Smart Fortress (pro Naughty)
Napsal: 25 dub 2012 20:27
Chytil jsem nějakou věc označující se jako "Smart Fortress". Sice jsem se prostřednictvím HiJackThis zbavil jejího stálého spouštění (kdy počítač nereagoval na nic, jen na tvrdé vypnutí), ale od té doby stejně nejde např. MBAM, když připojím přes USB telefon, tak PC totálně vytuhne (nereaguje na nic, jen na tvrdé vypnutí) a tak bych chtěl poprosit o pomoc, co s tím.
Níže log z OTL.
===
OTL logfile created on: 25.4.2012 21:21:28 - Run 3
OTL by OldTimer - Version 3.2.42.0 Folder = C:\Documents and Settings\Petr Novák\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,25 Gb Total Physical Memory | 2,57 Gb Available Physical Memory | 79,20% Memory free
5,09 Gb Paging File | 4,65 Gb Available in Paging File | 91,32% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 698,63 Gb Total Space | 114,09 Gb Free Space | 16,33% Space Free | Partition Type: NTFS
Drive D: | 1863,01 Gb Total Space | 7,41 Gb Free Space | 0,40% Space Free | Partition Type: NTFS
Drive E: | 83,84 Gb Total Space | 56,38 Gb Free Space | 67,25% Space Free | Partition Type: NTFS
Drive Z: | 1859,80 Gb Total Space | 159,00 Gb Free Space | 8,55% Space Free | Partition Type: NTFS
Computer Name: MARTIN | User Name: Petr Novák | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012.04.25 21:20:27 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Petr Novák\Plocha\OTL.exe
PRC - [2012.03.13 06:36:40 | 000,924,600 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012.02.15 01:03:14 | 024,246,216 | ---- | M] (Dropbox, Inc.) -- C:\Documents and Settings\Petr Novák\Data aplikací\Dropbox\bin\Dropbox.exe
PRC - [2011.06.16 16:21:06 | 001,500,160 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
PRC - [2011.06.08 15:49:48 | 000,159,744 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2011.06.08 14:02:00 | 000,633,856 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2011.03.21 14:19:36 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2011.03.14 10:59:40 | 000,084,520 | ---- | M] (Software602 a.s.) -- C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
PRC - [2010.01.19 11:13:58 | 000,314,192 | ---- | M] (Digimarc Corporation) -- C:\Program Files\Digimarc\Reader For Images 4.0\WMCache.exe
PRC - [2008.12.09 02:00:00 | 000,303,104 | ---- | M] () -- C:\Program Files\BioAdmin Server\BA_Server.exe
PRC - [2008.06.11 22:43:26 | 000,640,376 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
PRC - [2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008.01.17 23:58:36 | 000,020,541 | ---- | M] (Apache Software Foundation) -- C:\Program Files\Apache Group\Apache2\bin\Apache.exe
========== Modules (No Company Name) ==========
MOD - [2012.04.25 21:15:39 | 008,797,344 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll
MOD - [2012.03.13 06:36:53 | 001,969,080 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011.04.07 17:43:24 | 008,191,488 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtGUI4.dll
MOD - [2011.04.07 17:43:22 | 002,296,320 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtCore4.dll
MOD - [2011.02.22 21:13:22 | 000,022,016 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\imageformats\qsvg4.dll
MOD - [2011.02.22 21:12:54 | 000,196,608 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\imageformats\qjpeg4.dll
MOD - [2011.02.22 18:39:06 | 000,276,480 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtSvg4.dll
MOD - [2011.02.22 18:07:20 | 000,339,968 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtXml4.dll
MOD - [2009.04.09 08:25:20 | 002,076,672 | ---- | M] () -- C:\Program Files\Apache Group\PHP\libmysql.dll
MOD - [2009.04.09 08:25:20 | 000,166,912 | ---- | M] () -- C:\Program Files\Apache Group\PHP\libmcrypt.dll
MOD - [2008.12.09 02:00:00 | 000,303,104 | ---- | M] () -- C:\Program Files\BioAdmin Server\BA_Server.exe
MOD - [2008.04.14 14:00:00 | 000,355,112 | ---- | M] () -- C:\WINDOWS\system32\msjetoledb40.dll
MOD - [2007.09.05 09:29:10 | 000,159,814 | ---- | M] () -- C:\Program Files\Apache Group\Apache2\bin\ssleay32.dll
MOD - [2007.09.05 09:28:28 | 000,831,558 | ---- | M] () -- C:\Program Files\Apache Group\Apache2\bin\libeay32.dll
MOD - [2004.09.08 20:51:54 | 000,121,344 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Unknown] -- -- (Mssaneemon)
SRV - File not found [Auto | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012.04.25 21:15:39 | 000,253,088 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.04.05 18:53:24 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011.06.08 14:02:00 | 000,633,856 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011.03.14 10:59:40 | 000,084,520 | ---- | M] (Software602 a.s.) [Auto | Running] -- C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe -- (602XML Updater)
SRV - [2010.11.08 23:04:26 | 000,036,352 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\OpenVPN\bin\openvpnserv.exe -- (OpenVPNService)
SRV - [2009.09.02 12:46:30 | 001,127,944 | ---- | M] (LSoft Technologies Inc) [Disabled | Stopped] -- C:\Program Files\LSoft Technologies Inc\Active@ Hard Disk Monitor\DiskMonitorService.exe -- (Active@ Disk Monitor)
SRV - [2009.02.06 18:02:14 | 000,109,056 | ---- | M] (ArcSoft Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2008.12.09 02:00:00 | 000,303,104 | ---- | M] () [Auto | Running] -- C:\Program Files\BioAdmin Server\BA_Server.exe -- (BioAdmin Server)
SRV - [2008.01.17 23:58:36 | 000,020,541 | ---- | M] (Apache Software Foundation) [Auto | Running] -- C:\Program Files\Apache Group\Apache2\bin\Apache.exe -- (Apache2)
SRV - [2007.03.05 22:58:16 | 004,554,752 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Apache Group\MySQL\bin\mysqld-nt.exe -- (MySQL)
SRV - [2004.12.13 05:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\usbaapl.sys -- (USBAAPL)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\sam_miniport.sys -- (SODI)
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\Rockeynt.sys -- (ROCKEYNT)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\Pcouffin.sys -- (Pcouffin)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\parldr2k.sys -- (PARLDR2K)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\adusbser.sys -- (adusbser)
DRV - [2012.04.11 14:26:58 | 000,032,072 | ---- | M] () [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\mbamchameleon.sys -- (mbamchameleon)
DRV - [2012.04.04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011.12.08 06:22:38 | 000,181,432 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudmdm.sys -- (ssudmdm) SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.)
DRV - [2011.12.08 06:22:38 | 000,080,184 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudbus.sys -- (dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.)
DRV - [2011.05.18 11:12:38 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2011.05.18 11:12:36 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2011.05.18 11:12:32 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2011.05.18 11:12:28 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2010.11.08 23:04:26 | 000,026,112 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tap0901.sys -- (tap0901)
DRV - [2010.03.15 08:28:18 | 001,482,112 | ---- | M] (Hauppauge Computer Works) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HCW85BDA.sys -- (HCW85BDA)
DRV - [2010.01.29 11:40:04 | 000,082,320 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files\UltraISO\drivers\ISODrive.sys -- (ISODrive)
DRV - [2009.11.27 08:20:06 | 000,177,152 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2008.08.26 11:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008.04.14 14:00:00 | 000,088,320 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2008.04.14 14:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2008.04.14 14:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2008.04.14 14:00:00 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
DRV - [2008.04.14 01:16:24 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MPE.sys -- (MPE)
DRV - [2007.09.25 16:59:46 | 000,015,152 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\MediaCoder\SysInfo.sys -- (CrystalSysInfo)
DRV - [2007.07.17 09:12:54 | 000,199,552 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\AVerFx2hbtv.sys -- (AVerFx2hbtv)
DRV - [2007.03.01 18:27:00 | 004,484,608 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2006.11.02 08:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... rer:source?}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://192.168.1.155/
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\SearchScopes,DefaultScope = {1FA975B9-27D6-489D-9DA3-83A3A1234DCE}
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... orm=IE8SRC
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\SearchScopes\{1FA975B9-27D6-489D-9DA3-83A3A1234DCE}: "URL" = http://www.google.cz/search?q={searchTe ... {startPage}
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.2.1: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.2.1: C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@software602.cz/602XML Filler: C:\Program Files\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Program Files\Google\Update\1.2.183.29\npGoogleOneClick8.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Documents and Settings\Petr Novák\Data aplikací\Facebook\npfbplugin_1_0_3.dll ( )
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Documents and Settings\Petr Novák\Local Settings\Data aplikací\Google\Update\1.2.183.29\npGoogleOneClick8.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2011.11.06 20:29:50 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012.04.15 11:57:19 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012.04.12 12:31:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 11.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012.02.16 10:41:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 11.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins
[2010.06.07 07:44:08 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Extensions
[2010.01.05 21:15:01 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2010.06.07 07:44:08 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Extensions\MediaCoder
[2012.04.03 10:53:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions
[2010.04.13 09:33:57 | 000,000,000 | ---D | M] (Screengrab) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
[2011.08.18 13:30:21 | 000,000,000 | ---D | M] (Favicon Picker 2) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions\{446c03e0-2c35-11db-a98b-0800200c9a66}
[2011.01.08 20:49:00 | 000,000,000 | ---D | M] (Web Developer) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}
[2011.12.25 21:03:49 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2010.01.05 20:22:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\pxux9q0f.default\extensions
[2012.04.15 11:57:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012.03.13 06:38:06 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012.03.13 10:38:00 | 000,002,208 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
[2012.03.13 10:38:00 | 000,000,638 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
[2012.03.13 10:38:00 | 000,001,367 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
[2012.03.13 10:38:00 | 000,000,654 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
[2012.03.13 10:38:00 | 000,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-cz.xml
========== Chrome ==========
CHR - default_search_provider: Google ()
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?client=chrome&hl={language}&q={searchTerms}
O1 HOSTS File: ([2012.04.20 18:24:02 | 000,000,139 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 ron.cz
O1 - Hosts: 127.0.0.1 www.ron.cz
O1 - Hosts: 127.0.0.1 tv.ron.cz
O1 - Hosts: 127.0.0.1 activate.adobe.com
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (&Digimarc) - {0FFE2F08-3AC9-4A91-A61D-4FF24F91A561} - C:\Program Files\Digimarc\Reader For Images 4.0\RM4IE.dll (Digimarc Corporation)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (&Seznam Lištička) - {B71B15CE-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O3 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\Toolbar\ShellBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\Toolbar\WebBrowser: (&Seznam Lištička) - {B71B15CE-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKU\S-1-5-21-790525478-630328440-1801674531-1003..\Run: [Digimarc Watermark Initializer] C:\Program Files\Digimarc\Reader For Images 4.0\WMInit.exe (Digimarc Corporation)
O4 - HKU\S-1-5-21-790525478-630328440-1801674531-1003..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O4 - Startup: C:\Documents and Settings\Petr Novák\Nabídka Start\Programy\Po spuštění\Dropbox.lnk = C:\Documents and Settings\Petr Novák\Data aplikací\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Documents and Settings\Petr Novák\Nabídka Start\Programy\Po spuštění\Zástupce - firefox.lnk = File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: &Přelož do češtiny - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Hlede&j v ČR - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Hledej v &encyklopedii - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Hledej ve &světě - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Hledej ve &zboží - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Převést do Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Připojit k existujícímu PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra Button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (ICQ Ltd.)
O9 - Extra 'Tools' menuitem : ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (ICQ Ltd.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} http://192.168.1.155/RtspVaPgDec.cab (RtspVaPgCtrlNew Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16 - DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_25)
O16 - DPF: {CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} http://192.168.1.156/activex/AMC.cab (AxisMediaControlEmb Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5CEA2958-A6C7-4F40-A7B6-042C551EB648}: NameServer = 192.168.1.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 () -
O24 - Desktop WallPaper: C:\Documents and Settings\Petr Novák\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Petr Novák\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2012.04.25 21:20:27 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Petr Novák\Plocha\OTL.exe
[2012.04.20 12:06:06 | 000,000,000 | ---D | C] -- C:\HUDBA-PRO-SESTAVY
[2012.04.12 12:31:54 | 000,045,392 | R--- | C] (Adobe Systems Inc) -- C:\WINDOWS\System32\AdobePDF.dll
[2012.04.12 12:31:54 | 000,022,872 | R--- | C] (Adobe Systems Inc.) -- C:\WINDOWS\System32\AdobePDFUI.dll
[2012.04.11 15:01:33 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2012.04.11 14:57:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2012.04.11 14:51:49 | 000,000,000 | ---D | C] -- C:\Program Files\MBAM
[2012.04.11 14:35:29 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012.04.11 14:30:01 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012.04.11 14:24:14 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2012.04.11 13:59:13 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Petr Novák\Recent
[2012.04.11 09:20:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\B7E8586E2958F5C800013F41D151FC4E
[2012.04.05 19:00:12 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe Media Player
[2012.04.05 18:59:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2012.04.05 16:32:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Petr Novák\Dokumenty\Emicsoft Studio
[2012.04.05 16:32:06 | 000,000,000 | ---D | C] -- C:\Program Files\M2TS Converter
[2012.04.05 15:27:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Petr Novák\Dokumenty\Content Management Utility
[2012.04.05 15:26:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Petr Novák\Data aplikací\Sony Corporation
[2012.04.05 15:10:36 | 000,418,464 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2012.03.28 08:54:42 | 000,000,000 | ---D | C] -- C:\Reklamní kampaně
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012.04.25 21:20:27 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Petr Novák\Plocha\OTL.exe
[2012.04.25 21:15:40 | 000,000,914 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012.04.25 21:15:39 | 000,418,464 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2012.04.25 21:15:39 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2012.04.25 21:14:48 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012.04.25 21:12:16 | 000,204,377 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2012.04.25 21:11:32 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012.04.25 20:29:23 | 000,006,984 | ---- | M] () -- C:\WINDOWS\wcx_ftp.ini
[2012.04.25 20:29:21 | 000,004,264 | ---- | M] () -- C:\WINDOWS\wincmd.ini
[2012.04.23 09:38:29 | 000,003,746 | ---- | M] () -- C:\WINDOWS\WTRAN32.INI
[2012.04.16 18:20:57 | 000,001,730 | -H-- | M] () -- C:\Documents and Settings\Petr Novák\Dokumenty\Default.rdp
[2012.04.16 17:49:19 | 021,597,997 | ---- | M] () -- C:\HDRAX2000E_CZ_SK.pdf
[2012.04.16 09:31:22 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\Petr Novák\PUTTY.RND
[2012.04.15 11:57:20 | 000,000,724 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
[2012.04.13 08:37:21 | 002,173,080 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012.04.12 12:31:06 | 000,001,736 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Adobe Acrobat 9 Pro.lnk
[2012.04.12 03:09:10 | 000,475,980 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012.04.12 03:09:10 | 000,471,628 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2012.04.12 03:09:10 | 000,089,186 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2012.04.12 03:09:10 | 000,077,014 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012.04.12 03:00:47 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012.04.11 14:47:31 | 000,032,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\48230029.sys
[2012.04.11 14:39:31 | 000,000,364 | ---- | M] () -- C:\Documents and Settings\Petr Novák\Nabídka Start\Programy\Po spuštění\Zástupce - firefox.lnk
[2012.04.11 14:36:17 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012.04.11 14:26:58 | 000,032,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2012.04.11 13:57:10 | 000,000,443 | RHS- | M] () -- C:\boot.ini
[2012.04.05 20:22:52 | 000,010,686 | ---- | M] () -- C:\WINDOWS\System32\QuickTime.qtp
[2012.04.05 16:32:09 | 000,000,799 | ---- | M] () -- C:\Documents and Settings\Petr Novák\Plocha\Emicsoft M2TS Converter.lnk
[2012.04.04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012.03.27 09:13:44 | 000,001,764 | ---- | M] () -- C:\Documents and Settings\Petr Novák\Plocha\Dafit.RDP
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012.04.16 17:48:41 | 021,597,997 | ---- | C] () -- C:\HDRAX2000E_CZ_SK.pdf
[2012.04.15 11:57:19 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
[2012.04.12 13:58:32 | 000,002,529 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft PowerPoint.lnk
[2012.04.12 12:31:06 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe LiveCycle Designer ES 8.2.lnk
[2012.04.12 12:31:06 | 000,001,736 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Adobe Acrobat 9 Pro.lnk
[2012.04.12 12:31:05 | 000,001,812 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Acrobat Distiller 9.lnk
[2012.04.12 12:31:05 | 000,001,808 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Acrobat 9 Pro.lnk
[2012.04.12 03:00:46 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2012.04.11 14:39:31 | 000,000,364 | ---- | C] () -- C:\Documents and Settings\Petr Novák\Nabídka Start\Programy\Po spuštění\Zástupce - firefox.lnk
[2012.04.11 14:37:48 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\48230029.sys
[2012.04.11 14:26:58 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2012.04.05 19:03:52 | 000,000,922 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Premiere Pro CS4.lnk
[2012.04.05 19:02:48 | 000,000,850 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Encore CS4.lnk
[2012.04.05 19:01:41 | 000,000,898 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe OnLocation CS4.lnk
[2012.04.05 19:00:00 | 000,000,911 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Device Central CS4.lnk
[2012.04.05 18:58:59 | 000,000,818 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Bridge CS4.lnk
[2012.04.05 18:57:50 | 000,001,002 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Extension Manager CS4.lnk
[2012.04.05 18:56:59 | 000,001,104 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe ExtendScript Toolkit CS4.lnk
[2012.04.05 18:56:02 | 000,000,934 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Media Encoder CS4.lnk
[2012.04.05 16:32:09 | 000,000,799 | ---- | C] () -- C:\Documents and Settings\Petr Novák\Plocha\Emicsoft M2TS Converter.lnk
[2012.04.05 15:10:37 | 000,000,914 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012.03.27 09:13:44 | 000,001,764 | ---- | C] () -- C:\Documents and Settings\Petr Novák\Plocha\Dafit.RDP
[2012.03.05 14:07:11 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2012.03.05 14:07:11 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2012.03.05 14:07:11 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2012.03.05 14:07:11 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2012.03.05 14:07:11 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2012.02.15 15:17:51 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012.01.13 23:39:15 | 003,548,802 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-790525478-630328440-1801674531-1003-0.dat
[2012.01.13 23:39:14 | 000,276,330 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-System.dat
[2012.01.11 14:44:20 | 001,058,016 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
[2011.12.23 21:58:28 | 000,030,568 | ---- | C] () -- C:\WINDOWS\MusiccityDownload.exe
[2011.12.23 21:58:24 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll
[2011.12.23 21:58:24 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll
[2011.12.23 21:58:24 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll
[2011.12.23 21:58:24 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll
[2011.11.14 22:37:51 | 000,003,452 | -HS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\KGyGaAvL.sys
[2011.11.14 22:37:51 | 000,000,088 | RHS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\9D88B9C25C.sys
[2011.11.14 21:44:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\CorelDrw.INI
[2011.10.30 18:56:46 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011.08.10 11:44:23 | 000,000,056 | RHS- | C] () -- C:\WINDOWS\System32\5D6636C005.sys
[2011.08.09 16:23:20 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Petr Novák\Data aplikací\$_hpcst$.hpc
[2011.08.02 18:05:37 | 000,000,028 | ---- | C] () -- C:\WINDOWS\MotionDVSTUDIO.INI
[2011.03.15 21:10:00 | 000,000,068 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2011.01.29 14:01:27 | 000,029,532 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2010.12.31 21:10:54 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010.12.12 17:21:04 | 000,000,038 | ---- | C] () -- C:\WINDOWS\AviSplitter.INI
[2010.12.04 20:26:49 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010.11.12 18:29:49 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2010.08.06 19:54:58 | 000,010,752 | ---- | C] () -- C:\WINDOWS\System32\RockVdd.dll
[2010.08.06 19:54:46 | 001,206,272 | ---- | C] () -- C:\WINDOWS\System32\VitaminCtrl.dll
[2010.08.06 19:54:42 | 000,081,970 | ---- | C] ( ) -- C:\WINDOWS\System32\SMPV.dll
[2010.08.06 19:54:42 | 000,028,731 | ---- | C] () -- C:\WINDOWS\System32\SMPVCORE.dll
[2010.08.06 17:27:36 | 000,003,637 | ---- | C] () -- C:\WINDOWS\System32\ASPRTMM6.DLL
[2010.07.26 17:32:20 | 000,004,888 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\eesymaex.lyu
========== LOP Check ==========
[2010.01.05 20:18:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ACD Systems
[2010.01.22 18:09:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Azureus
[2012.04.11 09:20:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\B7E8586E2958F5C800013F41D151FC4E
[2010.01.05 18:42:42 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\CanonBJ
[2012.04.11 15:01:33 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2010.07.21 20:57:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\EPSON
[2010.02.14 17:40:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\F-Secure
[2011.11.06 20:39:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Installations
[2011.03.27 11:57:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Kamar
[2012.04.11 15:01:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2010.05.11 09:39:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Nokia
[2011.05.05 22:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NokiaInstallerCache
[2012.01.12 13:35:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Panasonic
[2011.12.15 23:03:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Suite
[2012.01.10 11:39:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Samsung
[2012.01.29 14:55:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Temp
[2010.04.24 21:25:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\vsosdk
[2011.01.26 13:11:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010.02.16 13:49:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{6DF4FDEE-F5C0-4F72-A1E6-41CF61B11110}
[2012.01.30 16:25:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\602Installer
[2012.01.30 16:26:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\602XML
[2010.01.05 20:50:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\ACD Systems
[2010.06.07 07:47:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\avidemux
[2010.11.20 20:22:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Azureus
[2010.06.07 07:40:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Broad Intelligence
[2010.01.28 12:51:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Canon
[2010.05.06 16:27:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\CD-LabelPrint
[2012.04.25 21:14:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Dropbox
[2010.06.19 21:45:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Facebook
[2012.01.22 14:12:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Gmail Backup
[2010.04.26 17:02:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\gtk-2.0
[2010.01.05 23:42:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\HeidiSQL
[2011.06.13 09:06:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\ICQLite
[2010.11.01 14:35:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Jeyo
[2010.09.24 10:12:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Mikrotik
[2012.01.10 12:02:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\MyPhoneExplorer
[2010.01.05 23:39:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\MySQL-Front
[2011.08.07 17:43:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Nokia
[2011.08.07 17:43:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Nokia Ovi Suite
[2010.01.14 07:47:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Opera
[2012.01.10 11:15:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Oracle
[2012.01.19 19:40:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\PC Suite
[2012.01.10 11:40:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Samsung
[2010.01.05 21:50:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Star-Tools
[2012.01.10 11:42:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Temp
[2010.01.05 21:26:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Thunderbird
[2010.05.22 09:23:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Vso
[2011.08.07 17:47:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Zoner
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 116 bytes -> C:\Documents and Settings\All Users\Data aplikací\Temp:D117B72F
@Alternate Data Stream - 114 bytes -> C:\Documents and Settings\All Users\Data aplikací\Temp:39413AC3
< End of report >
Níže log z OTL.
===
OTL logfile created on: 25.4.2012 21:21:28 - Run 3
OTL by OldTimer - Version 3.2.42.0 Folder = C:\Documents and Settings\Petr Novák\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,25 Gb Total Physical Memory | 2,57 Gb Available Physical Memory | 79,20% Memory free
5,09 Gb Paging File | 4,65 Gb Available in Paging File | 91,32% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 698,63 Gb Total Space | 114,09 Gb Free Space | 16,33% Space Free | Partition Type: NTFS
Drive D: | 1863,01 Gb Total Space | 7,41 Gb Free Space | 0,40% Space Free | Partition Type: NTFS
Drive E: | 83,84 Gb Total Space | 56,38 Gb Free Space | 67,25% Space Free | Partition Type: NTFS
Drive Z: | 1859,80 Gb Total Space | 159,00 Gb Free Space | 8,55% Space Free | Partition Type: NTFS
Computer Name: MARTIN | User Name: Petr Novák | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012.04.25 21:20:27 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Petr Novák\Plocha\OTL.exe
PRC - [2012.03.13 06:36:40 | 000,924,600 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012.02.15 01:03:14 | 024,246,216 | ---- | M] (Dropbox, Inc.) -- C:\Documents and Settings\Petr Novák\Data aplikací\Dropbox\bin\Dropbox.exe
PRC - [2011.06.16 16:21:06 | 001,500,160 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
PRC - [2011.06.08 15:49:48 | 000,159,744 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2011.06.08 14:02:00 | 000,633,856 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2011.03.21 14:19:36 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2011.03.14 10:59:40 | 000,084,520 | ---- | M] (Software602 a.s.) -- C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
PRC - [2010.01.19 11:13:58 | 000,314,192 | ---- | M] (Digimarc Corporation) -- C:\Program Files\Digimarc\Reader For Images 4.0\WMCache.exe
PRC - [2008.12.09 02:00:00 | 000,303,104 | ---- | M] () -- C:\Program Files\BioAdmin Server\BA_Server.exe
PRC - [2008.06.11 22:43:26 | 000,640,376 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
PRC - [2008.04.14 14:00:00 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008.01.17 23:58:36 | 000,020,541 | ---- | M] (Apache Software Foundation) -- C:\Program Files\Apache Group\Apache2\bin\Apache.exe
========== Modules (No Company Name) ==========
MOD - [2012.04.25 21:15:39 | 008,797,344 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll
MOD - [2012.03.13 06:36:53 | 001,969,080 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011.04.07 17:43:24 | 008,191,488 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtGUI4.dll
MOD - [2011.04.07 17:43:22 | 002,296,320 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtCore4.dll
MOD - [2011.02.22 21:13:22 | 000,022,016 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\imageformats\qsvg4.dll
MOD - [2011.02.22 21:12:54 | 000,196,608 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\imageformats\qjpeg4.dll
MOD - [2011.02.22 18:39:06 | 000,276,480 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtSvg4.dll
MOD - [2011.02.22 18:07:20 | 000,339,968 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtXml4.dll
MOD - [2009.04.09 08:25:20 | 002,076,672 | ---- | M] () -- C:\Program Files\Apache Group\PHP\libmysql.dll
MOD - [2009.04.09 08:25:20 | 000,166,912 | ---- | M] () -- C:\Program Files\Apache Group\PHP\libmcrypt.dll
MOD - [2008.12.09 02:00:00 | 000,303,104 | ---- | M] () -- C:\Program Files\BioAdmin Server\BA_Server.exe
MOD - [2008.04.14 14:00:00 | 000,355,112 | ---- | M] () -- C:\WINDOWS\system32\msjetoledb40.dll
MOD - [2007.09.05 09:29:10 | 000,159,814 | ---- | M] () -- C:\Program Files\Apache Group\Apache2\bin\ssleay32.dll
MOD - [2007.09.05 09:28:28 | 000,831,558 | ---- | M] () -- C:\Program Files\Apache Group\Apache2\bin\libeay32.dll
MOD - [2004.09.08 20:51:54 | 000,121,344 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Unknown] -- -- (Mssaneemon)
SRV - File not found [Auto | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012.04.25 21:15:39 | 000,253,088 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.04.05 18:53:24 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011.06.08 14:02:00 | 000,633,856 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011.03.14 10:59:40 | 000,084,520 | ---- | M] (Software602 a.s.) [Auto | Running] -- C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe -- (602XML Updater)
SRV - [2010.11.08 23:04:26 | 000,036,352 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\OpenVPN\bin\openvpnserv.exe -- (OpenVPNService)
SRV - [2009.09.02 12:46:30 | 001,127,944 | ---- | M] (LSoft Technologies Inc) [Disabled | Stopped] -- C:\Program Files\LSoft Technologies Inc\Active@ Hard Disk Monitor\DiskMonitorService.exe -- (Active@ Disk Monitor)
SRV - [2009.02.06 18:02:14 | 000,109,056 | ---- | M] (ArcSoft Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2008.12.09 02:00:00 | 000,303,104 | ---- | M] () [Auto | Running] -- C:\Program Files\BioAdmin Server\BA_Server.exe -- (BioAdmin Server)
SRV - [2008.01.17 23:58:36 | 000,020,541 | ---- | M] (Apache Software Foundation) [Auto | Running] -- C:\Program Files\Apache Group\Apache2\bin\Apache.exe -- (Apache2)
SRV - [2007.03.05 22:58:16 | 004,554,752 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Apache Group\MySQL\bin\mysqld-nt.exe -- (MySQL)
SRV - [2004.12.13 05:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\usbaapl.sys -- (USBAAPL)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\sam_miniport.sys -- (SODI)
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\Rockeynt.sys -- (ROCKEYNT)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\Pcouffin.sys -- (Pcouffin)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\parldr2k.sys -- (PARLDR2K)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\adusbser.sys -- (adusbser)
DRV - [2012.04.11 14:26:58 | 000,032,072 | ---- | M] () [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\mbamchameleon.sys -- (mbamchameleon)
DRV - [2012.04.04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011.12.08 06:22:38 | 000,181,432 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudmdm.sys -- (ssudmdm) SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.)
DRV - [2011.12.08 06:22:38 | 000,080,184 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudbus.sys -- (dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.)
DRV - [2011.05.18 11:12:38 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2011.05.18 11:12:36 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2011.05.18 11:12:32 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2011.05.18 11:12:28 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2010.11.08 23:04:26 | 000,026,112 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tap0901.sys -- (tap0901)
DRV - [2010.03.15 08:28:18 | 001,482,112 | ---- | M] (Hauppauge Computer Works) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HCW85BDA.sys -- (HCW85BDA)
DRV - [2010.01.29 11:40:04 | 000,082,320 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files\UltraISO\drivers\ISODrive.sys -- (ISODrive)
DRV - [2009.11.27 08:20:06 | 000,177,152 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2008.08.26 11:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008.04.14 14:00:00 | 000,088,320 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2008.04.14 14:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2008.04.14 14:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2008.04.14 14:00:00 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
DRV - [2008.04.14 01:16:24 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MPE.sys -- (MPE)
DRV - [2007.09.25 16:59:46 | 000,015,152 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\MediaCoder\SysInfo.sys -- (CrystalSysInfo)
DRV - [2007.07.17 09:12:54 | 000,199,552 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\AVerFx2hbtv.sys -- (AVerFx2hbtv)
DRV - [2007.03.01 18:27:00 | 004,484,608 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2006.11.02 08:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... rer:source?}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://192.168.1.155/
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\SearchScopes,DefaultScope = {1FA975B9-27D6-489D-9DA3-83A3A1234DCE}
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... orm=IE8SRC
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\SearchScopes\{1FA975B9-27D6-489D-9DA3-83A3A1234DCE}: "URL" = http://www.google.cz/search?q={searchTe ... {startPage}
IE - HKU\S-1-5-21-790525478-630328440-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.2.1: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.2.1: C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@software602.cz/602XML Filler: C:\Program Files\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Program Files\Google\Update\1.2.183.29\npGoogleOneClick8.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Documents and Settings\Petr Novák\Data aplikací\Facebook\npfbplugin_1_0_3.dll ( )
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Documents and Settings\Petr Novák\Local Settings\Data aplikací\Google\Update\1.2.183.29\npGoogleOneClick8.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2011.11.06 20:29:50 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012.04.15 11:57:19 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012.04.12 12:31:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 11.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012.02.16 10:41:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 11.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins
[2010.06.07 07:44:08 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Extensions
[2010.01.05 21:15:01 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2010.06.07 07:44:08 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Extensions\MediaCoder
[2012.04.03 10:53:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions
[2010.04.13 09:33:57 | 000,000,000 | ---D | M] (Screengrab) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
[2011.08.18 13:30:21 | 000,000,000 | ---D | M] (Favicon Picker 2) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions\{446c03e0-2c35-11db-a98b-0800200c9a66}
[2011.01.08 20:49:00 | 000,000,000 | ---D | M] (Web Developer) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}
[2011.12.25 21:03:49 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\jgz4nhks.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2010.01.05 20:22:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Petr Novák\Data aplikací\Mozilla\Firefox\Profiles\pxux9q0f.default\extensions
[2012.04.15 11:57:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012.03.13 06:38:06 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012.03.13 10:38:00 | 000,002,208 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
[2012.03.13 10:38:00 | 000,000,638 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
[2012.03.13 10:38:00 | 000,001,367 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
[2012.03.13 10:38:00 | 000,000,654 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
[2012.03.13 10:38:00 | 000,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-cz.xml
========== Chrome ==========
CHR - default_search_provider: Google ()
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?client=chrome&hl={language}&q={searchTerms}
O1 HOSTS File: ([2012.04.20 18:24:02 | 000,000,139 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 ron.cz
O1 - Hosts: 127.0.0.1 www.ron.cz
O1 - Hosts: 127.0.0.1 tv.ron.cz
O1 - Hosts: 127.0.0.1 activate.adobe.com
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (&Digimarc) - {0FFE2F08-3AC9-4A91-A61D-4FF24F91A561} - C:\Program Files\Digimarc\Reader For Images 4.0\RM4IE.dll (Digimarc Corporation)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (&Seznam Lištička) - {B71B15CE-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O3 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\Toolbar\ShellBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\..\Toolbar\WebBrowser: (&Seznam Lištička) - {B71B15CE-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKU\S-1-5-21-790525478-630328440-1801674531-1003..\Run: [Digimarc Watermark Initializer] C:\Program Files\Digimarc\Reader For Images 4.0\WMInit.exe (Digimarc Corporation)
O4 - HKU\S-1-5-21-790525478-630328440-1801674531-1003..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O4 - Startup: C:\Documents and Settings\Petr Novák\Nabídka Start\Programy\Po spuštění\Dropbox.lnk = C:\Documents and Settings\Petr Novák\Data aplikací\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Documents and Settings\Petr Novák\Nabídka Start\Programy\Po spuštění\Zástupce - firefox.lnk = File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-790525478-630328440-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: &Přelož do češtiny - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Hlede&j v ČR - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Hledej v &encyklopedii - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Hledej ve &světě - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Hledej ve &zboží - C:\Program Files\Seznam\Listicka\Toolbar.dll (Seznam.cz a.s.)
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Převést do Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Připojit k existujícímu PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra Button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (ICQ Ltd.)
O9 - Extra 'Tools' menuitem : ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (ICQ Ltd.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} http://192.168.1.155/RtspVaPgDec.cab (RtspVaPgCtrlNew Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16 - DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_25)
O16 - DPF: {CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_02)
O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} http://192.168.1.156/activex/AMC.cab (AxisMediaControlEmb Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5CEA2958-A6C7-4F40-A7B6-042C551EB648}: NameServer = 192.168.1.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 () -
O24 - Desktop WallPaper: C:\Documents and Settings\Petr Novák\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Petr Novák\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2012.04.25 21:20:27 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Petr Novák\Plocha\OTL.exe
[2012.04.20 12:06:06 | 000,000,000 | ---D | C] -- C:\HUDBA-PRO-SESTAVY
[2012.04.12 12:31:54 | 000,045,392 | R--- | C] (Adobe Systems Inc) -- C:\WINDOWS\System32\AdobePDF.dll
[2012.04.12 12:31:54 | 000,022,872 | R--- | C] (Adobe Systems Inc.) -- C:\WINDOWS\System32\AdobePDFUI.dll
[2012.04.11 15:01:33 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2012.04.11 14:57:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2012.04.11 14:51:49 | 000,000,000 | ---D | C] -- C:\Program Files\MBAM
[2012.04.11 14:35:29 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012.04.11 14:30:01 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012.04.11 14:24:14 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2012.04.11 13:59:13 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Petr Novák\Recent
[2012.04.11 09:20:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\B7E8586E2958F5C800013F41D151FC4E
[2012.04.05 19:00:12 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe Media Player
[2012.04.05 18:59:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2012.04.05 16:32:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Petr Novák\Dokumenty\Emicsoft Studio
[2012.04.05 16:32:06 | 000,000,000 | ---D | C] -- C:\Program Files\M2TS Converter
[2012.04.05 15:27:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Petr Novák\Dokumenty\Content Management Utility
[2012.04.05 15:26:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Petr Novák\Data aplikací\Sony Corporation
[2012.04.05 15:10:36 | 000,418,464 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2012.03.28 08:54:42 | 000,000,000 | ---D | C] -- C:\Reklamní kampaně
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012.04.25 21:20:27 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Petr Novák\Plocha\OTL.exe
[2012.04.25 21:15:40 | 000,000,914 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012.04.25 21:15:39 | 000,418,464 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2012.04.25 21:15:39 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2012.04.25 21:14:48 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012.04.25 21:12:16 | 000,204,377 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2012.04.25 21:11:32 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012.04.25 20:29:23 | 000,006,984 | ---- | M] () -- C:\WINDOWS\wcx_ftp.ini
[2012.04.25 20:29:21 | 000,004,264 | ---- | M] () -- C:\WINDOWS\wincmd.ini
[2012.04.23 09:38:29 | 000,003,746 | ---- | M] () -- C:\WINDOWS\WTRAN32.INI
[2012.04.16 18:20:57 | 000,001,730 | -H-- | M] () -- C:\Documents and Settings\Petr Novák\Dokumenty\Default.rdp
[2012.04.16 17:49:19 | 021,597,997 | ---- | M] () -- C:\HDRAX2000E_CZ_SK.pdf
[2012.04.16 09:31:22 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\Petr Novák\PUTTY.RND
[2012.04.15 11:57:20 | 000,000,724 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
[2012.04.13 08:37:21 | 002,173,080 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012.04.12 12:31:06 | 000,001,736 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Adobe Acrobat 9 Pro.lnk
[2012.04.12 03:09:10 | 000,475,980 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012.04.12 03:09:10 | 000,471,628 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2012.04.12 03:09:10 | 000,089,186 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2012.04.12 03:09:10 | 000,077,014 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012.04.12 03:00:47 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012.04.11 14:47:31 | 000,032,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\48230029.sys
[2012.04.11 14:39:31 | 000,000,364 | ---- | M] () -- C:\Documents and Settings\Petr Novák\Nabídka Start\Programy\Po spuštění\Zástupce - firefox.lnk
[2012.04.11 14:36:17 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012.04.11 14:26:58 | 000,032,072 | ---- | M] () -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2012.04.11 13:57:10 | 000,000,443 | RHS- | M] () -- C:\boot.ini
[2012.04.05 20:22:52 | 000,010,686 | ---- | M] () -- C:\WINDOWS\System32\QuickTime.qtp
[2012.04.05 16:32:09 | 000,000,799 | ---- | M] () -- C:\Documents and Settings\Petr Novák\Plocha\Emicsoft M2TS Converter.lnk
[2012.04.04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012.03.27 09:13:44 | 000,001,764 | ---- | M] () -- C:\Documents and Settings\Petr Novák\Plocha\Dafit.RDP
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012.04.16 17:48:41 | 021,597,997 | ---- | C] () -- C:\HDRAX2000E_CZ_SK.pdf
[2012.04.15 11:57:19 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
[2012.04.12 13:58:32 | 000,002,529 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft PowerPoint.lnk
[2012.04.12 12:31:06 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe LiveCycle Designer ES 8.2.lnk
[2012.04.12 12:31:06 | 000,001,736 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Adobe Acrobat 9 Pro.lnk
[2012.04.12 12:31:05 | 000,001,812 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Acrobat Distiller 9.lnk
[2012.04.12 12:31:05 | 000,001,808 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Acrobat 9 Pro.lnk
[2012.04.12 03:00:46 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2012.04.11 14:39:31 | 000,000,364 | ---- | C] () -- C:\Documents and Settings\Petr Novák\Nabídka Start\Programy\Po spuštění\Zástupce - firefox.lnk
[2012.04.11 14:37:48 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\48230029.sys
[2012.04.11 14:26:58 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2012.04.05 19:03:52 | 000,000,922 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Premiere Pro CS4.lnk
[2012.04.05 19:02:48 | 000,000,850 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Encore CS4.lnk
[2012.04.05 19:01:41 | 000,000,898 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe OnLocation CS4.lnk
[2012.04.05 19:00:00 | 000,000,911 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Device Central CS4.lnk
[2012.04.05 18:58:59 | 000,000,818 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Bridge CS4.lnk
[2012.04.05 18:57:50 | 000,001,002 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Extension Manager CS4.lnk
[2012.04.05 18:56:59 | 000,001,104 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe ExtendScript Toolkit CS4.lnk
[2012.04.05 18:56:02 | 000,000,934 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Media Encoder CS4.lnk
[2012.04.05 16:32:09 | 000,000,799 | ---- | C] () -- C:\Documents and Settings\Petr Novák\Plocha\Emicsoft M2TS Converter.lnk
[2012.04.05 15:10:37 | 000,000,914 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012.03.27 09:13:44 | 000,001,764 | ---- | C] () -- C:\Documents and Settings\Petr Novák\Plocha\Dafit.RDP
[2012.03.05 14:07:11 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2012.03.05 14:07:11 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2012.03.05 14:07:11 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2012.03.05 14:07:11 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2012.03.05 14:07:11 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2012.02.15 15:17:51 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012.01.13 23:39:15 | 003,548,802 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-S-1-5-21-790525478-630328440-1801674531-1003-0.dat
[2012.01.13 23:39:14 | 000,276,330 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\WPFFontCache_v0400-System.dat
[2012.01.11 14:44:20 | 001,058,016 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
[2011.12.23 21:58:28 | 000,030,568 | ---- | C] () -- C:\WINDOWS\MusiccityDownload.exe
[2011.12.23 21:58:24 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll
[2011.12.23 21:58:24 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll
[2011.12.23 21:58:24 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll
[2011.12.23 21:58:24 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll
[2011.11.14 22:37:51 | 000,003,452 | -HS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\KGyGaAvL.sys
[2011.11.14 22:37:51 | 000,000,088 | RHS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\9D88B9C25C.sys
[2011.11.14 21:44:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\CorelDrw.INI
[2011.10.30 18:56:46 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011.08.10 11:44:23 | 000,000,056 | RHS- | C] () -- C:\WINDOWS\System32\5D6636C005.sys
[2011.08.09 16:23:20 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Petr Novák\Data aplikací\$_hpcst$.hpc
[2011.08.02 18:05:37 | 000,000,028 | ---- | C] () -- C:\WINDOWS\MotionDVSTUDIO.INI
[2011.03.15 21:10:00 | 000,000,068 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2011.01.29 14:01:27 | 000,029,532 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2010.12.31 21:10:54 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010.12.12 17:21:04 | 000,000,038 | ---- | C] () -- C:\WINDOWS\AviSplitter.INI
[2010.12.04 20:26:49 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010.11.12 18:29:49 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2010.08.06 19:54:58 | 000,010,752 | ---- | C] () -- C:\WINDOWS\System32\RockVdd.dll
[2010.08.06 19:54:46 | 001,206,272 | ---- | C] () -- C:\WINDOWS\System32\VitaminCtrl.dll
[2010.08.06 19:54:42 | 000,081,970 | ---- | C] ( ) -- C:\WINDOWS\System32\SMPV.dll
[2010.08.06 19:54:42 | 000,028,731 | ---- | C] () -- C:\WINDOWS\System32\SMPVCORE.dll
[2010.08.06 17:27:36 | 000,003,637 | ---- | C] () -- C:\WINDOWS\System32\ASPRTMM6.DLL
[2010.07.26 17:32:20 | 000,004,888 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\eesymaex.lyu
========== LOP Check ==========
[2010.01.05 20:18:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ACD Systems
[2010.01.22 18:09:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Azureus
[2012.04.11 09:20:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\B7E8586E2958F5C800013F41D151FC4E
[2010.01.05 18:42:42 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\CanonBJ
[2012.04.11 15:01:33 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2010.07.21 20:57:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\EPSON
[2010.02.14 17:40:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\F-Secure
[2011.11.06 20:39:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Installations
[2011.03.27 11:57:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Kamar
[2012.04.11 15:01:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2010.05.11 09:39:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Nokia
[2011.05.05 22:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NokiaInstallerCache
[2012.01.12 13:35:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Panasonic
[2011.12.15 23:03:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Suite
[2012.01.10 11:39:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Samsung
[2012.01.29 14:55:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Temp
[2010.04.24 21:25:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\vsosdk
[2011.01.26 13:11:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010.02.16 13:49:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{6DF4FDEE-F5C0-4F72-A1E6-41CF61B11110}
[2012.01.30 16:25:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\602Installer
[2012.01.30 16:26:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\602XML
[2010.01.05 20:50:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\ACD Systems
[2010.06.07 07:47:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\avidemux
[2010.11.20 20:22:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Azureus
[2010.06.07 07:40:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Broad Intelligence
[2010.01.28 12:51:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Canon
[2010.05.06 16:27:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\CD-LabelPrint
[2012.04.25 21:14:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Dropbox
[2010.06.19 21:45:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Facebook
[2012.01.22 14:12:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Gmail Backup
[2010.04.26 17:02:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\gtk-2.0
[2010.01.05 23:42:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\HeidiSQL
[2011.06.13 09:06:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\ICQLite
[2010.11.01 14:35:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Jeyo
[2010.09.24 10:12:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Mikrotik
[2012.01.10 12:02:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\MyPhoneExplorer
[2010.01.05 23:39:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\MySQL-Front
[2011.08.07 17:43:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Nokia
[2011.08.07 17:43:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Nokia Ovi Suite
[2010.01.14 07:47:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Opera
[2012.01.10 11:15:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Oracle
[2012.01.19 19:40:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\PC Suite
[2012.01.10 11:40:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Samsung
[2010.01.05 21:50:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Star-Tools
[2012.01.10 11:42:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Temp
[2010.01.05 21:26:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Thunderbird
[2010.05.22 09:23:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Vso
[2011.08.07 17:47:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Petr Novák\Data aplikací\Zoner
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 116 bytes -> C:\Documents and Settings\All Users\Data aplikací\Temp:D117B72F
@Alternate Data Stream - 114 bytes -> C:\Documents and Settings\All Users\Data aplikací\Temp:39413AC3
< End of report >