Stránka 2 z 4

Re: Prosím o kontrolu logu

Napsal: 17 úno 2013 22:35
od michael89
< >

< %systemroot%*.* /U /s >
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[18 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS\Globalization\*.tmp files -> C:\WINDOWS\Globalization\*.tmp -> ]
[45 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[11 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ]
[1 C:\WINDOWS\Temp\_avast_\*.tmp files -> C:\WINDOWS\Temp\_avast_\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >
[2012.09.15 11:15:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2010.08.11 18:13:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Acronis
[2012.03.07 09:20:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Adobe
[2011.06.24 12:41:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Ahead
[2012.12.26 15:06:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Apple Computer
[2012.01.02 21:13:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\AskToolbar
[2012.10.07 18:33:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Audacity
[2011.11.20 16:13:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\AVG
[2010.08.16 15:03:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Canneverbe Limited
[2010.08.11 16:44:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\CyberLink
[2011.02.25 13:03:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\DAEMON Tools Pro
[2012.10.03 19:51:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\DDMSettings
[2011.08.28 21:32:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\DivX
[2012.12.27 15:40:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Dropbox
[2012.12.03 11:38:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\EPSON
[2011.01.30 16:21:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\ESET
[2010.07.30 13:07:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\GHISLER
[2011.06.11 10:12:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Google
[2012.08.27 12:57:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\ICQ
[2010.07.29 17:30:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Identities
[2012.03.06 09:02:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\inkscape
[2010.07.30 08:16:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\InstallShield
[2010.07.30 13:13:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Intel
[2011.11.26 19:21:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\IObit
[2010.08.11 01:39:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Macromedia
[2013.02.16 16:05:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Malwarebytes
[2012.03.07 08:27:48 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Ferko\Data aplikací\Microsoft
[2013.02.12 22:36:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Mozilla
[2012.03.22 09:20:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Myx
[2012.01.01 18:58:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Nero
[2013.01.07 12:30:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Nokia
[2011.11.12 22:49:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Nokia Suite
[2012.04.14 07:04:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Ochuz
[2011.11.12 19:38:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\PC Suite
[2011.08.30 07:21:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Publish Providers
[2011.11.12 11:36:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\QIP
[2012.01.21 10:53:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Real
[2011.08.29 07:01:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Registry Mechanic
[2011.07.31 19:57:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Sibelius Software
[2012.09.10 15:20:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Skype
[2011.07.07 07:08:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\skypePM
[2012.08.08 20:28:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Sony
[2011.07.29 17:38:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Sony Corporation
[2011.08.30 07:42:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Sony Creative Software Inc
[2011.01.26 11:05:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Sun
[2011.07.30 08:31:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Thunderbird
[2010.07.30 08:10:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\TMP
[2011.11.12 14:11:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\TOSHIBA
[2012.09.15 11:07:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\TuneUp Software
[2011.08.31 17:46:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Ulead Systems
[2011.11.12 14:31:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Uniblue
[2010.07.30 08:09:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\WinBatch
[2012.01.21 14:30:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Windows Desktop Search
[2012.01.21 14:54:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Windows Search
[2010.07.30 08:41:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\WinRAR
[2012.04.02 10:11:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\Xilisoft
< %APPDATA%\*.exe /s >
[2011.09.01 08:04:43 | 000,053,632 | ---- | M] (Adobe Systems Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2011.09.01 08:06:14 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\Ferko\Data aplikací\Microsoft\Installer\{024521CF-C07E-4F8E-8481-0D75695E03AF}\ARPPRODUCTICON.exe
[2011.12.31 19:55:58 | 000,053,248 | R--- | M] (Flexera Software, Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Microsoft\Installer\{889D48DA-457F-4C8B-9095-6458F2793B12}\ARPPRODUCTICON.exe
[2011.12.31 19:55:58 | 000,049,152 | R--- | M] (Flexera Software, Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Microsoft\Installer\{889D48DA-457F-4C8B-9095-6458F2793B12}\NewShortcut2_1C7B7089989A424FB39D41A32581C775.exe
[2011.12.31 19:55:58 | 000,073,728 | R--- | M] (Flexera Software, Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Microsoft\Installer\{889D48DA-457F-4C8B-9095-6458F2793B12}\NewShortcut46_74B9CE5DF1F4447F982DCA29A461B529.exe
[2011.12.31 19:55:58 | 000,073,728 | R--- | M] (Flexera Software, Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Microsoft\Installer\{889D48DA-457F-4C8B-9095-6458F2793B12}\NewShortcut47_74B9CE5DF1F4447F982DCA29A461B529.exe
[2011.12.31 19:55:58 | 000,049,152 | R--- | M] (Flexera Software, Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Microsoft\Installer\{889D48DA-457F-4C8B-9095-6458F2793B12}\Uninstall_QA_OTI_H_FE5D756F71E147C4972AD6775344B40B.exe
[2010.12.09 22:32:28 | 000,506,024 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Real\Update\setup3.13\setup.exe
[2011.01.28 08:55:48 | 000,510,120 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Real\Update\setup3.14\setup.exe
[2011.12.11 02:13:10 | 000,315,512 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Real\Update\temp\~Upg0\rnupgagent.exe
[2012.01.20 21:36:49 | 000,315,512 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Ferko\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\9.01\rnupgagent.exe
[2008.01.10 10:51:00 | 017,857,392 | ---- | M] (Marvell ) -- C:\Documents and Settings\Ferko\Data aplikací\TMP\setup.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job >
[2013.02.17 22:00:00 | 000,000,914 | ---- | M] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2012.12.25 02:00:00 | 000,000,342 | ---- | M] () -- C:\WINDOWS\Tasks\AdobeAAMUpdater-1.0-FERKO-NTB-Ferko.job
[2013.02.11 12:12:03 | 000,000,284 | ---- | M] () -- C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
[2013.02.17 20:25:01 | 000,000,316 | -H-- | M] () -- C:\WINDOWS\Tasks\avast! Emergency Update.job
[2013.02.17 13:07:00 | 000,001,084 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003Core.job
[2013.02.17 22:07:03 | 000,001,106 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003UA.job
[2013.02.17 20:42:00 | 000,000,918 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2013.02.17 21:42:00 | 000,000,922 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
[2013.02.17 12:32:00 | 000,000,958 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003Core.job
[2013.02.17 20:32:00 | 000,001,010 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003UA.job
[2013.02.12 20:28:42 | 000,000,986 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1005Core.job
[2013.02.17 22:00:04 | 000,001,038 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1005UA.job
[2013.02.17 22:26:00 | 000,000,234 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2011.02.25 13:10:32 | 000,717,296 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\sptd.sys

< %systemroot%\System32\config\*.sav >
[2010.07.29 19:11:18 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2010.07.29 19:11:18 | 000,663,552 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2010.07.29 19:11:18 | 000,487,424 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2013.02.15 08:25:05 | 000,002,552 | ---- | M] () -- C:\WINDOWS\system32\CONFIG.NT
[2013.02.15 09:14:17 | 003,616,272 | ---- | M] () -- C:\WINDOWS\system32\FNTCACHE.DAT
[2013.02.17 17:14:28 | 000,106,518 | ---- | M] () -- C:\WINDOWS\system32\perfc005.dat
[2013.02.17 17:14:28 | 000,085,238 | ---- | M] () -- C:\WINDOWS\system32\perfc009.dat
[2013.02.17 17:14:28 | 000,510,704 | ---- | M] () -- C:\WINDOWS\system32\perfh005.dat
[2013.02.17 17:14:28 | 000,494,144 | ---- | M] () -- C:\WINDOWS\system32\perfh009.dat
[2013.02.17 17:14:28 | 001,172,076 | ---- | M] () -- C:\WINDOWS\system32\PerfStringBackup.INI
[2013.02.17 17:03:40 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 04:22:17 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Akamai NetSession Interface" = "C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai\netsession_win.exe" -- [2012.10.09 09:53:36 | 004,441,920 | ---- | M] (Akamai Technologies, Inc.)
"PC Suite Tray" = "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray -- [2011.06.16 15:21:06 | 001,500,160 | ---- | M] (Nokia)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2012.12.21 09:25:35 | 000,643,120 | ---- | M] (Microsoft Corporation) MD5=C3DDC05C898F19D35A4A2B5F707CA916 -- C:\Program Files\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013.02.17 22:04:26 | 000,000,512 | ---- | M] () MD5=37B26BD8A035430A472CE41B013C7D1F -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2010.03.01 16:38:35 | 005,403,571 | ---- | M] () -- \Organova hudba\0123 NOVE ORGAN\Popular Organ Music ( David Briggs )\06 - David Briggs - 06 Miniature-Overture from The Nutcracker Suite - P. I. Tchaikovsky.mp3
[2010.03.01 16:38:48 | 009,969,289 | ---- | M] () -- \Organova hudba\0123 NOVE ORGAN\Popular Organ Music ( David Briggs )\07 - David Briggs - 07 Waltz of the Flower from The Nutcracker Suite - P. I. Tchaikovsky.mp3

< *keygen* /s >

< *loader* /s >
[2008.03.18 06:31:00 | 000,009,216 | R--- | M] () -- \Program Files\Adobe\Acrobat 9.0\PDFMaker\AutoCAD\OD\AecDummyLoader_2.05_8.dll

========== Alternate Data Streams ==========

@Alternate Data Stream - 161 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:1493A0EF
@Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4
@Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:C8B8CEBD
@Alternate Data Stream - 104 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1

< End of report >

Re: Prosím o kontrolu logu

Napsal: 17 úno 2013 22:36
od michael89
OTL Extras logfile created on: 17.2.2013 21:58:45 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Dokumenty\Preberanie
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 0000041B | Country: Slovensko | Language: SKY | Date Format: d.M.yyyy

1,99 Gb Total Physical Memory | 1,02 Gb Available Physical Memory | 51,06% Memory free
3,84 Gb Paging File | 2,92 Gb Available in Paging File | 76,07% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 78,13 Gb Total Space | 18,79 Gb Free Space | 24,04% Space Free | Partition Type: NTFS
Drive D: | 154,75 Gb Total Space | 101,21 Gb Free Space | 65,41% Space Free | Partition Type: NTFS

Computer Name: FERKO-NTB | User Name: Ferko | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1003\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- D:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1005\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- D:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"UpdatesDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\ICQ7.7\ICQ.exe" = C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7 -- (ICQ, LLC.)
"%windir%\explorer.exe" = %windir%\explorer.exe -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Program Files\AC3Filter\ac3config.exe" = C:\Program Files\AC3Filter\ac3config.exe:*:Enabled:AC3Filter Config -- ()
"C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Google\Google Talk Plugin\googletalkplugin.exe" = C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Google\Google Talk Plugin\googletalkplugin.exe:*:Enabled:Google Talk Plugin -- (Google)
"C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai\netsession_win.exe" = C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Interface -- (Akamai Technologies, Inc.)
"C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" = C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe:*:Enabled:Nokia PC Suite -- (Nokia)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Program Files\ICQ7.7\ICQ.exe" = C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7 -- (ICQ, LLC.)
"%windir%\explorer.exe" = %windir%\explorer.exe -- (Microsoft Corporation)
"C:\Documents and Settings\Ferko\Data aplikací\Dropbox\bin\Dropbox.exe" = C:\Documents and Settings\Ferko\Data aplikací\Dropbox\bin\Dropbox.exe:*:Enabled:Dropbox
"C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Facebook\Video\Skype\FacebookVideoCalling.exe" = C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Facebook\Video\Skype\FacebookVideoCalling.exe:*:Enabled:Facebook Video Calling Plugin -- (Skype Limited)
"C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe" = C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit -- (Apple Inc.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{024521CF-C07E-4F8E-8481-0D75695E03AF}" = PxMergeModule
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}" = Nero BackItUp 10 Help (CHM)
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{16987E99-C95C-4513-9239-7B44A0A71DB5}" = Nero SoundTrax 10 Help (CHM)
"{17FE44E2-D21A-4F0C-BE49-798A8FBC374E}" = Sibelius 6
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1C4551A6-4743-4093-91E4-1477CD655043}" = NVIDIA PhysX
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F77C418-2C90-459C-BD33-B56A4182B9FA}" = System Requirements Lab CYRI
"{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}" = Nero MediaHub 10
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Nástroj pro odesílání služby Windows Live
"{237CCB62-8454-43E3-B158-3ACD0134852E}" = High-Definition Video Playback 10
"{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}" = Nero Core Components 10
"{25F61E72-AAA4-4607-95D2-1E5139C98FFB}" = Nokia_Multimedia_Common_Components_2_5
"{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 29
"{26A24AE4-039D-4CA4-87B4-2F83217013FF}" = Java 7 Update 13
"{277C1559-4CF7-44FF-8D07-98AA9C13AABD}" = Nero Multimedia Suite 10
"{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0
"{329411A0-19F3-4740-874F-17400B126F27}" = Nero Vision 10 Help (CHM)
"{33286280-8617-11E1-8FF6-B8AC6F97B88E}" = Google Earth Plug-in
"{33643918-7957-4839-92C7-EA96CB621A98}" = Nero Express 10 Help (CHM)
"{34490F4E-48D0-492E-8249-B48BECF0537C}" = Nero DiscSpeed 10
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help
"{378E39C3-92F2-4241-AC90-FAF023007D6D}" = Klient Správy přístupových práv v systému Windows s aktualizací Service Pack 2
"{37C8899D-FD70-481F-94AA-1F1B08765E22}" = Acronis True Image Home
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3E62B27C-342F-4B44-9331-CA4BC59A586F}" = Asistent pro přihlášení ke službě Windows Live
"{40719211-D09A-11DF-BA30-0013D3D69929}" = MSVCRT Redists
"{43507E5B-94A0-4E56-9C7B-FAAAFBDB5904}" = Intel(R) PROSet/Wireless WiFi Software
"{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4FCB1267-7380-4EBA-9A6C-69809C6E8227}" = Nokia Music Player
"{521AAD14-5030-44BB-8B0E-5CE65FCE57E0}" = InterVideo DeviceService
"{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}" = Nero ControlCenter 10 Help (CHM)
"{546C143E-68DC-314D-97BC-1E454E3BA429}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY
"{555868C6-49FB-484F-BB43-8980651A1B00}" = Nero BurnRights 10 Help (CHM)
"{55EB7967-5BB1-4EA2-8AFF-B2F9E487E553}" = PC Connectivity Solution
"{5691A25E-C05B-4E0F-87DA-E80869F756C2}" = Toshiba Hotkey Utility
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Zem
"{5E65E94D-69F2-4850-9E93-6459C53A0F50}" = Microsoft .NET Framework 1.1 Czech Language Pack
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63AA3EAB-23BB-48B2-9AD0-44F878075604}" = Nero 10 Menu TemplatePack Basic
"{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update
"{66049135-9659-4AAD-9169-9CCA269EBB3E}" = Nero InfoTool 10 Help (CHM)
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{68AB6930-5BFF-4FF6-923B-516A91984FE6}" = Nero BackItUp 10
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6DFB899F-17A2-48F0-A533-ED8D6866CF38}" = Nero Control Center 10
"{7032B400-11EC-11E0-A9BF-0013D3D69929}" = MSVCRT Redists
"{70550193-1C22-445C-8FA4-564E155DB1A7}" = Nero Express 10
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74C9DFA1-338F-4bf3-B317-99A9EC8EF9A6}" = Intel(R) PROSet
"{7506D309-53A2-4927-BD1B-70015F1C6E0C}" = Windows Slovak Interface Pack
"{77F665FD-3F60-4B0A-AE14-EC124B7A7FCE}" = ICQ7.7
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7A295D8F-484B-4FFB-89AB-C1FD497591FE}" = Nero WaveEditor 10 Help (CHM)
"{7A5D731D-B4B3-490E-B339-75685712BAAB}" = Nero Burning ROM 10
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7FF7370F-4C53-11E1-B6FF-F04DA23A5C58}" = MSVCRT Redists
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{889D48DA-457F-4C8B-9095-6458F2793B12}" = Nokia Software Updater
"{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}" = Nero Recode 10
"{90120000-0010-041B-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Slovak) 12
"{90120000-0015-041B-0000-0000000FF1CE}" = Microsoft Office Access MUI (Slovak) 2007
"{90120000-0015-041B-0000-0000000FF1CE}_ENTERPRISE_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-041B-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Slovak) 2007
"{90120000-0016-041B-0000-0000000FF1CE}_ENTERPRISE_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-041B-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Slovak) 2007
"{90120000-0018-041B-0000-0000000FF1CE}_ENTERPRISE_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-041B-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Slovak) 2007
"{90120000-0019-041B-0000-0000000FF1CE}_ENTERPRISE_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-041B-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Slovak) 2007
"{90120000-001A-041B-0000-0000000FF1CE}_ENTERPRISE_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-041B-0000-0000000FF1CE}" = Microsoft Office Word MUI (Slovak) 2007
"{90120000-001B-041B-0000-0000000FF1CE}_ENTERPRISE_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040E-0000-0000000FF1CE}" = Microsoft Office Proof (Hungarian) 2007
"{90120000-001F-040E-0000-0000000FF1CE}_ENTERPRISE_{0AD4BB83-13B4-4C9D-9BAC-7F64E0B2D5D7}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-041B-0000-0000000FF1CE}" = Microsoft Office Proofing (Slovak) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-041B-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Slovak) 2007
"{90120000-0044-041B-0000-0000000FF1CE}_ENTERPRISE_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-041B-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Slovak) 2007
"{90120000-006E-041B-0000-0000000FF1CE}_ENTERPRISE_{8382BA92-20E3-47B6-971B-F673F0492D4E}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-041B-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Slovak) 2007
"{90120000-00A1-041B-0000-0000000FF1CE}_ENTERPRISE_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-041B-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Slovak) 2007
"{90120000-00BA-041B-0000-0000000FF1CE}_ENTERPRISE_{4754EB3B-ED3D-4095-A2FD-684A3058A4FF}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92E25238-61A3-4ACD-A407-3C480EEF47A7}" = Nero RescueAgent 10 Help (CHM)
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{943CFD7D-5336-47AF-9418-E02473A5A517}" = Nero BurnRights 10
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}" = Nero Vision 10
"{9B6B24BE-80E7-46C4-9FA5-B167D5E0F345}" = Nero BurningROM 10 Help (CHM)
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A2C9CD1B-2551-3AED-B244-6698FB929FA6}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A800EE5E-D6BD-4326-BED1-F7ECBFBF91CE}" = O2Micro Flash Memory Card Reader Driver (x86)
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-1029-4770-7760-000000000004}" = Adobe Acrobat 9 Pro - Czech, Hungarian, Polish, Slovak
"{AC76BA86-1029-4770-7760-000000000004}{AC76BA86-1029-4770-7760-000000000004}" = Adobe Acrobat 9 Pro - Czech, Hungarian, Polish, Slovak
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.01) - Czech
"{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}" = QuickTime
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{AF88496B-4BBA-4922-97E9-2582D3A28358}" = Nokia Connectivity Cable Driver
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287
"{BCC8489E-9FFA-4172-8EC7-142AD520322A}" = ZOOM HandyShare for Windows
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C16ADB2B-37C8-4AF8-A7D2-3A4B1BEF9662}" = Gothic
"{C18A0418-442A-4186-AF98-D08F5054A2FC}" = Nero DiscSpeed 10 Help (CHM)
"{C3273C55-E1E4-41FF-8D69-0158090DB8D8}" = Nero CoverDesigner 10 Help (CHM)
"{C3580AC4-C827-4332-B935-9A282ED5BB97}" = Nero Dolby Files 10
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
"{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CCD663AE-610D-4BDF-AAB0-E914B044527D}" = OpenMG Secure Module 4.7.00
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{D0D14551-3A2D-433B-861F-F4DCE5422759}" = Nokia PC Suite
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}" = Microsoft Primary Interoperability Assemblies 2005
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{D952C4F9-2488-3723-84BE-1BFA907DCAC9}" = Google Talk Plugin
"{DB24A9E5-A068-43DD-88D0-B51BED3C0B99}" = Nokia Suite
"{DB7C1D4A-08BA-4C7E-A8AA-B7F9BB372DCF}" = Nero Recode 10 Help (CHM)
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}" = Nero SoundTrax 10
"{E337E787-CF61-4B7B-B84F-509202A54023}" = Nero RescueAgent 10
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series
"{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86
"{EC905264-BCFE-423B-9C42-C3A106266790}" = Klient Správy přístupových práv v systému Windows SP2, zpětná kompatibilita
"{EDCDFAD5-DF80-4600-A493-E9DAD6810230}" = Nero WaveEditor 10
"{F412B4AF-388C-4FF5-9B2F-33DB1C536953}" = Nero InfoTool 10
"{F467862A-D9CA-47ED-8D81-B4B3C9399272}" = Nero MediaHub 10 Help (CHM)
"{F4D69A8D-BB5C-4C3D-A1AD-64C24233EDD6}" = Windows Live Essentials
"{F5266D28-E0B2-4130-BFC5-EE155AD514DC}" = Apple Application Support
"{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}" = Nero 10 Movie ThemePack Basic
"{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}" = Nero StartSmart 10 Help (CHM)
"{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}" = Nero StartSmart 10
"{FCF00A6E-FB58-477A-ABE9-232907105521}" = Nero CoverDesigner 10
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"504244733D18C8F63FF584AEB290E3904E791693" = Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"72A50F48CC5601190B9C4E74D81161693133E7F7" = Balíček ovladače systému Windows - Nokia Modem (02/25/2011 7.01.0.9)
"AC3Filter_is1" = AC3Filter 1.63b
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Akamai" = Akamai NetSession Interface Service
"Audacity_is1" = Audacity 2.0
"avast" = avast! Free Antivirus
"CCleaner" = CCleaner
"CNXT_AUDIO_HDA" = Conexant HD Audio
"CNXT_MODEM_HDAUDIO_HERMOSA_HSF" = HDAUDIO Soft Data Fax Modem with SmartCP
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.3.0
"Defraggler" = Defraggler
"DivX Setup" = DivX Setup
"E0AC723A3DE3A04256288CADBBB011B112AED454" = Balíček ovladače systému Windows - Nokia Modem (02/25/2011 4.7)
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EPSON Scanner" = EPSON Scan
"FFmpeg for Audacity on Windows_is1" = FFmpeg for Audacity on Windows
"FMCODEC" = FM Screen Capture Codec (Remove Only)
"GoldWave v5.58" = GoldWave v5.58
"HD Tune_is1" = HD Tune 2.55
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"HP-LaserJet 1020 series" = LaserJet 1020 series
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"IE7-LIP" = Windows Internet Explorer 7 Language Interface Pack (SKY)
"Inkscape" = Inkscape 0.48.2
"InstallShield_{5691A25E-C05B-4E0F-87DA-E80869F756C2}" = Toshiba Hotkey Utility
"InstallShield_{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD Ultra
"InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}" = OpenMG Secure Module 4.7.00
"IrfanView" = IrfanView (remove only)
"LAME for Audacity_is1" = LAME v3.98.2 for Audacity
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verzia 1.70.0.1100
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Mozilla Firefox 18.0.2 (x86 sk)" = Mozilla Firefox 18.0.2 (x86 sk)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Nokia PC Suite" = Nokia PC Suite
"Nokia Suite" = Nokia Suite
"OpenAL" = OpenAL
"OpenMG HotFix4.7-07-13-22-01" = OpenMG Limited Patch 4.7-07-14-05-01
"OrderReminder HP LaserJet 1020" = OrderReminder HP LaserJet 1020
"ProInst" = Intel PROSet Wireless
"The KMPlayer" = The KMPlayer (remove only)
"Totalcmd" = Total Commander (Remove or Repair)
"Windows Media Encoder 9" = Windows Media Encoder 9 Series
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WinGimp-2.0_is1" = Gimp 2.6.1
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR archivátor

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{79A765E1-C399-405B-85AF-466F52E918B0}" = Nero Toolbar Updater
"5aa11655d7ba586e" = Simt
"Akamai" = Akamai NetSession Interface
"Google Chrome" = Google Chrome
"Network Addon Mod" = Network Addon Mod Version 30 with Essentials r132
"Traffic Simulator Configuration Tool" = Traffic Simulator Configuration Tool

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{79A765E1-C399-405B-85AF-466F52E918B0}" = Nero Toolbar Updater
"Google Chrome" = Google Chrome
"PhotoFiltre 7" = PhotoFiltre 7

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 12.10.2012 13:48:40 | Computer Name = FERKO-NTB | Source = Application Error | ID = 1000
Description = Chybující aplikace updater.exe, verze 1.2.0.20007, chybující modul
kernel32.dll, verze 5.1.2600.5781, adresa chyby 0x00009823.

Error - 25.10.2012 15:55:09 | Computer Name = FERKO-NTB | Source = Application Error | ID = 1000
Description = Chybující aplikace sibelius.exe, verze 6.0.0.54, chybující modul divxdech264.ax,
verze 9.0.1.21, adresa chyby 0x00023902.

Error - 25.10.2012 15:56:54 | Computer Name = FERKO-NTB | Source = Application Error | ID = 1000
Description = Chybující aplikace sibelius.exe, verze 6.0.0.54, chybující modul divxdech264.ax,
verze 9.0.1.21, adresa chyby 0x00023902.

Error - 25.10.2012 15:58:44 | Computer Name = FERKO-NTB | Source = Application Error | ID = 1000
Description = Chybující aplikace sibelius.exe, verze 6.0.0.54, chybující modul divxdech264.ax,
verze 9.0.1.21, adresa chyby 0x00023902.

Error - 26.11.2012 17:47:09 | Computer Name = FERKO-NTB | Source = Application Error | ID = 1000
Description = Chybující aplikace plugin-container.exe, verze 16.0.2.4680, chybující
modul mozalloc.dll, verze 16.0.2.4680, adresa chyby 0x00001988.

Error - 4.12.2012 8:29:20 | Computer Name = FERKO-NTB | Source = Application Error | ID = 1000
Description = Chybující aplikace updater.exe, verze 1.2.0.20007, chybující modul
wininet.dll, verze 7.0.6000.17114, adresa chyby 0x0001d88d.

Error - 30.12.2012 9:09:23 | Computer Name = FERKO-NTB | Source = Application Error | ID = 1000
Description = Chybující aplikace rundll32.exe, verze 5.1.2600.5512, chybující modul
hotplug.dll, verze 5.1.2600.5512, adresa chyby 0x00006901.

Error - 30.12.2012 9:09:27 | Computer Name = FERKO-NTB | Source = Application Error | ID = 1000
Description = Chybující aplikace drwtsn32.exe, verze 5.1.2600.0, chybující modul
dbghelp.dll, verze 5.1.2600.5512, adresa chyby 0x0001295d.

Error - 16.1.2013 16:40:15 | Computer Name = FERKO-NTB | Source = Application Error | ID = 1000
Description = Chybující aplikace egui.exe, verze 6.0.115.0, chybující modul ntdll.dll,
verze 5.1.2600.6055, adresa chyby 0x0000f71b.

Error - 15.2.2013 4:15:53 | Computer Name = FERKO-NTB | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

[ OSession Events ]
Error - 14.10.2010 2:56:24 | Computer Name = FERKO-NTB | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 146
seconds with 120 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 15.2.2013 4:16:54 | Computer Name = FERKO-NTB | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}

Error - 15.2.2013 4:21:50 | Computer Name = FERKO-NTB | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}

Error - 15.2.2013 4:32:05 | Computer Name = FERKO-NTB | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}

Error - 15.2.2013 6:20:30 | Computer Name = FERKO-NTB | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}

Error - 16.2.2013 17:31:06 | Computer Name = FERKO-NTB | Source = Service Control Manager | ID = 7003
Description = Služba Intel(R) PROSet/Wireless WiFi Service závisí na následující
neexistující službě: s24trans

Error - 16.2.2013 17:32:28 | Computer Name = FERKO-NTB | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: prosync1

Error - 17.2.2013 12:02:05 | Computer Name = FERKO-NTB | Source = Service Control Manager | ID = 7003
Description = Služba Intel(R) PROSet/Wireless WiFi Service závisí na následující
neexistující službě: s24trans

Error - 17.2.2013 12:02:05 | Computer Name = FERKO-NTB | Source = Service Control Manager | ID = 7000
Description = Služba NMSAccess neuspěla při spuštění v důsledku následující chyby:
%%5

Error - 17.2.2013 12:03:29 | Computer Name = FERKO-NTB | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: prosync1

Error - 17.2.2013 13:55:30 | Computer Name = FERKO-NTB | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby upnphost
s argumenty za účelem spuštění serveru: {204810B9-73B2-11D4-BF42-00B0D0118B56}


< End of report >

Re: Prosím o kontrolu logu

Napsal: 17 úno 2013 23:19
od vyosek
:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    SRV - [2012.11.12 19:06:46 | 004,539,712 | ---- | M] () [Auto | Running] -- c:\program files\common files\akamai/netsession_win_ce5ba24.dll -- (Akamai)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
    DRV - File not found [Kernel | Boot | Stopped] -- System32\drivers\prosync1.sys -- (prosync1)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
    DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
    DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
    DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
    DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewusbmdm.sys -- (hwdatacard)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_jubusenum.sys -- (huawei_enumerator)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_hwusbdev.sys -- (ew_hwusbdev)
    DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Ferko\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys -- (cpuz134)
    DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ATSwpDrv.sys -- (ATSWPDRV)
    IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
    IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1005\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
    IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\SearchScopes,DefaultScope = {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
    IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
    IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/custom/java/re ... src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000
    IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2786678
    [2011.12.19 22:10:48 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Documents and Settings\Ferko\Data aplikací\mozilla\Firefox\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
    O2 - BHO: (Nero Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
    O3 - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\Toolbar\WebBrowser: (Nero Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
    O4 - HKLM..\Run: [] File not found
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Value error.)
    O33 - MountPoints2\{2d661e37-2c95-11e0-9060-001f3b4b8701}\Shell - "" = AutoRun
    O33 - MountPoints2\{956706d2-40db-11e0-906c-001f3b4b8701}\Shell - "" = AutoRun
    O33 - MountPoints2\{99d0deeb-b236-11e1-821a-001f3b4b8701}\Shell - "" = AutoRun
    [2012.10.24 19:47:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ask
    [2011.02.25 15:33:17 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
    [2012.09.15 11:05:50 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\{32364CEA-7855-4A3C-B674-53D8E9B97936}
    [2011.11.12 14:31:48 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}
    [2011.02.25 15:13:11 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
    [2011.11.26 19:21:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\IObit
    [6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [18 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
    [1 C:\WINDOWS\Globalization\*.tmp files -> C:\WINDOWS\Globalization\*.tmp -> ]
    [45 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
    [1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
    [11 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ]
    [1 C:\WINDOWS\Temp\_avast_\*.tmp files -> C:\WINDOWS\Temp\_avast_\*.tmp -> ]
    [2012.01.02 21:13:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\AskToolbar
    [2013.02.17 22:00:00 | 000,000,914 | ---- | M] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
    [2012.12.25 02:00:00 | 000,000,342 | ---- | M] () -- C:\WINDOWS\Tasks\AdobeAAMUpdater-1.0-FERKO-NTB-Ferko.job
    [2013.02.11 12:12:03 | 000,000,284 | ---- | M] () -- C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
    [2013.02.17 20:25:01 | 000,000,316 | -H-- | M] () -- C:\WINDOWS\Tasks\avast! Emergency Update.job
    [2013.02.17 13:07:00 | 000,001,084 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003Core.job
    [2013.02.17 22:07:03 | 000,001,106 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003UA.job
    [2013.02.17 20:42:00 | 000,000,918 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
    [2013.02.17 21:42:00 | 000,000,922 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
    [2013.02.17 12:32:00 | 000,000,958 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003Core.job
    [2013.02.17 20:32:00 | 000,001,010 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003UA.job
    [2013.02.12 20:28:42 | 000,000,986 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1005Core.job
    [2013.02.17 22:00:04 | 000,001,038 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1005UA.job
    [2013.02.17 22:26:00 | 000,000,234 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
    @Alternate Data Stream - 161 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:1493A0EF
    @Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4
    @Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:C8B8CEBD
    @Alternate Data Stream - 104 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1
    
    :services
    NAUpdate
    
    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "GrooveMonitor"=-
    "NSU_agent"=-
    ""=-
    "ApnUpdater"=-
    "AdobeAAMUpdater-1.0"=-
    "SwitchBoard"=-
    "AdobeCS5ServiceManager"=-
    "QuickTime Task"=-
    "Adobe Acrobat Speed Launcher"=-
    "Adobe ARM"=-
    "SunJavaUpdateSched"=-
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"=-
    "Akamai NetSession Interface"=-
    "PC Suite Tray"=-
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HandyShareStartup]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent]
    
    :files
    C:\Program Files\Ask.com
    C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai
    c:\program files\common files\akamai
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
    [EMPTYJAVA]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

Re: Prosím o kontrolu logu

Napsal: 18 úno 2013 08:00
od michael89
Urobil som to presne podľa návodu, no po stlačení - Opraviť - vypíše len - vypínam proces, neprerušovať a nič sa nedeje, len zmizne lišta Štart...

Re: Prosím o kontrolu logu

Napsal: 18 úno 2013 21:34
od vyosek
Zkuste prosim zopakovat v nouzovem rezimu

Re: Prosím o kontrolu logu

Napsal: 19 úno 2013 08:52
od michael89
Skúšam to a zatiaľ nefunguje.
Podľa mňa problém spôsobuje nejaká neznáma aplikácia - vždy pri vypínaní PC (aj cez núdzový režim) nevie Windows ukončiť aplikáciu, ktorá sa vola "Sample" a musím ju ukončiť ručne...

Re: Prosím o kontrolu logu

Napsal: 19 úno 2013 09:12
od vyosek
Fajn, vezmem to postupne...

:arrow: Aplikujte tento skript (restart nebude)

Kód: Vybrat vše

:otl
SRV - [2012.11.12 19:06:46 | 004,539,712 | ---- | M] () [Auto | Running] -- c:\program files\common files\akamai/netsession_win_ce5ba24.dll -- (Akamai)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | Boot | Stopped] -- System32\drivers\prosync1.sys -- (prosync1)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewusbmdm.sys -- (hwdatacard)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_jubusenum.sys -- (huawei_enumerator)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_hwusbdev.sys -- (ew_hwusbdev)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Ferko\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys -- (cpuz134)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ATSwpDrv.sys -- (ATSWPDRV)
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1005\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\SearchScopes,DefaultScope = {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/custom/java/re ... src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000
IE - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2786678
[2011.12.19 22:10:48 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Documents and Settings\Ferko\Data aplikací\mozilla\Firefox\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
O2 - BHO: (Nero Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKU\S-1-5-21-1645522239-1957994488-682003330-1003\..\Toolbar\WebBrowser: (Nero Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [] File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Value error.)
O33 - MountPoints2\{2d661e37-2c95-11e0-9060-001f3b4b8701}\Shell - "" = AutoRun
O33 - MountPoints2\{956706d2-40db-11e0-906c-001f3b4b8701}\Shell - "" = AutoRun
O33 - MountPoints2\{99d0deeb-b236-11e1-821a-001f3b4b8701}\Shell - "" = AutoRun
[2012.10.24 19:47:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ask
[2011.02.25 15:33:17 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2012.09.15 11:05:50 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\{32364CEA-7855-4A3C-B674-53D8E9B97936}
[2011.11.12 14:31:48 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}
[2011.02.25 15:13:11 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2011.11.26 19:21:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\IObit
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[18 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS\Globalization\*.tmp files -> C:\WINDOWS\Globalization\*.tmp -> ]
[45 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[11 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ]
[1 C:\WINDOWS\Temp\_avast_\*.tmp files -> C:\WINDOWS\Temp\_avast_\*.tmp -> ]
[2012.01.02 21:13:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ferko\Data aplikací\AskToolbar
[2013.02.17 22:00:00 | 000,000,914 | ---- | M] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2012.12.25 02:00:00 | 000,000,342 | ---- | M] () -- C:\WINDOWS\Tasks\AdobeAAMUpdater-1.0-FERKO-NTB-Ferko.job
[2013.02.11 12:12:03 | 000,000,284 | ---- | M] () -- C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
[2013.02.17 20:25:01 | 000,000,316 | -H-- | M] () -- C:\WINDOWS\Tasks\avast! Emergency Update.job
[2013.02.17 13:07:00 | 000,001,084 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003Core.job
[2013.02.17 22:07:03 | 000,001,106 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003UA.job
[2013.02.17 20:42:00 | 000,000,918 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2013.02.17 21:42:00 | 000,000,922 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
[2013.02.17 12:32:00 | 000,000,958 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003Core.job
[2013.02.17 20:32:00 | 000,001,010 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003UA.job
[2013.02.12 20:28:42 | 000,000,986 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1005Core.job
[2013.02.17 22:00:04 | 000,001,038 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1005UA.job
[2013.02.17 22:26:00 | 000,000,234 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
@Alternate Data Stream - 161 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:1493A0EF
@Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4
@Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:C8B8CEBD
@Alternate Data Stream - 104 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1

:services
NAUpdate

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=-
"NSU_agent"=-
""=-
"ApnUpdater"=-
"AdobeAAMUpdater-1.0"=-
"SwitchBoard"=-
"AdobeCS5ServiceManager"=-
"QuickTime Task"=-
"Adobe Acrobat Speed Launcher"=-
"Adobe ARM"=-
"SunJavaUpdateSched"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=-
"Akamai NetSession Interface"=-
"PC Suite Tray"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HandyShareStartup]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent]

:files
C:\Program Files\Ask.com
C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai
c:\program files\common files\akamai
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp

Re: Prosím o kontrolu logu

Napsal: 19 úno 2013 11:18
od michael89
Páči sa log :

========== OTL ==========
Service Akamai stopped successfully!
Service Akamai deleted successfully!
c:\program files\common files\akamai/netsession_win_ce5ba24.dll moved successfully.
Service WDICA stopped successfully!
Service WDICA deleted successfully!
Service prosync1 stopped successfully!
Service prosync1 deleted successfully!
File System32\drivers\prosync1.sys not found.
Service PDRFRAME stopped successfully!
Service PDRFRAME deleted successfully!
Service PDRELI stopped successfully!
Service PDRELI deleted successfully!
Service PDFRAME stopped successfully!
Service PDFRAME deleted successfully!
Service PDCOMP stopped successfully!
Service PDCOMP deleted successfully!
Service PCIDump stopped successfully!
Service PCIDump deleted successfully!
Service lbrtfdc stopped successfully!
Service lbrtfdc deleted successfully!
Service i2omgmt stopped successfully!
Service i2omgmt deleted successfully!
Service Changer stopped successfully!
Service Changer deleted successfully!
Service hwdatacard stopped successfully!
Service hwdatacard deleted successfully!
File system32\DRIVERS\ewusbmdm.sys not found.
Service huawei_enumerator stopped successfully!
Service huawei_enumerator deleted successfully!
File system32\DRIVERS\ew_jubusenum.sys not found.
Service ew_hwusbdev stopped successfully!
Service ew_hwusbdev deleted successfully!
File system32\DRIVERS\ew_hwusbdev.sys not found.
Service cpuz134 stopped successfully!
Service cpuz134 deleted successfully!
File C:\DOCUME~1\Ferko\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys not found.
Service ATSWPDRV stopped successfully!
Service ATSWPDRV deleted successfully!
File system32\DRIVERS\ATSwpDrv.sys not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Unable to set value : HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1005\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E!
Registry key HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1003\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1003\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1003\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ not found.
Registry key HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1003\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
C:\Documents and Settings\Ferko\Data aplikací\mozilla\Firefox\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\searchplugin folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\mozilla\Firefox\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\modules folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\mozilla\Firefox\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\META-INF folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\mozilla\Firefox\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\defaults folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\mozilla\Firefox\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\components folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\mozilla\Firefox\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\chrome folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\mozilla\Firefox\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} folder moved successfully.
Registry value HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com deleted successfully.
File C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
C:\Program Files\Ask.com\GenericAskToolbar.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-1645522239-1957994488-682003330-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Infodelivery\ deleted successfully.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2d661e37-2c95-11e0-9060-001f3b4b8701}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2d661e37-2c95-11e0-9060-001f3b4b8701}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{956706d2-40db-11e0-906c-001f3b4b8701}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{956706d2-40db-11e0-906c-001f3b4b8701}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{99d0deeb-b236-11e1-821a-001f3b4b8701}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99d0deeb-b236-11e1-821a-001f3b4b8701}\ not found.
C:\Documents and Settings\All Users\Data aplikací\Ask\APN-Stub folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Ask folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16} folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{32364CEA-7855-4A3C-B674-53D8E9B97936} folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}\{09FF4DB8-7DE9-4D47-B7DB-915DB7D9A8CA} folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1} folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC} folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\IObit\SmartRAM folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\IObit\Advanced SystemCare V5 folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\IObit\Advanced SystemCare\Backup\Registry folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\IObit\Advanced SystemCare\Backup folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\IObit\Advanced SystemCare folder moved successfully.
C:\Documents and Settings\Ferko\Data aplikací\IObit folder moved successfully.
C:\WINDOWS\000001_.tmp deleted successfully.
C:\WINDOWS\002876_.tmp deleted successfully.
C:\WINDOWS\msdownld.tmp folder deleted successfully.
C:\WINDOWS\SET3.tmp deleted successfully.
C:\WINDOWS\SET4.tmp deleted successfully.
C:\WINDOWS\SET8.tmp deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP151.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP19F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP28A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP39E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP42E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP48B.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4B6.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4EB.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP51.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5A1.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5C9.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5CA.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5E9.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6077.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP681.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6AA.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPAC72.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPBFCE.tmp folder deleted successfully.
C:\WINDOWS\Globalization\tl-PH-Nokia.tmp0 deleted successfully.
C:\WINDOWS\Installer\MSI15.tmp deleted successfully.
C:\WINDOWS\Installer\MSI160.tmp deleted successfully.
C:\WINDOWS\Installer\MSI175.tmp deleted successfully.
C:\WINDOWS\Installer\MSI18B.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1955.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1DE.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1E1.tmp deleted successfully.
C:\WINDOWS\Installer\MSI285.tmp deleted successfully.
C:\WINDOWS\Installer\MSI28A.tmp deleted successfully.
C:\WINDOWS\Installer\MSI2B.tmp deleted successfully.
C:\WINDOWS\Installer\MSI2CB.tmp deleted successfully.
C:\WINDOWS\Installer\MSI2F8.tmp deleted successfully.
C:\WINDOWS\Installer\MSI2FE.tmp deleted successfully.
C:\WINDOWS\Installer\MSI30B.tmp deleted successfully.
C:\WINDOWS\Installer\MSI338.tmp deleted successfully.
C:\WINDOWS\Installer\MSI339.tmp deleted successfully.
C:\WINDOWS\Installer\MSI33A.tmp deleted successfully.
C:\WINDOWS\Installer\MSI33B.tmp deleted successfully.
C:\WINDOWS\Installer\MSI33C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI3DC.tmp deleted successfully.
C:\WINDOWS\Installer\MSI3E4E.tmp deleted successfully.
C:\WINDOWS\Installer\MSI40E.tmp deleted successfully.
C:\WINDOWS\Installer\MSI42D.tmp deleted successfully.
C:\WINDOWS\Installer\MSI4E3.tmp deleted successfully.
C:\WINDOWS\Installer\MSI518.tmp deleted successfully.
C:\WINDOWS\Installer\MSI5B8.tmp deleted successfully.
C:\WINDOWS\Installer\MSI5BE.tmp deleted successfully.
C:\WINDOWS\Installer\MSI61F.tmp deleted successfully.
C:\WINDOWS\Installer\MSI620.tmp deleted successfully.
C:\WINDOWS\Installer\MSI69E.tmp deleted successfully.
C:\WINDOWS\Installer\MSI6A4.tmp deleted successfully.
C:\WINDOWS\Installer\MSI6C6.tmp deleted successfully.
C:\WINDOWS\Installer\MSI727.tmp deleted successfully.
C:\WINDOWS\Installer\MSI763.tmp deleted successfully.
C:\WINDOWS\Installer\MSI7979.tmp deleted successfully.
C:\WINDOWS\Installer\MSI79C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI895.tmp deleted successfully.
C:\WINDOWS\Installer\MSI8BB.tmp deleted successfully.
C:\WINDOWS\Installer\MSI9.tmp deleted successfully.
C:\WINDOWS\Installer\MSI988.tmp deleted successfully.
C:\WINDOWS\Installer\MSIA.tmp deleted successfully.
C:\WINDOWS\Installer\MSIA6B.tmp deleted successfully.
C:\WINDOWS\Installer\MSIAF0.tmp deleted successfully.
C:\WINDOWS\Installer\MSIB.tmp deleted successfully.
C:\WINDOWS\Installer\MSIBD.tmp deleted successfully.
C:\WINDOWS\system32\CONFIG.TMP deleted successfully.
C:\WINDOWS\Temp\htt230.tmp deleted successfully.
C:\WINDOWS\Temp\htt25BA.tmp deleted successfully.
C:\WINDOWS\Temp\htt2896.tmp deleted successfully.
C:\WINDOWS\Temp\htt512.tmp deleted successfully.
C:\WINDOWS\Temp\htt515.tmp deleted successfully.
C:\WINDOWS\Temp\htt519.tmp deleted successfully.
C:\WINDOWS\Temp\htt6BA.tmp deleted successfully.
C:\WINDOWS\Temp\htt8FB.tmp deleted successfully.
C:\WINDOWS\Temp\NOD25BC.tmp deleted successfully.
C:\WINDOWS\Temp\NOD513.tmp deleted successfully.
C:\WINDOWS\Temp\NOD52C.tmp deleted successfully.
C:\Documents and Settings\Ferko\Data aplikací\AskToolbar folder moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job moved successfully.
C:\WINDOWS\Tasks\AdobeAAMUpdater-1.0-FERKO-NTB-Ferko.job moved successfully.
C:\WINDOWS\Tasks\AppleSoftwareUpdate.job moved successfully.
C:\WINDOWS\Tasks\avast! Emergency Update.job moved successfully.
C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003Core.job moved successfully.
C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003UA.job moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003Core.job moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1003UA.job moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1005Core.job moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1957994488-682003330-1005UA.job moved successfully.
C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job moved successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:1493A0EF deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4 deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:C8B8CEBD deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:D1B5B4F1 deleted successfully.
========== SERVICES/DRIVERS ==========
Service NAUpdate stopped successfully!
Service NAUpdate deleted successfully!
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NSU_agent deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeCS5ServiceManager deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\CTFMON.EXE deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\PC Suite Tray deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HandyShareStartup\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent\ deleted successfully.
========== FILES ==========
Folder move failed. C:\Program Files\Ask.com\Updater scheduled to be moved on reboot.
C:\Program Files\Ask.com\assets\oobe folder moved successfully.
C:\Program Files\Ask.com\assets folder moved successfully.
Folder move failed. C:\Program Files\Ask.com scheduled to be moved on reboot.
C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai\Logs\dump folder moved successfully.
Folder move failed. C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai\Logs scheduled to be moved on reboot.
C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai\Languages folder moved successfully.
C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai\Cache folder moved successfully.
Folder move failed. C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai scheduled to be moved on reboot.
c:\program files\common files\Akamai\Logs\dump folder moved successfully.
c:\program files\common files\Akamai\Logs folder moved successfully.
c:\program files\common files\Akamai\Languages folder moved successfully.
c:\program files\common files\Akamai\Cache folder moved successfully.
c:\program files\common files\Akamai folder moved successfully.
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.

OTL by OldTimer - Version 3.2.69.0 log created on 02192013_111313

Files\Folders moved on Reboot...
C:\Program Files\Ask.com\Updater folder moved successfully.
C:\Program Files\Ask.com folder moved successfully.
C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai\Logs folder moved successfully.
C:\Documents and Settings\Ferko\Local Settings\Data aplikací\Akamai folder moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Re: Prosím o kontrolu logu

Napsal: 19 úno 2013 13:33
od vyosek
Fajn, nyni zkuste tento skript

Kód: Vybrat vše

:commands
[RESETHOSTS]
[EMPTYTEMP]

Re: Prosím o kontrolu logu

Napsal: 19 úno 2013 14:01
od michael89
Nepomohlo to, opäť vyskočil rovnaký nápis (vypínam procesy, neprerušovať), zmizla lišta štart ale nič sa nedeje...

Re: Prosím o kontrolu logu

Napsal: 19 úno 2013 18:26
od vyosek
OK, jsou pripadne nejake dalsi problemy :???:

Re: Prosím o kontrolu logu

Napsal: 19 úno 2013 19:53
od michael89
Až na to, že sa počítač nevie vypnúť sám, ale stále treba minimálne jednu aplikáciu ukončiť ručne, nie sú žiadne.
Takže ani tie logy nič neukázali?

Re: Prosím o kontrolu logu

Napsal: 19 úno 2013 19:53
od vyosek
Ktera je to aplikace, pripadne dejte screen

Re: Prosím o kontrolu logu

Napsal: 21 úno 2013 07:35
od michael89
Pri vypínaní vyskočí tabuľka - vypínam aplikáciu Sample, čakajte.
A dá sa to ukončiť hneď ručne alebo počkať. Ale môžem čakať ako dlho, počítač ju nevie ukončiť.
V prípade že mám PC zapnuté dlhšie, počet aplikácii, ktoré PC pri vypínaní nevie ukončiť, vzrastá.

Re: Prosím o kontrolu logu

Napsal: 21 úno 2013 12:00
od vyosek
:arrow: Tu aplikaci Sample znate??

:arrow: Zkuste dle navodu kolegy
pitimir píše:
1. Start -> Spustit
2. Napis "regedit" (bez uvodzoviek)
3. Vyhladaj: HKEY_LOCAL_MACHINE -> System -> CurrentControlSet -> Control
4. Klikni na priecinok "Control" a na pravej strane okna vyhladaj "WaitToKillServiceTimeout"
5. 2x klikni a zmen cislo na 1000 (default je 20000)

1. Start->Spustit->"regedit"
2. Vyhladaj: HKEY_CURRENT_USER -> Control Panel -> Desktop
3. Klik na priecinok "Desktop" a na pravej strane vyhladaj "WaitToKillAppTimeout" a "HungAppTimeout"
4. 2x klik na obe zmienovane polozky a zmenit ich hodnoty na 1000 (default 20000)