
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
pomalý notebook
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: pomalý notebook
OTL logfile created on: 23.7.2014 21:28:43 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Verča\Dokumenty\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
1015,17 Mb Total Physical Memory | 240,35 Mb Available Physical Memory | 23,68% Memory free
2,38 Gb Paging File | 1,41 Gb Available in Paging File | 59,14% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 72,06 Gb Total Space | 2,70 Gb Free Space | 3,75% Space Free | Partition Type: NTFS
Drive D: | 72,05 Gb Total Space | 5,02 Gb Free Space | 6,96% Space Free | Partition Type: NTFS
Computer Name: N-J4XZQQOODOZG5 | User Name: Verča | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014.07.23 21:27:44 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Verča\Dokumenty\Downloads\OTL.exe
PRC - [2014.07.17 23:49:28 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2014.07.17 23:49:05 | 001,028,688 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe
PRC - [2014.07.17 23:49:04 | 000,426,064 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2014.07.17 23:48:58 | 000,750,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2014.07.17 23:48:58 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2014.06.18 14:09:31 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2014.03.24 11:32:54 | 000,821,600 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
PRC - [2013.11.18 14:36:38 | 000,087,368 | ---- | M] (Nero AG) -- C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
PRC - [2013.10.17 15:27:02 | 000,166,912 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
PRC - [2013.06.25 21:48:08 | 000,228,552 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE
PRC - [2012.06.15 14:08:32 | 001,149,912 | ---- | M] (Crystal Dew World) -- C:\Documents and Settings\Verča\Dokumenty\Downloads\CrystalDiskInfo5_0_0\DiskInfo.exe
PRC - [2011.10.13 17:21:52 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE
PRC - [2009.07.27 16:58:38 | 000,397,312 | ---- | M] () -- C:\Program Files\ASUS\Eee Docking\Eee Docking.exe
PRC - [2009.04.16 19:46:30 | 000,630,784 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe
PRC - [2009.04.16 18:58:54 | 000,118,784 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsTray.exe
PRC - [2009.03.25 10:43:40 | 000,376,832 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\EeePC\Super Hybrid Engine\SuperHybridEngine.exe
PRC - [2009.03.13 16:15:02 | 000,098,304 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsEPCMon.exe
PRC - [2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
========== Modules (No Company Name) ==========
MOD - [2014.07.18 00:12:52 | 017,029,808 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll
MOD - [2014.06.18 14:09:29 | 003,852,912 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2014.03.24 11:36:14 | 000,223,592 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\DevConnMon.dll
MOD - [2014.03.24 11:34:16 | 000,129,376 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\zlib1.dll
MOD - [2014.03.24 11:32:54 | 000,821,600 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
MOD - [2014.03.24 11:32:42 | 000,080,248 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\NInstallerHelper.dll
MOD - [2014.03.24 11:32:18 | 000,059,752 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\NAdvLog.dll
MOD - [2014.03.24 11:32:16 | 000,036,216 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\NFileCacheDBAccess.dll
MOD - [2014.03.24 11:32:12 | 000,607,376 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\sqlite3.dll
MOD - [2014.03.24 11:31:36 | 000,031,080 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\DbAccess.dll
MOD - [2013.10.24 19:40:32 | 007,532,032 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\avcodec-ics-55.dll
MOD - [2013.10.24 19:40:32 | 000,842,752 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\avformat-ics-55.dll
MOD - [2013.10.24 19:40:32 | 000,384,512 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\swscale-ics-2.dll
MOD - [2013.10.24 19:40:32 | 000,292,352 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\avutil-ics-52.dll
MOD - [2013.10.17 15:27:02 | 000,166,912 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
MOD - [2013.09.05 00:14:10 | 004,300,456 | ---- | M] () -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2009.07.27 16:58:38 | 000,397,312 | ---- | M] () -- C:\Program Files\ASUS\Eee Docking\Eee Docking.exe
========== Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2014.07.18 00:12:56 | 000,262,320 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014.07.17 23:49:28 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2014.07.17 23:49:05 | 001,028,688 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2014.07.17 23:48:58 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2014.06.18 14:09:29 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.12.19 00:41:02 | 030,814,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service)
SRV - [2013.12.18 22:05:43 | 000,182,696 | ---- | M] (Oracle Corporation) [Disabled | Stopped] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2013.11.18 14:36:38 | 000,087,368 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe -- (HTCMonitorService)
SRV - [2013.10.23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.10.17 15:27:02 | 000,166,912 | ---- | M] () [Auto | Running] -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service)
SRV - [2011.10.21 15:23:42 | 000,196,176 | ---- | M] (Microsoft Corporation.) [Auto | Stopped] -- C:\Program Files\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011.10.13 17:21:52 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE -- (BBUpdate)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\cnnctfy2.sys -- (cnnctfy2MP)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\btwusb.sys -- (BTWUSB)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btwdndis.sys -- (BTWDNDIS)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btport.sys -- (BTDriver)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\drivers\btaudio.sys -- (btaudio)
DRV - [2014.07.17 23:48:58 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2014.06.16 01:18:51 | 000,136,216 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2013.12.01 17:42:43 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2013.03.31 20:23:23 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2011.05.25 01:40:10 | 000,032,768 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\taphss.sys -- (taphss)
DRV - [2010.09.10 18:05:43 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)
DRV - [2010.06.22 18:01:50 | 000,021,248 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\htcnprot.sys -- (htcnprot)
DRV - [2010.05.01 19:11:16 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2009.07.10 21:33:36 | 001,015,424 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rt2860.sys -- (RT80x86)
DRV - [2009.06.10 15:49:32 | 000,024,576 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ANDROIDUSB.sys -- (HTCAND32)
DRV - [2009.04.27 13:26:44 | 005,074,944 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2009.03.13 16:32:18 | 001,759,616 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snp2uvc.sys -- (SNP2UVC)
DRV - [2009.03.02 07:03:47 | 000,038,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c)
DRV - [2009.02.06 18:08:42 | 000,055,152 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr)
DRV - [2009.01.24 16:36:22 | 000,103,424 | R--- | M] (QUALCOMM Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\qcserxp.sys -- (qcserxp)
DRV - [2008.11.19 03:21:28 | 000,039,040 | ---- | M] (GenesysLogic Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\uvclf.sys -- (uvclf)
DRV - [2008.08.05 14:10:12 | 001,684,736 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2008.04.08 15:59:28 | 000,010,752 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASUSACPI.SYS -- (AsusACPI)
DRV - [2006.01.04 09:41:48 | 001,389,056 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledAddons: %7B82BC70E0-FE85-11DA-A899-3A655C103D30%7D:1.0.3.9
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:30.0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8064.0206: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 30.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2014.06.18 14:09:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 30.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2014.06.18 14:09:10 | 000,000,000 | ---D | M]
[2010.01.10 21:26:58 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Extensions
[2014.07.18 00:04:56 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions
[2010.10.28 20:39:33 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.12.08 16:35:45 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2012.08.25 23:41:34 | 000,086,309 | ---- | M] () (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{82BC70E0-FE85-11DA-A899-3A655C103D30}.xpi
[2010.01.10 21:54:34 | 000,002,061 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml
[2014.06.18 14:09:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2014.06.18 14:09:32 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\VERÄŤA\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\JAGRP2Z2.DEFAULT\EXTENSIONS\{82BC70E0-FE85-11DA-A899-3A655C103D30}.XPI
========== Chrome ==========
CHR - homepage: http://www.google.com/
O1 HOSTS File: ([2008.04.14 14:00:00 | 000,000,737 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O4 - HKLM..\Run: [AsusACPIServer] C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusEPCMonitor] C:\Program Files\EeePC\ACPI\AsEPCMon.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusTray] C:\Program Files\EeePC\ACPI\AsTray.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [SynAsusAcpi] C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe (Synaptics Incorporated)
O4 - HKU\S-1-5-21-3283330612-449700776-2936646239-1005..\Run: [Eee Docking] C:\Program Files\ASUS\Eee Docking\Eee Docking.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\ SuperHybridEngine.lnk = C:\Program Files\ASUS\EeePC\Super Hybrid Engine\SuperHybridEngine.exe (ASUSTeK Computer Inc.)
O4 - Startup: C:\Documents and Settings\Verča\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Od&eslat do aplikace OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm File not found
O8 - Extra context menu item: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm File not found
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([*] https in Trusted sites)
O15 - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..Trusted Domains: mojebanka.cz ([*] https in Trusted sites)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.51.2)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.51.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.36 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BE87E689-037A-4EE1-B2B4-493E459E5B94}: DhcpNameServer = 213.46.172.36 213.46.172.37
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Desktop Background.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Desktop Background.bmp
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.09.25 21:44:44 | 003,352,087 | ---- | M] () - C:\autopodder_log.txt -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.ac3acm - C:\WINDOWS\System32\ac3acm.acm (fccHandler)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\WINDOWS\System32\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.LAGS - C:\WINDOWS\System32\lagarith.dll ( )
Drivers32: VIDC.X264 - C:\WINDOWS\System32\x264vfw.dll (x264vfw project)
Drivers32: VIDC.XVID - C:\WINDOWS\System32\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 30 Days ==========
[2014.07.21 19:51:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Google+ Auto Backup
[2014.07.21 19:40:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Plocha\albíčko fejsbk
[2014.07.21 18:43:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Plocha\fototo
[2014.07.18 22:21:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Data aplikací\Malwarebytes
[2014.07.18 22:21:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2014.07.18 22:21:21 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2014.06.24 20:33:52 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\WINDOWS\System32\sqlite3.dll
[2014.06.24 20:31:43 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2010.05.16 13:21:21 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Verča\Data aplikací\pcouffin.sys
========== Files - Modified Within 30 Days ==========
[2014.07.23 22:12:01 | 000,000,914 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2014.07.23 22:04:00 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.07.23 21:37:00 | 000,000,940 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2014.07.23 19:00:07 | 000,000,936 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2014.07.23 19:00:06 | 000,000,222 | ---- | M] () -- C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.07.23 19:00:03 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014.07.23 18:28:39 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014.07.18 00:12:54 | 000,699,056 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2014.07.18 00:12:54 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2014.07.17 23:48:58 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2014.06.24 20:28:09 | 001,342,659 | ---- | M] () -- C:\Documents and Settings\Verča\Plocha\adwcleaner_3.213.exe
========== Files Created - No Company Name ==========
[2014.07.23 22:04:00 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014.06.24 20:27:58 | 001,342,659 | ---- | C] () -- C:\Documents and Settings\Verča\Plocha\adwcleaner_3.213.exe
[2014.02.23 11:49:47 | 000,000,918 | ---- | C] () -- C:\WINDOWS\hpomdl40.dat.temp
[2013.11.17 02:19:54 | 000,216,064 | ---- | C] ( ) -- C:\WINDOWS\System32\lagarith.dll
[2013.11.17 02:19:53 | 000,650,752 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2013.11.17 02:19:53 | 000,243,200 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2013.11.17 02:19:43 | 000,112,640 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2012.08.13 12:04:14 | 000,013,064 | ---- | C] () -- C:\Program Files\readme.html
[2012.05.08 15:15:36 | 000,000,005 | ---- | C] () -- C:\Program Files\basis-link
[2010.05.16 13:21:21 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\inst.exe
[2010.05.16 13:21:21 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\pcouffin.cat
[2010.05.16 13:21:21 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\pcouffin.inf
[2010.01.24 17:11:44 | 000,000,268 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\wklnhst.dat
[2010.01.11 17:53:35 | 000,218,112 | ---- | C] () -- C:\Documents and Settings\Verča\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== ZeroAccess Check ==========
[2009.09.01 23:33:53 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2009.03.03 01:11:23 | 001,499,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009.02.09 12:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 14:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2014.03.11 23:25:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\APN
[2011.11.10 00:02:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\avg9
[2013.05.01 18:38:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\CheckPoint
[2011.03.14 20:46:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2014.03.11 23:13:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Connectify
[2010.05.01 19:10:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2014.04.29 22:16:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\HTC
[2010.01.24 18:26:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Last.fm
[2013.03.09 11:59:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2010.09.25 21:44:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Podcast Ready WinPodder
[2009.09.01 23:02:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ralink Driver
[2013.03.09 12:01:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Temp
[2013.10.12 01:11:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP
[2014.05.29 14:26:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP3
[2010.05.20 13:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AnvSoft
[2012.04.04 22:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AVG
[2013.11.17 01:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer
[2012.01.30 00:12:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer Pro
[2014.03.06 23:14:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\CallingID
[2010.05.01 19:10:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\DAEMON Tools Lite
[2010.03.29 22:31:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\GHISLER
[2014.04.29 22:21:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC
[2010.09.23 17:35:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
[2010.09.15 14:28:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\iPodder
[2011.09.23 16:33:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\KYL
[2011.10.11 19:32:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MicroST
[2013.11.17 02:25:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MPC-HC
[2010.10.08 18:04:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OfficeRecovery
[2011.11.29 20:00:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\olt1
[2010.01.30 22:09:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OpenOffice.org
[2012.08.27 21:43:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Oracle
[2012.09.28 11:42:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Softplicity
[2010.01.24 17:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Template
[2010.05.28 23:45:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2010.05.19 18:38:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Vso
[2011.06.03 13:35:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\zenses
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.09.01 22:42:45 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT
[2009.09.02 00:26:51 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2014.03.07 23:52:22 | 000,000,216 | ---- | C] () -- C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.03.07 23:52:22 | 000,000,222 | ---- | C] () -- C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.03.25 20:22:11 | 000,000,914 | ---- | C] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2014.03.31 22:20:24 | 000,000,936 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2014.03.31 22:20:24 | 000,000,940 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
< >
< MD5 for: AGP440.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:AGP440.sys
< MD5 for: ATAPI.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:atapi.sys
[2008.04.14 14:00:00 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\I386\AUTOCHK.EXE
[2008.04.14 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2008.04.14 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\dllcache\autochk.exe
< MD5 for: CDROM.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:cdrom.sys
[2008.04.14 14:00:00 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2011.05.10 00:48:16 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\system32\dllcache\cdrom.sys
< MD5 for: CRYPTSVC.DLL >
[2008.04.14 14:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll
[2008.04.14 14:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\dllcache\cryptsvc.dll
< MD5 for: EVENTLOG.DLL >
[2008.04.14 14:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\dllcache\eventlog.dll
[2008.04.14 14:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
< MD5 for: EXPLORER.EXE >
[2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\system32\dllcache\explorer.exe
< MD5 for: HAL.DLL >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:hal.dll
[2008.04.14 14:00:00 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\hal.dll
< MD5 for: CHANGER.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:Changer.sys
< MD5 for: IASTOR.SYS >
[2008.09.12 07:32:56 | 000,327,192 | ---- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 -- C:\WINDOWS\I386\$OEM$\TEXTMODE\IASTOR.SYS
[2008.09.12 07:32:56 | 000,327,192 | ---- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 -- C:\WINDOWS\OemDir\iaStor.sys
[2008.09.12 07:32:56 | 000,327,192 | ---- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 -- C:\WINDOWS\system32\drivers\iaStor.sys
< MD5 for: ISAPNP.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\dllcache\isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys
[2008.04.14 14:00:00 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\isapnp.sys
< MD5 for: LSASS.EXE >
[2008.04.14 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\dllcache\lsass.exe
[2008.04.14 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe
< MD5 for: NDIS.SYS >
[2008.04.14 14:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\dllcache\ndis.sys
[2008.04.14 14:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
< MD5 for: NETLOGON.DLL >
[2008.04.14 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\dllcache\netlogon.dll
[2008.04.14 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll
< MD5 for: SCECLI.DLL >
[2008.04.14 14:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\dllcache\scecli.dll
[2008.04.14 14:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SMSS.EXE >
[2008.04.14 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\dllcache\smss.exe
[2008.04.14 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe
[2008.04.14 14:00:00 | 000,481,792 | ---- | M] (Microsoft Corporation) MD5=F209B5C79A87A9521DC0BD88B039EEE3 -- C:\WINDOWS\I386\SYSTEM32\SMSS.EXE
< MD5 for: SVCHOST.EXE >
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\dllcache\svchost.exe
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
< MD5 for: TCPIP.SYS >
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.04.14 14:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\dllcache\userinit.exe
[2008.04.14 14:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
< MD5 for: WINLOGON.EXE >
[2008.04.14 14:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\dllcache\winlogon.exe
[2008.04.14 14:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< MD5 for: WS2_32.DLL >
[2008.04.14 14:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\dllcache\ws2_32.dll
[2008.04.14 14:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll
< >
< %systemroot%*.* /U /s >
[34 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[42 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\twain_32\*.tmp files -> C:\WINDOWS\twain_32\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2013.01.03 21:24:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Adobe
[2013.10.12 01:11:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP
[2014.05.29 14:26:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP3
[2010.05.20 13:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AnvSoft
[2014.04.29 22:19:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Apple Computer
[2012.04.04 22:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AVG
[2013.03.31 20:35:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Avira
[2013.11.17 01:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer
[2012.01.30 00:12:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer Pro
[2014.03.06 23:14:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\CallingID
[2010.05.01 19:10:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\DAEMON Tools Lite
[2010.03.29 22:31:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\GHISLER
[2011.01.21 16:54:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Google
[2014.04.29 22:21:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC
[2010.09.23 17:35:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
[2009.09.01 22:43:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Identities
[2009.09.01 23:02:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\InstallShield
[2010.09.15 14:28:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\iPodder
[2011.09.23 16:33:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\KYL
[2010.01.10 20:21:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Macromedia
[2014.07.18 22:21:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Malwarebytes
[2013.06.07 00:03:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Media Player Classic
[2014.05.29 18:27:28 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Verča\Data aplikací\Microsoft
[2011.10.11 19:32:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MicroST
[2010.01.10 21:26:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Mozilla
[2013.11.17 02:25:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MPC-HC
[2010.10.08 18:04:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OfficeRecovery
[2011.11.29 20:00:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\olt1
[2010.01.30 22:09:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OpenOffice.org
[2012.08.27 21:43:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Oracle
[2014.06.30 00:15:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Skype
[2011.08.05 20:47:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\skypePM
[2012.09.28 11:42:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Softplicity
[2010.01.14 17:36:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Sun
[2010.01.24 17:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Template
[2010.05.28 23:45:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2010.05.19 18:38:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Vso
[2010.01.24 22:52:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\WinRAR
[2011.06.03 13:35:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\zenses
< %APPDATA%\*.exe /s >
[2010.05.19 18:38:25 | 000,087,608 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\inst.exe
[2013.11.05 18:14:29 | 007,615,904 | ---- | M] (AIMP DevTeam) -- C:\Documents and Settings\Verča\Data aplikací\AIMP3\UpdateInstaller.exe
[2009.08.11 22:21:26 | 000,087,552 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 22:21:30 | 000,090,112 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 15:52:04 | 000,697,690 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\AC3 Filter\unins000.exe
[2012.10.11 10:01:20 | 001,175,371 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\FFDShow\unins000.exe
[2010.08.14 11:42:54 | 000,113,152 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 11:45:10 | 000,358,400 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 11:42:06 | 000,137,728 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 16:30:22 | 000,042,305 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\uninstall.exe
[2014.02.26 14:20:30 | 000,145,408 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\Sun\Java\jre1.7.0_51\lzma.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2010.05.01 19:11:16 | 000,691,696 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\sptd.sys
< %systemroot%\System32\config\*.sav >
[2009.09.02 00:32:47 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2009.09.02 00:32:47 | 001,069,056 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2009.09.02 00:32:47 | 000,479,232 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2014.07.23 18:28:39 | 000,001,158 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 14:00:00 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Eee Docking" = C:\Program Files\ASUS\Eee Docking\Eee Docking.exe -- [2009.07.27 16:58:38 | 000,397,312 | ---- | M] ()
"MSMSGS" = "C:\Program Files\Messenger\msmsgs.exe" /background -- [2008.04.14 08:52:38 | 001,695,232 | ---- | M] (Microsoft Corporation)
"swg" = C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe -- [2014.05.13 23:19:34 | 000,039,408 | ---- | M] (Google Inc.)
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
No captured output from command...
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
No captured output from command...
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
No captured output from command...
< >
< type c:\boot.ini >> test.txt /c >
No captured output from command...
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2014.07.23 22:04:00 | 000,000,512 | ---- | M] () MD5=9EE5CD48F8A9122385325CCC5A3706FE -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2012.10.18 12:22:05 | 006,068,528 | ---- | M] () -- \Documents and Settings\Verča\Plocha\la música\Fidlar\Fidlar - Shit We Recorded In Our Bedroom (2012)\04 - Crackhead Ted.mp3
< *keygen* /s >
< *AntiWPA* /s >
< *loader* /s >
[2013.11.11 14:39:40 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.gif
[2013.11.11 14:39:40 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.png
[2013.11.11 14:39:40 | 000,006,012 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\normal\loader_15fps.gif
[2013.11.11 14:39:40 | 000,021,956 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\normal\loader_30fps.gif
[2013.11.11 14:39:40 | 000,009,772 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\retina\loader@2x.png
[2014.06.29 22:18:01 | 000,001,980 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Temporary Internet Files\Content.IE5\8FIB0FH5\AdLoader[1].htm
[2014.06.26 19:44:48 | 000,001,980 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Temporary Internet Files\Content.IE5\9UNGF12N\AdLoader[1].htm
[2014.06.26 19:44:48 | 000,017,912 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Temporary Internet Files\Content.IE5\EM2DTCA3\AdLoader-3b8e790904fffcf74f96367cd382e261.min[1].js
[2007.03.27 14:08:53 | 000,000,408 | ---- | M] () -- \Documents and Settings\Verča\Plocha\la música\Peter Doherty\Acoustic Sessions\Uploader.txt
[2014.07.17 23:49:05 | 000,044,112 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.dll
[2014.07.17 23:49:05 | 000,494,672 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.exe
[2014.07.17 23:49:05 | 000,195,152 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloadergui.dll
[2012.08.13 11:52:58 | 000,006,081 | ---- | M] () -- \Program Files\Basis\program\pythonloader.py
[2013.11.12 20:57:17 | 000,005,233 | ---- | M] () -- \Program Files\Basis\program\pythonloader.pyc
[2013.11.12 20:50:18 | 000,020,992 | ---- | M] () -- \Program Files\Basis\program\pythonloader.uno.dll
[2012.08.13 12:04:18 | 000,000,171 | ---- | M] () -- \Program Files\Basis\program\pythonloader.uno.ini
[2013.03.09 08:17:04 | 000,268,440 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2013.03.09 08:17:04 | 000,019,080 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2014.01.06 10:52:30 | 003,244,032 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\gpuploader_i18n.dll
[2014.01.06 10:47:04 | 000,000,702 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_advoptions.fen
[2014.01.06 10:47:04 | 000,000,790 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_debug.fen
[2014.01.06 10:47:04 | 000,000,723 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_download.fen
[2014.01.06 10:47:04 | 000,000,694 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_file_errors.fen
[2014.01.06 10:47:06 | 000,171,541 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_icons.psd
[2014.01.06 10:47:06 | 000,000,634 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_manage_devices.fen
[2014.01.06 10:47:06 | 000,002,283 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_onboard.fen
[2014.01.06 10:47:06 | 000,001,417 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_options.fen
[2014.01.06 10:47:06 | 000,002,109 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_prefs.fen
[2014.01.06 10:47:06 | 000,000,956 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_quota_error1.fen
[2014.01.06 10:47:06 | 000,001,080 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_quota_error2.fen
[2014.01.06 10:47:06 | 000,001,139 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_quota_error_estimate.fen
[2014.01.06 10:47:06 | 000,002,181 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_welcome.fen
[2014.01.06 20:47:02 | 000,000,702 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_advoptions.fen
[2014.01.06 20:47:02 | 000,000,790 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_debug.fen
[2014.01.06 20:47:02 | 000,000,723 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_download.fen
[2014.01.06 20:47:02 | 000,000,694 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_file_errors.fen
[2013.02.09 03:39:28 | 000,000,934 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_main.fen
[2014.01.06 20:47:04 | 000,000,634 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_manage_devices.fen
[2014.01.06 20:47:04 | 000,002,283 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_onboard.fen
[2014.01.06 20:47:04 | 000,001,417 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_options.fen
[2014.01.06 20:47:04 | 000,001,330 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_pinwheel_72.png
[2014.01.06 20:47:04 | 000,002,541 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_pinwheel_72x2.png
[2014.01.06 20:47:04 | 000,002,109 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_prefs.fen
[2014.01.06 20:47:04 | 000,000,956 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error1.fen
[2014.01.06 20:47:04 | 000,001,080 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error2.fen
[2014.01.06 20:47:04 | 000,001,139 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error_estimate.fen
[2014.01.06 20:47:04 | 000,002,181 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_welcome.fen
[2013.11.18 08:37:15 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\BUR\HTC Sync Manager=3=HTC Web how-tos=my\css\images\ajax-loader.gif
[2013.11.18 08:37:32 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\CSY\HTC Sync Manager=3=HTC Web how-tos=cs\css\images\ajax-loader.gif
[2013.11.18 08:37:36 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\DAN\HTC Sync Manager=3=HTC Web how-tos=da\css\images\ajax-loader.gif
[2013.11.18 08:37:41 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\DEU\HTC Sync Manager=3=HTC Web how-tos=de\css\images\ajax-loader.gif
[2013.11.18 08:37:45 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\ENU\HTC Sync Manager=3=HTC Web how-tos=en-US\css\images\ajax-loader.gif
[2013.11.18 08:37:50 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\ESP\HTC Sync Manager=3=HTC Web how-tos=es-ES\css\images\ajax-loader.gif
[2013.11.18 08:37:55 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\FRA\HTC Sync Manager=3=HTC Web how-tos=fr-FR\css\images\ajax-loader.gif
[2013.11.18 08:37:19 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\CHS\HTC Sync Manager=3=HTC Web how-tos=zh-CN\css\images\ajax-loader.gif
[2013.11.18 08:37:25 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\CHT\HTC Sync Manager=3=HTC Web how-tos=zh-TW\css\images\ajax-loader.gif
[2013.11.18 08:38:00 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\ITA\HTC Sync Manager=3=HTC Web how-tos=it\css\images\ajax-loader.gif
[2013.11.18 08:38:04 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\JPN\HTC Sync Manager=3=HTC Web how-tos=ja\css\images\ajax-loader.gif
[2013.11.18 08:38:09 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\NOR\HTC Sync Manager=3=HTC Web how-tos=no\css\images\ajax-loader.gif
[2013.11.18 08:38:14 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\PLK\HTC Sync Manager=3=HTC Web how-tos=pl\css\images\ajax-loader.gif
[2013.11.18 08:38:18 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\PTG\HTC Sync Manager=3=HTC Web how-tos=pt-PT\css\images\ajax-loader.gif
[2013.11.18 08:38:23 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\RUS\HTC Sync Manager=3=HTC Web how-tos=ru\css\images\ajax-loader.gif
[2013.11.18 08:38:28 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\SVE\HTC Sync Manager=3=HTC Web how-tos=sv\css\images\ajax-loader.gif
[2013.11.18 08:38:29 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\Fota\ENU\CSS\images\ajax-loader.gif
[2013.11.18 08:38:31 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\Fota\ESP\CSS\images\ajax-loader.gif
[2011.10.13 17:21:58 | 000,005,987 | ---- | M] () -- \Program Files\Microsoft\BingBar\scripts\io\downloader.js
[2013.04.12 15:17:27 | 000,005,437 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.pyc
[2013.11.12 20:51:52 | 000,029,696 | ---- | M] () -- \Program Files\URE\bin\javaloader.uno.dll
[2012.08.13 11:12:36 | 000,003,868 | ---- | M] () -- \Program Files\URE\java\unoloader.jar
[2009.06.02 02:16:58 | 000,114,688 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2008.04.14 14:00:00 | 000,017,421 | ---- | M] () -- \WINDOWS\I386\DMLOADER.DL_
[2008.04.14 14:00:00 | 000,115,367 | ---- | M] () -- \WINDOWS\I386\OSLOADER.EX_
[2008.04.14 14:00:00 | 000,133,029 | ---- | M] () -- \WINDOWS\I386\OSLOADER.NT_
[2010.03.24 19:12:34 | 000,018,264 | R--- | M] () -- \WINDOWS\Installer\$PatchCache$\Managed\00004119D11000000000000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010.03.24 19:12:34 | 000,249,680 | R--- | M] () -- \WINDOWS\Installer\$PatchCache$\Managed\00004119D11000000000000000F01FEC\14.0.4763\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2014.07.21 19:51:43 | 000,071,894 | R--- | M] () -- \WINDOWS\Installer\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}\GPUploader.exe
[2008.04.14 14:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[2008.04.14 14:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll
< *minodlogin* /s >
< *tnod* /s >
< *AutoKMS* /s >
< *activator* /s >
< *serial* /s >
[2014.01.27 15:38:17 | 000,000,024 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Data aplikací\Google\Picasa2\cache\cacheindex_serial.pmp
[2014.02.13 22:57:42 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30214.0\System.Runtime.Serialization.dll
[2014.04.12 09:30:20 | 001,164,288 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30214.0\System.Runtime.Serialization.ni.dll
[2012.09.27 01:12:26 | 000,970,752 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2014.02.14 10:22:23 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.01.10 07:58:25 | 000,970,752 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014.02.13 16:07:50 | 000,311,296 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\6c29ee2bedfe88dcd66993f1af135ad8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.02.13 15:20:29 | 002,345,472 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\9860da66bf0219612908e7412b0a6e2e\System.Runtime.Serialization.ni.dll
[2008.04.14 14:00:00 | 000,024,957 | ---- | M] () -- \WINDOWS\I386\DPSERIAL.DL_
[2008.04.14 14:00:00 | 000,030,259 | ---- | M] () -- \WINDOWS\I386\SERIAL.SY_
[2008.04.14 14:00:00 | 000,006,549 | ---- | M] () -- \WINDOWS\I386\SERIALUI.DL_
[2008.07.25 12:17:00 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2012.09.27 01:12:26 | 000,970,752 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2008.04.14 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[2008.04.14 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.14 14:00:00 | 000,064,256 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys
< *w7lxe* /s >
========== Files - Unicode (All) ==========
[2013.11.21 00:07:30 | 105,435,909 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\熭湧咜;
[2013.11.21 00:07:30 | 105,435,909 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\熭湧咜;
[2013.11.17 15:08:20 | 104,641,146 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\誻놐咜;
[2013.11.17 15:08:20 | 104,641,146 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\誻놐咜;
[2013.11.07 18:29:36 | 103,000,967 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\栘깯咜;
[2013.11.07 18:29:36 | 103,000,967 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\栘깯咜;
[2013.11.04 10:15:50 | 104,845,822 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�횄咜;
[2013.11.04 10:15:50 | 104,845,822 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�횄咜;
[2013.10.31 22:32:49 | 104,433,978 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\멒咜;
[2013.10.31 22:32:49 | 104,433,978 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\멒咜;
[2013.10.28 16:32:45 | 103,746,026 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ﰠ䩁咜;
[2013.10.28 16:32:45 | 103,746,026 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ﰠ䩁咜;
[2013.10.18 10:02:14 | 101,748,955 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㊎Ꞟ咜;
[2013.10.18 10:02:14 | 101,748,955 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㊎Ꞟ咜;
[2013.10.14 21:20:25 | 100,975,419 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\툇쨗咜;
[2013.10.14 21:20:25 | 100,975,419 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\툇쨗咜;
[2013.10.11 15:21:21 | 100,474,618 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ϩ楌咜;
[2013.10.11 15:21:21 | 100,474,618 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ϩ楌咜;
[2013.10.08 09:19:28 | 099,836,383 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\〰咜;
[2013.10.08 09:19:28 | 099,836,383 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\〰咜;
[2013.10.04 20:03:07 | 099,288,311 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�ᒟ咜;
[2013.10.04 20:03:07 | 099,288,311 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�ᒟ咜;
[2013.09.28 05:04:34 | 098,372,650 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⣆⮽咜;
[2013.09.28 05:04:34 | 098,372,650 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⣆⮽咜;
[2013.09.24 23:05:14 | 097,540,783 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\銖�咜;
[2013.09.24 23:05:14 | 097,540,783 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\銖�咜;
[2013.09.21 17:05:07 | 098,547,399 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\짪퓳咜;
[2013.09.21 17:05:07 | 098,547,399 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\짪퓳咜;
[2013.09.18 11:06:52 | 098,123,923 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䳼䆙咜;
[2013.09.18 11:06:52 | 098,123,923 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䳼䆙咜;
========== Alternate Data Streams ==========
@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users\Data aplikací\Temp:0B4227B4
< End of report >
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Verča\Dokumenty\Downloads
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
1015,17 Mb Total Physical Memory | 240,35 Mb Available Physical Memory | 23,68% Memory free
2,38 Gb Paging File | 1,41 Gb Available in Paging File | 59,14% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 72,06 Gb Total Space | 2,70 Gb Free Space | 3,75% Space Free | Partition Type: NTFS
Drive D: | 72,05 Gb Total Space | 5,02 Gb Free Space | 6,96% Space Free | Partition Type: NTFS
Computer Name: N-J4XZQQOODOZG5 | User Name: Verča | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014.07.23 21:27:44 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Verča\Dokumenty\Downloads\OTL.exe
PRC - [2014.07.17 23:49:28 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2014.07.17 23:49:05 | 001,028,688 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe
PRC - [2014.07.17 23:49:04 | 000,426,064 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2014.07.17 23:48:58 | 000,750,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2014.07.17 23:48:58 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2014.06.18 14:09:31 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2014.03.24 11:32:54 | 000,821,600 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
PRC - [2013.11.18 14:36:38 | 000,087,368 | ---- | M] (Nero AG) -- C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
PRC - [2013.10.17 15:27:02 | 000,166,912 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
PRC - [2013.06.25 21:48:08 | 000,228,552 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE
PRC - [2012.06.15 14:08:32 | 001,149,912 | ---- | M] (Crystal Dew World) -- C:\Documents and Settings\Verča\Dokumenty\Downloads\CrystalDiskInfo5_0_0\DiskInfo.exe
PRC - [2011.10.13 17:21:52 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE
PRC - [2009.07.27 16:58:38 | 000,397,312 | ---- | M] () -- C:\Program Files\ASUS\Eee Docking\Eee Docking.exe
PRC - [2009.04.16 19:46:30 | 000,630,784 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe
PRC - [2009.04.16 18:58:54 | 000,118,784 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsTray.exe
PRC - [2009.03.25 10:43:40 | 000,376,832 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\EeePC\Super Hybrid Engine\SuperHybridEngine.exe
PRC - [2009.03.13 16:15:02 | 000,098,304 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\EeePC\ACPI\AsEPCMon.exe
PRC - [2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
========== Modules (No Company Name) ==========
MOD - [2014.07.18 00:12:52 | 017,029,808 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll
MOD - [2014.06.18 14:09:29 | 003,852,912 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2014.03.24 11:36:14 | 000,223,592 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\DevConnMon.dll
MOD - [2014.03.24 11:34:16 | 000,129,376 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\zlib1.dll
MOD - [2014.03.24 11:32:54 | 000,821,600 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
MOD - [2014.03.24 11:32:42 | 000,080,248 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\NInstallerHelper.dll
MOD - [2014.03.24 11:32:18 | 000,059,752 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\NAdvLog.dll
MOD - [2014.03.24 11:32:16 | 000,036,216 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\NFileCacheDBAccess.dll
MOD - [2014.03.24 11:32:12 | 000,607,376 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\sqlite3.dll
MOD - [2014.03.24 11:31:36 | 000,031,080 | ---- | M] () -- C:\Program Files\HTC\HTC Sync Manager\DbAccess.dll
MOD - [2013.10.24 19:40:32 | 007,532,032 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\avcodec-ics-55.dll
MOD - [2013.10.24 19:40:32 | 000,842,752 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\avformat-ics-55.dll
MOD - [2013.10.24 19:40:32 | 000,384,512 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\swscale-ics-2.dll
MOD - [2013.10.24 19:40:32 | 000,292,352 | ---- | M] () -- C:\Program Files\K-Lite Codec Pack\Icaros\avutil-ics-52.dll
MOD - [2013.10.17 15:27:02 | 000,166,912 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
MOD - [2013.09.05 00:14:10 | 004,300,456 | ---- | M] () -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2009.07.27 16:58:38 | 000,397,312 | ---- | M] () -- C:\Program Files\ASUS\Eee Docking\Eee Docking.exe
========== Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
SRV - [2014.07.18 00:12:56 | 000,262,320 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014.07.17 23:49:28 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2014.07.17 23:49:05 | 001,028,688 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2014.07.17 23:48:58 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2014.06.18 14:09:29 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.12.19 00:41:02 | 030,814,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service)
SRV - [2013.12.18 22:05:43 | 000,182,696 | ---- | M] (Oracle Corporation) [Disabled | Stopped] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2013.11.18 14:36:38 | 000,087,368 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe -- (HTCMonitorService)
SRV - [2013.10.23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.10.17 15:27:02 | 000,166,912 | ---- | M] () [Auto | Running] -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service)
SRV - [2011.10.21 15:23:42 | 000,196,176 | ---- | M] (Microsoft Corporation.) [Auto | Stopped] -- C:\Program Files\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011.10.13 17:21:52 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE -- (BBUpdate)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\cnnctfy2.sys -- (cnnctfy2MP)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\btwusb.sys -- (BTWUSB)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btwdndis.sys -- (BTWDNDIS)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btport.sys -- (BTDriver)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\drivers\btaudio.sys -- (btaudio)
DRV - [2014.07.17 23:48:58 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2014.06.16 01:18:51 | 000,136,216 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2013.12.01 17:42:43 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2013.03.31 20:23:23 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2011.05.25 01:40:10 | 000,032,768 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\taphss.sys -- (taphss)
DRV - [2010.09.10 18:05:43 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)
DRV - [2010.06.22 18:01:50 | 000,021,248 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\htcnprot.sys -- (htcnprot)
DRV - [2010.05.01 19:11:16 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2009.07.10 21:33:36 | 001,015,424 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rt2860.sys -- (RT80x86)
DRV - [2009.06.10 15:49:32 | 000,024,576 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ANDROIDUSB.sys -- (HTCAND32)
DRV - [2009.04.27 13:26:44 | 005,074,944 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2009.03.13 16:32:18 | 001,759,616 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snp2uvc.sys -- (SNP2UVC)
DRV - [2009.03.02 07:03:47 | 000,038,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c)
DRV - [2009.02.06 18:08:42 | 000,055,152 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr)
DRV - [2009.01.24 16:36:22 | 000,103,424 | R--- | M] (QUALCOMM Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\qcserxp.sys -- (qcserxp)
DRV - [2008.11.19 03:21:28 | 000,039,040 | ---- | M] (GenesysLogic Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\uvclf.sys -- (uvclf)
DRV - [2008.08.05 14:10:12 | 001,684,736 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2008.04.08 15:59:28 | 000,010,752 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASUSACPI.SYS -- (AsusACPI)
DRV - [2006.01.04 09:41:48 | 001,389,056 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledAddons: %7B82BC70E0-FE85-11DA-A899-3A655C103D30%7D:1.0.3.9
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:30.0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8064.0206: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 30.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2014.06.18 14:09:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 30.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2014.06.18 14:09:10 | 000,000,000 | ---D | M]
[2010.01.10 21:26:58 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Extensions
[2014.07.18 00:04:56 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions
[2010.10.28 20:39:33 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.12.08 16:35:45 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2012.08.25 23:41:34 | 000,086,309 | ---- | M] () (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{82BC70E0-FE85-11DA-A899-3A655C103D30}.xpi
[2010.01.10 21:54:34 | 000,002,061 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml
[2014.06.18 14:09:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2014.06.18 14:09:32 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\VERÄŤA\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\JAGRP2Z2.DEFAULT\EXTENSIONS\{82BC70E0-FE85-11DA-A899-3A655C103D30}.XPI
========== Chrome ==========
CHR - homepage: http://www.google.com/
O1 HOSTS File: ([2008.04.14 14:00:00 | 000,000,737 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O4 - HKLM..\Run: [AsusACPIServer] C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusEPCMonitor] C:\Program Files\EeePC\ACPI\AsEPCMon.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [AsusTray] C:\Program Files\EeePC\ACPI\AsTray.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [SynAsusAcpi] C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe (Synaptics Incorporated)
O4 - HKU\S-1-5-21-3283330612-449700776-2936646239-1005..\Run: [Eee Docking] C:\Program Files\ASUS\Eee Docking\Eee Docking.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\ SuperHybridEngine.lnk = C:\Program Files\ASUS\EeePC\Super Hybrid Engine\SuperHybridEngine.exe (ASUSTeK Computer Inc.)
O4 - Startup: C:\Documents and Settings\Verča\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Od&eslat do aplikace OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm File not found
O8 - Extra context menu item: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm File not found
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: mojebanka.cz ([*] https in Trusted sites)
O15 - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..Trusted Domains: mojebanka.cz ([*] https in Trusted sites)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.51.2)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.51.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.36 213.46.172.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BE87E689-037A-4EE1-B2B4-493E459E5B94}: DhcpNameServer = 213.46.172.36 213.46.172.37
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Desktop Background.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Desktop Background.bmp
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.09.25 21:44:44 | 003,352,087 | ---- | M] () - C:\autopodder_log.txt -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.ac3acm - C:\WINDOWS\System32\ac3acm.acm (fccHandler)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\WINDOWS\System32\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.LAGS - C:\WINDOWS\System32\lagarith.dll ( )
Drivers32: VIDC.X264 - C:\WINDOWS\System32\x264vfw.dll (x264vfw project)
Drivers32: VIDC.XVID - C:\WINDOWS\System32\xvidvfw.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 30 Days ==========
[2014.07.21 19:51:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Google+ Auto Backup
[2014.07.21 19:40:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Plocha\albíčko fejsbk
[2014.07.21 18:43:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Plocha\fototo
[2014.07.18 22:21:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Data aplikací\Malwarebytes
[2014.07.18 22:21:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2014.07.18 22:21:21 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2014.06.24 20:33:52 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\WINDOWS\System32\sqlite3.dll
[2014.06.24 20:31:43 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2010.05.16 13:21:21 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Verča\Data aplikací\pcouffin.sys
========== Files - Modified Within 30 Days ==========
[2014.07.23 22:12:01 | 000,000,914 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2014.07.23 22:04:00 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.07.23 21:37:00 | 000,000,940 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2014.07.23 19:00:07 | 000,000,936 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2014.07.23 19:00:06 | 000,000,222 | ---- | M] () -- C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.07.23 19:00:03 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014.07.23 18:28:39 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014.07.18 00:12:54 | 000,699,056 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2014.07.18 00:12:54 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2014.07.17 23:48:58 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2014.06.24 20:28:09 | 001,342,659 | ---- | M] () -- C:\Documents and Settings\Verča\Plocha\adwcleaner_3.213.exe
========== Files Created - No Company Name ==========
[2014.07.23 22:04:00 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014.06.24 20:27:58 | 001,342,659 | ---- | C] () -- C:\Documents and Settings\Verča\Plocha\adwcleaner_3.213.exe
[2014.02.23 11:49:47 | 000,000,918 | ---- | C] () -- C:\WINDOWS\hpomdl40.dat.temp
[2013.11.17 02:19:54 | 000,216,064 | ---- | C] ( ) -- C:\WINDOWS\System32\lagarith.dll
[2013.11.17 02:19:53 | 000,650,752 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2013.11.17 02:19:53 | 000,243,200 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2013.11.17 02:19:43 | 000,112,640 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2012.08.13 12:04:14 | 000,013,064 | ---- | C] () -- C:\Program Files\readme.html
[2012.05.08 15:15:36 | 000,000,005 | ---- | C] () -- C:\Program Files\basis-link
[2010.05.16 13:21:21 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\inst.exe
[2010.05.16 13:21:21 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\pcouffin.cat
[2010.05.16 13:21:21 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\pcouffin.inf
[2010.01.24 17:11:44 | 000,000,268 | ---- | C] () -- C:\Documents and Settings\Verča\Data aplikací\wklnhst.dat
[2010.01.11 17:53:35 | 000,218,112 | ---- | C] () -- C:\Documents and Settings\Verča\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== ZeroAccess Check ==========
[2009.09.01 23:33:53 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2009.03.03 01:11:23 | 001,499,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009.02.09 12:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 14:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2014.03.11 23:25:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\APN
[2011.11.10 00:02:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\avg9
[2013.05.01 18:38:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\CheckPoint
[2011.03.14 20:46:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2014.03.11 23:13:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Connectify
[2010.05.01 19:10:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2014.04.29 22:16:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\HTC
[2010.01.24 18:26:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Last.fm
[2013.03.09 11:59:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2010.09.25 21:44:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Podcast Ready WinPodder
[2009.09.01 23:02:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ralink Driver
[2013.03.09 12:01:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Temp
[2013.10.12 01:11:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP
[2014.05.29 14:26:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP3
[2010.05.20 13:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AnvSoft
[2012.04.04 22:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AVG
[2013.11.17 01:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer
[2012.01.30 00:12:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer Pro
[2014.03.06 23:14:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\CallingID
[2010.05.01 19:10:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\DAEMON Tools Lite
[2010.03.29 22:31:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\GHISLER
[2014.04.29 22:21:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC
[2010.09.23 17:35:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
[2010.09.15 14:28:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\iPodder
[2011.09.23 16:33:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\KYL
[2011.10.11 19:32:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MicroST
[2013.11.17 02:25:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MPC-HC
[2010.10.08 18:04:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OfficeRecovery
[2011.11.29 20:00:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\olt1
[2010.01.30 22:09:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OpenOffice.org
[2012.08.27 21:43:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Oracle
[2012.09.28 11:42:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Softplicity
[2010.01.24 17:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Template
[2010.05.28 23:45:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2010.05.19 18:38:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Vso
[2011.06.03 13:35:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\zenses
========== Purity Check ==========
========== Custom Scans ==========
< >
[2009.09.01 22:42:45 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT
[2009.09.02 00:26:51 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2014.03.07 23:52:22 | 000,000,216 | ---- | C] () -- C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.03.07 23:52:22 | 000,000,222 | ---- | C] () -- C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
[2014.03.25 20:22:11 | 000,000,914 | ---- | C] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2014.03.31 22:20:24 | 000,000,936 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2014.03.31 22:20:24 | 000,000,940 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
< >
< MD5 for: AGP440.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:AGP440.sys
< MD5 for: ATAPI.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:atapi.sys
[2008.04.14 14:00:00 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\I386\AUTOCHK.EXE
[2008.04.14 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2008.04.14 14:00:00 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\dllcache\autochk.exe
< MD5 for: CDROM.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:cdrom.sys
[2008.04.14 14:00:00 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2011.05.10 00:48:16 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\system32\dllcache\cdrom.sys
< MD5 for: CRYPTSVC.DLL >
[2008.04.14 14:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll
[2008.04.14 14:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\dllcache\cryptsvc.dll
< MD5 for: EVENTLOG.DLL >
[2008.04.14 14:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\dllcache\eventlog.dll
[2008.04.14 14:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
< MD5 for: EXPLORER.EXE >
[2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\system32\dllcache\explorer.exe
< MD5 for: HAL.DLL >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:hal.dll
[2008.04.14 14:00:00 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\hal.dll
< MD5 for: CHANGER.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:Changer.sys
< MD5 for: IASTOR.SYS >
[2008.09.12 07:32:56 | 000,327,192 | ---- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 -- C:\WINDOWS\I386\$OEM$\TEXTMODE\IASTOR.SYS
[2008.09.12 07:32:56 | 000,327,192 | ---- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 -- C:\WINDOWS\OemDir\iaStor.sys
[2008.09.12 07:32:56 | 000,327,192 | ---- | M] (Intel Corporation) MD5=8EF427C54497C5F8A7A645990E4278C7 -- C:\WINDOWS\system32\drivers\iaStor.sys
< MD5 for: ISAPNP.SYS >
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.04.14 14:00:00 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp3.cab:isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\dllcache\isapnp.sys
[2008.04.14 07:57:54 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys
[2008.04.14 14:00:00 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\isapnp.sys
< MD5 for: LSASS.EXE >
[2008.04.14 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\dllcache\lsass.exe
[2008.04.14 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe
< MD5 for: NDIS.SYS >
[2008.04.14 14:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\dllcache\ndis.sys
[2008.04.14 14:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
< MD5 for: NETLOGON.DLL >
[2008.04.14 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\dllcache\netlogon.dll
[2008.04.14 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll
< MD5 for: SCECLI.DLL >
[2008.04.14 14:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\dllcache\scecli.dll
[2008.04.14 14:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SMSS.EXE >
[2008.04.14 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\dllcache\smss.exe
[2008.04.14 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe
[2008.04.14 14:00:00 | 000,481,792 | ---- | M] (Microsoft Corporation) MD5=F209B5C79A87A9521DC0BD88B039EEE3 -- C:\WINDOWS\I386\SYSTEM32\SMSS.EXE
< MD5 for: SVCHOST.EXE >
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\dllcache\svchost.exe
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
< MD5 for: TCPIP.SYS >
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.04.14 14:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\dllcache\userinit.exe
[2008.04.14 14:00:00 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
< MD5 for: WINLOGON.EXE >
[2008.04.14 14:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\dllcache\winlogon.exe
[2008.04.14 14:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< MD5 for: WS2_32.DLL >
[2008.04.14 14:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\dllcache\ws2_32.dll
[2008.04.14 14:00:00 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll
< >
< %systemroot%*.* /U /s >
[34 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[42 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\twain_32\*.tmp files -> C:\WINDOWS\twain_32\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2013.01.03 21:24:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Adobe
[2013.10.12 01:11:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP
[2014.05.29 14:26:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AIMP3
[2010.05.20 13:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AnvSoft
[2014.04.29 22:19:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Apple Computer
[2012.04.04 22:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AVG
[2013.03.31 20:35:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Avira
[2013.11.17 01:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer
[2012.01.30 00:12:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\BSplayer Pro
[2014.03.06 23:14:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\CallingID
[2010.05.01 19:10:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\DAEMON Tools Lite
[2010.03.29 22:31:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\GHISLER
[2011.01.21 16:54:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Google
[2014.04.29 22:21:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC
[2010.09.23 17:35:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
[2009.09.01 22:43:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Identities
[2009.09.01 23:02:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\InstallShield
[2010.09.15 14:28:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\iPodder
[2011.09.23 16:33:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\KYL
[2010.01.10 20:21:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Macromedia
[2014.07.18 22:21:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Malwarebytes
[2013.06.07 00:03:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Media Player Classic
[2014.05.29 18:27:28 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Verča\Data aplikací\Microsoft
[2011.10.11 19:32:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MicroST
[2010.01.10 21:26:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Mozilla
[2013.11.17 02:25:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\MPC-HC
[2010.10.08 18:04:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OfficeRecovery
[2011.11.29 20:00:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\olt1
[2010.01.30 22:09:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\OpenOffice.org
[2012.08.27 21:43:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Oracle
[2014.06.30 00:15:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Skype
[2011.08.05 20:47:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\skypePM
[2012.09.28 11:42:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Softplicity
[2010.01.14 17:36:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Sun
[2010.01.24 17:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Template
[2010.05.28 23:45:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1
[2010.05.19 18:38:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\Vso
[2010.01.24 22:52:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\WinRAR
[2011.06.03 13:35:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\zenses
< %APPDATA%\*.exe /s >
[2010.05.19 18:38:25 | 000,087,608 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\inst.exe
[2013.11.05 18:14:29 | 007,615,904 | ---- | M] (AIMP DevTeam) -- C:\Documents and Settings\Verča\Data aplikací\AIMP3\UpdateInstaller.exe
[2009.08.11 22:21:26 | 000,087,552 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 22:21:30 | 000,090,112 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 15:52:04 | 000,697,690 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\AC3 Filter\unins000.exe
[2012.10.11 10:01:20 | 001,175,371 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\FFDShow\unins000.exe
[2010.08.14 11:42:54 | 000,113,152 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 11:45:10 | 000,358,400 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 11:42:06 | 000,137,728 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 16:30:22 | 000,042,305 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\BSplayer\Haali media splitter\uninstall.exe
[2014.02.26 14:20:30 | 000,145,408 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\Sun\Java\jre1.7.0_51\lzma.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2010.05.01 19:11:16 | 000,691,696 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\sptd.sys
< %systemroot%\System32\config\*.sav >
[2009.09.02 00:32:47 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2009.09.02 00:32:47 | 001,069,056 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2009.09.02 00:32:47 | 000,479,232 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
[2014.07.23 18:28:39 | 000,001,158 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"CTFMON.EXE" = C:\WINDOWS\system32\ctfmon.exe -- [2008.04.14 14:00:00 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Eee Docking" = C:\Program Files\ASUS\Eee Docking\Eee Docking.exe -- [2009.07.27 16:58:38 | 000,397,312 | ---- | M] ()
"MSMSGS" = "C:\Program Files\Messenger\msmsgs.exe" /background -- [2008.04.14 08:52:38 | 001,695,232 | ---- | M] (Microsoft Corporation)
"swg" = C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe -- [2014.05.13 23:19:34 | 000,039,408 | ---- | M] (Google Inc.)
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
No captured output from command...
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
No captured output from command...
< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
No captured output from command...
< >
< type c:\boot.ini >> test.txt /c >
No captured output from command...
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2014.07.23 22:04:00 | 000,000,512 | ---- | M] () MD5=9EE5CD48F8A9122385325CCC5A3706FE -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2012.10.18 12:22:05 | 006,068,528 | ---- | M] () -- \Documents and Settings\Verča\Plocha\la música\Fidlar\Fidlar - Shit We Recorded In Our Bedroom (2012)\04 - Crackhead Ted.mp3
< *keygen* /s >
< *AntiWPA* /s >
< *loader* /s >
[2013.11.11 14:39:40 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.gif
[2013.11.11 14:39:40 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.png
[2013.11.11 14:39:40 | 000,006,012 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\normal\loader_15fps.gif
[2013.11.11 14:39:40 | 000,021,956 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\normal\loader_30fps.gif
[2013.11.11 14:39:40 | 000,009,772 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\retina\loader@2x.png
[2014.06.29 22:18:01 | 000,001,980 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Temporary Internet Files\Content.IE5\8FIB0FH5\AdLoader[1].htm
[2014.06.26 19:44:48 | 000,001,980 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Temporary Internet Files\Content.IE5\9UNGF12N\AdLoader[1].htm
[2014.06.26 19:44:48 | 000,017,912 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Temporary Internet Files\Content.IE5\EM2DTCA3\AdLoader-3b8e790904fffcf74f96367cd382e261.min[1].js
[2007.03.27 14:08:53 | 000,000,408 | ---- | M] () -- \Documents and Settings\Verča\Plocha\la música\Peter Doherty\Acoustic Sessions\Uploader.txt
[2014.07.17 23:49:05 | 000,044,112 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.dll
[2014.07.17 23:49:05 | 000,494,672 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.exe
[2014.07.17 23:49:05 | 000,195,152 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloadergui.dll
[2012.08.13 11:52:58 | 000,006,081 | ---- | M] () -- \Program Files\Basis\program\pythonloader.py
[2013.11.12 20:57:17 | 000,005,233 | ---- | M] () -- \Program Files\Basis\program\pythonloader.pyc
[2013.11.12 20:50:18 | 000,020,992 | ---- | M] () -- \Program Files\Basis\program\pythonloader.uno.dll
[2012.08.13 12:04:18 | 000,000,171 | ---- | M] () -- \Program Files\Basis\program\pythonloader.uno.ini
[2013.03.09 08:17:04 | 000,268,440 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2013.03.09 08:17:04 | 000,019,080 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2014.01.06 10:52:30 | 003,244,032 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\gpuploader_i18n.dll
[2014.01.06 10:47:04 | 000,000,702 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_advoptions.fen
[2014.01.06 10:47:04 | 000,000,790 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_debug.fen
[2014.01.06 10:47:04 | 000,000,723 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_download.fen
[2014.01.06 10:47:04 | 000,000,694 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_file_errors.fen
[2014.01.06 10:47:06 | 000,171,541 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_icons.psd
[2014.01.06 10:47:06 | 000,000,634 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_manage_devices.fen
[2014.01.06 10:47:06 | 000,002,283 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_onboard.fen
[2014.01.06 10:47:06 | 000,001,417 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_options.fen
[2014.01.06 10:47:06 | 000,002,109 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_prefs.fen
[2014.01.06 10:47:06 | 000,000,956 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_quota_error1.fen
[2014.01.06 10:47:06 | 000,001,080 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_quota_error2.fen
[2014.01.06 10:47:06 | 000,001,139 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_quota_error_estimate.fen
[2014.01.06 10:47:06 | 000,002,181 | ---- | M] () -- \Program Files\Google\Google+ Auto Backup\runtime\gpuploader_welcome.fen
[2014.01.06 20:47:02 | 000,000,702 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_advoptions.fen
[2014.01.06 20:47:02 | 000,000,790 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_debug.fen
[2014.01.06 20:47:02 | 000,000,723 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_download.fen
[2014.01.06 20:47:02 | 000,000,694 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_file_errors.fen
[2013.02.09 03:39:28 | 000,000,934 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_main.fen
[2014.01.06 20:47:04 | 000,000,634 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_manage_devices.fen
[2014.01.06 20:47:04 | 000,002,283 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_onboard.fen
[2014.01.06 20:47:04 | 000,001,417 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_options.fen
[2014.01.06 20:47:04 | 000,001,330 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_pinwheel_72.png
[2014.01.06 20:47:04 | 000,002,541 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_pinwheel_72x2.png
[2014.01.06 20:47:04 | 000,002,109 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_prefs.fen
[2014.01.06 20:47:04 | 000,000,956 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error1.fen
[2014.01.06 20:47:04 | 000,001,080 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error2.fen
[2014.01.06 20:47:04 | 000,001,139 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_quota_error_estimate.fen
[2014.01.06 20:47:04 | 000,002,181 | ---- | M] () -- \Program Files\Google\Picasa3\runtime\gpuploader_welcome.fen
[2013.11.18 08:37:15 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\BUR\HTC Sync Manager=3=HTC Web how-tos=my\css\images\ajax-loader.gif
[2013.11.18 08:37:32 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\CSY\HTC Sync Manager=3=HTC Web how-tos=cs\css\images\ajax-loader.gif
[2013.11.18 08:37:36 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\DAN\HTC Sync Manager=3=HTC Web how-tos=da\css\images\ajax-loader.gif
[2013.11.18 08:37:41 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\DEU\HTC Sync Manager=3=HTC Web how-tos=de\css\images\ajax-loader.gif
[2013.11.18 08:37:45 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\ENU\HTC Sync Manager=3=HTC Web how-tos=en-US\css\images\ajax-loader.gif
[2013.11.18 08:37:50 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\ESP\HTC Sync Manager=3=HTC Web how-tos=es-ES\css\images\ajax-loader.gif
[2013.11.18 08:37:55 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\FRA\HTC Sync Manager=3=HTC Web how-tos=fr-FR\css\images\ajax-loader.gif
[2013.11.18 08:37:19 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\CHS\HTC Sync Manager=3=HTC Web how-tos=zh-CN\css\images\ajax-loader.gif
[2013.11.18 08:37:25 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\CHT\HTC Sync Manager=3=HTC Web how-tos=zh-TW\css\images\ajax-loader.gif
[2013.11.18 08:38:00 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\ITA\HTC Sync Manager=3=HTC Web how-tos=it\css\images\ajax-loader.gif
[2013.11.18 08:38:04 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\JPN\HTC Sync Manager=3=HTC Web how-tos=ja\css\images\ajax-loader.gif
[2013.11.18 08:38:09 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\NOR\HTC Sync Manager=3=HTC Web how-tos=no\css\images\ajax-loader.gif
[2013.11.18 08:38:14 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\PLK\HTC Sync Manager=3=HTC Web how-tos=pl\css\images\ajax-loader.gif
[2013.11.18 08:38:18 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\PTG\HTC Sync Manager=3=HTC Web how-tos=pt-PT\css\images\ajax-loader.gif
[2013.11.18 08:38:23 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\RUS\HTC Sync Manager=3=HTC Web how-tos=ru\css\images\ajax-loader.gif
[2013.11.18 08:38:28 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\App\SVE\HTC Sync Manager=3=HTC Web how-tos=sv\css\images\ajax-loader.gif
[2013.11.18 08:38:29 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\Fota\ENU\CSS\images\ajax-loader.gif
[2013.11.18 08:38:31 | 000,000,847 | ---- | M] () -- \Program Files\HTC\HTC Sync Manager\ui\Help\Fota\ESP\CSS\images\ajax-loader.gif
[2011.10.13 17:21:58 | 000,005,987 | ---- | M] () -- \Program Files\Microsoft\BingBar\scripts\io\downloader.js
[2013.04.12 15:17:27 | 000,005,437 | ---- | M] () -- \Program Files\OpenOffice.org 3\Basis\program\pythonloader.pyc
[2013.11.12 20:51:52 | 000,029,696 | ---- | M] () -- \Program Files\URE\bin\javaloader.uno.dll
[2012.08.13 11:12:36 | 000,003,868 | ---- | M] () -- \Program Files\URE\java\unoloader.jar
[2009.06.02 02:16:58 | 000,114,688 | ---- | M] () -- \Program Files\WinRAR\RarExtLoader.exe
[2008.04.14 14:00:00 | 000,017,421 | ---- | M] () -- \WINDOWS\I386\DMLOADER.DL_
[2008.04.14 14:00:00 | 000,115,367 | ---- | M] () -- \WINDOWS\I386\OSLOADER.EX_
[2008.04.14 14:00:00 | 000,133,029 | ---- | M] () -- \WINDOWS\I386\OSLOADER.NT_
[2010.03.24 19:12:34 | 000,018,264 | R--- | M] () -- \WINDOWS\Installer\$PatchCache$\Managed\00004119D11000000000000000F01FEC\14.0.4763\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2010.03.24 19:12:34 | 000,249,680 | R--- | M] () -- \WINDOWS\Installer\$PatchCache$\Managed\00004119D11000000000000000F01FEC\14.0.4763\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.923C1899_09AE_418B_B39D_A7A9EB6A7951
[2014.07.21 19:51:43 | 000,071,894 | R--- | M] () -- \WINDOWS\Installer\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}\GPUploader.exe
[2008.04.14 14:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[2008.04.14 14:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll
< *minodlogin* /s >
< *tnod* /s >
< *AutoKMS* /s >
< *activator* /s >
< *serial* /s >
[2014.01.27 15:38:17 | 000,000,024 | ---- | M] () -- \Documents and Settings\Verča\Local Settings\Data aplikací\Google\Picasa2\cache\cacheindex_serial.pmp
[2014.02.13 22:57:42 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30214.0\System.Runtime.Serialization.dll
[2014.04.12 09:30:20 | 001,164,288 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30214.0\System.Runtime.Serialization.ni.dll
[2012.09.27 01:12:26 | 000,970,752 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2014.02.14 10:22:23 | 000,131,072 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.01.10 07:58:25 | 000,970,752 | ---- | M] () -- \WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014.02.13 16:07:50 | 000,311,296 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\6c29ee2bedfe88dcd66993f1af135ad8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.02.13 15:20:29 | 002,345,472 | ---- | M] () -- \WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\9860da66bf0219612908e7412b0a6e2e\System.Runtime.Serialization.ni.dll
[2008.04.14 14:00:00 | 000,024,957 | ---- | M] () -- \WINDOWS\I386\DPSERIAL.DL_
[2008.04.14 14:00:00 | 000,030,259 | ---- | M] () -- \WINDOWS\I386\SERIAL.SY_
[2008.04.14 14:00:00 | 000,006,549 | ---- | M] () -- \WINDOWS\I386\SERIALUI.DL_
[2008.07.25 12:17:00 | 000,131,072 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2012.09.27 01:12:26 | 000,970,752 | ---- | M] () -- \WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2008.04.14 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dpserial.dll
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\serialui.dll
[2008.04.14 14:00:00 | 000,053,520 | ---- | M] () -- \WINDOWS\system32\dllcache\dpserial.dll
[2008.04.14 14:00:00 | 000,014,336 | ---- | M] () -- \WINDOWS\system32\dllcache\serialui.dll
[2008.04.14 14:00:00 | 000,064,256 | ---- | M] () -- \WINDOWS\system32\drivers\serial.sys
< *w7lxe* /s >
========== Files - Unicode (All) ==========
[2013.11.21 00:07:30 | 105,435,909 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\熭湧咜;
[2013.11.21 00:07:30 | 105,435,909 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\熭湧咜;
[2013.11.17 15:08:20 | 104,641,146 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\誻놐咜;
[2013.11.17 15:08:20 | 104,641,146 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\誻놐咜;
[2013.11.07 18:29:36 | 103,000,967 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\栘깯咜;
[2013.11.07 18:29:36 | 103,000,967 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\栘깯咜;
[2013.11.04 10:15:50 | 104,845,822 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�횄咜;
[2013.11.04 10:15:50 | 104,845,822 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�횄咜;
[2013.10.31 22:32:49 | 104,433,978 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\멒咜;
[2013.10.31 22:32:49 | 104,433,978 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\멒咜;
[2013.10.28 16:32:45 | 103,746,026 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ﰠ䩁咜;
[2013.10.28 16:32:45 | 103,746,026 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ﰠ䩁咜;
[2013.10.18 10:02:14 | 101,748,955 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㊎Ꞟ咜;
[2013.10.18 10:02:14 | 101,748,955 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㊎Ꞟ咜;
[2013.10.14 21:20:25 | 100,975,419 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\툇쨗咜;
[2013.10.14 21:20:25 | 100,975,419 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\툇쨗咜;
[2013.10.11 15:21:21 | 100,474,618 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ϩ楌咜;
[2013.10.11 15:21:21 | 100,474,618 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ϩ楌咜;
[2013.10.08 09:19:28 | 099,836,383 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\〰咜;
[2013.10.08 09:19:28 | 099,836,383 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\〰咜;
[2013.10.04 20:03:07 | 099,288,311 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�ᒟ咜;
[2013.10.04 20:03:07 | 099,288,311 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\�ᒟ咜;
[2013.09.28 05:04:34 | 098,372,650 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⣆⮽咜;
[2013.09.28 05:04:34 | 098,372,650 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⣆⮽咜;
[2013.09.24 23:05:14 | 097,540,783 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\銖�咜;
[2013.09.24 23:05:14 | 097,540,783 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\銖�咜;
[2013.09.21 17:05:07 | 098,547,399 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\짪퓳咜;
[2013.09.21 17:05:07 | 098,547,399 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\짪퓳咜;
[2013.09.18 11:06:52 | 098,123,923 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䳼䆙咜;
[2013.09.18 11:06:52 | 098,123,923 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䳼䆙咜;
========== Alternate Data Streams ==========
@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users\Data aplikací\Temp:0B4227B4
< End of report >
Re: pomalý notebook



Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)
Kód: Vybrat vše
:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]
:services
BBUpdate
BBSvc
gupdate
SkypeUpdate
AdobeFlashPlayerUpdateSvc
gupdatem
gusvc
:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml
:otl
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-3283330612-449700776-2936646239-1005\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[2012.08.25 23:41:34 | 000,086,309 | ---- | M] () (No name found) -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{82BC70E0-FE85-11DA-A899-3A655C103D30}.xpi
[2010.01.10 21:54:34 | 000,002,061 | ---- | M] () -- C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\VERÄŤA\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\JAGRP2Z2.DEFAULT\EXTENSIONS\{82BC70E0-FE85-11DA-A899-3A655C103D30}.XPI
[2014.07.18 22:21:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Verča\Data aplikací\Malwarebytes
[2014.07.18 22:21:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2014.07.18 22:21:21 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.11.10 00:02:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\avg9
[2014.03.11 23:25:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\APN
[2012.04.04 22:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Verča\Data aplikací\AVG
[34 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[42 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\twain_32\*.tmp files -> C:\WINDOWS\twain_32\*.tmp -> ]
@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users\Data aplikací\Temp:0B4227B4
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}"=-
"{8dcb7100-df86-4384-8842-8fa844297b3f}"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"OfficeSubscriptionAgent"=-
"BCSSync"=-
"Adobe ARM"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=-
"swg"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: pomalý notebook
All processes killed
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 0 bytes
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: NetworkService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Verča
->Temp folder emptied: 54094073 bytes
->Temporary Internet Files folder emptied: 3767072 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 343008396 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 6230 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1965812 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 427204 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1181152553 bytes
Total Files Cleaned = 1 511,00 mb
[EMPTYFLASH]
User: All Users
User: Default User
->Flash cache emptied: 0 bytes
User: LocalService
User: NetworkService
User: Verča
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service BBUpdate stopped successfully!
Service BBUpdate deleted successfully!
Service BBSvc stopped successfully!
Service BBSvc deleted successfully!
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
Service gusvc stopped successfully!
Service gusvc deleted successfully!
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
C:\WINDOWS\tasks\Adobe Flash Player Updater.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml moved successfully.
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry key HKEY_USERS\S-1-5-21-3283330612-449700776-2936646239-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-3283330612-449700776-2936646239-1005\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{82BC70E0-FE85-11DA-A899-3A655C103D30}.xpi moved successfully.
File C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml not found.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Logs folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Configuration folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware\Quarantine folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware\Logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware\Configuration folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes folder moved successfully.
C:\Program Files\Malwarebytes' Anti-Malware folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update\prepare\temp folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update\prepare folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update\backup folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Temp folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\scanlogs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Log folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue\TEMP folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue\OUT folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue\ACTIVE folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Log folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Dumps folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\CfgAll folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Cfg folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\AvgApi folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\AvgAm folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\admincli folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\APN\APN-Stub folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\APN folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\Rescue\PC Tuneup 2011 folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\Rescue folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\PC Tuneup\User Reports folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\PC Tuneup\Logs folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\PC Tuneup folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP11A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP11D.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP121.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP12C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP156.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP176.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP196.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1AE.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1B7.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1B8.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1BA.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1BD.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1D6.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1D7.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1E6.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1F2.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP29.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP29C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2A3.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP316.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP358.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP360.tmp\PresentationCore.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP360.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3A0.tmp\PresentationFramework.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3A0.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3D4.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP42F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP445.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP460.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4B.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP64.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP93.tmp folder deleted successfully.
C:\WINDOWS\Installer\MSI10.tmp deleted successfully.
C:\WINDOWS\Installer\MSI10E.tmp deleted successfully.
C:\WINDOWS\Installer\MSI11.tmp deleted successfully.
C:\WINDOWS\Installer\MSI14.tmp deleted successfully.
C:\WINDOWS\Installer\MSI146.tmp deleted successfully.
C:\WINDOWS\Installer\MSI164.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1BA.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI21.tmp deleted successfully.
C:\WINDOWS\Installer\MSI236.tmp deleted successfully.
C:\WINDOWS\Installer\MSI28.tmp deleted successfully.
C:\WINDOWS\Installer\MSI289.tmp deleted successfully.
C:\WINDOWS\Installer\MSI295.tmp deleted successfully.
C:\WINDOWS\Installer\MSI2B4.tmp deleted successfully.
C:\WINDOWS\Installer\MSI35.tmp deleted successfully.
C:\WINDOWS\Installer\MSI36.tmp deleted successfully.
C:\WINDOWS\Installer\MSI45.tmp deleted successfully.
C:\WINDOWS\Installer\MSI4C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI4F.tmp deleted successfully.
C:\WINDOWS\Installer\MSI507.tmp deleted successfully.
C:\WINDOWS\Installer\MSI55B.tmp deleted successfully.
C:\WINDOWS\Installer\MSI56.tmp deleted successfully.
C:\WINDOWS\Installer\MSI573.tmp deleted successfully.
C:\WINDOWS\Installer\MSI58.tmp deleted successfully.
C:\WINDOWS\Installer\MSI5D.tmp deleted successfully.
C:\WINDOWS\Installer\MSI6E.tmp deleted successfully.
C:\WINDOWS\Installer\MSI76.tmp deleted successfully.
C:\WINDOWS\Installer\MSI7A.tmp deleted successfully.
C:\WINDOWS\Installer\MSI81.tmp deleted successfully.
C:\WINDOWS\Installer\MSI83.tmp deleted successfully.
C:\WINDOWS\Installer\MSI85.tmp deleted successfully.
C:\WINDOWS\Installer\MSI8F.tmp deleted successfully.
C:\WINDOWS\Installer\MSI96.tmp deleted successfully.
C:\WINDOWS\Installer\MSIA3.tmp deleted successfully.
C:\WINDOWS\Installer\MSIB5.tmp deleted successfully.
C:\WINDOWS\Installer\MSIBA.tmp deleted successfully.
C:\WINDOWS\Installer\MSIC2.tmp deleted successfully.
C:\WINDOWS\Installer\MSIC9.tmp deleted successfully.
C:\WINDOWS\Installer\MSID3.tmp deleted successfully.
C:\WINDOWS\Installer\MSID4.tmp deleted successfully.
C:\WINDOWS\Installer\MSIE1.tmp deleted successfully.
C:\WINDOWS\Installer\MSIE2.tmp deleted successfully.
C:\WINDOWS\twain_32\hpqgnds2.tmp deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\Temp:0B4227B4 deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\OfficeSubscriptionAgent deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\BCSSync deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr\ deleted successfully.
OTL by OldTimer - Version 3.2.69.0 log created on 07262014_000526
Files\Folders moved on Reboot...
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
Velikost plochy: 39,5 GB
Po restartu se mi na ploše zobrazilo několik souborů začínajících na .~lock.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 0 bytes
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: NetworkService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Verča
->Temp folder emptied: 54094073 bytes
->Temporary Internet Files folder emptied: 3767072 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 343008396 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 6230 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1965812 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 427204 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1181152553 bytes
Total Files Cleaned = 1 511,00 mb
[EMPTYFLASH]
User: All Users
User: Default User
->Flash cache emptied: 0 bytes
User: LocalService
User: NetworkService
User: Verča
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service BBUpdate stopped successfully!
Service BBUpdate deleted successfully!
Service BBSvc stopped successfully!
Service BBSvc deleted successfully!
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
Service gusvc stopped successfully!
Service gusvc deleted successfully!
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
C:\WINDOWS\tasks\Adobe Flash Player Updater.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml moved successfully.
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry key HKEY_USERS\S-1-5-21-3283330612-449700776-2936646239-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-3283330612-449700776-2936646239-1005\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\extensions\{82BC70E0-FE85-11DA-A899-3A655C103D30}.xpi moved successfully.
File C:\Documents and Settings\Verča\Data aplikací\Mozilla\Firefox\Profiles\jagrp2z2.default\searchplugins\qipsearch.xml not found.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Logs folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\Malwarebytes folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware\Configuration folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes' Anti-Malware folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware\Quarantine folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware\Logs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware\Configuration folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes\Malwarebytes Anti-Malware folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Malwarebytes folder moved successfully.
C:\Program Files\Malwarebytes' Anti-Malware folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update\prepare\temp folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update\prepare folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update\backup folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\update folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Temp folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\scanlogs folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Log folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue\TEMP folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue\OUT folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue\ACTIVE folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Queue folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc\Log folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\emc folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Dumps folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\CfgAll folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\Cfg folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\AvgApi folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\AvgAm folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9\admincli folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\avg9 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\APN\APN-Stub folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\APN folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\Rescue\PC Tuneup 2011 folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\Rescue folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\PC Tuneup\User Reports folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\PC Tuneup\Logs folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG\PC Tuneup folder moved successfully.
C:\Documents and Settings\Verča\Data aplikací\AVG folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP11A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP11D.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP121.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP12C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP156.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP176.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP196.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1AE.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1B7.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1B8.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1BA.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1BD.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1D6.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1D7.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1E.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1E6.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1F2.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP29.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP29C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2A3.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP316.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP358.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP360.tmp\PresentationCore.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP360.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3A0.tmp\PresentationFramework.dll deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3A0.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3D4.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP42F.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP445.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP460.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4B.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5A.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5C.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP64.tmp folder deleted successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP93.tmp folder deleted successfully.
C:\WINDOWS\Installer\MSI10.tmp deleted successfully.
C:\WINDOWS\Installer\MSI10E.tmp deleted successfully.
C:\WINDOWS\Installer\MSI11.tmp deleted successfully.
C:\WINDOWS\Installer\MSI14.tmp deleted successfully.
C:\WINDOWS\Installer\MSI146.tmp deleted successfully.
C:\WINDOWS\Installer\MSI164.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1BA.tmp deleted successfully.
C:\WINDOWS\Installer\MSI1C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI21.tmp deleted successfully.
C:\WINDOWS\Installer\MSI236.tmp deleted successfully.
C:\WINDOWS\Installer\MSI28.tmp deleted successfully.
C:\WINDOWS\Installer\MSI289.tmp deleted successfully.
C:\WINDOWS\Installer\MSI295.tmp deleted successfully.
C:\WINDOWS\Installer\MSI2B4.tmp deleted successfully.
C:\WINDOWS\Installer\MSI35.tmp deleted successfully.
C:\WINDOWS\Installer\MSI36.tmp deleted successfully.
C:\WINDOWS\Installer\MSI45.tmp deleted successfully.
C:\WINDOWS\Installer\MSI4C.tmp deleted successfully.
C:\WINDOWS\Installer\MSI4F.tmp deleted successfully.
C:\WINDOWS\Installer\MSI507.tmp deleted successfully.
C:\WINDOWS\Installer\MSI55B.tmp deleted successfully.
C:\WINDOWS\Installer\MSI56.tmp deleted successfully.
C:\WINDOWS\Installer\MSI573.tmp deleted successfully.
C:\WINDOWS\Installer\MSI58.tmp deleted successfully.
C:\WINDOWS\Installer\MSI5D.tmp deleted successfully.
C:\WINDOWS\Installer\MSI6E.tmp deleted successfully.
C:\WINDOWS\Installer\MSI76.tmp deleted successfully.
C:\WINDOWS\Installer\MSI7A.tmp deleted successfully.
C:\WINDOWS\Installer\MSI81.tmp deleted successfully.
C:\WINDOWS\Installer\MSI83.tmp deleted successfully.
C:\WINDOWS\Installer\MSI85.tmp deleted successfully.
C:\WINDOWS\Installer\MSI8F.tmp deleted successfully.
C:\WINDOWS\Installer\MSI96.tmp deleted successfully.
C:\WINDOWS\Installer\MSIA3.tmp deleted successfully.
C:\WINDOWS\Installer\MSIB5.tmp deleted successfully.
C:\WINDOWS\Installer\MSIBA.tmp deleted successfully.
C:\WINDOWS\Installer\MSIC2.tmp deleted successfully.
C:\WINDOWS\Installer\MSIC9.tmp deleted successfully.
C:\WINDOWS\Installer\MSID3.tmp deleted successfully.
C:\WINDOWS\Installer\MSID4.tmp deleted successfully.
C:\WINDOWS\Installer\MSIE1.tmp deleted successfully.
C:\WINDOWS\Installer\MSIE2.tmp deleted successfully.
C:\WINDOWS\twain_32\hpqgnds2.tmp deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\Temp:0B4227B4 deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{2318C2B1-4965-11d4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\OfficeSubscriptionAgent deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\BCSSync deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr\ deleted successfully.
OTL by OldTimer - Version 3.2.69.0 log created on 07262014_000526
Files\Folders moved on Reboot...
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
Velikost plochy: 39,5 GB
Po restartu se mi na ploše zobrazilo několik souborů začínajících na .~lock.
Re: pomalý notebook
Mozna se odkryly skryte a systemove soubory a slozkyver3 píše:Po restartu se mi na ploše zobrazilo několik souborů začínajících na .~lock.
http://www.tipypropc.cz/jak-v-pruzkumni ... e-soubory/
Akorat vy je samozrejme misto zobrazeni nechate skryt.
Dejte vedet, jestli to zabralo.

vyosek píše:T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!
(Pokud je v pc vice uzivatelskych uctu, pouzijte program i v nich)

Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: pomalý notebook
Zobrazené soubory vypadaly takto. Když jsem chtěla jeden otevřít, všechny zmizely.
Zbytek provedu.
Zbytek provedu.
- Přílohy
-
- aa.JPG (65.8 KiB) Zobrazeno 1586 x
Re: pomalý notebook
Obcas to tak udela, neni to zadny problem 

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: pomalý notebook
Malem jsem zapomnel!!!
Velikost plochy by nemela preshovat 200 - 300 MB! Brzdi to chod pc. Cili ji trosku uklidte a na plochu dejte jen zastupce. Jen pozor na obcasnou chybu, ze uzivatele maji na plose slozku, v ni dalsi a v ni dalsi a do te to schovaji. To je sice hezke, ale plochu to nezmensi, jen je to v jinem supliku 
ver3 píše:Velikost plochy: 39,5 GB


Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: pomalý notebook
O té ploše jsem neměla tušení
Jinak notebook se zdá být rychlejší, ale hláška o restartování vyskakuje pořád.
Moc děkuju za pomoc

Jinak notebook se zdá být rychlejší, ale hláška o restartování vyskakuje pořád.
Moc děkuju za pomoc

Re: pomalý notebook
Jaka hlaska o restartovani? Muzete ji vyfotit a poslat?ver3 píše:Jinak notebook se zdá být rychlejší, ale hláška o restartování vyskakuje pořád.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: pomalý notebook
I po restartování se hláška zobrazuje znovu. Každý den..
- Přílohy
-
- Bez názvu.JPG (16.04 KiB) Zobrazeno 1559 x
Re: pomalý notebook
Zakazte automaticke aktualizace. Pro XP uz stejne zadne nove nevyjdou. Napiste, jestli se to porad objevuje 

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: pomalý notebook
Hloupý dotaz, ale kde se to dělá, prosím?
Re: pomalý notebook
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: pomalý notebook
Moc děkuju, vypadá to, že je to pryč.
Re: pomalý notebook
A je tedy vse v poradku a muzem tema uzavrit? Nebo jeste neco zlobi?
Jinak nemate zac!
Jinak nemate zac!

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).