-12-30 15:15:40 ----D---- C:\WINDOWS\system32\drivers
2013-12-30 14:42:08 ----D---- C:\WINDOWS\system32\config
2013-12-30 14:40:53 ----SD---- C:\WINDOWS\Downloaded Program Files
2013-12-30 14:36:47 ----D---- C:\WINDOWS\Logs
2013-12-30 14:36:43 ----D---- C:\WINDOWS\Debug
2013-12-30 14:29:41 ----D---- C:\Program Files\IrfanView
2013-12-30 14:23:14 ----D---- D:\Documents and Settings\spravce\Data aplikací\GlarySoft
2013-12-30 14:16:21 ----D---- D:\Documents and Settings\spravce\Data aplikací\Seznam.cz
2013-12-30 14:13:42 ----HD---- C:\Program Files\InstallShield Installation Information
2013-12-30 14:10:00 ----SHD---- C:\WINDOWS\system32\AI_RecycleBin
2013-12-30 14:05:24 ----D---- C:\Program Files\LG Electronics
2013-12-30 14:03:04 ----D---- D:\Documents and Settings\spravce\Data aplikací\Kastner software
2013-12-30 14:00:55 ----D---- D:\Documents and Settings\spravce\Data aplikací\LG Electronics
2013-12-30 13:56:03 ----D---- C:\Program Files\Common Files\STORMWARE Shared
2013-12-30 13:54:18 ----D---- C:\Program Files\Windows Live
2013-12-30 13:05:25 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-30 13:00:58 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-12-30 10:13:45 ----D---- C:\Program Files\SweetIM
2013-12-27 11:02:44 ----D---- C:\Program Files\Mozilla Thunderbird
2013-12-27 11:02:26 ----D---- C:\WINDOWS\WinSxS
2013-12-27 08:57:30 ----D---- D:\Documents and Settings\All Users\Data aplikací\CanonIJPLM
2013-12-22 14:37:30 ----D---- D:\Documents and Settings\spravce\Data aplikací\PriceGong
2013-12-22 14:33:28 ----D---- C:\Program Files\uTorrentBar
2013-12-18 01:19:17 ----D---- C:\KBcertifikat
2013-12-16 20:34:01 ----D---- C:\install
2013-12-16 19:44:05 ----D---- C:\WINDOWS\Minidump
2013-12-16 19:21:06 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-12-16 19:07:53 ----D---- C:\WINDOWS\system32\DirectX
2013-12-16 18:49:53 ----RSD---- C:\WINDOWS\assembly
2013-12-16 18:11:13 ----D---- C:\Program Files\Common Files
2013-12-16 14:21:18 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-12-12 07:46:02 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-12-12 07:46:00 ----D---- C:\Program Files\Internet Explorer
2013-12-12 07:45:44 ----D---- C:\WINDOWS\ie8updates
2013-12-12 07:45:11 ----D---- C:\WINDOWS\system32\MRT
2013-12-12 07:35:01 ----AC---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2013-12-27 49944]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2013-12-27 178304]
R0 BootDefragDriver;BootDefragDriver; C:\WINDOWS\System32\drivers\BootDefragDriver.sys []
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2010-07-12 45648]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-05-23 691696]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
R1 aswRdr;aswRdr; \??\C:\WINDOWS\system32\drivers\aswRdr.sys []
R1 aswSnx;aswSnx; \??\C:\WINDOWS\system32\drivers\aswSnx.sys []
R1 aswSP;aswSP; \??\C:\WINDOWS\system32\drivers\aswSP.sys []
R1 aswTdi;aswTdi; \??\C:\WINDOWS\system32\drivers\aswTdi.sys []
R1 ctxusbm;Citrix USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\ctxusbm.sys [2013-09-24 70440]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 Tcpip6;Ovladač protokolu Microsoft IPv6; C:\WINDOWS\system32\DRIVERS\tcpip6.sys [2010-02-11 226880]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-13 8832]
R2 aswFsBlk;aswFsBlk; \??\C:\WINDOWS\system32\drivers\aswFsBlk.sys []
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R2 BASFND;BASFND; \??\C:\Program Files\Broadcom\MgmtAgent\BASFND.sys []
R2 npf;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-11-16 50704]
R2 NwlnkIpx;Transportní protokol kompatibilní s NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2008-04-13 88320]
R2 NwlnkNb;Služba NWLink pro rozhraní NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2007-10-29 63232]
R2 NwlnkSpx;Protokol NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2007-10-29 55936]
R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2008-12-12 6048768]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-06-17 4756992]
R3 tunmp;Microsoft Tun Miniport Adapter Driver; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-13 12288]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S0 vmci;VMware VMCI Bus Driver; C:\WINDOWS\system32\DRIVERS\vmci.sys []
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 a3tnrt6o;a3tnrt6o; C:\WINDOWS\system32\drivers\a3tnrt6o.sys []
S3 autorun;autorun; \??\C:\huadio.tmp []
S3 Axtmvflt;Axesstel USB Filter Service; C:\WINDOWS\system32\DRIVERS\Axtmvflt.sys [2007-09-20 3456]
S3 Axtmvmdm;Axesstel USB Modem; C:\WINDOWS\system32\DRIVERS\Axtmvmdm.sys [2007-09-20 40064]
S3 Axtmvprt;Axesstel Diagnostic Port; C:\WINDOWS\System32\Drivers\Axtmvprt.sys [2007-09-20 38784]
S3 BCM44X2;BCM 10/100 Ethernet Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\BCM4E5.SYS [2001-08-17 26568]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 cpudrv;cpudrv; \??\C:\Program Files\SystemRequirementsLab\cpudrv.sys []
S3 EagleNT;EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys []
S3 ENTECH;ENTECH; \??\C:\WINDOWS\system32\DRIVERS\ENTECH.SYS []
S3 FlashUSB;FlashUSB; C:\WINDOWS\system32\DRIVERS\FlashUSB.sys [2009-05-12 16896]
S3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
S3 HdAudAddService;Ovladač funkcí Microsoft UAA pro služby sběrnice High Definition Audio; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-07 145920]
S3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 LgBttPort;LGE Bluetooth TransPort; C:\WINDOWS\system32\DRIVERS\lgbtport.sys []
S3 lgbusenum;LG Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\lgbtbus.sys []
S3 LGVMODEM;LGE Virtual Modem; C:\WINDOWS\system32\DRIVERS\lgvmodem.sys []
S3 MODRC;WinFast DTV Dongle Infrared receiver driver 95/06/08; C:\WINDOWS\system32\DRIVERS\modrc.sys [2006-05-09 13056]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2007-10-29 12160]
S3 MPE;Filtr MPE BDA; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-13 15232]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 msvad_simple;Power Mp3 Recorder Virtual Driver (WDM); C:\WINDOWS\system32\drivers\vadSimpl.sys [2011-09-18 44032]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2012-11-09 18560]
S3 nmwcdc;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2012-11-09 23168]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2012-11-09 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2012-11-09 8576]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2012-10-17 19072]
S3 Ser2pl;ATEN USB to Serial port driver; C:\WINDOWS\system32\DRIVERS\ser2pl.sys [2003-07-16 43264]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2012-11-09 8192]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2013-07-17 60160]
S3 usbbus;LGE Mobile Composite USB Device; C:\WINDOWS\system32\DRIVERS\lgusbbus.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgusbdiag.sys []
S3 USBModem;LGE Mobile USB Modem; C:\WINDOWS\system32\DRIVERS\lgusbmodem.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2013-08-29 26240]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2012-11-09 8192]
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys []
S3 VX3000;VX-3000; C:\WINDOWS\system32\DRIVERS\VX3000.sys [2010-05-20 1961328]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WFBDA7700;WinFast DTV Dongle DIB7700; C:\WINDOWS\System32\Drivers\wfbda77.sys [2006-06-07 122496]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2007-10-29 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2011-03-14 84520]
R2 6to4;Pomocná služba protokolu IPv6; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-12-27 50344]
R2 BrcmMgmtAgent;Broadcom Management Agent; C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe [2008-07-01 110592]
R2 IJPLMSVC;PIXMA Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2007-04-13 97432]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-10-19 182696]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2003-06-19 322120]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-05-20 139632]
R2 NwSapAgent;Agent SAP; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-21 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-16 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 LPDSVC;Tiskový server TCP/IP; C:\WINDOWS\system32\tcpsvcs.exe [2007-10-29 19456]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-20 119408]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-12-19 732648]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe []
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakování reklamních banerů

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kuba7710
Návštěvník
Návštěvník
Příspěvky: 102
Registrován: 13 dub 2007 18:08

Re: Vyskakování reklamních banerů

#3 Příspěvek od kuba7710 »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Microsoft Windows XP x86
Ran by spravce on st 08.01.2014 at 18:09:25.67
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
Successfully deleted: [Registry Value] hkey_local_machine\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallrules\\{9002830C-AAD4-4279-B175-2F629C224184}



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT2786678
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{CD68E0F9-5A77-4A5E-AD19-07702460CB06}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: D:\Documents and Settings\spravce\Data aplikacˇ\mozilla\firefox\profiles\rst026c2.default\minidumps [5 files]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 08.01.2014 at 18:16:55.83
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

kuba7710
Návštěvník
Návštěvník
Příspěvky: 102
Registrován: 13 dub 2007 18:08

Re: Vyskakování reklamních banerů

#4 Příspěvek od kuba7710 »

# AdwCleaner v3.016 - Report created 08/01/2014 at 18:15:37
# Updated 23/12/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : spravce - PCSERVER
# Running from : D:\Documents and Settings\spravce\Plocha\VIR\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : D:\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar
Folder Deleted : D:\Documents and Settings\All Users\Data aplikací\Trymedia
Folder Deleted : D:\Documents and Settings\All Users\Data aplikací\AlawarWrapper
Folder Deleted : C:\Program Files\Mobogenie
Folder Deleted : D:\Documents and Settings\All Users\Dokumenty\Mobogenie
Folder Deleted : D:\Documents and Settings\All Users\Dokumenty\AlawarWrapper
Folder Deleted : D:\Documents and Settings\spravce\Local Settings\Data aplikací\Conduit
Folder Deleted : D:\Documents and Settings\spravce\Local Settings\Data aplikací\ConduitEngine
Folder Deleted : D:\Documents and Settings\spravce\Local Settings\Data aplikací\Mobogenie
Folder Deleted : D:\Documents and Settings\spravce\Local Settings\Data aplikací\AlawarWrapper
Folder Deleted : D:\Documents and Settings\spravce\Local Settings\Data aplikací\uTorrentBar
Folder Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Conduit
Folder Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\ConduitCommon
Folder Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\ConduitEngine
Folder Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\ICQToolbarData
Folder Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\lsuortsi.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}
Folder Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\lsuortsi.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}
Folder Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\cs@dictionaries.addons.mozilla.org
Folder Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\nostmp
Folder Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\invalidprefs.js
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\Askcom.xml
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\Conduit.xml
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\daemon-search.xml
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\lsuortsi.default\searchplugins\icqplugin.xml
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\icqplugin.xml
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\icqplugin-1.xml
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\my-web-search.xml
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\SweetIm.xml
File Deleted : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{20a82645-c095-46ed-80e3-08825760534b}]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\poheodfamflhhhdcmjfeggbgigeefaco
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Key Deleted : HKCU\Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WS_FTP LE
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{327C2873-E90D-4C37-AA9D-10AC9BABA46C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{327C2873-E90D-4C37-AA9D-10AC9BABA46C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8271B5D6-76D3-4ABF-AEB3-1721161C76BC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{327C2873-E90D-4C37-AA9D-10AC9BABA46C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8271B5D6-76D3-4ABF-AEB3-1721161C76BC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B922D405-6D13-4A2B-AE89-08A030DA4402}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{E56878E3-13C5-414C-BE9A-F410B421BE08}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C4826F0-93FB-4CD4-B4E0-0DA957B7B63C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4ED6197-2110-4AFC-A1B4-AFE9C3609854}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{327C2873-E90D-4C37-AA9D-10AC9BABA46C}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe]
Key Deleted : HKCU\Software\uTorrentBar
Key Deleted : HKLM\Software\BetterSurf
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\Trymedia Systems
Key Deleted : HKLM\Software\uTorrentBar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{c3e85ee9-5892-4142-b537-bceb3dac4c3d}
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3
Key Deleted : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Key Deleted : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v26.0 (cs)

[ File : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\lsuortsi.default\prefs.js ]

Line Deleted : user_pref("icqtoolbar.skip_default_search", "yes");
Line Deleted : user_pref("browser.startup.homepage", "hxxp://start.icq.com/");
Line Deleted : user_pref("icqtoolbar.installsource", "1");

[ File : D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\prefs.js ]

Line Deleted : user_pref("CT2438727..clientLogIsEnabled", true);
Line Deleted : user_pref("CT2438727..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Line Deleted : user_pref("CT2438727..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Line Deleted : user_pref("CT2438727.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Line Deleted : user_pref("CT2438727.AppTrackingLastCheckTime", "Thu Apr 14 2011 12:08:48 GMT+0200");
Line Deleted : user_pref("CT2438727.CTID", "CT2438727");
Line Deleted : user_pref("CT2438727.CommunitiesChangesLastCheckTime", "0");
Line Deleted : user_pref("CT2438727.CurrentServerDate", "14-4-2011");
Line Deleted : user_pref("CT2438727.DialogsAlignMode", "LTR");
Line Deleted : user_pref("CT2438727.DialogsGetterLastCheckTime", "Mon Apr 11 2011 08:08:54 GMT+0200");
Line Deleted : user_pref("CT2438727.DownloadReferralCookieData", "");
Line Deleted : user_pref("CT2438727.FirstServerDate", "22-12-2009");
Line Deleted : user_pref("CT2438727.FirstTime", true);
Line Deleted : user_pref("CT2438727.FirstTimeFF3", true);
Line Deleted : user_pref("CT2438727.GroupingInvalidateCache", false);
Line Deleted : user_pref("CT2438727.GroupingLastCheckTime", "0");
Line Deleted : user_pref("CT2438727.GroupingLastServerUpdateTime", "0");
Line Deleted : user_pref("CT2438727.GroupingServerCheckInterval", 1440);
Line Deleted : user_pref("CT2438727.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Line Deleted : user_pref("CT2438727.HasUserGlobalKeys", true);
Line Deleted : user_pref("CT2438727.Initialize", true);
Line Deleted : user_pref("CT2438727.InitializeCommonPrefs", true);
Line Deleted : user_pref("CT2438727.InstallationAndCookieDataSentCount", 3);
Line Deleted : user_pref("CT2438727.InstalledDate", "Tue Dec 22 2009 06:16:07 GMT+0100");
Line Deleted : user_pref("CT2438727.InvalidateCache", false);
Line Deleted : user_pref("CT2438727.IsGrouping", false);
Line Deleted : user_pref("CT2438727.IsMulticommunity", false);
Line Deleted : user_pref("CT2438727.IsOpenThankYouPage", true);
Line Deleted : user_pref("CT2438727.IsOpenUninstallPage", true);
Line Deleted : user_pref("CT2438727.LanguagePackLastCheckTime", "Thu Apr 14 2011 08:08:48 GMT+0200");
Line Deleted : user_pref("CT2438727.LanguagePackReloadIntervalMM", 1440);
Line Deleted : user_pref("CT2438727.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
Line Deleted : user_pref("CT2438727.LastLogin_2.5.2.13", "Mon Mar 15 2010 06:25:22 GMT+0100");
Line Deleted : user_pref("CT2438727.LastLogin_2.5.6.0", "Sat May 22 2010 08:47:42 GMT+0200");
Line Deleted : user_pref("CT2438727.LastLogin_3.3.3.2", "Thu Apr 14 2011 09:17:37 GMT+0200");
Line Deleted : user_pref("CT2438727.LatestVersion", "3.3.3.2");
Line Deleted : user_pref("CT2438727.Locale", "en");
Line Deleted : user_pref("CT2438727.LoginCache", 4);
Line Deleted : user_pref("CT2438727.MCDetectTooltipHeight", "83");
Line Deleted : user_pref("CT2438727.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Line Deleted : user_pref("CT2438727.MCDetectTooltipWidth", "295");
Line Deleted : user_pref("CT2438727.RadioLastCheckTime", "0");
Line Deleted : user_pref("CT2438727.RadioLastUpdateIPServer", "0");
Line Deleted : user_pref("CT2438727.RadioLastUpdateServer", "0");
Line Deleted : user_pref("CT2438727.SHRINK_TOOLBAR", 1);
Line Deleted : user_pref("CT2438727.SearchBoxWidth", 150);
Line Deleted : user_pref("CT2438727.SearchEngine", "Search||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_TERM&ctid=CT2438727&octid=EB_ORIGINAL_CTID&SearchSource=1");
Line Deleted : user_pref("CT2438727.SearchFromAddressBarIsInit", true);
Line Deleted : user_pref("CT2438727.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2438727&q=");
Line Deleted : user_pref("CT2438727.SearchInNewTabEnabled", true);
Line Deleted : user_pref("CT2438727.SearchInNewTabIntervalMM", 1440);
Line Deleted : user_pref("CT2438727.SearchInNewTabLastCheckTime", "Thu Apr 14 2011 08:08:44 GMT+0200");
Line Deleted : user_pref("CT2438727.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT2438727.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT2438727.ServiceMapLastCheckTime", "Thu Apr 14 2011 08:08:44 GMT+0200");
Line Deleted : user_pref("CT2438727.SettingsCheckIntervalMin", 120);
Line Deleted : user_pref("CT2438727.SettingsLastCheckTime", "Mon Apr 11 2011 08:08:53 GMT+0200");
Line Deleted : user_pref("CT2438727.SettingsLastUpdate", "1299784783");
Line Deleted : user_pref("CT2438727.ThirdPartyComponentsInterval", 504);
Line Deleted : user_pref("CT2438727.ThirdPartyComponentsLastCheck", "Mon Apr 11 2011 08:08:53 GMT+0200");
Line Deleted : user_pref("CT2438727.ThirdPartyComponentsLastUpdate", "1269281492");
Line Deleted : user_pref("CT2438727.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2438727");
Line Deleted : user_pref("CT2438727.Uninstall", true);
Line Deleted : user_pref("CT2438727.UserID", "UN02642559657194221");
Line Deleted : user_pref("CT2438727.ValidationData_Search", 2);
Line Deleted : user_pref("CT2438727.ValidationData_Toolbar", 2);
Line Deleted : user_pref("CT2438727.alertChannelId", "832836");
Line Deleted : user_pref("CT2438727.clientLogIsEnabled", true);
Line Deleted : user_pref("CT2438727.clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Line Deleted : user_pref("CT2438727.globalFirstTimeInfoLastCheckTime", "Thu Apr 14 2011 09:17:39 GMT+0200");
Line Deleted : user_pref("CT2438727.isAppTrackingManagerOn", true);
Line Deleted : user_pref("CT2438727.myStuffEnabled", true);
Line Deleted : user_pref("CT2438727.myStuffPublihserMinWidth", 400);
Line Deleted : user_pref("CT2438727.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
Line Deleted : user_pref("CT2438727.myStuffServiceIntervalMM", 1440);
Line Deleted : user_pref("CT2438727.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
Line Deleted : user_pref("CT2438727.oldAppsList", "129017707048431316,129017707048587567,129053036221800239,129023982256475322,129023982168975093,129023982451006863,129023982676944454,129078052328906859,129297366994[...]
Line Deleted : user_pref("CT2438727.testingCtid", "");
Line Deleted : user_pref("CT2438727.toolbarAppMetaDataLastCheckTime", "Thu Apr 14 2011 08:08:48 GMT+0200");
Line Deleted : user_pref("CT2438727.toolbarContextMenuLastCheckTime", "Mon Apr 11 2011 08:08:54 GMT+0200");
Line Deleted : user_pref("CT2438727.uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Line Deleted : user_pref("CT2786678..clientLogIsEnabled", false);
Line Deleted : user_pref("CT2786678..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Line Deleted : user_pref("CT2786678..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Line Deleted : user_pref("CT2786678.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
Line Deleted : user_pref("CT2786678.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Line Deleted : user_pref("CT2786678.BrowserCompStateIsOpen_129579220236217502", true);
Line Deleted : user_pref("CT2786678.BrowserCompStateIsOpen_130067977588633691", true);
Line Deleted : user_pref("CT2786678.BrowserCompStateIsOpen_1359634298000", true);
Line Deleted : user_pref("CT2786678.CTID", "CT2786678");
Line Deleted : user_pref("CT2786678.CurrentServerDate", "28-6-2013");
Line Deleted : user_pref("CT2786678.DSInstall", true);
Line Deleted : user_pref("CT2786678.DialogsAlignMode", "LTR");
Line Deleted : user_pref("CT2786678.DialogsGetterLastCheckTime", "Thu Jun 27 2013 13:23:23 GMT+0200");
Line Deleted : user_pref("CT2786678.DownloadReferralCookieData", "");
Line Deleted : user_pref("CT2786678.FirstServerDate", "28-4-2012");
Line Deleted : user_pref("CT2786678.FirstTime", true);
Line Deleted : user_pref("CT2786678.FirstTimeFF3", true);
Line Deleted : user_pref("CT2786678.FirstTimeHiddenVer", true);
Line Deleted : user_pref("CT2786678.FixPageNotFoundErrors", true);
Line Deleted : user_pref("CT2786678.GroupingServerCheckInterval", 1440);
Line Deleted : user_pref("CT2786678.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Line Deleted : user_pref("CT2786678.HPInstall", false);
Line Deleted : user_pref("CT2786678.HasUserGlobalKeys", true);
Line Deleted : user_pref("CT2786678.Initialize", true);
Line Deleted : user_pref("CT2786678.InitializeCommonPrefs", true);
Line Deleted : user_pref("CT2786678.InstallationAndCookieDataSentCount", 3);
Line Deleted : user_pref("CT2786678.InstallationType", "Unknown");
Line Deleted : user_pref("CT2786678.InstalledDate", "Sat Apr 28 2012 05:15:43 GMT+0200");
Line Deleted : user_pref("CT2786678.IsGrouping", false);
Line Deleted : user_pref("CT2786678.IsInitSetupIni", true);
Line Deleted : user_pref("CT2786678.IsMulticommunity", false);
Line Deleted : user_pref("CT2786678.IsOpenThankYouPage", true);
Line Deleted : user_pref("CT2786678.IsOpenUninstallPage", true);
Line Deleted : user_pref("CT2786678.LanguagePackLastCheckTime", "Fri Jun 28 2013 11:07:13 GMT+0200");
Line Deleted : user_pref("CT2786678.LanguagePackReloadIntervalMM", 1440);
Line Deleted : user_pref("CT2786678.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
Line Deleted : user_pref("CT2786678.LastLogin_3.12.2.3", "Fri Jun 01 2012 02:42:56 GMT+0200");
Line Deleted : user_pref("CT2786678.LastLogin_3.13.0.6", "Tue Jul 17 2012 11:15:01 GMT+0200");
Line Deleted : user_pref("CT2786678.LastLogin_3.14.1.0", "Mon Aug 27 2012 21:48:16 GMT+0200");
Line Deleted : user_pref("CT2786678.LastLogin_3.15.1.0", "Thu Mar 07 2013 01:46:23 GMT+0100");
Line Deleted : user_pref("CT2786678.LastLogin_3.18.0.7", "Fri Jun 28 2013 12:55:15 GMT+0200");
Line Deleted : user_pref("CT2786678.LatestVersion", "3.18.0.7");
Line Deleted : user_pref("CT2786678.Locale", "en");
Line Deleted : user_pref("CT2786678.MCDetectTooltipHeight", "83");
Line Deleted : user_pref("CT2786678.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Line Deleted : user_pref("CT2786678.MCDetectTooltipWidth", "295");
Line Deleted : user_pref("CT2786678.MyStuffEnabledAtInstallation", true);
Line Deleted : user_pref("CT2786678.OriginalFirstVersion", "3.12.2.3");
Line Deleted : user_pref("CT2786678.SearchCaption", "uTorrentBar Customized Web Search");
Line Deleted : user_pref("CT2786678.SearchFromAddressBarIsInit", true);
Line Deleted : user_pref("CT2786678.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=2&q=");
Line Deleted : user_pref("CT2786678.SearchInNewTabEnabled", true);
Line Deleted : user_pref("CT2786678.SearchInNewTabIntervalMM", 1440);
Line Deleted : user_pref("CT2786678.SearchInNewTabLastCheckTime", "Fri Jun 28 2013 11:07:13 GMT+0200");
Line Deleted : user_pref("CT2786678.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID");
Line Deleted : user_pref("CT2786678.SearchInNewTabUserEnabled", false);
Line Deleted : user_pref("CT2786678.SearchProtectorToolbarDisabled", true);
Line Deleted : user_pref("CT2786678.SendProtectorDataViaLogin", true);
Line Deleted : user_pref("CT2786678.ServiceMapLastCheckTime", "Fri Jun 28 2013 11:07:13 GMT+0200");
Line Deleted : user_pref("CT2786678.SettingsLastCheckTime", "Thu Jun 27 2013 20:55:17 GMT+0200");
Line Deleted : user_pref("CT2786678.SettingsLastUpdate", "1372320731");
Line Deleted : user_pref("CT2786678.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2786678&SearchSource=13");
Line Deleted : user_pref("CT2786678.ToolbarDisabled", true);
Line Deleted : user_pref("CT2786678.ToolbarShrinkedFromSetup", false);
Line Deleted : user_pref("CT2786678.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2786678");
Line Deleted : user_pref("CT2786678.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com,MyBlogToolbar.com,MyCity[...]
Line Deleted : user_pref("CT2786678.UserID", "UN01876443976433062");
Line Deleted : user_pref("CT2786678.alertChannelId", "1178763");
Line Deleted : user_pref("CT2786678.homepageProtectorEnableByLogin", true);
Line Deleted : user_pref("CT2786678.initDone", true);
Line Deleted : user_pref("CT2786678.myStuffEnabled", true);
Line Deleted : user_pref("CT2786678.myStuffPublihserMinWidth", 400);
Line Deleted : user_pref("CT2786678.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
Line Deleted : user_pref("CT2786678.myStuffServiceIntervalMM", 1440);
Line Deleted : user_pref("CT2786678.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
Line Deleted : user_pref("CT2786678.navigateToUrlOnSearch", false);
Line Deleted : user_pref("CT2786678.revertSettingsEnabled", true);
Line Deleted : user_pref("CT2786678.searchProtectorDialogDelayInSec", 10);
Line Deleted : user_pref("CT2786678.searchProtectorEnableByLogin", true);
Line Deleted : user_pref("CT2786678.testingCtid", "");
Line Deleted : user_pref("CT2786678.toolbarAppMetaDataLastCheckTime", "Fri Jun 28 2013 11:07:13 GMT+0200");
Line Deleted : user_pref("CT2786678.usagesFlag", 2);
Line Deleted : user_pref("CommunityToolbar.CantToolbarBeEngineOwner", "CT2438727");
Line Deleted : user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2832595&SearchSource=13");
Line Deleted : user_pref("CommunityToolbar.ConduitSearchList", "InnoGames International Customized Web Search,uTorrentBar Customized Web Search,uTorrentBar Customized Web Search,uTorrentBar Customized Web Search,uTo[...]
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en", "wVmmvqqOMqrv5xct1cJIHg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en", "0uSPYx+Kl2jpu8sJZMeHjw==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en", "Dclc8oo4TTv7+mAkSlUSWg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en", "K4Vqu91uAzWURlxJRdXJOg==");
Line Deleted : user_pref("CommunityToolbar.EngineOwner", "ConduitEngine");
Line Deleted : user_pref("CommunityToolbar.EngineOwnerGuid", "engine@conduit.com");
Line Deleted : user_pref("CommunityToolbar.EngineOwnerToolbarId", "conduitengine");
Line Deleted : user_pref("CommunityToolbar.IsEngineShown", true);
Line Deleted : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
Line Deleted : user_pref("CommunityToolbar.LatestLibsPath", "file:///D:\\Documents and Settings\\spravce\\Data aplikací\\Mozilla\\Firefox\\Profiles\\rst026c2.default\\conduitCommon\\modules\\3.6.0.10");
Line Deleted : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.6.0.10");
Line Deleted : user_pref("CommunityToolbar.OriginalEngineOwner", "ConduitEngine");
Line Deleted : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "engine@conduit.com");
Line Deleted : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "conduitengine");
Line Deleted : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.properties");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList", "CT2438727,ConduitEngine,CT2786678");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList2", "CT2438727,ConduitEngine,CT2786678");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList4", "CT2786678");
Line Deleted : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Thu Jun 23 2011 05:59:03 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
Line Deleted : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Thu Jun 16 2011 07:13:01 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Line Deleted : user_pref("CommunityToolbar.alert.locale", "en");
Line Deleted : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Line Deleted : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Fri Jun 24 2011 07:12:30 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559");
Line Deleted : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Line Deleted : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Line Deleted : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Line Deleted : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Line Deleted : user_pref("CommunityToolbar.alert.userId", "{a7158970-720e-4edf-a5d7-689efc969529}");
Line Deleted : user_pref("CommunityToolbar.globalUserId", "8c863fb2-65c4-42f7-88b1-448b3e499162");
Line Deleted : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Line Deleted : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Line Deleted : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2786678");
Line Deleted : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Thu Aug 11 2011 06:10:30 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.notifications.alertEnabled", true);
Line Deleted : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
Line Deleted : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Thu Aug 11 2011 07:10:38 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
Line Deleted : user_pref("CommunityToolbar.notifications.locale", "en");
Line Deleted : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
Line Deleted : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Thu Aug 11 2011 06:10:28 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1305622559");
Line Deleted : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
Line Deleted : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
Line Deleted : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
Line Deleted : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
Line Deleted : user_pref("CommunityToolbar.notifications.userId", "90c8871e-0294-47c0-8d2c-0d1df04fb4b3");
Line Deleted : user_pref("CommunityToolbar.originalHomepage", "hxxp://search.conduit.com/?ctid=CT2832595&SearchSource=13");
Line Deleted : user_pref("CommunityToolbar.originalSearchEngine", "InnoGames International Customized Web Search");
Line Deleted : user_pref("ConduitEngine.CTID", "ConduitEngine");
Line Deleted : user_pref("ConduitEngine.FirstTime", true);
Line Deleted : user_pref("ConduitEngine.FirstTimeFF3", true);
Line Deleted : user_pref("ConduitEngine.FixPageNotFoundErrors", false);
Line Deleted : user_pref("ConduitEngine.HasUserGlobalKeys", true);
Line Deleted : user_pref("ConduitEngine.Initialize", true);
Line Deleted : user_pref("ConduitEngine.InitializeCommonPrefs", true);
Line Deleted : user_pref("ConduitEngine.InstallationType", "UnknownIntegration");
Line Deleted : user_pref("ConduitEngine.InstalledDate", "Tue Dec 14 2010 19:25:32 GMT+0100");
Line Deleted : user_pref("ConduitEngine.IsMulticommunity", false);
Line Deleted : user_pref("ConduitEngine.IsOpenThankYouPage", false);
Line Deleted : user_pref("ConduitEngine.IsOpenUninstallPage", false);
Line Deleted : user_pref("ConduitEngine.SearchFromAddressBarIsInit", true);
Line Deleted : user_pref("ConduitEngine.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CTXXXX&q=");
Line Deleted : user_pref("ConduitEngine.engineLocale", "cs");
Line Deleted : user_pref("ConduitEngine.initDone", true);
Line Deleted : user_pref("browser.search.defaultthis.engineName", "uTorrentBar Customized Web Search");
Line Deleted : user_pref("extensions.enabledItems", "DTToolbar@toolbarnet.com:1.1.3.0244,{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.8,twitternotifier@naan.net:1.9.7.3,{c36177c0-224a-11da-8cd6-0800200c9a91}:3.9.4,{05[...]
Line Deleted : user_pref("extensions.engine@conduit.com.install-event-fired", true);
Line Deleted : user_pref("extensions.mywebsearch.prevDefaultEngine", "");
Line Deleted : user_pref("extensions.mywebsearch.prevSelectedEngine", "");
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.homepage", "hxxp://home.mywebsearch.com/index.jhtml?ptb=D11B1D8F-B5AB-42FF-B752-D91C19227085&n=77ee8f1f&p2=^ZO^xdm007^YY^cz&si=CKT40b-yv7QCFQEd3godF[...]
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.initialized", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.contextKey", "");
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.installDate", "2012122911");
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.partnerId", "^ZO^xdm007^YY^cz");
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.partnerSubId", "CKT40b-yv7QCFQEd3godFWAAAQ");
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.success", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.installation.toolbarId", "D11B1D8F-B5AB-42FF-B752-D91C19227085");
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.lastActivePing", "1356841461852");
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.options.defaultSearch", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.options.homePageEnabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.options.keywordEnabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.options.tabEnabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._49Members_.weather.location", "10001");
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.homepage", "hxxp://home.mywebsearch.com/index.jhtml?ptb=F798A83B-0666-440F-A6FB-55FD555D864D&n=77fc98e7&p2=^Z7^xdm032^YY^cz&si=CMudkPq48LYCFUFc3godJ[...]
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.initialized", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.installation.contextKey", "");
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.installation.installDate", "2013042919");
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.installation.partnerId", "^Z7^xdm032^YY^cz");
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.installation.partnerSubId", "CMudkPq48LYCFUFc3godJlUALQ");
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.installation.success", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.installation.toolbarId", "F798A83B-0666-440F-A6FB-55FD555D864D");
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.lastActivePing", "1368716557323");
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.options.defaultSearch", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.options.homePageEnabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.options.keywordEnabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.options.tabEnabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.searchHistory", "seznam.cz");
Line Deleted : user_pref("extensions.toolbar.mindspark._gtMembers_.weather.location", "10001");
Line Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "gamingwonderland@mindspark.com");
Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
Line Deleted : user_pref("icqtoolbar.engineVerified", false);
Line Deleted : user_pref("icqtoolbar.hiddenElements", "itb_options");
Line Deleted : user_pref("icqtoolbar.installTime", "1294170155");
Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
Line Deleted : user_pref("icqtoolbar.previousFFVersion", "3.6.8");
Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
Line Deleted : user_pref("icqtoolbar.suggestions", false);
Line Deleted : user_pref("icqtoolbar.uninstStatSent", true);
Line Deleted : user_pref("icqtoolbar.uniqueID", "129322625712932256661293356761269");
Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1294134362);
Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
Line Deleted : user_pref("sweetim.toolbar.UserSelectedSaveSettings", "true");
Line Deleted : user_pref("sweetim.toolbar.Visibility.VisibilityGuardLastUnHide", "1354690103042");
Line Deleted : user_pref("sweetim.toolbar.Visibility.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.Visibility.intervaldays", "7");
Line Deleted : user_pref("sweetim.toolbar.cargo", "3.1010000.10005");
Line Deleted : user_pref("sweetim.toolbar.cda.DisableOveride.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.cda.HideOveride.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.cda.RemoveOveride.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.cda.returnValue", "none");
Line Deleted : user_pref("sweetim.toolbar.dialogs.0.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.dialogs.0.handler", "chrome://sim_toolbar_package/content/optionsdialog-handler.js");
Line Deleted : user_pref("sweetim.toolbar.dialogs.0.height", "335");
Line Deleted : user_pref("sweetim.toolbar.dialogs.0.id", "id_options_dialog");
Line Deleted : user_pref("sweetim.toolbar.dialogs.0.title", "$string.config.label;");
Line Deleted : user_pref("sweetim.toolbar.dialogs.0.url", "hxxp://www.sweetim.com/simffbar/options_remote ... crg=$cargo;");
Line Deleted : user_pref("sweetim.toolbar.dialogs.0.width", "761");
Line Deleted : user_pref("sweetim.toolbar.dialogs.1.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.dialogs.1.handler", "chrome://sim_toolbar_package/content/exampledialog-handler.js");
Line Deleted : user_pref("sweetim.toolbar.dialogs.1.height", "300");
Line Deleted : user_pref("sweetim.toolbar.dialogs.1.id", "id_example_dialog");
Line Deleted : user_pref("sweetim.toolbar.dialogs.1.title", "Example (unit-test) dialog");
Line Deleted : user_pref("sweetim.toolbar.dialogs.1.url", "chrome://sim_toolbar_package/content/exampledialog.html");
Line Deleted : user_pref("sweetim.toolbar.dialogs.1.width", "500");
Line Deleted : user_pref("sweetim.toolbar.dialogs.2.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.dialogs.2.handler", "chrome://sim_toolbar_package/content/cdadialog-handler.js");
Line Deleted : user_pref("sweetim.toolbar.dialogs.2.height", "150");
Line Deleted : user_pref("sweetim.toolbar.dialogs.2.id", "id_dialog_hide_disable_remove");
Line Deleted : user_pref("sweetim.toolbar.dialogs.2.title", "Option Dialog");
Line Deleted : user_pref("sweetim.toolbar.dialogs.2.url", "hxxp://www.sweetim.com/simffbar/simcdadialog.asp");
Line Deleted : user_pref("sweetim.toolbar.dialogs.2.width", "530");
Line Deleted : user_pref("sweetim.toolbar.dnscatch.domain-blacklist", ".*.sweetim.com/.*|.*.facebook.com/.*|.*.google.com/.*|.*.google.co.in/.*|.*.google.com.br/.*|.*.google.es/.*|.*.youtube.com/.*|.*.yahoo.com/.*|.[...]
Line Deleted : user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
Line Deleted : user_pref("sweetim.toolbar.keywordUrlGuard.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
Line Deleted : user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
Line Deleted : user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
Line Deleted : user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
Line Deleted : user_pref("sweetim.toolbar.mode.debug", "false");
Line Deleted : user_pref("sweetim.toolbar.newtab.created", "false");
Line Deleted : user_pref("sweetim.toolbar.newtab.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "Yahoo");
Line Deleted : user_pref("sweetim.toolbar.previous.browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=3&q={searchTerms}");
Line Deleted : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "uTorrentBar Customized Web Search");
Line Deleted : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "about:home");
Line Deleted : user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=2&q=");
Line Deleted : user_pref("sweetim.toolbar.rc.url", "hxxp://www.sweetim.com/simffbar/rc.html?toolba ... crg=$cargo;");
Line Deleted : user_pref("sweetim.toolbar.scripts.0.addcontextdiv", "true");
Line Deleted : user_pref("sweetim.toolbar.scripts.0.callback", "simVerification");
Line Deleted : user_pref("sweetim.toolbar.scripts.0.domain-blacklist", "");
Line Deleted : user_pref("sweetim.toolbar.scripts.0.domain-whitelist", "hxxp://(www.|apps.)?facebook\\.com.*");
Line Deleted : user_pref("sweetim.toolbar.scripts.0.elementid", "id_script_sim_fb");
Line Deleted : user_pref("sweetim.toolbar.scripts.0.enable", "true");
Line Deleted : user_pref("sweetim.toolbar.scripts.0.id", "id_script_fb");
Line Deleted : user_pref("sweetim.toolbar.scripts.0.url", "hxxp://sc.sweetim.com/apps/in/fb/infb.js");
Line Deleted : user_pref("sweetim.toolbar.scripts.1.addcontextdiv", "true");
Line Deleted : user_pref("sweetim.toolbar.scripts.1.callback", "simVerification");
Line Deleted : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
Line Deleted : user_pref("sweetim.toolbar.scripts.1.domain-whitelist", "hxxps://(www.|apps.)?facebook\\.com.*");
Line Deleted : user_pref("sweetim.toolbar.scripts.1.elementid", "id_script_sim_fb");
Line Deleted : user_pref("sweetim.toolbar.scripts.1.enable", "false");
Line Deleted : user_pref("sweetim.toolbar.scripts.1.id", "id_script_fb_hxxpS");
Line Deleted : user_pref("sweetim.toolbar.scripts.1.url", "hxxps://sc.sweetim.com/apps/in/fb/infb.js");
Line Deleted : user_pref("sweetim.toolbar.scripts.2.addcontextdiv", "false");
Line Deleted : user_pref("sweetim.toolbar.scripts.2.callback", "");
Line Deleted : user_pref("sweetim.toolbar.scripts.2.domain-blacklist", ".*.google..*|.*.bing..*|.*.live..*|.*.msn..*|.*.yahoo..*|.*.youtube.com.*|.*ask.com.*|.*.sweetim.com.*");
Line Deleted : user_pref("sweetim.toolbar.scripts.2.domain-whitelist", "");
Line Deleted : user_pref("sweetim.toolbar.scripts.2.elementid", "id_predict_include_script");
Line Deleted : user_pref("sweetim.toolbar.scripts.2.enable", "false");
Line Deleted : user_pref("sweetim.toolbar.scripts.2.id", "id_script_prad");
Line Deleted : user_pref("sweetim.toolbar.scripts.2.url", "hxxp://cdn1.certified-apps.com/scripts/shared/enable.js?si=3104&tid=chff1");
Line Deleted : user_pref("sweetim.toolbar.search.history.capacity", "10");
Line Deleted : user_pref("sweetim.toolbar.searchguard.enable", "false");
Line Deleted : user_pref("sweetim.toolbar.searchguard.initialized_by_rc", "true");
Line Deleted : user_pref("sweetim.toolbar.simapp_id", "{DE50E8CA-9DAF-40A7-AFBC-136EF4B9B731}");
Line Deleted : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com/?st=6&barid={DE50E8CA-9DAF-40A7-AFBC-136EF4B9B731}");
Line Deleted : user_pref("sweetim.toolbar.version", "1.7.0.3");

*************************

AdwCleaner[R0].txt - [44971 octets] - [08/01/2014 18:14:24]
AdwCleaner[S0].txt - [45128 octets] - [08/01/2014 18:15:37]

########## EOF - D:\AdwCleaner\AdwCleaner[S0].txt - [45189 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakování reklamních banerů

#5 Příspěvek od vyosek »

Poprosim o log dle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kuba7710
Návštěvník
Návštěvník
Příspěvky: 102
Registrován: 13 dub 2007 18:08

Re: Vyskakování reklamních banerů

#6 Příspěvek od kuba7710 »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 08-01-2014 01
Ran by spravce (administrator) on PCSERVER on 09-01-2014 03:40:38
Running from D:\Documents and Settings\spravce\Plocha\VIR
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(Broadcom Corporation) C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe
(Microsoft Corporation) C:\WINDOWS\system32\cisvc.exe
() C:\Program Files\Canon\IJPLM\ijplmsvc.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
(Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS32.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(Microsoft Corporation) C:\WINDOWS\vVX3000.exe
(Intel Corporation) C:\WINDOWS\system32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(Citrix Systems, Inc.) C:\Program Files\Citrix\ICA Client\redirector.exe
(RealNetworks, Inc.) C:\Program Files\Real\realplayer\Update\realsched.exe
() C:\Program Files\Pando Networks\Media Booster\PMB.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SetRefresh] - C:\Program Files\COMPAQ\SetRefresh\\SetRefresh.exe [525824 2003-11-20] (Hewlett-Packard Company)
HKLM\...\Run: [Zástupce stránky vlastností sběrnice High Definition Audio] - C:\WINDOWS\system32\HdAShCut.exe [61952 2005-01-07] (Windows (R) Server 2003 DDK provider)
HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.exe [16871936 2008-06-13] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Tweak UI] - RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
HKLM\...\Run: [CanonMyPrinter] - C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE [1603152 2007-04-03] (CANON INC.)
HKLM\...\Run: [VX3000] - C:\WINDOWS\vVX3000.exe [762736 2010-05-20] (Microsoft Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312 2013-12-27] (AVAST Software)
HKLM\...\Run: [ConnectionCenter] - C:\Program Files\Citrix\ICA Client\concentr.exe [395656 2013-10-01] (Citrix Systems, Inc.)
HKLM\...\Run: [Redirector] - C:\Program Files\Citrix\ICA Client\redirector.exe [153992 2013-10-01] (Citrix Systems, Inc.)
HKLM\...\Run: [TkBellExe] - C:\Program Files\Real\realplayer\Update\realsched.exe [296056 2011-12-15] (RealNetworks, Inc.)
HKLM\...\runonceex: [Flag] - 2
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKCU\...\Run: [] - [x]
HKCU\...\Run: [Pando Media Booster] - C:\Program Files\Pando Networks\Media Booster\PMB.exe [4284976 2013-05-18] ()
MountPoints2: {4c214baf-4e74-11dd-bd6a-972f96c18105} - J:\starttc.exe
MountPoints2: {60558b19-518f-11dd-bd70-001cc466159c} - J:\starttc.exe
MountPoints2: {7064604b-5c55-11e1-bde7-001e0b41a541} - J:\setup_vmc_lite.exe /checkApplicationPresence
MountPoints2: {ad6341fe-67d5-11df-bd86-001e0b41a541} - L:\USBAutoRun.exe
Startup: D:\Documents and Settings\All users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> D:\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

ProxyServer: http=localhost:1975;https=localhost:1976
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {2DE043C6-E14C-48B0-84BD-A1C06BAF5E78} URL = http://tv.seznam.cz/hledej?w={searchTer ... kSearch_12
SearchScopes: HKCU - {D5C9BAB1-7BC2-4DE0-8B38-915ACBC33274} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - D:\Documents and Settings\All users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
BHO: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Webexp Enhanced - {b1f1d99d-9fff-4933-ab08-7bdae61c4500} - C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha736\ie\WebexpEnhancedV1alpha736.dll ()
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.3.dll ()
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {ED3582D0-92F9-46CF-920A-8ABD16715AB0} - No File
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
DPF: {672EE252-D813-4F5E-81BB-5DD163DD4FA5} https://www.mojedatovaschranka.cz/stati ... ?3,16,13,0
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default
FF NewTab: hxxp://www.google.com/firefox
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: about:home
FF Keyword.URL: hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q=
FF NetworkProxy: "type", 4
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @Citrix.com/npican - C:\Program Files\Citrix\ICA Client\npicaN.dll (Citrix Systems, Inc.)
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nokia.com/EnablerPlugin - C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin: @real.com/nppl3260;version=15.0.1.13 - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprjplug;version=15.0.1.13 - c:\program files\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpchromebrowserrecordext;version=15.0.1.13 - D:\Documents and Settings\All users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprphtml5videoshim;version=15.0.1.13 - D:\Documents and Settings\All users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=15.0.1.13 - c:\program files\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @software602.cz/602XML Filler - C:\Program Files\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF Plugin: @videolan.org/vlc,version=2.0.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @kb-ext.cz/PKIComponent - D:\Documents and Settings\spravce\Data aplikací\KB-ext\lib\x86\npPKIComponentNPAPI-kbext.dll (Komerční banka, a.s.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - D:\Documents and Settings\spravce\Local Settings\Data aplikací\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - D:\Documents and Settings\spravce\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\searchplugins-backup
FF SearchPlugin: D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\uloto.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Tree Style Tab - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\treestyletab@piro.sakura.ne.jp.xpi
FF Extension: ImTranslator - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi
FF Extension: Fasterfox - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\{c36177c0-224a-11da-8cd6-0800200c9a91}.xpi
FF Extension: Adblock Plus - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: Download Statusbar - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - D:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - D:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF HKLM\...\Firefox\Extensions: [12x3q4@3244516.com] - C:\Program Files\Better-Surf\ff
FF HKLM\...\Firefox\Extensions: [ext@bettersurfplus.com] - C:\Program Files\BetterSurf\BetterSurfPlus\ff
FF HKLM\...\Firefox\Extensions: [ext@WebexpEnhancedV1alpha736.net] - C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha736\ff
FF Extension: Webexp Enhanced - C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha736\ff
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF

========================== Services (Whitelisted) =================

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [84520 2011-03-14] (Software602 a.s.)
R2 6to4; C:\Windows\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-12-27] (AVAST Software)
R2 BrcmMgmtAgent; C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe [110592 2008-07-01] (Broadcom Corporation)
S3 IDriverT; C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation)
R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [97432 2007-04-13] ()
S3 LPDSVC; C:\Windows\system32\tcpsvcs.exe [19456 2007-10-29] (Microsoft Corporation)
R2 NwSapAgent; C:\Windows\System32\ipxsap.dll [66560 2007-10-29] (Microsoft Corporation)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-12-13] (Ulead Systems, Inc.)
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf"
S3 stllssvr; "C:\Program Files\Common Files\SureThing Shared\stllssvr.exe" [x]

==================== Drivers (Whitelisted) ====================

R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2014-01-08] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [54832 2014-01-08] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49944 2013-12-27] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [775952 2014-01-08] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [410528 2014-01-08] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57672 2014-01-08] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [180248 2014-01-08] ()
S3 autorun; C:\huadio.tmp [5789 2012-08-23] (Windows (R) 2000 DDK provider)
S3 Axtmvflt; C:\Windows\System32\DRIVERS\Axtmvflt.sys [3456 2007-09-20] (Axesstel)
S3 Axtmvmdm; C:\Windows\System32\DRIVERS\Axtmvmdm.sys [40064 2007-09-20] (Axesstel)
S3 Axtmvprt; C:\Windows\System32\Drivers\Axtmvprt.sys [38784 2007-09-20] (Axesstel)
R2 BASFND; C:\Program Files\Broadcom\MgmtAgent\BASFND.sys [10480 2008-09-18] (Broadcom Corporation)
S3 BCM44X2; C:\Windows\System32\DRIVERS\BCM4E5.SYS [26568 2001-08-17] (Broadcom Corporation)
S3 CCDECODE; C:\Windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 cpudrv; C:\Program Files\SystemRequirementsLab\cpudrv.sys [11336 2011-06-02] ()
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.SYS [20400 1999-10-21] (EnTech Taiwan)
S3 FlashUSB; C:\Windows\System32\DRIVERS\FlashUSB.sys [16896 2009-05-12] (Danish Wireless Design A/S)
S3 GVCplDrv; C:\Windows\System32\Drivers\GVCplDrv.sys [23040 2004-05-02] ()
S3 HdAudAddService; C:\Windows\System32\drivers\HdAudio.sys [145920 2005-01-07] (Windows (R) Server 2003 DDK provider)
S3 MODRC; C:\Windows\System32\DRIVERS\modrc.sys [13056 2006-05-09] (DiBcom S.A.)
S3 MPE; C:\Windows\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation)
S3 msvad_simple; C:\Windows\System32\drivers\vadSimpl.sys [44032 2011-09-18] (Windows (R) Win 7 DDK provider)
S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
S3 nm; C:\Windows\System32\DRIVERS\NMnt.sys [40320 2008-04-13] (Microsoft Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [50704 2009-11-16] (CACE Technologies, Inc.)
R2 NwlnkIpx; C:\Windows\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-13] (Microsoft Corporation)
R2 NwlnkNb; C:\Windows\System32\DRIVERS\nwlnknb.sys [63232 2007-10-29] (Microsoft Corporation)
R2 NwlnkSpx; C:\Windows\System32\DRIVERS\nwlnkspx.sys [55936 2007-10-29] (Microsoft Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2010-05-23] ()
R1 Tcpip6; C:\Windows\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
S3 WFBDA7700; C:\Windows\System32\Drivers\wfbda77.sys [122496 2006-06-07] (DiBcom)
U3 assc1zz4; C:\Windows\System32\Drivers\assc1zz4.sys [0 ] (Microsoft Corporation)
S0 BootDefragDriver; System32\drivers\BootDefragDriver.sys [x]
S3 EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys [x]
S4 IntelIde; No ImagePath
S3 LgBttPort; system32\DRIVERS\lgbtport.sys [x]
S3 lgbusenum; system32\DRIVERS\lgbtbus.sys [x]
S3 LGVMODEM; system32\DRIVERS\lgvmodem.sys [x]
U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 usbbus; system32\DRIVERS\lgusbbus.sys [x]
S3 UsbDiag; system32\DRIVERS\lgusbdiag.sys [x]
S3 USBModem; system32\DRIVERS\lgusbmodem.sys [x]
S0 vmci; system32\DRIVERS\vmci.sys [x]
S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-09 03:39 - 2014-01-09 03:39 - 00000000 ____D C:\FRST
2014-01-08 18:41 - 2014-01-08 18:41 - 00135168 _____ C:\zip.exe
2014-01-08 18:41 - 2014-01-08 18:41 - 00019286 _____ C:\cleanup.exe
2014-01-08 18:41 - 2014-01-08 18:41 - 00000886 _____ C:\avenger.txt
2014-01-08 18:41 - 2014-01-08 18:41 - 00000574 _____ C:\cleanup.bat
2014-01-08 18:06 - 2014-01-09 03:40 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\VIR
2014-01-08 18:03 - 2014-01-08 18:03 - 00000000 ____D C:\WINDOWS\ERUNT
2014-01-08 16:12 - 2014-01-08 16:12 - 00000000 ____D C:\rsit
2014-01-08 16:12 - 2014-01-08 16:12 - 00000000 ____D C:\Program Files\trend micro
2014-01-07 11:40 - 2014-01-07 11:41 - 00005072 _____ C:\WINDOWS\setupapi.log
2014-01-07 09:43 - 2014-01-07 09:43 - 00003398 _____ C:\WINDOWS\DPINST.LOG
2013-12-30 14:55 - 2013-12-30 14:55 - 00000000 ____D D:\Documents and Settings\All users\GlarySoft
2013-12-30 14:42 - 2013-12-30 14:42 - 46399488 _____ C:\WINDOWS\system32\config\software.gu
2013-12-30 14:42 - 2013-12-30 14:42 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00001024 ____H C:\WINDOWS\system32\config\system.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H D:\Documents and Settings\spravce\NTUSER.DAT.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H C:\WINDOWS\system32\config\SAM.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H C:\WINDOWS\system32\config\default.gu.LOG
2013-12-30 14:41 - 2013-12-30 14:41 - 06709248 _____ C:\WINDOWS\system32\config\~gsyst02.tmp
2013-12-30 14:41 - 2013-12-30 14:41 - 00925696 _____ C:\WINDOWS\system32\config\~gdefa03.tmp
2013-12-30 14:41 - 2013-12-30 14:41 - 00028672 _____ C:\WINDOWS\system32\config\~gSAM04.tmp
2013-12-30 14:41 - 2013-12-24 03:06 - 00022304 _____ (Glarysoft Ltd) C:\WINDOWS\system32\RegBootDefrag.exe
2013-12-30 14:40 - 2013-12-30 14:41 - 46399488 _____ C:\WINDOWS\system32\config\~gsoft01.tmp
2013-12-30 14:40 - 2013-12-30 14:40 - 00061440 _____ C:\WINDOWS\system32\config\~gSECU00.tmp
2013-12-30 14:30 - 2013-12-30 14:30 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\GlarySoft
2013-12-30 14:23 - 2014-01-08 18:43 - 00000316 _____ C:\WINDOWS\Tasks\GlaryInitialize 4.job
2013-12-30 14:23 - 2013-12-30 14:23 - 00000693 _____ D:\Documents and Settings\All users\Plocha\Glary Utilities 4.lnk
2013-12-30 14:23 - 2013-12-30 14:23 - 00000693 _____ D:\Documents and Settings\All users\Nabídka Start\Programy\Glary Utilities 4.lnk
2013-12-30 14:23 - 2013-12-30 14:23 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Glary Utilities 4
2013-12-30 14:23 - 2013-12-24 03:06 - 00101664 _____ (Glarysoft Ltd) C:\WINDOWS\system32\BootDefrag.exe
2013-12-30 14:22 - 2014-01-07 08:04 - 00000000 ____D C:\Program Files\Glary Utilities 4
2013-12-30 09:36 - 2014-01-05 08:45 - 00012504 _____ D:\Documents and Settings\spravce\Plocha\Pokladna D-MASO 2014.ods
2013-12-27 11:03 - 2013-12-27 11:03 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\AVAST Software
2013-12-27 11:02 - 2014-01-08 18:44 - 00775952 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2013-12-27 11:02 - 2014-01-08 18:44 - 00410528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2013-12-27 11:02 - 2014-01-08 18:44 - 00270240 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2013-12-27 11:02 - 2014-01-08 18:44 - 00180248 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys
2013-12-27 11:02 - 2014-01-08 18:44 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2013-12-27 11:02 - 2014-01-08 18:44 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2013-12-27 11:02 - 2014-01-08 18:44 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys
2013-12-27 11:02 - 2014-01-08 18:44 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2013-12-27 11:02 - 2014-01-08 18:44 - 00001671 _____ D:\Documents and Settings\All users\Plocha\avast! Free Antivirus.lnk
2013-12-27 11:02 - 2014-01-08 18:44 - 00000316 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2013-12-27 11:02 - 2013-12-27 11:02 - 00049944 _____ C:\WINDOWS\system32\Drivers\aswRvrt.sys
2013-12-27 11:02 - 2013-12-27 11:02 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Avast
2013-12-27 11:01 - 2013-12-27 11:01 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\AVAST Software
2013-12-27 11:01 - 2013-12-27 11:01 - 00000000 ____D C:\Program Files\AVAST Software
2013-12-20 15:59 - 2013-12-20 15:59 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\ImgBurn
2013-12-20 15:52 - 2013-12-20 15:52 - 00000000 ____D C:\Program Files\WebexpEnhancedV1
2013-12-20 15:49 - 2014-01-08 14:55 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\newnext.me
2013-12-20 15:49 - 2013-12-20 15:50 - 00000000 ____D D:\Documents and Settings\spravce\.android
2013-12-20 15:49 - 2013-12-20 15:49 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\genienext
2013-12-20 15:49 - 2013-12-20 15:49 - 00000000 _____ D:\Documents and Settings\spravce\daemonprocess.txt
2013-12-20 15:47 - 2013-12-20 15:47 - 00001492 _____ D:\Documents and Settings\All users\Plocha\ImgBurn.lnk
2013-12-20 15:47 - 2013-12-20 15:47 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\ImgBurn
2013-12-20 15:47 - 2013-12-20 15:47 - 00000000 ____D C:\Program Files\ImgBurn
2013-12-20 15:46 - 2013-12-20 16:24 - 00002561 _____ C:\WINDOWS\diagwrn.xml
2013-12-20 15:46 - 2013-12-20 16:24 - 00001908 _____ C:\WINDOWS\diagerr.xml
2013-12-20 13:03 - 2013-12-20 16:26 - 00001080 _____ D:\Documents and Settings\spravce\Local Settings\Data aplikací\SRDownloader.nast
2013-12-20 13:00 - 2013-12-20 13:00 - 00905728 _____ (Share-rapid.com) D:\Documents and Settings\spravce\Plocha\SRDownloader.exe
2013-12-20 05:22 - 2013-12-30 10:22 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-12-17 10:39 - 2013-12-17 10:39 - 00000705 _____ D:\Documents and Settings\spravce\Plocha\Traktor 2.lnk
2013-12-17 10:39 - 2013-12-17 10:39 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\TopCD
2013-12-16 20:07 - 2013-12-30 13:56 - 00000000 ____D C:\Program Files\TweakNow RegCleaner
2013-12-16 20:07 - 2013-12-19 03:01 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\TweakNow RegCleaner
2013-12-16 19:21 - 2008-12-12 10:40 - 00147456 _____ C:\WINDOWS\system32\igfxCoIn_v5016.dll
2013-12-16 19:21 - 2008-12-12 10:34 - 01481884 _____ C:\WINDOWS\system32\igkrng400.bin
2013-12-16 19:20 - 2013-12-16 19:20 - 00000000 ____D C:\Intel
2013-12-16 19:17 - 2013-12-16 19:17 - 00000000 ____D C:\Program Files\SystemRequirementsLab
2013-12-16 19:16 - 2013-12-16 19:16 - 00000000 ____D D:\Documents and Settings\spravce\SystemRequirementsLab
2013-12-16 18:38 - 2013-12-16 18:38 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\Quadriga Games
2013-12-16 18:16 - 2013-12-16 18:16 - 00000000 ____D D:\Documents and Settings\All Users\Dokumenty\DAEMON Tools Images
2013-12-16 18:11 - 2013-12-16 18:58 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard
2013-12-16 18:11 - 2013-12-16 18:11 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-12-12 07:45 - 2013-12-12 07:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$
2013-12-12 07:45 - 2013-12-12 07:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$
2013-12-12 07:34 - 2013-12-12 07:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$
2013-12-12 07:34 - 2013-12-12 07:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$
2013-12-12 07:34 - 2013-12-12 07:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$
2013-12-11 11:59 - 2013-12-11 11:59 - 02263608 _____ (Logitech Inc.) D:\Documents and Settings\spravce\Plocha\logitech_connect.exe

==================== One Month Modified Files and Folders =======

2014-01-09 03:41 - 2012-03-04 15:54 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\PMB Files
2014-01-09 03:41 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Temp
2014-01-09 03:40 - 2014-01-08 18:06 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\VIR
2014-01-09 03:40 - 2012-03-05 06:24 - 00001024 ____H D:\Documents and Settings\Guest\ntuser.dat.LOG
2014-01-09 03:40 - 2008-08-12 11:02 - 00001024 ____H D:\Documents and Settings\spravce\ntuser.dat.LOG
2014-01-09 03:40 - 2008-08-12 11:01 - 00001024 ____H D:\Documents and Settings\Default user\ntuser.dat.LOG
2014-01-09 03:40 - 2008-08-12 11:01 - 00001024 ____H D:\Documents and Settings\All users\NTUSER.DAT.LOG
2014-01-09 03:39 - 2014-01-09 03:39 - 00000000 ____D C:\FRST
2014-01-09 03:32 - 2010-05-22 13:06 - 00000470 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{E2B8A939-637A-41FB-8333-59D3A7D30102}.job
2014-01-09 03:21 - 2012-05-30 01:41 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-01-09 03:05 - 2011-10-31 17:55 - 00001054 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-83760419-1899083256-532270227-1003UA.job
2014-01-09 00:05 - 2011-10-31 17:55 - 00001032 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-83760419-1899083256-532270227-1003Core.job
2014-01-08 22:54 - 2008-07-10 12:24 - 01819917 _____ C:\WINDOWS\WindowsUpdate.log
2014-01-08 18:44 - 2013-12-27 11:02 - 00775952 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2014-01-08 18:44 - 2013-12-27 11:02 - 00410528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2014-01-08 18:44 - 2013-12-27 11:02 - 00270240 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-01-08 18:44 - 2013-12-27 11:02 - 00180248 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-01-08 18:44 - 2013-12-27 11:02 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-01-08 18:44 - 2013-12-27 11:02 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2014-01-08 18:44 - 2013-12-27 11:02 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys
2014-01-08 18:44 - 2013-12-27 11:02 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-01-08 18:44 - 2013-12-27 11:02 - 00001671 _____ D:\Documents and Settings\All users\Plocha\avast! Free Antivirus.lnk
2014-01-08 18:44 - 2013-12-27 11:02 - 00000316 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-01-08 18:43 - 2013-12-30 14:23 - 00000316 _____ C:\WINDOWS\Tasks\GlaryInitialize 4.job
2014-01-08 18:42 - 2010-06-23 11:39 - 00000282 _____ C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-83760419-1899083256-532270227-1003.job
2014-01-08 18:42 - 2008-08-12 11:02 - 00000062 ___SH D:\Documents and Settings\spravce\Local Settings\desktop.ini
2014-01-08 18:42 - 2008-08-12 11:02 - 00000000 ___HD D:\Documents and Settings\spravce\Šablony
2014-01-08 18:42 - 2008-07-10 14:03 - 00000159 _____ C:\WINDOWS\wiadebug.log
2014-01-08 18:42 - 2008-07-10 14:03 - 00000048 _____ C:\WINDOWS\wiaservc.log
2014-01-08 18:42 - 2008-07-10 12:28 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2014-01-08 18:42 - 2007-10-29 13:00 - 00012598 _____ C:\WINDOWS\system32\wpa.dbl
2014-01-08 18:41 - 2014-01-08 18:41 - 00135168 _____ C:\zip.exe
2014-01-08 18:41 - 2014-01-08 18:41 - 00019286 _____ C:\cleanup.exe
2014-01-08 18:41 - 2014-01-08 18:41 - 00000886 _____ C:\avenger.txt
2014-01-08 18:41 - 2014-01-08 18:41 - 00000574 _____ C:\cleanup.bat
2014-01-08 18:41 - 2008-08-12 11:02 - 09437184 _____ D:\Documents and Settings\spravce\NTUSER.DAT
2014-01-08 18:41 - 2008-08-12 11:02 - 00000178 ___SH D:\Documents and Settings\spravce\ntuser.ini
2014-01-08 18:41 - 2008-08-12 11:02 - 00000000 __RHD D:\Documents and Settings\spravce\Recent
2014-01-08 18:41 - 2008-07-10 12:28 - 00032650 _____ C:\WINDOWS\SchedLgU.Txt
2014-01-08 18:27 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce
2014-01-08 18:15 - 2010-12-25 20:41 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\ICQ
2014-01-08 18:15 - 2008-08-12 11:02 - 00000000 ___HD D:\Documents and Settings\spravce\Local Settings\Data aplikací
2014-01-08 18:15 - 2008-08-12 11:01 - 00000000 ___RD D:\Documents and Settings\All users\Dokumenty
2014-01-08 18:15 - 2008-08-12 11:01 - 00000000 ___HD D:\Documents and Settings\All users\Data aplikací
2014-01-08 18:09 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce\Plocha
2014-01-08 18:05 - 2008-08-12 11:02 - 00000000 ___HD D:\Documents and Settings\spravce\Data aplikací
2014-01-08 18:03 - 2014-01-08 18:03 - 00000000 ____D C:\WINDOWS\ERUNT
2014-01-08 17:20 - 2011-11-08 13:25 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\ŘEZNICTVÍ
2014-01-08 16:12 - 2014-01-08 16:12 - 00000000 ____D C:\rsit
2014-01-08 16:12 - 2014-01-08 16:12 - 00000000 ____D C:\Program Files\trend micro
2014-01-08 14:55 - 2013-12-20 15:49 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\newnext.me
2014-01-08 11:53 - 2008-08-12 11:02 - 00000000 __SHD D:\Documents and Settings\spravce\Cookies
2014-01-07 16:10 - 2012-03-29 06:06 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\D-MASO
2014-01-07 11:41 - 2014-01-07 11:40 - 00005072 _____ C:\WINDOWS\setupapi.log
2014-01-07 09:50 - 2008-08-30 04:23 - 00067072 _____ D:\Documents and Settings\spravce\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-01-07 09:43 - 2014-01-07 09:43 - 00003398 _____ C:\WINDOWS\DPINST.LOG
2014-01-07 09:41 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\Microsoft
2014-01-07 09:41 - 2008-08-12 11:01 - 00000000 ___SD D:\Documents and Settings\All users\Data aplikací\Microsoft
2014-01-07 09:35 - 2008-07-10 13:54 - 00000000 ____D C:\WINDOWS\Help
2014-01-07 09:17 - 2008-08-12 11:01 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Po spuštění
2014-01-07 09:17 - 2008-08-12 11:01 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy
2014-01-07 08:04 - 2013-12-30 14:22 - 00000000 ____D C:\Program Files\Glary Utilities 4
2014-01-05 08:45 - 2013-12-30 09:36 - 00012504 _____ D:\Documents and Settings\spravce\Plocha\Pokladna D-MASO 2014.ods
2014-01-05 07:48 - 2010-06-23 11:39 - 00000290 _____ C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-83760419-1899083256-532270227-1003.job
2014-01-02 07:12 - 2012-04-23 11:15 - 00042182 _____ D:\Documents and Settings\spravce\Plocha\Pokladna D-MASO 2013.ods
2013-12-30 20:17 - 2008-08-12 11:02 - 00000000 __SHD D:\Documents and Settings\spravce\Local Settings\Temporary Internet Files
2013-12-30 14:55 - 2013-12-30 14:55 - 00000000 ____D D:\Documents and Settings\All users\GlarySoft
2013-12-30 14:55 - 2008-08-12 11:01 - 00000000 ____D D:\Documents and Settings\All users
2013-12-30 14:42 - 2013-12-30 14:42 - 46399488 _____ C:\WINDOWS\system32\config\software.gu
2013-12-30 14:42 - 2013-12-30 14:42 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00001024 ____H C:\WINDOWS\system32\config\system.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H D:\Documents and Settings\spravce\NTUSER.DAT.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H C:\WINDOWS\system32\config\SAM.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H C:\WINDOWS\system32\config\default.gu.LOG
2013-12-30 14:42 - 2008-07-10 13:59 - 06815744 _____ C:\WINDOWS\system32\config\system.gu.bak
2013-12-30 14:42 - 2008-07-10 13:59 - 00262144 _____ C:\WINDOWS\system32\config\SECURITY.gu.bak
2013-12-30 14:41 - 2013-12-30 14:41 - 06709248 _____ C:\WINDOWS\system32\config\~gsyst02.tmp
2013-12-30 14:41 - 2013-12-30 14:41 - 00925696 _____ C:\WINDOWS\system32\config\~gdefa03.tmp
2013-12-30 14:41 - 2013-12-30 14:41 - 00028672 _____ C:\WINDOWS\system32\config\~gSAM04.tmp
2013-12-30 14:41 - 2013-12-30 14:40 - 46399488 _____ C:\WINDOWS\system32\config\~gsoft01.tmp
2013-12-30 14:41 - 2008-08-12 11:02 - 09437184 ____H D:\Documents and Settings\spravce\NTUSER.DAT.gu.bak
2013-12-30 14:41 - 2008-07-10 13:59 - 01048576 _____ C:\WINDOWS\system32\config\default.gu.bak
2013-12-30 14:41 - 2008-07-10 13:59 - 00262144 _____ C:\WINDOWS\system32\config\SAM.gu.bak
2013-12-30 14:40 - 2013-12-30 14:40 - 00061440 _____ C:\WINDOWS\system32\config\~gSECU00.tmp
2013-12-30 14:40 - 2010-05-23 07:50 - 00000000 ____D D:\Documents and Settings\All users\Plocha\Programy
2013-12-30 14:35 - 2013-11-24 11:52 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\HRY
2013-12-30 14:35 - 2013-02-11 12:56 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Dokumentace BOZP a PO
2013-12-30 14:35 - 2010-05-23 09:19 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\STORMWARE Office
2013-12-30 14:35 - 2008-10-12 14:46 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Counter-Strike 1.6 Patch Version 26
2013-12-30 14:30 - 2013-12-30 14:30 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\GlarySoft
2013-12-30 14:29 - 2009-01-11 08:55 - 00000000 ____D C:\Program Files\IrfanView
2013-12-30 14:29 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce\Nabídka Start\Programy
2013-12-30 14:23 - 2013-12-30 14:23 - 00000693 _____ D:\Documents and Settings\All users\Plocha\Glary Utilities 4.lnk
2013-12-30 14:23 - 2013-12-30 14:23 - 00000693 _____ D:\Documents and Settings\All users\Nabídka Start\Programy\Glary Utilities 4.lnk
2013-12-30 14:23 - 2013-12-30 14:23 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Glary Utilities 4
2013-12-30 14:23 - 2010-05-25 09:20 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\GlarySoft
2013-12-30 14:23 - 2008-08-12 11:01 - 00000000 ____D D:\Documents and Settings\All users\Plocha
2013-12-30 14:16 - 2013-11-24 11:49 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\Seznam.cz
2013-12-30 14:13 - 2008-07-14 12:40 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-12-30 14:05 - 2010-05-26 10:37 - 00000000 ____D C:\Program Files\LG Electronics
2013-12-30 14:03 - 2012-07-26 22:08 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\Kastner software
2013-12-30 14:00 - 2010-05-26 10:39 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\LG Electronics
2013-12-30 13:56 - 2013-12-16 20:07 - 00000000 ____D C:\Program Files\TweakNow RegCleaner
2013-12-30 13:56 - 2013-11-04 11:08 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\Citrix
2013-12-30 13:56 - 2010-05-23 09:18 - 00000000 ____D C:\Program Files\Common Files\STORMWARE Shared
2013-12-30 13:54 - 2009-04-20 17:04 - 00000000 ____D C:\Program Files\Windows Live
2013-12-30 13:05 - 2008-07-10 14:00 - 00007232 ____C C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-30 13:00 - 2012-05-03 02:02 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-12-30 10:22 - 2013-12-20 05:22 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-12-30 10:22 - 2011-04-11 06:50 - 00000672 _____ D:\Documents and Settings\All users\Nabídka Start\Programy\Mozilla Firefox.lnk
2013-12-30 10:22 - 2008-08-18 15:07 - 00000672 _____ D:\Documents and Settings\All users\Plocha\Mozilla Firefox.lnk
2013-12-27 11:03 - 2013-12-27 11:03 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\AVAST Software
2013-12-27 11:02 - 2013-12-27 11:02 - 00049944 _____ C:\WINDOWS\system32\Drivers\aswRvrt.sys
2013-12-27 11:02 - 2013-12-27 11:02 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Avast
2013-12-27 11:02 - 2008-08-18 16:20 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2013-12-27 11:01 - 2013-12-27 11:01 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\AVAST Software
2013-12-27 11:01 - 2013-12-27 11:01 - 00000000 ____D C:\Program Files\AVAST Software
2013-12-27 08:57 - 2010-05-31 09:44 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\CanonIJPLM
2013-12-24 03:06 - 2013-12-30 14:41 - 00022304 _____ (Glarysoft Ltd) C:\WINDOWS\system32\RegBootDefrag.exe
2013-12-24 03:06 - 2013-12-30 14:23 - 00101664 _____ (Glarysoft Ltd) C:\WINDOWS\system32\BootDefrag.exe
2013-12-20 16:26 - 2013-12-20 13:03 - 00001080 _____ D:\Documents and Settings\spravce\Local Settings\Data aplikací\SRDownloader.nast
2013-12-20 16:24 - 2013-12-20 15:46 - 00002561 _____ C:\WINDOWS\diagwrn.xml
2013-12-20 16:24 - 2013-12-20 15:46 - 00001908 _____ C:\WINDOWS\diagerr.xml
2013-12-20 15:59 - 2013-12-20 15:59 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\ImgBurn
2013-12-20 15:52 - 2013-12-20 15:52 - 00000000 ____D C:\Program Files\WebexpEnhancedV1
2013-12-20 15:50 - 2013-12-20 15:49 - 00000000 ____D D:\Documents and Settings\spravce\.android
2013-12-20 15:49 - 2013-12-20 15:49 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\genienext
2013-12-20 15:49 - 2013-12-20 15:49 - 00000000 _____ D:\Documents and Settings\spravce\daemonprocess.txt
2013-12-20 15:49 - 2010-06-05 22:22 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\cache
2013-12-20 15:47 - 2013-12-20 15:47 - 00001492 _____ D:\Documents and Settings\All users\Plocha\ImgBurn.lnk
2013-12-20 15:47 - 2013-12-20 15:47 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\ImgBurn
2013-12-20 15:47 - 2013-12-20 15:47 - 00000000 ____D C:\Program Files\ImgBurn
2013-12-20 15:45 - 2008-08-18 15:00 - 00000000 ___HD D:\Documents and Settings\spravce\Okolní síť
2013-12-20 13:00 - 2013-12-20 13:00 - 00905728 _____ (Share-rapid.com) D:\Documents and Settings\spravce\Plocha\SRDownloader.exe
2013-12-20 10:25 - 2012-08-28 13:49 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\DLUŽNÍCI
2013-12-19 03:01 - 2013-12-16 20:07 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\TweakNow RegCleaner
2013-12-18 01:19 - 2008-09-10 06:50 - 00000000 ____D C:\KBcertifikat
2013-12-17 10:45 - 2010-05-23 08:15 - 00000000 ____D D:\Documents and Settings\All Users\Dokumenty\My Games
2013-12-17 10:39 - 2013-12-17 10:39 - 00000705 _____ D:\Documents and Settings\spravce\Plocha\Traktor 2.lnk
2013-12-17 10:39 - 2013-12-17 10:39 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\TopCD
2013-12-16 20:34 - 2008-07-10 14:09 - 00000000 ____D C:\install
2013-12-16 19:44 - 2008-10-26 11:59 - 00000000 ____D C:\WINDOWS\Minidump
2013-12-16 19:21 - 2008-07-10 12:57 - 00000000 ____D C:\WINDOWS\system32\ReinstallBackups
2013-12-16 19:20 - 2013-12-16 19:20 - 00000000 ____D C:\Intel
2013-12-16 19:17 - 2013-12-16 19:17 - 00000000 ____D C:\Program Files\SystemRequirementsLab
2013-12-16 19:16 - 2013-12-16 19:16 - 00000000 ____D D:\Documents and Settings\spravce\SystemRequirementsLab
2013-12-16 19:07 - 2008-07-10 12:24 - 00000000 ____D C:\WINDOWS\system32\DirectX
2013-12-16 18:58 - 2013-12-16 18:11 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard
2013-12-16 18:38 - 2013-12-16 18:38 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\Quadriga Games
2013-12-16 18:16 - 2013-12-16 18:16 - 00000000 ____D D:\Documents and Settings\All Users\Dokumenty\DAEMON Tools Images
2013-12-16 18:11 - 2013-12-16 18:11 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-12-16 14:21 - 2012-05-30 01:41 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-12-16 14:21 - 2011-05-14 10:09 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-12-12 08:53 - 2008-07-10 13:59 - 00165912 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-12-12 07:45 - 2013-12-12 07:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$
2013-12-12 07:45 - 2013-12-12 07:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$
2013-12-12 07:45 - 2013-07-25 11:00 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-12-12 07:45 - 2010-05-22 13:24 - 00000000 ____D C:\WINDOWS\ie8updates
2013-12-12 07:45 - 2008-07-12 02:03 - 00641108 ____C C:\WINDOWS\system32\TZLog.log
2013-12-12 07:35 - 2008-07-14 11:22 - 88123800 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-12-12 07:34 - 2013-12-12 07:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$
2013-12-12 07:34 - 2013-12-12 07:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$
2013-12-12 07:34 - 2013-12-12 07:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$
2013-12-11 11:59 - 2013-12-11 11:59 - 02263608 _____ (Logitech Inc.) D:\Documents and Settings\spravce\Plocha\logitech_connect.exe

Some content of TEMP:
====================
D:\Documents and Settings\spravce\Local Settings\Temp\mpegc.dll
D:\Documents and Settings\spravce\Local Settings\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe
[2007-10-29 13:00] - [2008-04-14 04:22] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1

C:\Windows\System32\winlogon.exe
[2007-10-29 13:00] - [2008-04-14 04:22] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea

C:\Windows\System32\svchost.exe
[2007-10-29 13:00] - [2008-04-14 04:22] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93

C:\Windows\System32\services.exe
[2007-10-29 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7

C:\Windows\System32\User32.dll
[2007-10-29 13:00] - [2008-04-14 04:22] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53

C:\Windows\System32\userinit.exe
[2007-10-29 13:00] - [2008-04-14 04:22] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239

C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys
[2007-10-29 13:00] - [2008-04-14 03:12] - 0052480 ___AC (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1


==================== End Of Log ============================
Přílohy
Addition.rar
(7.75 KiB) Staženo 49 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakování reklamních banerů

#7 Příspěvek od vyosek »

Tak hele, udelame dohodu: Bud to budete lecit dle MYCH rad a doporuceni nebo dle SVYCH pokusu-omylu :roll: :roll: Oboji zaroven nejde :evil:

Ten Avenger vam tam radil kdo, ja urcite ne?? Umite s nim zachazet, napsat skript, vite k cemu je dobry a zpusobe jeho prace ze jste jej tam nasadil?? Ohledne vytvoreni logu z FRSTLauncheru - drzel jste se navodu, jelikoz tam FRSTLauncher nevidim nikde stazeny, pouze samotny FRST.


A jeste maly dotaz, jedna se o domaci PC nebo nejake pracovni, firemni?? A vy jste jeho spravce??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kuba7710
Návštěvník
Návštěvník
Příspěvky: 102
Registrován: 13 dub 2007 18:08

Re: Vyskakování reklamních banerů

#8 Příspěvek od kuba7710 »

Je to firemní a já jsem správce. Omlouvám se, ale nainstaloval jsem ho poprvé špatně, teď mám na to konečně víc času tak to udělám pořádně. Ještě jednou se omlouvám.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakování reklamních banerů

#9 Příspěvek od vyosek »

A predpokladam, ze jste za toho spravce i placen, nebo je to zameststnani, ktere delate dobrovolne, jen tak pro zabavu?
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kuba7710
Návštěvník
Návštěvník
Příspěvky: 102
Registrován: 13 dub 2007 18:08

Re: Vyskakování reklamních banerů

#10 Příspěvek od kuba7710 »

Je to moje firma, tak se platím sám :(

kuba7710
Návštěvník
Návštěvník
Příspěvky: 102
Registrován: 13 dub 2007 18:08

Re: Vyskakování reklamních banerů

#11 Příspěvek od kuba7710 »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 08-01-2014 01
Ran by spravce (administrator) on PCSERVER on 09-01-2014 11:14:05
Running from D:\Documents and Settings\spravce\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Software602 a.s.) C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
(Broadcom Corporation) C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe
(Microsoft Corporation) C:\WINDOWS\system32\cisvc.exe
() C:\Program Files\Canon\IJPLM\ijplmsvc.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(Microsoft Corporation) C:\WINDOWS\vVX3000.exe
(Intel Corporation) C:\WINDOWS\system32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
() C:\Program Files\Pando Networks\Media Booster\PMB.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) D:\Documents and Settings\spravce\Plocha\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SetRefresh] - C:\Program Files\COMPAQ\SetRefresh\\SetRefresh.exe [525824 2003-11-20] (Hewlett-Packard Company)
HKLM\...\Run: [Zástupce stránky vlastností sběrnice High Definition Audio] - C:\WINDOWS\system32\HdAShCut.exe [61952 2005-01-07] (Windows (R) Server 2003 DDK provider)
HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.exe [16871936 2008-06-13] (Realtek Semiconductor Corp.)
HKLM\...\Run: [CanonMyPrinter] - C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE [1603152 2007-04-03] (CANON INC.)
HKLM\...\Run: [VX3000] - C:\WINDOWS\vVX3000.exe [762736 2010-05-20] (Microsoft Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\runonceex: [Flag] - 2
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKCU\...\Run: [] - [x]
HKCU\...\Run: [Pando Media Booster] - C:\Program Files\Pando Networks\Media Booster\PMB.exe [4284976 2013-05-18] ()
MountPoints2: {4c214baf-4e74-11dd-bd6a-972f96c18105} - J:\starttc.exe
MountPoints2: {60558b19-518f-11dd-bd70-001cc466159c} - J:\starttc.exe
MountPoints2: {7064604b-5c55-11e1-bde7-001e0b41a541} - J:\setup_vmc_lite.exe /checkApplicationPresence
MountPoints2: {ad6341fe-67d5-11df-bd86-001e0b41a541} - L:\USBAutoRun.exe
Startup: D:\Documents and Settings\All users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> D:\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

ProxyServer: http=localhost:1975;https=localhost:1976
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
SearchScopes: HKLM - DefaultScope value is missing.
BHO: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Webexp Enhanced - {b1f1d99d-9fff-4933-ab08-7bdae61c4500} - C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha736\ie\WebexpEnhancedV1alpha736.dll ()
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.3.dll ()
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {ED3582D0-92F9-46CF-920A-8ABD16715AB0} - No File
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
DPF: {672EE252-D813-4F5E-81BB-5DD163DD4FA5} https://www.mojedatovaschranka.cz/stati ... ?3,16,13,0
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default
FF NewTab: hxxp://www.google.com/firefox
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: about:home
FF Keyword.URL: hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q=
FF NetworkProxy: "type", 4
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nokia.com/EnablerPlugin - C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin: @software602.cz/602XML Filler - C:\Program Files\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF Plugin: @videolan.org/vlc,version=2.0.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @kb-ext.cz/PKIComponent - D:\Documents and Settings\spravce\Data aplikací\KB-ext\lib\x86\npPKIComponentNPAPI-kbext.dll (Komerční banka, a.s.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - D:\Documents and Settings\spravce\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\searchplugins-backup
FF SearchPlugin: D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\searchplugins\uloto.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Click&Clean - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\clickclean@hotcleaner.com
FF Extension: Self-Destructing Cookies - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\jid0-9XfBwUWnvPx4wWsfBWMCm4Jj69E@jetpack.xpi
FF Extension: Lightbeam - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\jid1-F9UJ2thwoAm5gQ@jetpack.xpi
FF Extension: Tree Style Tab - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\treestyletab@piro.sakura.ne.jp.xpi
FF Extension: Bluhell Firewall - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\{6BB5760D-F97E-421B-AF5B-8457A90C3CED}.xpi
FF Extension: Download Status Bar - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\{6c28e999-e900-4635-a39d-b1ec90ba0c0f}.xpi
FF Extension: Fasterfox - D:\Documents and Settings\spravce\Data aplikací\Mozilla\Firefox\Profiles\rst026c2.default\Extensions\{c36177c0-224a-11da-8cd6-0800200c9a91}.xpi
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF HKLM\...\Firefox\Extensions: [12x3q4@3244516.com] - C:\Program Files\Better-Surf\ff
FF HKLM\...\Firefox\Extensions: [ext@bettersurfplus.com] - C:\Program Files\BetterSurf\BetterSurfPlus\ff
FF HKLM\...\Firefox\Extensions: [ext@WebexpEnhancedV1alpha736.net] - C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha736\ff
FF Extension: Webexp Enhanced - C:\Program Files\WebexpEnhancedV1\WebexpEnhancedV1alpha736\ff
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF

========================== Services (Whitelisted) =================

R2 602XML Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [84520 2011-03-14] (Software602 a.s.)
R2 6to4; C:\Windows\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation)
R2 BrcmMgmtAgent; C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe [110592 2008-07-01] (Broadcom Corporation)
S3 IDriverT; C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation)
R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [97432 2007-04-13] ()
S3 LPDSVC; C:\Windows\system32\tcpsvcs.exe [19456 2007-10-29] (Microsoft Corporation)
R2 NwSapAgent; C:\Windows\System32\ipxsap.dll [66560 2007-10-29] (Microsoft Corporation)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-12-13] (Ulead Systems, Inc.)
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf"

==================== Drivers (Whitelisted) ====================

S3 autorun; C:\huadio.tmp [5789 2012-08-23] (Windows (R) 2000 DDK provider)
S3 Axtmvflt; C:\Windows\System32\DRIVERS\Axtmvflt.sys [3456 2007-09-20] (Axesstel)
S3 Axtmvmdm; C:\Windows\System32\DRIVERS\Axtmvmdm.sys [40064 2007-09-20] (Axesstel)
S3 Axtmvprt; C:\Windows\System32\Drivers\Axtmvprt.sys [38784 2007-09-20] (Axesstel)
R2 BASFND; C:\Program Files\Broadcom\MgmtAgent\BASFND.sys [10480 2008-09-18] (Broadcom Corporation)
S3 BCM44X2; C:\Windows\System32\DRIVERS\BCM4E5.SYS [26568 2001-08-17] (Broadcom Corporation)
S3 CCDECODE; C:\Windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 cpudrv; C:\Program Files\SystemRequirementsLab\cpudrv.sys [11336 2011-06-02] ()
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.SYS [20400 1999-10-21] (EnTech Taiwan)
S3 FlashUSB; C:\Windows\System32\DRIVERS\FlashUSB.sys [16896 2009-05-12] (Danish Wireless Design A/S)
S3 GVCplDrv; C:\Windows\System32\Drivers\GVCplDrv.sys [23040 2004-05-02] ()
S3 HdAudAddService; C:\Windows\System32\drivers\HdAudio.sys [145920 2005-01-07] (Windows (R) Server 2003 DDK provider)
S3 MODRC; C:\Windows\System32\DRIVERS\modrc.sys [13056 2006-05-09] (DiBcom S.A.)
S3 MPE; C:\Windows\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation)
S3 msvad_simple; C:\Windows\System32\drivers\vadSimpl.sys [44032 2011-09-18] (Windows (R) Win 7 DDK provider)
S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
S3 nm; C:\Windows\System32\DRIVERS\NMnt.sys [40320 2008-04-13] (Microsoft Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [50704 2009-11-16] (CACE Technologies, Inc.)
R2 NwlnkIpx; C:\Windows\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-13] (Microsoft Corporation)
R2 NwlnkNb; C:\Windows\System32\DRIVERS\nwlnknb.sys [63232 2007-10-29] (Microsoft Corporation)
R2 NwlnkSpx; C:\Windows\System32\DRIVERS\nwlnkspx.sys [55936 2007-10-29] (Microsoft Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2010-05-23] ()
R1 Tcpip6; C:\Windows\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
S3 WFBDA7700; C:\Windows\System32\Drivers\wfbda77.sys [122496 2006-06-07] (DiBcom)
U3 axd3mu5d; C:\Windows\System32\Drivers\axd3mu5d.sys [0 ] (Microsoft Corporation)
S0 BootDefragDriver; System32\drivers\BootDefragDriver.sys [x]
S3 EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys [x]
S4 IntelIde; No ImagePath
S3 LgBttPort; system32\DRIVERS\lgbtport.sys [x]
S3 lgbusenum; system32\DRIVERS\lgbtbus.sys [x]
S3 LGVMODEM; system32\DRIVERS\lgvmodem.sys [x]
U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 usbbus; system32\DRIVERS\lgusbbus.sys [x]
S3 UsbDiag; system32\DRIVERS\lgusbdiag.sys [x]
S3 USBModem; system32\DRIVERS\lgusbmodem.sys [x]
S0 vmci; system32\DRIVERS\vmci.sys [x]
S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-09 11:14 - 2014-01-09 11:14 - 00015142 _____ D:\Documents and Settings\spravce\Plocha\FRST.txt
2014-01-09 10:47 - 2014-01-09 11:08 - 00000000 __RHD D:\Documents and Settings\spravce\Recent
2014-01-09 09:14 - 2014-01-09 09:14 - 00000000 ____D C:\WINDOWS\pss
2014-01-09 08:47 - 2014-01-09 08:47 - 00000672 _____ D:\Documents and Settings\All users\Plocha\Mozilla Firefox.lnk
2014-01-09 08:47 - 2014-01-09 08:47 - 00000672 _____ D:\Documents and Settings\All users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-01-09 08:47 - 2014-01-09 08:47 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2014-01-09 04:28 - 2014-01-09 04:28 - 00000642 _____ D:\Documents and Settings\All users\Plocha\CCleaner.lnk
2014-01-09 04:28 - 2014-01-09 04:28 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\CCleaner
2014-01-09 04:28 - 2014-01-09 04:28 - 00000000 ____D C:\Program Files\CCleaner
2014-01-09 04:04 - 2014-01-09 04:07 - 00112640 _____ (forum.viry.cz) D:\Documents and Settings\spravce\Plocha\FRSTLauncher.exe
2014-01-09 03:39 - 2014-01-09 03:39 - 00000000 ____D C:\FRST
2014-01-09 03:38 - 2014-01-09 04:09 - 01065947 _____ (Farbar) D:\Documents and Settings\spravce\Plocha\FRST.exe
2014-01-08 18:41 - 2014-01-08 18:41 - 00135168 _____ C:\zip.exe
2014-01-08 18:41 - 2014-01-08 18:41 - 00019286 _____ C:\cleanup.exe
2014-01-08 18:41 - 2014-01-08 18:41 - 00000886 _____ C:\avenger.txt
2014-01-08 18:41 - 2014-01-08 18:41 - 00000574 _____ C:\cleanup.bat
2014-01-08 18:06 - 2014-01-09 11:04 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\VIR
2014-01-08 18:03 - 2014-01-08 18:03 - 00000000 ____D C:\WINDOWS\ERUNT
2014-01-08 16:12 - 2014-01-08 16:12 - 00000000 ____D C:\rsit
2014-01-08 16:12 - 2014-01-08 16:12 - 00000000 ____D C:\Program Files\trend micro
2013-12-30 14:55 - 2013-12-30 14:55 - 00000000 ____D D:\Documents and Settings\All users\GlarySoft
2013-12-30 14:42 - 2013-12-30 14:42 - 46399488 _____ C:\WINDOWS\system32\config\software.gu
2013-12-30 14:42 - 2013-12-30 14:42 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00001024 ____H C:\WINDOWS\system32\config\system.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H D:\Documents and Settings\spravce\NTUSER.DAT.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H C:\WINDOWS\system32\config\SAM.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H C:\WINDOWS\system32\config\default.gu.LOG
2013-12-30 14:41 - 2013-12-30 14:41 - 06709248 _____ C:\WINDOWS\system32\config\~gsyst02.tmp
2013-12-30 14:41 - 2013-12-30 14:41 - 00925696 _____ C:\WINDOWS\system32\config\~gdefa03.tmp
2013-12-30 14:41 - 2013-12-30 14:41 - 00028672 _____ C:\WINDOWS\system32\config\~gSAM04.tmp
2013-12-30 14:41 - 2013-12-24 03:06 - 00022304 _____ (Glarysoft Ltd) C:\WINDOWS\system32\RegBootDefrag.exe
2013-12-30 14:40 - 2013-12-30 14:41 - 46399488 _____ C:\WINDOWS\system32\config\~gsoft01.tmp
2013-12-30 14:40 - 2013-12-30 14:40 - 00061440 _____ C:\WINDOWS\system32\config\~gSECU00.tmp
2013-12-30 14:30 - 2013-12-30 14:30 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\GlarySoft
2013-12-30 14:23 - 2014-01-09 08:40 - 00000316 _____ C:\WINDOWS\Tasks\GlaryInitialize 4.job
2013-12-30 14:23 - 2013-12-30 14:23 - 00000693 _____ D:\Documents and Settings\All users\Nabídka Start\Programy\Glary Utilities 4.lnk
2013-12-30 14:23 - 2013-12-30 14:23 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Glary Utilities 4
2013-12-30 14:23 - 2013-12-24 03:06 - 00101664 _____ (Glarysoft Ltd) C:\WINDOWS\system32\BootDefrag.exe
2013-12-30 14:22 - 2014-01-09 04:26 - 00000000 ____D C:\Program Files\Glary Utilities 4
2013-12-30 09:36 - 2014-01-09 11:09 - 00018174 _____ D:\Documents and Settings\spravce\Plocha\Pokladna D-MASO 2014.ods
2013-12-27 11:01 - 2014-01-09 08:39 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\AVAST Software
2013-12-20 15:59 - 2013-12-20 15:59 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\ImgBurn
2013-12-20 15:52 - 2013-12-20 15:52 - 00000000 ____D C:\Program Files\WebexpEnhancedV1
2013-12-20 15:49 - 2014-01-08 14:55 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\newnext.me
2013-12-20 15:49 - 2013-12-20 15:50 - 00000000 ____D D:\Documents and Settings\spravce\.android
2013-12-20 15:49 - 2013-12-20 15:49 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\genienext
2013-12-20 15:49 - 2013-12-20 15:49 - 00000000 _____ D:\Documents and Settings\spravce\daemonprocess.txt
2013-12-20 15:47 - 2013-12-20 15:47 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\ImgBurn
2013-12-20 15:47 - 2013-12-20 15:47 - 00000000 ____D C:\Program Files\ImgBurn
2013-12-20 15:46 - 2013-12-20 16:24 - 00002561 _____ C:\WINDOWS\diagwrn.xml
2013-12-20 15:46 - 2013-12-20 16:24 - 00001908 _____ C:\WINDOWS\diagerr.xml
2013-12-20 13:03 - 2013-12-20 16:26 - 00001080 _____ D:\Documents and Settings\spravce\Local Settings\Data aplikací\SRDownloader.nast
2013-12-20 05:22 - 2014-01-09 08:47 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-12-16 20:07 - 2013-12-30 13:56 - 00000000 ____D C:\Program Files\TweakNow RegCleaner
2013-12-16 20:07 - 2013-12-19 03:01 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\TweakNow RegCleaner
2013-12-16 19:21 - 2008-12-12 10:40 - 00147456 _____ C:\WINDOWS\system32\igfxCoIn_v5016.dll
2013-12-16 19:21 - 2008-12-12 10:34 - 01481884 _____ C:\WINDOWS\system32\igkrng400.bin
2013-12-16 19:20 - 2013-12-16 19:20 - 00000000 ____D C:\Intel
2013-12-16 19:17 - 2013-12-16 19:17 - 00000000 ____D C:\Program Files\SystemRequirementsLab
2013-12-16 19:16 - 2013-12-16 19:16 - 00000000 ____D D:\Documents and Settings\spravce\SystemRequirementsLab
2013-12-16 18:38 - 2013-12-16 18:38 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\Quadriga Games
2013-12-16 18:16 - 2013-12-16 18:16 - 00000000 ____D D:\Documents and Settings\All Users\Dokumenty\DAEMON Tools Images
2013-12-16 18:11 - 2013-12-16 18:58 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard
2013-12-16 18:11 - 2013-12-16 18:11 - 00000000 ____D C:\Program Files\NVIDIA Corporation

==================== One Month Modified Files and Folders =======

2014-01-09 11:14 - 2014-01-09 11:14 - 00015142 _____ D:\Documents and Settings\spravce\Plocha\FRST.txt
2014-01-09 11:14 - 2012-03-05 06:24 - 00001024 ____H D:\Documents and Settings\Guest\ntuser.dat.LOG
2014-01-09 11:14 - 2012-03-04 15:54 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\PMB Files
2014-01-09 11:14 - 2008-08-12 11:02 - 00057344 ____H D:\Documents and Settings\spravce\ntuser.dat.LOG
2014-01-09 11:14 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce\Plocha
2014-01-09 11:14 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Temp
2014-01-09 11:14 - 2008-08-12 11:01 - 00001024 ____H D:\Documents and Settings\Default user\ntuser.dat.LOG
2014-01-09 11:14 - 2008-08-12 11:01 - 00001024 ____H D:\Documents and Settings\All users\NTUSER.DAT.LOG
2014-01-09 11:13 - 2008-08-12 11:02 - 00000000 ___HD D:\Documents and Settings\spravce\Local Settings\Data aplikací
2014-01-09 11:09 - 2013-12-30 09:36 - 00018174 _____ D:\Documents and Settings\spravce\Plocha\Pokladna D-MASO 2014.ods
2014-01-09 11:08 - 2014-01-09 10:47 - 00000000 __RHD D:\Documents and Settings\spravce\Recent
2014-01-09 11:04 - 2014-01-08 18:06 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\VIR
2014-01-09 11:03 - 2010-05-22 13:06 - 00000470 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{E2B8A939-637A-41FB-8333-59D3A7D30102}.job
2014-01-09 10:48 - 2008-08-12 11:02 - 00000000 __SHD D:\Documents and Settings\spravce\Local Settings\Temporary Internet Files
2014-01-09 10:47 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce
2014-01-09 10:45 - 2008-08-12 11:02 - 00000000 __SHD D:\Documents and Settings\spravce\Cookies
2014-01-09 10:19 - 2008-07-10 14:03 - 00000230 ____N C:\WINDOWS\wiadebug.log
2014-01-09 09:17 - 2010-05-23 07:50 - 00000000 ____D D:\Documents and Settings\All users\Plocha\Programy
2014-01-09 09:14 - 2014-01-09 09:14 - 00000000 ____D C:\WINDOWS\pss
2014-01-09 09:13 - 2012-05-30 01:41 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-01-09 09:13 - 2010-06-23 11:39 - 00000290 _____ C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-83760419-1899083256-532270227-1003.job
2014-01-09 09:13 - 2010-06-23 11:39 - 00000282 _____ C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-83760419-1899083256-532270227-1003.job
2014-01-09 09:03 - 2008-12-19 21:47 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\Real
2014-01-09 09:03 - 2008-12-19 21:47 - 00000000 ____D C:\Program Files\Real
2014-01-09 09:03 - 2008-08-12 11:01 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy
2014-01-09 08:47 - 2014-01-09 08:47 - 00000672 _____ D:\Documents and Settings\All users\Plocha\Mozilla Firefox.lnk
2014-01-09 08:47 - 2014-01-09 08:47 - 00000672 _____ D:\Documents and Settings\All users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-01-09 08:47 - 2014-01-09 08:47 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2014-01-09 08:47 - 2013-12-20 05:22 - 00000000 ____D C:\Program Files\Mozilla Firefox
2014-01-09 08:47 - 2008-08-12 11:01 - 00000000 ____D D:\Documents and Settings\All users\Plocha
2014-01-09 08:41 - 2008-07-10 12:24 - 01831747 ____N C:\WINDOWS\WindowsUpdate.log
2014-01-09 08:40 - 2013-12-30 14:23 - 00000316 _____ C:\WINDOWS\Tasks\GlaryInitialize 4.job
2014-01-09 08:40 - 2007-10-29 13:00 - 00012598 _____ C:\WINDOWS\system32\wpa.dbl
2014-01-09 08:39 - 2013-12-27 11:01 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\AVAST Software
2014-01-09 08:39 - 2008-08-12 11:02 - 00000062 ___SH D:\Documents and Settings\spravce\Local Settings\desktop.ini
2014-01-09 08:39 - 2008-08-12 11:02 - 00000000 ___HD D:\Documents and Settings\spravce\Šablony
2014-01-09 08:39 - 2008-08-12 11:02 - 00000000 ___HD D:\Documents and Settings\spravce\Data aplikací
2014-01-09 08:39 - 2008-07-10 14:03 - 00000048 ____N C:\WINDOWS\wiaservc.log
2014-01-09 08:39 - 2008-07-10 12:28 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2014-01-09 08:38 - 2008-08-12 11:02 - 09437184 _____ D:\Documents and Settings\spravce\NTUSER.DAT
2014-01-09 08:38 - 2008-08-12 11:01 - 00000000 ___RD D:\Documents and Settings\All users\Dokumenty
2014-01-09 08:38 - 2008-07-10 12:28 - 00032520 ____N C:\WINDOWS\SchedLgU.Txt
2014-01-09 08:37 - 2008-08-12 11:01 - 00000000 ____D D:\Documents and Settings\All Users\Dokumenty\Filmy
2014-01-09 08:36 - 2011-11-08 13:25 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\ŘEZNICTVÍ
2014-01-09 08:35 - 2012-03-29 06:06 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\D-MASO
2014-01-09 06:05 - 2011-10-31 17:55 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\Facebook
2014-01-09 04:42 - 2008-08-12 11:02 - 00000178 ___SH D:\Documents and Settings\spravce\ntuser.ini
2014-01-09 04:38 - 2010-09-19 10:53 - 00000000 ____D C:\Program Files\DsNET Corp
2014-01-09 04:37 - 2013-11-04 11:08 - 00000000 ____D C:\Program Files\Citrix
2014-01-09 04:35 - 2013-11-04 11:09 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\Citrix
2014-01-09 04:30 - 2009-04-21 04:09 - 00000000 ____D D:\Documents and Settings\spravce\Tracing
2014-01-09 04:30 - 2009-01-11 08:46 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\DAEMON Tools Lite
2014-01-09 04:30 - 2009-01-05 18:27 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\Skype
2014-01-09 04:28 - 2014-01-09 04:28 - 00000642 _____ D:\Documents and Settings\All users\Plocha\CCleaner.lnk
2014-01-09 04:28 - 2014-01-09 04:28 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\CCleaner
2014-01-09 04:28 - 2014-01-09 04:28 - 00000000 ____D C:\Program Files\CCleaner
2014-01-09 04:28 - 2012-03-05 06:24 - 01048576 ____H D:\Documents and Settings\Guest\NTUSER.DAT
2014-01-09 04:26 - 2013-12-30 14:22 - 00000000 ____D C:\Program Files\Glary Utilities 4
2014-01-09 04:09 - 2014-01-09 03:38 - 01065947 _____ (Farbar) D:\Documents and Settings\spravce\Plocha\FRST.exe
2014-01-09 04:07 - 2014-01-09 04:04 - 00112640 _____ (forum.viry.cz) D:\Documents and Settings\spravce\Plocha\FRSTLauncher.exe
2014-01-09 03:39 - 2014-01-09 03:39 - 00000000 ____D C:\FRST
2014-01-08 18:41 - 2014-01-08 18:41 - 00135168 _____ C:\zip.exe
2014-01-08 18:41 - 2014-01-08 18:41 - 00019286 _____ C:\cleanup.exe
2014-01-08 18:41 - 2014-01-08 18:41 - 00000886 _____ C:\avenger.txt
2014-01-08 18:41 - 2014-01-08 18:41 - 00000574 _____ C:\cleanup.bat
2014-01-08 18:15 - 2010-12-25 20:41 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\ICQ
2014-01-08 18:15 - 2008-08-12 11:01 - 00000000 ___HD D:\Documents and Settings\All users\Data aplikací
2014-01-08 18:03 - 2014-01-08 18:03 - 00000000 ____D C:\WINDOWS\ERUNT
2014-01-08 16:12 - 2014-01-08 16:12 - 00000000 ____D C:\rsit
2014-01-08 16:12 - 2014-01-08 16:12 - 00000000 ____D C:\Program Files\trend micro
2014-01-08 14:55 - 2013-12-20 15:49 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\newnext.me
2014-01-07 09:50 - 2008-08-30 04:23 - 00067072 _____ D:\Documents and Settings\spravce\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-01-07 09:41 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\Microsoft
2014-01-07 09:41 - 2008-08-12 11:01 - 00000000 ___SD D:\Documents and Settings\All users\Data aplikací\Microsoft
2014-01-07 09:35 - 2008-07-10 13:54 - 00000000 ____D C:\WINDOWS\Help
2014-01-07 09:17 - 2008-08-12 11:01 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Po spuštění
2013-12-30 14:55 - 2013-12-30 14:55 - 00000000 ____D D:\Documents and Settings\All users\GlarySoft
2013-12-30 14:55 - 2008-08-12 11:01 - 00000000 ____D D:\Documents and Settings\All users
2013-12-30 14:42 - 2013-12-30 14:42 - 46399488 _____ C:\WINDOWS\system32\config\software.gu
2013-12-30 14:42 - 2013-12-30 14:42 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00001024 ____H C:\WINDOWS\system32\config\system.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H D:\Documents and Settings\spravce\NTUSER.DAT.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H C:\WINDOWS\system32\config\SAM.gu.LOG
2013-12-30 14:42 - 2013-12-30 14:42 - 00000000 ____H C:\WINDOWS\system32\config\default.gu.LOG
2013-12-30 14:42 - 2008-07-10 13:59 - 06815744 _____ C:\WINDOWS\system32\config\system.gu.bak
2013-12-30 14:42 - 2008-07-10 13:59 - 00262144 _____ C:\WINDOWS\system32\config\SECURITY.gu.bak
2013-12-30 14:41 - 2013-12-30 14:41 - 06709248 _____ C:\WINDOWS\system32\config\~gsyst02.tmp
2013-12-30 14:41 - 2013-12-30 14:41 - 00925696 _____ C:\WINDOWS\system32\config\~gdefa03.tmp
2013-12-30 14:41 - 2013-12-30 14:41 - 00028672 _____ C:\WINDOWS\system32\config\~gSAM04.tmp
2013-12-30 14:41 - 2013-12-30 14:40 - 46399488 _____ C:\WINDOWS\system32\config\~gsoft01.tmp
2013-12-30 14:41 - 2008-08-12 11:02 - 09437184 ____H D:\Documents and Settings\spravce\NTUSER.DAT.gu.bak
2013-12-30 14:41 - 2008-07-10 13:59 - 01048576 _____ C:\WINDOWS\system32\config\default.gu.bak
2013-12-30 14:41 - 2008-07-10 13:59 - 00262144 _____ C:\WINDOWS\system32\config\SAM.gu.bak
2013-12-30 14:40 - 2013-12-30 14:40 - 00061440 _____ C:\WINDOWS\system32\config\~gSECU00.tmp
2013-12-30 14:35 - 2013-11-24 11:52 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\HRY
2013-12-30 14:35 - 2013-02-11 12:56 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Dokumentace BOZP a PO
2013-12-30 14:35 - 2010-05-23 09:19 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\STORMWARE Office
2013-12-30 14:35 - 2008-10-12 14:46 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Counter-Strike 1.6 Patch Version 26
2013-12-30 14:30 - 2013-12-30 14:30 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\GlarySoft
2013-12-30 14:29 - 2009-01-11 08:55 - 00000000 ____D C:\Program Files\IrfanView
2013-12-30 14:29 - 2008-08-12 11:02 - 00000000 ____D D:\Documents and Settings\spravce\Nabídka Start\Programy
2013-12-30 14:23 - 2013-12-30 14:23 - 00000693 _____ D:\Documents and Settings\All users\Nabídka Start\Programy\Glary Utilities 4.lnk
2013-12-30 14:23 - 2013-12-30 14:23 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\Glary Utilities 4
2013-12-30 14:23 - 2010-05-25 09:20 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\GlarySoft
2013-12-30 14:16 - 2013-11-24 11:49 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\Seznam.cz
2013-12-30 14:13 - 2008-07-14 12:40 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-12-30 14:05 - 2010-05-26 10:37 - 00000000 ____D C:\Program Files\LG Electronics
2013-12-30 14:03 - 2012-07-26 22:08 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\Kastner software
2013-12-30 14:00 - 2010-05-26 10:39 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\LG Electronics
2013-12-30 13:56 - 2013-12-16 20:07 - 00000000 ____D C:\Program Files\TweakNow RegCleaner
2013-12-30 13:56 - 2013-11-04 11:08 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\Citrix
2013-12-30 13:56 - 2010-05-23 09:18 - 00000000 ____D C:\Program Files\Common Files\STORMWARE Shared
2013-12-30 13:54 - 2009-04-20 17:04 - 00000000 ____D C:\Program Files\Windows Live
2013-12-30 13:05 - 2008-07-10 14:00 - 00007232 ____C C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-27 11:02 - 2008-08-18 16:20 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2013-12-27 08:57 - 2010-05-31 09:44 - 00000000 ____D D:\Documents and Settings\All users\Data aplikací\CanonIJPLM
2013-12-24 03:06 - 2013-12-30 14:41 - 00022304 _____ (Glarysoft Ltd) C:\WINDOWS\system32\RegBootDefrag.exe
2013-12-24 03:06 - 2013-12-30 14:23 - 00101664 _____ (Glarysoft Ltd) C:\WINDOWS\system32\BootDefrag.exe
2013-12-20 16:26 - 2013-12-20 13:03 - 00001080 _____ D:\Documents and Settings\spravce\Local Settings\Data aplikací\SRDownloader.nast
2013-12-20 16:24 - 2013-12-20 15:46 - 00002561 _____ C:\WINDOWS\diagwrn.xml
2013-12-20 16:24 - 2013-12-20 15:46 - 00001908 _____ C:\WINDOWS\diagerr.xml
2013-12-20 15:59 - 2013-12-20 15:59 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\ImgBurn
2013-12-20 15:52 - 2013-12-20 15:52 - 00000000 ____D C:\Program Files\WebexpEnhancedV1
2013-12-20 15:50 - 2013-12-20 15:49 - 00000000 ____D D:\Documents and Settings\spravce\.android
2013-12-20 15:49 - 2013-12-20 15:49 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\genienext
2013-12-20 15:49 - 2013-12-20 15:49 - 00000000 _____ D:\Documents and Settings\spravce\daemonprocess.txt
2013-12-20 15:49 - 2010-06-05 22:22 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\cache
2013-12-20 15:47 - 2013-12-20 15:47 - 00000000 ____D D:\Documents and Settings\All users\Nabídka Start\Programy\ImgBurn
2013-12-20 15:47 - 2013-12-20 15:47 - 00000000 ____D C:\Program Files\ImgBurn
2013-12-20 15:45 - 2008-08-18 15:00 - 00000000 ___HD D:\Documents and Settings\spravce\Okolní síť
2013-12-20 10:25 - 2012-08-28 13:49 - 00000000 ____D D:\Documents and Settings\spravce\Plocha\DLUŽNÍCI
2013-12-19 03:01 - 2013-12-16 20:07 - 00000000 ____D D:\Documents and Settings\spravce\Data aplikací\TweakNow RegCleaner
2013-12-18 01:19 - 2008-09-10 06:50 - 00000000 ____D C:\KBcertifikat
2013-12-17 10:45 - 2010-05-23 08:15 - 00000000 ____D D:\Documents and Settings\All Users\Dokumenty\My Games
2013-12-16 20:34 - 2008-07-10 14:09 - 00000000 ____D C:\install
2013-12-16 19:44 - 2008-10-26 11:59 - 00000000 ____D C:\WINDOWS\Minidump
2013-12-16 19:21 - 2008-07-10 12:57 - 00000000 ____D C:\WINDOWS\system32\ReinstallBackups
2013-12-16 19:20 - 2013-12-16 19:20 - 00000000 ____D C:\Intel
2013-12-16 19:17 - 2013-12-16 19:17 - 00000000 ____D C:\Program Files\SystemRequirementsLab
2013-12-16 19:16 - 2013-12-16 19:16 - 00000000 ____D D:\Documents and Settings\spravce\SystemRequirementsLab
2013-12-16 19:07 - 2008-07-10 12:24 - 00000000 ____D C:\WINDOWS\system32\DirectX
2013-12-16 18:58 - 2013-12-16 18:11 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard
2013-12-16 18:38 - 2013-12-16 18:38 - 00000000 ____D D:\Documents and Settings\spravce\Local Settings\Data aplikací\Quadriga Games
2013-12-16 18:16 - 2013-12-16 18:16 - 00000000 ____D D:\Documents and Settings\All Users\Dokumenty\DAEMON Tools Images
2013-12-16 18:11 - 2013-12-16 18:11 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-12-16 14:21 - 2012-05-30 01:41 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-12-16 14:21 - 2011-05-14 10:09 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-12-12 08:53 - 2008-07-10 13:59 - 00165912 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-12-12 07:45 - 2013-07-25 11:00 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-12-12 07:45 - 2010-05-22 13:24 - 00000000 ____D C:\WINDOWS\ie8updates
2013-12-12 07:45 - 2008-07-12 02:03 - 00641108 ____C C:\WINDOWS\system32\TZLog.log
2013-12-12 07:35 - 2008-07-14 11:22 - 88123800 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

Some content of TEMP:
====================
D:\Documents and Settings\spravce\Local Settings\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe
[2007-10-29 13:00] - [2008-04-14 04:22] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1

C:\Windows\System32\winlogon.exe
[2007-10-29 13:00] - [2008-04-14 04:22] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea

C:\Windows\System32\svchost.exe
[2007-10-29 13:00] - [2008-04-14 04:22] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93

C:\Windows\System32\services.exe
[2007-10-29 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7

C:\Windows\System32\User32.dll
[2007-10-29 13:00] - [2008-04-14 04:22] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53

C:\Windows\System32\userinit.exe
[2007-10-29 13:00] - [2008-04-14 04:22] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239

C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys
[2007-10-29 13:00] - [2008-04-14 03:12] - 0052480 ___AC (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1





===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (SYSTEM) (Fixed) (Total:24.42 GB) (Free:5.59 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (DATA) (Fixed) (Total:200.61 GB) (Free:14.63 GB) NTFS

Available physical RAM: 1450.1 MB
Total physical RAM: 2039.23 MB
Percentage of memory in use: 28%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 233 GB) (Disk ID: A49F8711)
Partition 1: (Not Active) - (Size=39 MB) - (Type=16)
Partition 2: (Active) - (Size=24 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=201 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=8 GB) - (Type=1C)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GlaryInitialize 4.job => C:\Program Files\Glary Utilities 4\Initialize.exe
Task: C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-83760419-1899083256-532270227-1003.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-83760419-1899083256-532270227-1003.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\User_Feed_Synchronization-{E2B8A939-637A-41FB-8333-59D3A7D30102}.job => C:\WINDOWS\system32\msfeedssync.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: D:\Documents and Settings\All users\Data aplikací\TEMP:ADA2A0D2

==================== Security Center ==================




===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "D:\Documents and Settings\spravce\Plocha" je 6054 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ7.2\\ICQ.exe"="C:\\Program Files\\ICQ7.2\\ICQ.exe:*:Enabled:ICQ7.2"
"C:\\Program Files\\ICQ7.2\\aolload.exe"="C:\\Program Files\\ICQ7.2\\aolload.exe:*:Enabled:aolload.exe"
"C:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"="C:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe:*:Enabled:Pando Media Booster"


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ6\\ICQ.exe"="C:\\Program Files\\ICQ6\\ICQ.exe:*:Enabled:ICQ6"
"C:\\Program Files\\Fair Strike\\FS.EXE"="C:\\Program Files\\Fair Strike\\FS.EXE:*:Enabled:FS"
"C:\\WINDOWS\\network diagnostic\\xpnetdiag.exe"="C:\\WINDOWS\\network diagnostic\\xpnetdiag.exe:*:Enabled:Network Diagnostic for Windows XP"
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"="C:\\Program Files\\Mozilla Firefox\\firefox.exe:*:Enabled:Firefox"
"C:\\Program Files\\Mozilla Thunderbird\\thunderbird.exe"="C:\\Program Files\\Mozilla Thunderbird\\thunderbird.exe:*:Enabled:Mozilla Thunderbird"
"C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"="C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"="C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"="C:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
"C:\\Program Files\\Nokia\\Nokia Ovi Suite\\NokiaOviSuite.exe"="C:\\Program Files\\Nokia\\Nokia Ovi Suite\\NokiaOviSuite.exe:*:Enabled:Nokia Ovi Suite 2"
"C:\\Program Files\\ICQ7.2\\ICQ.exe"="C:\\Program Files\\ICQ7.2\\ICQ.exe:*:Enabled:ICQ7.2"
"C:\\Program Files\\ICQ7.2\\aolload.exe"="C:\\Program Files\\ICQ7.2\\aolload.exe:*:Enabled:aolload.exe"
"C:\\Program Files\\Mozilla Firefox\\plugin-container.exe"="C:\\Program Files\\Mozilla Firefox\\plugin-container.exe:*:Enabled:Plugin Container for Firefox"
"C:\\WINDOWS\\system32\\msiexec.exe"="C:\\WINDOWS\\system32\\msiexec.exe:*:Enabled:UpdateManagerSetup"
"D:\\Databox\\Server\\nxServer.exe"="D:\\Databox\\Server\\nxServer.exe:*:Enabled:nxServer"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\WS_FTP\\ws_ftp95.exe"="C:\\Program Files\\WS_FTP\\ws_ftp95.exe:*:Enabled:WS_FTP 95"
"C:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"="C:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe:*:Enabled:Pando Media Booster"
"D:\\Emergency 4\\Em4.exe"="D:\\Emergency 4\\Em4.exe:*:Enabled:Em4"
"D:\\Hry\\Traktor 2\\game.exe"="D:\\Hry\\Traktor 2\\game.exe:*:Enabled:GIANTS Game Engine"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP"="139:TCP:*:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:*:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:*:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:*:Enabled:@xpsp2res.dll,-22002"
"57689:TCP"="57689:TCP:*:Enabled:Pando Media Booster"
"57689:UDP"="57689:UDP:*:Enabled:Pando Media Booster"
"58209:TCP"="58209:TCP:*:Enabled:Pando Media Booster"
"58209:UDP"="58209:UDP:*:Enabled:Pando Media Booster"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008"
"139:TCP"="139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002"
"5985:TCP"="5985:TCP:*:Enabled:Vzdlen sprva systmu Windows "
"80:TCP"="80:TCP:*:Enabled:Vzdlen sprva systmu Windows - reim kompatibility (HTTP-In) "
"5910:TCP"="5910:TCP:*:Enabled:vnc5910"
"3389:TCP"="3389:TCP:*:Enabled:@xpsp2res.dll,-22009"


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(7.34 KiB) Staženo 52 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakování reklamních banerů

#12 Příspěvek od vyosek »

Asi jste se moc nezabyval cteni pravidel for, proc taky, vsak se to jen jmenuje Pravidla a skutečnosti - čtěte před položením dotazu
6. Fórum viry.cz se nezabývá odvirováním firemních PC - na toto jsou ve firmách placení (a někdy až hodně nadstandardně) IT technici, případně si je firma může najmout. My jsme tu zdarma a ve svém volném čase, nehodláme dělat práci za někoho jiného, kdo si pak jen slízne smetánku a plat. Taktéž ani neposkytujeme poradenství v oblasti zabezpečení firemních sítí či nastavení firemních sítí. Zkrátka a jednoduše, naše fórum poskytuje podporu pouze domácím uživatelům.
Nejen ze si muzete dat naklady za IT technika do nakladu podnikani, kdyz na toto nestacite, ale my predevsim tez neresie firemni PC, kdyby naaahodou doslo ke ztrate\uniku firemnich dat atd...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kuba7710
Návštěvník
Návštěvník
Příspěvky: 102
Registrován: 13 dub 2007 18:08

Re: Vyskakování reklamních banerů

#13 Příspěvek od kuba7710 »

Děkuji aspoň za tuto pomoc, PC jsem měl koupen jako balíček od O2. Ještě jednou děkuji

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakování reklamních banerů

#14 Příspěvek od vyosek »

No neni zac. Osobni rada - doporucuju si na servis PC najmou technika - pokud bude umet, vyplati se vam to - zadate praci a nestarate se, jen at dela...on aspon pod smlouvou ruci, ze nevynese data, neztrati se nic...a musi delat...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

kuba7710
Návštěvník
Návštěvník
Příspěvky: 102
Registrován: 13 dub 2007 18:08

Re: Vyskakování reklamních banerů

#15 Příspěvek od kuba7710 »

Mě nejde ani tak o vynešení dat já tu nemám nic důležitého. Mě Vás doporučil kamarád a propůjčil mě svůj účet. Ti technici to stejně potom řeší i přez vás. Tak děkuji a přeji příjemný den.

Zamčeno