OTL logfile created on: 5.5.2010 19:24:09 - Run 1
OTL by OldTimer - Version 3.2.4.1 Folder = C:\Documents and Settings\rhorsak\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 59,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 80,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 97,65 Gb Total Space | 78,84 Gb Free Space | 80,74% Space Free | Partition Type: NTFS
Drive D: | 114,81 Gb Total Space | 100,81 Gb Free Space | 87,81% Space Free | Partition Type: NTFS
Drive E: | 74,53 Gb Total Space | 67,24 Gb Free Space | 90,22% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
Drive G: | 195,31 Gb Total Space | 26,58 Gb Free Space | 13,61% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive R: | 195,31 Gb Total Space | 26,58 Gb Free Space | 13,61% Space Free | Partition Type: NTFS
Drive Y: | 53,88 Gb Total Space | 46,96 Gb Free Space | 87,16% Space Free | Partition Type: NTFS
Computer Name: PC0011P
Current User Name: rhorsak
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - [2010.05.05 19:22:21 | 000,570,880 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\rhorsak\Plocha\OTL.exe
PRC - [2010.05.05 15:14:53 | 000,182,784 | ---- | M] (Macromedia, Inc.) -- C:\Documents and Settings\rhorsak\Local Settings\Temp\awkvrft.exe
PRC - [2010.05.05 14:50:09 | 000,182,784 | ---- | M] () -- C:\WINDOWS\system32\regedit.exe
PRC - [2010.04.26 19:13:25 | 000,531,440 | ---- | M] (Google Inc.) -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
PRC - [2010.04.16 09:22:16 | 005,206,824 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version5\TeamViewer.exe
PRC - [2010.04.16 09:18:34 | 000,173,352 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe
PRC - [2010.03.01 14:15:28 | 000,451,224 | ---- | M] () -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\Seznam.cz\postak.exe
PRC - [2010.01.14 17:06:59 | 000,123,904 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Desktop Search\WindowsSearch.exe
PRC - [2010.01.14 17:00:34 | 000,220,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\logon.scr
PRC - [2010.01.14 17:00:04 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2009.12.14 14:28:48 | 000,962,272 | ---- | M] (Acronis) -- C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
PRC - [2009.12.14 14:24:24 | 000,377,600 | ---- | M] (Acronis) -- C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
PRC - [2009.12.14 14:24:18 | 000,619,296 | ---- | M] (Acronis) -- C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
PRC - [2009.12.14 14:09:32 | 004,377,960 | ---- | M] (Acronis) -- C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
PRC - [2009.08.17 22:54:54 | 012,957,536 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
PRC - [2009.05.14 15:47:54 | 000,731,840 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
PRC - [2009.05.14 15:47:08 | 002,029,640 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
PRC - [2008.07.29 16:59:38 | 003,405,672 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\DIAS\CnxDIAS.exe
PRC - [2008.04.14 13:00:00 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rdpclip.exe
PRC - [2006.01.02 17:41:22 | 000,045,056 | ---- | M] (ATI Technologies Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
PRC - [2005.09.24 07:30:38 | 000,483,328 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Adobe\Acrobat 7.0\Distillr\acrotray.exe
========== Modules (SafeList) ==========
MOD - [2010.05.05 19:22:21 | 000,570,880 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\rhorsak\Plocha\OTL.exe
MOD - [2010.04.16 09:22:16 | 000,107,816 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version5\TV.dll
MOD - [2010.01.14 16:58:14 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5705_x-ww_36cfed49\comctl32.dll
MOD - [2008.04.14 13:00:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008.04.14 13:00:00 | 000,053,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winsta.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- -- (ose)
SRV - [2010.04.21 19:37:19 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010.04.16 09:18:34 | 000,173,352 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe -- (TeamViewer5)
SRV - [2009.12.14 14:24:18 | 000,619,296 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc)
SRV - [2009.05.14 15:54:22 | 000,020,680 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv)
SRV - [2009.05.14 15:47:54 | 000,731,840 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn)
SRV - [2008.07.29 20:16:38 | 000,132,096 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing)
SRV - [2008.07.29 16:59:38 | 003,405,672 | ---- | M] (CANON INC.) [Auto | Running] -- C:\Program Files\Canon\DIAS\CnxDIAS.exe -- (Canon Driver Information Assist Service)
========== Driver Services (SafeList) ==========
DRV - [2010.04.22 11:05:00 | 000,902,432 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\tdrpm251.sys -- (tdrpman251) Acronis Try&Decide and Restore Points filter (build 251)
DRV - [2010.04.22 11:04:57 | 000,570,016 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\timntr.sys -- (timounter)
DRV - [2010.04.22 11:04:52 | 000,156,928 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\snapman.sys -- (snapman)
DRV - [2010.04.22 07:21:45 | 000,093,568 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvata.sys -- (nvata)
DRV - [2010.04.22 07:21:33 | 000,034,048 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2010.04.22 07:21:33 | 000,013,056 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2010.01.14 17:04:10 | 000,009,472 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\DumpDrv.sys -- (DumpDrv)
DRV - [2009.05.14 15:49:32 | 000,094,360 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir)
DRV - [2009.05.14 15:47:14 | 000,107,256 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2009.05.14 15:41:10 | 000,114,472 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2008.04.14 01:15:14 | 000,060,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbaudio.sys -- (usbaudio) Ovladač zvukové karty USB (WDM)
DRV - [2008.04.13 23:11:00 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\changer.sys -- (Changer)
DRV - [2008.04.13 23:10:28 | 000,034,688 | ---- | M] (Toshiba Corp.) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\lbrtfdc.sys -- (lbrtfdc)
DRV - [2007.01.25 15:18:04 | 001,305,600 | ---- | M] (C-Media Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\c6501.sys -- (cm102u32)
DRV - [2007.01.25 15:18:04 | 001,305,600 | ---- | M] (C-Media Inc) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\c6501.sys -- (c65013264)
DRV - [2006.07.01 22:42:58 | 000,043,008 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
DRV - [2006.06.07 23:08:56 | 001,580,544 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2006.01.13 15:00:52 | 000,015,872 | ---- | M] (Flint Incorporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\vd_filedisk.sys -- (VD_FileDisk)
DRV - [2004.08.13 04:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2004.05.02 10:47:08 | 000,023,040 | R--- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\GVCplDrv.sys -- (GVCplDrv)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1651790719-4201147004-1817147730-1138\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://www.msn.cz/
IE - HKU\S-1-5-21-1651790719-4201147004-1817147730-1138\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs
IE - HKU\S-1-5-21-1651790719-4201147004-1817147730-1138\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 17 52 2E 2D AD EA CA 01 [binary data]
IE - HKU\S-1-5-21-1651790719-4201147004-1817147730-1138\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
O1 HOSTS File: ([2010.05.05 13:32:13 | 000,393,458 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1
www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.100888290cs.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1
www.10sek.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.123topsearch.com
O1 - Hosts: 127.0.0.1 123topsearch.com
O1 - Hosts: 127.0.0.1
www.132.com
O1 - Hosts: 127.0.0.1 132.com
O1 - Hosts: 127.0.0.1
www.136136.net
O1 - Hosts: 127.0.0.1 136136.net
O1 - Hosts: 127.0.0.1
www.163ns.com
O1 - Hosts: 127.0.0.1 163ns.com
O1 - Hosts: 13589 more lines...
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (DIALux 3.1 ULDBrowserHelper Class) - {69AB812A-8CE4-4BF3-B49B-3B60A9F31FB2} - C:\Program Files\DIALux\DLXShellExtension.dll (DIAL GmbH, Germany)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (AcroIEToolbarHelper Class) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-1651790719-4201147004-1817147730-1138\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 7.0] C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Acronis Služba Plánovač2] C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
O4 - HKLM..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe (Acronis)
O4 - HKLM..\Run: [ATICCC] C:\Program Files\ATI Technologies\ATI.ACE\cli.exe (ATI Technologies Inc.)
O4 - HKLM..\Run: [C6501Sound] File not found
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKLM..\Run: [Regedit32] C:\WINDOWS\system32\regedit.exe ()
O4 - HKLM..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
O4 - HKU\S-1-5-21-1651790719-4201147004-1817147730-1138..\Run: [Seznam Postak] C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\Seznam.cz\postak.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Acrobat Speed Launcher.lnk = C:\WINDOWS\Installer\{AC76BA86-1033-C740-7760-100000000002}\SC_Acrobat.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWelcomeScreen = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1651790719-4201147004-1817147730-1138\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Převést cíl vazby do existujícího PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Převést do Adobe PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Převést do existujícího PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Převést výběr do Adobe PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Převést výběr do existujícího PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Převést vybrané vazby do Adobe PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Převést vybrané vazby do existujícího PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra Button: Vytvořit mobilní oblíbenou položku - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Vytvořit mobilní oblíbenou položku… - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.3.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = ehv-projekt.cz
O18 - Protocol\Handler\dialux {8352FA4C-39C6-11D3-ADBA-00A0244FB1A2} - C:\Program Files\DIALux\DLXToolBox.dll (DIAL GmbH, Germany)
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\mctp {d7b95390-b1c5-11d0-b111-0080c712fe82} - C:\Program Files\Microsoft ActiveSync\aatp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: TaskMan - (C:\RECYCLER\S-1-5-21-2560505497-3135673451-148412697-0683\mgrls32.exe) - C:\RECYCLER\S-1-5-21-2560505497-3135673451-148412697-0683\mgrls32.exe ()
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\RailNotification: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Nebe.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Nebe.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.04.21 13:04:00 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (auto_reactivate C:\bootwiz\asrm.bin) - File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2010.04.21 13:03:28 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: SSHNAS - File not found
Drivers32: MSACM.CEGSM - C:\WINDOWS\System32\mobileV.acm ()
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: VIDC.ACDV - ACDV.dll File not found
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point (9222804688854843392)
========== Files/Folders - Created Within 30 Days ==========
[2010.05.05 19:19:11 | 000,570,880 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\rhorsak\Plocha\OTL.exe
[2010.05.05 18:40:46 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2010.05.05 18:40:45 | 000,000,000 | ---D | C] -- C:\rsit
[2010.05.05 14:49:34 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\rhorsak\Recent
[2010.05.05 13:35:09 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010.05.05 12:55:12 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2010.05.05 12:55:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
[2010.05.05 12:33:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2010.05.05 11:26:28 | 000,095,024 | ---- | C] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2010.05.05 10:43:29 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft
[2010.05.05 10:43:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Lavasoft
[2010.05.05 10:28:47 | 000,057,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wshcs.dll
[2010.05.05 10:28:47 | 000,057,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wshcs.dll
[2010.05.05 10:28:47 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmerrcsy.dll
[2010.05.05 10:28:47 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmerrcsy.dll
[2010.05.05 09:09:14 | 000,008,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\i2omgmt.sys
[2010.05.05 09:09:01 | 000,034,688 | ---- | C] (Toshiba Corp.) -- C:\WINDOWS\System32\drivers\lbrtfdc.sys
[2010.05.05 09:09:01 | 000,034,688 | ---- | C] (Toshiba Corp.) -- C:\WINDOWS\System32\dllcache\lbrtfdc.sys
[2010.05.05 09:08:51 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\Changer.sys.bak
[2010.05.05 09:08:51 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\changer.sys
[2010.05.05 09:08:51 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\changer.sys
[2010.05.05 09:03:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\ESET
[2010.05.04 08:20:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikaci
[2010.05.04 08:20:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Dokumenty\PdfGrabber
[2010.05.04 08:14:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\Thinstall
[2010.05.04 08:14:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\Thinstall
[2010.05.03 07:51:21 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ptpusb.dll
[2010.05.03 07:51:20 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ptpusd.dll
[2010.04.30 07:01:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Dokumenty\My Scans
[2010.04.30 07:01:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Dokumenty\šablona_ehv_mail_soubory
[2010.04.29 16:19:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Dokumenty\DIALux
[2010.04.29 16:16:55 | 001,966,080 | ---- | C] (Amyuni Technologies
http://www.amyuni.com) -- C:\WINDOWS\System32\cdintf251.dll
[2010.04.29 16:16:50 | 003,833,856 | ---- | C] (Amyuni Technologies
http://www.amyuni.com) -- C:\WINDOWS\System32\cdintf300.dll
[2010.04.29 16:14:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\DIALux
[2010.04.29 16:14:21 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DIALux
[2010.04.29 16:14:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\DIALux
[2010.04.29 16:14:20 | 000,000,000 | ---D | C] -- C:\Program Files\DIALux
[2010.04.29 13:41:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Dokumenty\Moje naskenované obrázky
[2010.04.28 08:41:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\ESET
[2010.04.27 14:48:23 | 000,000,000 | ---D | C] -- C:\TEMP
[2010.04.27 10:52:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\Artisteer
[2010.04.27 10:49:06 | 000,000,000 | ---D | C] -- C:\Program Files\Artisteer 2
[2010.04.27 09:30:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\XSxS
[2010.04.27 09:30:22 | 000,000,000 | ---D | C] -- C:\Program Files\Xenocode
[2010.04.27 09:30:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\Xenocode
[2010.04.27 08:32:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\Ashampoo
[2010.04.27 08:31:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\ashampoo
[2010.04.27 08:31:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\ashampoo
[2010.04.27 08:31:07 | 000,000,000 | ---D | C] -- C:\Program Files\Ashampoo
[2010.04.26 15:12:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\dvdcss
[2010.04.23 15:37:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\AdobeUM
[2010.04.23 15:36:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\FileOpen
[2010.04.23 15:36:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\FileOpen
[2010.04.23 07:31:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2010.04.23 07:15:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\HateML
[2010.04.23 07:03:56 | 000,000,000 | ---D | C] -- C:\Program Files\QIP Infium
[2010.04.23 06:36:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\ACD Systems
[2010.04.23 06:36:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\ACD Systems
[2010.04.23 06:36:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\ACD Systems
[2010.04.23 06:35:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ACD Systems
[2010.04.23 06:35:53 | 000,000,000 | ---D | C] -- C:\Program Files\ACD Systems
[2010.04.23 06:34:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\Downloaded Installations
[2010.04.22 13:42:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\TeamViewer
[2010.04.22 13:41:52 | 000,000,000 | ---D | C] -- C:\Program Files\TeamViewer
[2010.04.22 13:39:37 | 000,000,000 | ---D | C] -- C:\Program Files\DreamCom
[2010.04.22 11:04:52 | 000,156,928 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\snapman.sys
[2010.04.22 11:04:28 | 000,000,000 | ---D | C] -- C:\Program Files\Acronis
[2010.04.22 10:42:49 | 001,396,928 | ---- | C] (Acronis) -- C:\WINDOWS\System32\auto_reactivate.exe
[2010.04.22 10:42:42 | 000,000,000 | RHSD | C] -- C:\bootwiz
[2010.04.22 10:42:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\Acronis
[2010.04.22 09:57:05 | 000,902,592 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\tdrpm228.sys
[2010.04.22 09:57:01 | 000,570,016 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\timntr.sys
[2010.04.22 09:57:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Acronis
[2010.04.22 09:56:59 | 000,044,704 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\tifsfilt.sys
[2010.04.22 09:48:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Adobe
[2010.04.22 09:47:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\vlc
[2010.04.22 09:46:37 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2010.04.22 09:37:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\Adobe
[2010.04.22 09:36:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010.04.22 09:36:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\Adobe PDF
[2010.04.22 09:35:53 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010.04.22 09:23:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
[2010.04.22 09:16:13 | 000,000,000 | ---D | C] -- C:\Program Files\JDownloader
[2010.04.22 09:16:08 | 000,411,368 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deploytk.dll
[2010.04.22 09:16:08 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2010.04.22 09:16:08 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2010.04.22 09:16:08 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2010.04.22 09:16:08 | 000,073,728 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2010.04.22 09:15:53 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2010.04.22 09:13:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\Sun
[2010.04.22 09:07:35 | 000,902,432 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\tdrpm251.sys
[2010.04.22 09:07:04 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Acronis
[2010.04.22 08:41:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Canon
[2010.04.22 08:40:54 | 000,081,987 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\AUCPLMNT.DLL
[2010.04.22 08:38:34 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2010.04.22 08:29:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\AIMP
[2010.04.22 08:28:20 | 000,000,000 | ---D | C] -- C:\Program Files\AIMP2
[2010.04.22 08:14:19 | 000,712,704 | ---- | C] (Sensaura Ltd) -- C:\WINDOWS\System32\c6501a3d.dll
[2010.04.22 08:14:19 | 000,032,768 | ---- | C] (C-Media Electronics Inc.) -- C:\WINDOWS\System32\c6501p.dll
[2010.04.22 08:14:17 | 005,783,552 | ---- | C] (C-Media Corporation) -- C:\WINDOWS\System\c6501.cpl
[2010.04.22 08:14:17 | 001,305,600 | ---- | C] (C-Media Inc) -- C:\WINDOWS\System32\drivers\c6501.sys
[2010.04.22 08:14:17 | 000,000,000 | ---D | C] -- C:\Program Files\C-Media 6501 Sound
[2010.04.22 08:05:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\WinRAR
[2010.04.22 08:05:20 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010.04.22 07:24:24 | 000,176,128 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvuide.exe
[2010.04.22 07:24:04 | 000,176,128 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvusmb.exe
[2010.04.22 07:16:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\Skype
[2010.04.22 07:16:31 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2010.04.22 07:16:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Skype
[2010.04.22 07:14:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\Seznam.cz
[2010.04.21 20:14:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\HP
[2010.04.21 20:13:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\HPSSUPPLY
[2010.04.21 20:12:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\HP
[2010.04.21 20:11:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\HP
[2010.04.21 20:11:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Hewlett-Packard
[2010.04.21 20:11:31 | 000,000,000 | ---D | C] -- C:\Program Files\Hewlett-Packard
[2010.04.21 20:10:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Hewlett-Packard
[2010.04.21 20:09:58 | 000,118,272 | ---- | C] (Hewlett-Packard Company) -- C:\WINDOWS\System32\hpz3l58a.dll
[2010.04.21 20:09:19 | 000,007,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\serscan.sys
[2010.04.21 20:08:28 | 000,258,048 | ---- | C] (Hewlett-Packard) -- C:\WINDOWS\System32\hpzids01.dll
[2010.04.21 20:08:26 | 000,892,928 | ---- | C] (Hewlett-Packard Co.) -- C:\WINDOWS\System32\hpwtiop2.dll
[2010.04.21 20:08:26 | 000,675,840 | ---- | C] (Hewlett-Packard) -- C:\WINDOWS\System32\hpwwiax2.dll
[2010.04.21 20:08:26 | 000,364,544 | ---- | C] (Hewlett-Packard) -- C:\WINDOWS\System32\hppldcoi.dll
[2010.04.21 20:08:26 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\difxapi.dll
[2010.04.21 20:08:26 | 000,294,912 | ---- | C] (Hewlett-Packard Co.) -- C:\WINDOWS\System32\hpovst11.dll
[2010.04.21 20:08:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\carrier
[2010.04.21 20:08:13 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2010.04.21 20:08:10 | 000,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbscan.sys.bak
[2010.04.21 20:08:10 | 000,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbscan.sys
[2010.04.21 20:08:09 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbprint.sys
[2010.04.21 20:07:35 | 000,000,000 | -H-D | C] -- C:\Config.Msi
[2010.04.21 19:53:07 | 001,275,480 | ---- | C] (Hewlett-Packard) -- C:\WINDOWS\hpzshl01.exe
[2010.04.21 19:53:03 | 001,132,120 | ---- | C] (Hewlett-Packard) -- C:\WINDOWS\hpzmsi01.exe
[2010.04.21 19:50:11 | 000,000,000 | ---D | C] -- C:\Pošta
[2010.04.21 19:45:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\FLEXnet
[2010.04.21 19:37:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared
[2010.04.21 19:35:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Autodesk Shared
[2010.04.21 19:35:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Local Settings\Data aplikací\Autodesk
[2010.04.21 19:35:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\rhorsak\Data aplikací\Autodesk
[2010.04.21 19:35:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Autodesk
[2010.04.21 19:35:20 | 000,000,000 | ---D | C] -- C:\Program Files\AutoCAD 2010
[2010.04.21 19:33:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs