OTL logfile created on: 17.4.2010 14:10:24 - Run 2
OTL by OldTimer - Version 3.2.1.1 Folder = D:\
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
511,00 Mb Total Physical Memory | 218,00 Mb Available Physical Memory | 43,00% Memory free
1,00 Gb Paging File | 1,00 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 10,22 Gb Total Space | 3,13 Gb Free Space | 30,60% Space Free | Partition Type: NTFS
Drive D: | 101,57 Gb Total Space | 12,60 Gb Free Space | 12,41% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ROSTA-DSX4BF
Current User Name: Rostislav Drápal
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - [2010.04.17 10:11:08 | 000,561,664 | ---- | M] (OldTimer Tools) -- D:\OTL.exe
PRC - [2010.04.04 16:18:09 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2007.12.10 16:55:26 | 000,323,584 | ---- | M] (PixArt Imaging Incorporation) -- C:\WINDOWS\PixArt\PAC207\Monitor.exe
PRC - [2007.02.20 03:07:40 | 000,199,752 | ---- | M] (Pinnacle Systems GmbH) -- C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
PRC - [2007.02.13 20:29:00 | 000,035,328 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe
PRC - [2006.10.26 21:24:54 | 000,098,632 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
PRC - [2006.09.13 12:12:52 | 000,139,264 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
PRC - [2006.09.13 12:07:08 | 000,880,640 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
PRC - [2005.08.25 11:30:14 | 000,307,200 | ---- | M] () -- C:\Program Files\honestech\honestech TVR\scheduleTV.exe
PRC - [2005.05.20 13:00:00 | 000,401,408 | ---- | M] () -- C:\WINDOWS\878RMT.exe
PRC - [2004.08.17 17:49:24 | 001,032,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2004.06.16 07:03:04 | 000,081,920 | ---- | M] (InstallShield Software Corporation) -- C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
PRC - [2003.01.16 11:32:40 | 000,049,152 | ---- | M] (Ruling Tec Pte Ltd) -- C:\Program Files\VibrateGameDeviceDriver\rfpicon.exe
========== Modules (SafeList) ==========
MOD - [2010.04.17 10:11:08 | 000,561,664 | ---- | M] (OldTimer Tools) -- D:\OTL.exe
MOD - [2004.08.17 17:48:02 | 001,050,624 | R--- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] -- -- (wscsvcTermService)
SRV - File not found [Auto | Stopped] -- -- (upnphostxmlprov)
SRV - File not found [Auto | Stopped] -- -- (ThemesSpooler)
SRV - File not found [Auto | Stopped] -- -- (TapiSrvImapiService)
SRV - File not found [Auto | Stopped] -- -- (RemoteAccess Licensing Service)
SRV - File not found [Auto | Stopped] -- -- (NetmanVSS)
SRV - File not found [Auto | Stopped] -- -- (MessengerPCLEPCI)
SRV - File not found [Auto | Stopped] -- -- (ClipSrvEventSystem)
SRV - File not found [Auto | Stopped] -- -- (cisvcNVSvc)
SRV - File not found [Auto | Stopped] -- -- (BITSRpcSs)
SRV - [2010.01.08 01:51:02 | 000,380,928 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (application updater)
SRV - [2008.09.11 20:05:42 | 000,077,944 | ---- | M] (Autodesk) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2005.02.09 13:59:00 | 000,014,165 | ---- | M] (Pinnacle Systems GmbH) [Auto | Stopped] -- C:\WINDOWS\system32\drivers\Pclepci.sys -- (PCLEPCI)
========== Driver Services (SafeList) ==========
DRV - [2009.01.08 19:00:54 | 000,016,640 | ---- | M] (Wondershare) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\DsAudioDevice_207.sys -- (dsaudiodevice_207)
DRV - [2008.10.02 20:46:08 | 000,083,288 | ---- | M] (LogMeIn, Inc.) [File_System | Disabled | Stopped] -- C:\WINDOWS\system32\LMIRfsClientNP.dll -- (lmirfsclientnp)
DRV - [2008.07.24 19:46:10 | 000,047,640 | ---- | M] (LogMeIn, Inc.) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\LMIRfsDriver.sys -- (lmirfsdriver)
DRV - [2008.02.13 14:17:26 | 000,618,112 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PFC027.SYS -- (pac207)
DRV - [2007.05.21 17:26:14 | 000,021,168 | ---- | M] (Padix Co., Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\DynCal.sys -- (dyncal)
DRV - [2007.01.04 11:07:00 | 000,171,520 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\MarvinBus.sys -- (MarvinBus)
DRV - [2006.05.21 05:00:00 | 000,214,692 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Bt878.sys -- (878TVCard)
DRV - [2006.05.21 05:00:00 | 000,012,160 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\BtTuner.sys -- (878TVTuner)
DRV - [2006.05.21 05:00:00 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\BtXbar.sys -- (878Xbar)
DRV - [2005.08.02 10:35:00 | 003,198,560 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2005.02.23 15:58:56 | 000,011,776 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\afc.sys -- (afc)
DRV - [2004.08.04 00:10:12 | 000,048,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\61883.sys -- (61883)
DRV - [2004.08.04 00:10:12 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\avc.sys -- (Avc)
DRV - [2004.08.04 00:10:00 | 000,051,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\msdv.sys -- (MSDV)
DRV - [2003.01.22 05:37:00 | 000,009,856 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc)
DRV - [2002.09.16 18:14:32 | 000,004,228 | ---- | M] (PowerQuest Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\PQNTDRV.sys -- (PQNTDrv)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1085031214-630328440-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.seznam.cz/
IE - HKU\S-1-5-21-1085031214-630328440-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=971163"
FF - prefs.js..browser.startup.homepage: "
http://www.seznam.cz/"
FF - prefs.js..extensions.enabledItems:
pdfforge@mybrowserbar.com:1.1.2
FF - prefs.js..extensions.enabledItems:
searchsettings@spigot.com:1.2.3
FF - HKLM\software\mozilla\mozilla firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.04.04 16:18:17 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\mozilla firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.04.04 16:18:17 | 000,000,000 | ---D | M]
[2008.08.28 14:54:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\Mozilla\Extensions
[2010.04.17 10:31:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\Mozilla\Firefox\Profiles\jlwp4qbs.default\extensions
[2009.03.28 20:08:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\Mozilla\Firefox\Profiles\jlwp4qbs.default\extensions\
firefox@tvunetworks.com
[2010.01.18 18:37:58 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010.03.14 17:09:04 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.03.14 17:09:04 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.03.14 17:09:04 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.03.14 17:09:04 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.03.14 17:09:04 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2010.04.17 12:31:43 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Podpora odkazu pro Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe (PixArt Imaging Incorporation)
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [PAC207_Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe (PixArt Imaging Incorporation)
O4 - HKLM..\Run: [RTBatteryMeter] C:\Program Files\VibrateGameDeviceDriver\rfpicon.exe (Ruling Tec Pte Ltd)
O4 - HKLM..\Run: [TV Card Remote Control Applet] C:\WINDOWS\878RMT.exe ()
O4 - HKLM..\Run: [USBToolTip] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe (Pinnacle Systems GmbH)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe ()
O4 - HKU\S-1-5-21-1085031214-630328440-682003330-1003..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKU\S-1-5-21-1085031214-630328440-682003330-1003..\Run: [LaunchList] C:\Program Files\Pinnacle\Studio 11\LaunchList2.exe (Pinnacle Systems)
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Akcelerátor spuštění AutoCADu.lnk = C:\Program Files\Common Files\Autodesk Shared\acstart16.exe (Autodesk, Inc)
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Scheduler for OEM.lnk = C:\Program Files\honestech\honestech TVR\scheduleTV.exe ()
O4 - Startup: C:\Documents and Settings\Rostislav Drápal\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1085031214-630328440-682003330-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1085031214-630328440-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1085031214-630328440-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1085031214-630328440-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: e&xportovat do aplikace microsoft excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000a-7350-4f3c-8081-5663ee0c6c49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000a-7350-4f3c-8081-5663ee0c6c49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780b25-18cc-41c8-b9be-3c9c571a8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O12 - Plugin for: .tiff - C:\Program Files\Internet Explorer\PLUGINS\npqtplugin5.dll (Apple Computer, Inc.)
O15 - HKU\S-1-5-21-1085031214-630328440-682003330-1003\..Trusted Domains: ([]msn in Tento počítač)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71}
http://download.microsoft.com/download/ ... vc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://www.update.microsoft.com/windows ... 4085624765 (WUWebControl Class)
O18 - Protocol\Handler\groovelocalgws {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\system32\msdxm.ocx (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\lmiinit: DllName - LMIinit.dll - C:\WINDOWS\System32\LMIinit.dll (LogMeIn, Inc.)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Rostislav Drápal\Data aplikací\IrfanView\IrfanView_Wallpaper.bmp
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008.05.29 19:18:52 | 000,000,139 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010.04.17 13:25:33 | 000,000,000 | --SD | C] -- C:\ComboFix
[2010.04.17 12:58:17 | 000,000,000 | ---D | C] -- C:\RECYCLER(2)
[2010.04.17 12:58:04 | 000,000,000 | ---D | C] -- C:\ComboFix(2)
[2010.04.17 12:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2010.04.17 11:59:09 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010.04.17 11:58:27 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2010.04.17 11:58:27 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2010.04.17 11:58:27 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2010.04.17 11:58:27 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2010.04.17 11:58:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010.04.17 11:58:14 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010.04.17 10:07:51 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hidserv.dll
[2010.04.15 19:39:06 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2010.04.15 19:39:05 | 000,000,000 | ---D | C] -- C:\rsit
[2010.04.15 18:58:21 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2010.04.14 20:00:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Microsoft
[2010.04.11 13:35:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\DVD Shrink
[2008.02.07 21:59:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\Ahead
[2005.11.21 22:27:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\AVG7
[2005.11.21 22:23:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Data aplikací\AVG7
[2005.11.11 15:30:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Microsoft
[2005.11.11 15:26:35 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Data aplikací\Microsoft
[2005.11.11 15:26:35 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Data aplikací\Microsoft
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[17 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.11.11 09:07:36 | 000,002,504 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010.04.17 13:36:05 | 000,898,116 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010.04.17 13:36:05 | 000,384,722 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010.04.17 13:36:05 | 000,384,628 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2010.04.17 13:36:05 | 000,064,204 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2010.04.17 13:36:05 | 000,054,500 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010.04.17 13:34:52 | 000,029,204 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010.04.17 13:27:20 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.04.17 13:27:11 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.04.17 12:31:56 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010.04.17 12:31:43 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010.04.17 12:26:03 | 006,205,440 | ---- | M] () -- C:\Documents and Settings\Rostislav Drápal\ntuser.dat
[2010.04.17 12:02:49 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Rostislav Drápal\ntuser.ini
[2010.04.17 11:59:14 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2010.04.17 11:57:08 | 003,916,775 | R--- | M] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\ComboFix.exe
[2010.04.17 10:42:56 | 000,451,584 | ---- | M] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\CKScanner.exe
[2010.04.17 10:06:21 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.04.15 19:17:13 | 000,781,909 | ---- | M] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\RSIT.exe
[2010.04.15 17:03:01 | 000,003,791 | ---- | M] () -- C:\WINDOWS\wincmd.ini
[2010.04.15 16:52:04 | 000,000,229 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010.04.15 16:40:28 | 000,000,349 | ---- | M] () -- C:\Documents and Settings\All Users\Dokumenty\PCLECHAL.INI
[2010.04.13 16:28:24 | 000,002,275 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\skype.lnk
[2010.04.11 14:24:50 | 000,058,880 | ---- | M] () -- C:\Documents and Settings\Rostislav Drápal\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.04.10 11:19:04 | 000,344,417 | ---- | M] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\mates duben 2010 - 1.jpg
[2010.04.10 11:17:46 | 000,318,324 | ---- | M] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\duben 2010.jpg
[2010.04.03 09:24:02 | 000,001,103 | ---- | M] () -- C:\WINDOWS\win.ini
[2010.04.03 09:23:49 | 000,304,160 | ---- | M] () -- C:\PA207.DAT
[2010.04.01 21:43:56 | 000,000,316 | ---- | M] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\redir.html
[2010.03.22 20:58:01 | 000,000,091 | ---- | M] () -- C:\WINDOWS\System\TSCP_H0.THD
[2010.03.21 20:45:31 | 000,000,037 | ---- | M] () -- C:\WINDOWS\System\TSCP_H3.THD
[2010.03.21 20:44:37 | 000,000,081 | ---- | M] () -- C:\WINDOWS\System\TSCP_H8.THD
[2010.03.21 20:44:31 | 000,000,037 | ---- | M] () -- C:\WINDOWS\System\TSCP_H2.THD
[2010.03.21 20:44:17 | 000,000,020 | ---- | M] () -- C:\WINDOWS\System\TSCP_H1.THD
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[17 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010.04.17 11:59:14 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2010.04.17 11:59:11 | 000,261,312 | ---- | C] () -- C:\cmldr
[2010.04.17 11:58:27 | 000,261,632 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010.04.17 11:58:27 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010.04.17 11:58:27 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010.04.17 11:58:27 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010.04.17 11:58:27 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2010.04.17 11:56:55 | 003,916,775 | R--- | C] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\ComboFix.exe
[2010.04.17 10:43:00 | 000,451,584 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\CKScanner.exe
[2010.04.15 19:17:15 | 000,781,909 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\RSIT.exe
[2010.04.10 11:19:04 | 000,344,417 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\mates duben 2010 - 1.jpg
[2010.04.10 11:17:45 | 000,318,324 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\duben 2010.jpg
[2010.04.01 21:43:56 | 000,000,316 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\Plocha\redir.html
[2010.03.21 20:44:31 | 000,000,037 | ---- | C] () -- C:\WINDOWS\System\TSCP_H2.THD
[2010.03.21 20:44:17 | 000,000,020 | ---- | C] () -- C:\WINDOWS\System\TSCP_H1.THD
[2009.12.28 15:15:03 | 000,000,399 | ---- | C] () -- C:\WINDOWS\System32\Remover.ini
[2009.12.28 15:14:58 | 000,000,566 | ---- | C] () -- C:\WINDOWS\System32\SP207.ini
[2009.10.26 16:11:09 | 006,205,440 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\ntuser.dat
[2009.10.19 21:32:17 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll
[2009.08.08 11:00:22 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\DVResampleru.dll
[2009.04.03 20:33:12 | 000,000,048 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\wiaserva.log
[2008.05.29 19:18:52 | 000,196,096 | ---- | C] () -- C:\WINDOWS\System32\macd32.dll
[2008.05.29 19:18:52 | 000,138,752 | ---- | C] () -- C:\WINDOWS\System32\mase32.dll
[2008.05.29 19:18:52 | 000,136,192 | ---- | C] () -- C:\WINDOWS\System32\mamc32.dll
[2008.05.29 19:18:52 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\masd32.dll
[2008.05.29 19:18:52 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\ma32.dll
[2008.03.19 16:32:53 | 000,000,032 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\ezsid.dat
[2008.02.07 19:23:30 | 000,000,087 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\default.pls
[2008.02.07 19:18:37 | 000,000,229 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008.01.16 17:56:01 | 000,153,088 | ---- | C] () -- C:\Program Files\UNWISE.EXE
[2008.01.16 17:54:54 | 000,000,024 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\__FileUploader.log
[2007.09.28 10:22:40 | 000,000,136 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\Local Settings\Data aplikací\fusioncache.dat
[2007.09.28 09:33:56 | 000,001,641 | ---- | C] () -- C:\WINDOWS\WDICT32.INI
[2007.09.15 07:12:10 | 000,004,796 | ---- | C] () -- C:\WINDOWS\WTRAN32.INI
[2007.09.14 18:00:54 | 000,000,034 | ---- | C] () -- C:\WINDOWS\render.ini
[2007.02.28 19:14:18 | 000,000,098 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\AVSDVDPlayer.m3u
[2007.02.28 19:13:36 | 000,524,288 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2007.02.28 19:13:36 | 000,139,264 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2007.01.24 18:27:45 | 000,000,016 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2006.12.12 16:54:38 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2006.12.12 16:53:28 | 000,000,138 | ---- | C] () -- C:\WINDOWS\disney.ini
[2006.11.24 20:31:16 | 000,001,820 | ---- | C] () -- C:\WINDOWS\MapaCR.INI
[2006.09.15 18:48:02 | 000,000,035 | ---- | C] () -- C:\WINDOWS\A5W.INI
[2006.01.08 10:56:04 | 000,000,600 | ---- | C] () -- C:\WINDOWS\Rtcw.INI
[2006.01.06 15:52:46 | 000,000,044 | ---- | C] () -- C:\WINDOWS\SILCOM_P.INI
[2006.01.05 16:04:17 | 000,000,120 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini
[2006.01.05 16:01:07 | 000,003,791 | ---- | C] () -- C:\WINDOWS\wincmd.ini
[2005.12.29 19:50:38 | 000,000,086 | ---- | C] () -- C:\WINDOWS\WinFight.ini
[2005.12.28 14:09:59 | 000,000,288 | ---- | C] () -- C:\WINDOWS\LEXICON.INI
[2005.12.25 09:41:49 | 000,000,132 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2005.11.22 22:02:30 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2005.11.12 15:45:42 | 000,058,880 | ---- | C] () -- C:\Documents and Settings\Rostislav Drápal\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2005.11.11 23:54:35 | 000,000,513 | ---- | C] () -- C:\WINDOWS\DFC.INI
[2005.11.11 23:50:18 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll
[2005.11.11 23:23:12 | 000,000,026 | ---- | C] () -- C:\WINDOWS\tsctv.ini
[2005.11.11 22:16:53 | 000,028,672 | R--- | C] () -- C:\WINDOWS\System32\cmirmdrv.dll
[2005.11.11 15:33:09 | 000,001,024 | -H-- | C] () -- C:\Documents and Settings\Rostislav Drápal\ntuser.dat.LOG
[2005.11.11 15:33:09 | 000,000,178 | -HS- | C] () -- C:\Documents and Settings\Rostislav Drápal\ntuser.ini
[2005.10.14 12:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005.10.14 12:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.10.14 12:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.10.14 12:56:50 | 000,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2005.10.14 12:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.10.14 12:56:49 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll
[2005.08.02 10:35:00 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2005.08.02 10:35:00 | 001,466,368 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2005.08.02 10:35:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2005.08.02 10:35:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2005.07.20 15:07:00 | 000,540,672 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
[2005.07.20 15:07:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2004.11.06 03:31:18 | 000,002,574 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2004.11.06 03:31:17 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2004.11.05 23:23:55 | 000,003,972 | ---- | C] () -- C:\WINDOWS\System32\drivers\PciBus.sys
[2004.08.17 17:49:16 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2004.08.17 17:49:10 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\ieencode.dll
[2003.02.13 12:20:24 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[1997.02.22 01:00:00 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\DOCOBJ.DLL
[1997.02.22 01:00:00 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\HLINKPRX.DLL
[1997.02.22 01:00:00 | 000,011,776 | ---- | C] () -- C:\WINDOWS\System32\VACS232.DLL
========== LOP Check ==========
[2010.01.24 11:04:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Autodesk
[2006.02.02 22:16:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\muvee Technologies
[2009.10.02 19:23:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NFS Underground
[2008.01.16 17:49:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Pinnacle
[2008.01.16 17:40:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Pinnacle Studio
[2007.10.09 19:58:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SmartSound Software Inc
[2005.11.21 22:27:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\AVG7
[2005.11.21 22:23:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Data aplikací\AVG7
[2007.09.28 10:34:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\Autodesk
[2007.01.25 22:56:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\AVG7
[2006.02.02 23:06:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\IrfanView
[2010.01.18 18:37:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\pdfforge
[2010.01.18 18:37:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rostislav Drápal\Data aplikací\Search Settings
========== Purity Check ==========
< End of report >