Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-09-2013 02
Ran by Petr (administrator) on PC-BAE24E97DB84 on 12-09-2013 17:47:46
Running from C:\Documents and Settings\Petr\Plocha
Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(AVG) C:\Program Files\AVG\AVG PC Tuneup 2011\BoostSpeed.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
() C:\Program Files\DivX\DivX Update\DivXUpdate.exe
() C:\Program Files\AVG Secure Search\vprot.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Apple Computer, Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hewlett-Packard Co.) C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
(Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jqs.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
() C:\Program Files\CDBurnerXP\NMSAccessU.exe
(Pandora.TV) C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
(Hewlett-Packard Co.) C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(QIP.ru) C:\Program Files\QipGuard\QipGuard.exe
(PandoraTV) C:\Program Files\PANDORA.TV\PanService\PanProcess.exe
(AVG Secure Search) C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe
() C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\loggingserver.exe
(Hewlett-Packard Co.) C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgfws.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgwdsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgnsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgemcx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgcsrvx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgcsrvx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgui.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-08-25] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [ATICustomerCare] - C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [311296 2010-03-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-27] (Adobe Systems Incorporated)
HKLM\...\Run: [GrooveMonitor] - C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\qttask.exe [421888 2011-10-24] (Apple Inc.)
HKLM\...\Run: [DivXUpdate] - C:\Program Files\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-29] ()
HKLM\...\Run: [AVG_UI] - C:\Program Files\AVG\AVG2013\avgui.exe [4411440 2013-08-15] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [vProt] - C:\Program Files\AVG Secure Search\vprot.exe [2314416 2013-08-15] ()
HKLM\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2255184 2013-06-28] (LogMeIn Inc.)
Winlogon\Notify\AtiExtEvent: Ati2evxx.dll (ATI Technologies Inc.)
HKLM\...\Policies\Explorer: [NoDrives] 0
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.)
HKCU\...\Run: [ADUDReminder] - C:\Program Files\Advanced Driver Updater\adu.exe [9320816 2013-04-18] (Systweak Inc)
HKCU\...\Policies\Explorer: [NoDrives] 0
MountPoints2: {41f114e8-f742-11df-8fae-0019212b7c3e} - "G:\WD SmartWare.exe" autoplay=true
MountPoints2: {6bba4754-7035-11e0-90d7-0019212b7c3e} - F:\LaunchU3.exe -a
MountPoints2: {7aeb35fc-e221-11df-8f78-0019212b7c3e} - F:\DPFMate.exe
HKU\Mamka\...\Run: [ICQ] - "C:\Program Files\ICQ7.2\ICQ.exe" silent loginmode=4
HKU\Mamka\...\RunOnce: [FlashPlayerUpdate] - C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe -update activex
HKU\Ondra\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [ 2011-11-10] (DT Soft Ltd)
HKU\pc\...\Run: [DIMProbíhá stahování aktualizace...1300677038363] - c:\documents and settings\all users\data aplikací\corel\downloads\540215253_410003\1300677038363\dim_params.xml [ 2011-12-23] ()
HKU\pc\...\Run: [Sony PC Companion] - C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [ 2013-05-29] (Sony)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\hp psc 1000 series.lnk
ShortcutTarget: hp psc 1000 series.lnk -> C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe (Hewlett-Packard Co.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\hpoddt01.exe.lnk
ShortcutTarget: hpoddt01.exe.lnk -> C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe (Hewlett-Packard)
Startup: C:\Documents and Settings\Jakub\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
Startup: C:\Documents and Settings\Petr\Nabídka Start\Programy\Po spuštění\byblkslrqybjejcxnch.lnk
ShortcutTarget: byblkslrqybjejcxnch.lnk -> C:\DOCUME~1\Petr\LOCALS~1\Temp\hcnxcjejbyqrlsklbyb.bfg (No File)
BootExecute: autocheck autochk * C:\PROGRA~1\AVG\AVG2013\avgrsx.exe /sync /restart
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search =
http://search.icq.com/search/results.ph ... &ch_id=osd
HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
URLSearchHook: (No Name) - {95289393-33EA-4F8D-B952-483415B9C955} - No File
URLSearchHook: (No Name) - {D8278076-BC68-4484-9233-6E7F1628B56C} - No File
URLSearchHook: (No Name) - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - No File
SearchScopes: HKCU - DefaultScope {95289393-33EA-4F8D-B952-483415B9C955} URL =
http://search.qip.ru/?query={searchTerms}
SearchScopes: HKCU - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL =
http://www.crawler.com/search/dispatche ... tbid=60040
SearchScopes: HKCU - {20829534-0A1D-48A3-B130-11F4F28822CD} URL =
http://asksearch.ask.com/redirect?clien ... earchTerms}&
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL =
http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKCU - {95289393-33EA-4F8D-B952-483415B9C955} URL =
http://search.qip.ru/?query={searchTerms}
SearchScopes: HKCU - {C04B7D22-5AEC-4561-8F49-27F6269208F6} URL =
http://toolbar.inbox.com/search/dispatc ... 093&lng=cs
BHO: No Name - {11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5} - C:\PROGRA~1\SITERA~1\SiteRank.dll (Crawler, LLC)
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll No File
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\15.5.0.2\AVG Secure Search_toolbar.dll (AVG Secure Search)
BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
BHO: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\15.5.0.2\AVG Secure Search_toolbar.dll (AVG Secure Search)
Toolbar: HKCU -&Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU -&Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\Windows\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU -Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKCU - No Name - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - No File
Toolbar: HKCU - No Name - {4B4D5056-3600-A76A-76A7-7A786E7484D7} - No File
Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA}
http://java.sun.com/products/plugin/aut ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\15.5.0\ViProtocol.dll (AVG Secure Search)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Petr\Data aplikací\Mozilla\Firefox\Profiles\y9f1tj2o.default
FF Homepage: hxxp://
www.search.ask.com/?l=dis&o=APN10749&gc ... 2013-04-23
FF SelectedSearchEngine: Ask Search
FF SearchEngineOrder.1: Ask Search
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\15.5.0\\npsitesafety.dll (AVG Technologies)
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @gamersfirst.com/LiveLauncher - C:\Program Files\GamersFirst\LIVE!\nplivelauncher.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin: @playstation.com/PsndlCheck,version=1.00 - C:\Program Files\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.)
FF Plugin: @SonyCreativeSoftware.com/Media Go,version=1.0 - C:\Program Files\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Documents and Settings\Petr\Data aplikací\Mozilla\Firefox\Profiles\y9f1tj2o.default\searchplugins\ask-search.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\avg-secure-search.xml
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [
jqs@sun.com] - C:\Program Files\Java\jre6\lib\deploy\jqs\ff
FF Extension: Java Quick Starter - C:\Program Files\Java\jre6\lib\deploy\jqs\ff
FF HKLM\...\Firefox\Extensions: [
siteranker@siteranker.com] - C:\Program Files\SiteRanker\firefox\
FF Extension: SiteRanker - C:\Program Files\SiteRanker\firefox\
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF HKLM\...\Firefox\Extensions: [
bkmrksync@nokia.com] - C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\
FF Extension: PC Sync 2 Synchronisation Extension - C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\
Chrome:
=======
CHR HomePage: hxxp://
www.search.ask.com/?l=dis&o=APN10749cr& ... 2013-04-23
CHR RestoreOnStartup: "hxxp://
www.google.com/"
CHR DefaultSearchURL: (Ask Search) -
http://asksearch.ask.com/redirect?clien ... earchTerms}
CHR DefaultSuggestURL: (Ask Search) -
http://ss.websearch.ask.com/query?qsrc= ... earchTerms}
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll No File
CHR Plugin: (AVG Internet Security) - C:\Documents and Settings\Petr\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\plugins/avgnpss.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.260.3) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U26) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files\QuickTime\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files\QuickTime\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
CHR Plugin: (DivX Plus Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Pando Web Plugin) - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Media Go Detector) - C:\Program Files\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
CHR Plugin: (PlayStation(R)Network Downloader Check Plug-in) - C:\Program Files\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.)
CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (YouTube) - C:\DOCUME~1\Petr\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\DOCUME~1\Petr\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Skype Click to Call) - C:\DOCUME~1\Petr\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.11.0.13348_0
CHR Extension: (Chrome In-App Payments service) - C:\DOCUME~1\Petr\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0
CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\DOCUME~1\Petr\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0
CHR Extension: (Gmail) - C:\DOCUME~1\Petr\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx
========================== Services (Whitelisted) =================
S3 Adobe Version Cue CS4; C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated)
R2 avgfws; C:\Program Files\AVG\AVG2013\avgfws.exe [1432080 2013-09-04] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.)
R2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1440080 2013-06-28] (LogMeIn Inc.)
R2 NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [71096 2010-03-04] ()
R2 PanService; C:\Program Files\PANDORA.TV\PanService\PandoraService.exe [625304 2012-09-28] (Pandora.TV)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76888 2012-12-09] ()
R2 QipGuard; C:\Program Files\QipGuard\QipGuard.exe [190336 2011-07-18] (QIP.ru)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
R2 vToolbarUpdater15.5.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe [1643184 2013-08-15] (AVG Secure Search)
R2 JavaQuickStarterService; "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"
S3 WMZuneComm; "c:\Program Files\Zune\WMZuneComm.exe" [x]
S3 ZuneNetworkSvc; "c:\Program Files\Zune\ZuneNss.exe" [x]
S3 ZuneWlanCfgSvc; "c:\Program Files\Zune\ZuneWlanCfgSvc.exe" [x]
==================== Drivers (Whitelisted) ====================
S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R1 AmdPPM; C:\Windows\System32\DRIVERS\AmdPPM.sys [33792 2007-04-16] (Advanced Micro Devices)
R3 Avgfwdx; C:\Windows\System32\DRIVERS\avgfwdx.sys [30944 2012-01-12] (AVG Technologies CZ, s.r.o.)
S3 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwdx.sys [30944 2012-01-12] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [208184 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [60216 2013-07-20] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22328 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [171320 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [96568 2013-07-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [39224 2013-09-05] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [182072 2013-03-21] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [37664 2013-08-15] (AVG Technologies)
R3 ctljystk; C:\Windows\System32\DRIVERS\ctljystk.sys [3712 2001-08-17] (Creative Technology Ltd.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [239168 2012-02-08] (DT Soft Ltd)
R3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2010-02-03] (LogMeIn, Inc.)
S3 HPZid412; C:\Windows\System32\DRIVERS\HPZid412.sys [49920 2005-10-22] (HP)
S3 HPZipr12; C:\Windows\System32\DRIVERS\HPZipr12.sys [16080 2003-03-09] (HP)
S3 HPZius12; C:\Windows\System32\DRIVERS\HPZius12.sys [21456 2003-03-09] (HP)
S3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
R0 nvgts; C:\Windows\System32\DRIVERS\nvgts.sys [165920 2009-08-04] (NVIDIA Corporation)
R2 PfModNT; C:\WINDOWS\system32\PfModNT.sys [6752 1999-12-17] (Creative Technology Ltd.)
S3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [428088 2011-12-04] ()
R3 yukonwxp; C:\Windows\System32\DRIVERS\yk51x86.sys [250496 2006-11-22] (Marvell)
R2 zumbus; C:\Windows\System32\DRIVERS\zumbus.sys [41472 2011-08-05] (Microsoft Corporation)
U3 aphxsn1t; C:\Windows\System32\Drivers\aphxsn1t.sys [0 ] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S1 HWiNFO32; \??\C:\DOCUME~1\pc\LOCALS~1\Temp\HWiNFO32.SYS [x]
S4 IntelIde; No ImagePath
S3 StarOpen; No ImagePath
U3 TlntSvr;
S3 WINFLASH; \??\C:\Documents and Settings\pc\Plocha\BIOS_R01\WinFlash.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-09-12 17:46 - 2013-09-12 07:55 - 00045802 _____ C:\Documents and Settings\Petr\Plocha\logmodification.bat
2013-09-12 17:46 - 2013-09-11 22:34 - 01082587 _____ (Farbar) C:\Documents and Settings\Petr\Plocha\FRST.exe
2013-09-12 17:37 - 2013-09-12 17:37 - 00000000 ____D C:\WINDOWS\LastGood
2013-09-12 00:17 - 2013-09-12 00:17 - 09430408 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2013-09-12 00:02 - 2013-09-12 17:48 - 00530647 _____ C:\WINDOWS\setupapi.log
2013-09-09 22:09 - 2013-09-09 22:09 - 00008598 _____ C:\Documents and Settings\Ondra\Plocha\Addition.rar
2013-09-09 22:09 - 2013-09-09 22:09 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\WinRAR
2013-09-09 22:05 - 2013-09-09 22:05 - 00050650 _____ C:\Documents and Settings\Ondra\Plocha\FRST.txt
2013-09-09 22:04 - 2013-09-09 22:05 - 00037669 _____ C:\Documents and Settings\Ondra\Plocha\Addition.txt
2013-09-09 22:02 - 2013-09-09 22:49 - 00000000 ____D C:\FRST
2013-09-09 22:02 - 2013-09-09 22:02 - 00364544 _____ (forum.viry.cz) C:\Documents and Settings\Ondra\Plocha\FRSTLauncher.exe
2013-09-09 22:02 - 2013-09-09 16:55 - 01082349 _____ (Farbar) C:\Documents and Settings\Ondra\Plocha\FRST.exe
2013-09-09 18:18 - 2013-09-12 17:29 - 00000374 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2013-09-09 01:06 - 2013-09-09 01:06 - 00024689 _____ C:\ComboFix.txt
2013-09-09 00:44 - 2013-09-09 01:07 - 00000000 ____D C:\ComboFix
2013-09-08 23:58 - 2013-09-08 23:58 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.tmp.LOG
2013-09-08 23:58 - 2013-09-08 23:58 - 00000000 ____H C:\WINDOWS\system32\config\system.tmp.LOG
2013-09-08 23:58 - 2013-09-08 23:58 - 00000000 ____H C:\WINDOWS\system32\config\software.tmp.LOG
2013-09-08 23:58 - 2013-09-08 23:58 - 00000000 ____H C:\WINDOWS\system32\config\SAM.tmp.LOG
2013-09-08 23:58 - 2013-09-08 23:58 - 00000000 ____H C:\WINDOWS\system32\config\default.tmp.LOG
2013-09-08 23:21 - 2013-09-08 23:21 - 05124111 ____R (Swearware) C:\Documents and Settings\Ondra\Plocha\ComboFix.exe
2013-09-05 23:50 - 2013-09-05 23:50 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\SiteRanker
2013-09-05 23:50 - 2013-09-05 23:50 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\AppGraffiti
2013-09-05 23:02 - 2013-09-05 23:02 - 00000000 _RSHD C:\cmdcons
2013-09-05 23:02 - 2010-10-01 14:51 - 00000211 _____ C:\Boot.bak
2013-09-05 23:02 - 2004-08-03 23:00 - 00261312 __RSH C:\cmldr
2013-09-05 22:55 - 2011-06-26 08:45 - 00256000 _____ C:\WINDOWS\PEV.exe
2013-09-05 22:55 - 2010-11-07 19:20 - 00208896 _____ C:\WINDOWS\MBR.exe
2013-09-05 22:55 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe
2013-09-05 22:55 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe
2013-09-05 22:55 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe
2013-09-05 22:55 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe
2013-09-05 22:55 - 2000-08-31 02:00 - 00098816 _____ C:\WINDOWS\sed.exe
2013-09-05 22:55 - 2000-08-31 02:00 - 00080412 _____ C:\WINDOWS\grep.exe
2013-09-05 22:55 - 2000-08-31 02:00 - 00068096 _____ C:\WINDOWS\zip.exe
2013-09-05 22:53 - 2013-09-09 01:06 - 00000000 ____D C:\Qoobox
2013-09-05 22:53 - 2013-09-08 23:58 - 00000000 ____D C:\WINDOWS\erdnt
2013-09-05 22:53 - 2013-09-05 22:53 - 00000000 ___RD C:\Documents and Settings\Ondra\Dokumenty\Filmy
2013-09-05 22:24 - 2013-09-05 22:24 - 00000000 ____D C:\rsit
2013-09-05 22:24 - 2013-09-05 22:24 - 00000000 ____D C:\Program Files\trend micro
2013-09-05 18:37 - 2013-09-05 18:37 - 00000000 _____ C:\Documents and Settings\All Users\Data aplikací\fobrlof.dat
2013-09-03 22:34 - 2013-09-04 22:34 - 00000276 _____ C:\WINDOWS\Tasks\AdvancedDriverUpdater_UPDATES.job
2013-09-03 22:34 - 2013-09-03 22:34 - 00000000 ____D C:\Documents and Settings\Petr\Data aplikací\Systweak
2013-09-03 22:31 - 2013-09-03 22:31 - 00000000 ____D C:\Documents and Settings\Petr\Data aplikací\Ashampoo
2013-09-03 22:30 - 2013-09-03 22:30 - 00000970 _____ C:\Documents and Settings\All Users\Plocha\Ashampoo Burning Studio 6 FREE.lnk
2013-09-03 22:30 - 2013-09-03 22:30 - 00000756 _____ C:\Documents and Settings\All Users\Plocha\Advanced Driver Updater.lnk
2013-09-03 22:30 - 2013-09-03 22:30 - 00000249 _____ C:\Documents and Settings\All Users\Plocha\Your Software Deals.url
2013-09-03 22:30 - 2013-09-03 22:30 - 00000000 ____D C:\Program Files\Ashampoo
2013-09-03 22:30 - 2013-09-03 22:30 - 00000000 ____D C:\Program Files\Advanced Driver Updater
2013-09-03 22:30 - 2013-09-03 22:30 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Ashampoo
2013-09-03 22:27 - 2013-09-03 22:27 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Documents and Settings\Petr\Plocha\ashampoo_burning_studio_6_free_6.84_13471.exe
2013-09-03 22:11 - 2013-09-03 22:11 - 00000421 _____ C:\Documents and Settings\Petr\Plocha\registraÄŤni-kod.txt
2013-08-28 21:20 - 2013-08-28 21:20 - 00000000 ____D C:\Program Files\LogMeIn Hamachi
2013-08-28 17:08 - 2013-08-28 17:08 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$
2013-08-26 17:15 - 2013-08-26 17:15 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\AVG2013
2013-08-26 17:15 - 2013-08-26 17:15 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\AVG Secure Search
2013-08-19 18:14 - 2013-08-19 18:26 - 00000000 ____D C:\Documents and Settings\Petr\Dokumenty\2. Fremdsprache
2013-08-15 14:58 - 2013-08-15 14:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$
2013-08-15 14:58 - 2013-08-15 14:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$
2013-08-15 14:58 - 2013-08-15 14:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$
2013-08-15 14:58 - 2013-08-15 14:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$
==================== One Month Modified Files and Folders =======
2013-09-12 17:48 - 2010-10-01 16:50 - 00000254 _____ C:\WINDOWS\wiadebug.log
2013-09-12 17:46 - 2013-09-12 17:46 - 00364544 _____ (forum.viry.cz) C:\Documents and Settings\Petr\Plocha\FRSTLauncher.exe
2013-09-12 17:46 - 2010-10-06 22:12 - 00000000 ___HD C:\Documents and Settings\Petr\Local Settings\Data aplikací
2013-09-12 17:46 - 2010-10-06 22:12 - 00000000 ____D C:\Documents and Settings\Petr\Plocha
2013-09-12 17:44 - 2011-11-03 17:54 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\MFAData
2013-09-12 17:37 - 2013-09-12 17:37 - 00000000 ____D C:\WINDOWS\LastGood
2013-09-12 17:37 - 2013-07-25 23:30 - 00000714 _____ C:\Documents and Settings\All Users\Plocha\AVG 2013.lnk
2013-09-12 17:37 - 2010-10-01 16:48 - 00000000 ___RD C:\Documents and Settings\All Users\Nabídka Start\Programy
2013-09-12 17:37 - 2010-10-01 16:48 - 00000000 ____D C:\Documents and Settings\All Users\Plocha
2013-09-12 17:34 - 2010-10-01 14:55 - 01069996 _____ C:\WINDOWS\WindowsUpdate.log
2013-09-12 17:29 - 2013-09-09 18:18 - 00000374 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2013-09-12 17:29 - 2010-10-01 16:50 - 00000049 _____ C:\WINDOWS\wiaservc.log
2013-09-12 17:28 - 2011-11-03 18:17 - 00000424 _____ C:\WINDOWS\Tasks\AVG PC Tuneup 2011 Integrator Start On Petr Logon.job
2013-09-12 17:28 - 2010-10-01 15:05 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-09-12 08:48 - 2010-10-06 22:12 - 00000178 ___SH C:\Documents and Settings\Petr\ntuser.ini
2013-09-12 08:48 - 2010-10-05 11:41 - 00524288 _____ C:\WINDOWS\system32\config\ACEEvent.evt
2013-09-12 08:48 - 2010-10-01 15:05 - 00032592 _____ C:\WINDOWS\SchedLgU.Txt
2013-09-12 07:55 - 2013-09-12 17:46 - 00045802 _____ C:\Documents and Settings\Petr\Plocha\logmodification.bat
2013-09-12 01:17 - 2012-04-28 16:19 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-09-12 01:17 - 2010-11-14 18:38 - 00000178 ___SH C:\Documents and Settings\Ondra\ntuser.ini
2013-09-12 00:17 - 2013-09-12 00:17 - 09430408 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2013-09-12 00:17 - 2012-04-28 16:19 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-09-12 00:17 - 2011-05-14 16:33 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-09-12 00:02 - 2010-10-06 22:12 - 00000000 ____D C:\Documents and Settings\Petr
2013-09-11 23:37 - 2010-10-06 22:12 - 00000000 ___RD C:\Documents and Settings\Petr\Dokumenty
2013-09-11 22:34 - 2013-09-12 17:46 - 01082587 _____ (Farbar) C:\Documents and Settings\Petr\Plocha\FRST.exe
2013-09-10 01:34 - 2011-12-23 13:32 - 00022328 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsshimx.sys
2013-09-09 23:55 - 2011-02-11 03:17 - 00000000 ____D C:\Documents and Settings\Petr\Data aplikací\Skype
2013-09-09 22:49 - 2013-09-09 22:02 - 00000000 ____D C:\FRST
2013-09-09 22:49 - 2010-11-14 18:38 - 00000000 ____D C:\Documents and Settings\Ondra\Plocha
2013-09-09 22:31 - 2010-11-14 18:38 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\Adobe
2013-09-09 22:09 - 2013-09-09 22:09 - 00008598 _____ C:\Documents and Settings\Ondra\Plocha\Addition.rar
2013-09-09 22:09 - 2013-09-09 22:09 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\WinRAR
2013-09-09 22:09 - 2010-11-14 18:38 - 00000000 __RHD C:\Documents and Settings\Ondra\Data aplikací
2013-09-09 22:09 - 2010-11-14 18:38 - 00000000 ___HD C:\Documents and Settings\Ondra\Local Settings\Data aplikací
2013-09-09 22:05 - 2013-09-09 22:05 - 00050650 _____ C:\Documents and Settings\Ondra\Plocha\FRST.txt
2013-09-09 22:05 - 2013-09-09 22:04 - 00037669 _____ C:\Documents and Settings\Ondra\Plocha\Addition.txt
2013-09-09 22:02 - 2013-09-09 22:02 - 00364544 _____ (forum.viry.cz) C:\Documents and Settings\Ondra\Plocha\FRSTLauncher.exe
2013-09-09 21:12 - 2011-10-31 23:00 - 00000284 _____ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2013-09-09 21:11 - 2010-11-14 18:38 - 00000000 ____D C:\Documents and Settings\Ondra
2013-09-09 16:55 - 2013-09-09 22:02 - 01082349 _____ (Farbar) C:\Documents and Settings\Ondra\Plocha\FRST.exe
2013-09-09 01:07 - 2013-09-09 00:44 - 00000000 ____D C:\ComboFix
2013-09-09 01:06 - 2013-09-09 01:06 - 00024689 _____ C:\ComboFix.txt
2013-09-09 01:06 - 2013-09-05 22:53 - 00000000 ____D C:\Qoobox
2013-09-09 01:00 - 2008-04-14 14:00 - 00000227 _____ C:\WINDOWS\system.ini
2013-09-09 00:45 - 2010-10-06 22:12 - 00000000 __RHD C:\Documents and Settings\Petr\Data aplikací
2013-09-08 23:59 - 2010-10-01 16:41 - 00262144 _____ C:\WINDOWS\system32\config\SECURITY.bak
2013-09-08 23:59 - 2010-10-01 16:41 - 00024576 _____ C:\WINDOWS\system32\config\SAM.bak
2013-09-08 23:59 - 2010-10-01 16:40 - 52428800 _____ C:\WINDOWS\system32\config\software.bak
2013-09-08 23:59 - 2010-10-01 16:40 - 12058624 _____ C:\WINDOWS\system32\config\system.bak
2013-09-08 23:59 - 2010-10-01 16:40 - 00524288 _____ C:\WINDOWS\system32\config\default.bak
2013-09-08 23:58 - 2013-09-08 23:58 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.tmp.LOG
2013-09-08 23:58 - 2013-09-08 23:58 - 00000000 ____H C:\WINDOWS\system32\config\system.tmp.LOG
2013-09-08 23:58 - 2013-09-08 23:58 - 00000000 ____H C:\WINDOWS\system32\config\software.tmp.LOG
2013-09-08 23:58 - 2013-09-08 23:58 - 00000000 ____H C:\WINDOWS\system32\config\SAM.tmp.LOG
2013-09-08 23:58 - 2013-09-08 23:58 - 00000000 ____H C:\WINDOWS\system32\config\default.tmp.LOG
2013-09-08 23:58 - 2013-09-05 22:53 - 00000000 ____D C:\WINDOWS\erdnt
2013-09-08 23:21 - 2013-09-08 23:21 - 05124111 ____R (Swearware) C:\Documents and Settings\Ondra\Plocha\ComboFix.exe
2013-09-08 23:07 - 2010-10-01 16:47 - 00000000 __RHD C:\Documents and Settings\All Users\Data aplikací
2013-09-08 23:02 - 2010-10-01 14:58 - 00000000 __SHD C:\Documents and Settings\NetworkService
2013-09-08 22:46 - 2011-06-16 01:48 - 00000664 _____ C:\WINDOWS\system32\d3d9caps.dat
2013-09-08 22:44 - 2008-04-14 14:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl
2013-09-06 00:30 - 2010-11-14 18:38 - 00000000 ___RD C:\Documents and Settings\Ondra\Oblíbené položky
2013-09-05 23:50 - 2013-09-05 23:50 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\SiteRanker
2013-09-05 23:50 - 2013-09-05 23:50 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\AppGraffiti
2013-09-05 23:02 - 2013-09-05 23:02 - 00000000 _RSHD C:\cmdcons
2013-09-05 23:02 - 2010-10-01 16:40 - 00000327 __RSH C:\boot.ini
2013-09-05 22:53 - 2013-09-05 22:53 - 00000000 ___RD C:\Documents and Settings\Ondra\Dokumenty\Filmy
2013-09-05 22:53 - 2010-11-14 18:38 - 00000000 ___RD C:\Documents and Settings\Ondra\Nabídka Start\Programy
2013-09-05 22:53 - 2010-11-14 18:38 - 00000000 ___RD C:\Documents and Settings\Ondra\Dokumenty
2013-09-05 22:24 - 2013-09-05 22:24 - 00000000 ____D C:\rsit
2013-09-05 22:24 - 2013-09-05 22:24 - 00000000 ____D C:\Program Files\trend micro
2013-09-05 18:47 - 2012-08-22 13:16 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\DAEMON Tools Lite
2013-09-05 18:47 - 2012-04-02 17:56 - 00000000 ____D C:\WINDOWS\Minidump
2013-09-05 18:37 - 2013-09-05 18:37 - 00000000 _____ C:\Documents and Settings\All Users\Data aplikací\fobrlof.dat
2013-09-05 18:33 - 2010-10-06 22:12 - 00000000 ___RD C:\Documents and Settings\Petr\Nabídka Start\Programy\Po spuštění
2013-09-05 01:43 - 2011-09-13 07:30 - 00039224 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgrkx86.sys
2013-09-04 22:34 - 2013-09-03 22:34 - 00000276 _____ C:\WINDOWS\Tasks\AdvancedDriverUpdater_UPDATES.job
2013-09-03 22:34 - 2013-09-03 22:34 - 00000000 ____D C:\Documents and Settings\Petr\Data aplikací\Systweak
2013-09-03 22:31 - 2013-09-03 22:31 - 00000000 ____D C:\Documents and Settings\Petr\Data aplikací\Ashampoo
2013-09-03 22:30 - 2013-09-03 22:30 - 00000970 _____ C:\Documents and Settings\All Users\Plocha\Ashampoo Burning Studio 6 FREE.lnk
2013-09-03 22:30 - 2013-09-03 22:30 - 00000756 _____ C:\Documents and Settings\All Users\Plocha\Advanced Driver Updater.lnk
2013-09-03 22:30 - 2013-09-03 22:30 - 00000249 _____ C:\Documents and Settings\All Users\Plocha\Your Software Deals.url
2013-09-03 22:30 - 2013-09-03 22:30 - 00000000 ____D C:\Program Files\Ashampoo
2013-09-03 22:30 - 2013-09-03 22:30 - 00000000 ____D C:\Program Files\Advanced Driver Updater
2013-09-03 22:30 - 2013-09-03 22:30 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Ashampoo
2013-09-03 22:27 - 2013-09-03 22:27 - 12891208 _____ (Ashampoo GmbH & Co. KG ) C:\Documents and Settings\Petr\Plocha\ashampoo_burning_studio_6_free_6.84_13471.exe
2013-09-03 22:11 - 2013-09-03 22:11 - 00000421 _____ C:\Documents and Settings\Petr\Plocha\registraÄŤni-kod.txt
2013-09-03 15:20 - 2010-10-06 22:12 - 00000000 ___RD C:\Documents and Settings\Petr\Oblíbené položky
2013-09-03 14:46 - 2010-10-06 21:35 - 00000000 ___RD C:\Program Files\Skype
2013-09-03 14:46 - 2010-10-06 21:35 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Skype
2013-09-01 23:42 - 2013-02-07 22:25 - 00000000 ____D C:\Documents and Settings\Petr\Dokumenty\CardRecovery
2013-09-01 22:27 - 2010-10-06 22:12 - 00000000 ___RD C:\Documents and Settings\Petr\Dokumenty\Obrázky
2013-08-28 21:20 - 2013-08-28 21:20 - 00000000 ____D C:\Program Files\LogMeIn Hamachi
2013-08-28 17:08 - 2013-08-28 17:08 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$
2013-08-27 17:03 - 2010-10-06 22:12 - 00000000 ___RD C:\Documents and Settings\Petr\Dokumenty\Hudba
2013-08-26 18:46 - 2013-05-13 22:35 - 00000000 ____D C:\Documents and Settings\Petr\Dokumenty\Fotografování
2013-08-26 17:15 - 2013-08-26 17:15 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\AVG2013
2013-08-26 17:15 - 2013-08-26 17:15 - 00000000 ____D C:\Documents and Settings\Ondra\Data aplikací\AVG Secure Search
2013-08-22 13:30 - 2010-10-01 15:05 - 00000178 ___SH C:\Documents and Settings\pc\ntuser.ini
2013-08-19 18:26 - 2013-08-19 18:14 - 00000000 ____D C:\Documents and Settings\Petr\Dokumenty\2. Fremdsprache
2013-08-18 20:30 - 2013-02-24 01:43 - 00000000 ____D C:\Documents and Settings\Petr\Dokumenty\Tvorba
2013-08-15 15:05 - 2013-08-12 01:01 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-08-15 15:05 - 2010-10-18 18:36 - 00000000 ____D C:\WINDOWS\ie8updates
2013-08-15 15:01 - 2010-10-05 09:35 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2013-08-15 15:00 - 2010-10-18 18:31 - 75778376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-08-15 15:00 - 2010-10-07 09:51 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2013-08-15 14:58 - 2013-08-15 14:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$
2013-08-15 14:58 - 2013-08-15 14:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$
2013-08-15 14:58 - 2013-08-15 14:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$
2013-08-15 14:58 - 2013-08-15 14:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$
2013-08-15 14:57 - 2010-10-01 16:42 - 01026360 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-08-15 14:21 - 2013-07-25 23:30 - 00037664 _____ (AVG Technologies) C:\WINDOWS\system32\Drivers\avgtpx86.sys
2013-08-15 14:21 - 2013-07-25 23:30 - 00000000 ____D C:\Program Files\AVG Secure Search
Files to move or delete:
====================
C:\Documents and Settings\Default User\hpothb07.dat
C:\Documents and Settings\Mamka\Local Settings\Temp\swt-win32-3349.dll
C:\Documents and Settings\pc\Local Settings\Temp\AutoRun.exe
C:\Documents and Settings\pc\Local Settings\Temp\AutoRunGUI.dll
C:\Documents and Settings\pc\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\pc\Local Settings\Temp\swt-win32-3349.dll
C:\DOCUME~1\Petr\LOCALS~1\Temp\catchme.dll
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\Windows\System32\winlogon.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\Windows\System32\svchost.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\Windows\System32\services.exe
[2008-04-14 14:00] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\Windows\System32\User32.dll
[2008-04-14 14:00] - [2008-04-14 14:00] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\Windows\System32\userinit.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\Windows\System32\Drivers\volsnap.sys
[2008-04-14 14:00] - [2008-04-14 14:00] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
==================== End Of Log ============================