Tak jsem chvíli zápasil s Comodem (když byl vypnutý ten FRST nešlo spusti, s Comodem jsem povolil spouštění a pak se to povedlo), takže:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:11-07-2014
Ran by Jirka (administrator) on DOMECEK on 11-07-2014 20:33:53
Running from C:\Documents and Settings\Jirka\Plocha
Platform: Microsoft Windows XP Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(Crystal Rich Ltd) C:\Program Files\USB Safely Remove\USBSRService.exe
(COMODO) C:\Program Files\Comodo\COMODO Internet Security\cmdagent.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(Ashampoo Development GmbH & Co. KG) C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner2.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Alexandr Irza) C:\Program Files\Volume2 - bez instalace - super regulace hlasitosti\Volume2.exe
() C:\Program Files\Ditto\Ditto.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
(Crystal Rich Ltd) C:\Program Files\USB Safely Remove\USBSafelyRemove.exe
(3M) C:\Program Files\3M\PSNLite\PsnLite.exe
(3M) C:\PROGRA~1\3M\PSNLite\PSNGive.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Broadcom Corporation.) C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Teruten) C:\WINDOWS\system32\FsUsbExService.Exe
(BinarySense, Inc.) C:\Program Files\Common Files\BinarySense\hldasvc.exe
(BinarySense, Inc.) C:\Program Files\Common Files\BinarySense\hldasvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Seagate Technology LLC) C:\Program Files\Maxtor\Sync\SyncServices.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
(Nalpeiron Ltd.) C:\WINDOWS\system32\nlssrv32.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(COMODO) C:\Program Files\Comodo\COMODO Internet Security\cistray.exe
(COMODO) C:\Program Files\Comodo\COMODO Internet Security\cis.exe
(forum.viry.cz) C:\Documents and Settings\Jirka\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [1386776 2011-06-24] (Logitech, Inc.)
HKLM\...\Run: [IntelWireless] => c:\program files\common files\intel\wirelesscommon\ifrmewrk.exe [1191936 2008-10-02] (Intel(R) Corporation)
HKLM\...\Run: [IntelZeroConfig] => c:\program files\intel\wifi\bin\zcfgsvc.exe [1368064 2008-10-02] (Intel(R) Corporation)
HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1225944 2014-03-25] (COMODO)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [750160 2014-07-06] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Ashampoo WinOptimizer Live-Tuner2] => C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner2.exe [3516808 2014-05-06] (Ashampoo Development GmbH & Co. KG)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation)
HKLM\...\Winlogon: [UIHost] C:\WINDOWS\system32\logonui.exe [x ] ()
HKLM\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 0
HKLM\...\Policies\Explorer: [NoResolveSearch] 1
HKLM\...\Policies\Explorer: [NoViewContextMenu] 0
HKLM\...\Policies\Explorer: [NoFind] 0
HKU\.DEFAULT\...\Run: [DWQueuedReporting] => C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [434080 2011-07-27] (Microsoft Corporation)
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Run: [ShowBatteryBar] => C:\Program Files\BatteryBar\ShowBatteryBar.exe [90624 2009-05-28] ()
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Run: [Cookienator] => C:\Program Files\Cookienator\cookienator.exe [1333472 2009-10-19] (CodeFromThe70s.org)
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Run: [Volume2] => C:\Program Files\Volume2 - bez instalace - super regulace hlasitosti\Volume2.exe [4710912 2013-02-10] (Alexandr Irza)
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner.exe [4624152 2014-06-24] (Piriform Ltd)
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Run: [Ditto] => C:\Program Files\Ditto\Ditto.exe [1433200 2012-11-08] ()
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Run: [USB Safely Remove] => C:\Program Files\USB Safely Remove\USBSafelyRemove.exe [2042368 2012-05-07] (Crystal Rich Ltd)
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Policies\Explorer: [NoSharedDocuments] 0x01000000
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Policies\Explorer: [MaxRecentDocs] 8
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Policies\Explorer: [NoRecentDocsNetHood] 1
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Policies\Explorer: [GreyMSIAds] 1
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Policies\Explorer: [NoThumbnailCache] 1
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 0
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Policies\Explorer: [NoInstrumentation] 1
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Policies\Explorer: [NoCDBurning] 1
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\Policies\Explorer: [NoUserNameInStartMenu] 1
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\MountPoints2: {1cd6cb73-3ec2-11e0-8bbf-0016d38e596a} - C:\Documents and Settings\All Users\Data aplikací\U3\U3Launcher\LaunchU3.exe -a
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\MountPoints2: {a1f7ea7e-31e0-11df-8992-0016d38e596a} - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Win_Tool.exe
HKU\S-1-5-21-3419589482-1655879827-2551107026-1005\...\MountPoints2: {d9200898-ec07-11de-8905-0016d38e596a} - E:\LaunchU3.exe -a
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Post-it® Software Notes Lite.lnk
ShortcutTarget: Post-it® Software Notes Lite.lnk -> C:\Program Files\3M\PSNLite\PsnLite.exe (3M)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.centrum.cz/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.pctools.com/mrc/fix_homepage/
HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch =
http://ie.search.msn.com/{SUB_RFC1766}/ ... chcust.htm
HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant =
http://ie.search.msn.com/{SUB_RFC1766}/ ... chcust.htm
URLSearchHook: HKCU - (No Name) - {472734EA-242A-422b-ADF8-83D1E48CC825} - No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {B60D2333-63B1-4D35-AA13-2B5E497CB1E2} URL =
http://www.google.cz/search?q={searchTe ... 1I7GGLD_cs
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {3A40E547-20FD-44a2-94D0-1C98342D1507} URL =
http://search.daum.net/search?nil_profi ... earchTerms}
SearchScopes: HKCU - {B60D2333-63B1-4D35-AA13-2B5E497CB1E2} URL =
http://www.google.cz/search?q={searchTe ... 1I7GGLD_cs
BHO: PDFXChange 2012 - {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} - C:\Program Files\Tracker Software\PDF-XChange 5\PXCIEaddin5.dll (Tracker Software Products (Canada) Ltd.)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Mouse Gestures - {A6A49249-57AE-4295-8D4D-18A9502C7D8E} - C:\Program Files\Internet Explorer\Plugins\Drowse\MouseGestures.dll (Drowse)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - PDFXChange 2012 - {42DFA04F-0F16-418e-B80C-AB97A5AFAD3A} - C:\Program Files\Tracker Software\PDF-XChange 5\PXCIEaddin5.dll (Tracker Software Products (Canada) Ltd.)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/fl ... rashim.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: hddlife - {BD758015-47D9-477A-8873-4B688A2BC0E2} - C:\Program Files\Common Files\BinarySense\hlAPP.dll (BinarySense, Inc.)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler: x-mem1 - {C3719F83-7EF8-4BA0-89B0-3360C7AFB7CC} - C:\WINDOWS\system32\wowctl2.dll (EzTools Software)
Filter: text/x-mrml - {C51721BE-858B-4A66-A8BF-D2882FF49820} - C:\Program Files\Common Files\A&W\MidRadio.ocx (YAMAHA CORPORATION)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [115440 2013-05-08] (SuperAdBlocker.com)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\..\Interfaces\{6E156046-EB06-491B-9660-18455545FF97}: [NameServer]156.154.70.25,156.154.71.25
Tcpip\..\Interfaces\{AE294415-6BFC-4F2B-A232-FE3932AD9B4F}: [NameServer]156.154.70.25,156.154.71.25
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage:
http://www.google.com
FF Keyword.URL:
https://www.google.com/search
FF NetworkProxy: "ftp", "221.130.17.62"
FF NetworkProxy: "ftp_port", 80
FF NetworkProxy: "gopher", "221.130.17.62"
FF NetworkProxy: "gopher_port", 80
FF NetworkProxy: "http", "221.130.17.62"
FF NetworkProxy: "http_port", 80
FF NetworkProxy: "type", 0
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @garmin.com/GpsControl - C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin HKCU: @adobe.com/FlashPlayer - C:\Program Files\Common Files\Adobe\OOBE\PDApp\core\NPSWF32.dll ()
FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin HKCU: @stickypassword.com/Sticky Password - C:\Program Files\Sticky Password\npspAutofill.dll (Lamantine Software a.s.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npLegitCheckPlugin.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF SearchPlugin: C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\searchplugins\gmailto.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: AutoPager - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\autopager@mozilla(2).org [2010-08-19]
FF Extension: Virtus Search Opt-in - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\extension@virtusdesigns(2).com [2010-08-19]
FF Extension: Xmarks - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\foxmarks@kei(2).com [2010-08-18]
FF Extension: Vacuum Places Improved - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\
VacuumPlacesImproved@lultimouomo-gmail.com [2011-01-22]
FF Extension: Garmin Communicator - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2011-10-15]
FF Extension: Aero Fox XL - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}(2) [2010-08-19]
FF Extension: NoScript - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}(2) [2008-11-23]
FF Extension: DownloadHelper - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2012-10-07]
FF Extension: DownloadHelper - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}(2) [2008-11-23]
FF Extension: Adblock Plus - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}(2) [2010-08-19]
FF Extension: Cache Status - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\
cache@status.org.xpi [2011-11-18]
FF Extension: FireGestures - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\
firegestures@xuldev.org.xpi [2011-03-29]
FF Extension: Save as PDF - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\
save-as-pdf-ff@pdfcrowd.com.xpi [2011-10-02]
FF Extension: Strata RELOADED - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\
stratareloaded@addons.mozilla.org.xpi [2011-03-31]
FF Extension: AniWeather - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{4176DFF4-4698-11DE-BEEB-45DA55D89593}.xpi [2011-03-29]
FF Extension: Stylish - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2011-10-16]
FF Extension: Download Statusbar - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi [2011-10-30]
FF Extension: Tab Mix Plus - C:\Documents and Settings\Jirka\Data aplikací\Mozilla\Firefox\Profiles\nhc1izuk.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2011-05-11]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-07-11]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-07-11]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2010-12-05]
FF HKLM\...\Firefox\Extensions: [{cb84136f-9c44-433a-9048-c5cd9df1dc16}] - C:\Program Files\PC Tools Security\BDT\Firefox
FF HKLM\...\Firefox\Extensions: [
jqs@sun.com] - C:\Program Files\Audacity\help\manual\m\images\f\ff
FF Extension: No Name - C:\Program Files\Audacity\help\manual\m\images\f\ff [2012-07-06]
FF HKCU\...\Firefox\Extensions: [{54affe52-8223-453b-be1e-2fe2e250045c}] - C:\Documents and Settings\Jirka\Data aplikací\Lamantine\Sticky Password\spAutofill
FF Extension: Sticky Password Autofill Engine - C:\Documents and Settings\Jirka\Data aplikací\Lamantine\Sticky Password\spAutofill [2013-12-06]
Chrome:
=======
CHR HomePage:
https://www.google.cz/
CHR StartupUrls: "
https://www.google.cz/"
CHR DefaultSearchURL:
http://www.google.com/search?q={searchT ... utf-8&aq=t
CHR DefaultNewTabURL:
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (Microsoft® Windows Media Player Firefox Plugin) - C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation)
CHR Plugin: (Windows Genuine Advantage) - C:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll (Microsoft Corporation)
CHR Plugin: (2007 Microsoft Office system) - C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
CHR Plugin: (PDF-XChange Viewer) - C:\Program Files\Mozilla Firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
CHR Plugin: (QuickTime Plug-in 7.6.4) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.4) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.4) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.4) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.4) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.4) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.4) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (Pokki Download Helper) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Pokki\Download Helper\npPokkiDownloadHelper.1.1.1.76.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files\Common Files\Adobe\OOBE\PDApp\core\NPSWF32.dll ()
CHR Plugin: (Garmin Communicator Plug-In) - C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U5) - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll No File
CHR Plugin: (Sticky Password) - C:\Program Files\Sticky Password\npspAutofill.dll (Lamantine Software a.s.)
CHR Plugin: (Shockwave for Director) - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll No File
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.50.255) - C:\WINDOWS\system32\npDeployJava1.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (Google Translate) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2013-12-06]
CHR Extension: (UndoCloseTab) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\agoafanmgjplfjeiabopkembipjbpnac [2013-04-10]
CHR Extension: (Lucidchart Diagramy - On-line) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apboafhkiegglekeafbckfjldecefkhn [2013-04-10]
CHR Extension: (YouTube) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-04-10]
CHR Extension: (Facebook) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2013-04-10]
CHR Extension: (Chrome YouTube Downloader) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cbdjiinahkdjdcdlgfimlcolkjpbooja [2013-04-10]
CHR Extension: (History Cleaner) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ccjmkmciadmabfgdcohcmljiikjdhdei [2013-04-10]
CHR Extension: (Puk-Puk) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cngkcldnnppckgbmndaccoffaikjbemc [2013-11-02]
CHR Extension: (Photo Zoom for Facebook) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi [2013-04-10]
CHR Extension: (Sticky Password Autofill Engine) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\ggepjhbdgijjkbelnggboeoehacbphed [2014-07-09]
CHR Extension: (AdBlock) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-04-10]
CHR Extension: (Feedly - News, Blogs and Youtube) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\hipbfijinpcgfogaopmgehiegacbhmob [2013-05-03]
CHR Extension: (Google Keep – poznámky a seznamy) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2013-05-03]
CHR Extension: (Online PDF Tools) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\jddfpnmfhodaljeelokfceepbeapgbdn [2013-04-10]
CHR Extension: (Downloads) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\jfchnphgogjhineanplmfkofljiagjfb [2013-04-10]
CHR Extension: (Media file downloader) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\khbkckdkhakengfjmejmiabaakdlhaab [2013-04-10]
CHR Extension: (Google Play) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2013-04-10]
CHR Extension: (Evernote Web) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2013-04-10]
CHR Extension: (Ge.tt) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nflehelhgpjjhfiigceaplnmgiblnclo [2013-04-10]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-25]
CHR Extension: (Prohlížeč dokumentů ve formátu PDF/PowerPoint (od společnosti Google)) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn [2013-04-10]
CHR Extension: (Checker Plus for Gmail™) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2014-06-05]
CHR Extension: (Picasa) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2013-04-10]
CHR Extension: (rádio) - C:\Documents and Settings\Jirka\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\plaapjbgohfgkalmmjpakodbpomahebn [2013-04-10]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
========================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [120088 2013-10-11] (SUPERAntiSpyware.com)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [430160 2014-07-06] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [430160 2014-07-06] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1028688 2014-07-06] (Avira Operations GmbH & Co. KG)
R2 btwdins; C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe [266295 2006-06-07] (Broadcom Corporation.) [File not signed]
R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5306504 2014-04-16] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [1663192 2014-03-25] (COMODO)
R2 EvtEng; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [860160 2008-10-02] (Intel(R) Corporation) [File not signed]
S3 FirebirdGuardianDefaultInstance; C:\Program Files\Firebird\Firebird_1_5\bin\fbguard.exe [65536 2007-12-12] (The Firebird Project) [File not signed]
S3 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_1_5\bin\fbserver.exe [1531989 2007-12-12] (The Firebird Project) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2008-02-17] (Macrovision Europe Ltd.) [File not signed]
R2 FsUsbExService; C:\WINDOWS\system32\FsUsbExService.Exe [233472 2009-08-03] (Teruten) [File not signed]
R2 HDDlife HDD Access service; C:\Program Files\Common Files\BinarySense\hldasvc.exe [832832 2010-06-08] (BinarySense, Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-07-11] (Oracle Corporation)
R2 Maxtor Sync Service; C:\Program Files\Maxtor\Sync\SyncServices.exe [193888 2008-07-21] (Seagate Technology LLC)
R2 nlsX86cc; C:\WINDOWS\system32\nlssrv32.exe [66560 2011-05-17] (Nalpeiron Ltd.) [File not signed]
R2 RegSrvc; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [466944 2008-10-02] (Intel(R) Corporation) [File not signed]
R2 S24EventMonitor; C:\Program Files\Intel\WiFi\bin\S24EvMon.exe [905216 2008-10-02] (Intel(R) Corporation) [File not signed]
S3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [430592 2008-04-07] (Nokia.) [File not signed]
R2 USBSafelyRemoveService; C:\Program Files\USB Safely Remove\USBSRService.exe [1004888 2012-04-28] (Crystal Rich Ltd)
S3 WisLMSvc; C:\Program Files\Launch Manager\WisLMSvc.exe [118784 2006-11-17] (Wistron Corp.) [File not signed]
R2 WO_LiveService2; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe [223624 2014-05-06] ()
S3 rpcapd; No ImagePath
==================== Drivers (Whitelisted) ====================
S3 61883; C:\WINDOWS\System32\DRIVERS\61883.sys [48128 2008-04-14] (Microsoft Corporation)
S4 abp480n5; C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS [23552 2001-08-17] (Microsoft Corporation)
S3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
R3 anvsnddrv; C:\WINDOWS\System32\drivers\anvsnddrv.sys [32896 2011-11-28] (AnvSoft Inc.) [File not signed]
R2 ASPI32; C:\WINDOWS\System32\drivers\aspi32.sys [16512 2009-06-11] (Adaptec) [File not signed]
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-04-19] ()
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [97648 2014-07-06] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\System32\DRIVERS\avipbb.sys [136216 2014-06-04] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\System32\DRIVERS\avkmgr.sys [37352 2013-12-09] (Avira Operations GmbH & Co. KG)
R3 btaudio; C:\WINDOWS\System32\drivers\btaudio.sys [329901 2006-06-07] (Broadcom Corporation.) [File not signed]
S3 BTDriver; C:\WINDOWS\System32\DRIVERS\btport.sys [30459 2006-06-07] (Broadcom Corporation.) [File not signed]
R3 BTKRNL; C:\WINDOWS\System32\DRIVERS\btkrnl.sys [855018 2006-06-07] (Broadcom Corporation.) [File not signed]
S3 BTWDNDIS; C:\WINDOWS\System32\DRIVERS\btwdndis.sys [149028 2006-06-07] (Broadcom Corporation.) [File not signed]
S3 btwhid; C:\WINDOWS\System32\DRIVERS\btwhid.sys [47811 2006-06-07] (Broadcom Corporation.) [File not signed]
S3 btwmodem; C:\WINDOWS\System32\DRIVERS\btwmodem.sys [30285 2006-06-07] (Broadcom Corporation.) [File not signed]
S3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [67384 2006-06-07] (Broadcom Corporation.) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
R1 cmderd; C:\WINDOWS\System32\DRIVERS\cmderd.sys [15704 2014-04-16] (COMODO)
R1 cmdGuard; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [607448 2014-04-16] (COMODO)
R1 cmdHlp; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [29912 2014-04-16] (COMODO)
S3 cpudrv; C:\Program Files\SystemRequirementsLab\cpudrv.sys [11336 2009-12-18] ()
S3 FETNDIS; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. )
R3 FsUsbExDisk; C:\WINDOWS\system32\FsUsbExDisk.SYS [36608 2009-08-03] () [File not signed]
S3 grmnusb; C:\WINDOWS\System32\drivers\grmnusb.sys [9344 2009-04-17] (GARMIN Corp.)
R3 HdAudAddService; C:\WINDOWS\System32\drivers\CHDAud.sys [630272 2007-05-01] (Conexant Systems Inc.)
R1 Hotkey; C:\WINDOWS\system32\Drivers\Hotkey.sys [9867 2003-04-28] () [File not signed]
R0 Inspect; C:\WINDOWS\System32\DRIVERS\inspect.sys [104920 2014-04-16] (COMODO)
R3 LEqdUsb; C:\WINDOWS\System32\Drivers\LEqdUsb.Sys [42648 2011-04-30] (Logitech, Inc.)
R3 LHidEqd; C:\WINDOWS\System32\Drivers\LHidEqd.Sys [12184 2011-04-30] (Logitech, Inc.)
R2 LiveTuner2PM; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner32.sys [14088 2014-03-20] ()
S3 LUsbFilt; C:\WINDOWS\System32\Drivers\LUsbFilt.Sys [30360 2011-04-30] (Logitech, Inc.)
R3 MaBtPort; C:\WINDOWS\System32\DRIVERS\mabtport.sys [102272 2006-09-27] (Mobile Action Technology Inc.) [File not signed]
R3 MaBtVad; C:\WINDOWS\System32\DRIVERS\MaBtVad.sys [22990 2005-08-23] (Mobile Action Technology Inc.) [File not signed]
S3 MaRdPnp; C:\WINDOWS\System32\DRIVERS\MaRdP2K.sys [49611 2004-09-13] (Mobile Action Technology Inc.) [File not signed]
S3 MarvinBus; C:\WINDOWS\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
R2 MaVctrl; C:\WINDOWS\System32\DRIVERS\MaVc2K.sys [11473 2005-08-18] (Mobile Action Technology Inc.) [File not signed]
S3 MXOPSWD; C:\WINDOWS\System32\DRIVERS\mxopswd.sys [22152 2007-05-03] (Maxtor Corp.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
S3 NETw4x32; C:\WINDOWS\System32\DRIVERS\NETw4x32.sys [2530176 2008-03-13] (Intel Corporation)
R3 NETw5x32; C:\WINDOWS\System32\DRIVERS\NETw5x32.sys [3626112 2008-04-20] (Intel Corporation) [File not signed]
S3 nm; C:\WINDOWS\System32\DRIVERS\NMnt.sys [40320 2008-04-14] (Microsoft Corporation)
R2 NPF; C:\WINDOWS\System32\drivers\npf.sys [50704 2009-10-20] (CACE Technologies, Inc.)
S3 P730C; C:\WINDOWS\System32\DRIVERS\P730C.sys [25300 2004-09-16] (Mobile Action Technology Inc.) [File not signed]
S3 P730M; C:\WINDOWS\System32\DRIVERS\P730M.sys [25300 2004-09-16] (Mobile Action Technology Inc.) [File not signed]
S3 P730U; C:\WINDOWS\System32\DRIVERS\P730U.sys [49365 2005-05-25] (Mobile Action Technology Inc.) [File not signed]
R0 pavboot; C:\WINDOWS\System32\drivers\pavboot.sys [28552 2009-06-30] (Panda Security, S.L.)
S3 pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [47360 2013-03-28] (VSO Software) [File not signed]
R2 PCTAppEvent; C:\WINDOWS\system32\drivers\PCTAppEvent.sys [160448 2010-11-25] (PC Tools)
R0 PCTCore; C:\WINDOWS\System32\drivers\PCTCore.sys [239168 2010-12-10] (PC Tools)
R0 pctDS; C:\WINDOWS\System32\drivers\pctDS.sys [338880 2010-07-16] (PC Tools)
R0 pctEFA; C:\WINDOWS\System32\drivers\pctEFA.sys [656320 2010-07-16] (PC Tools)
S3 PCTFW-PacketFilter; C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys [89472 2011-01-12] (PC Tools)
R1 pctgntdi; C:\WINDOWS\system32\drivers\pctgntdi.sys [251560 2011-01-17] (PC Tools)
S3 pctNdis; C:\WINDOWS\System32\DRIVERS\pctNdis.sys [56536 2010-08-10] (PC Tools)
R3 pctNdisMP; C:\WINDOWS\System32\DRIVERS\pctNdis.sys [56536 2010-08-10] (PC Tools)
S3 pctplfw; C:\WINDOWS\system32\drivers\pctplfw.sys [125248 2011-01-17] (PC Tools)
S3 pctplsg; C:\WINDOWS\system32\drivers\pctplsg.sys [70536 2010-12-16] (PC Tools)
S3 PSSDK42; C:\WINDOWS\system32\Drivers\pssdk42.sys [38976 2009-10-02] (microOLAP Technologies LTD)
S3 RSUSBSTOR; C:\WINDOWS\System32\Drivers\RTS5121.sys [160256 2008-11-21] (Realtek Semiconductor Corp.)
S3 rt2870; C:\WINDOWS\System32\DRIVERS\rt2870.sys [644096 2008-10-29] (Ralink Technology, Corp.)
R2 s24trans; C:\WINDOWS\System32\DRIVERS\s24trans.sys [11904 2008-08-04] (Intel Corporation) [File not signed]
S3 S3SavageNB; C:\WINDOWS\System32\DRIVERS\s3gnbm.sys [166912 2004-08-04] (S3 Graphics, Inc.)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 sbaphd; C:\WINDOWS\System32\drivers\sbaphd.sys [13360 2008-09-12] (Sunbelt Software)
R2 sbapifs; C:\WINDOWS\System32\drivers\sbapifs.sys [69168 2008-09-12] (Sunbelt Software)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [691696 2010-03-10] () [File not signed]
R1 ssmdrv; C:\WINDOWS\System32\DRIVERS\ssmdrv.sys [28520 2013-12-09] (Avira GmbH)
R1 StarOpen; C:\WINDOWS\system32\Drivers\StarOpen.sys [5632 2010-11-27] () [File not signed]
R0 TfFsMon; C:\WINDOWS\System32\drivers\TfFsMon.sys [51984 2010-12-31] (PC Tools)
S3 TfNetMon; C:\WINDOWS\system32\drivers\TfNetMon.sys [33552 2010-12-31] (PC Tools)
R0 TFSysMon; C:\WINDOWS\System32\drivers\TfSysMon.sys [69392 2010-12-31] (PC Tools)
R2 tifsfilter; C:\WINDOWS\System32\DRIVERS\tifsfilt.sys [44384 2008-01-26] (Acronis)
S3 usbvm328; C:\WINDOWS\System32\Drivers\usbvm326.sys [348160 2006-12-30] (Vimicro Corporation) [File not signed]
S3 vmfilter326; C:\WINDOWS\System32\drivers\vmfilter326.sys [483072 2006-10-30] (Vimicro Corporation) [File not signed]
S3 wceusbsh; C:\WINDOWS\System32\DRIVERS\wceusbsh.sys [28672 2006-11-06] (Microsoft Corporation)
S3 WsAudio_DeviceS(1); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(1).sys [25704 2011-08-31] (Wondershare)
S3 WsAudio_DeviceS(2); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(2).sys [25704 2011-08-31] (Wondershare)
S3 WsAudio_DeviceS(3); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(3).sys [25704 2011-08-31] (Wondershare)
S3 WsAudio_DeviceS(4); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(4).sys [25704 2011-08-31] (Wondershare)
S3 WsAudio_DeviceS(5); C:\WINDOWS\System32\drivers\WsAudio_DeviceS(5).sys [25704 2011-08-31] (Wondershare)
S3 BlueletAudio; No ImagePath
S3 BlueletSCOAudio; No ImagePath
S3 BT; No ImagePath
S3 Btcsrusb; No ImagePath
S0 BTHidEnum; No ImagePath
S0 BTHidMgr; No ImagePath
S3 cpuz135; No ImagePath
U3 DfSdkS;
U5 FontCache3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [46104 2008-07-29] (Microsoft Corporation)
S1 mailKmd; No ImagePath
S3 NSNDIS5; No ImagePath
U5 P3; C:\Windows\System32\Drivers\P3.sys [46592 2008-04-14] (Microsoft Corporation)
S3 PROCEXP150; No ImagePath
S3 Rts516xIR; No ImagePath
S3 SBRE; No ImagePath
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
S1 UimBus; No ImagePath
S1 Uim_IM; No ImagePath
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () [File not signed]
S3 USBCCID; No ImagePath
S3 VComm; No ImagePath
S3 VcommMgr; No ImagePath
U4 WSearch;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-11 20:33 - 2014-07-11 20:36 - 00041341 _____ () C:\Documents and Settings\Jirka\Plocha\FRST.txt
2014-07-11 20:29 - 2014-07-11 20:34 - 00000000 ____D () C:\FRST
2014-07-11 20:09 - 2014-07-11 20:13 - 00009051 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-11 20:09 - 2014-07-11 20:09 - 00003747 _____ () C:\WINDOWS\wiadebug.log
2014-07-11 20:09 - 2014-07-11 20:09 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-07-11 20:09 - 2014-07-11 20:09 - 00000000 _____ () C:\WINDOWS\Sti_Trace.log
2014-07-11 19:28 - 2014-07-11 19:27 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2014-07-11 19:28 - 2014-07-11 19:27 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2014-07-11 19:27 - 2014-07-11 19:27 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2014-07-11 19:27 - 2014-07-11 19:27 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2014-07-11 19:27 - 2014-07-11 19:27 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-07-11 19:27 - 2014-07-11 19:27 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Java
2014-07-11 19:05 - 2014-07-11 19:05 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-11 19:03 - 2014-07-11 19:03 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Jirka\Plocha\FRSTLauncher.exe
2014-07-11 18:48 - 2014-07-11 18:48 - 01075200 _____ (Farbar) C:\Documents and Settings\Jirka\Plocha\FRST.exe
2014-07-09 16:46 - 2014-07-09 16:46 - 00000617 _____ () C:\Documents and Settings\Jirka\Plocha\HD Tune.lnk
2014-07-09 16:46 - 2014-07-09 16:46 - 00000000 ____D () C:\Program Files\HD Tune
2014-07-09 16:46 - 2014-07-09 16:46 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\HD Tune
2014-07-09 15:29 - 2008-10-11 15:03 - 00024576 _____ () C:\Documents and Settings\Jirka\Plocha\memtest.exe
2014-07-09 14:45 - 2014-07-09 14:46 - 00000000 ___SD () C:\ComboFix
2014-07-09 14:20 - 2014-07-09 14:21 - 00000000 ____D () C:\Qoobox
2014-07-09 14:20 - 2014-07-09 14:20 - 00000000 ___HD () C:\Documents and Settings\Jirka\Okolní tiskárny
2014-07-09 14:06 - 2014-07-09 14:07 - 05216105 _____ (Swearware) C:\Documents and Settings\Jirka\Plocha\Uninstall.exe
2014-07-09 11:47 - 2014-07-09 11:47 - 00000799 _____ () C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
2014-07-09 11:47 - 2014-07-09 11:47 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes Anti-Malware
2014-07-09 11:46 - 2014-07-09 11:47 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-07-09 11:46 - 2014-07-09 11:46 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2014-07-09 11:46 - 2014-05-12 07:26 - 00053208 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-07-09 11:46 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-07-09 11:43 - 2014-07-09 11:45 - 17292760 _____ (Malwarebytes Corporation ) C:\Documents and Settings\Jirka\Plocha\mbam-setup-2.0.2.1012.exe
2014-07-09 08:48 - 2014-07-09 08:53 - 00000000 ____D () C:\rsit
2014-07-09 08:41 - 2014-07-09 08:42 - 01107968 _____ () C:\Documents and Settings\Jirka\Plocha\RSIT.exe
==================== One Month Modified Files and Folders =======
2014-07-11 20:36 - 2014-07-11 20:33 - 00041341 _____ () C:\Documents and Settings\Jirka\Plocha\FRST.txt
2014-07-11 20:36 - 2009-01-21 20:47 - 00000000 ____D () C:\Documents and Settings\Jirka\Local Settings\temp
2014-07-11 20:34 - 2014-07-11 20:29 - 00000000 ____D () C:\FRST
2014-07-11 20:33 - 2009-03-24 18:04 - 00000466 ___HC () C:\WINDOWS\Tasks\User_Feed_Synchronization-{1EB9FB64-F7D5-4E4B-9C99-A6FF1FBEBD0D}.job
2014-07-11 20:33 - 2007-12-13 14:11 - 00000000 ____D () C:\Documents and Settings\Jirka\Plocha
2014-07-11 20:32 - 2007-12-13 14:11 - 00000000 ___HD () C:\Documents and Settings\Jirka\Local Settings\Data aplikací
2014-07-11 20:31 - 2007-12-17 09:39 - 00000000 ____D () C:\Download
2014-07-11 20:13 - 2014-07-11 20:09 - 00009051 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-11 20:10 - 2012-02-06 20:43 - 00000000 ____D () C:\Program Files\Volume2 - bez instalace - super regulace hlasitosti
2014-07-11 20:09 - 2014-07-11 20:09 - 00003747 _____ () C:\WINDOWS\wiadebug.log
2014-07-11 20:09 - 2014-07-11 20:09 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-07-11 20:09 - 2014-07-11 20:09 - 00000000 _____ () C:\WINDOWS\Sti_Trace.log
2014-07-11 20:09 - 2014-04-03 21:31 - 00000440 _____ () C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job
2014-07-11 20:09 - 2014-04-03 21:05 - 00000440 _____ () C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job
2014-07-11 20:09 - 2007-08-07 18:23 - 04846182 ____C () C:\WINDOWS\system32\PerfStringBackup.INI
2014-07-11 20:08 - 2014-04-07 19:35 - 00000000 ____D () C:\Documents and Settings\Jirka\Data aplikací\Ditto
2014-07-11 20:08 - 2010-12-11 16:31 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\TEMP
2014-07-11 20:08 - 2007-12-13 14:11 - 00000000 ____D () C:\Documents and Settings\Jirka
2014-07-11 20:07 - 2014-03-22 20:01 - 00000418 __RSH () C:\Documents and Settings\All Users\ntuser.pol
2014-07-11 20:07 - 2013-11-26 17:29 - 00000000 ____D () C:\Documents and Settings\Jirka\Data aplikací\USBSafelyRemove
2014-07-11 20:07 - 2007-08-07 16:37 - 00000006 ___HC () C:\WINDOWS\Tasks\SA.DAT
2014-07-11 20:06 - 2014-04-02 19:22 - 00065536 _____ () C:\WINDOWS\system32\config\COMODO I.evt
2014-07-11 20:06 - 2007-08-07 16:37 - 00032414 ____N () C:\WINDOWS\SchedLgU.Txt
2014-07-11 20:05 - 2007-12-21 21:09 - 00009230 ____C () C:\WINDOWS\wincmd.ini
2014-07-11 20:05 - 2007-12-13 14:11 - 00000272 __SHC () C:\Documents and Settings\Jirka\ntuser.ini
2014-07-11 19:50 - 2010-04-18 18:40 - 00000938 ____C () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 19:27 - 2014-07-11 19:28 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2014-07-11 19:27 - 2014-07-11 19:28 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2014-07-11 19:27 - 2014-07-11 19:27 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2014-07-11 19:27 - 2014-07-11 19:27 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2014-07-11 19:27 - 2014-07-11 19:27 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-07-11 19:27 - 2014-07-11 19:27 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Java
2014-07-11 19:27 - 2007-08-09 19:17 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-07-11 19:14 - 2012-06-06 20:12 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-07-11 19:05 - 2014-07-11 19:05 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-11 19:03 - 2014-07-11 19:03 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Jirka\Plocha\FRSTLauncher.exe
2014-07-11 18:48 - 2014-07-11 18:48 - 01075200 _____ (Farbar) C:\Documents and Settings\Jirka\Plocha\FRST.exe
2014-07-11 18:45 - 2010-11-17 10:37 - 00000000 ___SD () C:\Documents and Settings\Jirka\Dokumenty\Sticky Passwords
2014-07-11 18:44 - 2007-08-09 19:26 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2014-07-10 21:24 - 2014-04-02 21:26 - 00000316 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-07-10 16:31 - 2010-11-30 19:11 - 00000000 ____D () C:\Program Files\trend micro
2014-07-10 16:27 - 2007-12-13 14:11 - 00000000 ___RD () C:\Documents and Settings\Jirka\Data aplikací
2014-07-09 18:12 - 2013-07-20 18:08 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-07-09 18:04 - 2007-12-13 17:22 - 93585272 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-07-09 18:03 - 2007-08-09 19:17 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2014-07-09 16:46 - 2014-07-09 16:46 - 00000617 _____ () C:\Documents and Settings\Jirka\Plocha\HD Tune.lnk
2014-07-09 16:46 - 2014-07-09 16:46 - 00000000 ____D () C:\Program Files\HD Tune
2014-07-09 16:46 - 2014-07-09 16:46 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\HD Tune
2014-07-09 15:28 - 2008-05-01 21:08 - 00000000 ____D () C:\cccc
2014-07-09 14:46 - 2014-07-09 14:45 - 00000000 ___SD () C:\ComboFix
2014-07-09 14:21 - 2014-07-09 14:20 - 00000000 ____D () C:\Qoobox
2014-07-09 14:20 - 2014-07-09 14:20 - 00000000 ___HD () C:\Documents and Settings\Jirka\Okolní tiskárny
2014-07-09 14:07 - 2014-07-09 14:06 - 05216105 _____ (Swearware) C:\Documents and Settings\Jirka\Plocha\Uninstall.exe
2014-07-09 13:52 - 2012-02-13 18:09 - 00000000 ____D () C:\Documents and Settings\Jirka\Plocha\Různé
2014-07-09 13:46 - 2013-12-26 01:26 - 00000688 _____ () C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
2014-07-09 13:46 - 2013-12-08 17:51 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-09 13:46 - 2013-12-08 17:51 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
2014-07-09 12:32 - 2014-01-23 20:46 - 00000000 ____D () C:\Program Files\OO Software
2014-07-09 12:29 - 2007-08-09 19:17 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-07-09 12:13 - 2010-04-18 18:40 - 00000934 ____C () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-09 12:03 - 2007-08-09 19:17 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
2014-07-09 11:47 - 2014-07-09 11:47 - 00000799 _____ () C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
2014-07-09 11:47 - 2014-07-09 11:47 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes Anti-Malware
2014-07-09 11:47 - 2014-07-09 11:46 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-07-09 11:46 - 2014-07-09 11:46 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2014-07-09 11:46 - 2007-08-09 19:17 - 00000000 ___RD () C:\Documents and Settings\All Users\Data aplikací
2014-07-09 11:45 - 2014-07-09 11:43 - 17292760 _____ (Malwarebytes Corporation ) C:\Documents and Settings\Jirka\Plocha\mbam-setup-2.0.2.1012.exe
2014-07-09 11:45 - 2013-10-24 21:39 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\RFA_Backups
2014-07-09 11:23 - 2014-04-03 20:48 - 00000000 ____D () C:\Program Files\Comodo
2014-07-09 11:17 - 2014-04-03 20:49 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Comodo
2014-07-09 08:53 - 2014-07-09 08:48 - 00000000 ____D () C:\rsit
2014-07-09 08:42 - 2014-07-09 08:41 - 01107968 _____ () C:\Documents and Settings\Jirka\Plocha\RSIT.exe
2014-07-09 08:07 - 2007-08-07 16:15 - 00001158 ____C () C:\WINDOWS\system32\wpa.dbl
2014-07-06 13:37 - 2014-04-27 10:17 - 00097648 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2014-07-06 07:50 - 2013-07-13 19:13 - 00000936 ____C () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1ce7fc31d6ae7be.job
2014-07-06 07:43 - 2007-08-09 19:26 - 00000000 ____D () C:\WINDOWS\Registration
2014-06-17 22:03 - 2007-12-13 20:43 - 00000000 ____D () C:\WINDOWS\system32\NtmsData
Files to move or delete:
====================
C:\Documents and Settings\Jirka\Data aplikacídMb.dat
Some content of TEMP:
====================
C:\Documents and Settings\Jirka\Local Settings\temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (System) (Fixed) (Total:74.53 GB) (Free:22.63 GB) NTFS ==>[Drive with boot components (Windows XP)]
Available physical RAM: 1373.64 MB
Total physical RAM: 2038.36 MB
Percentage of memory in use: 32%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 75 GB) (Disk ID: C94C3C5D)
Partition 1: (Active) - (Size=75 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1ce7fc31d6ae7be.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\User_Feed_Synchronization-{1EB9FB64-F7D5-4E4B-9C99-A6FF1FBEBD0D}.job => C:\WINDOWS\system32\msfeedssync.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\WINDOWS:782F00BAD5FC744C
AlternateDataStreams: C:\WINDOWS:nlsPreferences
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:0D786AE3
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:1CE11B51
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:2BE9FEFC
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:430C6D84
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:587EB586
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2
==================== Security Center ==================
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Jirka\Plocha" je 115 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup
c:\program files\samsung\kies\external\firmwareupdate\kiespdlr.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper
c:\program files\samsung\kies\kies.exe /preload [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR
c:\program files\samsung\kies\kiestrayagent.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload
c:\program files\common files\nikon\monitor\nkmonitor.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent
Reim ECHO je vypnut.
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware
Reim ECHO je vypnut.
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Transfer Monitor
Reim ECHO je vypnut.
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
Reim ECHO je vypnut.
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\\Program Files\\ANWSOFT\\CAMagic Mobile for Bluetooth\\LiveCheck.exe"="C:\\Program Files\\ANWSOFT\\CAMagic Mobile for Bluetooth\\LiveCheck.exe:*:Enabled:LiveCheck"
"C:\\WINDOWS\\system32\\sessmgr.exe"="C:\\WINDOWS\\system32\\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\\totalcmd\\TOTALCMD.EXE"="C:\\totalcmd\\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"="C:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe:*:Enabled:Google Earth"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype "
"C:\\Program Files\\Ditto\\Ditto.exe"="C:\\Program Files\\Ditto\\Ditto.exe:*:Enabled:Ditto"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"50629:TCP"="50629:TCP:*:Enabled:utorrent"
"9420:TCP"="9420:TCP:*:Enabled:Red Swoosh"
"5000:UDP"="5000:UDP:*:Enabled:Akamai NetSession Interface"
"1900:UDP"="1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008"
"1518:TCP"="1518:TCP:*:Enabled:Akamai NetSession Interface"
"139:TCP"="139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================