Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu, děkuji

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
CarterV
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 20 dub 2009 17:27

Re: Prosím o kontrolu logu, děkuji

#16 Příspěvek od CarterV »

OTL txt.

OTL logfile created on: 5.5.2011 11:18:18 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Alice\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1 022,00 Mb Total Physical Memory | 500,00 Mb Available Physical Memory | 49,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 80,00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 43,95 Gb Total Space | 0,87 Gb Free Space | 1,98% Space Free | Partition Type: NTFS
Drive D: | 49,21 Gb Total Space | 32,75 Gb Free Space | 66,56% Space Free | Partition Type: NTFS

Computer Name: ALVA | User Name: Alice | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2011.05.05 11:14:51 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Alice\Plocha\OTL.exe
PRC - [2011.04.18 19:25:12 | 003,460,784 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011.04.18 19:25:10 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2010.12.20 13:03:50 | 000,697,856 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
PRC - [2010.12.08 15:31:06 | 000,628,736 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2010.11.23 18:49:24 | 001,540,096 | ---- | M] (Nokia) -- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
PRC - [2010.11.16 15:48:32 | 000,152,576 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2010.11.15 14:41:18 | 000,367,496 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe
PRC - [2010.09.06 18:56:38 | 000,247,096 | ---- | M] () -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe
PRC - [2010.05.11 11:11:58 | 000,134,144 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
PRC - [2010.04.10 21:43:07 | 000,307,672 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2009.10.27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2009.07.13 13:36:30 | 000,211,216 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2009.07.13 13:36:28 | 000,414,992 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2009.02.15 17:30:00 | 000,111,928 | R--- | M] (SweetIM Technologies Ltd.) -- C:\Program Files\SweetIM\Messenger\SweetIM.exe
PRC - [2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008.04.05 22:49:01 | 000,098,394 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
PRC - [2004.08.30 16:37:08 | 000,286,720 | ---- | M] () -- C:\WINDOWS\vsnpstd2.exe
PRC - [2002.12.16 16:51:24 | 000,036,864 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe
PRC - [2001.05.06 11:14:22 | 000,020,549 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe


========== Modules (SafeList) ==========

MOD - [2011.05.05 11:14:51 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Alice\Plocha\OTL.exe
MOD - [2011.04.18 19:25:09 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\snxhk.dll
MOD - [2010.08.23 18:12:33 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2009.02.15 17:29:24 | 000,023,864 | R--- | M] (SweetIM Technologies Ltd.) -- C:\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll
MOD - [2008.04.26 16:14:22 | 000,042,672 | ---- | M] (Stardock.Net, Inc) -- C:\WINDOWS\system32\wbsys.dll
MOD - [2008.04.05 22:49:01 | 000,069,722 | ---- | M] (Synaptics, Inc.) -- C:\WINDOWS\system32\SynTPFcs.dll
MOD - [2006.07.11 19:35:38 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\Program Files\SweetIM\Messenger\msvcr71.dll


========== Win32 Services (SafeList) ==========

SRV - [2011.04.18 19:25:10 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2010.12.08 15:31:06 | 000,628,736 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2010.09.06 18:56:38 | 000,247,096 | ---- | M] () [Auto | Running] -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe -- (ICQ Service)
SRV - [2009.07.13 13:36:30 | 000,211,216 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2002.08.01 10:22:40 | 000,065,536 | ---- | M] (HP) [On_Demand | Stopped] -- C:\WINDOWS\system32\hpzipm12.exe -- (Pml Driver HPZ12)


========== Driver Services (SafeList) ==========

DRV - [2011.04.18 19:17:46 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011.04.18 19:17:34 | 000,307,288 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011.04.18 19:16:18 | 000,049,240 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011.04.18 19:16:06 | 000,102,488 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2011.04.18 19:13:21 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011.04.18 19:13:02 | 000,030,680 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011.04.18 19:12:58 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2010.07.30 15:16:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2010.07.30 15:16:44 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2010.07.30 15:16:42 | 000,023,040 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2010.07.30 15:16:38 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2010.07.26 13:24:46 | 000,137,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu)
DRV - [2010.07.26 13:24:42 | 000,008,576 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc)
DRV - [2009.07.13 13:36:12 | 000,019,096 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2008.08.26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008.04.05 22:48:39 | 001,038,208 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_DPV.sys -- (HSF_DPV)
DRV - [2008.04.05 22:48:38 | 000,703,616 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys -- (winachsf)
DRV - [2008.04.05 22:48:36 | 000,207,616 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSFHWICH.sys -- (HSFHWICH)
DRV - [2008.04.05 22:48:06 | 000,044,032 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys -- (bcm4sbxp)
DRV - [2008.04.05 22:47:28 | 000,276,480 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\camchal.sys -- (CAMCHALA)
DRV - [2008.04.05 22:47:28 | 000,034,048 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\camcaud.sys -- (CAMCAUD)
DRV - [2008.04.05 22:47:23 | 003,222,784 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\w29n51.sys -- (w29n51) Intel(R)
DRV - [2008.04.05 22:43:50 | 000,081,728 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\k750mgmt.sys -- (k750mgmt)
DRV - [2008.04.05 22:43:50 | 000,079,488 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\k750obex.sys -- (k750obex)
DRV - [2008.04.05 22:43:49 | 000,089,872 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\k750mdm.sys -- (k750mdm)
DRV - [2008.04.05 22:43:49 | 000,055,216 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\k750bus.sys -- (k750bus) Sony Ericsson 750 driver (WDM)
DRV - [2008.04.05 22:43:49 | 000,006,576 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\k750mdfl.sys -- (k750mdfl)
DRV - [2005.08.10 14:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x)
DRV - [2005.05.16 15:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x)
DRV - [2005.04.28 22:37:50 | 001,132,544 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2004.10.14 17:12:02 | 000,347,264 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\snpstd2.sys -- (snpstd2)
DRV - [2003.12.23 03:15:42 | 000,005,248 | ---- | M] ( ) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\xmasscsi.sys -- (xmasscsi)
DRV - [2003.12.21 18:24:22 | 000,140,800 | ---- | M] ( ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\xmasbus.sys -- (xmasbus)
DRV - [1996.04.03 21:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\giveio.sys -- (giveio)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.local

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.local

IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll (SweetIM Technologies Ltd.)
IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.local

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.defaulturl: "http://search.sweetim.com/search.asp?src=2&q="
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.google.cz/"
FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.4.48
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.9
FF - prefs.js..extensions.enabledItems: {EEE6C361-6118-11DC-9C72-001320C79847}:1.0.0.8
FF - prefs.js..extensions.enabledItems: wrc@avast.com:20110101
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_result ... r=1.1.9&q="
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.atlas.cz/?from=icqhp"
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "http://search.icq.com/search/afe_result ... id=afex&q="

FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2010.12.29 17:41:33 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011.05.05 10:50:59 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.04.20 10:45:34 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.03.25 23:16:07 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2010.12.29 17:41:34 | 000,000,000 | ---D | M]

[2009.02.13 19:06:27 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Extensions
[2011.05.05 10:56:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions
[2010.09.02 21:02:41 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.04.08 19:07:39 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2009.02.23 22:44:43 | 000,000,000 | ---D | M] (SweetIM Toolbar for Firefox) -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
[2011.05.04 22:47:40 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-1.xml
[2010.04.01 12:09:40 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-10.xml
[2010.04.11 18:23:18 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-11.xml
[2010.09.02 21:06:38 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-12.xml
[2008.09.23 21:50:51 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-2.xml
[2008.10.07 20:27:39 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-3.xml
[2008.10.20 19:03:37 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-4.xml
[2008.12.01 23:49:01 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-5.xml
[2009.02.11 15:39:18 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-6.xml
[2009.02.13 19:06:41 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-7.xml
[2009.04.07 11:51:23 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-8.xml
[2010.01.27 22:47:01 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-9.xml
[2010.05.12 17:40:48 | 000,001,042 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin.xml
[2009.02.23 22:44:38 | 000,003,915 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\sweetim.xml
[2010.09.02 21:02:17 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2009.07.18 19:30:34 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ALICE\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\RCNK83GY.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ALICE\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\RCNK83GY.DEFAULT\EXTENSIONS\{800B5000-A755-47E1-992B-48A1C1357F07}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ALICE\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\RCNK83GY.DEFAULT\EXTENSIONS\{EEE6C361-6118-11DC-9C72-001320C79847}
[2011.05.05 10:50:59 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2010.12.29 17:41:33 | 000,000,000 | ---D | M] (Firefox Synchronisation Extension) -- C:\PROGRAM FILES\NOKIA\NOKIA OVI SUITE\CONNECTORS\BOOKMARKS CONNECTOR\FIREFOXEXTENSION
[2010.01.27 20:22:55 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.01.27 20:22:55 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.01.27 20:22:55 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.01.27 20:22:55 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.01.27 20:22:55 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml

O1 HOSTS File: ([2001.10.25 14:00:00 | 000,000,737 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll (Google Inc.)
O2 - BHO: (SweetIM Toolbar Helper) - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.)
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (SweetIM Toolbar for Internet Explorer) - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.)
O3 - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\Toolbar\WebBrowser: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\Toolbar\WebBrowser: (SweetIM Toolbar for Internet Explorer) - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia)
O4 - HKLM..\Run: [SNPSTD2] C:\WINDOWS\vsnpstd2.exe ()
O4 - HKLM..\Run: [StatusClient] C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe (Hewlett-Packard)
O4 - HKLM..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.)
O4 - HKLM..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Synaptics, Inc.)
O4 - HKLM..\Run: [TomcatStartup] C:\Program Files\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe (Hewlett-Packard)
O4 - HKU\S-1-5-21-1935655697-1767777339-839522115-1004..\Run: [] File not found
O4 - HKU\S-1-5-21-1935655697-1767777339-839522115-1004..\Run: [ICQ] File not found
O4 - HKU\S-1-5-21-1935655697-1767777339-839522115-1004..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe (Nokia)
O4 - Startup: C:\Documents and Settings\Alice\Nabídka Start\Programy\Po spuštění\Registration Catz.LNK = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} http://upload.facebook.com/controls/200 ... oader5.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microso ... 9640985718 (MUWebControl Class)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 158.194.128.3 158.194.128.123
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - AppInit_DLLs: (wbsys.dll) - C:\WINDOWS\System32\wbsys.dll (Stardock.Net, Inc)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\WBSrv: DllName - C:\Program Files\Stardock\Object Desktop\WindowBlinds\wbsrv.dll - C:\Program Files\Stardock\Object Desktop\WindowBlinds\WbSrv.dll (Stardock Corporation)
O24 - Desktop Components:0 () - file:///C:/DOCUME~1/Alice/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg
O24 - Desktop Components:1 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Alice\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Alice\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008.04.06 05:44:52 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.tscc - C:\WINDOWS\System32\tsccvid.dll (TechSmith Corporation)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (61093680697573376)

========== Files/Folders - Created Within 7 Days ==========

[2011.05.05 11:15:46 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Alice\Plocha\OTL.exe
[2011.05.05 10:51:56 | 000,307,288 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011.05.05 10:51:56 | 000,019,544 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011.05.05 10:51:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\avast! Free Antivirus
[2011.05.05 10:51:53 | 000,049,240 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011.05.05 10:51:53 | 000,025,432 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011.05.05 10:51:52 | 000,441,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2011.05.05 10:51:52 | 000,102,488 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011.05.05 10:51:52 | 000,096,344 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011.05.05 10:51:51 | 000,030,680 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011.05.05 10:50:56 | 000,040,112 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011.05.05 10:50:54 | 000,199,304 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011.05.05 10:50:21 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011.05.05 10:50:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
[2011.05.05 08:57:34 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.05.05 08:57:32 | 000,000,000 | ---D | C] -- C:\rsit
[2011.01.17 21:02:38 | 000,140,800 | ---- | C] ( ) -- C:\WINDOWS\System32\drivers\xmasbus.sys
[2011.01.17 21:02:38 | 000,005,248 | ---- | C] ( ) -- C:\WINDOWS\System32\drivers\xmasscsi.sys
[2008.04.22 16:44:16 | 000,061,440 | ---- | C] ( ) -- C:\WINDOWS\System32\csnpstd2.dll
[2008.04.22 16:44:16 | 000,057,344 | ---- | C] ( ) -- C:\WINDOWS\System32\rsnpstd2.dll
[2008.04.22 16:44:16 | 000,036,864 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnpstd2.dll
[2008.04.07 17:07:16 | 014,111,464 | ---- | C] (Macrovision Corporation) -- C:\Program Files\install_atlas_icq6.exe
[8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Documents and Settings\Alice\Plocha\*.tmp files -> C:\Documents and Settings\Alice\Plocha\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2011.05.05 11:14:51 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Alice\Plocha\OTL.exe
[2011.05.05 11:14:08 | 000,000,600 | ---- | M] () -- C:\WINDOWS\Rtcw.INI
[2011.05.05 11:01:26 | 000,453,632 | ---- | M] () -- C:\Documents and Settings\Alice\Plocha\CKScanner.exe
[2011.05.05 10:57:07 | 000,000,938 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011.05.05 10:51:57 | 000,001,689 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\avast! Free Antivirus.lnk
[2011.05.05 10:51:52 | 000,002,552 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011.05.05 10:46:07 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.05.05 10:45:08 | 000,000,934 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011.05.05 10:44:46 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.05.05 10:44:39 | 1071,763,456 | -HS- | M] () -- C:\hiberfil.sys
[2011.05.05 10:42:56 | 066,297,216 | ---- | M] () -- C:\Documents and Settings\Alice\Plocha\setup_av_free.exe
[2011.05.05 08:56:35 | 000,339,991 | ---- | M] () -- C:\Documents and Settings\Alice\Plocha\RSIT.exe
[2011.05.03 22:26:46 | 000,187,904 | ---- | M] () -- C:\Documents and Settings\Alice\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.05.03 07:55:04 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
[2011.05.02 21:30:50 | 002,165,454 | ---- | M] () -- C:\Documents and Settings\Alice\Plocha\mvs.pdf
[2011.05.02 15:30:07 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Documents and Settings\Alice\Plocha\*.tmp files -> C:\Documents and Settings\Alice\Plocha\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.05.05 11:01:50 | 000,453,632 | ---- | C] () -- C:\Documents and Settings\Alice\Plocha\CKScanner.exe
[2011.05.05 10:51:57 | 000,001,689 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\avast! Free Antivirus.lnk
[2011.05.05 10:47:26 | 066,297,216 | ---- | C] () -- C:\Documents and Settings\Alice\Plocha\setup_av_free.exe
[2011.05.05 08:57:19 | 000,339,991 | ---- | C] () -- C:\Documents and Settings\Alice\Plocha\RSIT.exe
[2011.05.02 21:30:50 | 002,165,454 | ---- | C] () -- C:\Documents and Settings\Alice\Plocha\mvs.pdf
[2011.02.21 17:54:24 | 000,005,248 | ---- | C] () -- C:\WINDOWS\System32\drivers\giveio.sys
[2011.01.17 21:04:59 | 000,000,600 | ---- | C] () -- C:\WINDOWS\Rtcw.INI
[2010.03.11 18:15:28 | 000,001,714 | ---- | C] () -- C:\Documents and Settings\Alice\Data aplikací\WWB7_32.DAT
[2010.01.23 17:53:43 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\xmltok.dll
[2010.01.23 17:53:43 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\xmlparse.dll
[2009.04.16 08:11:15 | 000,176,235 | ---- | C] () -- C:\WINDOWS\System32\Primomonnt.dll
[2009.04.16 08:11:15 | 000,000,268 | ---- | C] () -- C:\WINDOWS\primopdf.ini
[2008.11.12 15:52:21 | 000,000,016 | ---- | C] () -- C:\WINDOWS\System32\jgldog11.dll
[2008.11.12 15:47:18 | 000,000,045 | -H-- | C] () -- C:\WINDOWS\dsez2259.dat
[2008.11.09 15:37:03 | 000,001,901 | ---- | C] () -- C:\WINDOWS\panose.bin
[2008.11.06 20:53:08 | 035,074,836 | ---- | C] () -- C:\Program Files\Inkscape-0.46.win32.exe
[2008.10.17 09:56:13 | 000,000,055 | ---- | C] () -- C:\WINDOWS\CONTEXT.INI
[2008.10.02 08:04:05 | 000,000,082 | ---- | C] () -- C:\WINDOWS\mafosav.INI
[2008.08.14 17:05:53 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\cid_store.dat
[2008.07.19 08:10:05 | 000,000,675 | ---- | C] () -- C:\Program Files\Maxthon2
[2008.07.18 23:18:39 | 000,000,000 | ---- | C] () -- C:\WINDOWS\WB.ini
[2008.04.22 18:53:09 | 000,000,032 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\ezsid.dat
[2008.04.22 16:44:21 | 000,286,720 | ---- | C] () -- C:\WINDOWS\vsnpstd2.exe
[2008.04.22 16:44:21 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\dsnpstd2.dll
[2008.04.22 16:44:21 | 000,015,541 | ---- | C] () -- C:\WINDOWS\snpstd2.ini
[2008.04.22 16:44:19 | 000,347,264 | ---- | C] () -- C:\WINDOWS\System32\drivers\snpstd2.sys
[2008.04.22 16:44:14 | 000,020,480 | ---- | C] () -- C:\WINDOWS\usnpstd2.exe
[2008.04.16 22:05:24 | 000,001,169 | ---- | C] () -- C:\WINDOWS\mozver.dat
[2008.04.10 20:49:17 | 000,005,184 | ---- | C] () -- C:\WINDOWS\hplj1300.ini
[2008.04.08 20:17:59 | 000,187,904 | ---- | C] () -- C:\Documents and Settings\Alice\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.04.07 20:18:07 | 000,000,379 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini
[2008.04.07 20:17:06 | 000,001,799 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2008.04.06 08:59:06 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2008.04.06 08:09:48 | 000,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008.04.06 05:47:06 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2008.04.06 05:41:39 | 000,021,812 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2008.04.06 02:52:56 | 000,004,265 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008.04.06 02:51:33 | 000,196,960 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008.04.05 22:47:27 | 000,087,540 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2005.10.14 11:56:50 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005.10.14 11:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005.10.14 11:56:50 | 000,778,240 | ---- | C] () -- C:\WINDOWS\System32\DivXsm.exe
[2005.10.14 11:56:50 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005.10.14 11:56:50 | 000,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005.10.14 11:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.10.14 11:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.10.14 11:56:50 | 000,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2005.10.14 11:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.10.14 11:56:48 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll
[2005.10.14 11:56:48 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\MMAVILNG.exe
[2005.02.24 12:29:14 | 000,162,176 | ---- | C] () -- C:\WINDOWS\System32\drivers\PFC027.sys
[2005.01.25 15:15:42 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\PA207USD.DLL
[2004.11.22 13:48:08 | 000,040,960 | ---- | C] () -- C:\WINDOWS\98Setup.exe
[2004.08.02 14:20:40 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2003.04.09 15:38:04 | 000,005,664 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
[2002.11.20 16:13:44 | 003,907,640 | ---- | C] () -- C:\WINDOWS\System32\GSDLL32.dll
[2001.10.28 02:42:30 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\redmonnt.dll
[2001.10.25 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2001.10.25 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2001.10.25 14:00:00 | 000,432,690 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2001.10.25 14:00:00 | 000,429,262 | ---- | C] () -- C:\WINDOWS\System32\perfh005.dat
[2001.10.25 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2001.10.25 14:00:00 | 000,269,162 | ---- | C] () -- C:\WINDOWS\System32\perfi005.dat
[2001.10.25 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2001.10.25 14:00:00 | 000,078,250 | ---- | C] () -- C:\WINDOWS\System32\perfc005.dat
[2001.10.25 14:00:00 | 000,067,646 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2001.10.25 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2001.10.25 14:00:00 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\perfd005.dat
[2001.10.25 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2001.10.25 14:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2001.10.25 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2001.10.25 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2001.07.31 18:17:12 | 000,094,274 | ---- | C] () -- C:\WINDOWS\System32\HPBHEALR.DLL
[1993.07.23 19:31:02 | 000,210,944 | ---- | C] () -- C:\WINDOWS\System32\Msvcrt10.dll

========== LOP Check ==========

[2008.06.24 14:29:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\A\Data aplikací\AVGTOOLBAR
[2009.06.27 15:36:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\A\Data aplikací\ESET
[2009.06.27 15:36:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\A\Data aplikací\ICQ Toolbar
[2011.04.12 13:49:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\A\Data aplikací\PC Suite
[2008.06.06 16:43:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\AVGTOOLBAR
[2010.02.16 23:47:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\BitTorrent
[2008.11.20 23:53:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010.02.24 10:05:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\CoSoSys
[2009.05.02 16:56:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\ESET
[2011.01.02 19:36:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Friday's games
[2008.11.09 00:53:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\gtk-2.0
[2011.04.29 22:46:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\ICQ
[2008.04.06 14:12:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\ICQ Toolbar
[2008.11.06 20:59:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Inkscape
[2008.11.13 14:07:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\LangSoft
[2011.05.04 23:02:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\MxBoost
[2011.01.12 20:29:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\PC Suite
[2010.03.18 19:28:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\StatSoft
[2008.11.09 15:40:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Zoner
[2011.05.05 10:50:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
[2009.05.02 16:55:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ESET
[2011.04.08 19:07:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ICQ
[2008.11.13 14:07:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\LangSoft
[2011.01.12 20:32:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Nokia
[2010.12.29 17:39:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NokiaInstallerCache
[2010.12.29 17:45:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Suite
[2010.03.09 18:04:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\StatSoft
[2009.02.23 22:45:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SweetIM
[2011.01.02 19:35:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\VirtualFarm
[2009.01.11 16:14:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2009.03.02 18:31:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\ICQ Toolbar
[2009.11.20 00:01:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\MxBoost
[2009.01.10 22:11:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\SACore

========== Purity Check ==========



========== Custom Scans ==========


< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 05:22:17 | 000,015,360 | ---- | M] (Microsoft Corporation)
"MSMSGS" = "C:\Program Files\Messenger\msmsgs.exe" /background -- [2008.04.14 05:22:36 | 001,695,232 | ---- | M] (Microsoft Corporation)
"swg" = "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" -- [2008.05.11 13:38:32 | 000,068,856 | ---- | M] (Google Inc.)
"" =
"NokiaOviSuite2" = C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray -- [2010.12.20 13:03:50 | 000,697,856 | ---- | M] (Nokia)
"ICQ" = ~"C:\Program Files\ICQ6.5\ICQ.exe" silent

< c:\windows\*.* /U >
[8 c:\windows\*.tmp files -> c:\windows\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2008.11.20 23:53:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Adobe
[2009.01.13 16:49:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Apple Computer
[2008.06.06 16:43:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\AVGTOOLBAR
[2010.02.16 23:47:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\BitTorrent
[2008.11.20 23:53:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010.02.24 10:05:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\CoSoSys
[2009.04.25 16:27:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\dvdcss
[2009.05.02 16:56:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\ESET
[2011.01.02 19:36:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Friday's games
[2009.10.28 20:34:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Google
[2008.11.09 00:53:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\gtk-2.0
[2011.04.29 22:46:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\ICQ
[2008.04.06 14:12:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\ICQ Toolbar
[2008.04.06 08:01:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Identities
[2008.11.06 20:59:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Inkscape
[2008.11.13 14:07:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\LangSoft
[2008.04.06 14:11:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Macromedia
[2011.03.29 10:45:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Malwarebytes
[2010.05.05 22:35:28 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Alice\Data aplikací\Microsoft
[2009.02.13 19:06:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Mozilla
[2011.05.04 23:02:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\MxBoost
[2011.01.12 20:29:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\PC Suite
[2009.04.27 19:29:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Skype
[2009.04.27 17:54:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\skypePM
[2010.03.18 19:28:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\StatSoft
[2008.04.07 21:32:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\vlc
[2009.05.01 19:37:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\WinRAR
[2008.11.09 15:40:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\Zoner

< %APPDATA%\*.exe /s >
[2009.03.05 09:25:12 | 000,038,200 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe


< MD5 for: AGP440.SYS >
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp2.cab:AGP440.sys
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004.08.03 23:07:42 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\$NtServicePackUninstall$\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys

< MD5 for: ATAPI.SYS >
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp2.cab:atapi.sys
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2004.08.17 15:49:22 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=CEA8636EC12F062C1ED8A7CB4E75324F -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe

< MD5 for: CDROM.SYS >
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp2.cab:cdrom.sys
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2004.08.03 22:59:54 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2004.08.17 15:49:04 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=70D2A1756F4B2067658A186C963FCABD -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll
[2008.04.14 05:21:38 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008.04.14 05:21:38 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
[2004.08.17 15:49:08 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2004.08.17 15:49:24 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
[2007.06.13 15:11:59 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=9B32416BD5988C97B6397CE0B02CAF97 -- C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[2007.06.13 15:23:39 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=ED7B460B142A32097B8A8F6ECC941815 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe

< MD5 for: HAL.DLL >
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp2.cab:hal.dll
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2008.04.13 20:31:28 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\HAL.DLL
[2004.08.03 22:59:10 | 000,131,968 | ---- | M] (Microsoft Corporation) MD5=F9A0F579FC18036FFDD9E26E0D268CCD -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll

< MD5 for: CHANGER.SYS >
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:Changer.sys
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp2.cab:Changer.sys
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:Changer.sys
[2008.04.13 20:40:58 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=2A5815CA6FFF24B688C01F828B96819C -- C:\WINDOWS\ServicePackFiles\i386\changer.sys
[2004.08.03 23:00:14 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=DAF1A8193B6CAF0FB858CADCC5C4AF4A -- C:\WINDOWS\$NtServicePackUninstall$\changer.sys

< MD5 for: ISAPNP.SYS >
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.10.10 08:39:15 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:isapnp.sys
[2001.10.25 14:00:00 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=1091528512E4DD7ED5FDDCC4DF1C53D7 -- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys
[2001.10.25 14:00:00 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=1091528512E4DD7ED5FDDCC4DF1C53D7 -- C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386\isapnp.sys
[2008.04.14 04:27:53 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
[2008.04.14 04:27:53 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys

< MD5 for: LSASS.EXE >
[2004.08.17 15:49:24 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=82A362FE1D4980B71B588D9C10748511 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2004.08.03 23:14:30 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

< MD5 for: NETLOGON.DLL >
[2004.08.17 15:49:14 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=2591CADAEF7D2242039255028E577688 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll

< MD5 for: SCECLI.DLL >
[2004.08.17 15:49:18 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2004.08.17 15:49:28 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=04B69D49D7FC3358A372E97DB6D39447 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe

< MD5 for: SVCHOST.EXE >
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.17 15:49:28 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.06.20 12:45:13 | 000,360,320 | ---- | M] (Microsoft Corporation) MD5=2A5554FC5B1E04E131230E3CE035C3F9 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2007.10.30 18:53:32 | 000,360,832 | ---- | M] (Microsoft Corporation) MD5=64798ECFA43D78C7178375FCDD16D8C8 -- C:\WINDOWS\$hf_mig$\KB941644\SP2QFE\tcpip.sys
[2008.06.20 12:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2007.10.30 19:20:55 | 000,360,064 | ---- | M] (Microsoft Corporation) MD5=90CAFF4B094573449A0872A0F919B178 -- C:\WINDOWS\$NtUninstallKB951748_0$\tcpip.sys
[2008.04.13 21:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.04.13 21:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2004.08.03 23:14:42 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtUninstallKB941644$\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.17 15:49:28 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe

< MD5 for: WINLOGON.EXE >
[2004.08.17 15:49:28 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2004.08.17 15:49:22 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=382E9B87F1282E697C67AF84E34E35E2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[5 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2008.04.06 02:50:50 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2008.04.06 02:50:50 | 000,638,976 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2008.04.06 02:50:50 | 000,405,504 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >
[5 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2011.05.05 10:51:52 | 000,002,552 | ---- | M] () -- C:\WINDOWS\system32\CONFIG.NT
[2011.05.05 10:46:07 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[5 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< End of report >

CarterV
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 20 dub 2009 17:27

Re: Prosím o kontrolu logu, děkuji

#17 Příspěvek od CarterV »

Extras txt.

OTL Extras logfile created on: 5.5.2011 11:18:18 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Alice\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1 022,00 Mb Total Physical Memory | 500,00 Mb Available Physical Memory | 49,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 80,00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 43,95 Gb Total Space | 0,87 Gb Free Space | 1,98% Space Free | Partition Type: NTFS
Drive D: | 49,21 Gb Total Space | 32,75 Gb Free Space | 66,56% Space Free | Partition Type: NTFS

Computer Name: ALVA | User Name: Alice | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-1935655697-1767777339-839522115-1004\SOFTWARE\Classes\<extension>]
.url [@ = InternetShortcut] -- C:\Program Files\Maxthon2\Maxthon.exe (Maxthon International ltd.)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
http [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\ICQ7.4\ICQ.exe" = C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4 -- (ICQ, LLC.)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe" = C:\Program Files\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe:*:Enabled:javaw -- ()
"C:\Program Files\Maxthon2\Modules\MxDownloader\MxDownloadServer.exe" = C:\Program Files\Maxthon2\Modules\MxDownloader\MxDownloadServer.exe:*:Disabled:MxDownloadServer -- (Maxthon International ltd.)
"C:\totalcmd\TOTALCMD.EXE" = C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows -- (C. Ghisler & Co.)
"C:\Program Files\VideoLAN\VLC\vlc.exe" = C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player -- ()
"C:\Program Files\ICQ6.5\ICQ.exe" = C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6
"C:\Program Files\BitTorrent\bittorrent.exe" = C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent -- (BitTorrent, Inc.)
"C:\Program Files\Cyanide\Wintersport Pro 2006 Demo\WinterApp.exe" = C:\Program Files\Cyanide\Wintersport Pro 2006 Demo\WinterApp.exe:*:Enabled:WinterApp
"C:\Program Files\Return to Castle Wolfenstein\WolfMP.exe" = C:\Program Files\Return to Castle Wolfenstein\WolfMP.exe:*:Enabled:WolfMP
"C:\Program Files\ICQ7.4\ICQ.exe" = C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4 -- (ICQ, LLC.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0100A64F-7650-4580-9717-12F26CFF23CB}" = PrimoPDF
"{08600005-5228-4BF6-845E-E9A957AFDCB4}" = OviMPlatform
"{1485B7CD-4CBD-4039-8EAE-5A22993D7F54}" = hp LaserJet 1150 / 1300
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{266C7330-C0F4-49E5-8F20-A56F9F822875}" = SweetIM Toolbar for Internet Explorer 3.3
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{318AB667-3230-41B5-A617-CB3BF748D371}" = iTunes
"{350C97C4-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3553E875-F00E-4031-BDEC-75FB1DFEB093}" = Nokia Ovi Suite Software Updater
"{36ABE32F-D7D4-4A5E-AADD-589F506B1B50}" = Nokia Ovi Suite
"{4216D328-0FE8-48B8-85B8-BD300E6F080F}" = Nokia Connectivity Cable Driver
"{4286E640-B5FB-11DF-AC4B-005056C00008}" = Google Earth
"{4F62B1AE-E778-49E2-9C57-C1C65A122098}" = Zoner Callisto 5 - zkušební verze
"{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.6
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{69916AD2-3710-4C86-895E-8F475290AA64}" = Ovi Desktop Sync Engine
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37}" = ICQ7.4
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}" = Bonjour
"{90110405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6
"{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1033-7B44-A94000000001}" = Adobe Reader 9.4.3
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C359507C-30B1-48A6-BD9B-C7B1CC3B06D7}" = SweetIM for Messenger 2.6
"{C4EE60C6-515F-4BAE-AB76-2D54DBC0875D}" = Trust WB-1200p Mini Webcam
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D4AEC53C-1720-41D9-B6D7-6A60DE62D444}" = PC Connectivity Solution
"{E9F81423-211E-46B6-9AE0-38568BC5CF6F}" = Alcohol 120% (Trial Version)
"{EADAA6F7-991F-4CE9-B5CE-FCF3D81F7C7D}" = Trust WB-3100P Portable Webcam
"{EC4455AB-F155-4CC1-A4C5-88F3777F9886}" = Apple Mobile Device Support
"{F6CE1230-A694-4B86-B21C-A11A112689DA}" = Trust WB-1400T Webcam
"{F958CA02-BB40-4007-894B-258729456EE4}" = QuickTime
"504244733D18C8F63FF584AEB290E3904E791693" = Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"Active Photo Editor 1.4" = Active Photo Editor 1.4
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AMS Photo Effects_is1" = AMS Photo Effects 1.25
"ATI Display Driver" = ATI Display Driver
"avast" = avast! Free Antivirus
"Belltech Photo Editor Max 2.0_is1" = Belltech Photo Editor Max 2.0
"BitTorrent" = BitTorrent
"BSPlayer1" = BSPlayer
"CCleaner" = CCleaner
"CNXT_MODEM_PCI_VEN_8086&DEV_266D&SUBSYS_00661025" = SoftV92 Data Fax Modem with SmartCP
"Conexant PCI Audio" = Conexant AC-Link Audio
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.3.0
"Dobrý farmář" = Dobrý farmář
"DzSoftPPSlideShowConv_is1" = PowerPoint Slide Show Converter 3.0
"Google Chrome" = Google Chrome
"ICQToolbar" = ICQ Toolbar
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"InstallShield_{C4EE60C6-515F-4BAE-AB76-2D54DBC0875D}" = Trust WB-1200p Mini Webcam
"InstallShield_{F6CE1230-A694-4B86-B21C-A11A112689DA}" = Trust WB-1400T Webcam
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Maxthon2" = Maxthon2 Browser (remove only)
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.0.19)" = Mozilla Firefox (3.0.19)
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"Nokia Ovi Suite" = Nokia Ovi Suite
"PC Translator 2007 DEMO" = PC Translator 2007 DEMO
"PhotoFiltre Studio" = PhotoFiltre Studio
"PowerPaint 2.30_is1" = PowerPaint 2.30
"rajče.net_is1" = rajče beta50
"Return to Castle Wolfenstein CZ" = Return to Castle Wolfenstein CZ
"SensorsView beta 1.0" = SensorsView beta 1.0
"sky_watch ScreenSaver" = sky_watch ScreenSaver
"StepMania" = StepMania 3.9 (remove only)
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"Totalcmd" = Total Commander (Remove or Repair)
"VLC media player" = VideoLAN VLC media player 0.8.6i
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"WindowBlinds" = WindowBlinds
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Word to PDF Converter_is1" = Word to PDF Converter 3.0
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1935655697-1767777339-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 28.3.2011 12:58:52 | Computer Name = ALVA | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace Maxthon.exe, verze 2.1.4.443, zablokovaný modul
hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error - 8.4.2011 13:26:20 | Computer Name = ALVA | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace Maxthon.exe, verze 2.1.4.443, zablokovaný modul
hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error - 18.4.2011 12:11:47 | Computer Name = ALVA | Source = Microsoft Office 11 | ID = 1000
Description = Faulting application winword.exe, version 11.0.8328.0, stamp 4c717ed1,
faulting module winword.exe, version 11.0.8328.0, stamp 4c717ed1, debug? 0, fault
address 0x000b5a7d.

Error - 26.4.2011 4:17:25 | Computer Name = ALVA | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace Maxthon.exe, verze 2.1.4.443, zablokovaný modul
hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

Error - 5.5.2011 4:42:59 | Computer Name = ALVA | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 5.5.2011 4:42:59 | Computer Name = ALVA | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt>
se nezdařilo. Chyba: The server name or address could not be resolved

Error - 5.5.2011 4:43:01 | Computer Name = ALVA | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 5.5.2011 4:43:01 | Computer Name = ALVA | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt>
se nezdařilo. Chyba: Takové síťové připojení neexistuje.

[ System Events ]
Error - 30.4.2011 2:25:43 | Computer Name = ALVA | Source = Service Control Manager | ID = 7000
Description = Služba Služba modelu COM pro zápis na disk CD (IMAPI) neuspěla při
spuštění v důsledku následující chyby: %%1053

Error - 30.4.2011 4:18:00 | Computer Name = ALVA | Source = Service Control Manager | ID = 7034
Description = Služba ICQ Service byla neočekávaně ukončena. Tento stav nastal již
1krát.

Error - 30.4.2011 4:30:44 | Computer Name = ALVA | Source = DCOM | ID = 10010
Description = Server {1F87137D-0E7C-44D5-8C73-4EFFB68962F2} se v daném časovém limitu
neregistroval u služby DCOM.

Error - 2.5.2011 17:17:19 | Computer Name = ALVA | Source = Dhcp | ID = 1000
Description = Zapůjčení adresy IP počítače 158.194.199.106 pro síťovou kartu se síťovou
adresou 0016365231C3 byla ukončena.

Error - 3.5.2011 1:32:02 | Computer Name = ALVA | Source = Dhcp | ID = 1000
Description = Zapůjčení adresy IP počítače 158.194.199.106 pro síťovou kartu se síťovou
adresou 0016365231C3 byla ukončena.

Error - 3.5.2011 1:54:33 | Computer Name = ALVA | Source = sr | ID = 1
Description = Filtr nástroje Obnovení systému zjistil neočekávanou chybu 0xC000007F
při zpracování souboru lv.dll na svazku HarddiskVolume1. Sledování svazku bylo
ukončeno.

Error - 3.5.2011 18:03:38 | Computer Name = ALVA | Source = Dhcp | ID = 1000
Description = Zapůjčení adresy IP počítače 158.194.199.106 pro síťovou kartu se síťovou
adresou 0016365231C3 byla ukončena.

Error - 4.5.2011 1:58:32 | Computer Name = ALVA | Source = Dhcp | ID = 1000
Description = Zapůjčení adresy IP počítače 158.194.199.106 pro síťovou kartu se síťovou
adresou 0016365231C3 byla ukončena.

Error - 4.5.2011 18:03:11 | Computer Name = ALVA | Source = Dhcp | ID = 1000
Description = Zapůjčení adresy IP počítače 158.194.199.106 pro síťovou kartu se síťovou
adresou 0016365231C3 byla ukončena.

Error - 5.5.2011 2:53:52 | Computer Name = ALVA | Source = Dhcp | ID = 1000
Description = Zapůjčení adresy IP počítače 158.194.199.106 pro síťovou kartu se síťovou
adresou 0016365231C3 byla ukončena.


< End of report >

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu, děkuji

#18 Příspěvek od vyosek »

:arrow: Uvolnete volne misto jak psal kolega, alespon na 5 giga

:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    SRV - [2010.09.06 18:56:38 | 000,247,096 | ---- | M] () [Auto | Running] -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe -- (ICQ Service)
    MOD - [2009.02.15 17:29:24 | 000,023,864 | R--- | M] (SweetIM Technologies Ltd.) -- C:\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll
    MOD - [2006.07.11 19:35:38 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\Program Files\SweetIM\Messenger\msvcr71.dll
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.local
    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.local
    IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
    IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\URLSearchHook: - Reg Error: Key error. File not found
    IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
    IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll (SweetIM Technologies Ltd.)
    IE - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>;*.local
    FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
    FF - prefs.js..browser.search.defaulturl: "http://search.sweetim.com/search.asp?src=2&q="
    FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q="
    FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "ICQ Search"
    FF - prefs.js..browser.startup.homepage: "http://www.atlas.cz/?from=icqhp"
    FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&q="
    [2011.04.08 19:07:39 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
    [2009.02.23 22:44:43 | 000,000,000 | ---D | M] (SweetIM Toolbar for Firefox) -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
    [2011.05.04 22:47:40 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-1.xml
    [2010.04.01 12:09:40 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-10.xml
    [2010.04.11 18:23:18 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-11.xml
    [2010.09.02 21:06:38 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-12.xml
    [2008.09.23 21:50:51 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-2.xml
    [2008.10.07 20:27:39 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-3.xml
    [2008.10.20 19:03:37 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-4.xml
    [2008.12.01 23:49:01 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-5.xml
    [2009.02.11 15:39:18 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-6.xml
    [2009.02.13 19:06:41 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-7.xml
    [2009.04.07 11:51:23 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-8.xml
    [2010.01.27 22:47:01 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-9.xml
    [2010.05.12 17:40:48 | 000,001,042 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin.xml
    [2009.02.23 22:44:38 | 000,003,915 | ---- | M] () -- C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\sweetim.xml
    [2009.07.18 19:30:34 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
    File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ALICE\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\RCNK83GY.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
    File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ALICE\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\RCNK83GY.DEFAULT\EXTENSIONS\{800B5000-A755-47E1-992B-48A1C1357F07}
    File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ALICE\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\RCNK83GY.DEFAULT\EXTENSIONS\{EEE6C361-6118-11DC-9C72-001320C79847}
    O2 - BHO: (SweetIM Toolbar Helper) - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.)
    O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
    O3 - HKLM\..\Toolbar: (SweetIM Toolbar for Internet Explorer) - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.)
    O3 - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\Toolbar\WebBrowser: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
    O3 - HKU\S-1-5-21-1935655697-1767777339-839522115-1004\..\Toolbar\WebBrowser: (SweetIM Toolbar for Internet Explorer) - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.)
    O4 - HKLM..\Run: [] File not found
    O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/fl ... rashim.cab (Reg Error: Key error.)
    [8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
    [1 C:\Documents and Settings\Alice\Plocha\*.tmp files -> C:\Documents and Settings\Alice\Plocha\*.tmp -> ]
    [2011.05.03 22:26:46 | 000,187,904 | ---- | M] () -- C:\Documents and Settings\Alice\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2009.06.27 15:36:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\A\Data aplikací\ICQ Toolbar
    [2008.04.06 14:12:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Alice\Data aplikací\ICQ Toolbar
    [2009.05.02 16:55:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ESET
    [2009.02.23 22:45:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SweetIM
    [2009.01.11 16:14:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
    [2009.03.02 18:31:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\ICQ Toolbar
    
    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    ""=-
    "QuickTime Task"=-
    "iTunesHelper"=-
    "SweetIM"=-
    "NokiaMServer"=-
    "Adobe Reader Speed Launcher"=-
    "Adobe ARM"=-
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "MSMSGS"=-
    "swg"=-
    ""=-
    "NokiaOviSuite2"=-
    "ICQ"=-
     
    :files
    c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\alcohol-120-crack-cz-.rar /d
    c:\documents and settings\alice\plocha\alcohol-120-crack-cz- /d
    C:\WINDOWS\tasks\AppleSoftwareUpdate.job
    C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
    C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
    C:\Program Files\ICQ6Toolbar
    C:\Program Files\SweetIM
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp /s
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

CarterV
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 20 dub 2009 17:27

Re: Prosím o kontrolu logu, děkuji

#19 Příspěvek od CarterV »

All processes killed
========== OTL ==========
Service ICQ Service stopped successfully!
Service ICQ Service deleted successfully!
C:\Program Files\ICQ6Toolbar\ICQ Service.exe moved successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
HKU\S-1-5-21-1935655697-1767777339-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-1935655697-1767777339-839522115-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1935655697-1767777339-839522115-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ deleted successfully.
C:\Program Files\ICQ6Toolbar\ICQToolBar.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-1935655697-1767777339-839522115-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{EEE6C35D-6118-11DC-9C72-001320C79847} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}\ deleted successfully.
C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll moved successfully.
HKU\S-1-5-21-1935655697-1767777339-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
Prefs.js: "ICQ Search" removed from browser.search.defaultenginename
Prefs.js: "http://search.sweetim.com/search.asp?src=2&q=" removed from browser.search.defaulturl
Prefs.js: "http://search.icq.com/search/afe_result ... r=1.1.9&q=" removed from keyword.URL
Prefs.js: "ICQ Search" removed from sweetim.toolbar.previous.browser.search.defaultenginename
Prefs.js: "http://www.atlas.cz/?from=icqhp" removed from browser.startup.homepage
Prefs.js: "http://search.icq.com/search/afe_result ... id=afex&q=" removed from sweetim.toolbar.previous.keyword.URL
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\components folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\skin folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\tr folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\sk folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\ru folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\it folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\he folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\fr folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\es folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\en-US folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\de folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\cs folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\bg folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content\img folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\META-INF folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\components folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\chrome folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847} folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-1.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-10.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-11.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-12.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-2.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-3.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-4.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-5.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-6.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-7.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-8.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin-9.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\icqplugin.xml moved successfully.
C:\Documents and Settings\Alice\Data aplikací\Mozilla\Firefox\Profiles\rcnk83gy.default\searchplugins\sweetim.xml moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\components folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}\ deleted successfully.
C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ not found.
File C:\Program Files\ICQ6Toolbar\ICQToolBar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{EEE6C35B-6118-11DC-9C72-001320C79847} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}\ deleted successfully.
File C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll not found.
Registry value HKEY_USERS\S-1-5-21-1935655697-1767777339-839522115-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{855F3B16-6D32-4FE6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}\ not found.
File C:\Program Files\ICQ6Toolbar\ICQToolBar.dll not found.
Registry value HKEY_USERS\S-1-5-21-1935655697-1767777339-839522115-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EEE6C35B-6118-11DC-9C72-001320C79847} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}\ not found.
File C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Starting removal of ActiveX control {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
C:\WINDOWS\Downloaded Program Files\erma.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}\ not found.
C:\WINDOWS\002279_.tmp deleted successfully.
C:\WINDOWS\005576_.tmp deleted successfully.
C:\WINDOWS\SET14.tmp deleted successfully.
C:\WINDOWS\SET18.tmp deleted successfully.
C:\WINDOWS\SET20.tmp deleted successfully.
C:\WINDOWS\SET24.tmp deleted successfully.
C:\WINDOWS\SET3.tmp deleted successfully.
C:\WINDOWS\SET7.tmp deleted successfully.
C:\WINDOWS\System32\CONFIG.TMP deleted successfully.
C:\WINDOWS\System32\SET627.tmp deleted successfully.
C:\WINDOWS\System32\SET62B.tmp deleted successfully.
C:\WINDOWS\System32\SET633.tmp deleted successfully.
C:\WINDOWS\System32\SET67D.tmp deleted successfully.
C:\Documents and Settings\Alice\Plocha\~WRL3547.tmp deleted successfully.
C:\Documents and Settings\Alice\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini moved successfully.
C:\Documents and Settings\A\Data aplikací\ICQ Toolbar folder moved successfully.
C:\Documents and Settings\Alice\Data aplikací\ICQ Toolbar folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\ESET\ESET Smart Security\Charon folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\ESET\ESET Smart Security\Antispam folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\ESET\ESET Smart Security folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\ESET\ESET NOD32 Antivirus\Charon folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\ESET\ESET NOD32 Antivirus folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\ESET folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Toolbars\Internet Explorer\cache folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Toolbars\Internet Explorer folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Toolbars folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Messenger\update folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Messenger\logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Messenger\data\contentdb folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Messenger\data folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Messenger\conf\users\234001315 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Messenger\conf\users\202632584 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Messenger\conf\users folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Messenger\conf folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM\Messenger folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\SweetIM folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}\x86\x86 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}\x86 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} folder moved successfully.
C:\Documents and Settings\LocalService\Data aplikací\ICQ Toolbar folder moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SweetIM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NokiaMServer deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\NokiaOviSuite2 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ICQ deleted successfully.
========== FILES ==========
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\alcohol-120-crack-cz-.rar deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\CRACK\ALCOHOL.EXE deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\CRACK\AXCMD.EXE deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\CRACK\AXSHLEX.DLL deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\CRACK\EAT.NFO deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\CRACK folder deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\alcohol_120.exe deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\EATALC120.REG deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\TRIAL_SETUP.EXE deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\TRIAL_SETUP.INI deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222\TRIAL_SETUP.MSI deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz-\ALCOHOL_120%_148.1222 folder deleted successfully.
c:\documents and settings\alice\plocha\alcohol-120-crack-cz- folder deleted successfully.
C:\WINDOWS\tasks\AppleSoftwareUpdate.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\Program Files\ICQ6Toolbar folder moved successfully.
C:\Program Files\SweetIM\Toolbars\Internet Explorer\resources folder moved successfully.
C:\Program Files\SweetIM\Toolbars\Internet Explorer\conf folder moved successfully.
C:\Program Files\SweetIM\Toolbars\Internet Explorer folder moved successfully.
C:\Program Files\SweetIM\Toolbars folder moved successfully.
C:\Program Files\SweetIM\Messenger\resources\images folder moved successfully.
C:\Program Files\SweetIM\Messenger\resources folder moved successfully.
C:\Program Files\SweetIM\Messenger folder moved successfully.
C:\Program Files\SweetIM folder moved successfully.
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1C4.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1E9C.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1F6B.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2052.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP207B.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP20E3.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP299.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3AF.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8F9.tmp folder moved successfully.
C:\WINDOWS\Installer\MSI4C.tmp moved successfully.
C:\WINDOWS\Temp\9udtx0s7.TMP moved successfully.
C:\WINDOWS\Temp\BIT10.tmp moved successfully.
C:\WINDOWS\Temp\BIT13.tmp moved successfully.
C:\WINDOWS\Temp\BIT14.tmp moved successfully.
C:\WINDOWS\Temp\BIT15.tmp moved successfully.
C:\WINDOWS\Temp\BIT16.tmp moved successfully.
C:\WINDOWS\Temp\BIT17.tmp moved successfully.
C:\WINDOWS\Temp\BIT18.tmp moved successfully.
C:\WINDOWS\Temp\BIT1A.tmp moved successfully.
C:\WINDOWS\Temp\BIT1B.tmp moved successfully.
C:\WINDOWS\Temp\BIT1C.tmp moved successfully.
C:\WINDOWS\Temp\BIT1D.tmp moved successfully.
C:\WINDOWS\Temp\BIT1E.tmp moved successfully.
C:\WINDOWS\Temp\BIT1F.tmp moved successfully.
C:\WINDOWS\Temp\BIT20.tmp moved successfully.
C:\WINDOWS\Temp\BIT21.tmp moved successfully.
C:\WINDOWS\Temp\BIT22.tmp moved successfully.
C:\WINDOWS\Temp\BIT23.tmp moved successfully.
C:\WINDOWS\Temp\BIT24.tmp moved successfully.
C:\WINDOWS\Temp\BIT26.tmp moved successfully.
C:\WINDOWS\Temp\BIT28.tmp moved successfully.
C:\WINDOWS\Temp\BITE.tmp moved successfully.
C:\WINDOWS\Temp\Cab968.tmp moved successfully.
C:\WINDOWS\Temp\Cab96A.tmp moved successfully.
C:\WINDOWS\Temp\eyx5swfo.TMP moved successfully.
C:\WINDOWS\Temp\GUR1.tmp moved successfully.
C:\WINDOWS\Temp\GUR10.tmp moved successfully.
C:\WINDOWS\Temp\GUR11.tmp moved successfully.
C:\WINDOWS\Temp\GUR12.tmp moved successfully.
C:\WINDOWS\Temp\GUR13.tmp moved successfully.
C:\WINDOWS\Temp\GUR14.tmp moved successfully.
C:\WINDOWS\Temp\GUR15.tmp moved successfully.
C:\WINDOWS\Temp\GUR16.tmp moved successfully.
C:\WINDOWS\Temp\GUR17.tmp moved successfully.
C:\WINDOWS\Temp\GUR18.tmp moved successfully.
C:\WINDOWS\Temp\GUR19.tmp moved successfully.
C:\WINDOWS\Temp\GUR1A.tmp moved successfully.
C:\WINDOWS\Temp\GUR1B.tmp moved successfully.
C:\WINDOWS\Temp\GUR1C.tmp moved successfully.
C:\WINDOWS\Temp\GUR1D.tmp moved successfully.
C:\WINDOWS\Temp\GUR1E.tmp moved successfully.
C:\WINDOWS\Temp\GUR1F.tmp moved successfully.
C:\WINDOWS\Temp\GUR2.tmp moved successfully.
C:\WINDOWS\Temp\GUR20.tmp moved successfully.
C:\WINDOWS\Temp\GUR21.tmp moved successfully.
C:\WINDOWS\Temp\GUR22.tmp moved successfully.
C:\WINDOWS\Temp\GUR23.tmp moved successfully.
C:\WINDOWS\Temp\GUR24.tmp moved successfully.
C:\WINDOWS\Temp\GUR25.tmp moved successfully.
C:\WINDOWS\Temp\GUR26.tmp moved successfully.
C:\WINDOWS\Temp\GUR27.tmp moved successfully.
C:\WINDOWS\Temp\GUR28.tmp moved successfully.
C:\WINDOWS\Temp\GUR3.tmp moved successfully.
C:\WINDOWS\Temp\GUR4.tmp moved successfully.
C:\WINDOWS\Temp\GUR5.tmp moved successfully.
C:\WINDOWS\Temp\GUR6.tmp moved successfully.
C:\WINDOWS\Temp\GUR7.tmp moved successfully.
C:\WINDOWS\Temp\GUR8.tmp moved successfully.
C:\WINDOWS\Temp\GUR9.tmp moved successfully.
C:\WINDOWS\Temp\GURA.tmp moved successfully.
C:\WINDOWS\Temp\GURB.tmp moved successfully.
C:\WINDOWS\Temp\GURC.tmp moved successfully.
C:\WINDOWS\Temp\GURD.tmp moved successfully.
C:\WINDOWS\Temp\GURE.tmp moved successfully.
C:\WINDOWS\Temp\GURF.tmp moved successfully.
C:\WINDOWS\Temp\HTT1BBB.tmp moved successfully.
C:\WINDOWS\Temp\HTT38.tmp moved successfully.
C:\WINDOWS\Temp\HTT967.tmp moved successfully.
C:\WINDOWS\Temp\NOD1EB6.tmp moved successfully.
C:\WINDOWS\Temp\NOD39.tmp moved successfully.
C:\WINDOWS\Temp\NOD80BE.tmp moved successfully.
C:\WINDOWS\Temp\NOD9776.tmp moved successfully.
C:\WINDOWS\Temp\NSF31.tmp moved successfully.
C:\WINDOWS\Temp\NUP30.tmp moved successfully.
C:\WINDOWS\Temp\NUP32.tmp moved successfully.
C:\WINDOWS\Temp\OLD10.tmp moved successfully.
C:\WINDOWS\Temp\OLD12.tmp moved successfully.
C:\WINDOWS\Temp\OLD13.tmp moved successfully.
C:\WINDOWS\Temp\OLD15.tmp moved successfully.
C:\WINDOWS\Temp\OLD16.tmp moved successfully.
C:\WINDOWS\Temp\OLD18.tmp moved successfully.
C:\WINDOWS\Temp\OLD19.tmp moved successfully.
C:\WINDOWS\Temp\OLD1A.tmp moved successfully.
C:\WINDOWS\Temp\OLD1B.tmp moved successfully.
C:\WINDOWS\Temp\OLD1C.tmp moved successfully.
C:\WINDOWS\Temp\OLD1D.tmp moved successfully.
C:\WINDOWS\Temp\OLD1E.tmp moved successfully.
C:\WINDOWS\Temp\OLD1F.tmp moved successfully.
C:\WINDOWS\Temp\OLD2.tmp moved successfully.
C:\WINDOWS\Temp\OLD20.tmp moved successfully.
C:\WINDOWS\Temp\OLD21.tmp moved successfully.
C:\WINDOWS\Temp\OLD22.tmp moved successfully.
C:\WINDOWS\Temp\OLD23.tmp moved successfully.
C:\WINDOWS\Temp\OLD24.tmp moved successfully.
C:\WINDOWS\Temp\OLD25.tmp moved successfully.
C:\WINDOWS\Temp\OLD26.tmp moved successfully.
C:\WINDOWS\Temp\OLD27.tmp moved successfully.
C:\WINDOWS\Temp\OLD28.tmp moved successfully.
C:\WINDOWS\Temp\OLD29.tmp moved successfully.
C:\WINDOWS\Temp\OLD2A.tmp moved successfully.
C:\WINDOWS\Temp\OLD2D.tmp moved successfully.
C:\WINDOWS\Temp\OLD5.tmp moved successfully.
C:\WINDOWS\Temp\OLD6.tmp moved successfully.
C:\WINDOWS\Temp\OLD8.tmp moved successfully.
C:\WINDOWS\Temp\OLD9.tmp moved successfully.
C:\WINDOWS\Temp\OLDA.tmp moved successfully.
C:\WINDOWS\Temp\OLDC.tmp moved successfully.
C:\WINDOWS\Temp\OLDD.tmp moved successfully.
C:\WINDOWS\Temp\OLDF.tmp moved successfully.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: A
->Temp folder emptied: 768184 bytes
->Temporary Internet Files folder emptied: 10113274 bytes
->FireFox cache emptied: 2886036 bytes
->Flash cache emptied: 587 bytes

User: Alice
->Temp folder emptied: 524537921 bytes
->Temporary Internet Files folder emptied: 517597746 bytes
->FireFox cache emptied: 35491671 bytes
->Google Chrome cache emptied: 173784793 bytes
->Flash cache emptied: 60296 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 67423 bytes
->Temporary Internet Files folder emptied: 112094 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 3652865 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 121810610 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 104059690 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 1 426,00 mb


[EMPTYFLASH]

User: A
->Flash cache emptied: 0 bytes

User: Alice
->Flash cache emptied: 0 bytes

User: All Users

User: Default User

User: LocalService

User: NetworkService

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.22.3 log created on 05052011_131040

Files\Folders moved on Reboot...
C:\Documents and Settings\Alice\Local Settings\Temporary Internet Files\Content.IE5\IN8O07CA\background_button_green_full[1].png moved successfully.
C:\Documents and Settings\Alice\Local Settings\Temporary Internet Files\Content.IE5\ALN9ZL8X\list-item-plus[1].png moved successfully.
C:\Documents and Settings\Alice\Local Settings\Temporary Internet Files\Content.IE5\9XUC3DQH\background-banner-middle-v9[1].jpg moved successfully.
C:\Documents and Settings\Alice\Local Settings\Temporary Internet Files\Content.IE5\9XUC3DQH\background-banner-right-v9[1].jpg moved successfully.
C:\Documents and Settings\Alice\Local Settings\Temporary Internet Files\Content.IE5\9XUC3DQH\background_banner_green_50_v9[1].jpg moved successfully.
File move failed. C:\WINDOWS\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu, děkuji

#20 Příspěvek od vyosek »

Jak se chova PC :???:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

CarterV
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 20 dub 2009 17:27

Re: Prosím o kontrolu logu, děkuji

#21 Příspěvek od CarterV »

Jede to normálně, předtím se objevovaly problémy při spuštění, když najížděly windows, tak zamrznuly a systém najel až po několika spuštěních...Bylo tam tedy něco? děkuji

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu, děkuji

#22 Příspěvek od vyosek »

:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner (viz muj podpis)
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za 14 dni

:arrow: Neco malo tam bylo :wink:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

CarterV
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 20 dub 2009 17:27

Re: Prosím o kontrolu logu, děkuji

#23 Příspěvek od CarterV »

OK, děkuji za spolupráci! :worship:

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu, děkuji

#24 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :) Zase nekdy Obrázek
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět