Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

pomalý notebook

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
ver3
Návštěvník
Návštěvník
Příspěvky: 79
Registrován: 30 bře 2013 01:20

Re: pomalý notebook

#16 Příspěvek od ver3 »

OTL logfile created on: 23.7.2014 21:28:43 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Verča\Dokumenty\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1015,17 Mb Total Physical Memory | 240,35 Mb Available Physical Memory | 23,68% Memory free
2,38 Gb Paging File | 1,41 Gb Available in Paging File | 59,14% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 72,06 Gb Total Space | 2,70 Gb Free Space | 3,75% Space Free | Partition Type: NTFS
Drive D: | 72,05 Gb Total Space | 5,02 Gb Free Space | 6,96% Space Free | Partition Type: NTFS

Computer Name: N-J4XZQQOODOZG5 | User Name: Verča | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014.07.23 21:27:44 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Verča\Dokumenty\Downloads\OTL.exe
PRC - [2014.07.17 23:49:28 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2014.07.17 23:49:05 | 001,028,688 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe
PRC - [2014.07.17 23:49:04 | 000,426,064 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2014.07.17 23:48:58 | 000,750,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2014.07.17 23:48:58 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2014.06.18 14:09:31 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2014.03.24 11:32:54 | 000,821,600 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
PRC - [2013.11.18 14:36:38 | 000,087,368 | ---- | M] (Nero AG) -- C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
PRC - [2013.10.17 15:27:02 | 000,166,912 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
PRC - [2013.06.25 21:48:08 | 000,228,552 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE
PRC - [2012.06.15 14:08:32 | 001,149,912 | ---- | M] (Crystal Dew World) -- C:\Documents and Settings\Verča\Dokumenty\Downloads\CrystalDiskInfo5_0_0\DiskInfo.exe
PRC - [2011.10.13 17:21:52 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE
PRC - [2009.07.27 16:58:38 | 000,397,312 | ---- | M] () -- C:\Program Files\ASUS\Eee Docking\Eee Docking.exe
PRC - [2009.04.16 19:46:30 | 000,630,784 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe
PRC - [2009.04.16 18:58:54 | 000,118,784 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsTray.exe
PRC - [2009.03.25 10:43:40 | 000,376,832 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\EeePC\Super Hybrid Engine\SuperHybridEngine.exe
PRC - [2009.03.13 16:15:02 | 000,098,304 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsEPCMon.exe
PRC - [2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2014.07.18 00:12:52 | 017,029,808 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll
MOD - [2014.06.18 14:09:29 | 003,852,912 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2014.03.24 11:36:14 | 000,223,592 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\DevConnMon.dll
MOD - [2014.03.24 11:34:16 | 000,129,376 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\zlib1.dll
MOD - [2014.03.24 11:32:54 | 000,821,600 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
MOD - [2014.03.24 11:32:42 | 000,080,248 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\NInstallerHelper.dll
MOD - [2014.03.24 11:32:18 | 000,059,752 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\NAdvLog.dll
MOD - [2014.03.24 11:32:16 | 000,036,216 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\NFileCacheDBAccess.dll
MOD - [2014.03.24 11:32:12 | 000,607,376 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\sqlite3.dll
MOD - [2014.03.24 11:31:36 | 000,031,080 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\DbAccess.dll
MOD - [2013.10.24 19:40:32 | 007,532,032 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\avcodec-ics-55.dll
MOD - [2013.10.24 19:40:32 | 000,842,752 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\avformat-ics-55.dll
MOD - [2013.10.24 19:40:32 | 000,384,512 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\swscale-ics-2.dll
MOD - [2013.10.24 19:40:32 | 000,292,352 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\avutil-ics-52.dll
MOD - [2013.10.17 15:27:02 | 000,166,912 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
MOD - [2013.09.05 00:14:10 | 004,300,456 | ---- | M] () -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2009.07.27 16:58:38 | 000,397,312 | ---- | M] () -- C:\Program Files\ASUS\Eee Docking\Eee Docking.exe


========== Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2014.07.18 00:12:56 | 000,262,320 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014.07.17 23:49:28 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2014.07.17 23:49:05 | 001,028,688 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2014.07.17 23:48:58 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2014.06.18 14:09:29 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.12.19 00:41:02 | 030,814,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service)
SRV - [2013.12.18 22:05:43 | 000,182,696 | ---- | M] (Oracle Corporation) [Disabled | Stopped] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2013.11.18 14:36:38 | 000,087,368 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe -- (HTCMonitorService)
SRV - [2013.10.23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.10.17 15:27:02 | 000,166,912 | ---- | M] () [Auto | Running] -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service)
SRV - [2011.10.21 15:23:42 | 000,196,176 | ---- | M] (Microsoft Corporation.) [Auto | Stopped] -- C:\Program Files\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011.10.13 17:21:52 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE -- (BBUpdate)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\cnnctfy2.sys -- (cnnctfy2MP)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\btwusb.sys -- (BTWUSB)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btwdndis.sys -- (BTWDNDIS)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btport.sys -- (BTDriver)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\drivers\btaudio.sys -- (btaudio)
DRV - [2014.07.17 23:48:58 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2014.06.16 01:18:51 | 000,136,216 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2013.12.01 17:42:43 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2013.03.31 20:23:23 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2011.05.25 01:40:10 | 000,032,768 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\taphss.sys -- (taphss)
DRV - [2010.09.10 18:05:43 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)
DRV - [2010.06.22 18:01:50 | 000,021,248 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\htcnprot.sys -- (htcnprot)
DRV - [2010.05.01 19:11:16 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2009.07.10 21:33:36 | 001,015,424 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rt2860.sys -- (RT80x86)
DRV - [2009.06.10 15:49:32 | 000,024,576 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ANDROIDUSB.sys -- (HTCAND32)
DRV - [2009.04.27 13:26:44 | 005,074,944 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2009.03.13 16:32:18 | 001,759,616 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snp2uvc.sys -- (SNP2UVC)
DRV - [2009.03.02 07:03:47 | 000,038,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c)
DRV - [2009.02.06 18:08:42 | 000,055,152 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr)
DRV - [2009.01.24 16:36:22 | 000,103,424 | R--- | M] (QUALCOMM Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\qcserxp.sys -- (qcserxp)
DRV - [2008.11.19 03:21:28 | 000,039,040 | ---- | M] (GenesysLogic Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\uvclf.sys -- (uvclf)
DRV - [2008.08.05 14:10:12 | 001,684,736 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2008.04.08 15:59:28 | 000,010,752 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASUSACPI.SYS -- (AsusACPI)
DRV - [2006.01.04 09:41:48 | 001,389,056 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledAddons: %7B82BC70E0-FE85-11DA-A899-3A655C103D30%7D:1.0.3.9
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:30.0
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8064.0206: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 30.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2014.06.18 14:09:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 30.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2014.06.18 14:09:10 | 000,000,000 | ---D | M]

[2010.01.10 21:26:58 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Extensions
[2014.07.18 00:04:56 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions
[2010.10.28 20:39:33 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.12.08 16:35:45 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2012.08.25 23:41:34 | 000,086,309 | ---- | M] () (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{82BC70E0-FE85-11DA-A899-3A655C103D30}.xpi
[2010.01.10 21:54:34 | 000,002,061 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml
[2014.06.18 14:09:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2014.06.18 14:09:32 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\VERÄŤA\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\JAGRP2Z2.DEFAULT\EXTENSIONS\{82BC70E0-FE85-11DA-A899-3A655C103D30}.XPI

========== Chrome ==========

CHR - homepage: http://www.google.com/

O1 HOSTS File: ([2008.04.14 14:00:00 | 000,000,737 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O4 - HKLM..\Run: [AsusACPIServer] C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusEPCMonitor] C:\Program Files\EeePC\ACPI\AsEPCMon.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusTray] C:\Program Files\EeePC\ACPI\AsTray.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [SynAsusAcpi] C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe (Synaptics Incorporated)
O4 - HKU\S-1-5-21-3283330612-449700776-2936646239-1005..\Run: [Eee Docking] C:\Program Files\ASUS\Eee Docking\Eee Docking.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\ SuperHybridEngine.lnk = C:\Program Files\ASUS\EeePC\Super Hybrid Engine\SuperHybridEngine.exe (ASUSTeK Computer Inc.)
O4 - Startup: C:\Documents and Settings\Verča\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Od&eslat do aplikace OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm File not found
O8 - Extra context menu item: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm File not found
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([*] https in Trusted sites)
O15 - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..Trusted Domains: mojebanka.cz ([*] https in Trusted sites)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.51.2)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.51.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.36 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BE87E689-037A-4EE1-B2B4-493E459E5B94}: DhcpNameServer = 213.46.172.36 213.46.172.37
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Desktop Background.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Desktop Background.bmp
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.09.25 21:44:44 | 003,352,087 | ---- | M] () - C:\autopodder_log.txt -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.ac3acm - C:\WINDOWS\System32\ac3acm.acm (fccHandler)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\WINDOWS\System32\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.LAGS - C:\WINDOWS\System32\lagarith.dll ( )
Drivers32: VIDC.X264 - C:\WINDOWS\System32\x264vfw.dll (x264vfw project)
Drivers32: VIDC.XVID - C:\WINDOWS\System32\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2014.07.21 19:51:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Google+ Auto Backup
[2014.07.21 19:40:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Plocha\albíčko fejsbk
[2014.07.21 18:43:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Plocha\fototo
[2014.07.18 22:21:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Data aplikací\Malwarebytes
[2014.07.18 22:21:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2014.07.18 22:21:21 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2014.06.24 20:33:52 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\WINDOWS\System32\sqlite3.dll
[2014.06.24 20:31:43 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2010.05.16 13:21:21 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Verča\Data aplikací\pcouffin.sys

========== Files - Modified Within 30 Days ==========

[2014.07.23 22:12:01 | 000,000,914 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2014.07.23 22:04:00 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.07.23 21:37:00 | 000,000,940 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2014.07.23 19:00:07 | 000,000,936 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2014.07.23 19:00:06 | 000,000,222 | ---- | M] () -- C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.07.23 19:00:03 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014.07.23 18:28:39 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014.07.18 00:12:54 | 000,699,056 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2014.07.18 00:12:54 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2014.07.17 23:48:58 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2014.06.24 20:28:09 | 001,342,659 | ---- | M] () -- C:\Documents and Settings\Verča\Plocha\adwcleaner_3.213.exe

========== Files Created - No Company Name ==========

[2014.07.23 22:04:00 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014.06.24 20:27:58 | 001,342,659 | ---- | C] () -- C:\Documents and Settings\Verča\Plocha\adwcleaner_3.213.exe
[2014.02.23 11:49:47 | 000,000,918 | ---- | C] () -- C:\WINDOWS\hpomdl40.dat.temp
[2013.11.17 02:19:54 | 000,216,064 | ---- | C] ( ) -- C:\WINDOWS\System32\lagarith.dll
[2013.11.17 02:19:53 | 000,650,752 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2013.11.17 02:19:53 | 000,243,200 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2013.11.17 02:19:43 | 000,112,640 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2012.08.13 12:04:14 | 000,013,064 | ---- | C] () -- C:\Program Files\readme.html
[2012.05.08 15:15:36 | 000,000,005 | ---- | C] () -- C:\Program Files\basis-link
[2010.05.16 13:21:21 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\inst.exe
[2010.05.16 13:21:21 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\pcouffin.cat
[2010.05.16 13:21:21 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\pcouffin.inf
[2010.01.24 17:11:44 | 000,000,268 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\wklnhst.dat
[2010.01.11 17:53:35 | 000,218,112 | ---- | C] () -- C:\Documents and Settings\Verča\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

========== ZeroAccess Check ==========

[2009.09.01 23:33:53 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2009.03.03 01:11:23 | 001,499,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009.02.09 12:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 14:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2014.03.11 23:25:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\APN
[2011.11.10 00:02:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\avg9
[2013.05.01 18:38:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\CheckPoint
[2011.03.14 20:46:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2014.03.11 23:13:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Connectify
[2010.05.01 19:10:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2014.04.29 22:16:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\HTC
[2010.01.24 18:26:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Last.fm
[2013.03.09 11:59:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2010.09.25 21:44:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Podcast Ready WinPodder
[2009.09.01 23:02:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ralink Driver
[2013.03.09 12:01:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Temp
[2013.10.12 01:11:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP
[2014.05.29 14:26:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP3
[2010.05.20 13:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AnvSoft
[2012.04.04 22:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AVG
[2013.11.17 01:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer
[2012.01.30 00:12:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer Pro
[2014.03.06 23:14:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\CallingID
[2010.05.01 19:10:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\DAEMON Tools Lite
[2010.03.29 22:31:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\GHISLER
[2014.04.29 22:21:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC
[2010.09.23 17:35:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
[2010.09.15 14:28:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\iPodder
[2011.09.23 16:33:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\KYL
[2011.10.11 19:32:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MicroST
[2013.11.17 02:25:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MPC-HC
[2010.10.08 18:04:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OfficeRecovery
[2011.11.29 20:00:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\olt1
[2010.01.30 22:09:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OpenOffice.org
[2012.08.27 21:43:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Oracle
[2012.09.28 11:42:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Softplicity
[2010.01.24 17:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Template
[2010.05.28 23:45:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2010.05.19 18:38:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Vso
[2011.06.03 13:35:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\zenses

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009.09.01 22:42:45 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT
[2009.09.02 00:26:51 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2014.03.07 23:52:22 | 000,000,216 | ---- | C] () -- C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.03.07 23:52:22 | 000,000,222 | ---- | C] () -- C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.03.25 20:22:11 | 000,000,914 | ---- | C] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2014.03.31 22:20:24 | 000,000,936 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2014.03.31 22:20:24 | 000,000,940 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job

< >

< MD5 for: AGP440.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:AGP440.sys

< MD5 for: ATAPI.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:atapi.sys
[2008.04.14 14:00:00 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\I386\AUTOCHK.EXE
[2008.04.14 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2008.04.14 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\dllcache\autochk.exe

< MD5 for: CDROM.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:cdrom.sys
[2008.04.14 14:00:00 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2011.05.10 00:48:16 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\system32\dllcache\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2008.04.14 14:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll
[2008.04.14 14:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\dllcache\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 14:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\dllcache\eventlog.dll
[2008.04.14 14:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\system32\dllcache\explorer.exe

< MD5 for: HAL.DLL >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:hal.dll
[2008.04.14 14:00:00 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\hal.dll

< MD5 for: CHANGER.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:Changer.sys

< MD5 for: IASTOR.SYS >
[2008.09.12 07:32:56 | 000,327,192 | ---- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 -- C:\WINDOWS\I386\$OEM$\TEXTMODE\IASTOR.SYS
[2008.09.12 07:32:56 | 000,327,192 | ---- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 -- C:\WINDOWS\OemDir\iaStor.sys
[2008.09.12 07:32:56 | 000,327,192 | ---- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 -- C:\WINDOWS\system32\drivers\iaStor.sys

< MD5 for: ISAPNP.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\dllcache\isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys
[2008.04.14 14:00:00 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\isapnp.sys

< MD5 for: LSASS.EXE >
[2008.04.14 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\dllcache\lsass.exe
[2008.04.14 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.14 14:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\dllcache\ndis.sys
[2008.04.14 14:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys

< MD5 for: NETLOGON.DLL >
[2008.04.14 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\dllcache\netlogon.dll
[2008.04.14 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll

< MD5 for: SCECLI.DLL >
[2008.04.14 14:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\dllcache\scecli.dll
[2008.04.14 14:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2008.04.14 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\dllcache\smss.exe
[2008.04.14 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe
[2008.04.14 14:00:00 | 000,481,792 | ---- | M] (Microsoft Corporation) MD5=F209B5C79A87A9521DC0BD88B039EEE3 -- C:\WINDOWS\I386\SYSTEM32\SMSS.EXE

< MD5 for: SVCHOST.EXE >
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\dllcache\svchost.exe
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 14:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\dllcache\userinit.exe
[2008.04.14 14:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe

< MD5 for: WINLOGON.EXE >
[2008.04.14 14:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\dllcache\winlogon.exe
[2008.04.14 14:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2008.04.14 14:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\dllcache\ws2_32.dll
[2008.04.14 14:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[34 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[42 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\twain_32\*.tmp files -> C:\WINDOWS\twain_32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2013.01.03 21:24:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Adobe
[2013.10.12 01:11:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP
[2014.05.29 14:26:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP3
[2010.05.20 13:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AnvSoft
[2014.04.29 22:19:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Apple Computer
[2012.04.04 22:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AVG
[2013.03.31 20:35:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Avira
[2013.11.17 01:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer
[2012.01.30 00:12:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer Pro
[2014.03.06 23:14:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\CallingID
[2010.05.01 19:10:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\DAEMON Tools Lite
[2010.03.29 22:31:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\GHISLER
[2011.01.21 16:54:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Google
[2014.04.29 22:21:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC
[2010.09.23 17:35:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
[2009.09.01 22:43:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Identities
[2009.09.01 23:02:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\InstallShield
[2010.09.15 14:28:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\iPodder
[2011.09.23 16:33:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\KYL
[2010.01.10 20:21:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Macromedia
[2014.07.18 22:21:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Malwarebytes
[2013.06.07 00:03:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Media Player Classic
[2014.05.29 18:27:28 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Verča\Data aplikací\Microsoft
[2011.10.11 19:32:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MicroST
[2010.01.10 21:26:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Mozilla
[2013.11.17 02:25:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MPC-HC
[2010.10.08 18:04:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OfficeRecovery
[2011.11.29 20:00:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\olt1
[2010.01.30 22:09:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OpenOffice.org
[2012.08.27 21:43:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Oracle
[2014.06.30 00:15:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Skype
[2011.08.05 20:47:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\skypePM
[2012.09.28 11:42:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Softplicity
[2010.01.14 17:36:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Sun
[2010.01.24 17:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Template
[2010.05.28 23:45:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2010.05.19 18:38:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Vso
[2010.01.24 22:52:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\WinRAR
[2011.06.03 13:35:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\zenses

< %APPDATA%\*.exe /s >
[2010.05.19 18:38:25 | 000,087,608 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\inst.exe
[2013.11.05 18:14:29 | 007,615,904 | ---- | M] (AIMP DevTeam) -- C:\Documents and Settings\Verča\Data aplikací\AIMP3\UpdateInstaller.exe
[2009.08.11 22:21:26 | 000,087,552 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 22:21:30 | 000,090,112 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 15:52:04 | 000,697,690 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\AC3 Filter\unins000.exe
[2012.10.11 10:01:20 | 001,175,371 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\FFDShow\unins000.exe
[2010.08.14 11:42:54 | 000,113,152 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 11:45:10 | 000,358,400 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 11:42:06 | 000,137,728 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 16:30:22 | 000,042,305 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\uninstall.exe
[2014.02.26 14:20:30 | 000,145,408 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\Sun\Java\jre1.7.0_51\lzma.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2010.05.01 19:11:16 | 000,691,696 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\sptd.sys

< %systemroot%\System32\config\*.sav >
[2009.09.02 00:32:47 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2009.09.02 00:32:47 | 001,069,056 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2009.09.02 00:32:47 | 000,479,232 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2014.07.23 18:28:39 | 000,001,158 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 14:00:00 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Eee Docking" = C:\Program Files\ASUS\Eee Docking\Eee Docking.exe -- [2009.07.27 16:58:38 | 000,397,312 | ---- | M] ()
"MSMSGS" = "C:\Program Files\Messenger\msmsgs.exe" /background -- [2008.04.14 08:52:38 | 001,695,232 | ---- | M] (Microsoft Corporation)
"swg" = C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe -- [2014.05.13 23:19:34 | 000,039,408 | ---- | M] (Google Inc.)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
No captured output from command...

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
No captured output from command...

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
No captured output from command...

< >

< type c:\boot.ini >> test.txt /c >
No captured output from command...

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2014.07.23 22:04:00 | 000,000,512 | ---- | M] () MD5=9EE5CD48F8A9122385325CCC5A3706FE -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2012.10.18 12:22:05 | 006,068,528 | ---- | M] () -- \Documents and Settings\Verča\Plocha\la música\Fidlar\Fidlar - Shit We Recorded In Our Bedroom (2012)\04 - Crackhead Ted.mp3

< *keygen* /s >

< *AntiWPA* /s >

< *loader* /s >
[2013.11.11 14:39:40 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.gif
[2013.11.11 14:39:40 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.png
[2013.11.11 14:39:40 | 000,006,012 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\normal\loader_15fps.gif
[2013.11.11 14:39:40 | 000,021,956 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\normal\loader_30fps.gif
[2013.11.11 14:39:40 | 000,009,772 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\retina\loader@2x.png
[2014.06.29 22:18:01 | 000,001,980 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Temporary Internet Files\Content.IE5\8FIB0FH5\AdLoader[1].htm
[2014.06.26 19:44:48 | 000,001,980 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Temporary Internet Files\Content.IE5\9UNGF12N\AdLoader[1].htm
[2014.06.26 19:44:48 | 000,017,912 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Temporary Internet Files\Content.IE5\EM2DTCA3\AdLoader-3b8e790904fffcf74f96367cd382e261.min[1].js
[2007.03.27 14:08:53 | 000,000,408 | ---- | M] () -- \Documents and Settings\Verča\Plocha\la música\Peter Doherty\Acoustic Sessions\Uploader.txt
[2014.07.17 23:49:05 | 000,044,112 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.dll
[2014.07.17 23:49:05 | 000,494,672 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.exe
[2014.07.17 23:49:05 | 000,195,152 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloadergui.dll
[2012.08.13 11:52:58 | 000,006,081 | ---- | M] () -- \Program Files\Basis\program\pythonloader.py
[2013.11.12 20:57:17 | 000,005,233 | ---- | M] () -- \Program Files\Basis\program\pythonloader.pyc
[2013.11.12 20:50:18 | 000,020,992 | ---- | M] () -- \Program Files\Basis\program\pythonloader.uno.dll
[2012.08.13 12:04:18 | 000,000,171 | ---- | M] () -- \Program Files\Basis\program\pythonloader.uno.ini
[2013.03.09 08:17:04 | 000,268,440 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2013.03.09 08:17:04 | 000,019,080 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2014.01.06 10:52:30 | 003,244,032 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\gpuploader_i18n.dll
[2014.01.06 10:47:04 | 000,000,702 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_advoptions.fen
[2014.01.06 10:47:04 | 000,000,790 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_debug.fen
[2014.01.06 10:47:04 | 000,000,723 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_download.fen
[2014.01.06 10:47:04 | 000,000,694 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_file_errors.fen
[2014.01.06 10:47:06 | 000,171,541 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_icons.psd
[2014.01.06 10:47:06 | 000,000,634 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_manage_devices.fen
[2014.01.06 10:47:06 | 000,002,283 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_onboard.fen
[2014.01.06 10:47:06 | 000,001,417 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_options.fen
[2014.01.06 10:47:06 | 000,002,109 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_prefs.fen
[2014.01.06 10:47:06 | 000,000,956 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_quota_error1.fen
[2014.01.06 10:47:06 | 000,001,080 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_quota_error2.fen
[2014.01.06 10:47:06 | 000,001,139 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_quota_error_estimate.fen
[2014.01.06 10:47:06 | 000,002,181 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_welcome.fen
[2014.01.06 20:47:02 | 000,000,702 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_advoptions.fen
[2014.01.06 20:47:02 | 000,000,790 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_debug.fen
[2014.01.06 20:47:02 | 000,000,723 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_download.fen
[2014.01.06 20:47:02 | 000,000,694 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_file_errors.fen
[2013.02.09 03:39:28 | 000,000,934 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_main.fen
[2014.01.06 20:47:04 | 000,000,634 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_manage_devices.fen
[2014.01.06 20:47:04 | 000,002,283 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_onboard.fen
[2014.01.06 20:47:04 | 000,001,417 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_options.fen
[2014.01.06 20:47:04 | 000,001,330 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_pinwheel_72.png
[2014.01.06 20:47:04 | 000,002,541 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_pinwheel_72x2.png
[2014.01.06 20:47:04 | 000,002,109 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_prefs.fen
[2014.01.06 20:47:04 | 000,000,956 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error1.fen
[2014.01.06 20:47:04 | 000,001,080 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error2.fen
[2014.01.06 20:47:04 | 000,001,139 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error_estimate.fen
[2014.01.06 20:47:04 | 000,002,181 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_welcome.fen
[2013.11.18 08:37:15 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\BUR\HTC Sync Manager=3=HTC Web how-tos=my\css\images\ajax-loader.gif
[2013.11.18 08:37:32 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\CSY\HTC Sync Manager=3=HTC Web how-tos=cs\css\images\ajax-loader.gif
[2013.11.18 08:37:36 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\DAN\HTC Sync Manager=3=HTC Web how-tos=da\css\images\ajax-loader.gif
[2013.11.18 08:37:41 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\DEU\HTC Sync Manager=3=HTC Web how-tos=de\css\images\ajax-loader.gif
[2013.11.18 08:37:45 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\ENU\HTC Sync Manager=3=HTC Web how-tos=en-US\css\images\ajax-loader.gif
[2013.11.18 08:37:50 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\ESP\HTC Sync Manager=3=HTC Web how-tos=es-ES\css\images\ajax-loader.gif
[2013.11.18 08:37:55 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\FRA\HTC Sync Manager=3=HTC Web how-tos=fr-FR\css\images\ajax-loader.gif
[2013.11.18 08:37:19 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\CHS\HTC Sync Manager=3=HTC Web how-tos=zh-CN\css\images\ajax-loader.gif
[2013.11.18 08:37:25 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\CHT\HTC Sync Manager=3=HTC Web how-tos=zh-TW\css\images\ajax-loader.gif
[2013.11.18 08:38:00 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\ITA\HTC Sync Manager=3=HTC Web how-tos=it\css\images\ajax-loader.gif
[2013.11.18 08:38:04 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\JPN\HTC Sync Manager=3=HTC Web how-tos=ja\css\images\ajax-loader.gif
[2013.11.18 08:38:09 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\NOR\HTC Sync Manager=3=HTC Web how-tos=no\css\images\ajax-loader.gif
[2013.11.18 08:38:14 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\PLK\HTC Sync Manager=3=HTC Web how-tos=pl\css\images\ajax-loader.gif
[2013.11.18 08:38:18 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\PTG\HTC Sync Manager=3=HTC Web how-tos=pt-PT\css\images\ajax-loader.gif
[2013.11.18 08:38:23 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\RUS\HTC Sync Manager=3=HTC Web how-tos=ru\css\images\ajax-loader.gif
[2013.11.18 08:38:28 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\SVE\HTC Sync Manager=3=HTC Web how-tos=sv\css\images\ajax-loader.gif
[2013.11.18 08:38:29 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\Fota\ENU\CSS\images\ajax-loader.gif
[2013.11.18 08:38:31 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\Fota\ESP\CSS\images\ajax-loader.gif
[2011.10.13 17:21:58 | 000,005,987 | ---- | M] () -- \Program Files\Microsoft\BingBar\scripts\io\downloader.js
[2013.04.12 15:17:27 | 000,005,437 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.pyc
[2013.11.12 20:51:52 | 000,029,696 | ---- | M] () -- \Program Files\URE\bin\javaloader.uno.dll
[2012.08.13 11:12:36 | 000,003,868 | ---- | M] () -- \Program Files\URE\java\unoloader.jar
[2009.06.02 02:16:58 | 000,114,688 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2008.04.14 14:00:00 | 000,017,421 | ---- | M] () -- \WINDOWS\I386\DMLOADER.DL_
[2008.04.14 14:00:00 | 000,115,367 | ---- | M] () -- \WINDOWS\I386\OSLOADER.EX_
[2008.04.14 14:00:00 | 000,133,029 | ---- | M] () -- \WINDOWS\I386\OSLOADER.NT_
[2010.03.24 19:12:34 | 000,018,264 | R--- | M] () -- \WINDOWS\Installer\$PatchCache$\Managed\00004119D11000000000000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010.03.24 19:12:34 | 000,249,680 | R--- | M] () -- \WINDOWS\Installer\$PatchCache$\Managed\00004119D11000000000000000F01FEC\14.0.4763\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2014.07.21 19:51:43 | 000,071,894 | R--- | M] () -- \WINDOWS\Installer\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}\GPUploader.exe
[2008.04.14 14:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[2008.04.14 14:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll

< *minodlogin* /s >

< *tnod* /s >

< *AutoKMS* /s >

< *activator* /s >

< *serial* /s >
[2014.01.27 15:38:17 | 000,000,024 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Data aplikací\Google\Picasa2\cache\cacheindex_serial.pmp
[2014.02.13 22:57:42 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30214.0\System.Runtime.Serialization.dll
[2014.04.12 09:30:20 | 001,164,288 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30214.0\System.Runtime.Serialization.ni.dll
[2012.09.27 01:12:26 | 000,970,752 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2014.02.14 10:22:23 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.01.10 07:58:25 | 000,970,752 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014.02.13 16:07:50 | 000,311,296 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\6c29ee2bedfe88dcd66993f1af135ad8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.02.13 15:20:29 | 002,345,472 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\9860da66bf0219612908e7412b0a6e2e\System.Runtime.Serialization.ni.dll
[2008.04.14 14:00:00 | 000,024,957 | ---- | M] () -- \WINDOWS\I386\DPSERIAL.DL_
[2008.04.14 14:00:00 | 000,030,259 | ---- | M] () -- \WINDOWS\I386\SERIAL.SY_
[2008.04.14 14:00:00 | 000,006,549 | ---- | M] () -- \WINDOWS\I386\SERIALUI.DL_
[2008.07.25 12:17:00 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2012.09.27 01:12:26 | 000,970,752 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2008.04.14 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[2008.04.14 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.14 14:00:00 | 000,064,256 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys

< *w7lxe* /s >

========== Files - Unicode (All) ==========
[2013.11.21 00:07:30 | 105,435,909 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\熭湧咜;
[2013.11.21 00:07:30 | 105,435,909 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\熭湧咜;
[2013.11.17 15:08:20 | 104,641,146 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\誻놐咜;
[2013.11.17 15:08:20 | 104,641,146 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\誻놐咜;
[2013.11.07 18:29:36 | 103,000,967 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\栘깯咜;
[2013.11.07 18:29:36 | 103,000,967 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\栘깯咜;
[2013.11.04 10:15:50 | 104,845,822 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�횄咜;
[2013.11.04 10:15:50 | 104,845,822 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�횄咜;
[2013.10.31 22:32:49 | 104,433,978 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\멒咜;
[2013.10.31 22:32:49 | 104,433,978 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\멒咜;
[2013.10.28 16:32:45 | 103,746,026 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ﰠ䩁咜;
[2013.10.28 16:32:45 | 103,746,026 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ﰠ䩁咜;
[2013.10.18 10:02:14 | 101,748,955 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㊎Ꞟ咜;
[2013.10.18 10:02:14 | 101,748,955 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㊎Ꞟ咜;
[2013.10.14 21:20:25 | 100,975,419 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\툇쨗咜;
[2013.10.14 21:20:25 | 100,975,419 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\툇쨗咜;
[2013.10.11 15:21:21 | 100,474,618 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ϩ楌咜;
[2013.10.11 15:21:21 | 100,474,618 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ϩ楌咜;
[2013.10.08 09:19:28 | 099,836,383 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\〰咜;
[2013.10.08 09:19:28 | 099,836,383 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\〰咜;
[2013.10.04 20:03:07 | 099,288,311 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�ᒟ咜;
[2013.10.04 20:03:07 | 099,288,311 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�ᒟ咜;
[2013.09.28 05:04:34 | 098,372,650 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⣆⮽咜;
[2013.09.28 05:04:34 | 098,372,650 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⣆⮽咜;
[2013.09.24 23:05:14 | 097,540,783 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\銖�咜;
[2013.09.24 23:05:14 | 097,540,783 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\銖�咜;
[2013.09.21 17:05:07 | 098,547,399 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\짪퓳咜;
[2013.09.21 17:05:07 | 098,547,399 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\짪퓳咜;
[2013.09.18 11:06:52 | 098,123,923 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䳼䆙咜;
[2013.09.18 11:06:52 | 098,123,923 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䳼䆙咜;

========== Alternate Data Streams ==========

@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users\Data aplikací\Temp:0B4227B4

< End of report >

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalý notebook

#17 Příspěvek od Márty84 »

:arrow: Napiste mi velikost adresare plochy (C:\Documents and Settings\Verča\Plocha)




:!: Vypnete antivir, at nebrani programu v praci.
:arrow: Znovu spustte OTL
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
BBUpdate
BBSvc
gupdate
SkypeUpdate
AdobeFlashPlayerUpdateSvc
gupdatem
gusvc

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml

:otl
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[2012.08.25 23:41:34 | 000,086,309 | ---- | M] () (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{82BC70E0-FE85-11DA-A899-3A655C103D30}.xpi
[2010.01.10 21:54:34 | 000,002,061 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\VERÄŤA\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\JAGRP2Z2.DEFAULT\EXTENSIONS\{82BC70E0-FE85-11DA-A899-3A655C103D30}.XPI
[2014.07.18 22:21:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Data aplikací\Malwarebytes
[2014.07.18 22:21:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2014.07.18 22:21:21 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.11.10 00:02:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\avg9
[2014.03.11 23:25:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\APN
[2012.04.04 22:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AVG
[34 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[42 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\twain_32\*.tmp files -> C:\WINDOWS\twain_32\*.tmp -> ]
@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users\Data aplikací\Temp:0B4227B4

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}"=-
"{8dcb7100-df86-4384-8842-8fa844297b3f}"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"OfficeSubscriptionAgent"=-
"BCSSync"=-
"Adobe ARM"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=-
"swg"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

ver3
Návštěvník
Návštěvník
Příspěvky: 79
Registrován: 30 bře 2013 01:20

Re: pomalý notebook

#18 Příspěvek od ver3 »

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Verča
->Temp folder emptied: 54094073 bytes
->Temporary Internet Files folder emptied: 3767072 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 343008396 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 6230 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1965812 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 427204 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1181152553 bytes

Total Files Cleaned = 1 511,00 mb


[EMPTYFLASH]

User: All Users

User: Default User
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

User: Verča
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service BBUpdate stopped successfully!
Service BBUpdate deleted successfully!
Service BBSvc stopped successfully!
Service BBSvc deleted successfully!
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
Service gusvc stopped successfully!
Service gusvc deleted successfully!
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
C:\WINDOWS\tasks\Adobe Flash Player Updater.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml moved successfully.
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry key HKEY_USERS\S-1-5-21-3283330612-449700776-2936646239-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-3283330612-449700776-2936646239-1005\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{82BC70E0-FE85-11DA-A899-3A655C103D30}.xpi moved successfully.
File C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml not found.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Logs folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Configuration folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware\Quarantine folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware\Logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware\Configuration folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes folder moved successfully.
C:\Program Files\Malwarebytes' Anti-Malware folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update\prepare\temp folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update\prepare folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update\backup folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Temp folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\scanlogs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Log folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue\TEMP folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue\OUT folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue\ACTIVE folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Log folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Dumps folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\CfgAll folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Cfg folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\AvgApi folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\AvgAm folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\admincli folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\APN\APN-Stub folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\APN folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\Rescue\PC Tuneup 2011 folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\Rescue folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\PC Tuneup\User Reports folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\PC Tuneup\Logs folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\PC Tuneup folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP11A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP11D.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP121.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP12C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP156.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP176.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP196.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1AE.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1B7.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1B8.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1BA.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1BD.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1D6.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1D7.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1E6.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1F2.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP29.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP29C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2A3.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP316.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP358.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP360.tmp\PresentationCore.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP360.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3A0.tmp\PresentationFramework.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3A0.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3D4.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP42F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP445.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP460.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4B.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP64.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP93.tmp folder deleted successfully.
C:\WINDOWS\Installer\MSI10.tmp deleted successfully.
C:\WINDOWS\Installer\MSI10E.tmp deleted successfully.
C:\WINDOWS\Installer\MSI11.tmp deleted successfully.
C:\WINDOWS\Installer\MSI14.tmp deleted successfully.
C:\WINDOWS\Installer\MSI146.tmp deleted successfully.
C:\WINDOWS\Installer\MSI164.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1BA.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI21.tmp deleted successfully.
C:\WINDOWS\Installer\MSI236.tmp deleted successfully.
C:\WINDOWS\Installer\MSI28.tmp deleted successfully.
C:\WINDOWS\Installer\MSI289.tmp deleted successfully.
C:\WINDOWS\Installer\MSI295.tmp deleted successfully.
C:\WINDOWS\Installer\MSI2B4.tmp deleted successfully.
C:\WINDOWS\Installer\MSI35.tmp deleted successfully.
C:\WINDOWS\Installer\MSI36.tmp deleted successfully.
C:\WINDOWS\Installer\MSI45.tmp deleted successfully.
C:\WINDOWS\Installer\MSI4C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI4F.tmp deleted successfully.
C:\WINDOWS\Installer\MSI507.tmp deleted successfully.
C:\WINDOWS\Installer\MSI55B.tmp deleted successfully.
C:\WINDOWS\Installer\MSI56.tmp deleted successfully.
C:\WINDOWS\Installer\MSI573.tmp deleted successfully.
C:\WINDOWS\Installer\MSI58.tmp deleted successfully.
C:\WINDOWS\Installer\MSI5D.tmp deleted successfully.
C:\WINDOWS\Installer\MSI6E.tmp deleted successfully.
C:\WINDOWS\Installer\MSI76.tmp deleted successfully.
C:\WINDOWS\Installer\MSI7A.tmp deleted successfully.
C:\WINDOWS\Installer\MSI81.tmp deleted successfully.
C:\WINDOWS\Installer\MSI83.tmp deleted successfully.
C:\WINDOWS\Installer\MSI85.tmp deleted successfully.
C:\WINDOWS\Installer\MSI8F.tmp deleted successfully.
C:\WINDOWS\Installer\MSI96.tmp deleted successfully.
C:\WINDOWS\Installer\MSIA3.tmp deleted successfully.
C:\WINDOWS\Installer\MSIB5.tmp deleted successfully.
C:\WINDOWS\Installer\MSIBA.tmp deleted successfully.
C:\WINDOWS\Installer\MSIC2.tmp deleted successfully.
C:\WINDOWS\Installer\MSIC9.tmp deleted successfully.
C:\WINDOWS\Installer\MSID3.tmp deleted successfully.
C:\WINDOWS\Installer\MSID4.tmp deleted successfully.
C:\WINDOWS\Installer\MSIE1.tmp deleted successfully.
C:\WINDOWS\Installer\MSIE2.tmp deleted successfully.
C:\WINDOWS\twain_32\hpqgnds2.tmp deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\Temp:0B4227B4 deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\OfficeSubscriptionAgent deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\BCSSync deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr\ deleted successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 07262014_000526

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...




Velikost plochy: 39,5 GB

Po restartu se mi na ploše zobrazilo několik souborů začínajících na .~lock.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalý notebook

#19 Příspěvek od Márty84 »

ver3 píše:Po restartu se mi na ploše zobrazilo několik souborů začínajících na .~lock.
Mozna se odkryly skryte a systemove soubory a slozky
http://www.tipypropc.cz/jak-v-pruzkumni ... e-soubory/
Akorat vy je samozrejme misto zobrazeni nechate skryt.
Dejte vedet, jestli to zabralo.





:arrow:
vyosek píše: :arrow: T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete Ccleaner http://www.filehippo.com/download_ccleaner a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!
(Pokud je v pc vice uzivatelskych uctu, pouzijte program i v nich)

:arrow: Defragmentujte disk(y) (SSD Disky ne!)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak napiste, jak je na tom pc.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

ver3
Návštěvník
Návštěvník
Příspěvky: 79
Registrován: 30 bře 2013 01:20

Re: pomalý notebook

#20 Příspěvek od ver3 »

Zobrazené soubory vypadaly takto. Když jsem chtěla jeden otevřít, všechny zmizely.


Zbytek provedu.
Přílohy
aa.JPG
aa.JPG (65.8 KiB) Zobrazeno 1586 x

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalý notebook

#21 Příspěvek od Márty84 »

Obcas to tak udela, neni to zadny problem :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalý notebook

#22 Příspěvek od Márty84 »

Malem jsem zapomnel!!!
ver3 píše:Velikost plochy: 39,5 GB
:arrow: Velikost plochy by nemela preshovat 200 - 300 MB! Brzdi to chod pc. Cili ji trosku uklidte a na plochu dejte jen zastupce. Jen pozor na obcasnou chybu, ze uzivatele maji na plose slozku, v ni dalsi a v ni dalsi a do te to schovaji. To je sice hezke, ale plochu to nezmensi, jen je to v jinem supliku :D
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

ver3
Návštěvník
Návštěvník
Příspěvky: 79
Registrován: 30 bře 2013 01:20

Re: pomalý notebook

#23 Příspěvek od ver3 »

O té ploše jsem neměla tušení :D

Jinak notebook se zdá být rychlejší, ale hláška o restartování vyskakuje pořád.

Moc děkuju za pomoc :)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalý notebook

#24 Příspěvek od Márty84 »

ver3 píše:Jinak notebook se zdá být rychlejší, ale hláška o restartování vyskakuje pořád.
Jaka hlaska o restartovani? Muzete ji vyfotit a poslat?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

ver3
Návštěvník
Návštěvník
Příspěvky: 79
Registrován: 30 bře 2013 01:20

Re: pomalý notebook

#25 Příspěvek od ver3 »

I po restartování se hláška zobrazuje znovu. Každý den..
Přílohy
Bez názvu.JPG
Bez názvu.JPG (16.04 KiB) Zobrazeno 1559 x

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalý notebook

#26 Příspěvek od Márty84 »

Zakazte automaticke aktualizace. Pro XP uz stejne zadne nove nevyjdou. Napiste, jestli se to porad objevuje :-)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

ver3
Návštěvník
Návštěvník
Příspěvky: 79
Registrován: 30 bře 2013 01:20

Re: pomalý notebook

#27 Příspěvek od ver3 »

Hloupý dotaz, ale kde se to dělá, prosím?

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalý notebook

#28 Příspěvek od Márty84 »

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

ver3
Návštěvník
Návštěvník
Příspěvky: 79
Registrován: 30 bře 2013 01:20

Re: pomalý notebook

#29 Příspěvek od ver3 »

Moc děkuju, vypadá to, že je to pryč.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalý notebook

#30 Příspěvek od Márty84 »

A je tedy vse v poradku a muzem tema uzavrit? Nebo jeste neco zlobi?

Jinak nemate zac! :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno