Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalé letité pc, nefunkční avast

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalé letité pc, nefunkční avast

#16 Příspěvek od Márty84 »

:arrow: Kolegu jeste napadlo toto
Zkuste Avastu vypnout sebeochranu a pak ho znovu odinstalovat
cernohous13 píše:Avast - klik pravým na pomeranč -> Zobrazit uživatelské rozhraní -> Nastavení (nahoře) -> Řešení problémů -> fajfka pryč u Zapnout sebeochranné mechanizmy - pak jejich odinstalátor
:arrow: Kdyz to nezabere, stahnete ten novy Avast a spustte instalaci, treba se vzpamatuje.

:arrow: Pred spustenim (nebo i stazenim) ComboFixu musite Avast vypnout, tedy vypnout jeho stity. Pripadne ho spustte v nouzaku, tam by do toho Avast kecat nemel.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Jiri.Hrdis
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 04 lis 2012 12:56

Re: Pomalé letité pc, nefunkční avast

#17 Příspěvek od Jiri.Hrdis »

Spustil jsem ho teda v nouzáku, jinak ikonu avastu tady nikde už nemám akorát mi dole v liště vyskakuje okno, že je avast zastaralý

ComboFix 12-11-05.03 - Jirka 06.11.2012 11:47:10.1.1 - x86 NETWORK
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.511.259 [GMT 1:00]
Spuštěný z: c:\documents and settings\Jirka\Plocha\ComboFix.exe
AV: avast! Antivirus *Enabled/Outdated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\msmqinst.log
c:\windows\system32\TZLog.log
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-10-06 do 2012-11-06 )))))))))))))))))))))))))))))))
.
.
2012-11-06 08:41 . 2012-11-06 10:30 -------- d-----w- C:\## aswSnx private storage
2012-11-05 10:38 . 2012-11-05 10:38 -------- d-----w- C:\_OTM
2012-11-05 07:14 . 2012-11-05 07:17 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2012-11-05 07:14 . 2012-11-05 07:14 -------- d-----w- c:\documents and settings\Jirka\Data aplikací\Malwarebytes
2012-11-05 07:13 . 2012-11-05 07:13 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2012-11-05 07:13 . 2012-11-05 07:13 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-11-05 07:13 . 2012-09-29 18:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-05 06:52 . 2012-11-05 09:09 -------- d-----w- c:\windows\SxsCaPendDel
2012-11-04 18:33 . 2012-11-04 20:18 -------- d-s---w- c:\documents and settings\Administrator
2012-11-04 17:12 . 2012-11-04 17:12 -------- d-----w- c:\documents and settings\Jirka\Local Settings\Data aplikací\APN
2012-11-04 17:12 . 2012-11-04 17:12 -------- d-----w- c:\documents and settings\Jirka\Local Settings\Data aplikací\AskToolbar
2012-11-04 11:59 . 2012-11-05 10:08 -------- d-----w- c:\program files\trend micro
2012-11-04 11:59 . 2012-11-04 12:01 -------- d-----w- C:\rsit
2012-11-04 11:53 . 2012-06-02 14:18 275696 ----a-w- c:\windows\system32\mucltui.dll
2012-11-04 11:53 . 2012-06-02 14:18 214256 ----a-w- c:\windows\system32\muweb.dll
2012-10-30 17:14 . 2012-10-30 17:14 -------- d-----w- c:\program files\Microsoft Silverlight
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-12 08:51 . 2012-07-22 08:54 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-12 08:51 . 2011-11-13 15:41 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-09-25 06:47 . 2012-09-25 06:48 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-09-25 06:46 . 2012-02-23 15:37 143872 ----a-w- c:\windows\system32\javacpl.cpl
2012-09-25 06:46 . 2012-09-25 06:49 821736 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-09-25 06:46 . 2010-06-29 18:49 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-08-28 15:18 . 2008-04-14 06:52 916992 ----a-w- c:\windows\system32\wininet.dll
2012-08-28 15:18 . 2008-04-14 06:51 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-08-28 15:18 . 2008-04-14 06:52 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2012-08-28 12:07 . 2008-04-14 05:50 385024 ----a-w- c:\windows\system32\html.iec
2012-08-24 13:53 . 2008-04-14 06:52 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-08-23 06:27 . 2008-04-14 08:06 2071808 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-08-23 06:27 . 2008-04-14 06:07 2195072 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-10-03 17:25 . 2011-11-13 15:26 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DTVRemote"="c:\program files\LifeView DTV\RemoteControl.exe" [2006-09-04 69632]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
.
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [24.2.2012 16:49 435032]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [24.2.2012 16:49 314456]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [24.2.2012 16:49 20568]
S3 AVHybrid;AVHybrid service;c:\windows\system32\drivers\AVHybrid.sys [12.11.2009 15:43 834816]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [5.11.2012 8:14 40776]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Connection Wizard,ShellNext = iexplore
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.11.11
FF - ProfilePath - c:\documents and settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nwa4dkd5.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2475029&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=ORJ&o=&locale=&apn_uid=0159A27F-03C7-409B-9233-20DBA6D39A72&apn_ptnrs=U3&apn_sauid=085D2EEB-102A-42F8-A4AD-B664B0E4BDCF&apn_dtid=OSJ000YYCZ&&q=
FF - ExtSQL: 2012-11-04 21:18; toolbar@ask.com; c:\documents and settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nwa4dkd5.default\extensions\toolbar@ask.com
FF - ExtSQL: !HIDDEN! 2010-12-19 18:43; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-11-06 11:53
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
Celkový čas: 2012-11-06 11:56:07
ComboFix-quarantined-files.txt 2012-11-06 10:56
.
Před spuštěním: Volných bajtů: 14 244 679 680
Po spuštění: Volných bajtů: 14 194 180 096
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /safeboot:network
.
- - End Of File - - 38415B870763EED6EB790E99E1BD4661

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalé letité pc, nefunkční avast

#18 Příspěvek od Márty84 »

Toto jste zkousel?
Márty84 píše:stahnete novy avast http://www.stahuj.centrum.cz/utility_a_ ... tni/avast/ a zkuste spustit instalaci. Treba opravi tu stavajici.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Jiri.Hrdis
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 04 lis 2012 12:56

Re: Pomalé letité pc, nefunkční avast

#19 Příspěvek od Jiri.Hrdis »

zkoušel neopravil

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalé letité pc, nefunkční avast

#20 Příspěvek od Márty84 »

OK. Odpalim ho tedy silou.

:!: Udelejte to opet v nouzovem rezimu

:arrow: Otevrete si poznamkovy blok a zkopirujte do nej tento skript

Kód: Vybrat vše

KillAll::

File::
c:\windows\system32\drivers\aswSnx.sys
c:\windows\system32\drivers\aswSP.sys
c:\windows\system32\drivers\aswFsBlk.sys
C:\WINDOWS\system32\drivers\Aavmker4.sys
C:\WINDOWS\system32\drivers\aswTdi.sys
C:\WINDOWS\system32\drivers\aswMon2.sys
C:\WINDOWS\system32\drivers\aswRdr.sys

Folder::
c:\documents and settings\Jirka\Local Settings\Data aplikací\AskToolbar
c:\program files\AVAST Software

Firefox::
FF - ProfilePath - c:\documents and settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nwa4dkd5.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?clien ... 00YYCZ&&q=
FF - ExtSQL: 2012-11-04 21:18; toolbar@ask.com; c:\documents and settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nwa4dkd5.default\extensions\toolbar@ask.com

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=-

RegLock::
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]

Driver::
aswSnx
aswSP
aswFsBlk
Aavmker4
aswTdi
aswMon2
aswRdr
avast! Antivirus

Reboot::
Vlevo nahore kliknete na napis Soubor
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev CFScript a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni a ukoncete vsechny spustene programy
Pretahntete mysi tento vytvoreny textovy dokument nad ikonu ComboFix a pustte.
ComboFix by se mel spustit a vykonat prikazy.
Az skonci (muze dojit k restartu pc), mel by se objevit novy log, ten mi sem zase zkopirujte.

:!: Kdyby po restartu nenabehl windows, restartujte znovu, mackejte klavesu F8 a zvolte - Posledni znama funkcni konfigurace
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Jiri.Hrdis
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 04 lis 2012 12:56

Re: Pomalé letité pc, nefunkční avast

#21 Příspěvek od Jiri.Hrdis »

Musím už do práce nashledanou

ComboFix 12-11-05.03 - Jirka 06.11.2012 13:12:00.1.1 - x86 NETWORK
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.511.256 [GMT 1:00]
Spuštěný z: c:\documents and settings\Jirka\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Jirka\Plocha\CFScript.txt
AV: avast! Antivirus *Enabled/Outdated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
FILE ::
"c:\windows\system32\drivers\Aavmker4.sys"
"c:\windows\system32\drivers\aswFsBlk.sys"
"c:\windows\system32\drivers\aswMon2.sys"
"c:\windows\system32\drivers\aswRdr.sys"
"c:\windows\system32\drivers\aswSnx.sys"
"c:\windows\system32\drivers\aswSP.sys"
"c:\windows\system32\drivers\aswTdi.sys"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\AVAST Software
c:\program files\AVAST Software\Avast\1029\aswClnTg.htm
c:\program files\AVAST Software\Avast\1029\aswClnTg.txt
c:\program files\AVAST Software\Avast\1029\aswInfTg.htm
c:\program files\AVAST Software\Avast\1029\aswInfTg.txt
c:\program files\AVAST Software\Avast\1029\Avast5_1029.chm
c:\program files\AVAST Software\Avast\1029\Base.dll
c:\program files\AVAST Software\Avast\1029\Boot.dll
c:\program files\AVAST Software\Avast\1029\uiLangRes.dll
c:\program files\AVAST Software\Avast\Aavm4h.dll
c:\program files\AVAST Software\Avast\AavmRpch.dll
c:\program files\AVAST Software\Avast\AhAScr.dll
c:\program files\AVAST Software\Avast\AhResBhv.dll
c:\program files\AVAST Software\Avast\AhResJs.dll
c:\program files\AVAST Software\Avast\AhResMai.dll
c:\program files\AVAST Software\Avast\AhResMes.dll
c:\program files\AVAST Software\Avast\AhResNS.dll
c:\program files\AVAST Software\Avast\AhResNS.dll.sum
c:\program files\AVAST Software\Avast\AhResP2P.dll
c:\program files\AVAST Software\Avast\AhResStd.dll
c:\program files\AVAST Software\Avast\AhResWS.dll
c:\program files\AVAST Software\Avast\ashBase.dll
c:\program files\AVAST Software\Avast\ashMaiSv.dll
c:\program files\AVAST Software\Avast\ashOutXt.dll
c:\program files\AVAST Software\Avast\ashQuick.exe
c:\program files\AVAST Software\Avast\ashServ.dll
c:\program files\AVAST Software\Avast\ashServ.dll.sum
c:\program files\AVAST Software\Avast\ashShell.dll
c:\program files\AVAST Software\Avast\ashTask.dll
c:\program files\AVAST Software\Avast\ashTaskEx.dll
c:\program files\AVAST Software\Avast\ashUpd.exe
c:\program files\AVAST Software\Avast\ashWebSv.dll
c:\program files\AVAST Software\Avast\ashWsFtr.dll
c:\program files\AVAST Software\Avast\aswAux.dll
c:\program files\AVAST Software\Avast\aswCmnBS.dll
c:\program files\AVAST Software\Avast\aswCmnIS.dll
c:\program files\AVAST Software\Avast\aswCmnOS.dll
c:\program files\AVAST Software\Avast\aswData.dll
c:\program files\AVAST Software\Avast\aswDld.dll
c:\program files\AVAST Software\Avast\aswEngLdr.dll
c:\program files\AVAST Software\Avast\aswChLic.exe
c:\program files\AVAST Software\Avast\aswIdle.dll
c:\program files\AVAST Software\Avast\aswJsFlt.dll
c:\program files\AVAST Software\Avast\aswJsFlt.dll.sum
c:\program files\AVAST Software\Avast\aswLog.dll
c:\program files\AVAST Software\Avast\aswMonDS.sys
c:\program files\AVAST Software\Avast\aswMonVD.dll
c:\program files\AVAST Software\Avast\aswProperty.dll
c:\program files\AVAST Software\Avast\aswRegSvr.exe
c:\program files\AVAST Software\Avast\aswRegSvr64.exe
c:\program files\AVAST Software\Avast\aswRunDll.exe
c:\program files\AVAST Software\Avast\aswSqLt.dll
c:\program files\AVAST Software\Avast\aswStrm.dll
c:\program files\AVAST Software\Avast\aswStrm.dll.sum
c:\program files\AVAST Software\Avast\aswUtil.dll
c:\program files\AVAST Software\Avast\aswWebRepIE.dll
c:\program files\AVAST Software\Avast\avastSS.dll
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\AVAST Software\Avast\AvastUI.exe
c:\program files\AVAST Software\Avast\AvSSHook.dll
c:\program files\AVAST Software\Avast\CommonRes.dll
c:\program files\AVAST Software\Avast\defs\12022700\acshort.map
c:\program files\AVAST Software\Avast\defs\12022700\algo.dll
c:\program files\AVAST Software\Avast\defs\12022700\ArPot.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswAR.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswBoot.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswCleanerDLL.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswCmnBS.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswCmnIS.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswCmnOS.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswEngin.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswFiDb.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswRawFS.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswRep.dll
c:\program files\AVAST Software\Avast\defs\12022700\aswScan.dll
c:\program files\AVAST Software\Avast\defs\12022700\certs.map
c:\program files\AVAST Software\Avast\defs\12022700\db_dex.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_dex.map
c:\program files\AVAST Software\Avast\defs\12022700\db_dyna.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_dyna.map
c:\program files\AVAST Software\Avast\defs\12022700\db_el.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_elf.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_elf.map
c:\program files\AVAST Software\Avast\defs\12022700\db_elfa.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_elfa.map
c:\program files\AVAST Software\Avast\defs\12022700\db_java.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_java.map
c:\program files\AVAST Software\Avast\defs\12022700\db_js.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_js.map
c:\program files\AVAST Software\Avast\defs\12022700\db_mx4.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_mx4.map
c:\program files\AVAST Software\Avast\defs\12022700\db_mx95.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_mx95.map
c:\program files\AVAST Software\Avast\defs\12022700\db_o7.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_o7.map
c:\program files\AVAST Software\Avast\defs\12022700\db_ob.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_pe2.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_pe3.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_swf.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_swf.map
c:\program files\AVAST Software\Avast\defs\12022700\db_tx.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_u.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_w6.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_w6.map
c:\program files\AVAST Software\Avast\defs\12022700\db_wh2.dat
c:\program files\AVAST Software\Avast\defs\12022700\db_xtn.map
c:\program files\AVAST Software\Avast\defs\12022700\def.ini
c:\program files\AVAST Software\Avast\defs\12022700\dllcc.dat
c:\program files\AVAST Software\Avast\defs\12022700\exts.dll
c:\program files\AVAST Software\Avast\defs\12022700\fwAux.dll
c:\program files\AVAST Software\Avast\defs\12022700\l_idx.map
c:\program files\AVAST Software\Avast\defs\12022700\l_nmp.map
c:\program files\AVAST Software\Avast\defs\12022700\list_d.txt
c:\program files\AVAST Software\Avast\defs\12022700\list_i.txt
c:\program files\AVAST Software\Avast\defs\12022700\lshe3.map
c:\program files\AVAST Software\Avast\defs\12022700\s_idx.map
c:\program files\AVAST Software\Avast\defs\12022700\s_nmp.map
c:\program files\AVAST Software\Avast\defs\12022700\Sf.bin
c:\program files\AVAST Software\Avast\defs\12022700\Sf1.bin
c:\program files\AVAST Software\Avast\defs\12022700\sl_idx.map
c:\program files\AVAST Software\Avast\defs\12022700\sl_nmp.map
c:\program files\AVAST Software\Avast\defs\12022700\uiext.dll
c:\program files\AVAST Software\Avast\defs\12022700\whitelist.db
c:\program files\AVAST Software\Avast\defs\aswdefs.ini
c:\program files\AVAST Software\Avast\flash\amcharts_key.txt
c:\program files\AVAST Software\Avast\flash\amline.swf
c:\program files\AVAST Software\Avast\flash\ammap\ammap.swf
c:\program files\AVAST Software\Avast\flash\ammap\ammap_key.txt
c:\program files\AVAST Software\Avast\flash\ammap\ammap_settings_summary.xml
c:\program files\AVAST Software\Avast\flash\ammap\ammap_settings_tracert.xml
c:\program files\AVAST Software\Avast\flash\ammap\empty_map.xml
c:\program files\AVAST Software\Avast\flash\ammap\icons\arrow.swf
c:\program files\AVAST Software\Avast\flash\ammap\icons\bubble.swf
c:\program files\AVAST Software\Avast\flash\ammap\icons\cross.swf
c:\program files\AVAST Software\Avast\flash\ammap\icons\flag.swf
c:\program files\AVAST Software\Avast\flash\ammap\icons\pin.swf
c:\program files\AVAST Software\Avast\flash\ammap\icons\zoom_out.swf
c:\program files\AVAST Software\Avast\flash\ammap\maps\world.swf
c:\program files\AVAST Software\Avast\License\EULA_Avast_Free.txt
c:\program files\AVAST Software\Avast\Setup\ais_core-48b.vpx
c:\program files\AVAST Software\Avast\Setup\ais_dll_cze-492.vpx
c:\program files\AVAST Software\Avast\Setup\ais_res-3d1.vpx
c:\program files\AVAST Software\Avast\Setup\Components.ini
c:\program files\AVAST Software\Avast\Setup\INF\Aavmker4.sys
c:\program files\AVAST Software\Avast\Setup\INF\aswFsBlk.sys
c:\program files\AVAST Software\Avast\Setup\INF\aswMon.sys
c:\program files\AVAST Software\Avast\Setup\INF\aswMon2.sys
c:\program files\AVAST Software\Avast\Setup\INF\aswMonFlt.sys
c:\program files\AVAST Software\Avast\Setup\INF\AswRdr.sys
c:\program files\AVAST Software\Avast\Setup\INF\aswSnx.sys
c:\program files\AVAST Software\Avast\Setup\INF\aswSP.sys
c:\program files\AVAST Software\Avast\Setup\INF\AswTdi.sys
c:\program files\AVAST Software\Avast\Setup\jrog-a7.vpx
c:\program files\AVAST Software\Avast\Setup\jrog2-43f.vpx
c:\program files\AVAST Software\Avast\Setup\part-jrog-a7.vpx
c:\program files\AVAST Software\Avast\Setup\part-jrog2-43f.vpx
c:\program files\AVAST Software\Avast\Setup\part-prg_ais-57f.vpx
c:\program files\AVAST Software\Avast\Setup\part-setup_ais-57f.vpx
c:\program files\AVAST Software\Avast\Setup\part-vps_win32-12022700.vpx
c:\program files\AVAST Software\Avast\Setup\prod-ais.vpx
c:\program files\AVAST Software\Avast\Setup\servers.def
c:\program files\AVAST Software\Avast\Setup\servers.def.lkg
c:\program files\AVAST Software\Avast\Setup\servers.def.vpx
c:\program files\AVAST Software\Avast\Setup\setif_ais-57f.vpx
c:\program files\AVAST Software\Avast\Setup\setiface.dll
c:\program files\AVAST Software\Avast\Setup\setiface.ovr
c:\program files\AVAST Software\Avast\Setup\settings.ori
c:\program files\AVAST Software\Avast\Setup\setup.ini
c:\program files\AVAST Software\Avast\Setup\setup.log
c:\program files\AVAST Software\Avast\Setup\setup.ovr
c:\program files\AVAST Software\Avast\Setup\setup_ais-57f.vpx
c:\program files\AVAST Software\Avast\Setup\summary.txt
c:\program files\AVAST Software\Avast\Setup\vps_32-72e.vpx
c:\program files\AVAST Software\Avast\Setup\vps_win32-742.vpx
c:\program files\AVAST Software\Avast\Setup\winsys-4.vpx
c:\program files\AVAST Software\Avast\sched.exe
c:\program files\AVAST Software\Avast\snxhk.dll
c:\program files\AVAST Software\Avast\VisthAux.exe
c:\program files\AVAST Software\Avast\WebRep\FF\content\about.xul
c:\program files\AVAST Software\Avast\WebRep\FF\content\dateFormat.js
c:\program files\AVAST Software\Avast\WebRep\FF\content\install.js
c:\program files\AVAST Software\Avast\WebRep\FF\content\log.js
c:\program files\AVAST Software\Avast\WebRep\FF\content\overlay.js
c:\program files\AVAST Software\Avast\WebRep\FF\content\overlay.js.sum
c:\program files\AVAST Software\Avast\WebRep\FF\content\overlay.xul
c:\program files\AVAST Software\Avast\WebRep\FF\content\query.js
c:\program files\AVAST Software\Avast\WebRep\FF\content\ratings.js
c:\program files\AVAST Software\Avast\WebRep\FF\content\rules.js
c:\program files\AVAST Software\Avast\WebRep\FF\defaults\preferences\pref.js
c:\program files\AVAST Software\Avast\WebRep\FF\dump.html
c:\program files\AVAST Software\Avast\WebRep\FF\chrome.manifest
c:\program files\AVAST Software\Avast\WebRep\FF\install.rdf
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ar-SA\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ar-SA\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\be-BY\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\be-BY\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\bg-BG\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\bg-BG\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ca-ES\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ca-ES\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\cs-CZ\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\cs-CZ\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\da-DK\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\da-DK\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\de-DE\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\de-DE\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\el-GR\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\el-GR\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\en-GB\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\en-GB\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\en-US\about.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\en-US\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\en-US\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\es-ES\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\es-ES\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\et-EE\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\et-EE\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\fi-FI\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\fi-FI\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\fr-FR\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\fr-FR\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\he-IL\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\he-IL\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\hr-HR\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\hr-HR\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\hu-HU\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\hu-HU\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\id-ID\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\id-ID\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\it-IT\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\it-IT\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ja-JP\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ja-JP\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ko-KR\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ko-KR\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\nb-NO\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\nb-NO\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\nl-NL\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\nl-NL\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\pl-PL\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\pl-PL\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\pt-BR\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\pt-BR\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\pt-PT\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\pt-PT\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ro-RO\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ro-RO\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ru-RU\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ru-RU\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\sk-SK\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\sk-SK\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\sl-SI\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\sl-SI\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\sv-SE\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\sv-SE\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\th-TH\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\th-TH\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\tr-TR\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\tr-TR\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\uk-UA\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\uk-UA\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ur-PK\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\ur-PK\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\vi-VN\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\vi-VN\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\zh-CN\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\zh-CN\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\locale\zh-TW\wrc.dtd
c:\program files\AVAST Software\Avast\WebRep\FF\locale\zh-TW\wrc.properties
c:\program files\AVAST Software\Avast\WebRep\FF\skin\background-body.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\close.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\green1-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\green2-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\green3-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\grey0-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\grey3-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\orange1-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\orange2-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\orange3-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\red1-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\red2-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\red3-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\yellow1-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\yellow2-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 16x16px\yellow3-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\green1-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\green2-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\green3-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\grey0-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\grey3-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\orange1-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\orange2-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\orange3-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\red1-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\red2-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\red3-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\yellow1-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\yellow2-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\ico 24x24px\yellow3-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\close.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\green1.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\green2.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\green3.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\grey.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\check-priority.jp
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\check-priority.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\orange1.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\orange2.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\orange3.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\red1.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\red2.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\red3.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\shop-icon-big.jp
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\shop-icon-big.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\shop-icon-small.jp
c:\program files\AVAST Software\Avast\WebRep\FF\skin\icons\shop-icon-small.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\logo.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\overlay.css
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\background-body.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\background-body.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\background-header.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\background-right-bottom.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\background-right-top.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\background-right.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\bg-window.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\Button-1.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\button-middle.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\close-hover.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\close.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\corner-left-bottom.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\corner-left-top.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\corner-right-bottom.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\corner-right-top.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\corporate-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\corporate-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\corporate.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\drugs-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\drugs-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\drugs.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\gambling-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\gambling-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\gambling.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green-1.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green-2.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green-3.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green-hover.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green1-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green1-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green1-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green2-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green2-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green2-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green3-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green3-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\green3-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\grey-0.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\grey-3.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\grey-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\grey0-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\grey0-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\grey3-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\grey3-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\horizontal-line-white.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\horizontal-line.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\illegal-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\illegal-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\illegal.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\it-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\it-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\it.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\kenny.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\limet-hover.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\limet-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\limet.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\line-dark-horizontal.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\line-light-horizontal.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\logo.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\news-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\news-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\news.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\orange-hover.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\orange-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\orange.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\pornography-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\pornography-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\pornography.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red-1-108.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red-1.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red-2.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red-3.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red-hover.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red1-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red1-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red1-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red2-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red2-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red2-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red3-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red3-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\red3-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\shopping-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\shopping-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\shopping.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\social-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\social-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\social.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\vertical-line.jpg
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\violence-small-disable.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\violence-small-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\violence.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\Warning.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\window-wrc.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow-1.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow-2.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow-3.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow-hover.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow-selected.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow1-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow1-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow1-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow2-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow2-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow2-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow3-16.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow3-24.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\png\yellow3-small.png
c:\program files\AVAST Software\Avast\WebRep\FF\skin\wrc ico 16x16px a 24x24px.zip
c:\program files\AVAST Software\Avast\WebRep\FF\test.html
c:\program files\AVAST Software\Avast\WebRep\Chrome\AswWebRepChrome.crx
c:\program files\AVAST Software\Avast\WebRep\Chrome\AswWebRepChrome.crx.sum
c:\program files\AVAST Software\Avast\WebRep\Chrome\AswWebRepChrome.ver
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_AAVMKER4
-------\Legacy_ASWFSBLK
-------\Legacy_ASWMON2
-------\Legacy_ASWRDR
-------\Legacy_ASWSNX
-------\Legacy_ASWSP
-------\Legacy_ASWTDI
-------\Legacy_AVAST!_ANTIVIRUS
-------\Service_Aavmker4
-------\Service_aswFsBlk
-------\Service_aswMon2
-------\Service_aswRdr
-------\Service_aswSnx
-------\Service_aswSP
-------\Service_aswTdi
-------\Service_avast! Antivirus
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-10-06 do 2012-11-06 )))))))))))))))))))))))))))))))
.
.
2012-11-06 11:00 . 2012-11-06 11:00 -------- d-----w- c:\windows\system32\wbem\Repository
2012-11-06 08:41 . 2012-11-06 11:00 -------- d-----w- C:\## aswSnx private storage
2012-11-05 10:38 . 2012-11-05 10:38 -------- d-----w- C:\_OTM
2012-11-05 07:14 . 2012-11-05 07:17 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2012-11-05 07:14 . 2012-11-05 07:14 -------- d-----w- c:\documents and settings\Jirka\Data aplikací\Malwarebytes
2012-11-05 07:13 . 2012-11-05 07:13 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2012-11-05 07:13 . 2012-11-05 07:13 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-11-05 07:13 . 2012-09-29 18:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-11-05 06:52 . 2012-11-05 09:09 -------- d-----w- c:\windows\SxsCaPendDel
2012-11-04 18:33 . 2012-11-04 20:18 -------- d-s---w- c:\documents and settings\Administrator
2012-11-04 17:12 . 2012-11-04 17:12 -------- d-----w- c:\documents and settings\Jirka\Local Settings\Data aplikací\APN
2012-11-04 17:12 . 2012-11-04 17:12 -------- d-----w- c:\documents and settings\Jirka\Local Settings\Data aplikací\AskToolbar
2012-11-04 11:59 . 2012-11-05 10:08 -------- d-----w- c:\program files\trend micro
2012-11-04 11:59 . 2012-11-04 12:01 -------- d-----w- C:\rsit
2012-11-04 11:53 . 2012-06-02 14:18 275696 ----a-w- c:\windows\system32\mucltui.dll
2012-11-04 11:53 . 2012-06-02 14:18 214256 ----a-w- c:\windows\system32\muweb.dll
2012-10-30 17:14 . 2012-10-30 17:14 -------- d-----w- c:\program files\Microsoft Silverlight
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-10-12 08:51 . 2012-07-22 08:54 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-12 08:51 . 2011-11-13 15:41 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-09-25 06:47 . 2012-09-25 06:48 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-09-25 06:46 . 2012-02-23 15:37 143872 ----a-w- c:\windows\system32\javacpl.cpl
2012-09-25 06:46 . 2012-09-25 06:49 821736 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-09-25 06:46 . 2010-06-29 18:49 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-08-28 15:18 . 2008-04-14 06:52 916992 ----a-w- c:\windows\system32\wininet.dll
2012-08-28 15:18 . 2008-04-14 06:51 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-08-28 15:18 . 2008-04-14 06:52 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2012-08-28 12:07 . 2008-04-14 05:50 385024 ----a-w- c:\windows\system32\html.iec
2012-08-24 13:53 . 2008-04-14 06:52 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-08-23 06:27 . 2008-04-14 08:06 2071808 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-08-23 06:27 . 2008-04-14 06:07 2195072 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-10-03 17:25 . 2011-11-13 15:26 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DTVRemote"="c:\program files\LifeView DTV\RemoteControl.exe" [2006-09-04 69632]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
.
S3 AVHybrid;AVHybrid service;c:\windows\system32\drivers\AVHybrid.sys [12.11.2009 15:43 834816]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [5.11.2012 8:14 40776]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Connection Wizard,ShellNext = iexplore
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.11.11
FF - ProfilePath - c:\documents and settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nwa4dkd5.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - ExtSQL: 2012-11-04 21:18; toolbar@ask.com; c:\documents and settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nwa4dkd5.default\extensions\toolbar@ask.com
FF - ExtSQL: !HIDDEN! 2010-12-19 18:43; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - c:\program files\AVAST Software\Avast\ashShell.dll
AddRemove-avast - c:\program files\AVAST Software\Avast\aswRunDll.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-11-06 13:22
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
Celkový čas: 2012-11-06 13:25:26 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-11-06 12:25
ComboFix2.txt 2012-11-06 10:56
.
Před spuštěním: Volných bajtů: 13 825 228 800
Po spuštění: Volných bajtů: 13 622 067 200
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /safeboot:network
.
- - End Of File - - CF6FC6FE111F34C70FDCAE8140E16374

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalé letité pc, nefunkční avast

#22 Příspěvek od Márty84 »

Jiri.Hrdis píše:Musím už do práce
Ja taky :D

:arrow: Zkuste pak zase pouzit ten odinstalator Avastu, jestli to tentokrat vycisti a pak nainstalovat Avast novy (pripadne jiny AV, pokud uz ho nechcete)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Jiri.Hrdis
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 04 lis 2012 12:56

Re: Pomalé letité pc, nefunkční avast

#23 Příspěvek od Jiri.Hrdis »

Dobrý den, odinstalátor Avastu normálně nešel, tak jsem to zkusil v nouzáku, tam se něco dělo ale psalo to anglicky, tak jsem tomu nerozuměl. pak jsem zkoušel nainstalovat nový a nejde. V ovládacích panelech stále visí akorát má místo 191MB 124MB

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalé letité pc, nefunkční avast

#24 Příspěvek od Márty84 »

:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe , ulozte na plochu a spustte.
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).




:arrow: Stahnete SystemLook http://jpshortstuff.247fixes.com/SystemLook.exe , ulozte ho na plochu a spustte.
Do okna zkopirujte tento skript

Kód: Vybrat vše

:filefind
*avast*

:regfind
avast

:folderfind
*avast*
kliknete na Look a chvili pockejte
Mel by na vas vyskocit log s nazvem Systemlook
Ten mi sem zkopirujte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Jiri.Hrdis
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 04 lis 2012 12:56

Re: Pomalé letité pc, nefunkční avast

#25 Příspěvek od Jiri.Hrdis »

OTL logfile created on: 7.11.2012 11:55:11 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Jirka\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

511,48 Mb Total Physical Memory | 132,67 Mb Available Physical Memory | 25,94% Memory free
1,22 Gb Paging File | 0,91 Gb Available in Paging File | 74,55% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29,29 Gb Total Space | 13,56 Gb Free Space | 46,29% Space Free | Partition Type: NTFS
Drive D: | 45,23 Gb Total Space | 19,53 Gb Free Space | 43,19% Space Free | Partition Type: NTFS

Computer Name: COMPUTER | User Name: Jirka | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012.11.07 11:51:41 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jirka\Plocha\OTL.exe
PRC - [2012.10.24 08:04:59 | 001,239,064 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2011.11.28 19:01:24 | 003,744,552 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2008.04.14 07:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2006.09.04 19:59:54 | 000,069,632 | ---- | M] () -- C:\Program Files\LifeView DTV\RemoteControl.exe


========== Modules (No Company Name) ==========

MOD - [2012.10.24 08:04:57 | 000,460,312 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\22.0.1229.96\ppgooglenaclpluginchrome.dll
MOD - [2012.10.24 08:04:55 | 012,435,992 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\22.0.1229.96\PepperFlash\pepflashplayer.dll
MOD - [2012.10.24 08:04:54 | 004,005,912 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\22.0.1229.96\pdf.dll
MOD - [2012.10.24 08:03:25 | 000,156,712 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\22.0.1229.96\avutil-51.dll
MOD - [2012.10.24 08:03:24 | 000,275,496 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\22.0.1229.96\avformat-54.dll
MOD - [2012.10.24 08:03:23 | 002,168,360 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\22.0.1229.96\avcodec-54.dll
MOD - [2008.04.14 07:51:48 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2007.01.11 10:19:40 | 000,090,112 | ---- | M] () -- C:\Program Files\LifeView DTV\LVDevMan.dll
MOD - [2006.09.04 19:59:54 | 000,069,632 | ---- | M] () -- C:\Program Files\LifeView DTV\RemoteControl.exe


========== Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2011.11.28 19:01:23 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2012.11.05 08:17:56 | 000,040,776 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - [2011.11.28 18:53:53 | 000,435,032 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011.11.28 18:53:35 | 000,314,456 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011.11.28 18:52:19 | 000,034,392 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011.11.28 18:52:16 | 000,052,952 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011.11.28 18:52:02 | 000,111,320 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2011.11.28 18:51:50 | 000,020,568 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2011.11.28 18:48:49 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2008.04.14 08:40:52 | 000,701,440 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2008.04.14 00:16:24 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MPE.sys -- (MPE)
DRV - [2007.01.31 12:47:02 | 000,834,816 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVHybrid.sys -- (AVHybrid)
DRV - [2004.03.08 12:55:50 | 000,013,567 | ---- | M] (B.H.A Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\CDRBSDRV.SYS -- (cdrbsdrv)
DRV - [2003.12.23 18:33:00 | 000,316,672 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvapu.sys -- (nvnforce)
DRV - [2003.12.23 18:33:00 | 000,040,704 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvax.sys -- (nvax)
DRV - [2003.03.19 15:51:00 | 000,018,688 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nv_agp.SYS -- (nv_agp)
DRV - [2002.11.27 20:52:00 | 000,080,896 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENET.sys -- (NVENET)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... rer:source?}
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-57989841-515967899-1177238915-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-57989841-515967899-1177238915-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-57989841-515967899-1177238915-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKU\S-1-5-21-57989841-515967899-1177238915-1003\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKU\S-1-5-21-57989841-515967899-1177238915-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-57989841-515967899-1177238915-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... PB_enCZ353
IE - HKU\S-1-5-21-57989841-515967899-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "MyAshampoo Customized Web Search"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledAddons: wrc@avast.com:6.0.1367
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012.11.07 08:47:41 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012.11.04 21:18:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012.11.04 18:01:56 | 000,000,000 | ---D | M]

[2009.11.15 15:10:42 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Extensions
[2012.11.05 11:42:53 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nwa4dkd5.default\extensions
[2011.03.11 15:35:57 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nwa4dkd5.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2012.10.30 16:00:29 | 000,672,576 | ---- | M] () (No name found) -- C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nwa4dkd5.default\extensions\{5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}.xpi
[2012.11.04 21:18:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012.11.07 08:47:41 | 000,000,000 | ---D | M] (No name found) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2012.10.03 18:25:08 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012.02.23 16:36:33 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll

========== Chrome ==========

CHR - homepage: http://www.seznam.cz/
CHR - default_search_provider: Ask (Enabled)
CHR - default_search_provider: search_url = http://websearch.ask.com/redirect?clien ... earchTerms}
CHR - default_search_provider: suggest_url = http://ss.websearch.ask.com/query?qsrc= ... earchTerms}
CHR - homepage: http://www.seznam.cz/
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\22.0.1229.96\PepperFlash\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\22.0.1229.96\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\22.0.1229.96\pdf.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Documents and Settings\Jirka\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.50.146.2_0\McChPlg.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 7.0.70.11 (Enabled) = C:\WINDOWS\system32\npDeployJava1.dll
CHR - plugin: QuickTime Plug-in 7.0.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.0.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.0.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.0.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.0.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.0.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.0.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: YouTube = C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Vyhled\u00E1v\u00E1n\u00ED Google = C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Gmail = C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012.11.06 13:22:24 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-57989841-515967899-1177238915-1003\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-57989841-515967899-1177238915-1003\..\Toolbar\WebBrowser: (no name) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - No CLSID value found.
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [DTVRemote] C:\Program Files\LifeView DTV\RemoteControl.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-57989841-515967899-1177238915-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/ ... ontrol.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Value error.)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.11.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{78E0B08A-3CF4-4565-AF3C-53DFDDB13D31}: DhcpNameServer = 192.168.11.11
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) - File not found
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.11.12 10:14:56 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.MJPG - C:\WINDOWS\System32\Pvmjpg21.dll (Pegasus Imaging Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2012.11.07 11:51:54 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jirka\Plocha\OTL.exe
[2012.11.07 09:30:53 | 004,997,488 | ---- | C] (Swearware) -- C:\Documents and Settings\Jirka\Plocha\ComboFix.exe
[2012.11.07 08:49:09 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2012.11.07 08:47:41 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2012.11.07 08:21:52 | 000,329,088 | ---- | C] (AVAST Software) -- C:\Documents and Settings\Jirka\Plocha\aswclear.exe
[2012.11.06 13:28:02 | 000,000,000 | -HSD | C] -- C:\RECYCLER(2)
[2012.11.06 13:25:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2012.11.06 13:09:57 | 000,000,000 | ---D | C] -- C:\cmdcons(3)
[2012.11.06 11:44:44 | 000,000,000 | ---D | C] -- C:\cmdcons(2)
[2012.11.06 11:38:25 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2012.11.06 11:24:35 | 000,000,000 | ---D | C] -- C:\ComboFix(2)
[2012.11.06 09:45:34 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012.11.06 09:41:08 | 000,000,000 | ---D | C] -- C:\## aswSnx private storage
[2012.11.06 09:38:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt
[2012.11.05 11:38:08 | 000,000,000 | ---D | C] -- C:\_OTM
[2012.11.05 11:34:50 | 000,522,240 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jirka\Plocha\OTM.exe
[2012.11.05 08:14:48 | 000,040,776 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2012.11.05 08:14:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jirka\Data aplikací\Malwarebytes
[2012.11.05 08:13:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2012.11.05 07:52:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2012.11.04 19:29:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2012.11.04 18:12:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jirka\Local Settings\Data aplikací\APN
[2012.11.04 18:12:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jirka\Local Settings\Data aplikací\AskToolbar
[2012.11.04 12:59:41 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2012.11.04 12:59:25 | 000,000,000 | ---D | C] -- C:\rsit
[2012.11.04 12:53:05 | 000,275,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll
[2012.11.04 12:53:05 | 000,017,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll.mui
[2012.10.30 18:14:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Silverlight
[2012.10.30 18:14:33 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2012.10.30 17:05:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome
[2012.10.19 10:43:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jirka\Plocha\jizerka
[2009.11.29 17:39:38 | 000,005,936 | ---- | C] (MCCI) -- C:\Documents and Settings\Jirka\mqdmwhnt.sys
[2009.11.29 17:39:37 | 000,079,328 | ---- | C] (MCCI) -- C:\Documents and Settings\Jirka\mqdmserd.sys
[2009.11.29 17:39:36 | 000,092,064 | ---- | C] (MCCI) -- C:\Documents and Settings\Jirka\mqdmmdm.sys
[2009.11.29 17:39:36 | 000,009,232 | ---- | C] (MCCI) -- C:\Documents and Settings\Jirka\mqdmmdfl.sys
[2009.11.29 17:39:36 | 000,004,048 | ---- | C] (MCCI) -- C:\Documents and Settings\Jirka\mqdmcr.sys
[2009.11.29 17:39:35 | 000,066,656 | ---- | C] (MCCI) -- C:\Documents and Settings\Jirka\mqdmbus.sys
[2009.11.29 17:39:35 | 000,006,208 | ---- | C] (MCCI) -- C:\Documents and Settings\Jirka\mqdmcmnt.sys
[2009.11.29 17:39:34 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\Jirka\usbsermptxp.sys
[2009.11.29 17:39:34 | 000,022,768 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\Jirka\usbsermpt.sys

========== Files - Modified Within 30 Days ==========

[2012.11.07 11:56:56 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.11.07 11:52:37 | 000,139,264 | ---- | M] () -- C:\Documents and Settings\Jirka\Plocha\SystemLook.exe
[2012.11.07 11:51:41 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jirka\Plocha\OTL.exe
[2012.11.07 08:50:17 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012.11.07 08:50:15 | 536,399,872 | -HS- | M] () -- C:\hiberfil.sys
[2012.11.07 08:42:05 | 000,002,504 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2012.11.06 13:22:24 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2012.11.06 13:03:44 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012.11.06 13:00:53 | 000,000,229 | ---- | M] () -- C:\Boot.bak
[2012.11.06 09:36:55 | 004,997,488 | ---- | M] (Swearware) -- C:\Documents and Settings\Jirka\Plocha\ComboFix.exe
[2012.11.05 11:34:30 | 000,522,240 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jirka\Plocha\OTM.exe
[2012.11.05 08:17:56 | 000,040,776 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2012.11.04 21:41:48 | 000,540,977 | ---- | M] () -- C:\Documents and Settings\Jirka\Plocha\adwcleaner.exe
[2012.11.04 14:18:47 | 000,329,088 | ---- | M] (AVAST Software) -- C:\Documents and Settings\Jirka\Plocha\aswclear.exe
[2012.11.04 12:58:51 | 000,781,383 | ---- | M] () -- C:\Documents and Settings\Jirka\Plocha\RSIT.exe
[2012.11.04 12:51:32 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012.10.30 18:08:39 | 000,001,919 | ---- | M] () -- C:\WINDOWS\epplauncher.mif
[2012.10.30 17:39:57 | 096,814,416 | ---- | M] () -- C:\Documents and Settings\Jirka\Plocha\avast_free_antivirus_setup.exe
[2012.10.30 17:06:01 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\Jirka\Plocha\Google Chrome.lnk
[2012.10.30 15:49:46 | 000,432,784 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012.10.30 15:49:46 | 000,429,172 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2012.10.30 15:49:46 | 000,078,278 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2012.10.30 15:49:46 | 000,067,740 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012.10.12 09:51:18 | 000,696,760 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2012.10.12 09:51:18 | 000,073,656 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2012.10.12 08:06:51 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK

========== Files Created - No Company Name ==========

[2012.11.07 11:56:56 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.11.07 11:52:54 | 000,139,264 | ---- | C] () -- C:\Documents and Settings\Jirka\Plocha\SystemLook.exe
[2012.11.07 08:50:15 | 536,399,872 | -HS- | C] () -- C:\hiberfil.sys
[2012.11.06 11:44:49 | 000,000,229 | ---- | C] () -- C:\Boot.bak
[2012.11.06 10:11:23 | 000,261,312 | RHS- | C] () -- C:\cmldr
[2012.11.04 21:42:18 | 000,540,977 | ---- | C] () -- C:\Documents and Settings\Jirka\Plocha\adwcleaner.exe
[2012.11.04 21:12:11 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012.11.04 12:58:43 | 000,781,383 | ---- | C] () -- C:\Documents and Settings\Jirka\Plocha\RSIT.exe
[2012.10.30 18:08:39 | 000,001,919 | ---- | C] () -- C:\WINDOWS\epplauncher.mif
[2012.10.30 17:38:07 | 096,814,416 | ---- | C] () -- C:\Documents and Settings\Jirka\Plocha\avast_free_antivirus_setup.exe
[2012.10.30 17:06:01 | 000,001,813 | ---- | C] () -- C:\Documents and Settings\Jirka\Plocha\Google Chrome.lnk
[2012.02.23 16:22:24 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2010.09.15 08:03:08 | 000,002,346 | ---- | C] () -- C:\Documents and Settings\Jirka\Data aplikací\mdbu.bin
[2009.11.29 17:39:35 | 000,009,913 | ---- | C] () -- C:\Documents and Settings\Jirka\MCCI_MDM.INF
[2009.11.29 17:39:35 | 000,009,232 | ---- | C] () -- C:\Documents and Settings\Jirka\USB_MOT_BRIT.INF
[2009.11.29 17:39:35 | 000,006,989 | ---- | C] () -- C:\Documents and Settings\Jirka\MCCI_BUS.INF
[2009.11.29 17:39:35 | 000,004,477 | ---- | C] () -- C:\Documents and Settings\Jirka\MCCI_SDM.INF
[2009.11.29 17:39:34 | 000,007,201 | ---- | C] () -- C:\Documents and Settings\Jirka\USBMOT2000.INF
[2009.11.29 17:39:34 | 000,006,141 | ---- | C] () -- C:\Documents and Settings\Jirka\USBMOT2000XP.INF
[2009.11.29 17:39:34 | 000,005,960 | ---- | C] () -- C:\Documents and Settings\Jirka\USB_MOT_A1000.INF
[2009.11.29 17:39:34 | 000,005,880 | ---- | C] () -- C:\Documents and Settings\Jirka\USB_CMCS_2000.INF
[2009.11.16 22:35:28 | 000,038,912 | ---- | C] () -- C:\Documents and Settings\Jirka\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009.11.13 17:55:17 | 000,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\QTSBandwidthCache

========== ZeroAccess Check ==========

[2010.12.13 21:21:20 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2009.09.25 06:37:33 | 001,510,400 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009.02.09 11:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 07:52:06 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2012.11.07 08:42:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
[2009.11.29 15:01:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ashampoo
[2010.09.15 08:29:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\CanonBJ
[2010.09.15 21:35:05 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\CanonIJEGV
[2010.09.16 08:46:21 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\CanonIJScan
[2009.11.29 15:01:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\page
[2009.11.29 15:01:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Ashampoo
[2010.09.16 08:46:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Canon
[2010.09.15 08:34:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Canon Easy-WebPrint EX
[2009.11.15 15:53:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\GHISLER
[2011.10.26 10:44:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Happy Foto
[2009.12.26 11:59:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\OLYMPUS
[2009.12.06 22:26:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\OpenOffice.org
[2011.10.26 09:20:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\XnView

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009.11.12 10:12:37 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2009.11.12 10:19:55 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT

< >

< MD5 for: AGP440.SYS >
[2008.04.14 08:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys

< MD5 for: ATAPI.SYS >
[2008.04.14 08:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008.04.13 23:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 07:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2008.04.14 07:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\dllcache\autochk.exe

< MD5 for: CDROM.SYS >
[2008.04.14 08:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.13 23:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2008.04.14 07:51:40 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll
[2008.04.14 07:51:40 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\dllcache\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 07:51:42 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\dllcache\eventlog.dll
[2008.04.14 07:51:42 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.14 07:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 07:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\system32\dllcache\explorer.exe

< MD5 for: HAL.DLL >
[2008.04.14 08:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.13 23:01:30 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\hal.dll

< MD5 for: CHANGER.SYS >
[2008.04.14 08:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys

< MD5 for: ISAPNP.SYS >
[2008.04.14 08:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.04.14 06:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys

< MD5 for: LSASS.EXE >
[2008.04.14 07:52:30 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\dllcache\lsass.exe
[2008.04.14 07:52:30 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.13 23:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\dllcache\ndis.sys
[2008.04.13 23:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys

< MD5 for: NETLOGON.DLL >
[2008.04.14 07:51:52 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\dllcache\netlogon.dll
[2008.04.14 07:51:52 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll

< MD5 for: SCECLI.DLL >
[2008.04.14 07:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\dllcache\scecli.dll
[2008.04.14 07:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2008.04.14 07:52:48 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\dllcache\smss.exe
[2008.04.14 07:52:48 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe

< MD5 for: SVCHOST.EXE >
[2008.04.14 07:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\dllcache\svchost.exe
[2008.04.14 07:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.04.13 23:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 07:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\dllcache\userinit.exe
[2008.04.14 07:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe

< MD5 for: WINLOGON.EXE >
[2008.04.14 07:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\dllcache\winlogon.exe
[2008.04.14 07:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2008.04.14 07:52:08 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\dllcache\ws2_32.dll
[2008.04.14 07:52:08 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[20 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[4 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\IP1500\*.tmp files -> C:\WINDOWS\IP1500\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2009.11.15 15:31:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Adobe
[2009.11.25 10:10:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Apple Computer
[2009.11.29 15:01:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Ashampoo
[2010.09.16 08:46:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Canon
[2010.09.15 08:34:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Canon Easy-WebPrint EX
[2009.11.12 15:00:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\ESTsoft
[2009.11.15 15:53:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\GHISLER
[2009.11.12 15:44:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Google
[2011.10.26 10:44:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Happy Foto
[2009.11.22 13:45:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Help
[2009.11.12 10:28:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Identities
[2009.11.15 15:31:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Macromedia
[2012.11.05 08:14:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Malwarebytes
[2012.01.03 12:06:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Media Player Classic
[2010.12.09 11:55:25 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Jirka\Data aplikací\Microsoft
[2009.11.15 15:10:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Mozilla
[2009.11.29 13:03:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Nero
[2009.12.26 11:59:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\OLYMPUS
[2009.12.06 22:26:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\OpenOffice.org
[2010.06.29 19:47:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\Sun
[2011.10.26 09:20:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Jirka\Data aplikací\XnView

< %APPDATA%\*.exe /s >

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2002.01.01 02:37:29 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2002.01.01 02:37:29 | 001,093,632 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2002.01.01 02:37:29 | 000,487,424 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >
[2012.11.05 08:17:56 | 000,040,776 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys

< %systemroot%\system32\*.* /3 >
[2012.11.07 08:42:05 | 000,002,504 | ---- | M] () -- C:\WINDOWS\system32\CONFIG.NT
[2012.11.06 13:03:44 | 000,000,664 | ---- | M] () -- C:\WINDOWS\system32\d3d9caps.dat
[2012.11.04 18:02:27 | 000,004,078 | ---- | M] () -- C:\WINDOWS\system32\jupdate-1.7.0_09-b05.log
[2012.11.04 20:56:59 | 000,005,120 | -HS- | M] () -- C:\WINDOWS\system32\Thumbs.db
[2012.11.04 12:51:32 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 07:52:18 | 000,015,360 | ---- | M] (Microsoft Corporation)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.11.07 11:56:56 | 000,000,512 | ---- | M] () MD5=C809170658D30C30185FD0E87F7A9DE4 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2010.02.21 09:13:28 | 001,058,916 | ---- | M] () -- \Documents and Settings\Jirka\Local Settings\Data aplikací\MyAshampoo\Rss\http___crackle_com_rss_media_sxsw_featured_rss.xml
[2010.02.21 09:13:29 | 000,011,388 | ---- | M] () -- \Documents and Settings\Jirka\Local Settings\Data aplikací\MyAshampoo\Rss\http___crackle_com_rss_media_sxsw_featured_rss_structured.xml
[2012.06.19 10:47:37 | 144,618,012 | ---- | M] () -- \Documents and Settings\Jirka\Plocha\WGA crack.zip
[2010.05.27 09:23:26 | 000,000,819 | ---- | M] () -- \Documents and Settings\Jirka\Recent\WGA crack.lnk

< *keygen* /s >

< *loader* /s >
[2001.01.16 06:55:36 | 000,053,248 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7Debug\coloader.dll
[2001.01.16 04:22:34 | 000,002,560 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7Debug\coloader.tlb
[2008.10.05 14:17:34 | 000,006,308 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.py
[2008.10.04 23:00:58 | 000,015,872 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.uno.dll
[2008.10.05 15:02:04 | 000,000,171 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.uno.ini
[2008.10.04 16:50:10 | 000,021,504 | ---- | M] () -- \Program Files\OpenOffice.org 3\URE\bin\javaloader.uno.dll
[2008.10.04 22:22:34 | 000,003,871 | ---- | M] () -- \Program Files\OpenOffice.org 3\URE\java\unoloader.jar
[2006.04.18 05:51:06 | 000,007,944 | ---- | M] () -- \USB-Digital-TV-Receiver\bda_loader_225.cat
[2006.04.11 07:12:58 | 000,001,533 | ---- | M] () -- \USB-Digital-TV-Receiver\BDA_Loader_225.inf
[2006.04.11 07:32:26 | 000,018,816 | ---- | M] () -- \USB-Digital-TV-Receiver\BDA_Loader_225.sys
[2008.04.14 07:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[2008.04.14 07:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll

< *minodlogin* /s >

< *tnod* /s >

< *AutoKMS* /s >

< *activator* /s >

< *serial* /s >
[2004.08.17 15:44:16 | 000,030,301 | ---- | M] () -- \cmdcons(2)\SERIAL.SY_
[2004.08.17 15:44:16 | 000,030,301 | ---- | M] () -- \cmdcons(3)\SERIAL.SY_
[2012.03.29 06:01:00 | 000,413,696 | ---- | M] () -- \Program Files\Microsoft Silverlight\4.1.10329.0\System.Runtime.Serialization.dll
[2012.10.30 18:16:07 | 001,186,816 | ---- | M] () -- \Program Files\Microsoft Silverlight\4.1.10329.0\System.Runtime.Serialization.ni.dll
[2010.04.07 23:48:30 | 000,970,752 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2012.06.19 09:52:09 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2010.12.19 18:12:56 | 000,970,752 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2012.05.20 08:17:44 | 002,345,472 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\505e12638acd6fdb22e1fd2d4c6fc232\System.Runtime.Serialization.ni.dll
[2012.05.20 08:22:37 | 000,311,296 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\a644ec04e18202b60f9d828bc207972b\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2008.07.25 07:08:04 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2010.04.07 23:48:30 | 000,970,752 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2001.10.25 13:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2001.10.25 13:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[2001.10.25 13:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2001.10.25 13:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.14 06:51:10 | 000,064,256 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys

< *w7lxe* /s >

< End of report >

Jiri.Hrdis
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 04 lis 2012 12:56

Re: Pomalé letité pc, nefunkční avast

#26 Příspěvek od Jiri.Hrdis »

OTL Extras logfile created on: 7.11.2012 11:55:11 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Jirka\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

511,48 Mb Total Physical Memory | 132,67 Mb Available Physical Memory | 25,94% Memory free
1,22 Gb Paging File | 0,91 Gb Available in Paging File | 74,55% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29,29 Gb Total Space | 13,56 Gb Free Space | 46,29% Space Free | Partition Type: NTFS
Drive D: | 45,23 Gb Total Space | 19,53 Gb Free Space | 43,19% Space Free | Partition Type: NTFS

Computer Name: COMPUTER | User Name: Jirka | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = Reg Error: Value error.] -- Reg Error: Key error. File not found

[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
http [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -osint -url "%1" (Mozilla Corporation)
https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -osint -url "%1" (Mozilla Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series" = Canon MP250 series MP Drivers
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31
"{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90280405-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional s aplikací FrontPage
"{929408E6-D265-4174-805F-81D1D914E2A4}" = QuickTime
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1029-7B44-A95000000001}" = Adobe Reader 9.5.2 - Czech
"{BE8BE32F-F595-4693-9F82-1E0A5A047BB6}" = OpenOffice.org 3.0
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D1BA1F1C-D88B-405D-953F-D7074B65453D}" = LifeView DTV
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"ALZip_is1" = ALZip
"Ashampoo Burning Studio 6 FREE_is1" = Ashampoo Burning Studio 6 FREE
"avast" = avast! Free Antivirus
"CanonMyPrinter" = Canon Utilities My Printer
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.3.0
"Easy-WebPrint EX" = Canon Easy-WebPrint EX
"ffdshow_is1" = ffdshow [rev 2280] [2008-11-02]
"Google Chrome" = Google Chrome
"ie8" = Windows Internet Explorer 8
"InstallShield_{929408E6-D265-4174-805F-81D1D914E2A4}" = QuickTime
"InstallShield_{D1BA1F1C-D88B-405D-953F-D7074B65453D}" = LifeView DTV
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft.Net.Client.3.5" = Microsoft .NET Framework Client Profile
"Mozilla Firefox 15.0 (x86 cs)" = Mozilla Firefox 15.0 (x86 cs)
"MP Navigator EX 3.0" = Canon MP Navigator EX 3.0
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NVIDIA Drivers" = NVIDIA Drivers
"Registrace uživatele zařízení Canon MP250 series" = Registrace uživatele zařízení Canon MP250 series
"Totalcmd" = Total Commander (Remove or Repair)
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"XnView_is1" = XnView 1.96.5

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 31.12.2001 19:04:02 | Computer Name = COMPUTER | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 31.12.2001 19:04:03 | Computer Name = COMPUTER | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 31.12.2001 19:04:05 | Computer Name = COMPUTER | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 31.12.2001 19:02:48 | Computer Name = COMPUTER | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 31.12.2001 19:02:48 | Computer Name = COMPUTER | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 31.12.2001 19:02:49 | Computer Name = COMPUTER | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 31.12.2001 19:02:20 | Computer Name = COMPUTER | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 31.12.2001 19:02:20 | Computer Name = COMPUTER | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 31.12.2001 19:02:23 | Computer Name = COMPUTER | Source = crypt32 | ID = 131083
Description = Extrakce kořenového seznamu jiného výrobce ze souboru CAB pro automatickou
aktualizaci v: <http://www.download.windowsupdate.com/m ... ootstl.cab>
se nezdařilo. Chyba: Při ověření se systémovými hodinami nebo časovým razítkem
podepsaného souboru bylo zjištěno, že požadovaný certifikát je mimo lhůtu platnosti.


Error - 31.12.2001 19:16:47 | Computer Name = COMPUTER | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace firefox.exe, verze 2.0.0.4094, zablokovaný modul
hungapp, verze 0.0.0.0, adresa bloku 0x00000000.

[ System Events ]
Error - 6.11.2012 8:26:13 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby MDM
s argumenty za účelem spuštění serveru: {0C0A3666-30C9-11D0-8F20-00805F2CD064}

Error - 6.11.2012 8:26:14 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 7.11.2012 3:41:36 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 7.11.2012 3:42:56 | Computer Name = COMPUTER | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: Aavmker4 AmdK7 aswSnx aswSP aswTdi Fips

Error - 7.11.2012 3:44:22 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 7.11.2012 3:45:21 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby MDM
s argumenty za účelem spuštění serveru: {0C0A3666-30C9-11D0-8F20-00805F2CD064}

Error - 7.11.2012 3:45:29 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 7.11.2012 3:45:59 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby MDM
s argumenty za účelem spuštění serveru: {0C0A3666-30C9-11D0-8F20-00805F2CD064}

Error - 7.11.2012 3:46:00 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 7.11.2012 3:50:40 | Computer Name = COMPUTER | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: aswSnx


< End of report >

Jiri.Hrdis
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 04 lis 2012 12:56

Re: Pomalé letité pc, nefunkční avast

#27 Příspěvek od Jiri.Hrdis »

SystemLook 30.07.11 by jpshortstuff
Log created at 12:20 on 07/11/2012 by Jirka
Administrator - Elevation successful

========== filefind ==========

Searching for "*avast*"
C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5\avast5.ini --a---- 6082 bytes [15:48 24/02/2012] [07:50 07/11/2012] C86B6E1904996D1C11A14D2DC125F6B9
C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5(2)\license.avastlic --a---- 1438 bytes [14:05 19/05/2010] [14:05 19/05/2010] FD9F5CE39A53F9E469A8F033A02389BA
C:\Documents and Settings\Jirka\Dokumenty\Downloads\avast_free_antivirus_setup.exe --a---- 96814416 bytes [16:38 30/10/2012] [16:39 30/10/2012] 842AA01C3AB0947F36EE4972B96D5268
C:\Documents and Settings\Jirka\Plocha\avast_free_antivirus_setup.exe --a---- 96814416 bytes [16:38 30/10/2012] [16:39 30/10/2012] 842AA01C3AB0947F36EE4972B96D5268
C:\Program Files\AVAST Software\Avast\avastSS.dll --a---- 32408 bytes [15:48 24/02/2012] [18:01 28/11/2011] DFB129D8351436E813225B1CB13E1600
C:\Program Files\AVAST Software\Avast\AvastSvc.exe --a---- 44768 bytes [15:48 24/02/2012] [18:01 28/11/2011] 996E6D052438E8D8DFD501F31560B2E0
C:\Program Files\AVAST Software\Avast\AvastUI.exe --a---- 3744552 bytes [15:48 24/02/2012] [18:01 28/11/2011] F7226AA410954185160067D5FA82F3F2
C:\Qoobox\Quarantine\C(3)\Program Files\AVAST Software\Avast\avastSS.dll.vir --a---- 32408 bytes [15:48 24/02/2012] [18:01 28/11/2011] DFB129D8351436E813225B1CB13E1600
C:\Qoobox\Quarantine\C(3)\Program Files\AVAST Software\Avast\AvastSvc.exe.vir --a---- 44768 bytes [15:48 24/02/2012] [18:01 28/11/2011] 996E6D052438E8D8DFD501F31560B2E0
C:\Qoobox\Quarantine\C(3)\Program Files\AVAST Software\Avast\AvastUI.exe.vir --a---- 3744552 bytes [15:48 24/02/2012] [18:01 28/11/2011] F7226AA410954185160067D5FA82F3F2
C:\Qoobox\Quarantine\C(3)\Program Files\AVAST Software\Avast\1029\Avast5_1029.chm.vir --a---- 107794 bytes [15:48 24/02/2012] [17:52 28/11/2011] 8B573356EF6B5E9A96EB81695E32C9A7
C:\Qoobox\Quarantine\C(3)\Program Files\AVAST Software\Avast\License\EULA_Avast_Free.txt.vir --a---- 15471 bytes [15:48 24/02/2012] [17:14 22/02/2011] DE9632EA74DA03657BC70596AB73D631
C:\Qoobox\Quarantine\Registry_backups(2)\AddRemove-avast.reg.dat --a---- 1236 bytes [12:24 06/11/2012] [12:24 06/11/2012] 500047760CEFD456AD24BDB0402BD961
C:\Qoobox\Quarantine\Registry_backups(2)\Legacy_AVAST!_ANTIVIRUS.reg.dat --a---- 870 bytes [12:16 06/11/2012] [12:16 06/11/2012] DCBB08C76E74B682E76ED7FA951039A2
C:\Qoobox\Quarantine\Registry_backups(2)\Service_avast! Antivirus.reg.dat --a---- 3820 bytes [12:16 06/11/2012] [12:16 06/11/2012] 46CAEE56BB168E4A24F6D29F70987F43
C:\WINDOWS\avastSS.scr --a---- 41184 bytes [15:48 24/02/2012] [18:01 28/11/2011] 695B9ED5CC7F9CBEE89074C81C119FC4
C:\WINDOWS\Prefetch\AVAST.SETUP-10F48C5B.pf --a---- 20028 bytes [19:58 24/02/2012] [07:59 07/11/2012] C062B864D5390B278E7FCA9AED1AE020

========== regfind ==========

Searching for "avast"
[HKEY_CURRENT_USER\Software\ALWIL Software\Avast]
[HKEY_CURRENT_USER\Software\AVAST Software]
[HKEY_CURRENT_USER\Software\AVAST Software\Avast]
[HKEY_CURRENT_USER\Software\AVAST Software\WRC\SearchRules\public.avast.com]
[HKEY_CURRENT_USER\Software\AVAST Software\WRC\SearchRules\public.avast.com]
"url"="^http(s)?\:\/\/public\.avast\.com\/(.)*"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\avast! Free Antivirus]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\avast! Pro Antivirus]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Program Files\AVAST Software\Avast\setup\avast.setup"="avast! antivirus Update"
[HKEY_LOCAL_MACHINE\SOFTWARE\ALWIL Software\Avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\AVAST Software]
[HKEY_LOCAL_MACHINE\SOFTWARE\AVAST Software\Avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\AVAST Software\Avast]
"DataFolder"="C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5"
[HKEY_LOCAL_MACHINE\SOFTWARE\AVAST Software\Avast]
"ProgramFolder"="C:\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SOFTWARE\AVAST Software\Avast]
"LicenseFile"="C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5\license.avastlic"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.avastlic]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.avastlic]
@="avastlicfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.avastlic]
"Content Type"="application/avast-license"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.avastsounds]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.avastsounds]
@="avastsoundsfile"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.avastsounds]
"Content Type"="application/avast-sounds"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\00avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Avast.WrcBar]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Avast.WrcBar]
@="avast! WebRep"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Avast.WrcBar\CurVer]
@="Avast.WrcBar.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Avast.WrcBar.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Avast.WrcBar.1]
@="avast! WebRep"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastlicfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastlicfile]
@="avast! license file"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastlicfile\shell\open\command]
@=""C:\Program Files\AVAST Software\Avast\aswChLic.exe" "%1""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastsoundsfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastsoundsfile]
@="avast! soundpack file"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastsoundsfile\shell\open\command]
@=""C:\Program Files\AVAST Software\Avast\aswChLic.exe" "%1""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
@="avast"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}\InProcServer32]
@="C:\Program Files\AVAST Software\Avast\ashShell.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}\InProcServer32]
"ReleaseName"="C:\Program Files\AVAST Software\Avast\ashShell.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BFC2BD7-0937-41EA-8872-CE3B27E08F84}\InprocServer32]
@="C:\Program Files\AVAST Software\Avast\AhAScr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
@="avast! WebRep"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\InprocServer32]
@="C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ProgID]
@="Avast.WrcBar.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\VersionIndependentProgID]
@="Avast.WrcBar"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B54F3741-5B07-11cf-A4B0-00AA004A55E8}\InprocServer32]
@="C:\Program Files\AVAST Software\Avast\AhAScr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B54F3743-5B07-11cf-A4B0-00AA004A55E8}\InprocServer32]
@="C:\Program Files\AVAST Software\Avast\AhAScr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32]
@="C:\Program Files\AVAST Software\Avast\AhAScr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c262-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32]
@="C:\Program Files\AVAST Software\Avast\AhAScr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{03A25D6C-293E-4420-8551-E580F8009343}\1.0\0\win32]
@="C:\Program Files\AVAST Software\Avast\AhAScr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{03A25D6C-293E-4420-8551-E580F8009343}\1.0\HELPDIR]
@="C:\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6569EAFC-365E-4EF4-932A-454CCD5E1434}\1.0]
@="avast! WebRep 1.0 Type Library"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6569EAFC-365E-4EF4-932A-454CCD5E1434}\1.0\0\win32]
@="C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6569EAFC-365E-4EF4-932A-454CCD5E1434}\1.0\HELPDIR]
@="C:\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda]
"Path"="C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ESENT\Process\AvastSvc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Exchange\Client\Extensions]
"avast!"="4.0;C:\Program Files\AVAST Software\Avast\ashOutXt.dll;1;10000111111000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\avast5]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"=""C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{472083B0-C522-11CF-8763-00608CC02F24}"="avast"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\avast]
"DisplayName"="avast! Free Antivirus"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\avast]
"InstallLocation"="C:\PROGRA~1\AVASTS~1\Avast"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\avast]
"Publisher"="AVAST Software"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\avast]
"DisplayIcon"="C:\Program Files\AVAST Software\Avast\avastUI.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\avast]
"UninstallString"="C:\Program Files\AVAST Software\Avast\aswRunDll.exe "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup"
[HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF"
[HKEY_LOCAL_MACHINE\SOFTWARE\OldTimer Tools\OTM\Files]
"C:\WINDOWS\temp\_avast_\Webshlock.txt"=""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\VirtualDeviceDrivers]
"VDD"="C:\Program Files\AVAST Software\Avast\aswMonVd.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AAVMKER4\0000]
"DeviceDesc"="avast! Asynchronous Virus Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWNDIS2\0000]
"DeviceDesc"="avast! Firewall Core Firewall Service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWTDI\0000]
"DeviceDesc"="avast! Network Shield Support"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"Service"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"DeviceDesc"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000\Control]
"ActiveService"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Aavmker4]
"DisplayName"="avast! Asynchronous Virus Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Aavmker4]
"Description"="avast! Asynchronous Virus Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswFsBlk]
"Description"="avast! mini-filter driver (aswFsBlk)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswMon2]
"Description"="avast! Standard Shield Support"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswMon2\Parameters]
"ProgramFolder"="\Device\HarddiskVolume1\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswRdr]
"Description"="avast! TDI Redirect driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSnx]
"Description"="avast! virtualization driver (aswSnx)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSnx\Parameters]
"ProgramFolder"="\DosDevices\C:\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSnx\Parameters]
"DataFolder"="\DosDevices\C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSP]
"Description"="avast! Self Protection"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSP\Parameters]
"ProgramFolder"="\DosDevices\C:\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSP\Parameters]
"DataFolder"="\DosDevices\C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswTdi]
"DisplayName"="avast! Network Shield Support"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswTdi]
"Description"="avast! Network Shield TDI driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\avast! Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\avast! Antivirus]
"ImagePath"=""C:\Program Files\AVAST Software\Avast\AvastSvc.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\avast! Antivirus]
"DisplayName"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\avast! Antivirus]
"Description"="Zajišťuje antivirové služby programu avast!, jako např. rezidentní ochranu, virovou truhlu a plánovač."
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\avast! Antivirus\Enum]
"0"="Root\LEGACY_AVAST!_ANTIVIRUS\0000"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\VirtualDeviceDrivers]
"VDD"="C:\Program Files\AVAST Software\Avast\aswMonVd.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AAVMKER4\0000]
"DeviceDesc"="avast! Asynchronous Virus Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWNDIS2\0000]
"DeviceDesc"="avast! Firewall Core Firewall Service"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWTDI\0000]
"DeviceDesc"="avast! Network Shield Support"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"Service"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"DeviceDesc"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Aavmker4]
"DisplayName"="avast! Asynchronous Virus Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Aavmker4]
"Description"="avast! Asynchronous Virus Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswFsBlk]
"Description"="avast! mini-filter driver (aswFsBlk)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswMon2]
"Description"="avast! Standard Shield Support"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswMon2\Parameters]
"ProgramFolder"="\Device\HarddiskVolume1\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswRdr]
"Description"="avast! TDI Redirect driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSnx]
"Description"="avast! virtualization driver (aswSnx)"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSnx\Parameters]
"ProgramFolder"="\DosDevices\C:\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSnx\Parameters]
"DataFolder"="\DosDevices\C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSP]
"Description"="avast! Self Protection"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSP\Parameters]
"ProgramFolder"="\DosDevices\C:\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSP\Parameters]
"DataFolder"="\DosDevices\C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswTdi]
"DisplayName"="avast! Network Shield Support"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswTdi]
"Description"="avast! Network Shield TDI driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\avast! Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\avast! Antivirus]
"ImagePath"=""C:\Program Files\AVAST Software\Avast\AvastSvc.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\avast! Antivirus]
"DisplayName"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\avast! Antivirus]
"Description"="Zajišťuje antivirové služby programu avast!, jako např. rezidentní ochranu, virovou truhlu a plánovač."
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\VirtualDeviceDrivers]
"VDD"="C:\Program Files\AVAST Software\Avast\aswMonVd.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AAVMKER4\0000]
"DeviceDesc"="avast! Asynchronous Virus Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWNDIS2\0000]
"DeviceDesc"="avast! Firewall Core Firewall Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWTDI\0000]
"DeviceDesc"="avast! Network Shield Support"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"Service"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"DeviceDesc"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000\Control]
"ActiveService"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Aavmker4]
"DisplayName"="avast! Asynchronous Virus Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Aavmker4]
"Description"="avast! Asynchronous Virus Monitor"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswFsBlk]
"Description"="avast! mini-filter driver (aswFsBlk)"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswMon2]
"Description"="avast! Standard Shield Support"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswMon2\Parameters]
"ProgramFolder"="\Device\HarddiskVolume1\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswRdr]
"Description"="avast! TDI Redirect driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSnx]
"Description"="avast! virtualization driver (aswSnx)"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSnx\Parameters]
"ProgramFolder"="\DosDevices\C:\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSnx\Parameters]
"DataFolder"="\DosDevices\C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSP]
"Description"="avast! Self Protection"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSP\Parameters]
"ProgramFolder"="\DosDevices\C:\Program Files\AVAST Software\Avast"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSP\Parameters]
"DataFolder"="\DosDevices\C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswTdi]
"DisplayName"="avast! Network Shield Support"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswTdi]
"Description"="avast! Network Shield TDI driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus]
"ImagePath"=""C:\Program Files\AVAST Software\Avast\AvastSvc.exe""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus]
"DisplayName"="avast! Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus]
"Description"="Zajišťuje antivirové služby programu avast!, jako např. rezidentní ochranu, virovou truhlu a plánovač."
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus\Enum]
"0"="Root\LEGACY_AVAST!_ANTIVIRUS\0000"
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Program Files\AVAST Software\Avast\aswRegSvr.exe"="aswRegSvr"
[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\ALWIL Software\Avast]
[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\AVAST Software]
[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\AVAST Software\Avast]
[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\AVAST Software\WRC\SearchRules\public.avast.com]
[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\AVAST Software\WRC\SearchRules\public.avast.com]
"url"="^http(s)?\:\/\/public\.avast\.com\/(.)*"
[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\avast! Free Antivirus]
[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\avast! Pro Antivirus]
[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Program Files\AVAST Software\Avast\setup\avast.setup"="avast! antivirus Update"
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Program Files\AVAST Software\Avast\aswRegSvr.exe"="aswRegSvr"

========== folderfind ==========

Searching for "*avast*"
C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5 d------ [07:46 07/11/2012]
C:\Documents and Settings\All Users\Data aplikací\Alwil Software\Avast5(2) d------ [14:04 19/05/2010]
C:\Documents and Settings\Jirka\Local Settings\temp\_avast_ d------ [12:30 06/11/2012]
C:\Program Files\AVAST Software d------ [07:47 07/11/2012]
C:\Program Files\Alwil Software\Avast5 d------ [23:13 31/12/2001]
C:\Program Files\AVAST Software\Avast d------ [07:47 07/11/2012]
C:\Qoobox\Quarantine\C(3)\Program Files\AVAST Software d------ [12:18 06/11/2012]
C:\Qoobox\Quarantine\C(3)\Program Files\AVAST Software\Avast d------ [12:18 06/11/2012]
C:\WINDOWS\temp\_avast_ d------ [12:29 06/11/2012]

-= EOF =-

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalé letité pc, nefunkční avast

#28 Příspěvek od Márty84 »

Je to takhle tezke. Nevidim co tam provadite, nevidim co vam Avast pise, jake chyby, hlasky, nevim jak to vypada v tom nouzaku, co vam ten odinstalator psal, nevim proste nic :)

Takze zkuste jeste pouzit Revo uninstaller a zkuste ho odinstalovat pomoci neho. http://www.stahuj.centrum.cz/utility_a_ ... installer/


Kdyz to nezabere, zkusime pouzit OTL a smazat i nejake ty registry. Ale priznam se, ze nevim co to udela. Nikdy jsem to takhle nedelal.
:!: Kdyby po restartu nenabehl windows, restartujte znovu, mackejte klavesu F8 a zvolte - Posledni znama funkcni konfigurace



:arrow: V nouzovem rezimu spustte OTL
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[CreateRestorePoint]
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]

:services
avast! Antivirus
aswSnx
aswSP
aswRdr
aswTdi
aswMon2
aswFsBlk
Aavmker4

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Program Files\AVAST Software
C:\WINDOWS\System32\drivers\aswSnx.sys
C:\WINDOWS\System32\drivers\aswSP.sys
C:\WINDOWS\System32\drivers\aswRdr.sys
C:\WINDOWS\System32\drivers\aswTdi.sys
C:\WINDOWS\System32\drivers\aswmon2.sys
C:\WINDOWS\System32\drivers\aswFsBlk.sys
C:\WINDOWS\System32\drivers\aavmker4.sys
C:\WINDOWS\avastSS.scr
C:\WINDOWS\Prefetch\AVAST.SETUP-10F48C5B.pf
C:\Documents and Settings\Jirka\Local Settings\temp\_avast_
C:\Program Files\Alwil Software
C:\WINDOWS\temp\_avast_

:otl
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-57989841-515967899-1177238915-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "MyAshampoo Customized Web Search"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..extensions.enabledAddons: wrc@avast.com:6.0.1367
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
[2012.11.07 08:47:41 | 000,000,000 | ---D | M] (No name found) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
CHR - default_search_provider: Ask (Enabled)
CHR - default_search_provider: search_url = http://websearch.ask.com/redirect?clien ... 000YYCZ&q={searchTerms}
CHR - default_search_provider: suggest_url = http://ss.websearch.ask.com/query?qsrc= ... =prefix&q={searchTerms}
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Documents and Settings\Jirka\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.50.146.2_0\McChPlg.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-57989841-515967899-1177238915-1003\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-57989841-515967899-1177238915-1003\..\Toolbar\WebBrowser: (no name) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - No CLSID value found.
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Value error.)
[2012.11.06 09:41:08 | 000,000,000 | ---D | C] -- C:\## aswSnx private storage
[2012.11.04 18:12:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Jirka\Local Settings\Data aplikací\AskToolbar
[2012.11.07 08:42:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
[20 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[4 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\IP1500\*.tmp files -> C:\WINDOWS\IP1500\*.tmp -> ]

:reg
[-HKEY_CURRENT_USER\Software\ALWIL Software\Avast]
[-HKEY_CURRENT_USER\Software\AVAST Software]
[-HKEY_CURRENT_USER\Software\AVAST Software\Avast]
[-HKEY_CURRENT_USER\Software\AVAST Software\WRC\SearchRules\public.avast.com]
[-HKEY_CURRENT_USER\Software\AVAST Software\WRC\SearchRules\public.avast.com]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\avast! Free Antivirus]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\avast! Pro Antivirus]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Program Files\AVAST Software\Avast\setup\avast.setup"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\ALWIL Software\Avast]
[-HKEY_LOCAL_MACHINE\SOFTWARE\AVAST Software]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\avast]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.avastlic]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.avastsounds]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\00avast]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avast]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Avast.WrcBar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Avast.WrcBar\CurVer]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Avast.WrcBar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastlicfile]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastlicfile\shell\open\command]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastsoundsfile]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\avastsoundsfile\shell\open\command]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ESENT\Process\AvastSvc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Exchange\Client\Extensions]
"avast!"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\avast]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\avast5]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\avast]
[HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions]
"wrc@avast.com"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AAVMKER4\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWNDIS2\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWTDI\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000\Control]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Aavmker4]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Aavmker4]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswFsBlk]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswMon2]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswMon2\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswRdr]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSnx]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSnx\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSnx\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSP]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswSP\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswTdi]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswTdi]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\avast! Antivirus]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\avast! Antivirus\Enum]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AAVMKER4\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWNDIS2\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWTDI\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Aavmker4]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Aavmker4]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswFsBlk]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswMon2]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswMon2\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswRdr]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSnx]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSnx\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSnx\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSP]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSP\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswSP\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswTdi]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswTdi]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\avast! Antivirus]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\avast! Antivirus]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\avast! Antivirus]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\avast! Antivirus]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AAVMKER4\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWNDIS2\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWTDI\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000\Control]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Aavmker4]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Aavmker4]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswFsBlk]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswMon2]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswMon2\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswRdr]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSnx]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSnx\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSnx\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSP\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswSP\Parameters]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswTdi]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswTdi]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\avast! Antivirus\Enum]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\ShellNoRoam\MUICache]
[-HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\ALWIL Software\Avast]
[-HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\AVAST Software]
[-HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\AVAST Software\Avast]
[-HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\AVAST Software\WRC\SearchRules\public.avast.com]
[-HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\AVAST Software\WRC\SearchRules\public.avast.com]
[-HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\avast! Free Antivirus]
[-HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\avast! Pro Antivirus]
[HKEY_USERS\S-1-5-21-57989841-515967899-1177238915-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Program Files\AVAST Software\Avast\setup\avast.setup"=-
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\Program Files\AVAST Software\Avast\aswRegSvr.exe"=-
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Jiri.Hrdis
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 04 lis 2012 12:56

Re: Pomalé letité pc, nefunkční avast

#29 Příspěvek od Jiri.Hrdis »

Tak mi to celý kleklo, budu muset nechat přeinstalovat Windows, píšu z jiného PC

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Pomalé letité pc, nefunkční avast

#30 Příspěvek od Márty84 »

Staci pouzit bod obnovy, nebo posledni znamou funkcni konfiguraci. Nebo to se ani nezapne?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno