Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalejší notebook

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalejší notebook

#16 Příspěvek od Márty84 »

Nemate zac! :)

Tak mu zkusime jeste ulevit...


:arrow: Stahnete crystal disk info http://sourceforge.jp/projects/crystald ... 5_0_0.zip/
Spustte ho. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)


:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe , ulozte na plochu a spustte.
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Jenda66
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 18 bře 2007 08:58

Re: Pomalejší notebook

#17 Příspěvek od Jenda66 »

Log z crystaldisk.
----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows XP Professional SP3 [5.1 Build 2600] (x86)
Date : 2016/01/01 20:34:05

-- Controller Map ----------------------------------------------------------
+ PCI Standardní dvoukanálový řadič IDE [ATA]
+ Primární kanál IDE (0)
- WDC WD5000BEVT-60ZAT1
+ Sekundární kanál IDE (1)
- TSSTcorp CDDVDW TS-L633M
+ PCI Standardní dvoukanálový řadič IDE [ATA]
- Primární kanál IDE (0)
- Sekundární kanál IDE (1)

-- Disk List ---------------------------------------------------------------
(1) WDC WD5000BEVT-60ZAT1 : 500,1 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) WDC WD5000BEVT-60ZAT1
----------------------------------------------------------------------------
Model : WDC WD5000BEVT-60ZAT1
Firmware : 02.01A02
Serial Number : WD-WXE0A6919182
Disk Size : 500,1 GB (8,4/137,4/500,1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 19863 hod.
Power On Count : 5722 krát
Temparature : 33 C (91 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000001 Počet chyb čtení
03 183 180 _21 000000000731 Čas na roztočení ploten
04 _95 _95 __0 00000000166D Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 100 253 _51 000000000000 Počet chybných hledání
09 _73 _73 __0 000000004D97 Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _95 _95 __0 00000000165A Počet cyklů zapnutí zařízení
B7 100 100 __0 000000000000 Neznámý
B8 100 100 _97 000000000000 Ukončovacích chyb
BB 100 _88 __0 00000000002F Ohlášeno neopravitelných chyb
BC 100 _98 __0 000000000032 Časový limit příkazu
BE _67 _53 _40 000000000021 Teplota toku vzduchu
BF _76 _76 __0 000000000018 Počet udalostí zaznamenaných otřesovým senzorem
C0 200 200 __0 000000000038 Počet vypnutí disku
C1 128 128 __0 0000000352B4 Počet cyklů načítání/vymazání
C2 114 100 __0 000000000021 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 100 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 _51 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 5758 4136 4136 3931 3931 3832
020: 0000 4000 0032 3032 2E30 3032 3032 5744 4320 5744
030: 3530 3030 4245 5654 2D36 4154 4154 3120 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0D06 0D06 0000 004C 0040
080: 01FE 0000 706B 7C09 6123 BC09 BC09 6123 013F 0041
090: 0041 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 0000 0000 5001 4EE2
110: 031E FA3A 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0400
130: 0001 0000 0000 16B7 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 303F 303F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 1CA5

Jenda66
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 18 bře 2007 08:58

Re: Pomalejší notebook

#18 Příspěvek od Jenda66 »

A log z OTL.

OTL logfile created on: 1.1.2016 20:36:01 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Documents and Settings\Jenda\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,97 Gb Total Physical Memory | 2,04 Gb Available Physical Memory | 68,83% Memory free
4,81 Gb Paging File | 3,97 Gb Available in Paging File | 82,59% Paging File free
Paging file location(s): D:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files
Drive C: | 895,67 Mb Total Space | 310,39 Mb Free Space | 34,65% Space Free | Partition Type: FAT32
Drive D: | 464,86 Gb Total Space | 406,62 Gb Free Space | 87,47% Space Free | Partition Type: NTFS

Computer Name: NOTEBOOK | User Name: Jenda | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2016.01.01 20:34:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\Jenda\Plocha\OTL.exe
PRC - [2015.12.29 13:18:16 | 000,392,136 | ---- | M] (Mozilla Corporation) -- D:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2014.09.19 14:08:29 | 004,085,896 | ---- | M] (AVAST Software) -- D:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2014.09.19 14:07:59 | 000,050,344 | ---- | M] (AVAST Software) -- D:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2010.06.24 01:32:38 | 001,034,240 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2016.01.01 20:00:23 | 002,808,832 | ---- | M] () -- D:\Program Files\AVAST Software\Avast\defs\16010101\algo.dll
MOD - [2015.12.31 10:10:05 | 002,808,832 | ---- | M] () -- D:\Program Files\AVAST Software\Avast\defs\15123100\algo.dll
MOD - [2014.09.19 14:08:02 | 019,329,904 | ---- | M] () -- D:\Program Files\AVAST Software\Avast\libcef.dll
MOD - [2014.09.19 14:08:00 | 000,301,152 | ---- | M] () -- D:\Program Files\AVAST Software\Avast\aswProperty.dll
MOD - [2014.04.16 09:22:30 | 000,025,600 | ---- | M] () -- D:\WINDOWS\system32\usp01l.dll
MOD - [2013.03.16 13:25:48 | 000,025,600 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\38c2e7819464fda3b7f61bac141a7d57\Accessibility.ni.dll
MOD - [2013.03.16 13:25:31 | 005,450,752 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\b6cdb93ce7c99593f399bcc2459d7e69\System.Xml.ni.dll
MOD - [2013.03.16 13:25:19 | 000,971,264 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\181ca964813daf124b754e040c4e323e\System.Configuration.ni.dll
MOD - [2013.03.16 13:25:01 | 007,952,896 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\ea245af5210160539b6ba12fe725dd5b\System.ni.dll
MOD - [2013.03.16 13:24:54 | 011,491,328 | ---- | M] () -- D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\c5324bc03e3085772c8e284217e9f287\mscorlib.ni.dll
MOD - [2013.03.16 13:24:44 | 000,372,736 | ---- | M] () -- D:\WINDOWS\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
MOD - [2013.03.16 13:24:42 | 005,025,792 | ---- | M] () -- D:\WINDOWS\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
MOD - [2013.03.16 13:24:42 | 000,626,688 | ---- | M] () -- D:\WINDOWS\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
MOD - [2012.07.01 20:34:04 | 000,344,064 | ---- | M] () -- D:\Program Files\WinRAR\rarlng.dll
MOD - [2011.04.14 03:40:42 | 000,024,064 | ---- | M] () -- D:\WINDOWS\system32\ssb3ml3.dll


========== Services (SafeList) ==========

SRV - [2015.12.29 13:18:14 | 000,146,888 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- D:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2015.12.29 01:07:35 | 000,269,504 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- D:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014.09.19 14:07:59 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- D:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2009.07.17 09:10:00 | 000,282,624 | ---- | M] (Marvell) [Auto | Running] -- D:\WINDOWS\system32\yk51x86.dll -- (yksvc)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | Auto | Stopped] -- D:\WINDOWS\system32\Drivers\SSPORT.sys -- (SSPORT)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | Auto | Stopped] -- D:\WINDOWS\system32\Drivers\DgiVecp.sys -- (DgiVecp)
DRV - [2014.11.21 19:01:02 | 000,779,536 | ---- | M] (AVAST Software) [File_System | System | Running] -- D:\WINDOWS\system32\drivers\aswsnx.sys -- (aswSnx)
DRV - [2014.09.19 14:08:28 | 000,414,520 | ---- | M] (AVAST Software) [File_System | System | Running] -- D:\WINDOWS\system32\drivers\aswsp.sys -- (aswSP)
DRV - [2014.09.19 14:08:04 | 000,192,352 | ---- | M] () [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\aswVmm.sys -- (aswVmm)
DRV - [2014.09.19 14:08:04 | 000,057,800 | ---- | M] (AVAST Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2014.09.19 14:08:03 | 000,067,824 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- D:\WINDOWS\system32\drivers\aswmonflt.sys -- (aswMonFlt)
DRV - [2014.09.19 14:08:03 | 000,055,112 | ---- | M] (AVAST Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aswrdr.sys -- (AswRdr)
DRV - [2014.09.19 14:08:03 | 000,049,944 | ---- | M] () [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\aswRvrt.sys -- (aswRvrt)
DRV - [2014.09.19 14:08:03 | 000,024,184 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\aswHwid.sys -- (aswHwid)
DRV - [2013.06.28 13:49:20 | 001,763,584 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\athuw.sys -- (AR9271)
DRV - [2013.03.16 14:36:23 | 002,697,600 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\BCMWL5.SYS -- (BCM43XX)
DRV - [2013.03.01 02:48:42 | 000,036,600 | ---- | M] (Riverbed Technology, Inc.) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\npf.sys -- (npf)
DRV - [2012.08.31 15:50:58 | 000,014,248 | ---- | M] (SHAPE Services) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\idisplayminiport.sys -- (iDispService)
DRV - [2010.06.24 01:37:06 | 000,009,472 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- D:\WINDOWS\System32\drivers\dumpdrv.sys -- (DumpDrv)
DRV - [2010.04.27 15:57:28 | 000,066,632 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\WmXlCore.sys -- (WmXlCore)
DRV - [2010.04.27 15:57:28 | 000,015,048 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\WmVirHid.sys -- (WmVirHid)
DRV - [2010.04.27 15:57:24 | 000,031,816 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\WmHidLo.sys -- (WmHidLo)
DRV - [2010.04.27 15:57:22 | 000,022,856 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\WmBEnum.sys -- (WmBEnum)
DRV - [2010.04.27 13:01:26 | 000,037,704 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\WmFilter.sys -- (WmFilter)
DRV - [2010.02.25 15:19:12 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV - [2010.01.22 15:28:54 | 000,032,800 | ---- | M] (REALTEK SEMICONDUCTOR Corp.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\RTL2832UUSB.sys -- (RTL2832UUSB)
DRV - [2010.01.22 15:28:52 | 000,143,264 | ---- | M] (REALTEK SEMICONDUCTOR Corp.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\RTL2832UBDA.sys -- (RTL2832UBDA)
DRV - [2009.10.05 19:20:26 | 000,031,872 | ---- | M] (Realtek) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\RTL2832U_IRHID.sys -- (RTL2832U_IRHID)
DRV - [2009.07.17 09:10:00 | 000,297,728 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp)
DRV - [2009.07.13 15:51:12 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
DRV - [2009.04.01 07:28:00 | 000,093,184 | ---- | M] (ATI Research Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV - [2009.02.04 03:27:00 | 003,488,768 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2008.03.28 11:14:02 | 000,024,064 | ---- | M] (Sonic Focus, Inc) [Kernel | Boot | Running] -- D:\WINDOWS\system32\drivers\sfaudio.sys -- (SFAUDIO)
DRV - [2004.07.09 03:26:38 | 000,015,104 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\mpe.sys -- (MPE)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.countryCode: "CZ"
FF - prefs.js..browser.search.region: "CZ"
FF - prefs.js..extensions.enabledAddons: SeznamAdmin%40software:1.0.18
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:43.0.3
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\WINDOWS\system32\Macromed\Flash\NPSWF32_20_0_0_267.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: D:\WINDOWS\system32\Adobe\Director\np32dsw_1200112.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.67.2: D:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.67.2: D:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: d:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: d:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: D:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: D:\Program Files\AVAST Software\Avast\WebRep\FF [2015.12.10 18:20:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 43.0.3\extensions\\Components: D:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 43.0.3\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2015.12.29 13:17:45 | 000,000,000 | ---D | M]

[2013.03.16 14:50:18 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Jenda\Data aplikací\Mozilla\Extensions
[2015.12.19 18:55:33 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Jenda\Data aplikací\Mozilla\Firefox\Profiles\w06w7bvk.default-1448046860640\extensions
[2015.12.19 18:55:33 | 000,047,711 | ---- | M] () (No name found) -- D:\Documents and Settings\Jenda\Data aplikací\Mozilla\Firefox\Profiles\w06w7bvk.default-1448046860640\extensions\SeznamAdmin@software.xpi
[2015.12.15 21:52:33 | 000,989,188 | ---- | M] () (No name found) -- D:\Documents and Settings\Jenda\Data aplikací\Mozilla\Firefox\Profiles\w06w7bvk.default-1448046860640\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2015.12.29 13:17:32 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files\Mozilla Firefox\browser\extensions
[2015.12.29 13:18:18 | 000,000,000 | ---D | M] (Default) -- D:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- D:\DOCUMENTS AND SETTINGS\JENDA\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\W06W7BVK.DEFAULT-1448046860640\EXTENSIONS\SEZNAMADMIN@SOFTWARE.XPI

O1 HOSTS File: ([2015.12.31 10:03:00 | 000,000,027 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O4 - HKLM..\Run: [AvastUI.exe] D:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O7 - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://D:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105 File not found
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe File not found
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - D:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.67.2)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.67.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A25950CE-AAFD-44BD-BB4D-4D8DBEAA6E0C}: DhcpNameServer = 10.0.0.138
O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (D:\WINDOWS\system32\userinit.exe) - D:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - D:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) - File not found
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: D:\Documents and Settings\Jenda\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: D:\Documents and Settings\Jenda\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - D:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2005.08.23 09:10:48 | 000,000,305 | ---- | M] () - C:\AUTO_BP.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005.08.23 09:10:56 | 000,000,329 | ---- | M] () - C:\AUTO_FR.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005.08.23 09:11:04 | 000,000,329 | ---- | M] () - C:\AUTO_GR.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005.08.23 09:11:12 | 000,000,302 | ---- | M] () - C:\AUTO_IE.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005.08.23 09:11:20 | 000,000,330 | ---- | M] () - C:\AUTO_IT.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005.08.23 09:11:26 | 000,000,329 | ---- | M] () - C:\AUTO_LA.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005.08.23 09:11:36 | 000,000,302 | ---- | M] () - C:\AUTO_PT.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005.08.23 09:11:44 | 000,000,329 | ---- | M] () - C:\AUTO_SP.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005.08.23 09:11:54 | 000,000,302 | ---- | M] () - C:\AUTO_US.BAT -- [ FAT32 ]
O32 - AutoRun File - [2009.08.24 22:15:10 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O32 - AutoRun File - [2014.05.17 11:42:32 | 000,000,000 | ---- | M] () - D:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.ac3acm - D:\WINDOWS\System32\ac3acm.acm (fccHandler)
Drivers32: msacm.iac2 - D:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - D:\WINDOWS\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - D:\WINDOWS\System32\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - D:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - D:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - D:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - D:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - D:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - D:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - D:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - D:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - D:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.LAGS - D:\WINDOWS\System32\lagarith.dll ( )
Drivers32: VIDC.X264 - D:\WINDOWS\System32\x264vfw.dll (x264vfw project)
Drivers32: VIDC.XVID - D:\WINDOWS\System32\xvidvfw.dll ()
PhysicalDisk0 MBR saved to D:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2016.01.01 20:34:47 | 000,602,112 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\Jenda\Plocha\OTL.exe
[2015.12.31 11:31:24 | 000,000,000 | ---D | C] -- D:\Data
[2015.12.30 12:50:18 | 000,000,000 | R--D | C] -- D:\Documents and Settings\Jenda\Nabídka Start\Programy\Nástroje pro správu
[2015.12.29 13:17:30 | 000,000,000 | ---D | C] -- D:\Program Files\Mozilla Firefox
[2015.12.28 23:26:28 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\Jenda\Recent
[2015.12.28 23:02:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Jenda\Dokumenty\Splashtop Whiteboard
[2015.12.28 23:02:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Jenda\Dokumenty\Splashtop Presenter
[2015.12.26 15:44:28 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\HtmlData
[2015.12.26 00:18:05 | 000,000,000 | ---D | C] -- D:\Program Files\CDisplay
[2015.12.26 00:18:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Nabídka Start\Programy\CDisplay
[1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2016.01.01 20:38:28 | 000,000,512 | ---- | M] () -- D:\PhysicalMBR.bin
[2016.01.01 20:34:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\Jenda\Plocha\OTL.exe
[2016.01.01 19:54:25 | 000,121,808 | ---- | M] () -- D:\WINDOWS\System32\ativvaxx.cap
[2016.01.01 16:04:01 | 000,000,364 | -H-- | M] () -- D:\WINDOWS\tasks\avast! Emergency Update.job
[2016.01.01 15:58:40 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl
[2016.01.01 15:58:38 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat
[2015.12.31 11:34:53 | 000,000,466 | ---- | M] () -- D:\Documents and Settings\Jenda\Plocha\Aktuální semestr.lnk
[2015.12.31 11:34:22 | 000,000,407 | ---- | M] () -- D:\Documents and Settings\Jenda\Plocha\Hudba.lnk
[2015.12.31 11:33:38 | 000,000,402 | ---- | M] () -- D:\Documents and Settings\Jenda\Plocha\Data.lnk
[2015.12.31 11:33:27 | 000,000,461 | ---- | M] () -- D:\Documents and Settings\Jenda\Plocha\Stažené soubory.lnk
[2015.12.31 10:09:56 | 000,467,442 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat
[2015.12.31 10:09:56 | 000,463,680 | ---- | M] () -- D:\WINDOWS\System32\perfh005.dat
[2015.12.31 10:09:56 | 000,093,370 | ---- | M] () -- D:\WINDOWS\System32\perfc005.dat
[2015.12.31 10:09:56 | 000,079,904 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat
[2015.12.31 10:03:00 | 000,000,027 | ---- | M] () -- D:\WINDOWS\System32\drivers\etc\hosts
[2015.12.31 10:02:37 | 000,029,696 | ---- | M] () -- D:\Documents and Settings\Jenda\Local Settings\Data aplikací\MSGBOX.EXE
[2015.12.31 10:02:37 | 000,015,327 | ---- | M] () -- D:\Documents and Settings\Jenda\Plocha\LM.bat
[2015.12.30 13:00:24 | 000,008,680 | ---- | M] () -- D:\Documents and Settings\Jenda\Plocha\Addition.rar
[2015.12.29 01:07:35 | 000,796,864 | ---- | M] (Adobe Systems Incorporated) -- D:\WINDOWS\System32\FlashPlayerApp.exe
[2015.12.29 01:07:34 | 000,142,528 | ---- | M] (Adobe Systems Incorporated) -- D:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2015.12.28 23:42:12 | 000,329,888 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT
[2015.12.28 23:18:35 | 000,000,682 | ---- | M] () -- D:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2015.12.07 20:47:18 | 000,000,664 | ---- | M] () -- D:\WINDOWS\System32\d3d9caps.dat
[1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2016.01.01 20:38:28 | 000,000,512 | ---- | C] () -- D:\PhysicalMBR.bin
[2015.12.31 11:34:53 | 000,000,466 | ---- | C] () -- D:\Documents and Settings\Jenda\Plocha\Aktuální semestr.lnk
[2015.12.31 11:34:22 | 000,000,407 | ---- | C] () -- D:\Documents and Settings\Jenda\Plocha\Hudba.lnk
[2015.12.31 11:33:38 | 000,000,402 | ---- | C] () -- D:\Documents and Settings\Jenda\Plocha\Data.lnk
[2015.12.31 11:33:27 | 000,000,461 | ---- | C] () -- D:\Documents and Settings\Jenda\Plocha\Stažené soubory.lnk
[2015.12.31 10:02:37 | 000,029,696 | ---- | C] () -- D:\Documents and Settings\Jenda\Local Settings\Data aplikací\MSGBOX.EXE
[2015.12.31 10:02:37 | 000,015,327 | ---- | C] () -- D:\Documents and Settings\Jenda\Plocha\LM.bat
[2015.12.30 13:00:24 | 000,008,680 | ---- | C] () -- D:\Documents and Settings\Jenda\Plocha\Addition.rar
[2015.12.28 23:18:35 | 000,000,682 | ---- | C] () -- D:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2015.11.14 13:49:54 | 000,000,412 | ---- | C] () -- D:\Documents and Settings\Jenda\Local Settings\Data aplikací\UserProducts.xml
[2014.09.21 20:11:24 | 000,025,600 | ---- | C] () -- D:\WINDOWS\System32\usp01l.dll
[2014.09.21 20:11:23 | 000,162,136 | ---- | C] () -- D:\WINDOWS\System32\usp01ci.exe
[2014.09.21 20:11:22 | 002,738,496 | ---- | C] () -- D:\WINDOWS\TotalUninstaller.exe
[2014.05.20 19:47:13 | 000,000,014 | ---- | C] () -- D:\WINDOWS\System32\systeminfo.dll
[2014.05.18 12:27:54 | 000,024,184 | ---- | C] () -- D:\WINDOWS\System32\drivers\aswHwid.sys
[2013.11.24 23:16:32 | 000,000,000 | ---- | C] () -- D:\Documents and Settings\All Users\Data aplikací\v7tlcj6b.fvv
[2013.11.24 23:16:31 | 095,025,368 | ---- | C] () -- D:\Documents and Settings\All Users\Data aplikací\v7tlcj6b.bxx

========== ZeroAccess Check ==========

[2013.03.16 13:24:14 | 000,000,227 | RHS- | M] () -- D:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008.04.14 16:00:00 | 001,499,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = D:\WINDOWS\system32\wbem\fastprox.dll -- [2010.06.24 00:32:38 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = D:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 15:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2013.11.13 12:33:12 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Data aplikací\AVAST Software
[2015.12.11 18:58:21 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Data aplikací\Battle.net
[2014.05.20 19:47:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Data aplikací\BlazeVideo
[2014.08.03 22:58:52 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Data aplikací\Caphyon
[2013.04.28 22:01:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Data aplikací\PMB Files
[2014.09.21 20:11:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Data aplikací\Samsung
[2015.04.19 17:27:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Data aplikací\TEMP
[2014.07.11 17:43:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Data aplikací\TP-LINK
[2015.12.25 13:47:26 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\.minecraft
[2015.05.26 20:09:42 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Audacity
[2013.11.13 12:50:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\AVAST Software
[2015.12.11 18:58:20 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Battle.net
[2014.02.27 11:50:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer
[2013.03.16 15:00:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer Pro
[2013.03.20 12:18:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\GHISLER
[2015.08.24 09:49:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\LibreOffice
[2015.07.09 16:25:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Mount&Blade Warband
[2015.04.19 12:55:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\MyPhoneExplorer
[2013.03.16 14:45:05 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Opera
[2015.11.20 18:24:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Opera Software
[2013.03.20 12:16:51 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\PhotoFiltre 7
[2015.12.28 23:04:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\SHAPE
[2013.03.16 13:44:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Windows Desktop Search
[2013.03.16 13:45:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Windows Search
[2013.11.24 12:17:15 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\wyUpdate AU

========== Purity Check ==========



========== Custom Scans ==========

< >
[2013.03.15 23:38:44 | 000,000,065 | RH-- | C] () -- D:\WINDOWS\Tasks\desktop.ini
[2013.03.16 13:41:59 | 000,000,006 | -H-- | C] () -- D:\WINDOWS\Tasks\SA.DAT
[2013.03.16 14:41:26 | 000,000,364 | -H-- | C] () -- D:\WINDOWS\Tasks\avast! Emergency Update.job

< >

< MD5 for: AGP440.SYS >
[2010.06.24 01:46:50 | 017,817,912 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys

< MD5 for: ATAPI.SYS >
[2010.06.24 01:46:50 | 017,817,912 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 16:00:00 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- D:\WINDOWS\system32\drivers\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 16:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- D:\WINDOWS\system32\autochk.exe
[2008.04.14 16:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- D:\WINDOWS\system32\dllcache\autochk.exe

< MD5 for: CDROM.SYS >
[2010.06.24 01:46:50 | 017,817,912 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.05.02 10:49:40 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=4B0A100EAF5C49EF3CCA8C641431EACC -- D:\WINDOWS\system32\dllcache\cdrom.sys
[2010.06.24 01:32:26 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=4B0A100EAF5C49EF3CCA8C641431EACC -- D:\WINDOWS\system32\drivers\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2008.04.14 16:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- D:\WINDOWS\system32\cryptsvc.dll
[2008.04.14 16:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- D:\WINDOWS\system32\dllcache\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 16:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- D:\WINDOWS\system32\dllcache\eventlog.dll
[2008.04.14 16:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- D:\WINDOWS\system32\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2010.06.24 01:32:38 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=8AB626E4E4B289646E11311E66FB0B88 -- D:\WINDOWS\explorer.exe
[2010.06.24 01:32:38 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=8AB626E4E4B289646E11311E66FB0B88 -- D:\WINDOWS\system32\dllcache\explorer.exe

< MD5 for: HAL.DLL >
[2010.06.24 01:46:50 | 017,817,912 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2010.06.24 01:32:40 | 000,134,528 | ---- | M] (Microsoft Corporation) MD5=E33DE9C65B3625BDD00C1313179DA5A5 -- D:\WINDOWS\system32\hal.dll

< MD5 for: CHANGER.SYS >
[2010.06.24 01:46:50 | 017,817,912 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys

< MD5 for: ISAPNP.SYS >
[2010.06.24 01:46:50 | 017,817,912 | ---- | M] () .cab file -- D:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.04.14 16:00:00 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- D:\WINDOWS\system32\drivers\isapnp.sys

< MD5 for: LSASS.EXE >
[2008.04.14 16:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- D:\WINDOWS\system32\dllcache\lsass.exe
[2008.04.14 16:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- D:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2010.06.24 01:33:48 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=B5B1080D35974C0E718D64280761BCD5 -- D:\WINDOWS\system32\dllcache\ndis.sys
[2010.06.24 01:33:48 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=B5B1080D35974C0E718D64280761BCD5 -- D:\WINDOWS\system32\drivers\ndis.sys

< MD5 for: NETLOGON.DLL >
[2010.06.24 01:33:50 | 000,407,552 | ---- | M] (Microsoft Corporation) MD5=6A5A974D868AE2F9AC96DC14F221A5EF -- D:\WINDOWS\system32\dllcache\netlogon.dll
[2010.06.24 01:33:50 | 000,407,552 | ---- | M] (Microsoft Corporation) MD5=6A5A974D868AE2F9AC96DC14F221A5EF -- D:\WINDOWS\system32\netlogon.dll

< MD5 for: SCECLI.DLL >
[2008.04.14 16:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- D:\WINDOWS\system32\dllcache\scecli.dll
[2008.04.14 16:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- D:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2008.04.14 16:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- D:\WINDOWS\system32\dllcache\smss.exe
[2008.04.14 16:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- D:\WINDOWS\system32\smss.exe

< MD5 for: SVCHOST.EXE >
[2010.06.24 01:34:28 | 000,014,848 | ---- | M] (Microsoft Corporation) MD5=67E38B4A549833E02D4D1617B5DBC318 -- D:\WINDOWS\system32\dllcache\svchost.exe
[2010.06.24 01:34:28 | 000,014,848 | ---- | M] (Microsoft Corporation) MD5=67E38B4A549833E02D4D1617B5DBC318 -- D:\WINDOWS\system32\svchost.exe

< MD5 for: TCPIP.SYS >
[2010.06.24 01:34:34 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=367DE8E5F638C091F49273144274F629 -- D:\WINDOWS\system32\dllcache\tcpip.sys
[2010.06.24 01:34:34 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=367DE8E5F638C091F49273144274F629 -- D:\WINDOWS\system32\drivers\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 16:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- D:\WINDOWS\system32\dllcache\userinit.exe
[2008.04.14 16:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- D:\WINDOWS\system32\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010.06.24 01:34:48 | 000,509,440 | ---- | M] (Microsoft Corporation) MD5=4212BABCC4408B052193DABAD9A691AB -- D:\WINDOWS\system32\dllcache\winlogon.exe
[2010.06.24 01:34:48 | 000,509,440 | ---- | M] (Microsoft Corporation) MD5=4212BABCC4408B052193DABAD9A691AB -- D:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2008.04.14 16:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- D:\WINDOWS\system32\dllcache\ws2_32.dll
[2008.04.14 16:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- D:\WINDOWS\system32\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[2 D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[12 D:\WINDOWS\Installer\*.tmp files -> D:\WINDOWS\Installer\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2015.12.25 13:47:26 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\.minecraft
[2013.03.17 13:56:23 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Adobe
[2013.03.16 14:19:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\ATI
[2015.05.26 20:09:42 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Audacity
[2013.11.13 12:50:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\AVAST Software
[2015.12.11 18:58:20 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Battle.net
[2014.02.27 11:50:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer
[2013.03.16 15:00:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer Pro
[2013.03.20 12:18:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\GHISLER
[2013.10.07 10:55:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Help
[2013.03.16 14:30:24 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\hpqLog
[2013.03.16 13:44:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Identities
[2013.03.25 13:11:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\InstallShield
[2015.08.24 09:49:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\LibreOffice
[2013.03.16 14:51:48 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Macromedia
[2014.05.20 22:20:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Malwarebytes
[2014.10.15 10:34:11 | 000,000,000 | --SD | M] -- D:\Documents and Settings\Jenda\Data aplikací\Microsoft
[2015.07.09 16:25:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Mount&Blade Warband
[2013.03.16 14:50:18 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Mozilla
[2015.04.19 12:55:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\MyPhoneExplorer
[2013.03.16 14:45:05 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Opera
[2015.11.20 18:24:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Opera Software
[2013.03.20 12:16:51 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\PhotoFiltre 7
[2015.12.28 23:04:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\SHAPE
[2015.10.21 19:42:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Skype
[2013.12.01 18:49:59 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Sun
[2015.09.03 14:26:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Winamp
[2013.03.16 13:44:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Windows Desktop Search
[2013.03.16 13:45:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\Windows Search
[2013.03.16 23:17:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\WinRAR
[2013.11.24 12:17:15 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Jenda\Data aplikací\wyUpdate AU

< %APPDATA%\*.exe /s >
[2009.08.11 21:21:26 | 000,087,552 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 21:21:30 | 000,090,112 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 14:52:04 | 000,697,690 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer\AC3 Filter\unins000.exe
[2012.10.11 09:01:20 | 001,175,371 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer\FFDShow\unins000.exe
[2010.08.14 10:42:54 | 000,113,152 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 10:45:10 | 000,358,400 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 10:42:06 | 000,137,728 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 15:30:22 | 000,042,305 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\BSplayer\Haali media splitter\uninstall.exe
[2014.01.21 16:10:25 | 000,145,408 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\Sun\Java\jre1.7.0_51\lzma.exe
[2014.09.23 11:32:24 | 000,145,408 | ---- | M] () -- D:\Documents and Settings\Jenda\Data aplikací\Sun\Java\jre1.7.0_67\lzma.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2013.03.16 13:40:31 | 000,094,208 | ---- | M] () -- D:\WINDOWS\System32\config\default.sav
[2013.03.16 13:40:31 | 001,093,632 | ---- | M] () -- D:\WINDOWS\System32\config\software.sav
[2013.03.16 13:40:31 | 000,512,000 | ---- | M] () -- D:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2016.01.01 19:54:25 | 000,121,808 | ---- | M] () -- D:\WINDOWS\system32\ativvaxx.cap
[2015.12.31 10:09:56 | 000,093,370 | ---- | M] () -- D:\WINDOWS\system32\perfc005.dat
[2015.12.31 10:09:56 | 000,079,904 | ---- | M] () -- D:\WINDOWS\system32\perfc009.dat
[2015.12.31 10:09:56 | 000,463,680 | ---- | M] () -- D:\WINDOWS\system32\perfh005.dat
[2015.12.31 10:09:56 | 000,467,442 | ---- | M] () -- D:\WINDOWS\system32\perfh009.dat
[2015.12.31 10:09:55 | 001,120,178 | ---- | M] () -- D:\WINDOWS\system32\PerfStringBackup.INI
[2016.01.01 15:58:40 | 000,002,206 | ---- | M] () -- D:\WINDOWS\system32\wpa.dbl

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = D:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 16:00:00 | 000,015,360 | ---- | M] (Microsoft Corporation)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=3
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
multi(0)disk(0)rdisk(1)partition(2)\WINDOWS=""
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
C:\="Nezn mě operaźnˇ syst‚m na jednotce C:"

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2016.01.01 20:38:28 | 000,000,512 | ---- | M] () MD5=F861BAF1F9AA80F8ABDA1180EFC87D9C -- D:\PhysicalMBR.bin

< >

< *crack* /s >
[2009.09.17 16:33:46 | 003,727,613 | ---- | M] () -- \Data\Hudba\Snt - Armageddon\Animal Crackers.mp3
[2009.01.19 13:27:44 | 000,083,645 | ---- | M] () -- \Program Files\Mount&Blade Warband\Sounds\Fire_Small_Crackle_Slick_op.ogg

< *keygen* /s >

< *AntiWPA* /s >

< *loader* /s >
[2015.11.06 11:30:38 | 000,009,418 | ---- | M] () -- \Documents and Settings\Jenda\Data aplikací\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj\2.43_0\img\gifloader.gif
[2015.08.18 15:18:52 | 000,072,638 | ---- | M] () -- \Documents and Settings\Jenda\Local Settings\Data aplikací\Skype\Apps\login\images\loader.gif
[2015.08.18 15:18:52 | 000,003,032 | ---- | M] () -- \Documents and Settings\Jenda\Local Settings\Data aplikací\Skype\Apps\login\images\loader.png
[2015.08.18 15:18:52 | 000,006,012 | ---- | M] () -- \Documents and Settings\Jenda\Local Settings\Data aplikací\Skype\Apps\login\images\normal\loader_15fps.gif
[2015.08.18 15:18:52 | 000,021,956 | ---- | M] () -- \Documents and Settings\Jenda\Local Settings\Data aplikací\Skype\Apps\login\images\normal\loader_30fps.gif
[2015.08.18 15:18:52 | 000,009,772 | ---- | M] () -- \Documents and Settings\Jenda\Local Settings\Data aplikací\Skype\Apps\login\images\retina\loader@2x.png
[2014.09.19 14:07:59 | 000,071,968 | ---- | M] () -- \Program Files\AVAST Software\Avast\aswWrcIELoader32.exe
[2014.09.02 23:27:24 | 000,268,432 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2014.09.02 23:27:24 | 000,019,096 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2015.07.31 13:48:28 | 000,082,536 | ---- | M] () -- \Program Files\LibreOffice 5\program\javaloaderlo.dll
[2014.05.25 19:45:54 | 000,006,866 | ---- | M] () -- \Program Files\LibreOffice 5\program\pythonloader.py
[2015.07.31 10:58:58 | 000,000,168 | ---- | M] () -- \Program Files\LibreOffice 5\program\pythonloader.uno.ini
[2015.07.31 13:48:56 | 000,046,696 | ---- | M] () -- \Program Files\LibreOffice 5\program\pythonloaderlo.dll
[2015.08.24 09:50:12 | 000,007,186 | ---- | M] () -- \Program Files\LibreOffice 5\program\__pycache__\pythonloader.cpython-33.pyc
[2015.07.31 11:03:44 | 000,124,486 | ---- | M] () -- \Program Files\LibreOffice 5\program\classes\libloader-1.1.6.jar
[2015.07.31 10:59:04 | 000,004,765 | ---- | M] () -- \Program Files\LibreOffice 5\program\classes\unoloader.jar
[2015.07.31 11:17:20 | 000,013,883 | ---- | M] () -- \Program Files\LibreOffice 5\program\python-core-3.3.3\lib\unittest\loader.py
[2015.07.31 11:17:20 | 000,050,271 | ---- | M] () -- \Program Files\LibreOffice 5\program\python-core-3.3.3\lib\unittest\test\test_loader.py
[2015.10.01 16:10:04 | 000,262,656 | ---- | M] () -- \Program Files\Skillbrains\lightshot\5.3.0.0\uploader.dll
[2003.09.15 14:02:00 | 000,169,384 | ---- | M] () -- \Program Files\Valve\cstrike\models\qloader.mdl
[2003.09.15 13:55:50 | 000,352,548 | ---- | M] () -- \Program Files\Valve\valve\models\loader.mdl
[2003.09.15 13:56:04 | 000,012,764 | ---- | M] () -- \Program Files\Valve\valve\sound\ambience\loader_hydra1.wav
[2003.09.15 13:56:04 | 000,012,164 | ---- | M] () -- \Program Files\Valve\valve\sound\ambience\loader_step1.wav
[2009.09.06 16:16:40 | 000,762,116 | ---- | M] () -- \Program Files\World of Warcraft Classic\BackgroundDownloader.exe
[2009.09.06 16:09:56 | 000,003,059 | ---- | M] () -- \Program Files\World of Warcraft Classic\Documentation\Troubleshooting\(Mac)BlizzardDownloaderProblems.html
[2009.09.06 16:09:56 | 000,004,274 | ---- | M] () -- \Program Files\World of Warcraft Classic\Documentation\Troubleshooting\(PC)BlizzardDownloaderProblems.html
[2002.12.11 23:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dmloader.dll
[2008.04.14 16:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[2013.02.18 06:28:58 | 000,012,532 | ---- | M] () -- \WINDOWS\system32\Adobe\Shockwave 12\shockwave_Projector_Loader.dcr
[2008.04.14 16:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll

< *minodlogin* /s >

< *tnod* /s >
[2008.04.30 03:54:28 | 000,003,128 | ---- | M] () -- \Program Files\BlazeVideo\BlazeDTV 6.0\Skins\DTV\PlayListNode.bmp

< *AutoKMS* /s >

< *activator* /s >

< *serial* /s >
[2013.04.17 20:29:32 | 000,000,811 | ---- | M] () -- \Documents and Settings\Jenda\Local Settings\Data aplikací\Opera\Opera\icons\http%3A%2F%2Feserial.cz%2Ffavicon%2Fdapch.png
[2013.06.11 15:23:53 | 000,000,830 | ---- | M] () -- \Documents and Settings\Jenda\Local Settings\Data aplikací\Opera\Opera\icons\http%3A%2F%2Fserialy.herni.cz%2Ffavicon.png
[2013.05.10 10:20:15 | 000,000,581 | ---- | M] () -- \Documents and Settings\Jenda\Local Settings\Data aplikací\Opera\Opera\icons\http%3A%2F%2Fwww.serialzone.cz%2Ffavicon.png
[2013.04.11 18:12:07 | 000,000,544 | ---- | M] () -- \Documents and Settings\Jenda\Local Settings\Data aplikací\Opera\Opera\icons\http%3A%2F%2Fwww.sledujuserialy.cz%2Ffavicon.png
[2015.07.31 11:03:44 | 000,021,786 | ---- | M] () -- \Program Files\LibreOffice 5\program\classes\libserializer-1.1.6.jar
[2014.05.13 22:17:02 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.dll
[2015.09.04 15:58:46 | 001,164,288 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.ni.dll
[2010.04.07 23:57:06 | 000,970,752 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2013.03.16 13:24:22 | 000,011,776 | ---- | M] () -- \WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap.resources\1.0.5000.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2013.03.16 13:24:21 | 000,135,168 | ---- | M] () -- \WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.03.16 13:34:55 | 000,011,776 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.03.16 13:24:44 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.03.16 13:34:58 | 000,090,112 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2013.03.16 13:25:56 | 000,970,752 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.03.16 13:30:06 | 000,310,272 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\d0ff3383438d688a0118d0fa19ed1dc4\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2013.03.16 13:31:12 | 002,625,024 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\e9f8a45b1063d6c6a62718c88a5623d1\System.Runtime.Serialization.ni.dll
[2013.03.16 13:29:44 | 000,122,264 | ---- | M] () -- \WINDOWS\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.03.16 13:29:43 | 001,026,936 | ---- | M] () -- \WINDOWS\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2007.02.17 06:24:42 | 000,135,168 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
[2003.04.07 19:24:52 | 000,011,776 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v1.1.4322\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2008.07.25 16:17:00 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2010.05.31 16:21:21 | 000,011,776 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.04.07 23:57:06 | 000,970,752 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 001,026,936 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2010.03.18 13:16:28 | 000,122,264 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2008.04.14 16:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2008.04.14 16:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[2008.04.14 16:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2008.04.14 16:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.14 16:00:00 | 000,064,256 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys

< *w7lxe* /s >

< End of report >

Jenda66
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 18 bře 2007 08:58

Re: Pomalejší notebook

#19 Příspěvek od Jenda66 »

OTL Extras.

OTL Extras logfile created on: 1.1.2016 20:36:01 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Documents and Settings\Jenda\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,97 Gb Total Physical Memory | 2,04 Gb Available Physical Memory | 68,83% Memory free
4,81 Gb Paging File | 3,97 Gb Available in Paging File | 82,59% Paging File free
Paging file location(s): D:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files
Drive C: | 895,67 Mb Total Space | 310,39 Mb Free Space | 34,65% Space Free | Partition Type: FAT32
Drive D: | 464,86 Gb Total Space | 406,62 Gb Free Space | 87,47% Space Free | Partition Type: NTFS

Computer Name: NOTEBOOK | User Name: Jenda | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = Opera.HTML] -- D:\Program Files\Opera\Opera.exe (Opera Software)

[HKEY_USERS\S-1-5-21-1417001333-2111687655-2146992267-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- D:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htafile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
http [open] -- "D:\Program Files\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "D:\Program Files\Opera\Opera.exe" "%1" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "D:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "D:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "D:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"56863:TCP" = 56863:TCP:*:Enabled:Pando Media Booster
"56863:UDP" = 56863:UDP:*:Enabled:Pando Media Booster

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"56863:TCP" = 56863:TCP:*:Enabled:Pando Media Booster
"56863:UDP" = 56863:UDP:*:Enabled:Pando Media Booster
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"D:\Program Files\Pando Networks\Media Booster\PMB.exe" = D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster -- ()
"D:\Program Files\Samsung\Samsung Universal Print Driver 2\PrinterSelector\SUPDApp.exe" = D:\Program Files\Samsung\Samsung Universal Print Driver 2\PrinterSelector\SUPDApp.exe:*:Enabled:Samsung Universal Print Driver 2 -- (Samsung Electronics Co., Ltd.)
"D:\Program Files\MyWIFIRouter\QWi-Fi.exe" = D:\Program Files\MyWIFIRouter\QWi-Fi.exe:*:Enabled:WIFI Router
"D:\Program Files\Wi-Fi\Wi-Fi.exe" = D:\Program Files\Wi-Fi\Wi-Fi.exe:*:Enabled:Wi-Fi.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"D:\Program Files\Opera\opera.exe" = D:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"D:\Program Files\Winamp\winamp.exe" = D:\Program Files\Winamp\winamp.exe:*:Disabled:Winamp -- (Nullsoft, Inc.)
"D:\Documents and Settings\Jenda\Local Settings\Temp\Keygen.exe" = D:\Documents and Settings\Jenda\Local Settings\Temp\Keygen.exe:*:Enabled:Keygen
"D:\Program Files\Pando Networks\Media Booster\PMB.exe" = D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster -- ()
"D:\WINDOWS\twain_32\Samsung\ScanMgr.exe" = D:\WINDOWS\twain_32\Samsung\ScanMgr.exe:*:Enabled:Scan Manger -- (Samsung Electronics)
"D:\WINDOWS\twain_32\Samsung\SCX3200\Scan2Pc.exe" = D:\WINDOWS\twain_32\Samsung\SCX3200\Scan2Pc.exe:*:Enabled:ScanToPC -- ()
"D:\WINDOWS\twain_32\Samsung\SCX3200\Sscan2io.exe" = D:\WINDOWS\twain_32\Samsung\SCX3200\Sscan2io.exe:*:Enabled:SScanToIO -- ()
"D:\Program Files\Unreal\Unreal Tournament 2004\System\UT2004.exe" = D:\Program Files\Unreal\Unreal Tournament 2004\System\UT2004.exe:*:Enabled:UT2004
"D:\WINDOWS\system32\javaw.exe" = D:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary -- (Oracle Corporation)
"D:\Program Files\TmNationsForever\TmForever.exe" = D:\Program Files\TmNationsForever\TmForever.exe:*:Enabled:TmForever
"D:\Program Files\EA SPORTS\FIFA 07\fifa07.exe" = D:\Program Files\EA SPORTS\FIFA 07\fifa07.exe:*:Enabled:fifa07
"D:\Program Files\MyPhoneExplorer\MyPhoneExplorer.exe" = D:\Program Files\MyPhoneExplorer\MyPhoneExplorer.exe:*:Enabled:MyPhoneExplorer -- (F.J. Wechselberger)
"D:\Documents and Settings\Jenda\Plocha\Need for Speed Underground 2\speed2.exe" = D:\Documents and Settings\Jenda\Plocha\Need for Speed Underground 2\speed2.exe:*:Enabled:speed2
"D:\Program Files\City Car Driving\bin\win32\starter.exe" = D:\Program Files\City Car Driving\bin\win32\starter.exe:*:Enabled:starter
"D:\Program Files\Duel of Champions\MMDoC-PDCLive\Launcher.exe" = D:\Program Files\Duel of Champions\MMDoC-PDCLive\Launcher.exe:*:Enabled:Launcher
"D:\Program Files\Duel of Champions\MMDoC-PDCLive\GameData\Game.exe" = D:\Program Files\Duel of Champions\MMDoC-PDCLive\GameData\Game.exe:*:Enabled:Might & Magic : Duel of Champions
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.2380\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.2380\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Program Files\Battle.net\Battle.net.exe" = D:\Program Files\Battle.net\Battle.net.exe:*:Enabled:Battle.net -- (Blizzard Entertainment)
"D:\Program Files\Hearthstone\Hearthstone.exe" = D:\Program Files\Hearthstone\Hearthstone.exe:*:Enabled:Hearthstone -- ()
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.beta.2417\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.beta.2417\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.beta.2426\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.beta.2426\Agent.exe:*:Enabled:Battle.net Update Agent -- (Blizzard Entertainment)
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.beta.2514\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.beta.2514\Agent.exe:*:Enabled:Battle.net Update Agent -- (Blizzard Entertainment)
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.2816\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.2816\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.2880\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.2880\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3147\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3147\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3182\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3182\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Program Files\Samsung\Samsung Universal Print Driver 2\PrinterSelector\SUPDApp.exe" = D:\Program Files\Samsung\Samsung Universal Print Driver 2\PrinterSelector\SUPDApp.exe:*:Enabled:Samsung Universal Print Driver 2 -- (Samsung Electronics Co., Ltd.)
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3372\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3372\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Program Files\Diablo III\Diablo III.exe" = D:\Program Files\Diablo III\Diablo III.exe:*:Enabled:Diablo III
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3427\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3427\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3454\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3454\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3478\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3478\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3526\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3526\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3632\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3632\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3634\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3634\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3668\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3668\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3669\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3669\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3688\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3688\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Program Files\Valve\hl.exe" = D:\Program Files\Valve\hl.exe:*:Enabled:Half-Life Launcher -- (Valve)
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3689\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3689\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3715\Agent.exe" = D:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.3715\Agent.exe:*:Enabled:Battle.net Update Agent
"D:\Program Files\Bonjour\mDNSResponder.exe" = D:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service -- (Apple Inc.)
"D:\Program Files\iDisplay\iDisplay.exe" = D:\Program Files\iDisplay\iDisplay.exe:*:Enabled:iDisplay Server
"D:\Program Files\Steam\Steam.exe" = D:\Program Files\Steam\Steam.exe:*:Enabled:Steam
"D:\Program Files\Steam\bin\steamwebhelper.exe" = D:\Program Files\Steam\bin\steamwebhelper.exe:*:Enabled:Steam Web Helper
"D:\Program Files\MyWIFIRouter\QWi-Fi.exe" = D:\Program Files\MyWIFIRouter\QWi-Fi.exe:*:Enabled:WIFI Router
"D:\Program Files\Skype\Phone\Skype.exe" = D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)
"D:\Program Files\Wi-Fi\Wi-Fi.exe" = D:\Program Files\Wi-Fi\Wi-Fi.exe:*:Enabled:Wi-Fi.exe
"D:\Program Files\Mount&Blade Warband\mb_warband.exe" = D:\Program Files\Mount&Blade Warband\mb_warband.exe:*:Enabled:Mount&Blade: Warband -- ( Taleworlds Entertainment)
"D:\Program Files\Mozilla Firefox\firefox.exe" = D:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (D:\Program Files\Mozilla Firefox) -- (Mozilla Corporation)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{102AA3B3-50E8-DA55-86B4-D90F408ADA01}" = CCC Help Finnish
"{147E265E-7C2C-D1A6-EAEA-5F91846F7710}" = Catalyst Control Center Graphics Full New
"{226CDCF1-BFDE-200B-1458-F89A9B5AF3E2}" = CCC Help English
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20
"{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 67
"{2A981294-F14C-4F0F-9627-D793270922F8}" = Bonjour
"{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1" = Lightshot-5.3.0.0
"{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{378E39C3-92F2-4241-AC90-FAF023007D6D}" = Klient pro správu práv Microsoft Windows Rights Management Services s aktualizací Service Pack 2
"{3829E085-3C1B-0C86-678D-C76B23D5E890}" = ccc-core-static
"{3A3100C2-050F-2762-5EC0-57915D92B677}" = CCC Help German
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3E519EE9-437B-9687-D128-E4A3165EC14F}" = CCC Help Swedish
"{3F3209D9-2545-CA8E-3C1B-2B7FA837960F}" = CCC Help Dutch
"{48806D1D-C8D3-4235-8893-D5A03BAFC307}" = LibreOffice 5.0.0.5
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B006905-F307-7EED-35EF-6AA50FE53887}" = CCC Help Portuguese
"{4D168C64-DB4C-D9B1-05FD-AC6C9BF1EF63}" = Skins
"{4D808F4B-E2AE-259C-937B-203ACDBB1CBC}" = ccc-utility
"{4DC59BF3-0D72-3CE8-BFEF-1E8FAF689EB0}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x86)
"{546C143E-68DC-314D-97BC-1E454E3BA429}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY
"{5538375F-0A5A-CB58-9A83-9C58E9753BBC}" = Catalyst Control Center Graphics Light
"{55595412-1859-109D-03F4-0C739CC208C0}" = CCC Help Polish
"{59A58A51-4E21-468E-836E-7E7E6A724692}" = World of Warcraft Classic
"{5CBAD8D9-42F1-46BA-6E14-8422EA2E74A3}" = CCC Help Danish
"{60D32CDC-E3BE-4578-BA10-29322307CDDC}" = Logitech Gaming Software 5.10
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{69A6DE42-B5CA-58C9-91B3-E01D82DCC4C4}" = ccc-core-preinstall
"{6A0549A9-1B96-498C-ACBC-3943001FEB19}" = Skype™ 7.12
"{6D048296-8267-F280-C4FF-288D04F89E1B}" = CCC Help Hungarian
"{705A71BC-D8C6-BB57-ADA4-96A181084A9C}" = Catalyst Control Center Core Implementation
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7E20EFE6-E604-48C6-8B39-BA4742F2CDB4}" = Zune Desktop Theme
"{80041B17-8DC4-CC4F-B5B2-44F0565F1E17}" = CCC Help Russian
"{82C6713B-7A36-EA78-01BF-9F25C32E2FEB}" = CCC Help Greek
"{86A7EED0-02D0-4D91-8183-8D2F23F5E6AE}" = TP-LINK TL-WN721N_TL-WN722N Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A5EE663-5085-572C-EAC9-E0EF94CF764C}" = CCC Help Chinese Standard
"{8A9F72AA-5BA0-4667-5D9C-FB06FDF938D8}" = CCC Help Italian
"{93EEE3C6-608D-119C-C061-49703FF025F3}" = Catalyst Control Center Localization All
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}" = Counter-Strike 1.6
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A2C9CD1B-2551-3AED-B244-6698FB929FA6}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A3276EED-22A1-4808-9AA3-88A451482E10}" = Catalyst Control Center - Branding
"{A7A1E2EB-C775-35E9-6ABE-7799F0984779}" = CCC Help Norwegian
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.08) - Czech
"{B1D1BA13-6A5C-28F8-254B-56EF859529B0}" = CCC Help Chinese Traditional
"{B993267B-C532-5C34-F396-A158D879030B}" = CCC Help Korean
"{BF6CF460-40C3-49BA-800A-4B934B6498B1}" = Scan Assistant
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C58037D4-BC28-5453-28CF-DB22613D14F8}" = CCC Help Czech
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 Service Pack 1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{DDBB7C89-1A09-441E-AA0F-6AA465755C17}" = REALTEK DTV USB DEVICE
"{DE915B98-B18B-DBAC-7A50-CF89E7A1A0F6}" = Catalyst Control Center Graphics Full Existing
"{DFCAEFA6-4EDD-D97A-7966-F0274FA71561}" = CCC Help French
"{E2E13FEE-4EA4-9565-7610-C48FDF17CF27}" = CCC Help Japanese
"{E40CE35C-27F5-4EBF-82F9-13238BCA3572}" = HP Wireless Assistant
"{E46AFE69-D97D-BBB3-DF93-E014A0952656}" = CCC Help Spanish
"{EBB81ECD-1D19-968B-6985-90E2BC3B2B3F}" = CCC Help Turkish
"{EC905264-BCFE-423B-9C42-C3A106266790}" = Klient Správy přístupových práv v systému Windows SP2, zpětná kompatibilita
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F1D7AC58-554A-4A58-B784-B61558B1449A}" = QLBCASL
"{F402D9E8-0D08-0A6A-706C-1D82F38ABB67}" = CCC Help Thai
"Adobe Flash Player ActiveX" = Adobe Flash Player 20 ActiveX
"Adobe Flash Player NPAPI" = Adobe Flash Player 20 NPAPI
"Adobe Flash Player PPAPI" = Adobe Flash Player 20 PPAPI
"Adobe Shockwave Player" = Adobe Shockwave Player 12.0
"ATI Display Driver" = ATI Display Driver
"Audacity_is1" = Audacity 2.1.0
"avast" = avast! Free Antivirus
"Battle.net" = Battle.net
"Bezdrátový adaptér Broadcom 802.11 LAN" = Bezdrátový adaptér Broadcom 802.11 LAN
"BlazeDTV 6.0_is1" = BlazeDTV 6.0
"BSPlayerf" = BS.Player FREE
"CCleaner" = CCleaner
"CDisplay_is1" = CDisplay 1.8
"Hearthstone" = Hearthstone
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 9.8.0
"Marvell Miniport Driver" = Marvell Miniport Driver
"MaxFire Blaze5" = MaxFire Blaze5
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft Visual Studio 2010 Tools for Office Runtime (x86)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x86)
"Mount&Blade Warband" = Mount&Blade Warband
"Mozilla Firefox 43.0.3 (x86 cs)" = Mozilla Firefox 43.0.3 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MPE" = MyPhoneExplorer
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"Opera 12.14.1738" = Opera 12.14
"Opera 34.0.2036.25" = Opera Stable 34.0.2036.25
"Samsung SCX-3200 Series" = Samsung SCX-3200 Series
"Samsung Universal Print Driver 2" = Samsung Universal Print Driver 2
"Totalcmd" = Total Commander (Remove or Repair)
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"Winamp" = Winamp
"WinRAR archiver" = WinRAR 4.20 (32-bit)
"winusb0200" = Microsoft WinUsb 2.0
"World of Warcraft Classic 1.12.1" = World of Warcraft Classic

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1417001333-2111687655-2146992267-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"PhotoFiltre 7" = PhotoFiltre 7
"QIP 2005" = QIP 2005 8097

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 19.12.2015 13:37:57 | Computer Name = NOTEBOOK | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 19.12.2015 13:37:57 | Computer Name = NOTEBOOK | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 2062

Error - 19.12.2015 13:37:57 | Computer Name = NOTEBOOK | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 2062

Error - 22.12.2015 13:01:38 | Computer Name = NOTEBOOK | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 22.12.2015 13:01:38 | Computer Name = NOTEBOOK | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 1953

Error - 22.12.2015 13:01:38 | Computer Name = NOTEBOOK | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 1953

Error - 22.12.2015 13:01:40 | Computer Name = NOTEBOOK | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 22.12.2015 13:01:40 | Computer Name = NOTEBOOK | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 4125

Error - 22.12.2015 13:01:40 | Computer Name = NOTEBOOK | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 4125

Error - 28.12.2015 17:36:28 | Computer Name = NOTEBOOK | Source = Application Error | ID = 1000
Description = Chybující aplikace plugin-container.exe, verze 43.0.2.5833, chybující
modul mozglue.dll, verze 43.0.2.5833, adresa chyby 0x0000ed36.

[ System Events ]
Error - 31.12.2015 5:02:52 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7034
Description = Služba Bonjour Service byla neočekávaně ukončena. Tento stav nastal
již 1krát.

Error - 31.12.2015 5:02:52 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7034
Description = Služba Java Quick Starter byla neočekávaně ukončena. Tento stav nastal
již 1krát.

Error - 31.12.2015 5:02:52 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7034
Description = Služba Com4QLBEx byla neočekávaně ukončena. Tento stav nastal již
1krát.

Error - 31.12.2015 5:02:52 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7031
Description = Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát.
Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error - 31.12.2015 5:08:00 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7000
Description = Služba DgiVecp neuspěla při spuštění v důsledku následující chyby:
%%2

Error - 31.12.2015 5:08:00 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7000
Description = Služba SSPORT neuspěla při spuštění v důsledku následující chyby:
%%2

Error - 31.12.2015 6:52:52 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7000
Description = Služba DgiVecp neuspěla při spuštění v důsledku následující chyby:
%%2

Error - 31.12.2015 6:52:52 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7000
Description = Služba SSPORT neuspěla při spuštění v důsledku následující chyby:
%%2

Error - 1.1.2016 10:59:00 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7000
Description = Služba DgiVecp neuspěla při spuštění v důsledku následující chyby:
%%2

Error - 1.1.2016 10:59:00 | Computer Name = NOTEBOOK | Source = Service Control Manager | ID = 7000
Description = Služba SSPORT neuspěla při spuštění v důsledku následující chyby:
%%2


< End of report >

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalejší notebook

#20 Příspěvek od Márty84 »

:!: Vypnete antivir, at nebrani programu v praci.
:arrow: Znovu spustte OTL
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]
[CreateRestorePoint]

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp

:otl
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1417001333-2111687655-2146992267-1004\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://D:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105 File not found
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe File not found
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe File not found
[1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[2 D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[12 D:\WINDOWS\Installer\*.tmp files -> D:\WINDOWS\Installer\*.tmp -> ]
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Jenda66
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 18 bře 2007 08:58

Re: Pomalejší notebook

#21 Příspěvek od Jenda66 »

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Jenda
->Temp folder emptied: 2873500 bytes
->Temporary Internet Files folder emptied: 33330 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 372955578 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 3816 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: NetworkService
->Temporary Internet Files folder emptied: 33170 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 1318955 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 16426 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 360,00 mb


[EMPTYFLASH]

User: All Users

User: Default User

User: Jenda
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

Total Flash Files Cleaned = 0,00 mb

D:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTL Restore Point
========== FILES ==========
File/Folder D:\WINDOWS\system32\*.tmp.dll not found.
File/Folder D:\WINDOWS\system32\SET*.tmp not found.
File/Folder D:\WINDOWS\*.tmp not found.
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-1417001333-2111687655-2146992267-1004\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-1417001333-2111687655-2146992267-1004\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&xportovat do aplikace Microsoft Excel\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Od&eslat do aplikace OneNote\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB5F1910-F110-11d2-BB9E-00C04F795683}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB5F1910-F110-11d2-BB9E-00C04F795683}\ not found.
File/Folder D:\WINDOWS\*.tmp not found.
D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP273.tmp folder deleted successfully.
D:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPC39.tmp folder deleted successfully.
D:\WINDOWS\Installer\MSI312.tmp deleted successfully.
D:\WINDOWS\Installer\MSI36E.tmp deleted successfully.
D:\WINDOWS\Installer\MSI36F.tmp deleted successfully.
D:\WINDOWS\Installer\MSI370.tmp deleted successfully.
D:\WINDOWS\Installer\MSI371.tmp deleted successfully.
D:\WINDOWS\Installer\MSI372.tmp deleted successfully.
D:\WINDOWS\Installer\MSIAD9.tmp deleted successfully.
D:\WINDOWS\Installer\MSIB17.tmp deleted successfully.
D:\WINDOWS\Installer\MSIB18.tmp deleted successfully.
D:\WINDOWS\Installer\MSIB19.tmp deleted successfully.
D:\WINDOWS\Installer\MSIB1A.tmp deleted successfully.
D:\WINDOWS\Installer\MSIB1B.tmp deleted successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 01022016_122507

Files\Folders moved on Reboot...
File move failed. D:\WINDOWS\temp\_avast_\AvastLock.txt scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalejší notebook

#22 Příspěvek od Márty84 »

:arrow: Znovu pouzijte programek DelFix, uklidi po OTL


Jinak uz pc vypada cisty, jak na havet, tak brzdy, cili vic uz z nej timto zpusobem nevymacknem :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Jenda66
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 18 bře 2007 08:58

Re: Pomalejší notebook

#23 Příspěvek od Jenda66 »

Moc děkuji. Notebook je mnohem rychlejší a člověk z něj má lepší pocit. :) Víc z něj asi ani vymáčknout nepůjde kvůli stáří materiálu. Ještě jednou moc za všechno děkuji!

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalejší notebook

#24 Příspěvek od Márty84 »

Nemate vubec zac, rado se stalo! :)

Mejte se a treba zase nekdy :bye:

:closed:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno