
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
zpomalený PC
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
zpomalený PC
Dobrý večer , prosím o kontrolu logu, zpomalil se mi počítač.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-12-2014 01
Ran by Uživatel (administrator) on U-D7B7CA0AF35B4 on 03-12-2014 20:02:16
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Motive Communications, Inc.) C:\Program Files\Common Files\Motive\McciCMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvraidservice.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(Gainward Co.) C:\WINDOWS\TBPanel.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskBar.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Memeo) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Apple Inc.) C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMouseTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gKbdTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
(TODO: <Company name>) C:\Genius\ioCentre\gZoom.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMGlass.exe
(TODO: <Company name>) C:\Genius\ioCentre\gIMMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gDeskMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskSwitch.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(ICQ, LLC.) C:\Program Files\ICQ7.5\ICQ.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\daemon.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
() C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
() C:\Program Files\MSI\DualCoreCenter\DualCoreCenter.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(forum.viry.cz) C:\Documents and Settings\Uživatel\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NVRaidService] => C:\WINDOWS\system32\nvraidservice.exe [184864 2007-08-17] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16858624 2007-11-30] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [JMB36X IDE Setup] => C:\WINDOWS\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM\...\Run: [36X Raid Configurer] => C:\WINDOWS\system32\xRaidSetup.exe [1957888 2007-05-25] (JMicron Technology Corp.)
HKLM\...\Run: [Gainward] => C:\WINDOWS\TBPanel.exe [2189864 2008-01-09] (Gainward Co.)
HKLM\...\Run: [ioCentre] => C:\Genius\ioCentre\gTaskBar.exe [241664 2006-12-08] (TODO: <Company name>)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [1443072 2008-03-13] (ESET)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2593056 2014-03-09] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {56f20948-f138-11dc-8eb0-e1e817431fe5} - F:\setupSNK.exe
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {ff269b44-1c1a-11e0-915e-001d9236f20e} - "G:\WD SmartWare.exe" autoplay=true
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DualCoreCenter.lnk
ShortcutTarget: DualCoreCenter.lnk -> C:\Program Files\MSI\DualCoreCenter\StartUpDualCoreCenter.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\InterVideo WinCinema Manager.lnk
ShortcutTarget: InterVideo WinCinema Manager.lnk -> C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187 Wireless LAN Utility.lnk
ShortcutTarget: REALTEK RTL8187 Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
Startup: C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění\PowerReg Scheduler.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... }&ch_id=sm
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
URLSearchHook: HKU\S-1-5-21-789336058-1417001333-725345543-1004 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DefaultScope {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL = http://www.crawler.com/search/dispatche ... tbid=60515
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
BHO: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> No Name - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default
FF DefaultSearchEngine: ICQ Search
FF DefaultSearchUrl: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.2.9&q=
FF SelectedSearchEngine: ICQ Search
FF Homepage: hxxp://www.seznam.cz/
FF Keyword.URL: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q=
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin: @real.com/nppl3260;version=6.0.11.2571 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1739 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF user.js: detected! => C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-1.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-10.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-11.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-12.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-13.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-14.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-15.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-16.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-17.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-18.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-19.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-2.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-20.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-21.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-22.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-23.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-24.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-25.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-26.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-27.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-28.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-29.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-3.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-30.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-4.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-5.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-6.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-7.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-8.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-9.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.gif
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.src
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.xml
FF Extension: DAEMON Tools Toolbar - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\Extensions\DTToolbar@toolbarnet.com [2012-12-06]
FF Extension: ICQ Toolbar - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\Extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2012-07-27]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-18]
CHR Extension: (Disk Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-18]
CHR Extension: (YouTube) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-18]
CHR Extension: (McAfee Security Scan+) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh [2014-04-18]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-18]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-18]
CHR Extension: (Gmail) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-18]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-08-13] (SUPERAntiSpyware.com)
S3 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [19200 2008-03-13] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [472320 2008-03-13] (ESET)
R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG)
R2 McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [303104 2007-10-15] (Motive Communications, Inc.) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2009-07-27] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [110592 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2011-04-15] (Meetinghouse Data Communications) [File not signed]
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 CoachAud; C:\WINDOWS\System32\DRIVERS\CoachAud.sys [10368 2004-11-24] (FotoNation Inc.)
S3 CoachUsb; C:\WINDOWS\System32\DRIVERS\CoachUsb.sys [50976 2004-11-24] (FotoNation Inc.)
S3 CoachVc; C:\WINDOWS\System32\DRIVERS\CoachVc.sys [44256 2004-11-24] (FotoNation Inc.)
R3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [28160 2007-12-18] (MICRO-STAR INT'L CO., LTD.) [File not signed]
R2 eamon; C:\WINDOWS\System32\DRIVERS\eamon.sys [40456 2008-03-13] (ESET)
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2007-10-09] (Realtek) [File not signed]
R1 easdrv; C:\WINDOWS\System32\DRIVERS\easdrv.sys [29704 2008-03-13] (ESET)
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [20400 1999-10-21] (EnTech Taiwan) [File not signed]
R1 epfwtdir; C:\WINDOWS\System32\DRIVERS\epfwtdir.sys [33800 2008-03-13] ()
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 gHidPnp; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [14848 2006-07-14] ()
S3 gMouPS2; C:\WINDOWS\System32\DRIVERS\gMouPS2.sys [17408 2006-07-12] ( Mouse Upfilter Driver )
S3 gMouUsb; C:\WINDOWS\System32\DRIVERS\gMouUsb.sys [9984 2006-07-14] ()
R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG)
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG)
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG)
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG)
R3 IntcAzAudAddService; C:\WINDOWS\System32\drivers\RtkHDAud.sys [4632576 2007-12-05] (Realtek Semiconductor Corp.) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI) [File not signed]
R0 JRAID; C:\WINDOWS\System32\DRIVERS\jraid.sys [48768 2007-07-05] (JMicron Technology Corp.) [File not signed]
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54144 2007-10-12] (NVIDIA Corporation) [File not signed]
R0 nvgts; C:\WINDOWS\System32\drivers\nvgts.sys [102400 2007-08-09] (NVIDIA Corporation) [File not signed]
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2007-10-12] (NVIDIA Corporation) [File not signed]
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [6912 2006-10-13] (NVidia Corp.) [File not signed]
R0 nvrd32; C:\WINDOWS\System32\drivers\nvrd32.sys [124928 2007-08-09] (NVIDIA Corporation) [File not signed]
R1 PQNTDrv; C:\WINDOWS\system32\Drivers\PQNTDrv.sys [3252 2001-08-10] () [File not signed]
R3 RTLWUSB; C:\WINDOWS\System32\DRIVERS\RTL8187.sys [332928 2008-06-27] (Realtek Semiconductor Corporation )
R3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [52736 2007-12-24] (Your Corporation) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [473656 2012-03-15] (Duplex Secure Ltd.)
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [12256 2007-03-16] (Windows (R) 2000 DDK provider)
U3 af83exb0; C:\WINDOWS\system32\Drivers\af83exb0.sys [0 ] (JMicron Technology Corp.) [File not signed]
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-03 20:02 - 2014-12-03 20:02 - 00026421 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:01 - 2014-12-03 20:02 - 00000000 ____D () C:\FRST
2014-12-03 19:55 - 2014-12-03 19:55 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Uživatel\Plocha\FRSTLauncher.exe
2014-12-03 19:54 - 2014-12-03 19:55 - 01108992 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2014-11-10 18:45 - 2014-11-10 18:45 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-03 20:02 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha
2014-12-03 20:02 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Temp
2014-12-03 20:01 - 2008-03-13 00:04 - 00000000 ___HD () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2014-12-03 20:00 - 2014-01-21 20:22 - 00004706 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-12-03 19:57 - 2008-03-13 00:46 - 00000558 _____ () C:\WINDOWS\DFC.INI
2014-12-03 19:52 - 2008-03-14 00:24 - 00000069 _____ () C:\WINDOWS\NeroDigital.ini
2014-12-03 19:52 - 2008-03-13 23:35 - 00233472 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-03 19:08 - 2013-04-17 20:21 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-12-03 19:05 - 2014-04-18 20:12 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-03 19:03 - 2012-10-21 16:50 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-03 18:19 - 2008-03-12 23:59 - 02050358 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-03 18:18 - 2012-10-21 16:50 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-03 18:18 - 2011-05-09 18:48 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\ICQ
2014-12-03 18:18 - 2011-04-15 19:04 - 00014951 _____ () C:\WINDOWS\RTacDbg.txt
2014-12-03 18:18 - 2008-03-13 00:53 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-12-03 18:18 - 2008-03-13 00:53 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-12-03 18:18 - 2008-03-13 00:02 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-12-03 18:18 - 2006-03-02 13:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-12-02 22:02 - 2008-03-13 00:04 - 00000178 ___SH () C:\Documents and Settings\Uživatel\ntuser.ini
2014-12-02 22:02 - 2008-03-13 00:02 - 00032626 _____ () C:\WINDOWS\SchedLgU.Txt
2014-12-02 21:22 - 2014-04-21 09:00 - 00083104 _____ () C:\WINDOWS\setupapi.log
2014-12-01 19:52 - 2011-05-10 18:30 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\boost_interprocess
2014-11-26 22:04 - 2014-04-18 20:13 - 00001820 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-11-25 20:08 - 2013-04-17 20:21 - 00701104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-11-25 20:08 - 2013-04-17 20:21 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-11-11 17:06 - 2012-05-05 11:59 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-09 15:53 - 2012-10-21 14:54 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Stellarium
Some content of TEMP:
====================
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC10B6.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1369.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1581.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC15F8.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC161F.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC171E.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1738.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1A17.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1B9C.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC249E.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2600.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2AFC.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2FF.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC300.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC341.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC544.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC5D0.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC73D.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC85A.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC89B.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPCD95.tmp.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (WINDOWS) (Fixed) (Total:467.51 GB) (Free:243.95 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive f: (DATA) (Fixed) (Total:465.75 GB) (Free:21.63 GB) NTFS
Drive g: (WD SmartWare) (CDROM) (Total:0.43 GB) (Free:0 GB) UDF
Drive h: (My Book) (Fixed) (Total:930.86 GB) (Free:608.32 GB) NTFS
Available physical RAM: 2166.09 MB
Total physical RAM: 3071.08 MB
Percentage of memory in use: 29%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 465.8 GB) (Disk ID: 2EF92EF8)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=OF Extended)
Disk: 1 (Size: 467.5 GB) (Disk ID: 326D326C)
Partition 1: (Active) - (Size=467.5 GB) - (Type=07 NTFS)
Disk: 2 (MBR Code: Windows XP) (Size: 930.9 GB) (Disk ID: 0002AE3F)
Partition 1: (Not Active) - (Size=930.9 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:61435A52
==================== Security Center ==================
AV: ESET NOD32 Antivirus 3.0 (Disabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Uivatel\Plocha" je 7564 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Sierra\\FEAR\\FEAR.exe"="C:\\Program Files\\Sierra\\FEAR\\FEAR.exe:*:Enabled:FEAR"
"C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\\WINDOWS\\system32\\PnkBstrA.exe"="C:\\WINDOWS\\system32\\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\\WINDOWS\\system32\\PnkBstrB.exe"="C:\\WINDOWS\\system32\\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe:*:Enabled:Far Cry 2"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe:*:Enabled:Far Cry 2 Updater"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe:*:Enabled:Editor"
"C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"="C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM)"
"C:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe"="C:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe:*:Enabled:Nero ProductSetup"
"C:\\Documents and Settings\\Uivatel\\Plocha\\Company of Heroes\\BugReport\\BugReport.exe"="C:\\Documents and Settings\\Uivatel\\Plocha\\Company of Heroes\\BugReport\\BugReport.exe:*:Enabled:BugReport"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"
"F:\\call\\Delta Force Extrema 2.exe"="F:\\call\\Delta Force Extrema 2.exe:*:Enabled:Delta Force Extrema 2"
"F:\\Valve\\hl.exe"="F:\\Valve\\hl.exe:*:Enabled:Half-Life Launcher"
"F:\\Valve\\hltv.exe"="F:\\Valve\\hltv.exe:*:Enabled:HLTV Launcher"
"F:\\Full Spectrum Warrior\\Launcher.locked"="F:\\Full Spectrum Warrior\\Launcher.locked:*:Enabled:Launcher"
"F:\\BitComet\\BitComet.exe"="F:\\BitComet\\BitComet.exe:*:Enabled:BitComet.exe"
"C:\\Program Files\\Steam\\Steam.exe"="C:\\Program Files\\Steam\\Steam.exe:*:Enabled:Steam"
"C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MP.exe"="C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MP.exe:*:Enabled:Wolfenstein(TM)"
"C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MPLite.exe"="C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MPLite.exe:*:Enabled:Wolfenstein(TM)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\NVIDIA Corporation\\NetService\\NvNetworkService.exe"="C:\\Program Files\\NVIDIA Corporation\\NetService\\NvNetworkService.exe:*:Enabled:NVIDIA Network Service TCP Exception (HTTPS)"
"C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"="C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe:*:Enabled:Google Chrome"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
"139:TCP"="139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002"
"22091:TCP"="22091:TCP:*:Enabled:BitComet 22091 TCP"
"22091:UDP"="22091:UDP:*:Enabled:BitComet 22091 UDP"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-12-2014 01
Ran by Uživatel (administrator) on U-D7B7CA0AF35B4 on 03-12-2014 20:02:16
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Motive Communications, Inc.) C:\Program Files\Common Files\Motive\McciCMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvraidservice.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(Gainward Co.) C:\WINDOWS\TBPanel.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskBar.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Memeo) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Apple Inc.) C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMouseTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gKbdTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
(TODO: <Company name>) C:\Genius\ioCentre\gZoom.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMGlass.exe
(TODO: <Company name>) C:\Genius\ioCentre\gIMMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gDeskMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskSwitch.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(ICQ, LLC.) C:\Program Files\ICQ7.5\ICQ.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\daemon.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
() C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
() C:\Program Files\MSI\DualCoreCenter\DualCoreCenter.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(forum.viry.cz) C:\Documents and Settings\Uživatel\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NVRaidService] => C:\WINDOWS\system32\nvraidservice.exe [184864 2007-08-17] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16858624 2007-11-30] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [JMB36X IDE Setup] => C:\WINDOWS\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM\...\Run: [36X Raid Configurer] => C:\WINDOWS\system32\xRaidSetup.exe [1957888 2007-05-25] (JMicron Technology Corp.)
HKLM\...\Run: [Gainward] => C:\WINDOWS\TBPanel.exe [2189864 2008-01-09] (Gainward Co.)
HKLM\...\Run: [ioCentre] => C:\Genius\ioCentre\gTaskBar.exe [241664 2006-12-08] (TODO: <Company name>)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [1443072 2008-03-13] (ESET)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2593056 2014-03-09] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {56f20948-f138-11dc-8eb0-e1e817431fe5} - F:\setupSNK.exe
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {ff269b44-1c1a-11e0-915e-001d9236f20e} - "G:\WD SmartWare.exe" autoplay=true
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DualCoreCenter.lnk
ShortcutTarget: DualCoreCenter.lnk -> C:\Program Files\MSI\DualCoreCenter\StartUpDualCoreCenter.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\InterVideo WinCinema Manager.lnk
ShortcutTarget: InterVideo WinCinema Manager.lnk -> C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187 Wireless LAN Utility.lnk
ShortcutTarget: REALTEK RTL8187 Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
Startup: C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění\PowerReg Scheduler.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... }&ch_id=sm
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
URLSearchHook: HKU\S-1-5-21-789336058-1417001333-725345543-1004 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DefaultScope {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL = http://www.crawler.com/search/dispatche ... tbid=60515
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
BHO: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> No Name - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default
FF DefaultSearchEngine: ICQ Search
FF DefaultSearchUrl: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.2.9&q=
FF SelectedSearchEngine: ICQ Search
FF Homepage: hxxp://www.seznam.cz/
FF Keyword.URL: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q=
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin: @real.com/nppl3260;version=6.0.11.2571 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1739 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF user.js: detected! => C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-1.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-10.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-11.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-12.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-13.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-14.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-15.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-16.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-17.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-18.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-19.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-2.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-20.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-21.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-22.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-23.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-24.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-25.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-26.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-27.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-28.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-29.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-3.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-30.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-4.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-5.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-6.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-7.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-8.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-9.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.gif
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.src
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.xml
FF Extension: DAEMON Tools Toolbar - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\Extensions\DTToolbar@toolbarnet.com [2012-12-06]
FF Extension: ICQ Toolbar - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\Extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2012-07-27]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-18]
CHR Extension: (Disk Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-18]
CHR Extension: (YouTube) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-18]
CHR Extension: (McAfee Security Scan+) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh [2014-04-18]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-18]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-18]
CHR Extension: (Gmail) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-18]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-08-13] (SUPERAntiSpyware.com)
S3 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [19200 2008-03-13] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [472320 2008-03-13] (ESET)
R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG)
R2 McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [303104 2007-10-15] (Motive Communications, Inc.) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2009-07-27] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [110592 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2011-04-15] (Meetinghouse Data Communications) [File not signed]
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 CoachAud; C:\WINDOWS\System32\DRIVERS\CoachAud.sys [10368 2004-11-24] (FotoNation Inc.)
S3 CoachUsb; C:\WINDOWS\System32\DRIVERS\CoachUsb.sys [50976 2004-11-24] (FotoNation Inc.)
S3 CoachVc; C:\WINDOWS\System32\DRIVERS\CoachVc.sys [44256 2004-11-24] (FotoNation Inc.)
R3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [28160 2007-12-18] (MICRO-STAR INT'L CO., LTD.) [File not signed]
R2 eamon; C:\WINDOWS\System32\DRIVERS\eamon.sys [40456 2008-03-13] (ESET)
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2007-10-09] (Realtek) [File not signed]
R1 easdrv; C:\WINDOWS\System32\DRIVERS\easdrv.sys [29704 2008-03-13] (ESET)
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [20400 1999-10-21] (EnTech Taiwan) [File not signed]
R1 epfwtdir; C:\WINDOWS\System32\DRIVERS\epfwtdir.sys [33800 2008-03-13] ()
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 gHidPnp; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [14848 2006-07-14] ()
S3 gMouPS2; C:\WINDOWS\System32\DRIVERS\gMouPS2.sys [17408 2006-07-12] ( Mouse Upfilter Driver )
S3 gMouUsb; C:\WINDOWS\System32\DRIVERS\gMouUsb.sys [9984 2006-07-14] ()
R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG)
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG)
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG)
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG)
R3 IntcAzAudAddService; C:\WINDOWS\System32\drivers\RtkHDAud.sys [4632576 2007-12-05] (Realtek Semiconductor Corp.) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI) [File not signed]
R0 JRAID; C:\WINDOWS\System32\DRIVERS\jraid.sys [48768 2007-07-05] (JMicron Technology Corp.) [File not signed]
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54144 2007-10-12] (NVIDIA Corporation) [File not signed]
R0 nvgts; C:\WINDOWS\System32\drivers\nvgts.sys [102400 2007-08-09] (NVIDIA Corporation) [File not signed]
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2007-10-12] (NVIDIA Corporation) [File not signed]
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [6912 2006-10-13] (NVidia Corp.) [File not signed]
R0 nvrd32; C:\WINDOWS\System32\drivers\nvrd32.sys [124928 2007-08-09] (NVIDIA Corporation) [File not signed]
R1 PQNTDrv; C:\WINDOWS\system32\Drivers\PQNTDrv.sys [3252 2001-08-10] () [File not signed]
R3 RTLWUSB; C:\WINDOWS\System32\DRIVERS\RTL8187.sys [332928 2008-06-27] (Realtek Semiconductor Corporation )
R3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [52736 2007-12-24] (Your Corporation) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [473656 2012-03-15] (Duplex Secure Ltd.)
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [12256 2007-03-16] (Windows (R) 2000 DDK provider)
U3 af83exb0; C:\WINDOWS\system32\Drivers\af83exb0.sys [0 ] (JMicron Technology Corp.) [File not signed]
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-03 20:02 - 2014-12-03 20:02 - 00026421 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:01 - 2014-12-03 20:02 - 00000000 ____D () C:\FRST
2014-12-03 19:55 - 2014-12-03 19:55 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Uživatel\Plocha\FRSTLauncher.exe
2014-12-03 19:54 - 2014-12-03 19:55 - 01108992 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2014-11-10 18:45 - 2014-11-10 18:45 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-03 20:02 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha
2014-12-03 20:02 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Temp
2014-12-03 20:01 - 2008-03-13 00:04 - 00000000 ___HD () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2014-12-03 20:00 - 2014-01-21 20:22 - 00004706 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-12-03 19:57 - 2008-03-13 00:46 - 00000558 _____ () C:\WINDOWS\DFC.INI
2014-12-03 19:52 - 2008-03-14 00:24 - 00000069 _____ () C:\WINDOWS\NeroDigital.ini
2014-12-03 19:52 - 2008-03-13 23:35 - 00233472 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-03 19:08 - 2013-04-17 20:21 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-12-03 19:05 - 2014-04-18 20:12 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-03 19:03 - 2012-10-21 16:50 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-03 18:19 - 2008-03-12 23:59 - 02050358 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-03 18:18 - 2012-10-21 16:50 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-03 18:18 - 2011-05-09 18:48 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\ICQ
2014-12-03 18:18 - 2011-04-15 19:04 - 00014951 _____ () C:\WINDOWS\RTacDbg.txt
2014-12-03 18:18 - 2008-03-13 00:53 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-12-03 18:18 - 2008-03-13 00:53 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-12-03 18:18 - 2008-03-13 00:02 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-12-03 18:18 - 2006-03-02 13:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-12-02 22:02 - 2008-03-13 00:04 - 00000178 ___SH () C:\Documents and Settings\Uživatel\ntuser.ini
2014-12-02 22:02 - 2008-03-13 00:02 - 00032626 _____ () C:\WINDOWS\SchedLgU.Txt
2014-12-02 21:22 - 2014-04-21 09:00 - 00083104 _____ () C:\WINDOWS\setupapi.log
2014-12-01 19:52 - 2011-05-10 18:30 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\boost_interprocess
2014-11-26 22:04 - 2014-04-18 20:13 - 00001820 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-11-25 20:08 - 2013-04-17 20:21 - 00701104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-11-25 20:08 - 2013-04-17 20:21 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-11-11 17:06 - 2012-05-05 11:59 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-09 15:53 - 2012-10-21 14:54 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Stellarium
Some content of TEMP:
====================
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC10B6.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1369.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1581.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC15F8.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC161F.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC171E.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1738.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1A17.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1B9C.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC249E.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2600.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2AFC.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2FF.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC300.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC341.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC544.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC5D0.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC73D.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC85A.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC89B.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPCD95.tmp.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (WINDOWS) (Fixed) (Total:467.51 GB) (Free:243.95 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive f: (DATA) (Fixed) (Total:465.75 GB) (Free:21.63 GB) NTFS
Drive g: (WD SmartWare) (CDROM) (Total:0.43 GB) (Free:0 GB) UDF
Drive h: (My Book) (Fixed) (Total:930.86 GB) (Free:608.32 GB) NTFS
Available physical RAM: 2166.09 MB
Total physical RAM: 3071.08 MB
Percentage of memory in use: 29%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 465.8 GB) (Disk ID: 2EF92EF8)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=OF Extended)
Disk: 1 (Size: 467.5 GB) (Disk ID: 326D326C)
Partition 1: (Active) - (Size=467.5 GB) - (Type=07 NTFS)
Disk: 2 (MBR Code: Windows XP) (Size: 930.9 GB) (Disk ID: 0002AE3F)
Partition 1: (Not Active) - (Size=930.9 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:61435A52
==================== Security Center ==================
AV: ESET NOD32 Antivirus 3.0 (Disabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Uivatel\Plocha" je 7564 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Sierra\\FEAR\\FEAR.exe"="C:\\Program Files\\Sierra\\FEAR\\FEAR.exe:*:Enabled:FEAR"
"C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\\WINDOWS\\system32\\PnkBstrA.exe"="C:\\WINDOWS\\system32\\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\\WINDOWS\\system32\\PnkBstrB.exe"="C:\\WINDOWS\\system32\\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe:*:Enabled:Far Cry 2"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe:*:Enabled:Far Cry 2 Updater"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe:*:Enabled:Editor"
"C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"="C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM)"
"C:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe"="C:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe:*:Enabled:Nero ProductSetup"
"C:\\Documents and Settings\\Uivatel\\Plocha\\Company of Heroes\\BugReport\\BugReport.exe"="C:\\Documents and Settings\\Uivatel\\Plocha\\Company of Heroes\\BugReport\\BugReport.exe:*:Enabled:BugReport"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"
"F:\\call\\Delta Force Extrema 2.exe"="F:\\call\\Delta Force Extrema 2.exe:*:Enabled:Delta Force Extrema 2"
"F:\\Valve\\hl.exe"="F:\\Valve\\hl.exe:*:Enabled:Half-Life Launcher"
"F:\\Valve\\hltv.exe"="F:\\Valve\\hltv.exe:*:Enabled:HLTV Launcher"
"F:\\Full Spectrum Warrior\\Launcher.locked"="F:\\Full Spectrum Warrior\\Launcher.locked:*:Enabled:Launcher"
"F:\\BitComet\\BitComet.exe"="F:\\BitComet\\BitComet.exe:*:Enabled:BitComet.exe"
"C:\\Program Files\\Steam\\Steam.exe"="C:\\Program Files\\Steam\\Steam.exe:*:Enabled:Steam"
"C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MP.exe"="C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MP.exe:*:Enabled:Wolfenstein(TM)"
"C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MPLite.exe"="C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MPLite.exe:*:Enabled:Wolfenstein(TM)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\NVIDIA Corporation\\NetService\\NvNetworkService.exe"="C:\\Program Files\\NVIDIA Corporation\\NetService\\NvNetworkService.exe:*:Enabled:NVIDIA Network Service TCP Exception (HTTPS)"
"C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"="C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe:*:Enabled:Google Chrome"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
"139:TCP"="139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002"
"22091:TCP"="22091:TCP:*:Enabled:BitComet 22091 TCP"
"22091:UDP"="22091:UDP:*:Enabled:BitComet 22091 UDP"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (7.55 KiB) Staženo 28 x
Re: zpomalený PC
Zdravim
Pred pripadnym pokracovanim a pomoci, vas musim pozadat o odstraneni NELEGALNIHO Esetu. Tento muj "pozadavek" vychazi z platnych pravidel fora http://forum.viry.cz/viewtopic.php?f=12&t=115512, ktere jste vy i ja povinnen dodrzovat
Takze pokud chcete pomoci, tak jej odinstalujte, nainstalujte free reseni (napr. Avast Free http://www.avast.com/get/gWR5mo92 ), napiste a budeme pokracovat


Pomáhat NELZE:
2) Pokud stroj uživatele obsahuje nelegální hostitelský čí ochranný software
(operační systém, antivir, firewall, atd.), je nutné navést uživatele k nápravě, např. skrze neplacený software,
a začít řešit, až v době kdy je PC "v pořádku". V případě že uživatel nechce na pravidla přistoupit,
je nutné jej vyzvat ať fórum opustí, a vrátí se až je splní.

Re: zpomalený PC
nod 32 jsem odinstaloval
Re: zpomalený PC



- Ulozte nejlepe na Plochu
- Spustte tradicne dvouklikem a postupujte dle pokynu utility
- Po dokonceni skenu se vytvori a otevre log, ten mi sem vlozte
Re: zpomalený PC
nainstaloval jsem free antivir, zde je log
Results of screen317's Security Check version 0.99.91
Windows XP Service Pack 3 x86
Internet Explorer 6 Out of date!
``````````````Antivirus/Firewall Check:``````````````
Avast Free Antivirus
`````````Anti-malware/Other Utilities Check:`````````
SUPERAntiSpyware
CCleaner
Adobe Flash Player 9 Flash Player out of Date!
Adobe Flash Player 15.0.0.239
Adobe Reader 6 Adobe Reader out of Date!
Mozilla Firefox (33.1)
Google Chrome (39.0.2171.65)
Google Chrome (39.0.2171.71)
````````Process Check: objlist.exe by Laurent````````
AVAST Software Avast AvastSvc.exe
AVAST Software Avast avastUi.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C::
````````````````````End of Log``````````````````````
Results of screen317's Security Check version 0.99.91
Windows XP Service Pack 3 x86
Internet Explorer 6 Out of date!
``````````````Antivirus/Firewall Check:``````````````
Avast Free Antivirus
`````````Anti-malware/Other Utilities Check:`````````
SUPERAntiSpyware
CCleaner
Adobe Flash Player 9 Flash Player out of Date!
Adobe Flash Player 15.0.0.239
Adobe Reader 6 Adobe Reader out of Date!
Mozilla Firefox (33.1)
Google Chrome (39.0.2171.65)
Google Chrome (39.0.2171.71)
````````Process Check: objlist.exe by Laurent````````
AVAST Software Avast AvastSvc.exe
AVAST Software Avast avastUi.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C::
````````````````````End of Log``````````````````````
Re: zpomalený PC

Internet Explorer 6 Out of date!
Adobe Flash Player 9 Flash Player out of Date!
Adobe Reader 6 Adobe Reader out of Date!


- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Po spusteni probehne stazeni databaze
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; resethosts; emptyclsid; IEdefaults; FFdefaults; CHRdefaults; emptyIEcache; emptyFFcache; emptyCHRcache; emptyalltemp; emptyflash; emptyjava; emptyrecycle.bin;
- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: zpomalený PC
zde je log adwcleaner, a log zoek
# AdwCleaner v4.103 - Report created 04/12/2014 at 21:09:46
# Updated 01/12/2014 by Xplode
# Database : 2014-12-03.1 [Live]
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Uživatel - U-D7B7CA0AF35B4
# Running from : C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar
Folder Deleted : C:\Program Files\DAEMON Tools Toolbar
Folder Deleted : C:\Program Files\ICQ6Toolbar
[!] Folder Deleted : C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.gif
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.src
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-2.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-23.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-24.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-25.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-3.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-26.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-27.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-28.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-29.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-30.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-9.xml
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\daemon tools toolbar
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.6001.18702
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
-\\ Mozilla Firefox v33.1 (x86 cs)
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.defSearchChange", true);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.engineVerified", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.firstTbRun", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.geolastmodified", 1417546384);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.history", "cannafestPraha%203%2C%20%C5%99%C3%ADpsk%C3%A1%202237%20dn%C3%AD%20od%20atentatu%20k%20valceleak%20livelike%20leek5%20semensevastopolsituace%20na%20ukraji[...]
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.hpChange", true);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installTime", "1343407260");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installsource", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_most_visited_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.previousFFVersion", "33.1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.suggestions", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.uniqueID", "130485104813048512881304963879927");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1417631380);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.version", "1.5.3");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherHideClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherRedeemClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherWasShown", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
-\\ Google Chrome v39.0.2171.71
[C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : bopakagnckmlgajfccecajhnimjiiedh
*************************
AdwCleaner[R0].txt - [10307 octets] - [04/12/2014 20:57:58]
AdwCleaner[S0].txt - [10567 octets] - [04/12/2014 21:09:46]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [10628 octets] ##########
Zoek.exe v5.0.0.0 Updated 03-December-2014
Tool run by U§ivatel on źt 04.12.2014 at 21:46:49,32.
Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\UIVATE~1\Plocha\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
4.12.2014 21:49:31 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\Program Files\AGEIA Technologies deleted successfully
C:\Program Files\Black_Box deleted successfully
C:\Program Files\FireFly Studios deleted successfully
C:\DOCUME~1\ALLUSE~1\NABDKA~1\Programy\FireFly Studios deleted successfully
C:\DOCUME~1\ALLUSE~1\NABDKA~1\Programy\TopCD deleted successfully
C:\DOCUME~1\UIVATE~1\NABDKA~1\Programy\BS.Player deleted successfully
C:\DOCUME~1\UIVATE~1\NABDKA~1\Programy\F.E.A.R. 2 deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\boost_interprocess deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\NVIDIA deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\nView_Profiles deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Program Files\GUM18.tmp deleted
C:\Program Files\ComPlus Applications deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~1\ICQ deleted
C:\WINDOWS\002560_.tmp deleted
C:\WINDOWS\SET21.tmp deleted
C:\WINDOWS\SET3.tmp deleted
C:\WINDOWS\SET4.tmp deleted
C:\WINDOWS\SET8.tmp deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [03.12.2014 22:04]
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[03.12.2014 22:04]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"ICQ Search"="http://www.google.com"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="https://www.seznam.cz/?clid=22668"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"ICQ Search"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{15C4DF55-4B67-495A-A3D3-A497C4A49EE0} Seznam Url="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
==== Reset Google Chrome ======================
Nothing found to reset
==== Empty IE Cache ======================
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Uživatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Uživatel\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\UIVATE~2\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
No Chrome User Data found
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=15 folders=5 2901708 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\UIVATE~1\LOCALS~1\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\RECYCLER successfully emptied
==== Deleting Files / Folders ======================
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
==== EOF on źt 04.12.2014 at 22:09:08,32 ======================
# AdwCleaner v4.103 - Report created 04/12/2014 at 21:09:46
# Updated 01/12/2014 by Xplode
# Database : 2014-12-03.1 [Live]
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Uživatel - U-D7B7CA0AF35B4
# Running from : C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar
Folder Deleted : C:\Program Files\DAEMON Tools Toolbar
Folder Deleted : C:\Program Files\ICQ6Toolbar
[!] Folder Deleted : C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.gif
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.src
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-2.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-23.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-24.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-25.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-3.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-26.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-27.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-28.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-29.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-30.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-9.xml
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\daemon tools toolbar
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.6001.18702
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
-\\ Mozilla Firefox v33.1 (x86 cs)
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.defSearchChange", true);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.engineVerified", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.firstTbRun", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.geolastmodified", 1417546384);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.history", "cannafestPraha%203%2C%20%C5%99%C3%ADpsk%C3%A1%202237%20dn%C3%AD%20od%20atentatu%20k%20valceleak%20livelike%20leek5%20semensevastopolsituace%20na%20ukraji[...]
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.hpChange", true);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installTime", "1343407260");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installsource", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_most_visited_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.previousFFVersion", "33.1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.suggestions", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.uniqueID", "130485104813048512881304963879927");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1417631380);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.version", "1.5.3");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherHideClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherRedeemClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherWasShown", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
-\\ Google Chrome v39.0.2171.71
[C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : bopakagnckmlgajfccecajhnimjiiedh
*************************
AdwCleaner[R0].txt - [10307 octets] - [04/12/2014 20:57:58]
AdwCleaner[S0].txt - [10567 octets] - [04/12/2014 21:09:46]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [10628 octets] ##########
Zoek.exe v5.0.0.0 Updated 03-December-2014
Tool run by U§ivatel on źt 04.12.2014 at 21:46:49,32.
Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\UIVATE~1\Plocha\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
4.12.2014 21:49:31 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\Program Files\AGEIA Technologies deleted successfully
C:\Program Files\Black_Box deleted successfully
C:\Program Files\FireFly Studios deleted successfully
C:\DOCUME~1\ALLUSE~1\NABDKA~1\Programy\FireFly Studios deleted successfully
C:\DOCUME~1\ALLUSE~1\NABDKA~1\Programy\TopCD deleted successfully
C:\DOCUME~1\UIVATE~1\NABDKA~1\Programy\BS.Player deleted successfully
C:\DOCUME~1\UIVATE~1\NABDKA~1\Programy\F.E.A.R. 2 deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\boost_interprocess deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\NVIDIA deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\nView_Profiles deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Program Files\GUM18.tmp deleted
C:\Program Files\ComPlus Applications deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~1\ICQ deleted
C:\WINDOWS\002560_.tmp deleted
C:\WINDOWS\SET21.tmp deleted
C:\WINDOWS\SET3.tmp deleted
C:\WINDOWS\SET4.tmp deleted
C:\WINDOWS\SET8.tmp deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [03.12.2014 22:04]
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[03.12.2014 22:04]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"ICQ Search"="http://www.google.com"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="https://www.seznam.cz/?clid=22668"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"ICQ Search"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{15C4DF55-4B67-495A-A3D3-A497C4A49EE0} Seznam Url="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
==== Reset Google Chrome ======================
Nothing found to reset
==== Empty IE Cache ======================
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Uživatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Uživatel\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\UIVATE~2\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
No Chrome User Data found
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=15 folders=5 2901708 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\UIVATE~1\LOCALS~1\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\RECYCLER successfully emptied
==== Deleting Files / Folders ======================
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
==== EOF on źt 04.12.2014 at 22:09:08,32 ======================
Re: zpomalený PC
Poprosim o novy log z FRST
Re: zpomalený PC
zde je novy log z frst
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-12-2014
Ran by Uživatel (administrator) on U-D7B7CA0AF35B4 on 05-12-2014 17:47:28
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Motive Communications, Inc.) C:\Program Files\Common Files\Motive\McciCMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvraidservice.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(Gainward Co.) C:\WINDOWS\TBPanel.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskBar.exe
(Apple Inc.) C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
(Memeo) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMouseTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gKbdTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
(TODO: <Company name>) C:\Genius\ioCentre\gZoom.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMGlass.exe
(TODO: <Company name>) C:\Genius\ioCentre\gIMMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gDeskMgm.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskSwitch.exe
(ICQ, LLC.) C:\Program Files\ICQ7.5\ICQ.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\daemon.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
() C:\Program Files\FileHippo.com\FileHippo.AppManager.exe
() C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
() C:\Program Files\MSI\DualCoreCenter\DualCoreCenter.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NVRaidService] => C:\WINDOWS\system32\nvraidservice.exe [184864 2007-08-17] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16858624 2007-11-30] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [JMB36X IDE Setup] => C:\WINDOWS\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM\...\Run: [36X Raid Configurer] => C:\WINDOWS\system32\xRaidSetup.exe [1957888 2007-05-25] (JMicron Technology Corp.)
HKLM\...\Run: [Gainward] => C:\WINDOWS\TBPanel.exe [2189864 2008-01-09] (Gainward Co.)
HKLM\...\Run: [ioCentre] => C:\Genius\ioCentre\gTaskBar.exe [241664 2006-12-08] (TODO: <Company name>)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2593056 2014-03-09] ()
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-12-03] (AVAST Software)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DualCoreCenter.lnk
ShortcutTarget: DualCoreCenter.lnk -> C:\Program Files\MSI\DualCoreCenter\StartUpDualCoreCenter.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\InterVideo WinCinema Manager.lnk
ShortcutTarget: InterVideo WinCinema Manager.lnk -> C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187 Wireless LAN Utility.lnk
ShortcutTarget: REALTEK RTL8187 Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
Startup: C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění\PowerReg Scheduler.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default
FF DefaultSearchEngine: Seznam
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF SelectedSearchEngine: Seznam
FF Homepage: https://www.seznam.cz/?clid=22668
FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_233.dll ()
FF Plugin: @real.com/nppl3260;version=6.0.11.2571 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1739 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\seznam-avast.xml
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-03]
FF Extension: No Name - wrc@avast.com [Not Found]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-18]
CHR Extension: (Disk Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-18]
CHR Extension: (YouTube) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-18]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-18]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-18]
CHR Extension: (Gmail) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-18]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-03]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-08-13] (SUPERAntiSpyware.com)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-03] (AVAST Software)
R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG)
R2 McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [303104 2007-10-15] (Motive Communications, Inc.) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2009-07-27] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [110592 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2011-04-15] (Meetinghouse Data Communications) [File not signed]
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-12-03] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-12-03] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55240 2014-12-03] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-12-03] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-12-03] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-12-03] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57928 2014-12-03] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-12-03] ()
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 CoachAud; C:\WINDOWS\System32\DRIVERS\CoachAud.sys [10368 2004-11-24] (FotoNation Inc.)
S3 CoachUsb; C:\WINDOWS\System32\DRIVERS\CoachUsb.sys [50976 2004-11-24] (FotoNation Inc.)
S3 CoachVc; C:\WINDOWS\System32\DRIVERS\CoachVc.sys [44256 2004-11-24] (FotoNation Inc.)
R3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [28160 2007-12-18] (MICRO-STAR INT'L CO., LTD.) [File not signed]
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2007-10-09] (Realtek) [File not signed]
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [20400 1999-10-21] (EnTech Taiwan) [File not signed]
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 gHidPnp; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [14848 2006-07-14] ()
S3 gMouPS2; C:\WINDOWS\System32\DRIVERS\gMouPS2.sys [17408 2006-07-12] ( Mouse Upfilter Driver )
S3 gMouUsb; C:\WINDOWS\System32\DRIVERS\gMouUsb.sys [9984 2006-07-14] () [File not signed]
R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG)
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG)
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG)
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG)
R3 IntcAzAudAddService; C:\WINDOWS\System32\drivers\RtkHDAud.sys [4632576 2007-12-05] (Realtek Semiconductor Corp.) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI) [File not signed]
R0 JRAID; C:\WINDOWS\System32\DRIVERS\jraid.sys [48768 2007-07-05] (JMicron Technology Corp.) [File not signed]
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54144 2007-10-12] (NVIDIA Corporation) [File not signed]
R0 nvgts; C:\WINDOWS\System32\drivers\nvgts.sys [102400 2007-08-09] (NVIDIA Corporation) [File not signed]
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2007-10-12] (NVIDIA Corporation) [File not signed]
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [6912 2006-10-13] (NVidia Corp.) [File not signed]
R0 nvrd32; C:\WINDOWS\System32\drivers\nvrd32.sys [124928 2007-08-09] (NVIDIA Corporation) [File not signed]
R1 PQNTDrv; C:\WINDOWS\system32\Drivers\PQNTDrv.sys [3252 2001-08-10] () [File not signed]
R3 RTLWUSB; C:\WINDOWS\System32\DRIVERS\RTL8187.sys [332928 2008-06-27] (Realtek Semiconductor Corporation )
R3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [52736 2007-12-24] (Your Corporation) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [473656 2012-03-15] (Duplex Secure Ltd.)
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [12256 2007-03-16] (Windows (R) 2000 DDK provider)
U3 aizjjjd1; C:\WINDOWS\system32\Drivers\aizjjjd1.sys [0 ] (JMicron Technology Corp.) [File not signed]
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion
2014-12-04 22:06 - 2014-12-05 17:47 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Temp
2014-12-04 22:06 - 2014-12-04 22:06 - 00000000 ____D () C:\Documents and Settings\U×ivatel\Local Settings\Temp
2014-12-04 22:06 - 2014-12-04 22:06 - 00000000 ____D () C:\Documents and Settings\U×ivatel
2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log
2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup
2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe
2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner
2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
2014-12-04 20:49 - 2014-12-04 21:57 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-12-04 20:49 - 2014-12-04 20:49 - 00701616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-12-04 20:49 - 2014-12-04 20:49 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-12-04 20:31 - 2014-12-04 20:32 - 18132656 _____ (Adobe Systems Incorporated) C:\Documents and Settings\Uživatel\Plocha\flashplayer16_install_win_pi(1).exe
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 __SHD () C:\Documents and Settings\Uživatel\IETldCache
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 __SHD () C:\Documents and Settings\LocalService\IETldCache
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 ____D () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Accessories
2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt
2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00000000 __HDC () C:\WINDOWS\ie8
2014-12-04 17:34 - 2014-12-04 17:35 - 16883056 _____ (Microsoft Corporation) C:\Documents and Settings\Uživatel\Plocha\IE8-WindowsXP-x86-ENU.exe
2014-12-04 17:33 - 2014-12-04 17:33 - 00001804 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader XI.lnk
2014-12-04 17:33 - 2014-12-04 17:33 - 00001741 _____ () C:\Documents and Settings\All Users\Plocha\Adobe Reader XI.lnk
2014-12-04 17:20 - 2014-12-04 17:22 - 00001694 _____ () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\FileHippo App Manager.lnk
2014-12-04 17:20 - 2014-12-04 17:22 - 00001688 _____ () C:\Documents and Settings\Uživatel\Plocha\FileHippo App Manager.lnk
2014-12-04 17:20 - 2014-12-04 17:20 - 00000000 ____D () C:\Program Files\FileHippo.com
2014-12-04 17:20 - 2014-12-04 17:20 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\IsolatedStorage
2014-12-03 22:10 - 2014-12-03 22:10 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Temp
2014-12-03 22:06 - 2014-12-03 22:06 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Dropbox
2014-12-03 22:04 - 2014-12-05 17:13 - 00000368 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-12-03 22:04 - 2014-12-03 22:04 - 00787800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00423784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00323712 _____ (Dropbox, Inc.) C:\Documents and Settings\All Users\Plocha\DropboxInstallerAvast.exe
2014-12-03 22:04 - 2014-12-03 22:04 - 00291352 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-12-03 22:04 - 2014-12-03 22:04 - 00206248 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00070384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00057928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00055240 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-12-03 22:04 - 2014-12-03 22:04 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00001738 _____ () C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\WINDOWS\jumpshot.com
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\AVAST Software
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVAST Software
2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe
2014-12-03 22:00 - 2014-12-03 22:00 - 00000000 ____D () C:\Program Files\AVAST Software
2014-12-03 22:00 - 2014-12-03 22:00 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe
2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar
2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt
2014-12-03 20:01 - 2014-12-05 17:47 - 00000000 ____D () C:\FRST
2014-12-03 19:54 - 2014-12-05 17:43 - 01110016 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2014-11-10 18:45 - 2014-11-10 18:45 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-05 17:47 - 2008-03-13 00:46 - 00000558 _____ () C:\WINDOWS\DFC.INI
2014-12-05 17:47 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha
2014-12-05 17:36 - 2014-01-21 20:22 - 00004920 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-12-05 17:11 - 2014-04-18 20:12 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-05 17:08 - 2008-03-12 23:59 - 02075400 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-05 17:07 - 2012-10-21 16:50 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-05 17:07 - 2011-05-09 18:48 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\ICQ
2014-12-05 17:07 - 2011-04-15 19:04 - 00013983 _____ () C:\WINDOWS\RTacDbg.txt
2014-12-05 17:07 - 2008-03-13 00:53 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-12-05 17:07 - 2008-03-13 00:53 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-12-05 17:07 - 2008-03-13 00:02 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-12-04 22:35 - 2008-03-13 00:04 - 00000178 ___SH () C:\Documents and Settings\Uživatel\ntuser.ini
2014-12-04 22:35 - 2008-03-13 00:02 - 00032416 _____ () C:\WINDOWS\SchedLgU.Txt
2014-12-04 22:06 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel
2014-12-04 22:03 - 2012-10-21 16:50 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-04 22:03 - 2008-03-13 00:52 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2014-12-04 21:51 - 2008-03-13 00:52 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-12-04 21:51 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Nabídka Start\Programy
2014-12-04 19:53 - 2014-10-19 16:19 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Adobe
2014-12-04 19:53 - 2008-04-02 15:07 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Adobe
2014-12-04 17:40 - 2011-04-22 15:28 - 00000810 _____ () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Internet Explorer.lnk
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Oblíbené položky
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty\Obrázky
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty\Hudba
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty
2014-12-04 17:40 - 2008-03-13 00:02 - 00000000 __SHD () C:\Documents and Settings\LocalService
2014-12-04 17:39 - 2008-03-13 00:43 - 00000000 ____D () C:\WINDOWS\Help
2014-12-04 17:37 - 2014-04-21 09:00 - 00084343 _____ () C:\WINDOWS\setupapi.log
2014-12-04 17:37 - 2008-03-13 00:43 - 00000000 ____D () C:\WINDOWS\Media
2014-12-04 17:33 - 2008-03-13 00:52 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Program Files\Adobe
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Adobe
2014-12-03 22:11 - 2011-04-30 12:26 - 00000719 _____ () C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
2014-12-03 22:11 - 2011-04-30 12:26 - 00000719 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-12-03 22:10 - 2008-03-13 00:04 - 00000000 ___HD () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2014-12-03 22:06 - 2008-03-13 00:04 - 00000000 __RHD () C:\Documents and Settings\Uživatel\Data aplikací
2014-12-03 19:52 - 2008-03-14 00:24 - 00000069 _____ () C:\WINDOWS\NeroDigital.ini
2014-12-03 19:52 - 2008-03-13 23:35 - 00233472 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-03 18:18 - 2006-03-02 13:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-11-26 22:04 - 2014-04-18 20:13 - 00001820 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-11-11 17:06 - 2012-05-05 11:59 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-09 15:53 - 2012-10-21 14:54 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Stellarium
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-12-2014
Ran by Uživatel (administrator) on U-D7B7CA0AF35B4 on 05-12-2014 17:47:28
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Motive Communications, Inc.) C:\Program Files\Common Files\Motive\McciCMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvraidservice.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(Gainward Co.) C:\WINDOWS\TBPanel.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskBar.exe
(Apple Inc.) C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
(Memeo) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMouseTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gKbdTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
(TODO: <Company name>) C:\Genius\ioCentre\gZoom.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMGlass.exe
(TODO: <Company name>) C:\Genius\ioCentre\gIMMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gDeskMgm.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskSwitch.exe
(ICQ, LLC.) C:\Program Files\ICQ7.5\ICQ.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\daemon.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
() C:\Program Files\FileHippo.com\FileHippo.AppManager.exe
() C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
() C:\Program Files\MSI\DualCoreCenter\DualCoreCenter.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NVRaidService] => C:\WINDOWS\system32\nvraidservice.exe [184864 2007-08-17] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16858624 2007-11-30] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [JMB36X IDE Setup] => C:\WINDOWS\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM\...\Run: [36X Raid Configurer] => C:\WINDOWS\system32\xRaidSetup.exe [1957888 2007-05-25] (JMicron Technology Corp.)
HKLM\...\Run: [Gainward] => C:\WINDOWS\TBPanel.exe [2189864 2008-01-09] (Gainward Co.)
HKLM\...\Run: [ioCentre] => C:\Genius\ioCentre\gTaskBar.exe [241664 2006-12-08] (TODO: <Company name>)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2593056 2014-03-09] ()
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-12-03] (AVAST Software)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DualCoreCenter.lnk
ShortcutTarget: DualCoreCenter.lnk -> C:\Program Files\MSI\DualCoreCenter\StartUpDualCoreCenter.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\InterVideo WinCinema Manager.lnk
ShortcutTarget: InterVideo WinCinema Manager.lnk -> C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187 Wireless LAN Utility.lnk
ShortcutTarget: REALTEK RTL8187 Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
Startup: C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění\PowerReg Scheduler.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default
FF DefaultSearchEngine: Seznam
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF SelectedSearchEngine: Seznam
FF Homepage: https://www.seznam.cz/?clid=22668
FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_233.dll ()
FF Plugin: @real.com/nppl3260;version=6.0.11.2571 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1739 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\seznam-avast.xml
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-03]
FF Extension: No Name - wrc@avast.com [Not Found]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-18]
CHR Extension: (Disk Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-18]
CHR Extension: (YouTube) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-18]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-18]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-18]
CHR Extension: (Gmail) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-18]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-03]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-08-13] (SUPERAntiSpyware.com)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-03] (AVAST Software)
R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG)
R2 McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [303104 2007-10-15] (Motive Communications, Inc.) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2009-07-27] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [110592 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2011-04-15] (Meetinghouse Data Communications) [File not signed]
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-12-03] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-12-03] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55240 2014-12-03] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-12-03] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-12-03] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-12-03] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57928 2014-12-03] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-12-03] ()
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 CoachAud; C:\WINDOWS\System32\DRIVERS\CoachAud.sys [10368 2004-11-24] (FotoNation Inc.)
S3 CoachUsb; C:\WINDOWS\System32\DRIVERS\CoachUsb.sys [50976 2004-11-24] (FotoNation Inc.)
S3 CoachVc; C:\WINDOWS\System32\DRIVERS\CoachVc.sys [44256 2004-11-24] (FotoNation Inc.)
R3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [28160 2007-12-18] (MICRO-STAR INT'L CO., LTD.) [File not signed]
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2007-10-09] (Realtek) [File not signed]
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [20400 1999-10-21] (EnTech Taiwan) [File not signed]
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 gHidPnp; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [14848 2006-07-14] ()
S3 gMouPS2; C:\WINDOWS\System32\DRIVERS\gMouPS2.sys [17408 2006-07-12] ( Mouse Upfilter Driver )
S3 gMouUsb; C:\WINDOWS\System32\DRIVERS\gMouUsb.sys [9984 2006-07-14] () [File not signed]
R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG)
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG)
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG)
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG)
R3 IntcAzAudAddService; C:\WINDOWS\System32\drivers\RtkHDAud.sys [4632576 2007-12-05] (Realtek Semiconductor Corp.) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI) [File not signed]
R0 JRAID; C:\WINDOWS\System32\DRIVERS\jraid.sys [48768 2007-07-05] (JMicron Technology Corp.) [File not signed]
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54144 2007-10-12] (NVIDIA Corporation) [File not signed]
R0 nvgts; C:\WINDOWS\System32\drivers\nvgts.sys [102400 2007-08-09] (NVIDIA Corporation) [File not signed]
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2007-10-12] (NVIDIA Corporation) [File not signed]
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [6912 2006-10-13] (NVidia Corp.) [File not signed]
R0 nvrd32; C:\WINDOWS\System32\drivers\nvrd32.sys [124928 2007-08-09] (NVIDIA Corporation) [File not signed]
R1 PQNTDrv; C:\WINDOWS\system32\Drivers\PQNTDrv.sys [3252 2001-08-10] () [File not signed]
R3 RTLWUSB; C:\WINDOWS\System32\DRIVERS\RTL8187.sys [332928 2008-06-27] (Realtek Semiconductor Corporation )
R3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [52736 2007-12-24] (Your Corporation) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [473656 2012-03-15] (Duplex Secure Ltd.)
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [12256 2007-03-16] (Windows (R) 2000 DDK provider)
U3 aizjjjd1; C:\WINDOWS\system32\Drivers\aizjjjd1.sys [0 ] (JMicron Technology Corp.) [File not signed]
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion
2014-12-04 22:06 - 2014-12-05 17:47 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Temp
2014-12-04 22:06 - 2014-12-04 22:06 - 00000000 ____D () C:\Documents and Settings\U×ivatel\Local Settings\Temp
2014-12-04 22:06 - 2014-12-04 22:06 - 00000000 ____D () C:\Documents and Settings\U×ivatel
2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log
2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup
2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe
2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner
2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
2014-12-04 20:49 - 2014-12-04 21:57 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-12-04 20:49 - 2014-12-04 20:49 - 00701616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-12-04 20:49 - 2014-12-04 20:49 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-12-04 20:31 - 2014-12-04 20:32 - 18132656 _____ (Adobe Systems Incorporated) C:\Documents and Settings\Uživatel\Plocha\flashplayer16_install_win_pi(1).exe
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 __SHD () C:\Documents and Settings\Uživatel\IETldCache
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 __SHD () C:\Documents and Settings\LocalService\IETldCache
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 ____D () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Accessories
2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt
2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00000000 __HDC () C:\WINDOWS\ie8
2014-12-04 17:34 - 2014-12-04 17:35 - 16883056 _____ (Microsoft Corporation) C:\Documents and Settings\Uživatel\Plocha\IE8-WindowsXP-x86-ENU.exe
2014-12-04 17:33 - 2014-12-04 17:33 - 00001804 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader XI.lnk
2014-12-04 17:33 - 2014-12-04 17:33 - 00001741 _____ () C:\Documents and Settings\All Users\Plocha\Adobe Reader XI.lnk
2014-12-04 17:20 - 2014-12-04 17:22 - 00001694 _____ () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\FileHippo App Manager.lnk
2014-12-04 17:20 - 2014-12-04 17:22 - 00001688 _____ () C:\Documents and Settings\Uživatel\Plocha\FileHippo App Manager.lnk
2014-12-04 17:20 - 2014-12-04 17:20 - 00000000 ____D () C:\Program Files\FileHippo.com
2014-12-04 17:20 - 2014-12-04 17:20 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\IsolatedStorage
2014-12-03 22:10 - 2014-12-03 22:10 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Temp
2014-12-03 22:06 - 2014-12-03 22:06 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Dropbox
2014-12-03 22:04 - 2014-12-05 17:13 - 00000368 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-12-03 22:04 - 2014-12-03 22:04 - 00787800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00423784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00323712 _____ (Dropbox, Inc.) C:\Documents and Settings\All Users\Plocha\DropboxInstallerAvast.exe
2014-12-03 22:04 - 2014-12-03 22:04 - 00291352 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-12-03 22:04 - 2014-12-03 22:04 - 00206248 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00070384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00057928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00055240 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-12-03 22:04 - 2014-12-03 22:04 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00001738 _____ () C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\WINDOWS\jumpshot.com
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\AVAST Software
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVAST Software
2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe
2014-12-03 22:00 - 2014-12-03 22:00 - 00000000 ____D () C:\Program Files\AVAST Software
2014-12-03 22:00 - 2014-12-03 22:00 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe
2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar
2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt
2014-12-03 20:01 - 2014-12-05 17:47 - 00000000 ____D () C:\FRST
2014-12-03 19:54 - 2014-12-05 17:43 - 01110016 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2014-11-10 18:45 - 2014-11-10 18:45 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-05 17:47 - 2008-03-13 00:46 - 00000558 _____ () C:\WINDOWS\DFC.INI
2014-12-05 17:47 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha
2014-12-05 17:36 - 2014-01-21 20:22 - 00004920 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-12-05 17:11 - 2014-04-18 20:12 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-05 17:08 - 2008-03-12 23:59 - 02075400 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-05 17:07 - 2012-10-21 16:50 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-05 17:07 - 2011-05-09 18:48 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\ICQ
2014-12-05 17:07 - 2011-04-15 19:04 - 00013983 _____ () C:\WINDOWS\RTacDbg.txt
2014-12-05 17:07 - 2008-03-13 00:53 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-12-05 17:07 - 2008-03-13 00:53 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-12-05 17:07 - 2008-03-13 00:02 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-12-04 22:35 - 2008-03-13 00:04 - 00000178 ___SH () C:\Documents and Settings\Uživatel\ntuser.ini
2014-12-04 22:35 - 2008-03-13 00:02 - 00032416 _____ () C:\WINDOWS\SchedLgU.Txt
2014-12-04 22:06 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel
2014-12-04 22:03 - 2012-10-21 16:50 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-04 22:03 - 2008-03-13 00:52 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2014-12-04 21:51 - 2008-03-13 00:52 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-12-04 21:51 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Nabídka Start\Programy
2014-12-04 19:53 - 2014-10-19 16:19 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Adobe
2014-12-04 19:53 - 2008-04-02 15:07 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Adobe
2014-12-04 17:40 - 2011-04-22 15:28 - 00000810 _____ () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Internet Explorer.lnk
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Oblíbené položky
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty\Obrázky
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty\Hudba
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty
2014-12-04 17:40 - 2008-03-13 00:02 - 00000000 __SHD () C:\Documents and Settings\LocalService
2014-12-04 17:39 - 2008-03-13 00:43 - 00000000 ____D () C:\WINDOWS\Help
2014-12-04 17:37 - 2014-04-21 09:00 - 00084343 _____ () C:\WINDOWS\setupapi.log
2014-12-04 17:37 - 2008-03-13 00:43 - 00000000 ____D () C:\WINDOWS\Media
2014-12-04 17:33 - 2008-03-13 00:52 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Program Files\Adobe
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Adobe
2014-12-03 22:11 - 2011-04-30 12:26 - 00000719 _____ () C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
2014-12-03 22:11 - 2011-04-30 12:26 - 00000719 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-12-03 22:10 - 2008-03-13 00:04 - 00000000 ___HD () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2014-12-03 22:06 - 2008-03-13 00:04 - 00000000 __RHD () C:\Documents and Settings\Uživatel\Data aplikací
2014-12-03 19:52 - 2008-03-14 00:24 - 00000069 _____ () C:\WINDOWS\NeroDigital.ini
2014-12-03 19:52 - 2008-03-13 23:35 - 00233472 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-03 18:18 - 2006-03-02 13:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-11-26 22:04 - 2014-04-18 20:13 - 00001820 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-11-11 17:06 - 2012-05-05 11:59 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-09 15:53 - 2012-10-21 14:54 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Stellarium
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End Of Log ============================
Re: zpomalený PC

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start CloseProcesses: HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.) HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG) HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG) HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] () HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe FF NetworkProxy: "autoconfig_url", "10.0.0.137" FF NetworkProxy: "type", 2 FF Extension: No Name - wrc@avast.com [Not Found] S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X] S4 IntelIde; No ImagePath S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X] S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X] S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X] S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X] S3 NTACCESS; \??\E:\NTACCESS.sys [X] U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X] U1 WS2IFSL; No ImagePath NETSVC: SearchIndexer C:\WINDOWS\nod32fixtemdono.reg 2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion 2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log 2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup 2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe 2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner 2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe 2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt 2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log 2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log 2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log 2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe 2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe 2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar 2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt 2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Hosts: EmptyTemp: Reboot: End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: zpomalený PC
zde je fixlog
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 03-12-2014
Ran by Uživatel at 2014-12-05 18:38:45 Run:1
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Extension: No Name - wrc@avast.com [Not Found]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
NETSVC: SearchIndexer
C:\WINDOWS\nod32fixtemdono.reg
2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion
2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log
2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup
2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe
2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner
2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt
2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log
2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe
2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe
2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar
2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SecurDisc => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\InCD => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\Power2GoExpress => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\ISUSPM => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\ICQ => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\FileHippo.com => value deleted successfully.
"HKU\S-1-5-21-789336058-1417001333-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\S-1-5-21-789336058-1417001333-725345543-1004" => Key not found.
"HKU\S-1-5-21-789336058-1417001333-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5030ecc0-7a3b-11e4-b759-001aef095abd}" => Key deleted successfully.
"HKCR\CLSID\{5030ecc0-7a3b-11e4-b759-001aef095abd}" => Key not found.
Firefox Proxy settings were reset.
Firefox Proxy settings were reset.
FF Extension: No Name - wrc@avast.com [Not Found] => not found.
NOD32FiXTemDono => Service deleted successfully.
GMSIPCI => Service deleted successfully.
IntelIde => Service deleted successfully.
MREMP50a64 => Service deleted successfully.
MREMPR5 => Service deleted successfully.
MRENDIS5 => Service deleted successfully.
MRESP50a64 => Service deleted successfully.
NTACCESS => Service deleted successfully.
ScsiPort => Service deleted successfully.
SetupNTGLM7X => Service deleted successfully.
WS2IFSL => Service deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs SearchIndexer => Value deleted successfully.
C:\WINDOWS\nod32fixtemdono.reg => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\zoek.exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe => Moved successfully.
C:\WINDOWS\spupdsvc.log => Moved successfully.
Could not move "C:\WINDOWS\system32\config\Internet.evt" => Scheduled to move on reboot.
C:\WINDOWS\updspapi.log => Moved successfully.
C:\WINDOWS\FaxSetup.log => Moved successfully.
C:\WINDOWS\ocgen.log => Moved successfully.
C:\WINDOWS\tsoc.log => Moved successfully.
C:\WINDOWS\comsetup.log => Moved successfully.
C:\WINDOWS\imsins.log => Moved successfully.
C:\WINDOWS\ntdtcsetup.log => Moved successfully.
C:\WINDOWS\iis6.log => Moved successfully.
C:\WINDOWS\ocmsn.log => Moved successfully.
C:\WINDOWS\msgsocm.log => Moved successfully.
C:\WINDOWS\ie8.log => Moved successfully.
C:\WINDOWS\ie8_main.log => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\Addition.rar => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\FRST.txt => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\Addition.txt => Moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 534.6 MB temporary data.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-12-05 18:51:47)<=
"C:\WINDOWS\system32\config\Internet.evt" => File could not move.
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 03-12-2014
Ran by Uživatel at 2014-12-05 18:38:45 Run:1
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Extension: No Name - wrc@avast.com [Not Found]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
NETSVC: SearchIndexer
C:\WINDOWS\nod32fixtemdono.reg
2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion
2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log
2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup
2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe
2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner
2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt
2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log
2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe
2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe
2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar
2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SecurDisc => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\InCD => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\Power2GoExpress => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\ISUSPM => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\ICQ => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\FileHippo.com => value deleted successfully.
"HKU\S-1-5-21-789336058-1417001333-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\S-1-5-21-789336058-1417001333-725345543-1004" => Key not found.
"HKU\S-1-5-21-789336058-1417001333-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5030ecc0-7a3b-11e4-b759-001aef095abd}" => Key deleted successfully.
"HKCR\CLSID\{5030ecc0-7a3b-11e4-b759-001aef095abd}" => Key not found.
Firefox Proxy settings were reset.
Firefox Proxy settings were reset.
FF Extension: No Name - wrc@avast.com [Not Found] => not found.
NOD32FiXTemDono => Service deleted successfully.
GMSIPCI => Service deleted successfully.
IntelIde => Service deleted successfully.
MREMP50a64 => Service deleted successfully.
MREMPR5 => Service deleted successfully.
MRENDIS5 => Service deleted successfully.
MRESP50a64 => Service deleted successfully.
NTACCESS => Service deleted successfully.
ScsiPort => Service deleted successfully.
SetupNTGLM7X => Service deleted successfully.
WS2IFSL => Service deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs SearchIndexer => Value deleted successfully.
C:\WINDOWS\nod32fixtemdono.reg => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\zoek.exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe => Moved successfully.
C:\WINDOWS\spupdsvc.log => Moved successfully.
Could not move "C:\WINDOWS\system32\config\Internet.evt" => Scheduled to move on reboot.
C:\WINDOWS\updspapi.log => Moved successfully.
C:\WINDOWS\FaxSetup.log => Moved successfully.
C:\WINDOWS\ocgen.log => Moved successfully.
C:\WINDOWS\tsoc.log => Moved successfully.
C:\WINDOWS\comsetup.log => Moved successfully.
C:\WINDOWS\imsins.log => Moved successfully.
C:\WINDOWS\ntdtcsetup.log => Moved successfully.
C:\WINDOWS\iis6.log => Moved successfully.
C:\WINDOWS\ocmsn.log => Moved successfully.
C:\WINDOWS\msgsocm.log => Moved successfully.
C:\WINDOWS\ie8.log => Moved successfully.
C:\WINDOWS\ie8_main.log => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\Addition.rar => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\FRST.txt => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\Addition.txt => Moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 534.6 MB temporary data.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-12-05 18:51:47)<=
"C:\WINDOWS\system32\config\Internet.evt" => File could not move.
==== End of Fixlog ====
Re: zpomalený PC
Fajn, jak se chova PC???
Re: zpomalený PC
rychlost se zlepšila , ale při projetí antispyware se našel vir, zde je log
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 12/05/2014 at 08:28 PM
Application Version : 6.0.1158
Database Version : 11643
Scan type : Complete Scan
Total Scan Time : 00:15:12
Operating System Information
Windows XP Home Edition 32-bit, Service Pack 3 (Build 5.01.2600)
Administrator
Memory items scanned : 468
Memory threats detected : 0
Registry items scanned : 34320
Registry threats detected : 0
File items scanned : 17212
File threats detected : 19
Adware.Tracking Cookie
C:\Documents and Settings\Uživatel\Cookies\uživatel@adtech[1].txtC:\Documents and Settings\Uživatel\Cookies\uživatel@adtech[1].txt [ /adtech ]
track.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
bs.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
server.adformdsp.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adformdsp.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
track.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
c1.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
Trojan.Agent/Gen-KillFiles
C:\SYSTEM VOLUME INFORMATION\_RESTORE{FE7473B0-8C59-488B-8806-B9E88E51EC29}\RP315\A0038543.EXE
============
End of Log
============
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 12/05/2014 at 08:28 PM
Application Version : 6.0.1158
Database Version : 11643
Scan type : Complete Scan
Total Scan Time : 00:15:12
Operating System Information
Windows XP Home Edition 32-bit, Service Pack 3 (Build 5.01.2600)
Administrator
Memory items scanned : 468
Memory threats detected : 0
Registry items scanned : 34320
Registry threats detected : 0
File items scanned : 17212
File threats detected : 19
Adware.Tracking Cookie
C:\Documents and Settings\Uživatel\Cookies\uživatel@adtech[1].txtC:\Documents and Settings\Uživatel\Cookies\uživatel@adtech[1].txt [ /adtech ]
track.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
bs.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
server.adformdsp.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adformdsp.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
track.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
c1.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
Trojan.Agent/Gen-KillFiles
C:\SYSTEM VOLUME INFORMATION\_RESTORE{FE7473B0-8C59-488B-8806-B9E88E51EC29}\RP315\A0038543.EXE
============
End of Log
============
Re: zpomalený PC

