Stránka 1 z 2

prosím o kontrolu - zpomalene PC

Napsal: 25 zář 2012 17:45
od mlhov
Logfile of random's system information tool 1.09 (written by random/random)
Run by x at 2012-09-25 18:43:53
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 75 GB (25%) free of 305 GB
Total RAM: 2047 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:43:59, on 25.9.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\system32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\system32\lsass.exe
C:\WINDOWS.0\system32\Ati2evxx.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\system32\Ati2evxx.exe
C:\WINDOWS.0\Explorer.EXE
C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
C:\WINDOWS.0\system32\spoolsv.exe
C:\WINDOWS.0\system32\acs.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS.0\system32\ctfmon.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS.0\system32\dgdersvc.exe
C:\WINDOWS.0\system32\inetsrv\inetinfo.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\WINDOWS.0\System32\svchost.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\x\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\x.exe

O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS.0\system32\ctfmon.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS.0\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS.0\system32\browseui.dll
O23 - Service: TP-LINK Configuration Service (ACS) - Atheros - C:\WINDOWS.0\system32\acs.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS.0\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS.0\system32\Ati2evxx.exe
O23 - Service: Device Error Recovery Service (dgdersvc) - Devguru Co., Ltd. - C:\WINDOWS.0\system32\dgdersvc.exe
O23 - Service: ZoneAlarm LTD Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.0.207\McCHSvc.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS.0\system32\GameMon.des.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe

--
End of file - 4812 bytes

======Scheduled tasks folder======

C:\WINDOWS.0\tasks\Adobe Flash Player Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ZoneAlarm"=C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe [2012-07-30 73392]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2012-08-09 348664]
"ISW"= []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2012-09-02 895376]
"ctfmon.exe"=C:\WINDOWS.0\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS.0\system32\Ati2evxx.dll [2006-11-29 90112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS.0\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS.0\system32\usmt\migwiz.exe"="C:\WINDOWS.0\system32\usmt\migwiz.exe:*:Enabled:Průvodce přenesením souborů a nastavení"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\WINDOWS.0\system32\muzapp.exe"="C:\WINDOWS.0\system32\muzapp.exe:*:Enabled:MUZ AOD APP player"
"C:\Program Files\TP-LINK\TP-LINK Wireless Client Utility\TWCU.exe"="C:\Program Files\TP-LINK\TP-LINK Wireless Client Utility\TWCU.exe:*:Enabled:TP-LINK Wireless Client Utility"
"C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe"="C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe:*:Enabled:Opera Internet Browser - Plugin wrapper"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype "
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS.0\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS.0\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 1 month======

2012-09-25 18:43:53 ----DC---- C:\rsit
2012-09-22 13:04:06 ----DC---- C:\hry
2012-09-22 12:53:41 ----DC---- C:\Chcete být milionářem LT
2012-09-20 21:19:14 ----DC---- C:\HTC foto
2012-09-12 21:07:30 ----HDC---- C:\WINDOWS.0\$NtUninstallKB2736233$
2012-09-11 19:38:21 ----DC---- C:\Documents and Settings\x\Data aplikací\dvdcss
2012-09-11 19:25:24 ----DC---- C:\VIDEO_TS
2012-09-11 19:24:30 ----DC---- C:\totalcmd
2012-09-11 19:24:30 ----DC---- C:\Documents and Settings\x\Data aplikací\GHISLER
2012-09-02 12:34:33 ----D---- C:\Program Files\uTorrent
2012-09-02 12:33:34 ----DC---- C:\Documents and Settings\x\Data aplikací\uTorrent
2012-08-28 21:08:10 ----DC---- C:\huawei
2012-08-26 13:19:56 ----DC---- C:\Documents and Settings\x\Data aplikací\Unity

======List of files/folders modified in the last 1 month======

2012-09-25 18:43:59 ----DC---- C:\WINDOWS.0\Prefetch
2012-09-25 18:43:59 ----D---- C:\Program Files\Trend Micro
2012-09-25 18:43:55 ----DC---- C:\WINDOWS.0\temp
2012-09-25 18:05:13 ----DC---- C:\WINDOWS.0\system32\inetsrv
2012-09-25 18:03:29 ----DC---- C:\WINDOWS.0
2012-09-25 18:02:52 ----DC---- C:\WINDOWS.0\system32\CatRoot2
2012-09-25 13:02:03 ----AC---- C:\WINDOWS.0\SchedLgU.Txt
2012-09-25 13:00:48 ----DC---- C:\WINDOWS.0\system32\drivers
2012-09-24 21:07:54 ----DC---- C:\Documents and Settings\x\Data aplikací\vlc
2012-09-24 20:33:25 ----D---- C:\filmy-hry
2012-09-24 18:30:13 ----SHD---- C:\System Volume Information
2012-09-24 18:26:54 ----DC---- C:\WINDOWS.0\system32\NtmsData
2012-09-24 16:42:28 ----DC---- C:\WINDOWS.0\Registration
2012-09-23 08:44:43 ----DC---- C:\WINDOWS.0\system32
2012-09-22 22:02:34 ----HDC---- C:\WINDOWS.0\inf
2012-09-22 22:02:25 ----DC---- C:\WINDOWS.0\system32\dllcache
2012-09-22 22:02:23 ----D---- C:\Program Files\Internet Explorer
2012-09-22 22:02:14 ----DC---- C:\WINDOWS.0\ie8updates
2012-09-22 22:01:37 ----HDC---- C:\WINDOWS.0\$hf_mig$
2012-09-22 13:02:27 ----D---- C:\programy
2012-09-21 20:02:44 ----D---- C:\foto mobil
2012-09-20 21:58:17 ----DC---- C:\Documents and Settings\x\Data aplikací\Skype
2012-09-20 21:28:19 ----AC---- C:\WINDOWS.0\system32\FlashPlayerApp.exe
2012-09-17 08:16:46 ----DC---- C:\WINDOWS.0\Debug
2012-09-16 10:57:17 ----DC---- C:\foto-miminko
2012-09-15 12:01:53 ----DC---- C:\WINDOWS.0\Network Diagnostic
2012-09-15 11:38:18 ----HDC---- C:\WINDOWS.0\$NtUninstallKB2723135$
2012-09-12 21:04:39 ----AC---- C:\WINDOWS.0\system32\MRT.exe
2012-09-11 16:40:03 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2012-09-10 16:53:00 ----DC---- C:\WINDOWS.0\Minidump
2012-09-09 09:46:54 ----DC---- C:\WINDOWS.0\system32\Restore
2012-09-03 18:31:20 ----DC---- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\DivX
2012-09-03 18:31:19 ----D---- C:\Program Files\DivX
2012-09-02 12:34:33 ----RD---- C:\Program Files
2012-09-02 11:29:03 ----DC---- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Adobe
2012-09-01 13:13:44 ----SDC---- C:\WINDOWS.0\Tasks
2012-09-01 11:45:51 ----DC---- C:\Config.Msi
2012-08-31 23:41:29 ----SHDC---- C:\WINDOWS.0\Installer
2012-08-30 19:08:41 ----DC---- C:\WINDOWS.0\system32\Logfiles
2012-08-28 20:48:50 ----AC---- C:\WINDOWS.0\system32\ieframe.dll
2012-08-28 17:18:59 ----AC---- C:\WINDOWS.0\system32\wininet.dll
2012-08-28 17:18:58 ----C---- C:\WINDOWS.0\system32\occache.dll
2012-08-28 17:18:58 ----AC---- C:\WINDOWS.0\system32\urlmon.dll
2012-08-28 17:18:58 ----AC---- C:\WINDOWS.0\system32\url.dll
2012-08-28 17:18:57 ----C---- C:\WINDOWS.0\system32\mstime.dll
2012-08-28 17:18:57 ----C---- C:\WINDOWS.0\system32\mshtmled.dll
2012-08-28 17:18:57 ----AC---- C:\WINDOWS.0\system32\mshtml.dll
2012-08-28 17:18:54 ----AC---- C:\WINDOWS.0\system32\msfeedsbs.dll
2012-08-28 17:18:54 ----AC---- C:\WINDOWS.0\system32\msfeeds.dll
2012-08-28 17:18:53 ----C---- C:\WINDOWS.0\system32\licmgr10.dll
2012-08-28 17:18:53 ----C---- C:\WINDOWS.0\system32\jsproxy.dll
2012-08-28 17:18:51 ----AC---- C:\WINDOWS.0\system32\iertutil.dll
2012-08-28 17:18:50 ----C---- C:\WINDOWS.0\system32\iepeers.dll
2012-08-28 17:18:45 ----C---- C:\WINDOWS.0\system32\iedkcs32.dll
2012-08-28 14:07:34 ----C---- C:\WINDOWS.0\system32\ie4uinit.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 JGOGO;JMicron Hot-Plug Driver; C:\WINDOWS.0\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; C:\WINDOWS.0\system32\DRIVERS\jraid.sys [2006-10-30 43648]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS.0\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 avipbb;avipbb; C:\WINDOWS.0\system32\DRIVERS\avipbb.sys [2012-06-15 137928]
R1 avkmgr;avkmgr; C:\WINDOWS.0\system32\DRIVERS\avkmgr.sys [2011-12-09 36000]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS.0\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS.0\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 ssmdrv;ssmdrv; C:\WINDOWS.0\system32\DRIVERS\ssmdrv.sys [2010-06-17 28520]
R1 Vsdatant;vsdatant; C:\WINDOWS.0\System32\vsdatant.sys [2012-07-30 526640]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS.0\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 avgntflt;avgntflt; C:\WINDOWS.0\system32\DRIVERS\avgntflt.sys [2012-06-15 83392]
R2 ISWKL;ZoneAlarm LTD Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys []
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS.0\system32\drivers\ADIHdAud.sys [2007-01-16 293888]
R3 AEAudio;AE Audio Service; C:\WINDOWS.0\system32\drivers\AEAudio.sys [2006-08-07 93952]
R3 AR9271;Wireless Network Adapter Service; C:\WINDOWS.0\system32\DRIVERS\athuw.sys [2010-01-05 1714176]
R3 ati2mtag;ati2mtag; C:\WINDOWS.0\system32\DRIVERS\ati2mtag.sys [2006-11-29 2830336]
R3 dgderdrv;dgderdrv; C:\WINDOWS.0\System32\drivers\dgderdrv.sys [2009-12-22 18136]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS.0\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS.0\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS.0\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS.0\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS.0\System32\Drivers\RootMdm.sys [2001-10-25 5888]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS.0\system32\DRIVERS\Rtenicxp.sys [2006-07-27 83712]
R3 SenFiltService;SenFilt Service; C:\WINDOWS.0\system32\drivers\Senfilt.sys [2006-03-17 392960]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS.0\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS.0\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 WSIMD;wsimd Service; C:\WINDOWS.0\system32\DRIVERS\wsimd.sys [2010-05-21 58208]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\WINDOWS.0\system32\FsUsbExDisk.SYS []
S3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS.0\system32\drivers\mbam.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS.0\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\WINDOWS.0\system32\DRIVERS\ss_bbus.sys [2009-09-19 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\WINDOWS.0\system32\DRIVERS\ss_bmdfl.sys [2009-09-19 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\WINDOWS.0\system32\DRIVERS\ss_bmdm.sys [2009-09-19 123648]
S3 ss_bserd;SAMSUNG USB Mobile Logging Driver; C:\WINDOWS.0\system32\DRIVERS\ss_bserd.sys [2009-09-19 100224]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS.0\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS.0\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS.0\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACS;TP-LINK Configuration Service; C:\WINDOWS.0\system32\acs.exe [2010-05-21 499796]
R2 AntiVirService;Avira Realtime Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2012-06-15 110032]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2012-06-15 86224]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS.0\system32\Ati2evxx.exe [2006-11-29 430080]
R2 dgdersvc;Device Error Recovery Service; C:\WINDOWS.0\system32\dgdersvc.exe [2009-12-22 95568]
R2 IISADMIN;Správa služby IIS; C:\WINDOWS.0\system32\inetsrv\inetinfo.exe [2008-04-14 15872]
R2 IswSvc;ZoneAlarm LTD Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2012-07-14 497320]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-09-07 399432]
R2 W3SVC;Publikování na webu; C:\WINDOWS.0\system32\inetsrv\inetinfo.exe [2008-04-14 15872]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS.0\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2012-09-07 676936]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-03 160944]
S2 vsmon;TrueVector Internet Monitor; C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe [2012-07-30 2445880]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS.0\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-09-20 250288]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS.0\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS.0\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS.0\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.0.207\McCHSvc.exe [2011-06-17 237008]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS.0\system32\GameMon.des [2012-04-05 3969336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 ATI Smart;ATI Smart; C:\WINDOWS.0\system32\ati2sgag.exe [2006-11-28 520192]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS.0\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 FsUsbExService;FsUsbExService; C:\WINDOWS.0\system32\FsUsbExService.Exe [2009-12-22 217088]
S4 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe [2012-01-13 95200]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS.0\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-11-11 620544]
S4 Skype C2C Service;Skype C2C Service; C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-07-05 3048136]

-----------------EOF-----------------

Re: prosím o kontrolu - zpomalene PC

Napsal: 26 zář 2012 07:48
od vyosek
Zdravim :)

vidim nainstalovany MBAM, delal jste jim sken :???:

Re: prosím o kontrolu - zpomalene PC

Napsal: 26 zář 2012 09:16
od mlhov
ano delal jiz nekolikrat, naposledy rychlou kontrolu ale nic mi to nenaslo. jeste k tomu R.S.I.T. logu mi to vyhodilo toto :

info.txt logfile of random's system information tool 1.09 2012-09-25 18:44:02

======Uninstall list======

-->C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\DivX\DivX7\DivX Converter\DivXConverterUninstall.exe /CONVERTER
-->C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\DivX\DivX7\DivX Converter\DivXConverterUninstall.exe /CONVERTER
-->C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\DivX\DivX7\DivX Plus DirectShow Filters\DivXDSFiltersUninstall.exe /DSFILTERS
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS.0\INF\PCHealth.inf
µTorrent-->"C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
Adobe Flash Player 11 ActiveX-->C:\WINDOWS.0\system32\Macromed\Flash\FlashUtil32_11_4_402_278_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\WINDOWS.0\system32\Macromed\Flash\FlashUtil32_11_4_402_265_Plugin.exe -maintain plugin
Adobe Reader X (10.1.4) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AA1000000001}
Adobe Shockwave Player 11.6-->"C:\WINDOWS.0\system32\Adobe\Shockwave 11\uninstaller.exe"
Aktualizace systému Windows Internet Explorer 8 (KB2598845)-->"C:\WINDOWS.0\ie8updates\KB2598845-IE8\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2345886)-->"C:\WINDOWS.0\$NtUninstallKB2345886$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2467659)-->"C:\WINDOWS.0\$NtUninstallKB2467659$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2718704)-->"C:\WINDOWS.0\$NtUninstallKB2718704$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2736233)-->"C:\WINDOWS.0\$NtUninstallKB2736233$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB898461)-->"C:\WINDOWS.0\$NtUninstallKB898461$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951978)-->"C:\WINDOWS.0\$NtUninstallKB951978$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB955759)-->"C:\WINDOWS.0\$NtUninstallKB955759$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB968389)-->"C:\WINDOWS.0\$NtUninstallKB968389$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB971029)-->"C:\WINDOWS.0\$NtUninstallKB971029$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973687)-->"C:\WINDOWS.0\$NtUninstallKB973687$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973815)-->"C:\WINDOWS.0\$NtUninstallKB973815$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB2378111)-->"C:\WINDOWS.0\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB952069)-->"C:\WINDOWS.0\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB954155)-->"C:\WINDOWS.0\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS.0\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB975558)-->"C:\WINDOWS.0\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB978695)-->"C:\WINDOWS.0\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení pro Microsoft Windows (KB2564958)-->"C:\WINDOWS.0\$NtUninstallKB2564958$\spuninst\spuninst.exe"
Aktualizace zabezpečení produktu Windows XP (KB941569)-->"C:\WINDOWS.0\$NtUninstallKB941569$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2510531)-->"C:\WINDOWS.0\ie8updates\KB2510531-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2544521)-->"C:\WINDOWS.0\ie8updates\KB2544521-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2618444)-->"C:\WINDOWS.0\ie8updates\KB2618444-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2647516)-->"C:\WINDOWS.0\ie8updates\KB2647516-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2675157)-->"C:\WINDOWS.0\ie8updates\KB2675157-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2699988)-->"C:\WINDOWS.0\ie8updates\KB2699988-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2722913)-->"C:\WINDOWS.0\ie8updates\KB2722913-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB2744842)-->"C:\WINDOWS.0\ie8updates\KB2744842-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB982381)-->"C:\WINDOWS.0\ie8updates\KB982381-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2079403)-->"C:\WINDOWS.0\$NtUninstallKB2079403$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2115168)-->"C:\WINDOWS.0\$NtUninstallKB2115168$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2124261)-->"C:\WINDOWS.0\$NtUninstallKB2124261$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2229593)-->"C:\WINDOWS.0\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2290570)-->"C:\WINDOWS.0\$NtUninstallKB2290570$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2296011)-->"C:\WINDOWS.0\$NtUninstallKB2296011$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2347290)-->"C:\WINDOWS.0\$NtUninstallKB2347290$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2360937)-->"C:\WINDOWS.0\$NtUninstallKB2360937$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2387149)-->"C:\WINDOWS.0\$NtUninstallKB2387149$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2393802)-->"C:\WINDOWS.0\$NtUninstallKB2393802$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2419632)-->"C:\WINDOWS.0\$NtUninstallKB2419632$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2423089)-->"C:\WINDOWS.0\$NtUninstallKB2423089$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2440591)-->"C:\WINDOWS.0\$NtUninstallKB2440591$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2443105)-->"C:\WINDOWS.0\$NtUninstallKB2443105$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2476490)-->"C:\WINDOWS.0\$NtUninstallKB2476490$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2478960)-->"C:\WINDOWS.0\$NtUninstallKB2478960$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2478971)-->"C:\WINDOWS.0\$NtUninstallKB2478971$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2479943)-->"C:\WINDOWS.0\$NtUninstallKB2479943$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2481109)-->"C:\WINDOWS.0\$NtUninstallKB2481109$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2483185)-->"C:\WINDOWS.0\$NtUninstallKB2483185$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2485663)-->"C:\WINDOWS.0\$NtUninstallKB2485663$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2506212)-->"C:\WINDOWS.0\$NtUninstallKB2506212$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2507618)-->"C:\WINDOWS.0\$NtUninstallKB2507618$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2508429)-->"C:\WINDOWS.0\$NtUninstallKB2508429$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2509553)-->"C:\WINDOWS.0\$NtUninstallKB2509553$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2510581)-->"C:\WINDOWS.0\$NtUninstallKB2510581$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2535512)-->"C:\WINDOWS.0\$NtUninstallKB2535512$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2536276-v2)-->"C:\WINDOWS.0\$NtUninstallKB2536276-v2$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2544521)-->"C:\WINDOWS.0\$NtUninstallKB2544521$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2544893-v2)-->"C:\WINDOWS.0\$NtUninstallKB2544893-v2$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2566454)-->"C:\WINDOWS.0\$NtUninstallKB2566454$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2570947)-->"C:\WINDOWS.0\$NtUninstallKB2570947$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2584146)-->"C:\WINDOWS.0\$NtUninstallKB2584146$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2585542)-->"C:\WINDOWS.0\$NtUninstallKB2585542$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2592799)-->"C:\WINDOWS.0\$NtUninstallKB2592799$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2598479)-->"C:\WINDOWS.0\$NtUninstallKB2598479$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2603381)-->"C:\WINDOWS.0\$NtUninstallKB2603381$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2618451)-->"C:\WINDOWS.0\$NtUninstallKB2618451$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2619339)-->"C:\WINDOWS.0\$NtUninstallKB2619339$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2620712)-->"C:\WINDOWS.0\$NtUninstallKB2620712$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2621440)-->"C:\WINDOWS.0\$NtUninstallKB2621440$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2624667)-->"C:\WINDOWS.0\$NtUninstallKB2624667$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2631813)-->"C:\WINDOWS.0\$NtUninstallKB2631813$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2646524)-->"C:\WINDOWS.0\$NtUninstallKB2646524$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2653956)-->"C:\WINDOWS.0\$NtUninstallKB2653956$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2655992)-->"C:\WINDOWS.0\$NtUninstallKB2655992$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2659262)-->"C:\WINDOWS.0\$NtUninstallKB2659262$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2661637)-->"C:\WINDOWS.0\$NtUninstallKB2661637$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2675157)-->"C:\WINDOWS.0\$NtUninstallKB2675157$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2676562)-->"C:\WINDOWS.0\$NtUninstallKB2676562$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2686509)-->"C:\WINDOWS.0\$NtUninstallKB2686509$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2691442)-->"C:\WINDOWS.0\$NtUninstallKB2691442$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2695962)-->"C:\WINDOWS.0\$NtUninstallKB2695962$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2698365)-->"C:\WINDOWS.0\$NtUninstallKB2698365$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2705219)-->"C:\WINDOWS.0\$NtUninstallKB2705219$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2707511)-->"C:\WINDOWS.0\$NtUninstallKB2707511$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2712808)-->"C:\WINDOWS.0\$NtUninstallKB2712808$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2718523)-->"C:\WINDOWS.0\$NtUninstallKB2718523$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2719985)-->"C:\WINDOWS.0\$NtUninstallKB2719985$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2723135)-->"C:\WINDOWS.0\$NtUninstallKB2723135$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2731847)-->"C:\WINDOWS.0\$NtUninstallKB2731847$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB923561)-->"C:\WINDOWS.0\$NtUninstallKB923561$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB946648)-->"C:\WINDOWS.0\$NtUninstallKB946648$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950762)-->"C:\WINDOWS.0\$NtUninstallKB950762$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950974)-->"C:\WINDOWS.0\$NtUninstallKB950974$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951376-v2)-->"C:\WINDOWS.0\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952004)-->"C:\WINDOWS.0\$NtUninstallKB952004$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952954)-->"C:\WINDOWS.0\$NtUninstallKB952954$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB953155)-->"C:\WINDOWS.0\$NtUninstallKB953155$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB954459)-->"C:\WINDOWS.0\$NtUninstallKB954459$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956572)-->"C:\WINDOWS.0\$NtUninstallKB956572$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956744)-->"C:\WINDOWS.0\$NtUninstallKB956744$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956802)-->"C:\WINDOWS.0\$NtUninstallKB956802$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956844)-->"C:\WINDOWS.0\$NtUninstallKB956844$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958644)-->"C:\WINDOWS.0\$NtUninstallKB958644$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB959426)-->"C:\WINDOWS.0\$NtUninstallKB959426$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960803)-->"C:\WINDOWS.0\$NtUninstallKB960803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960859)-->"C:\WINDOWS.0\$NtUninstallKB960859$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB961501)-->"C:\WINDOWS.0\$NtUninstallKB961501$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969059)-->"C:\WINDOWS.0\$NtUninstallKB969059$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970430)-->"C:\WINDOWS.0\$NtUninstallKB970430$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970483)-->"C:\WINDOWS.0\$NtUninstallKB970483$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971657)-->"C:\WINDOWS.0\$NtUninstallKB971657$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB972270)-->"C:\WINDOWS.0\$NtUninstallKB972270$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973507)-->"C:\WINDOWS.0\$NtUninstallKB973507$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973869)-->"C:\WINDOWS.0\$NtUninstallKB973869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973904)-->"C:\WINDOWS.0\$NtUninstallKB973904$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974112)-->"C:\WINDOWS.0\$NtUninstallKB974112$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974318)-->"C:\WINDOWS.0\$NtUninstallKB974318$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974392)-->"C:\WINDOWS.0\$NtUninstallKB974392$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974571)-->"C:\WINDOWS.0\$NtUninstallKB974571$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975025)-->"C:\WINDOWS.0\$NtUninstallKB975025$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975467)-->"C:\WINDOWS.0\$NtUninstallKB975467$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975560)-->"C:\WINDOWS.0\$NtUninstallKB975560$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975713)-->"C:\WINDOWS.0\$NtUninstallKB975713$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB977816)-->"C:\WINDOWS.0\$NtUninstallKB977816$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB977914)-->"C:\WINDOWS.0\$NtUninstallKB977914$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978338)-->"C:\WINDOWS.0\$NtUninstallKB978338$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978542)-->"C:\WINDOWS.0\$NtUninstallKB978542$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978706)-->"C:\WINDOWS.0\$NtUninstallKB978706$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979309)-->"C:\WINDOWS.0\$NtUninstallKB979309$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979482)-->"C:\WINDOWS.0\$NtUninstallKB979482$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979687)-->"C:\WINDOWS.0\$NtUninstallKB979687$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981322)-->"C:\WINDOWS.0\$NtUninstallKB981322$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981997)-->"C:\WINDOWS.0\$NtUninstallKB981997$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982132)-->"C:\WINDOWS.0\$NtUninstallKB982132$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982665)-->"C:\WINDOWS.0\$NtUninstallKB982665$\spuninst\spuninst.exe"
ATI Catalyst Control Center-->MsiExec.exe /I{B5376B0E-C352-4B07-880C-8BB01179FCA5}
ATI Display Driver-->rundll32 C:\WINDOWS.0\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
ATI HYDRAVISION-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{083F79E4-6FE9-46FB-A6C6-4F8862742947}\setup.exe"
ATI Parental Control & Encoder-->MsiExec.exe /I{9862B19F-4CAD-4EED-920F-2F378D84393F}
ATI Problem Report Wizard-->MsiExec.exe /X{5DA6F06A-B389-407B-BF8C-1548767914D8}
Avira APC 0.1.0.1-->"C:\Program Files\Avira\Protection Cloud\unins000.exe"
Avira Free Antivirus-->C:\Program Files\Avira\AntiVir Desktop\setup.exe /REMOVE
AVIVO Codecs-->MsiExec.exe /X{C941F1F1-25B3-4DF5-83E6-888C51A1AAB6}
Babylon toolbar on IE-->"C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\uninstall.exe"
Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS.0\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.inf
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
ClocX (1.5b2)-->"C:\Program Files\ClocX\Uninstall.exe"
Google Earth Plug-in-->MsiExec.exe /X{33286280-8617-11E1-8FF6-B8AC6F97B88E}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Google Updater-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS.0\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS.0\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS.0\$NtUninstallKB929399$\spuninst\spuninst.exe"
Java(TM) 7 Update 5-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217004FF}
JavaFX 2.1.1-->MsiExec.exe /X{1111706F-666A-4037-7777-211328764D10}
JMB36X Raid Configurer-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x9 -removeonly
Kies-->"C:\Program Files\InstallShield Installation Information\{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47}\Setup.exe" -runfromtemp -l0x0405 -removeonly
Kies-->MsiExec.exe /X{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47}
Malwarebytes Anti-Malware verze 1.65.0.1400-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
McAfee Security Scan Plus-->"C:\Program Files\McAfee Security Scan\uninstall.exe"
McAfee SiteAdvisor-->C:\Program Files\McAfee\SiteAdvisor\Uninstall.exe
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS.0\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->C:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /lcid 1029 /parameterfolder ClientLP
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->MsiExec.exe /X{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}
Microsoft .NET Framework 4 Client Profile-->C:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS.0\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Opera 12.00-->"C:\Program Files\Opera\Opera.exe" /uninstall
Opera 9.64-->MsiExec.exe /X{E1BBBAC5-2857-4155-82A6-54492CE88620}
Oprava Hotfix systému Windows XP (KB2633952)-->"C:\WINDOWS.0\$NtUninstallKB2633952$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB952287)-->"C:\WINDOWS.0\$NtUninstallKB952287$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB961118)-->"C:\WINDOWS.0\$NtUninstallKB961118$\spuninst\spuninst.exe"
PC Connectivity Solution-->MsiExec.exe /I{34610DE0-3C13-42CA-8E32-01FFA38AB6E8}
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\Setup.exe" -l0x5 -removeonly
SAMSUNG USB Driver for Mobile Phones-->C:\Program Files\SAMSUNG\USB Drivers\Uninstall.exe
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)-->C:\WINDOWS.0\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {94EFE014-E577-310B-B2D5-6973A21D8A90} /qb+ REBOOTPROMPT=""
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)-->C:\WINDOWS.0\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {F6F5AC31-9833-3E77-AC8E-8E910CAB39AE} /qb+ REBOOTPROMPT=""
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)-->c:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {67A5F99B-5EBA-3812-8D2E-BC251490DD3F} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->c:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)-->c:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {86BB5A25-8CC3-33CE-A393-CF28901682B2} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)-->c:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {16EEC04A-B924-37E0-97CF-422DCEFC1B63} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)-->c:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {C4D978AA-2668-3404-96DE-96E2AFC62FD7} /parameterfolder Client
Shot Online-->c:\GamesCampus\Shot Online\uninst.exe
ShotOnline International- remove only-->"c:\GamesCampus\Shot Online\uninst.exe"
Skype Click to Call-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 5.10-->MsiExec.exe /X{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
Softarová utilita ATI - Odinstalovat-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
SoundMAX-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\Setup.exe" -l0x9 -removeonly
swMSM-->MsiExec.exe /I{612C34C7-5E90-47D8-9B5C-0F717DD82726}
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Total Uninstall 5.10.1-->"C:\Program Files\Total Uninstall 5\unins000.exe"
TP-LINK Wireless Client Utility-->"C:\Program Files\InstallShield Installation Information\{7A2A107B-9695-423F-9462-8F17C178BD35}\setup.exe" -runfromtemp -l0x0009 -removeonly
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS.0\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
VC80CRTRedist - 8.0.50727.6195-->MsiExec.exe /I{933B4015-4618-4716-A828-5289FC03165F}
VLC media player 1.0.3-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Windows Internet Explorer 8-->"C:\WINDOWS.0\ie8\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS.0\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
YoWindow-->"C:\Program Files\YoWindow\uninstall.exe"
ZoneAlarm Firewall-->MsiExec.exe /I{28EBD8EA-6050-431C-8258-23B268E9DB53}
ZoneAlarm Free Firewall-->"C:\Program Files\CheckPoint\Install\Install.exe" /s uninstall
ZoneAlarm Security Toolbar -->"C:\Program Files\Check Point Software Technologies LTD\zonealarm\1.6.7.4\uninstall.exe"
ZoneAlarm Security-->MsiExec.exe /I{93E4DD5D-6937-4292-98FE-A567A5A51448}

======Security center information======

AV: Avira Desktop
FW: ZoneAlarm Free Firewall Firewall (disabled)

======System event log======

Computer Name: X-F137B9FCA1244
Event Code: 7036
Message: Stav služby Správce vzdáleného přístupu byl změněn na: Spuštěno

Record Number: 8055
Source Name: Service Control Manager
Time Written: 20120821203839.000000+120
Event Type: Informace
User:

Computer Name: X-F137B9FCA1244
Event Code: 7036
Message: Stav služby Služba rozpoznávání pomocí protokolu SSDP byl změněn na: Spuštěno

Record Number: 8054
Source Name: Service Control Manager
Time Written: 20120821203837.000000+120
Event Type: Informace
User:

Computer Name: X-F137B9FCA1244
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě dgderdrv úspěšně odeslán.

Record Number: 8053
Source Name: Service Control Manager
Time Written: 20120821203837.000000+120
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: X-F137B9FCA1244
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě IP Traffic Filter Driver úspěšně odeslán.

Record Number: 8052
Source Name: Service Control Manager
Time Written: 20120821203837.000000+120
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: X-F137B9FCA1244
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě Služba rozpoznávání pomocí protokolu SSDP úspěšně odeslán.

Record Number: 8051
Source Name: Service Control Manager
Time Written: 20120821203836.000000+120
Event Type: Informace
User: NT AUTHORITY\SYSTEM

=====Application event log=====

Computer Name: X-F137B9FCA1244
Event Code: 0
Message:
Record Number: 1933
Source Name: McAfee ScanAndRepair Svc
Time Written: 20120710205955.000000+120
Event Type: Informace
User:

Computer Name: X-F137B9FCA1244
Event Code: 0
Message:
Record Number: 1932
Source Name: McAfee ScanAndRepair Svc
Time Written: 20120710205935.000000+120
Event Type: Informace
User:

Computer Name: X-F137B9FCA1244
Event Code: 0
Message:
Record Number: 1931
Source Name: gupdate
Time Written: 20120710201800.000000+120
Event Type: Informace
User:

Computer Name: X-F137B9FCA1244
Event Code: 0
Message:
Record Number: 1930
Source Name: gupdate
Time Written: 20120710201800.000000+120
Event Type: Informace
User:

Computer Name: X-F137B9FCA1244
Event Code: 2444
Message: Koordinátor MS DTC byl spuštěn s následujícím nastavením:



Konfigurace zabezpečení (VYPNUTO = 0 a ZAPNUTO = 1):

Síťová správa transakcí = 0,

Síťoví klienti = 0,

Příchozí distribuované transakce pomocí nativního protokolu MSDTC = 0,

Odchozí distribuované transakce pomocí nativního protokolu MSDTC = 0,

Protokol TIP (Transaction Internet Protocol) = 0,

Transakce XA = 0
Record Number: 1929
Source Name: MSDTC
Time Written: 20120710183923.000000+120
Event Type: Informace
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files\PC Connectivity Solution;C:\Program Files\ATI Technologies\ATI.ACE
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 2, GenuineIntel
"PROCESSOR_REVISION"=0f02
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP

-----------------EOF-----------------

Re: prosím o kontrolu - zpomalene PC

Napsal: 26 zář 2012 11:36
od vyosek
:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
  • Ukoncete vsechny programy
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pockejte na dokonceni PreScanu
  • Zvolte moznost Prohledat (scan)
  • Po dokonceni skenu kliknete na Zpráva (Report)- otevre se log, ten sem vlozte
  • Detailni postup vc. obrazku mate zde http://forum.viry.cz/viewtopic.php?f=24&t=120452

Re: prosím o kontrolu - zpomalene PC

Napsal: 26 zář 2012 12:04
od mlhov
snad jsem to udelal spravne :-) mam XP tak jsem to normalne spustil. bylo to rychle


RogueKiller V8.0.5 [09/23/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Podpora: http://www.geekstogo.com/forum/files/fi ... guekiller/
Operační systém: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : x [Práva správce]
Mód : Kontrola -- Datum : 09/26/2012 13:02:08

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJPOL] HKCU\[...]\System : disableregistrytools (0) -> NALEZENO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
SSDT[25] : NtClose @ 0x805BC538 -> HOOKED (Unknown @ 0xBA6D6DFC)
SSDT[41] : NtCreateKey @ 0x80623FD6 -> HOOKED (Unknown @ 0xBA6D6DB6)
SSDT[50] : NtCreateSection @ 0x805AB3D0 -> HOOKED (Unknown @ 0xBA6D6E06)
SSDT[53] : NtCreateThread @ 0x805D1038 -> HOOKED (Unknown @ 0xBA6D6DAC)
SSDT[63] : NtDeleteKey @ 0x80624472 -> HOOKED (Unknown @ 0xBA6D6DBB)
SSDT[65] : NtDeleteValueKey @ 0x80624642 -> HOOKED (Unknown @ 0xBA6D6DC5)
SSDT[68] : NtDuplicateObject @ 0x805BE010 -> HOOKED (Unknown @ 0xBA6D6DF7)
SSDT[98] : NtLoadKey @ 0x806261FA -> HOOKED (Unknown @ 0xBA6D6DCA)
SSDT[122] : NtOpenProcess @ 0x805CB456 -> HOOKED (Unknown @ 0xBA6D6D98)
SSDT[128] : NtOpenThread @ 0x805CB6E2 -> HOOKED (Unknown @ 0xBA6D6D9D)
SSDT[177] : NtQueryValueKey @ 0x806221FA -> HOOKED (Unknown @ 0xBA6D6E1F)
SSDT[193] : NtReplaceKey @ 0x806260AA -> HOOKED (Unknown @ 0xBA6D6DD4)
SSDT[200] : NtRequestWaitReplyPort @ 0x805A2D7E -> HOOKED (Unknown @ 0xBA6D6E10)
SSDT[204] : NtRestoreKey @ 0x806259B6 -> HOOKED (Unknown @ 0xBA6D6DCF)
SSDT[213] : NtSetContextThread @ 0x805D2C1A -> HOOKED (Unknown @ 0xBA6D6E0B)
SSDT[237] : NtSetSecurityObject @ 0x805C0636 -> HOOKED (Unknown @ 0xBA6D6E15)
SSDT[247] : NtSetValueKey @ 0x80622548 -> HOOKED (Unknown @ 0xBA6D6DC0)
SSDT[255] : NtSystemDebugControl @ 0x80617FAA -> HOOKED (Unknown @ 0xBA6D6E1A)
SSDT[257] : NtTerminateProcess @ 0x805D22D8 -> HOOKED (Unknown @ 0xBA6D6DA7)
S_SSDT[549] : Unknown -> HOOKED (Unknown @ 0xBA6D6E2E)
S_SSDT[552] : Unknown -> HOOKED (Unknown @ 0xBA6D6E33)

¤¤¤ Extern Hives: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\WINDOWS.0\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD3200AAKS-22SBA0 +++++
--- User ---
[MBR] 0e35b77e90f38104acf18006b128db6d
[BSP] b6936f0d3c20760fa0cf391393869b77 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 305234 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt

Re: prosím o kontrolu - zpomalene PC

Napsal: 26 zář 2012 12:23
od vyosek
:arrow: Spustte znovu RogueKiller
  • Zvolte moznost Prohledat a pote Smazat a nasledne Zprava - otevre se log, ten sem vlozte
  • Pak kliknete na Oprava Host a Zprava - otevre se log, ten sem vlozte

Re: prosím o kontrolu - zpomalene PC

Napsal: 26 zář 2012 12:30
od mlhov
RogueKiller V8.0.5 [09/23/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Podpora: http://www.geekstogo.com/forum/files/fi ... guekiller/
Operační systém: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : x [Práva správce]
Mód : Odebrat -- Datum : 09/26/2012 13:27:54

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJPOL] HKCU\[...]\System : disableregistrytools (0) -> VYMAZÁNO
[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
SSDT[25] : NtClose @ 0x805BC538 -> HOOKED (Unknown @ 0xBA6D6DFC)
SSDT[41] : NtCreateKey @ 0x80623FD6 -> HOOKED (Unknown @ 0xBA6D6DB6)
SSDT[50] : NtCreateSection @ 0x805AB3D0 -> HOOKED (Unknown @ 0xBA6D6E06)
SSDT[53] : NtCreateThread @ 0x805D1038 -> HOOKED (Unknown @ 0xBA6D6DAC)
SSDT[63] : NtDeleteKey @ 0x80624472 -> HOOKED (Unknown @ 0xBA6D6DBB)
SSDT[65] : NtDeleteValueKey @ 0x80624642 -> HOOKED (Unknown @ 0xBA6D6DC5)
SSDT[68] : NtDuplicateObject @ 0x805BE010 -> HOOKED (Unknown @ 0xBA6D6DF7)
SSDT[98] : NtLoadKey @ 0x806261FA -> HOOKED (Unknown @ 0xBA6D6DCA)
SSDT[122] : NtOpenProcess @ 0x805CB456 -> HOOKED (Unknown @ 0xBA6D6D98)
SSDT[128] : NtOpenThread @ 0x805CB6E2 -> HOOKED (Unknown @ 0xBA6D6D9D)
SSDT[177] : NtQueryValueKey @ 0x806221FA -> HOOKED (Unknown @ 0xBA6D6E1F)
SSDT[193] : NtReplaceKey @ 0x806260AA -> HOOKED (Unknown @ 0xBA6D6DD4)
SSDT[200] : NtRequestWaitReplyPort @ 0x805A2D7E -> HOOKED (Unknown @ 0xBA6D6E10)
SSDT[204] : NtRestoreKey @ 0x806259B6 -> HOOKED (Unknown @ 0xBA6D6DCF)
SSDT[213] : NtSetContextThread @ 0x805D2C1A -> HOOKED (Unknown @ 0xBA6D6E0B)
SSDT[237] : NtSetSecurityObject @ 0x805C0636 -> HOOKED (Unknown @ 0xBA6D6E15)
SSDT[247] : NtSetValueKey @ 0x80622548 -> HOOKED (Unknown @ 0xBA6D6DC0)
SSDT[255] : NtSystemDebugControl @ 0x80617FAA -> HOOKED (Unknown @ 0xBA6D6E1A)
SSDT[257] : NtTerminateProcess @ 0x805D22D8 -> HOOKED (Unknown @ 0xBA6D6DA7)
S_SSDT[549] : Unknown -> HOOKED (Unknown @ 0xBA6D6E2E)
S_SSDT[552] : Unknown -> HOOKED (Unknown @ 0xBA6D6E33)

¤¤¤ Extern Hives: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\WINDOWS.0\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD3200AAKS-22SBA0 +++++
--- User ---
[MBR] 0e35b77e90f38104acf18006b128db6d
[BSP] b6936f0d3c20760fa0cf391393869b77 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 305234 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[4].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt ; RKreport[4].txt



oprava host:


RogueKiller V8.0.5 [09/23/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Podpora: http://www.geekstogo.com/forum/files/fi ... guekiller/
Operační systém: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : x [Práva správce]
Mód : Odebrat -- Datum : 09/26/2012 13:29:48

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
SSDT[25] : NtClose @ 0x805BC538 -> HOOKED (Unknown @ 0xBA6D6DFC)
SSDT[41] : NtCreateKey @ 0x80623FD6 -> HOOKED (Unknown @ 0xBA6D6DB6)
SSDT[50] : NtCreateSection @ 0x805AB3D0 -> HOOKED (Unknown @ 0xBA6D6E06)
SSDT[53] : NtCreateThread @ 0x805D1038 -> HOOKED (Unknown @ 0xBA6D6DAC)
SSDT[63] : NtDeleteKey @ 0x80624472 -> HOOKED (Unknown @ 0xBA6D6DBB)
SSDT[65] : NtDeleteValueKey @ 0x80624642 -> HOOKED (Unknown @ 0xBA6D6DC5)
SSDT[68] : NtDuplicateObject @ 0x805BE010 -> HOOKED (Unknown @ 0xBA6D6DF7)
SSDT[98] : NtLoadKey @ 0x806261FA -> HOOKED (Unknown @ 0xBA6D6DCA)
SSDT[122] : NtOpenProcess @ 0x805CB456 -> HOOKED (Unknown @ 0xBA6D6D98)
SSDT[128] : NtOpenThread @ 0x805CB6E2 -> HOOKED (Unknown @ 0xBA6D6D9D)
SSDT[177] : NtQueryValueKey @ 0x806221FA -> HOOKED (Unknown @ 0xBA6D6E1F)
SSDT[193] : NtReplaceKey @ 0x806260AA -> HOOKED (Unknown @ 0xBA6D6DD4)
SSDT[200] : NtRequestWaitReplyPort @ 0x805A2D7E -> HOOKED (Unknown @ 0xBA6D6E10)
SSDT[204] : NtRestoreKey @ 0x806259B6 -> HOOKED (Unknown @ 0xBA6D6DCF)
SSDT[213] : NtSetContextThread @ 0x805D2C1A -> HOOKED (Unknown @ 0xBA6D6E0B)
SSDT[237] : NtSetSecurityObject @ 0x805C0636 -> HOOKED (Unknown @ 0xBA6D6E15)
SSDT[247] : NtSetValueKey @ 0x80622548 -> HOOKED (Unknown @ 0xBA6D6DC0)
SSDT[255] : NtSystemDebugControl @ 0x80617FAA -> HOOKED (Unknown @ 0xBA6D6E1A)
SSDT[257] : NtTerminateProcess @ 0x805D22D8 -> HOOKED (Unknown @ 0xBA6D6DA7)
S_SSDT[549] : Unknown -> HOOKED (Unknown @ 0xBA6D6E2E)
S_SSDT[552] : Unknown -> HOOKED (Unknown @ 0xBA6D6E33)

¤¤¤ Extern Hives: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\WINDOWS.0\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD3200AAKS-22SBA0 +++++
--- User ---
[MBR] 0e35b77e90f38104acf18006b128db6d
[BSP] b6936f0d3c20760fa0cf391393869b77 : Windows XP MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 305234 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[8].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt ; RKreport[4].txt ; RKreport[5].txt ;
RKreport[6].txt ; RKreport[7].txt ; RKreport[8].txt

Re: prosím o kontrolu - zpomalene PC

Napsal: 26 zář 2012 12:32
od vyosek
:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    CREATERESTOREPOINT
    
    netsvcs
    drivers32
    savembr:0
    
    /md5start
    atapi.sys
    autochk.exe
    cdrom.sys
    explorer.exe
    hal.dll
    scecli.dll
    services.exe
    svchost.exe
    tcpip.sys
    userinit.exe
    winlogon.exe
    /md5stop
    
    %systemroot%*.* /U /s
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    %SYSTEMDRIVE%\*.exe
    
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    
    %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
    %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
    %PROGRAMFILES%\Opera\opera.exe /md5
    %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5
    
    %SystemDrive%\PhysicalMBR.bin /md5 
    
    *crack* /s
    *keygen* /s
    *loader* /s
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
  • Pokud budou logy dlouhe (forum bude kricet o prekroceni maximalniho poctu znaku), tak je rozdelte do vice prispevku[
[/list]

Re: prosím o kontrolu - zpomalene PC

Napsal: 26 zář 2012 12:53
od mlhov
OTL logfile created on: 26.9.2012 13:41:53 - Run 1
OTL by OldTimer - Version 3.2.68.0 Folder = C:\Documents and Settings\x\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,53 Gb Available Physical Memory | 76,40% Memory free
3,85 Gb Paging File | 3,30 Gb Available in Paging File | 85,83% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS.0 | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 71,74 Gb Free Space | 24,07% Space Free | Partition Type: NTFS

Computer Name: X-F137B9FCA1244 | User Name: x | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2012.09.26 13:39:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\x\Plocha\OTL.exe
PRC - [2012.09.07 17:04:46 | 000,676,936 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012.09.07 17:04:46 | 000,399,432 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012.09.07 17:04:44 | 000,766,536 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2012.08.09 19:11:44 | 000,348,664 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2012.07.14 15:59:32 | 000,497,320 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe
PRC - [2012.06.15 16:46:18 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2012.06.15 16:46:16 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2012.06.15 16:46:16 | 000,080,336 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2010.05.21 13:56:04 | 000,499,796 | ---- | M] (Atheros) -- C:\WINDOWS.0\system32\acs.exe
PRC - [2009.12.22 04:31:02 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) -- C:\WINDOWS.0\system32\dgdersvc.exe
PRC - [2008.04.14 08:52:28 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.0\system32\inetsrv\inetinfo.exe
PRC - [2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.0\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2012.06.15 16:46:19 | 000,398,288 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll


========== Services (SafeList) ==========

SRV - [2012.09.20 21:28:20 | 000,250,288 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS.0\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.09.07 17:04:46 | 000,676,936 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012.09.07 17:04:46 | 000,399,432 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012.07.30 12:31:04 | 002,445,880 | ---- | M] (Check Point Software Technologies LTD) [Auto | Stopped] -- C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe -- (vsmon)
SRV - [2012.07.14 15:59:32 | 000,497,320 | ---- | M] (Check Point Software Technologies) [Auto | Running] -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe -- (IswSvc)
SRV - [2012.07.05 18:41:46 | 003,048,136 | ---- | M] (Skype Technologies S.A.) [Disabled | Stopped] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012.07.03 13:19:28 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.06.15 16:46:18 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2012.06.15 16:46:16 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2012.04.05 18:03:00 | 003,969,336 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS.0\system32\GameMon.des -- (npggsvc)
SRV - [2012.01.13 11:21:10 | 000,095,200 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- c:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2011.06.17 19:33:04 | 000,237,008 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\3.0.207\McCHSvc.exe -- (McComponentHostService)
SRV - [2010.05.21 13:56:04 | 000,499,796 | ---- | M] (Atheros) [Auto | Running] -- C:\WINDOWS.0\system32\acs.exe -- (ACS)
SRV - [2009.12.22 04:31:26 | 000,217,088 | ---- | M] (Teruten) [Disabled | Stopped] -- C:\WINDOWS.0\system32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2009.12.22 04:31:02 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) [Auto | Running] -- C:\WINDOWS.0\system32\dgdersvc.exe -- (dgdersvc)
SRV - [2008.11.11 09:38:06 | 000,620,544 | ---- | M] (Nokia.) [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2008.04.14 08:52:28 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS.0\system32\inetsrv\inetinfo.exe -- (W3SVC)
SRV - [2008.04.14 08:52:28 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS.0\system32\inetsrv\inetinfo.exe -- (IISADMIN)
SRV - [2008.04.14 05:22:08 | 000,006,656 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\wuauserv.dll -- (wuauserv)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2012.09.07 17:04:46 | 000,022,856 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2012.07.30 11:59:48 | 000,526,640 | ---- | M] (Check Point Software Technologies LTD) [Kernel | System | Running] -- C:\WINDOWS.0\system32\vsdatant.sys -- (Vsdatant)
DRV - [2012.07.14 15:59:44 | 000,027,056 | ---- | M] (Check Point Software Technologies) [Kernel | Auto | Running] -- C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys -- (ISWKL)
DRV - [2012.06.15 16:46:19 | 000,137,928 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS.0\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2012.06.15 16:46:19 | 000,083,392 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS.0\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2011.12.09 12:40:53 | 000,036,000 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS.0\system32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2010.06.17 14:14:27 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS.0\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2010.05.21 13:56:04 | 000,058,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\wsimd.sys -- (WSIMD)
DRV - [2010.01.05 03:31:32 | 001,714,176 | R--- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\athuw.sys -- (AR9271)
DRV - [2009.12.22 04:31:26 | 000,036,640 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2009.12.22 04:31:02 | 000,018,136 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\dgderdrv.sys -- (dgderdrv)
DRV - [2009.09.19 07:30:10 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bmdm.sys -- (ss_bmdm)
DRV - [2009.09.19 07:30:10 | 000,100,224 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bserd.sys -- (ss_bserd)
DRV - [2009.09.19 07:30:10 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bbus.sys -- (ss_bbus)
DRV - [2009.09.19 07:30:10 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl)
DRV - [2008.08.26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2006.11.29 04:52:42 | 002,830,336 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2006.10.30 05:31:58 | 000,043,648 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS.0\system32\drivers\jraid.sys -- (JRAID)
DRV - [2006.07.27 03:49:10 | 000,083,712 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2006.03.17 11:18:58 | 000,392,960 | R--- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\senfilt.sys -- (SenFiltService)
DRV - [2006.02.07 13:52:58 | 000,006,912 | R--- | M] (JMicron ) [Kernel | Boot | Running] -- C:\WINDOWS.0\system32\drivers\JGOGO.sys -- (JGOGO)
DRV - [2004.08.13 04:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\ASACPI.sys -- (MTsensor)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS.0\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... rer:source?}
IE - HKLM\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IETB


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS.0\system32\blank.htm
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.google.com/ [binary data]
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes,DefaultScope = {6FDAC04D-E35D-448D-81B0-7336C35FAE54}
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTer ... 1bfc776a19
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IE
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{6FDAC04D-E35D-448D-81B0-7336C35FAE54}: "URL" = http://search.zonealarm.com/search?Sour ... rms}&r=609
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{73ccfd25-abe2-4bdf-ac5d-28a470a4d234}: "URL" = http://websearch.ask.com/redirect?clien ... 1B3CEA19AF
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.as ... =CT3072253
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS.0\system32\Macromed\Flash\NPSWF32_11_4_402_265.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS.0\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\WINDOWS.0\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/SAFFPlugin: C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS.0\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=13: C:\Program Files\Google\Google Updater\2.4.1508.6312\npCIDetect13.dll (Google)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\x\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files\McAfee\SiteAdvisor [2012.07.22 17:14:57 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\TrustChecker [2012.08.07 16:44:23 | 000,000,000 | ---D | M]

[2012.06.05 17:36:59 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions
[2012.06.05 17:37:00 | 000,000,000 | ---D | M] (uTorrentControl2 Community Toolbar) -- C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}
[2012.08.07 16:42:20 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions

========== Chrome ==========

CHR - homepage: http://www.google.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms},
CHR - homepage: http://www.google.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\20.0.1132.57\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\20.0.1132.57\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\20.0.1132.57\gcswf32.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Google Updater (Enabled) = C:\Program Files\Google\Google Updater\2.4.1508.6312\npCIDetect13.dll
CHR - Extension: Google Translate = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb\1.2.4_0\
CHR - Extension: YouTube = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Vyhledvn Google = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Poas YoWindow! = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\
CHR - Extension: SiteAdvisor = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\
CHR - Extension: Right Click and Translate = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\gcgilaljhajcjdbgdoidofbjonkjikfm\3.1.0_0\
CHR - Extension: Translate selection = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\goanabmlmgfinmjohhepcpffcnkeobjm\1.1.8.3_0\
CHR - Extension: Peklada Google pro slubu Google+ = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\jfppgkomfopklagggkjiaddgndkgopgl\1.1.7_0\
CHR - Extension: Skype Click to Call = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.1.0.10441_0\
CHR - Extension: Mapy Google = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh\5.2.5_0\
CHR - Extension: uTorrentControl2 = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\
CHR - Extension: World Clocks = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjgoijhajhaahklokegbfnohialajpej\3.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012.08.02 15:53:55 | 000,000,027 | ---- | M]) - C:\WINDOWS.0\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O3 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\Toolbar\WebBrowser: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [ISW] File not found
O4 - HKLM..\Run: [ZoneAlarm] C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe (Check Point Software Technologies LTD)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{06333FBA-B022-41CB-9950-EC95E1EE8C18}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FE33B1EE-7656-48A5-B459-FC5BFA2165C2}: DhcpNameServer = 10.11.255.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS.0\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS.0\system32\userinit.exe) - C:\WINDOWS.0\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS.0\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\x\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\x\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

========== Files/Folders - Created Within 7 Days ==========

[2012.09.26 13:39:41 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\x\Plocha\OTL.exe
[2012.09.26 13:01:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\x\Plocha\RK_Quarantine
[2012.09.25 18:43:53 | 000,000,000 | ---D | C] -- C:\rsit
[2012.09.25 13:01:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\x\Recent
[2012.09.22 13:04:06 | 000,000,000 | ---D | C] -- C:\hry
[2012.09.22 12:53:41 | 000,000,000 | ---D | C] -- C:\Chcete být milionářem LT
[2012.09.20 21:19:14 | 000,000,000 | ---D | C] -- C:\HTC foto
[1 C:\Documents and Settings\x\*.tmp files -> C:\Documents and Settings\x\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2012.09.26 13:39:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\x\Plocha\OTL.exe
[2012.09.26 13:28:00 | 000,000,918 | ---- | M] () -- C:\WINDOWS.0\tasks\Adobe Flash Player Updater.job
[2012.09.26 12:49:53 | 001,391,616 | ---- | M] () -- C:\Documents and Settings\x\Plocha\RogueKiller.exe
[2012.09.26 10:08:43 | 000,002,048 | --S- | M] () -- C:\WINDOWS.0\bootstat.dat
[2012.09.25 20:35:56 | 000,058,368 | ---- | M] () -- C:\Documents and Settings\x\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.09.24 11:05:02 | 000,002,206 | ---- | M] () -- C:\WINDOWS.0\System32\wpa.dbl
[2012.09.22 13:32:16 | 000,000,459 | ---- | M] () -- C:\Documents and Settings\x\Plocha\Zástupce - milionar.lnk
[2012.09.20 21:28:19 | 000,696,240 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS.0\System32\FlashPlayerApp.exe
[2012.09.20 21:28:19 | 000,073,136 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS.0\System32\FlashPlayerCPLApp.cpl
[2012.09.20 21:24:54 | 000,002,287 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS.0\Plocha\Skype.lnk
[1 C:\Documents and Settings\x\*.tmp files -> C:\Documents and Settings\x\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012.09.26 12:50:10 | 001,391,616 | ---- | C] () -- C:\Documents and Settings\x\Plocha\RogueKiller.exe
[2012.09.22 13:32:16 | 000,000,459 | ---- | C] () -- C:\Documents and Settings\x\Plocha\Zástupce - milionar.lnk
[2012.07.06 11:28:40 | 000,001,111 | ---- | C] () -- C:\Documents and Settings\x\3Dsubtitler.config
[2012.06.29 21:42:53 | 000,262,216 | ---- | C] () -- C:\WINDOWS.0\System32\IPTests.dll
[2012.06.29 21:42:40 | 000,422,000 | ---- | C] () -- C:\WINDOWS.0\System32\wgapi.dll
[2012.06.29 21:42:40 | 000,077,824 | ---- | C] () -- C:\WINDOWS.0\System32\wgapiloc.dll
[2012.06.26 16:44:47 | 000,002,475 | ---- | C] () -- C:\WINDOWS.0\ATICIM.INI
[2012.06.15 16:57:12 | 000,110,592 | ---- | C] () -- C:\WINDOWS.0\System32\FsUsbExDevice.Dll
[2012.06.15 16:57:12 | 000,036,640 | ---- | C] () -- C:\WINDOWS.0\System32\FsUsbExDisk.Sys
[2012.06.15 16:57:02 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\x\Data aplikací\$_hpcst$.hpc
[2012.06.06 05:35:07 | 000,003,072 | ---- | C] () -- C:\WINDOWS.0\System32\iacenc.dll
[2012.06.05 19:27:45 | 000,354,816 | ---- | C] () -- C:\WINDOWS.0\System32\psisdecd.dll
[2012.06.05 19:23:20 | 000,520,192 | ---- | C] () -- C:\WINDOWS.0\System32\ati2sgag.exe
[2012.06.05 19:23:11 | 003,107,788 | R--- | C] () -- C:\WINDOWS.0\System32\ativvaxx.dat
[2012.06.05 19:23:11 | 000,142,345 | R--- | C] () -- C:\WINDOWS.0\System32\atiicdxx.dat
[2012.06.05 16:49:56 | 000,015,010 | ---- | C] () -- C:\WINDOWS.0\Ascd_log.ini
[2012.06.05 16:49:23 | 000,005,810 | R--- | C] () -- C:\WINDOWS.0\System32\drivers\ASACPI.sys
[2012.06.05 16:49:19 | 000,014,682 | ---- | C] () -- C:\WINDOWS.0\Ascd_tmp.ini
[2012.06.05 16:49:07 | 000,010,288 | ---- | C] () -- C:\WINDOWS.0\System32\drivers\ASUSHWIO.SYS
[2012.06.05 05:45:05 | 000,000,664 | ---- | C] () -- C:\WINDOWS.0\System32\d3d9caps.dat
[2012.06.05 05:38:58 | 000,058,368 | ---- | C] () -- C:\Documents and Settings\x\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.06.04 23:38:17 | 000,004,337 | ---- | C] () -- C:\WINDOWS.0\ODBCINST.INI
[2012.06.04 23:36:59 | 000,096,664 | ---- | C] () -- C:\WINDOWS.0\System32\FNTCACHE.DAT
[2012.06.04 22:32:49 | 000,001,198 | ---- | C] () -- C:\Documents and Settings\x\Local Settings\Data aplikací\FASTWiz.html
[2012.06.04 21:58:25 | 000,002,048 | --S- | C] () -- C:\WINDOWS.0\bootstat.dat
[2012.06.04 21:52:07 | 000,021,812 | ---- | C] () -- C:\WINDOWS.0\System32\emptyregdb.dat
[2012.06.04 21:51:20 | 000,058,716 | ---- | C] () -- C:\WINDOWS.0\System32\w3ctrs.ini
[2012.06.04 21:51:20 | 000,014,691 | ---- | C] () -- C:\WINDOWS.0\System32\axperf.ini
[2012.06.04 21:51:18 | 000,018,097 | ---- | C] () -- C:\WINDOWS.0\System32\infoctrs.ini
[2012.06.03 09:19:35 | 000,163,464 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat

========== ZeroAccess Check ==========

[2012.06.05 19:25:20 | 000,000,227 | RHS- | M] () -- C:\WINDOWS.0\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2012.02.28 20:49:53 | 001,510,912 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS.0\system32\wbem\fastprox.dll -- [2009.02.09 12:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008.04.14 08:52:06 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2008.10.13 12:43:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Data aplikací\Opera
[2009.01.13 08:57:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ashampoo
[2012.05.27 08:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\BDLogging
[2012.05.28 23:47:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\boost_interprocess
[2011.09.18 10:54:37 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2009.06.04 19:28:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\espionServerData
[2009.04.21 14:04:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\f-secure
[2012.05.24 08:46:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\fssg
[2011.09.13 13:54:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Grisoft
[2008.10.10 11:52:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ICQ
[2008.10.07 20:17:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Installations
[2012.06.04 19:00:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\InstallMate
[2009.06.11 08:29:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\InterVideo
[2009.01.10 20:09:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\KONAMI
[2009.10.10 07:50:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MAGIX
[2012.05.16 15:23:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2012.03.11 21:52:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Suite
[2008.10.18 10:47:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PCSettings
[2012.05.18 19:49:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PMB Files
[2012.01.13 20:19:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Premium
[2012.06.03 08:28:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Samsung
[2012.05.17 12:17:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SweetIM
[2012.05.16 18:29:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Tarma Installer
[2012.05.16 15:24:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2009.02.17 16:29:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TomTom
[2009.06.11 08:52:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ulead Systems
[2012.05.21 18:32:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\YoWindow
[2008.10.13 19:21:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Babylon
[2012.08.07 16:41:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\CheckPoint
[2012.07.10 15:26:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Martau
[2012.06.15 17:10:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\PC Suite
[2012.06.05 21:10:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\PMB Files
[2012.06.15 16:57:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Samsung
[2012.06.29 21:41:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\TP-LINK
[2012.06.05 19:39:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\YoWindow
[2012.05.27 08:35:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\QuickScan
[2009.02.05 20:52:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Ashampoo
[2011.09.18 12:38:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\AVG
[2012.05.24 08:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\avidemux
[2011.09.13 13:27:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Broad Intelligence
[2009.06.22 17:57:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Canneverbe_Limited
[2008.09.29 10:26:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\DAEMON Tools
[2009.03.30 08:58:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\F-Secure
[2012.06.03 22:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\GlarySoft
[2008.10.10 12:02:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ICQ
[2012.05.21 18:32:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Incredibar.com
[2012.05.24 08:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Mp3tag
[2012.03.11 21:49:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Nokia
[2012.03.11 21:58:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Nokia Multimedia Player
[2012.05.21 18:32:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\OpenCandy
[2011.01.29 22:02:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Opera
[2008.10.07 20:23:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\PC Suite
[2012.05.27 08:16:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\QuickScan
[2012.06.03 08:28:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Samsung
[2009.03.13 16:29:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Student dog
[2012.05.24 08:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\TeamViewer
[2012.06.02 14:06:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Temp
[2009.02.17 16:28:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\TomTom
[2009.06.04 12:51:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Ulead Systems
[2012.07.09 19:36:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\uTorrent
[2009.10.04 09:08:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ViGlance
[2009.10.04 09:08:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ViSplore
[2009.10.04 09:09:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ViStart
[2009.10.08 20:00:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Vso
[2011.01.08 13:27:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\WebStep
[2009.03.13 16:03:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\XemiComputers
[2012.05.21 20:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\YoWindow
[2009.09.29 08:10:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Zoner
[2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Babylon
[2012.08.10 12:06:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Check Point Software Technologies LTD
[2012.08.07 16:44:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\CheckPoint
[2012.07.06 08:38:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Desktop Sidebar
[2012.09.11 19:24:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\GHISLER
[2012.06.05 19:39:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\OpenCandy
[2012.06.04 22:28:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Opera
[2012.06.05 18:29:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Oracle
[2012.06.15 17:10:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\PC Suite
[2012.06.15 16:54:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Samsung
[2012.08.26 13:19:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Unity
[2012.09.25 19:34:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\uTorrent
[2012.06.26 15:50:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YourFileDownloader
[2012.06.06 05:52:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YoWindow

========== Purity Check ==========



========== Custom Scans ==========

< RogueKiller V8.0.5 [09/23/2012] by Tigzy >
Invalid Switch: 2012] by Tigzy

< mail: tigzyRK<at>gmail<dot>com >
[2012.06.04 21:53:40 | 000,000,065 | RH-- | C] () -- C:\WINDOWS.0\Tasks\desktop.ini
[2012.06.04 22:00:10 | 000,000,006 | -H-- | C] () -- C:\WINDOWS.0\Tasks\SA.DAT
[2012.09.01 13:13:44 | 000,000,918 | ---- | C] () -- C:\WINDOWS.0\Tasks\Adobe Flash Player Updater.job

< Podpora: http://www.geekstogo.com/forum/files/fi ... guekiller/ >
Invalid Switch:

< Operační systém: Windows XP (5.1.2600 Service Pack 3) 32 bits version >

< Spuštěno v : Normální režim >

< Uživatel : x [Práva správce] >

< Mód : Odebrat -- Datum : 09/26/2012 13:29:48 >
Invalid Switch: 2012 13:29:48

< >

< ¤¤¤ Škodlivé procesy: : 0 ¤¤¤ >

< >

< ¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤ >

< >

< ¤¤¤ Zvláštní soubory / Složky: ¤¤¤ >
Invalid Switch: Složky: ¤¤¤

< >

< ¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤ >

< SSDT[25] : NtClose @ 0x805BC538 -> HOOKED (Unknown @ 0xBA6D6DFC) >

< SSDT[41] : NtCreateKey @ 0x80623FD6 -> HOOKED (Unknown @ 0xBA6D6DB6) >

< SSDT[50] : NtCreateSection @ 0x805AB3D0 -> HOOKED (Unknown @ 0xBA6D6E06) >

< SSDT[53] : NtCreateThread @ 0x805D1038 -> HOOKED (Unknown @ 0xBA6D6DAC) >

< SSDT[63] : NtDeleteKey @ 0x80624472 -> HOOKED (Unknown @ 0xBA6D6DBB) >

< SSDT[65] : NtDeleteValueKey @ 0x80624642 -> HOOKED (Unknown @ 0xBA6D6DC5) >

< SSDT[68] : NtDuplicateObject @ 0x805BE010 -> HOOKED (Unknown @ 0xBA6D6DF7) >

< SSDT[98] : NtLoadKey @ 0x806261FA -> HOOKED (Unknown @ 0xBA6D6DCA) >

< SSDT[122] : NtOpenProcess @ 0x805CB456 -> HOOKED (Unknown @ 0xBA6D6D98) >

< SSDT[128] : NtOpenThread @ 0x805CB6E2 -> HOOKED (Unknown @ 0xBA6D6D9D) >

< SSDT[177] : NtQueryValueKey @ 0x806221FA -> HOOKED (Unknown @ 0xBA6D6E1F) >

< SSDT[193] : NtReplaceKey @ 0x806260AA -> HOOKED (Unknown @ 0xBA6D6DD4) >

< SSDT[200] : NtRequestWaitReplyPort @ 0x805A2D7E -> HOOKED (Unknown @ 0xBA6D6E10) >

< SSDT[204] : NtRestoreKey @ 0x806259B6 -> HOOKED (Unknown @ 0xBA6D6DCF) >

< SSDT[213] : NtSetContextThread @ 0x805D2C1A -> HOOKED (Unknown @ 0xBA6D6E0B) >

< SSDT[237] : NtSetSecurityObject @ 0x805C0636 -> HOOKED (Unknown @ 0xBA6D6E15) >

< SSDT[247] : NtSetValueKey @ 0x80622548 -> HOOKED (Unknown @ 0xBA6D6DC0) >

< SSDT[255] : NtSystemDebugControl @ 0x80617FAA -> HOOKED (Unknown @ 0xBA6D6E1A) >

< SSDT[257] : NtTerminateProcess @ 0x805D22D8 -> HOOKED (Unknown @ 0xBA6D6DA7) >

< S_SSDT[549] : Unknown -> HOOKED (Unknown @ 0xBA6D6E2E) >

< S_SSDT[552] : Unknown -> HOOKED (Unknown @ 0xBA6D6E33) >

< >

< ¤¤¤ Extern Hives: ¤¤¤ >

< >

< ¤¤¤ Nákaza : ¤¤¤ >

< >

< ¤¤¤ Soubor HOSTS: ¤¤¤ >

< --> C:\WINDOWS.0\system32\drivers\etc\hosts >

< >

< 127.0.0.1 localhost >

< >

< >

< ¤¤¤ Kontrola MBR: ¤¤¤ >

< >

< +++++ PhysicalDrive0: WDC WD3200AAKS-22SBA0 +++++ >

< --- User --- >

< [MBR] 0e35b77e90f38104acf18006b128db6d >

< [BSP] b6936f0d3c20760fa0cf391393869b77 : Windows XP MBR Code >

< Partition table: >

< 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 305234 Mo >

< User = LL1 ... OK! >

< User = LL2 ... OK! >

< >

< Dokončeno : << RKreport[8].txt >> >

< RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt ; RKreport[4].txt ; RKreport[5].txt ; >

< RKreport[6].txt ; RKreport[7].txt ; RKreport[8].txt >

< >

< >

< >

========== Alternate Data Streams ==========

@Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2

< End of report >



OTL Extras logfile created on: 26.9.2012 13:41:53 - Run 1
OTL by OldTimer - Version 3.2.68.0 Folder = C:\Documents and Settings\x\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,53 Gb Available Physical Memory | 76,40% Memory free
3,85 Gb Paging File | 3,30 Gb Available in Paging File | 85,83% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS.0 | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 71,74 Gb Free Space | 24,07% Space Free | Partition Type: NTFS

Computer Name: X-F137B9FCA1244 | User Name: x | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
"DisableMonitoring" = 1

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\WINDOWS.0\system32\usmt\migwiz.exe" = C:\WINDOWS.0\system32\usmt\migwiz.exe:*:Enabled:Průvodce přenesením souborů a nastavení -- (Microsoft Corporation)
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\Program Files\Pando Networks\Media Booster\PMB.exe" = C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster -- ()
"C:\WINDOWS.0\system32\muzapp.exe" = C:\WINDOWS.0\system32\muzapp.exe:*:Enabled:MUZ AOD APP player -- (Musiccity Co.Ltd.)
"C:\Program Files\TP-LINK\TP-LINK Wireless Client Utility\TWCU.exe" = C:\Program Files\TP-LINK\TP-LINK Wireless Client Utility\TWCU.exe:*:Enabled:TP-LINK Wireless Client Utility -- ()
"C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe" = C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe:*:Enabled:Opera Internet Browser - Plugin wrapper -- (Opera Software)
"C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)
"C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{083F79E4-6FE9-46FB-A6C6-4F8862742947}" = ATI HYDRAVISION
"{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
"{18948029-33D5-4B93-8275-FE1FC7A43D51}_is1" = Avira APC 0.1.0.1
"{26A24AE4-039D-4CA4-87B4-2F83217004FF}" = Java(TM) 7 Update 5
"{28EBD8EA-6050-431C-8258-23B268E9DB53}" = ZoneAlarm Firewall
"{33286280-8617-11E1-8FF6-B8AC6F97B88E}" = Google Earth Plug-in
"{34610DE0-3C13-42CA-8E32-01FFA38AB6E8}" = PC Connectivity Solution
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}" = McAfee SiteAdvisor
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMB36X Raid Configurer
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{481EA8F8-CAC0-4137-9CF8-DD0297593E61}" = TP-LINK Wireless Client Utility
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{5DA6F06A-B389-407B-BF8C-1548767914D8}" = ATI Problem Report Wizard
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{7A2A107B-9695-423F-9462-8F17C178BD35}" = TP-LINK Wireless Client Utility
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{93E4DD5D-6937-4292-98FE-A567A5A51448}" = ZoneAlarm Security
"{9862B19F-4CAD-4EED-920F-2F378D84393F}" = ATI Parental Control & Encoder
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1029-7B44-AA1000000001}" = Adobe Reader X (10.1.4) - Czech
"{B5376B0E-C352-4B07-880C-8BB01179FCA5}" = ATI Catalyst Control Center
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C941F1F1-25B3-4DF5-83E6-888C51A1AAB6}" = AVIVO Codecs
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47}" = Kies
"{E1BBBAC5-2857-4155-82A6-54492CE88620}" = Opera 9.64
"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"504244733D18C8F63FF584AEB290E3904E791693" = Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"All ATI Software" = Softarová utilita ATI - Odinstalovat
"ATI Display Driver" = ATI Display Driver
"Avira AntiVir Desktop" = Avira Free Antivirus
"BabylonToolbar" = Babylon toolbar on IE
"CCleaner" = CCleaner (remove only)
"ClocX" = ClocX (1.5b2)
"Google Updater" = Google Updater
"HijackThis" = HijackThis 2.0.2
"ie8" = Windows Internet Explorer 8
"InstallShield_{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47}" = Kies
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.65.0.1400
"McAfee Security Scan" = McAfee Security Scan Plus
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Opera 12.00.1467" = Opera 12.00
"Shot Online" = Shot Online
"ShotOnline International" = ShotOnline International- remove only
"Total Uninstall 5_is1" = Total Uninstall 5.10.1
"Totalcmd" = Total Commander (Remove or Repair)
"uTorrent" = µTorrent
"VLC media player" = VLC media player 1.0.3
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"WMFDist11" = Windows Media Format 11 runtime
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"yowindow" = YoWindow
"ZoneAlarm Free Firewall" = ZoneAlarm Free Firewall
"ZoneAlarm LTD Toolbar" = ZoneAlarm LTD Toolbar
"ZoneAlarm Security Toolbar" = ZoneAlarm Security Toolbar

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"UnityWebPlayer" = Unity Web Player

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 14.8.2012 9:25:53 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
altffapi.dll, verze 1.5.395.0, adresa chyby 0x0000f1e7.

Error - 14.8.2012 9:32:12 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
zonealarmtlbr.dll, verze 1.6.3.0, adresa chyby 0x00004403.

Error - 14.8.2012 9:34:03 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
zonealarmtlbr.dll, verze 1.6.3.0, adresa chyby 0x00004403.

Error - 14.8.2012 9:35:33 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
trustchecker.dll, verze 1.5.395.0, adresa chyby 0x0001e644.

Error - 14.8.2012 9:57:01 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
zonealarmtlbr.dll, verze 1.6.3.0, adresa chyby 0x00004403.

Error - 14.8.2012 12:11:27 | Computer Name = X-F137B9FCA1244 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt>
se nezdařilo. Chyba: The server name or address could not be resolved

Error - 29.8.2012 1:49:03 | Computer Name = X-F137B9FCA1244 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt>
se nezdařilo. Chyba: The server name or address could not be resolved

Error - 1.9.2012 17:12:40 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace divx plus player.exe, verze 10.3.3.10, chybující
modul qtcore4.dll, verze 4.5.0.0, adresa chyby 0x000e1b16.

Error - 15.9.2012 5:54:25 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace chrome.exe, verze 20.0.1132.57, chybující modul
ntdll.dll, verze 5.1.2600.6055, adresa chyby 0x00010a19.

Error - 20.9.2012 14:56:01 | Computer Name = X-F137B9FCA1244 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt>
se nezdařilo. Chyba: The server name or address could not be resolved

[ Application Events ]
Error - 14.8.2012 9:25:53 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
altffapi.dll, verze 1.5.395.0, adresa chyby 0x0000f1e7.

Error - 14.8.2012 9:32:12 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
zonealarmtlbr.dll, verze 1.6.3.0, adresa chyby 0x00004403.

Error - 14.8.2012 9:34:03 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
zonealarmtlbr.dll, verze 1.6.3.0, adresa chyby 0x00004403.

Error - 14.8.2012 9:35:33 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
trustchecker.dll, verze 1.5.395.0, adresa chyby 0x0001e644.

Error - 14.8.2012 9:57:01 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace iexplore.exe, verze 8.0.6001.18702, chybující modul
zonealarmtlbr.dll, verze 1.6.3.0, adresa chyby 0x00004403.

Error - 14.8.2012 12:11:27 | Computer Name = X-F137B9FCA1244 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt>
se nezdařilo. Chyba: The server name or address could not be resolved

Error - 29.8.2012 1:49:03 | Computer Name = X-F137B9FCA1244 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt>
se nezdařilo. Chyba: The server name or address could not be resolved

Error - 1.9.2012 17:12:40 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace divx plus player.exe, verze 10.3.3.10, chybující
modul qtcore4.dll, verze 4.5.0.0, adresa chyby 0x000e1b16.

Error - 15.9.2012 5:54:25 | Computer Name = X-F137B9FCA1244 | Source = Application Error | ID = 1000
Description = Chybující aplikace chrome.exe, verze 20.0.1132.57, chybující modul
ntdll.dll, verze 5.1.2600.6055, adresa chyby 0x00010a19.

Error - 20.9.2012 14:56:01 | Computer Name = X-F137B9FCA1244 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt>
se nezdařilo. Chyba: The server name or address could not be resolved

[ System Events ]
Error - 8.9.2012 15:11:11 | Computer Name = X-F137B9FCA1244 | Source = Service Control Manager | ID = 7023
Description = Služba Služba obnovení systému byla ukončena s následující chybou:
%%2

Error - 8.9.2012 15:13:42 | Computer Name = X-F137B9FCA1244 | Source = ati2mtag | ID = 49170
Description = MODE: GXO Execute BIOS Table Error

Error - 8.9.2012 15:15:53 | Computer Name = X-F137B9FCA1244 | Source = SRService | ID = 104
Description = Proces inicializace nástroje Obnovení systému se nezdařil.

Error - 8.9.2012 15:15:53 | Computer Name = X-F137B9FCA1244 | Source = Service Control Manager | ID = 7023
Description = Služba Služba obnovení systému byla ukončena s následující chybou:
%%2

Error - 9.9.2012 3:41:33 | Computer Name = X-F137B9FCA1244 | Source = SRService | ID = 104
Description = Proces inicializace nástroje Obnovení systému se nezdařil.

Error - 9.9.2012 3:41:33 | Computer Name = X-F137B9FCA1244 | Source = Service Control Manager | ID = 7023
Description = Služba Služba obnovení systému byla ukončena s následující chybou:
%%2

Error - 17.9.2012 14:22:37 | Computer Name = X-F137B9FCA1244 | Source = BROWSER | ID = 8009
Description = Prohledávač se nemůže povýšit na hlavní prohledávač. Za hlavní prohledávač
se
aktuálně považuje počítač X-F137B9FCA1244.

Error - 22.9.2012 4:50:03 | Computer Name = X-F137B9FCA1244 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby ServiceLayer
s argumenty za účelem spuštění serveru: {ACF50018-41F8-476D-85FD-CD953DAE4A49}

Error - 22.9.2012 4:50:06 | Computer Name = X-F137B9FCA1244 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby ServiceLayer
s argumenty za účelem spuštění serveru: {ACF50018-41F8-476D-85FD-CD953DAE4A49}

Error - 22.9.2012 4:50:09 | Computer Name = X-F137B9FCA1244 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby ServiceLayer
s argumenty za účelem spuštění serveru: {ACF50018-41F8-476D-85FD-CD953DAE4A49}


< End of report >

Re: prosím o kontrolu - zpomalene PC

Napsal: 26 zář 2012 21:12
od vyosek
Do spodniho okenka jste dal chybny skript, takze prosim zopakujte postup

Re: prosím o kontrolu - zpomalene PC

Napsal: 28 zář 2012 13:00
od mlhov
tak snad je to ted uz dobre :-)
ale objevil se mi jen OTL a Extras ne :-(

OTL logfile created on: 28.9.2012 13:33:13 - Run 2
OTL by OldTimer - Version 3.2.68.0 Folder = C:\Documents and Settings\x\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,55 Gb Available Physical Memory | 77,66% Memory free
3,85 Gb Paging File | 3,46 Gb Available in Paging File | 89,82% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS.0 | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 59,49 Gb Free Space | 19,96% Space Free | Partition Type: NTFS

Computer Name: X-F137B9FCA1244 | User Name: x | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2012.09.26 13:39:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\x\Plocha\OTL.exe
PRC - [2012.09.07 17:04:46 | 000,399,432 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012.08.09 19:11:44 | 000,348,664 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2012.07.14 15:59:32 | 000,497,320 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe
PRC - [2012.06.15 16:46:18 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2012.06.15 16:46:16 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2012.06.15 16:46:16 | 000,080,336 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2010.05.21 13:56:04 | 000,499,796 | ---- | M] (Atheros) -- C:\WINDOWS.0\system32\acs.exe
PRC - [2009.12.22 04:31:02 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) -- C:\WINDOWS.0\system32\dgdersvc.exe
PRC - [2008.04.14 08:52:28 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.0\system32\inetsrv\inetinfo.exe
PRC - [2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.0\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2012.06.15 16:46:19 | 000,398,288 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll


========== Services (SafeList) ==========

SRV - [2012.09.20 21:28:20 | 000,250,288 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS.0\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.09.07 17:04:46 | 000,676,936 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012.09.07 17:04:46 | 000,399,432 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012.07.30 12:31:04 | 002,445,880 | ---- | M] (Check Point Software Technologies LTD) [Auto | Stopped] -- C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe -- (vsmon)
SRV - [2012.07.14 15:59:32 | 000,497,320 | ---- | M] (Check Point Software Technologies) [Auto | Running] -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe -- (IswSvc)
SRV - [2012.07.05 18:41:46 | 003,048,136 | ---- | M] (Skype Technologies S.A.) [Disabled | Stopped] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012.07.03 13:19:28 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.06.15 16:46:18 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2012.06.15 16:46:16 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2012.04.05 18:03:00 | 003,969,336 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS.0\system32\GameMon.des -- (npggsvc)
SRV - [2012.01.13 11:21:10 | 000,095,200 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- c:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2011.06.17 19:33:04 | 000,237,008 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\3.0.207\McCHSvc.exe -- (McComponentHostService)
SRV - [2010.05.21 13:56:04 | 000,499,796 | ---- | M] (Atheros) [Auto | Running] -- C:\WINDOWS.0\system32\acs.exe -- (ACS)
SRV - [2009.12.22 04:31:26 | 000,217,088 | ---- | M] (Teruten) [Disabled | Stopped] -- C:\WINDOWS.0\system32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2009.12.22 04:31:02 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) [Auto | Running] -- C:\WINDOWS.0\system32\dgdersvc.exe -- (dgdersvc)
SRV - [2008.11.11 09:38:06 | 000,620,544 | ---- | M] (Nokia.) [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2008.04.14 08:52:28 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS.0\system32\inetsrv\inetinfo.exe -- (W3SVC)
SRV - [2008.04.14 08:52:28 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS.0\system32\inetsrv\inetinfo.exe -- (IISADMIN)
SRV - [2008.04.14 05:22:08 | 000,006,656 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\wuauserv.dll -- (wuauserv)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2012.09.07 17:04:46 | 000,022,856 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2012.07.30 11:59:48 | 000,526,640 | ---- | M] (Check Point Software Technologies LTD) [Kernel | System | Running] -- C:\WINDOWS.0\system32\vsdatant.sys -- (Vsdatant)
DRV - [2012.07.14 15:59:44 | 000,027,056 | ---- | M] (Check Point Software Technologies) [Kernel | Auto | Running] -- C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys -- (ISWKL)
DRV - [2012.06.15 16:46:19 | 000,137,928 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS.0\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2012.06.15 16:46:19 | 000,083,392 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS.0\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2011.12.09 12:40:53 | 000,036,000 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS.0\system32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2010.06.17 14:14:27 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS.0\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2010.05.21 13:56:04 | 000,058,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\wsimd.sys -- (WSIMD)
DRV - [2010.01.05 03:31:32 | 001,714,176 | R--- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\athuw.sys -- (AR9271)
DRV - [2009.12.22 04:31:26 | 000,036,640 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2009.12.22 04:31:02 | 000,018,136 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\dgderdrv.sys -- (dgderdrv)
DRV - [2009.09.19 07:30:10 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bmdm.sys -- (ss_bmdm)
DRV - [2009.09.19 07:30:10 | 000,100,224 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bserd.sys -- (ss_bserd)
DRV - [2009.09.19 07:30:10 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bbus.sys -- (ss_bbus)
DRV - [2009.09.19 07:30:10 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl)
DRV - [2008.08.26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2006.11.29 04:52:42 | 002,830,336 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2006.10.30 05:31:58 | 000,043,648 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS.0\system32\drivers\jraid.sys -- (JRAID)
DRV - [2006.07.27 03:49:10 | 000,083,712 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2006.03.17 11:18:58 | 000,392,960 | R--- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\senfilt.sys -- (SenFiltService)
DRV - [2006.02.07 13:52:58 | 000,006,912 | R--- | M] (JMicron ) [Kernel | Boot | Running] -- C:\WINDOWS.0\system32\drivers\JGOGO.sys -- (JGOGO)
DRV - [2004.08.13 04:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\ASACPI.sys -- (MTsensor)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS.0\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... rer:source?}
IE - HKLM\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IETB


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS.0\system32\blank.htm
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.google.com/ [binary data]
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes,DefaultScope = {6FDAC04D-E35D-448D-81B0-7336C35FAE54}
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTer ... 1bfc776a19
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IE
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{6FDAC04D-E35D-448D-81B0-7336C35FAE54}: "URL" = http://search.zonealarm.com/search?Sour ... rms}&r=609
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{73ccfd25-abe2-4bdf-ac5d-28a470a4d234}: "URL" = http://websearch.ask.com/redirect?clien ... 1B3CEA19AF
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.as ... =CT3072253
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS.0\system32\Macromed\Flash\NPSWF32_11_4_402_265.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS.0\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\WINDOWS.0\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/SAFFPlugin: C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS.0\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=13: C:\Program Files\Google\Google Updater\2.4.1508.6312\npCIDetect13.dll (Google)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\x\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files\McAfee\SiteAdvisor [2012.07.22 17:14:57 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\TrustChecker [2012.08.07 16:44:23 | 000,000,000 | ---D | M]

[2012.06.05 17:36:59 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions
[2012.06.05 17:37:00 | 000,000,000 | ---D | M] (uTorrentControl2 Community Toolbar) -- C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}
[2012.08.07 16:42:20 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions

========== Chrome ==========

CHR - homepage: http://www.google.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms},
CHR - homepage: http://www.google.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\20.0.1132.57\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\20.0.1132.57\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\20.0.1132.57\gcswf32.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Google Updater (Enabled) = C:\Program Files\Google\Google Updater\2.4.1508.6312\npCIDetect13.dll
CHR - Extension: Google Translate = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb\1.2.4_0\
CHR - Extension: YouTube = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Vyhledvn Google = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Poas YoWindow! = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\
CHR - Extension: SiteAdvisor = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\
CHR - Extension: Right Click and Translate = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\gcgilaljhajcjdbgdoidofbjonkjikfm\3.1.0_0\
CHR - Extension: Translate selection = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\goanabmlmgfinmjohhepcpffcnkeobjm\1.1.8.3_0\
CHR - Extension: Peklada Google pro slubu Google+ = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\jfppgkomfopklagggkjiaddgndkgopgl\1.1.7_0\
CHR - Extension: Skype Click to Call = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.1.0.10441_0\
CHR - Extension: Mapy Google = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh\5.2.5_0\
CHR - Extension: Mapy Google = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh\5.2.6_0\
CHR - Extension: uTorrentControl2 = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\
CHR - Extension: World Clocks = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjgoijhajhaahklokegbfnohialajpej\3.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012.08.02 15:53:55 | 000,000,027 | ---- | M]) - C:\WINDOWS.0\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O3 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\Toolbar\WebBrowser: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [ISW] File not found
O4 - HKLM..\Run: [ZoneAlarm] C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe (Check Point Software Technologies LTD)
O4 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{06333FBA-B022-41CB-9950-EC95E1EE8C18}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FE33B1EE-7656-48A5-B459-FC5BFA2165C2}: DhcpNameServer = 10.11.255.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS.0\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS.0\system32\userinit.exe) - C:\WINDOWS.0\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS.0\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\x\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\x\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: wuauserv - C:\WINDOWS\system32\wuauserv.dll (Microsoft Corporation)

Drivers32: msacm.iac2 - C:\WINDOWS.0\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS.0\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS.0\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS.0\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS.0\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS.0\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS.0\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS.0\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS.0\System32\ir50_32.dll (Intel Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2012.09.26 13:39:41 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\x\Plocha\OTL.exe
[2012.09.25 18:43:53 | 000,000,000 | ---D | C] -- C:\rsit
[2012.09.25 13:01:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\x\Recent
[2012.09.22 13:04:06 | 000,000,000 | ---D | C] -- C:\hry
[2012.09.22 12:53:41 | 000,000,000 | ---D | C] -- C:\Chcete být milionářem LT
[1 C:\Documents and Settings\x\*.tmp files -> C:\Documents and Settings\x\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2012.09.28 13:36:36 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.09.28 13:28:21 | 000,000,918 | ---- | M] () -- C:\WINDOWS.0\tasks\Adobe Flash Player Updater.job
[2012.09.28 13:27:32 | 000,002,206 | ---- | M] () -- C:\WINDOWS.0\System32\wpa.dbl
[2012.09.28 13:27:30 | 000,002,048 | --S- | M] () -- C:\WINDOWS.0\bootstat.dat
[2012.09.26 22:25:47 | 000,002,287 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS.0\Plocha\Skype.lnk
[2012.09.26 13:39:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\x\Plocha\OTL.exe
[2012.09.26 12:49:53 | 001,391,616 | ---- | M] () -- C:\Documents and Settings\x\Plocha\RogueKiller.exe
[2012.09.25 20:35:56 | 000,058,368 | ---- | M] () -- C:\Documents and Settings\x\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.09.22 13:32:16 | 000,000,459 | ---- | M] () -- C:\Documents and Settings\x\Plocha\Zástupce - milionar.lnk
[1 C:\Documents and Settings\x\*.tmp files -> C:\Documents and Settings\x\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012.09.28 13:36:36 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.09.26 12:50:10 | 001,391,616 | ---- | C] () -- C:\Documents and Settings\x\Plocha\RogueKiller.exe
[2012.09.22 13:32:16 | 000,000,459 | ---- | C] () -- C:\Documents and Settings\x\Plocha\Zástupce - milionar.lnk
[2012.07.06 11:28:40 | 000,001,111 | ---- | C] () -- C:\Documents and Settings\x\3Dsubtitler.config
[2012.06.29 21:42:53 | 000,262,216 | ---- | C] () -- C:\WINDOWS.0\System32\IPTests.dll
[2012.06.29 21:42:40 | 000,422,000 | ---- | C] () -- C:\WINDOWS.0\System32\wgapi.dll
[2012.06.29 21:42:40 | 000,077,824 | ---- | C] () -- C:\WINDOWS.0\System32\wgapiloc.dll
[2012.06.26 16:44:47 | 000,002,475 | ---- | C] () -- C:\WINDOWS.0\ATICIM.INI
[2012.06.15 16:57:12 | 000,110,592 | ---- | C] () -- C:\WINDOWS.0\System32\FsUsbExDevice.Dll
[2012.06.15 16:57:12 | 000,036,640 | ---- | C] () -- C:\WINDOWS.0\System32\FsUsbExDisk.Sys
[2012.06.15 16:57:02 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\x\Data aplikací\$_hpcst$.hpc
[2012.06.06 05:35:07 | 000,003,072 | ---- | C] () -- C:\WINDOWS.0\System32\iacenc.dll
[2012.06.05 19:27:45 | 000,354,816 | ---- | C] () -- C:\WINDOWS.0\System32\psisdecd.dll
[2012.06.05 19:23:20 | 000,520,192 | ---- | C] () -- C:\WINDOWS.0\System32\ati2sgag.exe
[2012.06.05 19:23:11 | 003,107,788 | R--- | C] () -- C:\WINDOWS.0\System32\ativvaxx.dat
[2012.06.05 19:23:11 | 000,142,345 | R--- | C] () -- C:\WINDOWS.0\System32\atiicdxx.dat
[2012.06.05 16:49:56 | 000,015,010 | ---- | C] () -- C:\WINDOWS.0\Ascd_log.ini
[2012.06.05 16:49:23 | 000,005,810 | R--- | C] () -- C:\WINDOWS.0\System32\drivers\ASACPI.sys
[2012.06.05 16:49:19 | 000,014,682 | ---- | C] () -- C:\WINDOWS.0\Ascd_tmp.ini
[2012.06.05 16:49:07 | 000,010,288 | ---- | C] () -- C:\WINDOWS.0\System32\drivers\ASUSHWIO.SYS
[2012.06.05 05:45:05 | 000,000,664 | ---- | C] () -- C:\WINDOWS.0\System32\d3d9caps.dat
[2012.06.05 05:38:58 | 000,058,368 | ---- | C] () -- C:\Documents and Settings\x\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.06.04 23:38:17 | 000,004,337 | ---- | C] () -- C:\WINDOWS.0\ODBCINST.INI
[2012.06.04 23:36:59 | 000,096,664 | ---- | C] () -- C:\WINDOWS.0\System32\FNTCACHE.DAT
[2012.06.04 22:32:49 | 000,001,198 | ---- | C] () -- C:\Documents and Settings\x\Local Settings\Data aplikací\FASTWiz.html
[2012.06.04 21:58:25 | 000,002,048 | --S- | C] () -- C:\WINDOWS.0\bootstat.dat
[2012.06.04 21:52:07 | 000,021,812 | ---- | C] () -- C:\WINDOWS.0\System32\emptyregdb.dat
[2012.06.04 21:51:20 | 000,058,716 | ---- | C] () -- C:\WINDOWS.0\System32\w3ctrs.ini
[2012.06.04 21:51:20 | 000,014,691 | ---- | C] () -- C:\WINDOWS.0\System32\axperf.ini
[2012.06.04 21:51:18 | 000,018,097 | ---- | C] () -- C:\WINDOWS.0\System32\infoctrs.ini
[2012.06.03 09:19:35 | 000,163,464 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat

========== ZeroAccess Check ==========

[2012.06.05 19:25:20 | 000,000,227 | RHS- | M] () -- C:\WINDOWS.0\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2012.02.28 20:49:53 | 001,510,912 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS.0\system32\wbem\fastprox.dll -- [2009.02.09 12:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008.04.14 08:52:06 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2008.10.13 12:43:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Data aplikací\Opera
[2009.01.13 08:57:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ashampoo
[2012.05.27 08:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\BDLogging
[2012.05.28 23:47:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\boost_interprocess
[2011.09.18 10:54:37 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2009.06.04 19:28:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\espionServerData
[2009.04.21 14:04:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\f-secure
[2012.05.24 08:46:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\fssg
[2011.09.13 13:54:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Grisoft
[2008.10.10 11:52:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ICQ
[2008.10.07 20:17:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Installations
[2012.06.04 19:00:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\InstallMate
[2009.06.11 08:29:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\InterVideo
[2009.01.10 20:09:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\KONAMI
[2009.10.10 07:50:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MAGIX
[2012.05.16 15:23:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2012.03.11 21:52:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Suite
[2008.10.18 10:47:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PCSettings
[2012.05.18 19:49:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PMB Files
[2012.01.13 20:19:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Premium
[2012.06.03 08:28:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Samsung
[2012.05.17 12:17:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SweetIM
[2012.05.16 18:29:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Tarma Installer
[2012.05.16 15:24:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2009.02.17 16:29:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TomTom
[2009.06.11 08:52:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ulead Systems
[2012.05.21 18:32:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\YoWindow
[2008.10.13 19:21:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Babylon
[2012.08.07 16:41:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\CheckPoint
[2012.07.10 15:26:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Martau
[2012.06.15 17:10:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\PC Suite
[2012.06.05 21:10:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\PMB Files
[2012.06.15 16:57:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Samsung
[2012.06.29 21:41:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\TP-LINK
[2012.06.05 19:39:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\YoWindow
[2012.05.27 08:35:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\QuickScan
[2009.02.05 20:52:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Ashampoo
[2011.09.18 12:38:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\AVG
[2012.05.24 08:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\avidemux
[2011.09.13 13:27:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Broad Intelligence
[2009.06.22 17:57:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Canneverbe_Limited
[2008.09.29 10:26:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\DAEMON Tools
[2009.03.30 08:58:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\F-Secure
[2012.06.03 22:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\GlarySoft
[2008.10.10 12:02:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ICQ
[2012.05.21 18:32:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Incredibar.com
[2012.05.24 08:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Mp3tag
[2012.03.11 21:49:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Nokia
[2012.03.11 21:58:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Nokia Multimedia Player
[2012.05.21 18:32:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\OpenCandy
[2011.01.29 22:02:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Opera
[2008.10.07 20:23:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\PC Suite
[2012.05.27 08:16:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\QuickScan
[2012.06.03 08:28:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Samsung
[2009.03.13 16:29:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Student dog
[2012.05.24 08:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\TeamViewer
[2012.06.02 14:06:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Temp
[2009.02.17 16:28:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\TomTom
[2009.06.04 12:51:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Ulead Systems
[2012.07.09 19:36:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\uTorrent
[2009.10.04 09:08:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ViGlance
[2009.10.04 09:08:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ViSplore
[2009.10.04 09:09:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ViStart
[2009.10.08 20:00:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Vso
[2011.01.08 13:27:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\WebStep
[2009.03.13 16:03:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\XemiComputers
[2012.05.21 20:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\YoWindow
[2009.09.29 08:10:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Zoner
[2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Babylon
[2012.08.10 12:06:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Check Point Software Technologies LTD
[2012.08.07 16:44:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\CheckPoint
[2012.07.06 08:38:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Desktop Sidebar
[2012.09.11 19:24:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\GHISLER
[2012.06.05 19:39:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\OpenCandy
[2012.06.04 22:28:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Opera
[2012.06.05 18:29:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Oracle
[2012.06.15 17:10:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\PC Suite
[2012.06.15 16:54:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Samsung
[2012.08.26 13:19:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Unity
[2012.09.28 13:28:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\uTorrent
[2012.06.26 15:50:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YourFileDownloader
[2012.06.06 05:52:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YoWindow

========== Purity Check ==========



========== Custom Scans ==========

< >
[2012.06.04 21:53:40 | 000,000,065 | RH-- | C] () -- C:\WINDOWS.0\Tasks\desktop.ini
[2012.06.04 22:00:10 | 000,000,006 | -H-- | C] () -- C:\WINDOWS.0\Tasks\SA.DAT
[2012.09.01 13:13:44 | 000,000,918 | ---- | C] () -- C:\WINDOWS.0\Tasks\Adobe Flash Player Updater.job

< >

< MD5 for: ATAPI.SYS >
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS.0\Driver Cache\i386\sp3.cab:atapi.sys
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\dllcache\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\drivers\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\drivers\system32\DRIVERS\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\ReinstallBackups\0008\DriverFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\ReinstallBackups\0009\DriverFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\drivers\system32\DRIVERS\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\cmdcons\autochk.exe
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS.0\system32\autochk.exe
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS.0\system32\dllcache\autochk.exe
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\dllcache\autochk.exe

< MD5 for: CDROM.SYS >
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS.0\Driver Cache\i386\sp3.cab:cdrom.sys
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS.0\system32\drivers\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\dllcache\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2008.04.14 05:22:22 | 001,432,576 | ---- | M] (Microsoft Corporation) MD5=1946837F8AB4A7B2A0C326A10C30E322 -- C:\WINDOWS\explorer.exe
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS.0\explorer.exe
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS.0\system32\dllcache\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\system32\VITrans\explorer.exe
[2008.04.29 17:42:08 | 000,090,624 | ---- | M] () MD5=FBB39A4487E11F64DCFFD36AEC2D2216 -- C:\Program Files\CheckPoint\ZAForceField\Heuristics\explorer.exe

< MD5 for: HAL.DLL >
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS.0\Driver Cache\i386\sp3.cab:hal.dll
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.14 00:01:30 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS.0\system32\hal.dll
[2008.04.13 20:31:28 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\HAL.DLL
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll

< MD5 for: SCECLI.DLL >
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS.0\system32\dllcache\scecli.dll
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS.0\system32\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SERVICES.EXE >
[2009.02.09 13:18:56 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=3D107D45CCFDB266E91D84B52CD7F430 -- C:\WINDOWS.0\$hf_mig$\KB956572\SP3QFE\services.exe
[2009.02.09 13:18:56 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=3D107D45CCFDB266E91D84B52CD7F430 -- C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\services.exe
[2009.02.09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS.0\system32\dllcache\services.exe
[2009.02.09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS.0\system32\services.exe
[2009.02.09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS\system32\dllcache\services.exe
[2009.02.09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS\system32\services.exe
[2008.04.14 08:52:46 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=F0D2AE69035092BF22DAD6B50FAB85C2 -- C:\WINDOWS.0\$NtUninstallKB956572$\services.exe
[2008.04.14 05:22:45 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=F0D2AE69035092BF22DAD6B50FAB85C2 -- C:\WINDOWS\ServicePackFiles\i386\services.exe

< MD5 for: SVCHOST.EXE >
[2012.09.07 17:04:42 | 000,218,696 | ---- | M] () MD5=4E0D8C9F83B7FD82393F7D8CCC27E7AE -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS.0\system32\dllcache\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS.0\system32\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2008.07.01 15:17:12 | 000,090,624 | ---- | M] () MD5=FBB39A4487E11F64DCFFD36AEC2D2216 -- C:\Program Files\CheckPoint\ZAForceField\Heuristics\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.06.20 12:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS.0\$NtUninstallKB2509553$\tcpip.sys
[2008.04.13 21:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS.0\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS.0\system32\drivers\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS.0\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS.0\system32\dllcache\userinit.exe
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS.0\system32\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\dllcache\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe

< MD5 for: WINLOGON.EXE >
[2012.09.07 17:04:42 | 000,218,696 | ---- | M] () MD5=4E0D8C9F83B7FD82393F7D8CCC27E7AE -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS.0\system32\dllcache\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS.0\system32\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
[2008.07.01 15:17:12 | 000,090,624 | ---- | M] () MD5=FBB39A4487E11F64DCFFD36AEC2D2216 -- C:\Program Files\CheckPoint\ZAForceField\Heuristics\winlogon.exe

< >

< %systemroot%*.* /U /s >
[11 C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS.0\CSC\*.tmp files -> C:\WINDOWS.0\CSC\*.tmp -> ]
[1 C:\WINDOWS.0\system32\DirectX\*.tmp files -> C:\WINDOWS.0\system32\DirectX\*.tmp -> ]
[1 C:\WINDOWS.0\temp\*.tmp files -> C:\WINDOWS.0\temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2012.07.14 16:17:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Adobe
[2012.06.05 19:34:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\ATI
[2012.06.15 16:41:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Avira
[2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Babylon
[2012.08.10 12:06:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Check Point Software Technologies LTD
[2012.08.07 16:44:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\CheckPoint
[2012.07.06 08:38:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Desktop Sidebar
[2012.07.08 12:49:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\DivX
[2012.09.11 19:38:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\dvdcss
[2012.09.11 19:24:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\GHISLER
[2012.06.19 21:33:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Google
[2012.06.04 22:01:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Identities
[2012.06.05 17:46:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Macromedia
[2012.08.14 16:21:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Malwarebytes
[2012.07.14 16:17:21 | 000,000,000 | --SD | M] -- C:\Documents and Settings\x\Data aplikací\Microsoft
[2012.06.05 17:36:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Mozilla
[2012.06.05 19:39:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\OpenCandy
[2012.06.04 22:28:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Opera
[2012.06.05 18:29:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Oracle
[2012.06.15 17:10:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\PC Suite
[2012.06.15 16:54:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Samsung
[2012.09.26 22:33:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Skype
[2012.06.05 18:27:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Sun
[2012.08.26 13:19:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Unity
[2012.09.28 13:28:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\uTorrent
[2012.09.25 20:36:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\vlc
[2012.06.26 15:50:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YourFileDownloader
[2012.06.06 05:52:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YoWindow

< %APPDATA%\*.exe /s >
[2012.06.05 19:28:34 | 000,009,158 | R--- | M] () -- C:\Documents and Settings\x\Data aplikací\Microsoft\Installer\{C941F1F1-25B3-4DF5-83E6-888C51A1AAB6}\ARPPRODUCTICON.exe
[2012.04.20 19:08:46 | 005,837,432 | ---- | M] (Uniblue Systems Ltd ) -- C:\Documents and Settings\x\Data aplikací\OpenCandy\4D18D91CE27443F0B2A8C852BBCF0D6B\speedupmypcROW.exe
[2011.01.27 15:43:34 | 000,266,552 | ---- | M] (ml) -- C:\Documents and Settings\x\Data aplikací\Samsung\Kies\UpdateTemp\MCS.Thunder.Update.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2012.09.28 13:28:21 | 000,000,918 | ---- | M] () -- C:\WINDOWS.0\Tasks\Adobe Flash Player Updater.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2012.06.04 23:36:03 | 000,094,208 | ---- | M] () -- C:\WINDOWS.0\System32\config\default.sav
[2012.06.04 23:36:03 | 001,093,632 | ---- | M] () -- C:\WINDOWS.0\System32\config\software.sav
[2012.06.04 23:36:03 | 000,507,904 | ---- | M] () -- C:\WINDOWS.0\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2012.09.28 13:27:32 | 000,002,206 | ---- | M] () -- C:\WINDOWS.0\system32\wpa.dbl

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"uTorrent" = "C:\Program Files\uTorrent\uTorrent.exe" /MINIMIZED -- [2012.09.02 12:34:33 | 000,895,376 | ---- | M] (BitTorrent, Inc.)
"ctfmon.exe" = C:\WINDOWS.0\system32\ctfmon.exe -- [2008.04.14 08:52:18 | 000,015,360 | ---- | M] (Microsoft Corporation)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2009.03.08 14:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation) MD5=B60DDDD2D63CE41CB8C487FCFBB6419E -- C:\Program Files\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >
[2012.07.16 13:17:04 | 000,874,384 | ---- | M] (Opera Software) MD5=308AB9B6B7BEDF60E458D1B950F5CD80 -- C:\Program Files\Opera\opera.exe

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.09.28 13:36:36 | 000,000,512 | ---- | M] () MD5=0E35B77E90F38104ACF18006B128DB6D -- C:\PhysicalMBR.bin

< >

< *crack* /s >

< *keygen* /s >

< *loader* /s >
[2008.08.25 09:08:16 | 000,005,476 | ---- | M] () -- \_ZALOHA\Data aplikací\CTVoD\Resources\Downloader.css
[2012.05.15 09:59:24 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS.0\Data aplikací\Skype\Apps\login\images\loader.gif
[2012.05.15 09:59:24 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS.0\Data aplikací\Skype\Apps\login\images\loader.png
[2012.02.15 14:28:30 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.gif
[2012.02.15 14:28:30 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.png
[2012.04.18 00:39:24 | 000,010,145 | ---- | M] () -- \Documents and Settings\PC\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\modules\ExternalLibraryLoader.jsm
[2012.05.16 18:29:00 | 000,086,818 | ---- | M] () -- \Documents and Settings\PC\Data aplikací\Mozilla\Firefox\Profiles\0\extensions\OneClickDownloader@OneClickDownloader.com.xpi
[2012.05.26 21:41:55 | 000,626,909 | ---- | M] () -- \Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.30_0\yowidget\Preloader.swf
[2012.05.26 21:05:39 | 000,000,673 | ---- | M] () -- \Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.7.1_0\Media\ajax-loader.gif
[2012.04.18 00:39:24 | 000,010,145 | ---- | M] () -- \Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\modules\ExternalLibraryLoader.jsm
[2012.06.26 15:50:08 | 004,110,768 | ---- | M] () -- \Documents and Settings\x\Dokumenty\Downloads\Jackass_3_(2010)_UNRATED_720p_BluRay_x264-TWiZTED.rar_downloader_225a.exe
[2012.07.03 22:28:56 | 000,638,601 | ---- | M] () -- \Documents and Settings\x\Dokumenty\Downloads\The.Strangers.2008.Unrated.m-HD.720p.x264-VALKiNTENSiVE_downloader.exe
[2012.07.17 18:18:20 | 000,626,909 | ---- | M] () -- \Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\Preloader.swf
[2012.07.02 22:22:31 | 000,000,673 | ---- | M] () -- \Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\ajax-loader.gif
[2012.06.26 15:50:04 | 000,003,072 | ---- | M] () -- \Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_abc.yourfiledownloader.com_0.localstorage
[2012.09.26 22:26:33 | 000,105,903 | ---- | M] () -- \Documents and Settings\x\Local Settings\Temporary Internet Files\Content.IE5\UU9LD43B\AdLoader-427d9fd2a91e2f2c023aefe9f69a01d0.min[1].js
[2012.09.26 22:26:33 | 000,000,753 | ---- | M] () -- \Documents and Settings\x\Local Settings\Temporary Internet Files\Content.IE5\V3J3UZC5\AdLoader[1].htm
[2012.04.30 11:28:56 | 001,753,600 | ---- | M] () -- \Program Files\1ClickDownload\1ClickDownloader.exe
[2012.06.15 16:46:16 | 000,047,568 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.dll
[2012.06.15 16:46:16 | 000,232,912 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.exe
[2012.06.15 16:46:16 | 001,715,152 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloadergui.dll
[8 \Program Files\Avira\AntiVir Desktop\*.tmp files -> \Program Files\Avira\AntiVir Desktop\*.tmp -> ]
[2008.03.27 23:51:18 | 000,042,304 | ---- | M] () -- \Program Files\HP\Digital Imaging\Smart Web Printing\RsrcLoaderLib.dll
[2008.09.01 16:37:03 | 000,005,795 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.jpg
[2008.09.01 16:37:03 | 000,004,089 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.swf
[2008.10.10 12:00:45 | 000,003,479 | ---- | M] () -- \Program Files\ICQ6\services\icqXtraz\ver1\content\coreg\preloader04.swf
[2008.10.10 11:52:34 | 000,552,798 | ---- | M] () -- \Program Files\ICQ6\services\icqXtraz\ver1\theme\game_center\loaderBkg.png
[2009.10.07 18:58:51 | 000,001,399 | ---- | M] () -- \Program Files\Real\RealPlayer\browserrecord\firefox\ext\chrome\content\browserrecordloader.js
[2009.10.07 18:58:51 | 000,000,319 | ---- | M] () -- \Program Files\Real\RealPlayer\browserrecord\firefox\ext\chrome\content\browserrecordloader.xul
[2009.12.04 03:19:16 | 000,292,352 | ---- | M] () -- \Program Files\Samsung\Kies\BinaryLoaderForKorea.dll
[2010.01.28 15:19:32 | 000,331,576 | ---- | M] () -- \Program Files\Samsung\Kies\BinaryLoaderMgr.exe
[2009.06.04 10:04:48 | 000,374,077 | ---- | M] () -- \programy\GoogleVideoUploaderInstaller105.exe
[2009.07.08 14:25:16 | 003,176,437 | ---- | M] () -- \programy\youtubedownloader.exe
[2002.12.12 00:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS.0\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dmloader.dll
[2008.04.14 08:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS.0\system32\dmloader.dll
[2012.04.26 14:26:34 | 000,012,532 | ---- | M] () -- \WINDOWS.0\system32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2008.04.14 08:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS.0\system32\dllcache\dmloader.dll
[2002.12.12 00:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dmloader.dll
[2008.04.14 05:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.13 20:31:47 | 000,230,912 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.13 20:31:48 | 000,278,528 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 05:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[2007.06.19 08:59:36 | 000,070,400 | ---- | M] () -- \WINDOWS\system32\PhysXLoader.dll
[2009.07.21 08:52:36 | 000,009,622 | ---- | M] () -- \WINDOWS\system32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2008.04.14 05:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll
[2009.03.23 12:30:28 | 000,009,622 | ---- | M] () -- \WINDOWS\system32\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr

========== Alternate Data Streams ==========

@Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2

< End of report >

Re: prosím o kontrolu - zpomalene PC

Napsal: 28 zář 2012 20:48
od vyosek
:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
    DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
    DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
    DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
    DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
    IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
    IE - HKLM\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IETB
    IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.google.com/ [binary data]
    IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
    IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes,DefaultScope = {6FDAC04D-E35D-448D-81B0-7336C35FAE54}
    IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=112555&tt=060612_6_&babsrc=SP_ss&mntrId=40a345b7000000000000001bfc776a19
    IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IE
    IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{6FDAC04D-E35D-448D-81B0-7336C35FAE54}: "URL" = http://search.zonealarm.com/search?Sour ... 1116d29&q={searchTerms}&r=609
    IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{73ccfd25-abe2-4bdf-ac5d-28a470a4d234}: "URL" = http://websearch.ask.com/redirect?clien ... src=crm&q={searchTerms}&locale=en_CZ&apn_ptnrs=^ABZ&apn_dtid=^YYYYYY^YY^CZ&apn_uid=7fc1418c-fba3-4d59-9a93-f8ef7ad3b5e9&apn_sauid=20987C51-2FA5-4BAA-B410-B51B3CEA19AF
    IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3072253
    [2012.06.05 17:37:00 | 000,000,000 | ---D | M] (uTorrentControl2 Community Toolbar) -- C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}
    CHR - Extension: Poas YoWindow! = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\
    CHR - Extension: uTorrentControl2 = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    [2008.10.13 19:21:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
    [2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Babylon
    [2011.09.18 12:38:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\AVG
    [11 C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
    [1 C:\WINDOWS.0\CSC\*.tmp files -> C:\WINDOWS.0\CSC\*.tmp -> ]
    [1 C:\WINDOWS.0\system32\DirectX\*.tmp files -> C:\WINDOWS.0\system32\DirectX\*.tmp -> ]
    [1 C:\WINDOWS.0\temp\*.tmp files -> C:\WINDOWS.0\temp\*.tmp -> ]
    @Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4
    @Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2
    
    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "ISW"=-
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "uTorrent"=-
    "ctfmon.exe"=-
    
    :files
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
    [EMPTYJAVA]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

Re: prosím o kontrolu - zpomalene PC

Napsal: 02 říj 2012 12:22
od mlhov
tak tentokrat vse v poradku :-)


OTL logfile created on: 28.9.2012 13:33:13 - Run 2
OTL by OldTimer - Version 3.2.68.0 Folder = C:\Documents and Settings\x\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 1,55 Gb Available Physical Memory | 77,66% Memory free
3,85 Gb Paging File | 3,46 Gb Available in Paging File | 89,82% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS.0 | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 59,49 Gb Free Space | 19,96% Space Free | Partition Type: NTFS

Computer Name: X-F137B9FCA1244 | User Name: x | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2012.09.26 13:39:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\x\Plocha\OTL.exe
PRC - [2012.09.07 17:04:46 | 000,399,432 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012.08.09 19:11:44 | 000,348,664 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2012.07.14 15:59:32 | 000,497,320 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe
PRC - [2012.06.15 16:46:18 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2012.06.15 16:46:16 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2012.06.15 16:46:16 | 000,080,336 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2010.05.21 13:56:04 | 000,499,796 | ---- | M] (Atheros) -- C:\WINDOWS.0\system32\acs.exe
PRC - [2009.12.22 04:31:02 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) -- C:\WINDOWS.0\system32\dgdersvc.exe
PRC - [2008.04.14 08:52:28 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.0\system32\inetsrv\inetinfo.exe
PRC - [2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.0\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2012.06.15 16:46:19 | 000,398,288 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll


========== Services (SafeList) ==========

SRV - [2012.09.20 21:28:20 | 000,250,288 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS.0\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.09.07 17:04:46 | 000,676,936 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012.09.07 17:04:46 | 000,399,432 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012.07.30 12:31:04 | 002,445,880 | ---- | M] (Check Point Software Technologies LTD) [Auto | Stopped] -- C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe -- (vsmon)
SRV - [2012.07.14 15:59:32 | 000,497,320 | ---- | M] (Check Point Software Technologies) [Auto | Running] -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe -- (IswSvc)
SRV - [2012.07.05 18:41:46 | 003,048,136 | ---- | M] (Skype Technologies S.A.) [Disabled | Stopped] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012.07.03 13:19:28 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.06.15 16:46:18 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2012.06.15 16:46:16 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2012.04.05 18:03:00 | 003,969,336 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS.0\system32\GameMon.des -- (npggsvc)
SRV - [2012.01.13 11:21:10 | 000,095,200 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- c:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2011.06.17 19:33:04 | 000,237,008 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\3.0.207\McCHSvc.exe -- (McComponentHostService)
SRV - [2010.05.21 13:56:04 | 000,499,796 | ---- | M] (Atheros) [Auto | Running] -- C:\WINDOWS.0\system32\acs.exe -- (ACS)
SRV - [2009.12.22 04:31:26 | 000,217,088 | ---- | M] (Teruten) [Disabled | Stopped] -- C:\WINDOWS.0\system32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2009.12.22 04:31:02 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) [Auto | Running] -- C:\WINDOWS.0\system32\dgdersvc.exe -- (dgdersvc)
SRV - [2008.11.11 09:38:06 | 000,620,544 | ---- | M] (Nokia.) [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2008.04.14 08:52:28 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS.0\system32\inetsrv\inetinfo.exe -- (W3SVC)
SRV - [2008.04.14 08:52:28 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS.0\system32\inetsrv\inetinfo.exe -- (IISADMIN)
SRV - [2008.04.14 05:22:08 | 000,006,656 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\wuauserv.dll -- (wuauserv)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2012.09.07 17:04:46 | 000,022,856 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2012.07.30 11:59:48 | 000,526,640 | ---- | M] (Check Point Software Technologies LTD) [Kernel | System | Running] -- C:\WINDOWS.0\system32\vsdatant.sys -- (Vsdatant)
DRV - [2012.07.14 15:59:44 | 000,027,056 | ---- | M] (Check Point Software Technologies) [Kernel | Auto | Running] -- C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys -- (ISWKL)
DRV - [2012.06.15 16:46:19 | 000,137,928 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS.0\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2012.06.15 16:46:19 | 000,083,392 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS.0\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2011.12.09 12:40:53 | 000,036,000 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS.0\system32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2010.06.17 14:14:27 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS.0\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2010.05.21 13:56:04 | 000,058,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\wsimd.sys -- (WSIMD)
DRV - [2010.01.05 03:31:32 | 001,714,176 | R--- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\athuw.sys -- (AR9271)
DRV - [2009.12.22 04:31:26 | 000,036,640 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2009.12.22 04:31:02 | 000,018,136 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\dgderdrv.sys -- (dgderdrv)
DRV - [2009.09.19 07:30:10 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bmdm.sys -- (ss_bmdm)
DRV - [2009.09.19 07:30:10 | 000,100,224 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bserd.sys -- (ss_bserd)
DRV - [2009.09.19 07:30:10 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bbus.sys -- (ss_bbus)
DRV - [2009.09.19 07:30:10 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl)
DRV - [2008.08.26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.0\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2006.11.29 04:52:42 | 002,830,336 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2006.10.30 05:31:58 | 000,043,648 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS.0\system32\drivers\jraid.sys -- (JRAID)
DRV - [2006.07.27 03:49:10 | 000,083,712 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2006.03.17 11:18:58 | 000,392,960 | R--- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\senfilt.sys -- (SenFiltService)
DRV - [2006.02.07 13:52:58 | 000,006,912 | R--- | M] (JMicron ) [Kernel | Boot | Running] -- C:\WINDOWS.0\system32\drivers\JGOGO.sys -- (JGOGO)
DRV - [2004.08.13 04:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS.0\system32\drivers\ASACPI.sys -- (MTsensor)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS.0\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... rer:source?}
IE - HKLM\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IETB


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS.0\system32\blank.htm
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.google.com/ [binary data]
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes,DefaultScope = {6FDAC04D-E35D-448D-81B0-7336C35FAE54}
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTer ... 1bfc776a19
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IE
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{6FDAC04D-E35D-448D-81B0-7336C35FAE54}: "URL" = http://search.zonealarm.com/search?Sour ... rms}&r=609
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{73ccfd25-abe2-4bdf-ac5d-28a470a4d234}: "URL" = http://websearch.ask.com/redirect?clien ... 1B3CEA19AF
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.as ... =CT3072253
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS.0\system32\Macromed\Flash\NPSWF32_11_4_402_265.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS.0\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\WINDOWS.0\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/SAFFPlugin: C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS.0\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=13: C:\Program Files\Google\Google Updater\2.4.1508.6312\npCIDetect13.dll (Google)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\x\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files\McAfee\SiteAdvisor [2012.07.22 17:14:57 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\TrustChecker [2012.08.07 16:44:23 | 000,000,000 | ---D | M]

[2012.06.05 17:36:59 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions
[2012.06.05 17:37:00 | 000,000,000 | ---D | M] (uTorrentControl2 Community Toolbar) -- C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}
[2012.08.07 16:42:20 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions

========== Chrome ==========

CHR - homepage: http://www.google.com/
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms},
CHR - homepage: http://www.google.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\20.0.1132.57\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\20.0.1132.57\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\u00ED\Google\Chrome\Application\20.0.1132.57\gcswf32.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\x\Local Settings\Data aplikac\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Google Updater (Enabled) = C:\Program Files\Google\Google Updater\2.4.1508.6312\npCIDetect13.dll
CHR - Extension: Google Translate = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb\1.2.4_0\
CHR - Extension: YouTube = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Vyhledvn Google = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Poas YoWindow! = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\
CHR - Extension: SiteAdvisor = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\
CHR - Extension: Right Click and Translate = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\gcgilaljhajcjdbgdoidofbjonkjikfm\3.1.0_0\
CHR - Extension: Translate selection = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\goanabmlmgfinmjohhepcpffcnkeobjm\1.1.8.3_0\
CHR - Extension: Peklada Google pro slubu Google+ = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\jfppgkomfopklagggkjiaddgndkgopgl\1.1.7_0\
CHR - Extension: Skype Click to Call = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.1.0.10441_0\
CHR - Extension: Mapy Google = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh\5.2.5_0\
CHR - Extension: Mapy Google = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh\5.2.6_0\
CHR - Extension: uTorrentControl2 = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\
CHR - Extension: World Clocks = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjgoijhajhaahklokegbfnohialajpej\3.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012.08.02 15:53:55 | 000,000,027 | ---- | M]) - C:\WINDOWS.0\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O3 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\Toolbar\WebBrowser: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [ISW] File not found
O4 - HKLM..\Run: [ZoneAlarm] C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe (Check Point Software Technologies LTD)
O4 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{06333FBA-B022-41CB-9950-EC95E1EE8C18}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FE33B1EE-7656-48A5-B459-FC5BFA2165C2}: DhcpNameServer = 10.11.255.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS.0\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS.0\system32\userinit.exe) - C:\WINDOWS.0\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS.0\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\x\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\x\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: wuauserv - C:\WINDOWS\system32\wuauserv.dll (Microsoft Corporation)

Drivers32: msacm.iac2 - C:\WINDOWS.0\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS.0\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS.0\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS.0\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS.0\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS.0\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS.0\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS.0\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS.0\System32\ir50_32.dll (Intel Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 7 Days ==========

[2012.09.26 13:39:41 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\x\Plocha\OTL.exe
[2012.09.25 18:43:53 | 000,000,000 | ---D | C] -- C:\rsit
[2012.09.25 13:01:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\x\Recent
[2012.09.22 13:04:06 | 000,000,000 | ---D | C] -- C:\hry
[2012.09.22 12:53:41 | 000,000,000 | ---D | C] -- C:\Chcete být milionářem LT
[1 C:\Documents and Settings\x\*.tmp files -> C:\Documents and Settings\x\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2012.09.28 13:36:36 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.09.28 13:28:21 | 000,000,918 | ---- | M] () -- C:\WINDOWS.0\tasks\Adobe Flash Player Updater.job
[2012.09.28 13:27:32 | 000,002,206 | ---- | M] () -- C:\WINDOWS.0\System32\wpa.dbl
[2012.09.28 13:27:30 | 000,002,048 | --S- | M] () -- C:\WINDOWS.0\bootstat.dat
[2012.09.26 22:25:47 | 000,002,287 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS.0\Plocha\Skype.lnk
[2012.09.26 13:39:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\x\Plocha\OTL.exe
[2012.09.26 12:49:53 | 001,391,616 | ---- | M] () -- C:\Documents and Settings\x\Plocha\RogueKiller.exe
[2012.09.25 20:35:56 | 000,058,368 | ---- | M] () -- C:\Documents and Settings\x\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.09.22 13:32:16 | 000,000,459 | ---- | M] () -- C:\Documents and Settings\x\Plocha\Zástupce - milionar.lnk
[1 C:\Documents and Settings\x\*.tmp files -> C:\Documents and Settings\x\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012.09.28 13:36:36 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.09.26 12:50:10 | 001,391,616 | ---- | C] () -- C:\Documents and Settings\x\Plocha\RogueKiller.exe
[2012.09.22 13:32:16 | 000,000,459 | ---- | C] () -- C:\Documents and Settings\x\Plocha\Zástupce - milionar.lnk
[2012.07.06 11:28:40 | 000,001,111 | ---- | C] () -- C:\Documents and Settings\x\3Dsubtitler.config
[2012.06.29 21:42:53 | 000,262,216 | ---- | C] () -- C:\WINDOWS.0\System32\IPTests.dll
[2012.06.29 21:42:40 | 000,422,000 | ---- | C] () -- C:\WINDOWS.0\System32\wgapi.dll
[2012.06.29 21:42:40 | 000,077,824 | ---- | C] () -- C:\WINDOWS.0\System32\wgapiloc.dll
[2012.06.26 16:44:47 | 000,002,475 | ---- | C] () -- C:\WINDOWS.0\ATICIM.INI
[2012.06.15 16:57:12 | 000,110,592 | ---- | C] () -- C:\WINDOWS.0\System32\FsUsbExDevice.Dll
[2012.06.15 16:57:12 | 000,036,640 | ---- | C] () -- C:\WINDOWS.0\System32\FsUsbExDisk.Sys
[2012.06.15 16:57:02 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\x\Data aplikací\$_hpcst$.hpc
[2012.06.06 05:35:07 | 000,003,072 | ---- | C] () -- C:\WINDOWS.0\System32\iacenc.dll
[2012.06.05 19:27:45 | 000,354,816 | ---- | C] () -- C:\WINDOWS.0\System32\psisdecd.dll
[2012.06.05 19:23:20 | 000,520,192 | ---- | C] () -- C:\WINDOWS.0\System32\ati2sgag.exe
[2012.06.05 19:23:11 | 003,107,788 | R--- | C] () -- C:\WINDOWS.0\System32\ativvaxx.dat
[2012.06.05 19:23:11 | 000,142,345 | R--- | C] () -- C:\WINDOWS.0\System32\atiicdxx.dat
[2012.06.05 16:49:56 | 000,015,010 | ---- | C] () -- C:\WINDOWS.0\Ascd_log.ini
[2012.06.05 16:49:23 | 000,005,810 | R--- | C] () -- C:\WINDOWS.0\System32\drivers\ASACPI.sys
[2012.06.05 16:49:19 | 000,014,682 | ---- | C] () -- C:\WINDOWS.0\Ascd_tmp.ini
[2012.06.05 16:49:07 | 000,010,288 | ---- | C] () -- C:\WINDOWS.0\System32\drivers\ASUSHWIO.SYS
[2012.06.05 05:45:05 | 000,000,664 | ---- | C] () -- C:\WINDOWS.0\System32\d3d9caps.dat
[2012.06.05 05:38:58 | 000,058,368 | ---- | C] () -- C:\Documents and Settings\x\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.06.04 23:38:17 | 000,004,337 | ---- | C] () -- C:\WINDOWS.0\ODBCINST.INI
[2012.06.04 23:36:59 | 000,096,664 | ---- | C] () -- C:\WINDOWS.0\System32\FNTCACHE.DAT
[2012.06.04 22:32:49 | 000,001,198 | ---- | C] () -- C:\Documents and Settings\x\Local Settings\Data aplikací\FASTWiz.html
[2012.06.04 21:58:25 | 000,002,048 | --S- | C] () -- C:\WINDOWS.0\bootstat.dat
[2012.06.04 21:52:07 | 000,021,812 | ---- | C] () -- C:\WINDOWS.0\System32\emptyregdb.dat
[2012.06.04 21:51:20 | 000,058,716 | ---- | C] () -- C:\WINDOWS.0\System32\w3ctrs.ini
[2012.06.04 21:51:20 | 000,014,691 | ---- | C] () -- C:\WINDOWS.0\System32\axperf.ini
[2012.06.04 21:51:18 | 000,018,097 | ---- | C] () -- C:\WINDOWS.0\System32\infoctrs.ini
[2012.06.03 09:19:35 | 000,163,464 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat

========== ZeroAccess Check ==========

[2012.06.05 19:25:20 | 000,000,227 | RHS- | M] () -- C:\WINDOWS.0\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2012.02.28 20:49:53 | 001,510,912 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS.0\system32\wbem\fastprox.dll -- [2009.02.09 12:56:05 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008.04.14 08:52:06 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2008.10.13 12:43:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Data aplikací\Opera
[2009.01.13 08:57:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ashampoo
[2012.05.27 08:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\BDLogging
[2012.05.28 23:47:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\boost_interprocess
[2011.09.18 10:54:37 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\Common Files
[2009.06.04 19:28:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\espionServerData
[2009.04.21 14:04:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\f-secure
[2012.05.24 08:46:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\fssg
[2011.09.13 13:54:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Grisoft
[2008.10.10 11:52:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ICQ
[2008.10.07 20:17:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Installations
[2012.06.04 19:00:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\InstallMate
[2009.06.11 08:29:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\InterVideo
[2009.01.10 20:09:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\KONAMI
[2009.10.10 07:50:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MAGIX
[2012.05.16 15:23:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\MFAData
[2012.03.11 21:52:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PC Suite
[2008.10.18 10:47:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PCSettings
[2012.05.18 19:49:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PMB Files
[2012.01.13 20:19:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Premium
[2012.06.03 08:28:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Samsung
[2012.05.17 12:17:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SweetIM
[2012.05.16 18:29:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Tarma Installer
[2012.05.16 15:24:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2009.02.17 16:29:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TomTom
[2009.06.11 08:52:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ulead Systems
[2012.05.21 18:32:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\YoWindow
[2008.10.13 19:21:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Babylon
[2012.08.07 16:41:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\CheckPoint
[2012.07.10 15:26:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Martau
[2012.06.15 17:10:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\PC Suite
[2012.06.05 21:10:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\PMB Files
[2012.06.15 16:57:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Samsung
[2012.06.29 21:41:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\TP-LINK
[2012.06.05 19:39:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\YoWindow
[2012.05.27 08:35:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\QuickScan
[2009.02.05 20:52:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Ashampoo
[2011.09.18 12:38:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\AVG
[2012.05.24 08:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\avidemux
[2011.09.13 13:27:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Broad Intelligence
[2009.06.22 17:57:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Canneverbe_Limited
[2008.09.29 10:26:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\DAEMON Tools
[2009.03.30 08:58:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\F-Secure
[2012.06.03 22:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\GlarySoft
[2008.10.10 12:02:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ICQ
[2012.05.21 18:32:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Incredibar.com
[2012.05.24 08:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Mp3tag
[2012.03.11 21:49:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Nokia
[2012.03.11 21:58:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Nokia Multimedia Player
[2012.05.21 18:32:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\OpenCandy
[2011.01.29 22:02:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Opera
[2008.10.07 20:23:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\PC Suite
[2012.05.27 08:16:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\QuickScan
[2012.06.03 08:28:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Samsung
[2009.03.13 16:29:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Student dog
[2012.05.24 08:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\TeamViewer
[2012.06.02 14:06:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Temp
[2009.02.17 16:28:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\TomTom
[2009.06.04 12:51:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Ulead Systems
[2012.07.09 19:36:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\uTorrent
[2009.10.04 09:08:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ViGlance
[2009.10.04 09:08:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ViSplore
[2009.10.04 09:09:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\ViStart
[2009.10.08 20:00:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Vso
[2011.01.08 13:27:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\WebStep
[2009.03.13 16:03:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\XemiComputers
[2012.05.21 20:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\YoWindow
[2009.09.29 08:10:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\Zoner
[2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Babylon
[2012.08.10 12:06:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Check Point Software Technologies LTD
[2012.08.07 16:44:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\CheckPoint
[2012.07.06 08:38:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Desktop Sidebar
[2012.09.11 19:24:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\GHISLER
[2012.06.05 19:39:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\OpenCandy
[2012.06.04 22:28:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Opera
[2012.06.05 18:29:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Oracle
[2012.06.15 17:10:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\PC Suite
[2012.06.15 16:54:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Samsung
[2012.08.26 13:19:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Unity
[2012.09.28 13:28:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\uTorrent
[2012.06.26 15:50:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YourFileDownloader
[2012.06.06 05:52:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YoWindow

========== Purity Check ==========



========== Custom Scans ==========

< >
[2012.06.04 21:53:40 | 000,000,065 | RH-- | C] () -- C:\WINDOWS.0\Tasks\desktop.ini
[2012.06.04 22:00:10 | 000,000,006 | -H-- | C] () -- C:\WINDOWS.0\Tasks\SA.DAT
[2012.09.01 13:13:44 | 000,000,918 | ---- | C] () -- C:\WINDOWS.0\Tasks\Adobe Flash Player Updater.job

< >

< MD5 for: ATAPI.SYS >
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS.0\Driver Cache\i386\sp3.cab:atapi.sys
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\dllcache\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\drivers\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\drivers\system32\DRIVERS\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\ReinstallBackups\0008\DriverFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS.0\system32\ReinstallBackups\0009\DriverFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\drivers\system32\DRIVERS\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys
[2004.08.03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\cmdcons\autochk.exe
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS.0\system32\autochk.exe
[2008.04.14 08:52:12 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS.0\system32\dllcache\autochk.exe
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\autochk.exe
[2008.04.14 05:22:10 | 000,601,088 | ---- | M] (Microsoft Corporation) MD5=C7A9FF12C63E2E448722B02C71A8C431 -- C:\WINDOWS\system32\dllcache\autochk.exe

< MD5 for: CDROM.SYS >
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS.0\Driver Cache\i386\sp3.cab:cdrom.sys
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS.0\system32\drivers\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\dllcache\cdrom.sys
[2008.04.13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2008.04.14 05:22:22 | 001,432,576 | ---- | M] (Microsoft Corporation) MD5=1946837F8AB4A7B2A0C326A10C30E322 -- C:\WINDOWS\explorer.exe
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS.0\explorer.exe
[2008.04.14 08:52:24 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS.0\system32\dllcache\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\system32\VITrans\explorer.exe
[2008.04.29 17:42:08 | 000,090,624 | ---- | M] () MD5=FBB39A4487E11F64DCFFD36AEC2D2216 -- C:\Program Files\CheckPoint\ZAForceField\Heuristics\explorer.exe

< MD5 for: HAL.DLL >
[2008.04.14 09:10:02 | 020,102,206 | ---- | M] () .cab file -- C:\WINDOWS.0\Driver Cache\i386\sp3.cab:hal.dll
[2004.08.17 15:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.09.20 18:16:53 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.14 00:01:30 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS.0\system32\hal.dll
[2008.04.13 20:31:28 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\HAL.DLL
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll

< MD5 for: SCECLI.DLL >
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS.0\system32\dllcache\scecli.dll
[2008.04.14 08:51:56 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS.0\system32\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SERVICES.EXE >
[2009.02.09 13:18:56 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=3D107D45CCFDB266E91D84B52CD7F430 -- C:\WINDOWS.0\$hf_mig$\KB956572\SP3QFE\services.exe
[2009.02.09 13:18:56 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=3D107D45CCFDB266E91D84B52CD7F430 -- C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\services.exe
[2009.02.09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS.0\system32\dllcache\services.exe
[2009.02.09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS.0\system32\services.exe
[2009.02.09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS\system32\dllcache\services.exe
[2009.02.09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=9EF697AF07BB8DD82C3B02CA953A95B7 -- C:\WINDOWS\system32\services.exe
[2008.04.14 08:52:46 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=F0D2AE69035092BF22DAD6B50FAB85C2 -- C:\WINDOWS.0\$NtUninstallKB956572$\services.exe
[2008.04.14 05:22:45 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=F0D2AE69035092BF22DAD6B50FAB85C2 -- C:\WINDOWS\ServicePackFiles\i386\services.exe

< MD5 for: SVCHOST.EXE >
[2012.09.07 17:04:42 | 000,218,696 | ---- | M] () MD5=4E0D8C9F83B7FD82393F7D8CCC27E7AE -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS.0\system32\dllcache\svchost.exe
[2008.04.14 08:52:50 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS.0\system32\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2008.07.01 15:17:12 | 000,090,624 | ---- | M] () MD5=FBB39A4487E11F64DCFFD36AEC2D2216 -- C:\Program Files\CheckPoint\ZAForceField\Heuristics\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.06.20 12:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS.0\$NtUninstallKB2509553$\tcpip.sys
[2008.04.13 21:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS.0\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS.0\system32\drivers\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS.0\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS.0\system32\dllcache\userinit.exe
[2008.04.14 08:52:52 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS.0\system32\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\dllcache\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe

< MD5 for: WINLOGON.EXE >
[2012.09.07 17:04:42 | 000,218,696 | ---- | M] () MD5=4E0D8C9F83B7FD82393F7D8CCC27E7AE -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS.0\system32\dllcache\winlogon.exe
[2008.04.14 08:52:54 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS.0\system32\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
[2008.07.01 15:17:12 | 000,090,624 | ---- | M] () MD5=FBB39A4487E11F64DCFFD36AEC2D2216 -- C:\Program Files\CheckPoint\ZAForceField\Heuristics\winlogon.exe

< >

< %systemroot%*.* /U /s >
[11 C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS.0\CSC\*.tmp files -> C:\WINDOWS.0\CSC\*.tmp -> ]
[1 C:\WINDOWS.0\system32\DirectX\*.tmp files -> C:\WINDOWS.0\system32\DirectX\*.tmp -> ]
[1 C:\WINDOWS.0\temp\*.tmp files -> C:\WINDOWS.0\temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2012.07.14 16:17:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Adobe
[2012.06.05 19:34:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\ATI
[2012.06.15 16:41:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Avira
[2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Babylon
[2012.08.10 12:06:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Check Point Software Technologies LTD
[2012.08.07 16:44:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\CheckPoint
[2012.07.06 08:38:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Desktop Sidebar
[2012.07.08 12:49:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\DivX
[2012.09.11 19:38:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\dvdcss
[2012.09.11 19:24:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\GHISLER
[2012.06.19 21:33:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Google
[2012.06.04 22:01:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Identities
[2012.06.05 17:46:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Macromedia
[2012.08.14 16:21:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Malwarebytes
[2012.07.14 16:17:21 | 000,000,000 | --SD | M] -- C:\Documents and Settings\x\Data aplikací\Microsoft
[2012.06.05 17:36:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Mozilla
[2012.06.05 19:39:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\OpenCandy
[2012.06.04 22:28:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Opera
[2012.06.05 18:29:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Oracle
[2012.06.15 17:10:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\PC Suite
[2012.06.15 16:54:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Samsung
[2012.09.26 22:33:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Skype
[2012.06.05 18:27:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Sun
[2012.08.26 13:19:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\Unity
[2012.09.28 13:28:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\uTorrent
[2012.09.25 20:36:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\vlc
[2012.06.26 15:50:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YourFileDownloader
[2012.06.06 05:52:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Data aplikací\YoWindow

< %APPDATA%\*.exe /s >
[2012.06.05 19:28:34 | 000,009,158 | R--- | M] () -- C:\Documents and Settings\x\Data aplikací\Microsoft\Installer\{C941F1F1-25B3-4DF5-83E6-888C51A1AAB6}\ARPPRODUCTICON.exe
[2012.04.20 19:08:46 | 005,837,432 | ---- | M] (Uniblue Systems Ltd ) -- C:\Documents and Settings\x\Data aplikací\OpenCandy\4D18D91CE27443F0B2A8C852BBCF0D6B\speedupmypcROW.exe
[2011.01.27 15:43:34 | 000,266,552 | ---- | M] (ml) -- C:\Documents and Settings\x\Data aplikací\Samsung\Kies\UpdateTemp\MCS.Thunder.Update.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2012.09.28 13:28:21 | 000,000,918 | ---- | M] () -- C:\WINDOWS.0\Tasks\Adobe Flash Player Updater.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2012.06.04 23:36:03 | 000,094,208 | ---- | M] () -- C:\WINDOWS.0\System32\config\default.sav
[2012.06.04 23:36:03 | 001,093,632 | ---- | M] () -- C:\WINDOWS.0\System32\config\software.sav
[2012.06.04 23:36:03 | 000,507,904 | ---- | M] () -- C:\WINDOWS.0\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2012.09.28 13:27:32 | 000,002,206 | ---- | M] () -- C:\WINDOWS.0\system32\wpa.dbl

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"uTorrent" = "C:\Program Files\uTorrent\uTorrent.exe" /MINIMIZED -- [2012.09.02 12:34:33 | 000,895,376 | ---- | M] (BitTorrent, Inc.)
"ctfmon.exe" = C:\WINDOWS.0\system32\ctfmon.exe -- [2008.04.14 08:52:18 | 000,015,360 | ---- | M] (Microsoft Corporation)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2009.03.08 14:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation) MD5=B60DDDD2D63CE41CB8C487FCFBB6419E -- C:\Program Files\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >
[2012.07.16 13:17:04 | 000,874,384 | ---- | M] (Opera Software) MD5=308AB9B6B7BEDF60E458D1B950F5CD80 -- C:\Program Files\Opera\opera.exe

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2012.09.28 13:36:36 | 000,000,512 | ---- | M] () MD5=0E35B77E90F38104ACF18006B128DB6D -- C:\PhysicalMBR.bin

< >

< *crack* /s >

< *keygen* /s >

< *loader* /s >
[2008.08.25 09:08:16 | 000,005,476 | ---- | M] () -- \_ZALOHA\Data aplikací\CTVoD\Resources\Downloader.css
[2012.05.15 09:59:24 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS.0\Data aplikací\Skype\Apps\login\images\loader.gif
[2012.05.15 09:59:24 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users.WINDOWS.0\Data aplikací\Skype\Apps\login\images\loader.png
[2012.02.15 14:28:30 | 000,072,638 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.gif
[2012.02.15 14:28:30 | 000,003,032 | ---- | M] () -- \Documents and Settings\All Users\Data aplikací\Skype\Apps\login\images\loader.png
[2012.04.18 00:39:24 | 000,010,145 | ---- | M] () -- \Documents and Settings\PC\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\modules\ExternalLibraryLoader.jsm
[2012.05.16 18:29:00 | 000,086,818 | ---- | M] () -- \Documents and Settings\PC\Data aplikací\Mozilla\Firefox\Profiles\0\extensions\OneClickDownloader@OneClickDownloader.com.xpi
[2012.05.26 21:41:55 | 000,626,909 | ---- | M] () -- \Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.30_0\yowidget\Preloader.swf
[2012.05.26 21:05:39 | 000,000,673 | ---- | M] () -- \Documents and Settings\PC\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.7.1_0\Media\ajax-loader.gif
[2012.04.18 00:39:24 | 000,010,145 | ---- | M] () -- \Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\modules\ExternalLibraryLoader.jsm
[2012.06.26 15:50:08 | 004,110,768 | ---- | M] () -- \Documents and Settings\x\Dokumenty\Downloads\Jackass_3_(2010)_UNRATED_720p_BluRay_x264-TWiZTED.rar_downloader_225a.exe
[2012.07.03 22:28:56 | 000,638,601 | ---- | M] () -- \Documents and Settings\x\Dokumenty\Downloads\The.Strangers.2008.Unrated.m-HD.720p.x264-VALKiNTENSiVE_downloader.exe
[2012.07.17 18:18:20 | 000,626,909 | ---- | M] () -- \Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\Preloader.swf
[2012.07.02 22:22:31 | 000,000,673 | ---- | M] () -- \Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\ajax-loader.gif
[2012.06.26 15:50:04 | 000,003,072 | ---- | M] () -- \Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Local Storage\http_abc.yourfiledownloader.com_0.localstorage
[2012.09.26 22:26:33 | 000,105,903 | ---- | M] () -- \Documents and Settings\x\Local Settings\Temporary Internet Files\Content.IE5\UU9LD43B\AdLoader-427d9fd2a91e2f2c023aefe9f69a01d0.min[1].js
[2012.09.26 22:26:33 | 000,000,753 | ---- | M] () -- \Documents and Settings\x\Local Settings\Temporary Internet Files\Content.IE5\V3J3UZC5\AdLoader[1].htm
[2012.04.30 11:28:56 | 001,753,600 | ---- | M] () -- \Program Files\1ClickDownload\1ClickDownloader.exe
[2012.06.15 16:46:16 | 000,047,568 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.dll
[2012.06.15 16:46:16 | 000,232,912 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloader.exe
[2012.06.15 16:46:16 | 001,715,152 | ---- | M] () -- \Program Files\Avira\AntiVir Desktop\avwebloadergui.dll
[8 \Program Files\Avira\AntiVir Desktop\*.tmp files -> \Program Files\Avira\AntiVir Desktop\*.tmp -> ]
[2008.03.27 23:51:18 | 000,042,304 | ---- | M] () -- \Program Files\HP\Digital Imaging\Smart Web Printing\RsrcLoaderLib.dll
[2008.09.01 16:37:03 | 000,005,795 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.jpg
[2008.09.01 16:37:03 | 000,004,089 | ---- | M] () -- \Program Files\ICQ6\services\icqApp\ver1\theme\IMAGES\XtraPreloader\loader.swf
[2008.10.10 12:00:45 | 000,003,479 | ---- | M] () -- \Program Files\ICQ6\services\icqXtraz\ver1\content\coreg\preloader04.swf
[2008.10.10 11:52:34 | 000,552,798 | ---- | M] () -- \Program Files\ICQ6\services\icqXtraz\ver1\theme\game_center\loaderBkg.png
[2009.10.07 18:58:51 | 000,001,399 | ---- | M] () -- \Program Files\Real\RealPlayer\browserrecord\firefox\ext\chrome\content\browserrecordloader.js
[2009.10.07 18:58:51 | 000,000,319 | ---- | M] () -- \Program Files\Real\RealPlayer\browserrecord\firefox\ext\chrome\content\browserrecordloader.xul
[2009.12.04 03:19:16 | 000,292,352 | ---- | M] () -- \Program Files\Samsung\Kies\BinaryLoaderForKorea.dll
[2010.01.28 15:19:32 | 000,331,576 | ---- | M] () -- \Program Files\Samsung\Kies\BinaryLoaderMgr.exe
[2009.06.04 10:04:48 | 000,374,077 | ---- | M] () -- \programy\GoogleVideoUploaderInstaller105.exe
[2009.07.08 14:25:16 | 003,176,437 | ---- | M] () -- \programy\youtubedownloader.exe
[2002.12.12 00:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS.0\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dmloader.dll
[2008.04.14 08:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS.0\system32\dmloader.dll
[2012.04.26 14:26:34 | 000,012,532 | ---- | M] () -- \WINDOWS.0\system32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2008.04.14 08:51:40 | 000,035,840 | ---- | M] () -- \WINDOWS.0\system32\dllcache\dmloader.dll
[2002.12.12 00:14:32 | 000,033,280 | ---- | M] () -- \WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dmloader.dll
[2008.04.14 05:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.04.13 20:31:47 | 000,230,912 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.04.13 20:31:48 | 000,278,528 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.04.14 05:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[2007.06.19 08:59:36 | 000,070,400 | ---- | M] () -- \WINDOWS\system32\PhysXLoader.dll
[2009.07.21 08:52:36 | 000,009,622 | ---- | M] () -- \WINDOWS\system32\Adobe\Shockwave 11\shockwave_Projector_Loader.dcr
[2008.04.14 05:21:39 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll
[2009.03.23 12:30:28 | 000,009,622 | ---- | M] () -- \WINDOWS\system32\Macromed\Shockwave 10\shockwave_Projector_Loader.dcr

========== Alternate Data Streams ==========

@Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2

< End of report >

Re: prosím o kontrolu - zpomalene PC

Napsal: 02 říj 2012 12:26
od vyosek
Heh, no sken dobry, ale my uz potrebujem opravovat :?:

:arrow: Do okenka vlozte tento skript a kliknete na Opravit - ale to jsem Vam psal uz v navodu vyse, chce to trosku lepe cist :)

Kód: Vybrat vše

:otl
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKLM\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IETB
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.google.com/ [binary data]
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes,DefaultScope = {6FDAC04D-E35D-448D-81B0-7336C35FAE54}
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=112555&tt=060612_6_&babsrc=SP_ss&mntrId=40a345b7000000000000001bfc776a19
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://www.startsearcher.com/?q={searchTerms}&src=IE
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{6FDAC04D-E35D-448D-81B0-7336C35FAE54}: "URL" = http://search.zonealarm.com/search?Sour ... 1116d29&q={searchTerms}&r=609
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{73ccfd25-abe2-4bdf-ac5d-28a470a4d234}: "URL" = http://websearch.ask.com/redirect?clien ... src=crm&q={searchTerms}&locale=en_CZ&apn_ptnrs=^ABZ&apn_dtid=^YYYYYY^YY^CZ&apn_uid=7fc1418c-fba3-4d59-9a93-f8ef7ad3b5e9&apn_sauid=20987C51-2FA5-4BAA-B410-B51B3CEA19AF
IE - HKU\S-1-5-21-1214440339-117609710-1801674531-1005\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3072253
[2012.06.05 17:37:00 | 000,000,000 | ---D | M] (uTorrentControl2 Community Toolbar) -- C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}
CHR - Extension: Poas YoWindow! = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\
CHR - Extension: uTorrentControl2 = C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
[2008.10.13 19:21:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2012.06.26 15:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Babylon
[2011.09.18 12:38:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PC\Data aplikací\AVG
[11 C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS.0\CSC\*.tmp files -> C:\WINDOWS.0\CSC\*.tmp -> ]
[1 C:\WINDOWS.0\system32\DirectX\*.tmp files -> C:\WINDOWS.0\system32\DirectX\*.tmp -> ]
[1 C:\WINDOWS.0\temp\*.tmp files -> C:\WINDOWS.0\temp\*.tmp -> ]
@Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ISW"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=-
"ctfmon.exe"=-

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp

:commands
[RESETHOSTS]
[EMPTYTEMP]
[EMPTYFLASH]
[EMPTYJAVA]

Re: prosím o kontrolu - zpomalene PC

Napsal: 02 říj 2012 12:33
od mlhov
omlouvam se asi jsem zaslal spatny text zde by mel byt ten spravny :?:

All processes killed
========== OTL ==========
Service WDICA stopped successfully!
Service WDICA deleted successfully!
Service PDRFRAME stopped successfully!
Service PDRFRAME deleted successfully!
Service PDRELI stopped successfully!
Service PDRELI deleted successfully!
Service PDFRAME stopped successfully!
Service PDFRAME deleted successfully!
Service PDCOMP stopped successfully!
Service PDCOMP deleted successfully!
Service PCIDump stopped successfully!
Service PCIDump deleted successfully!
Service lbrtfdc stopped successfully!
Service lbrtfdc deleted successfully!
Service i2omgmt stopped successfully!
Service i2omgmt deleted successfully!
Service Changer stopped successfully!
Service Changer deleted successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ not found.
HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main\\Secondary Start Pages| /E : value set successfully!
HKU\S-1-5-21-1214440339-117609710-1801674531-1005\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_USERS\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ not found.
Registry key HKEY_USERS\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ not found.
Registry key HKEY_USERS\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Internet Explorer\SearchScopes\{6FDAC04D-E35D-448D-81B0-7336C35FAE54}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6FDAC04D-E35D-448D-81B0-7336C35FAE54}\ not found.
Registry key HKEY_USERS\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Internet Explorer\SearchScopes\{73ccfd25-abe2-4bdf-ac5d-28a470a4d234}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73ccfd25-abe2-4bdf-ac5d-28a470a4d234}\ not found.
Registry key HKEY_USERS\S-1-5-21-1214440339-117609710-1801674531-1005\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}\ not found.
C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\searchplugin folder moved successfully.
C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\modules folder moved successfully.
C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\META-INF folder moved successfully.
C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\defaults folder moved successfully.
C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\components folder moved successfully.
C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\chrome folder moved successfully.
C:\Documents and Settings\x\Data aplikací\Mozilla\Firefox\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03} folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\uk folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\tr folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\sl folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\se folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\ru folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\ro folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\pt folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\no folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\nl folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\ja folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\it folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\hu folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\hr folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\fr folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\fi folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\es folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\en_US folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\en_UK folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\en folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\el folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\de folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\da\fi folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\da folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\cs folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales\bg folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\_locales folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage\sky folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage\foreground\burdocks folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage\foreground folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage\effects\birds folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage\effects\balloons folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage\effects folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage\clouds folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage\animals\horse folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage\animals folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\stage folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf\fonts folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\swf folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\lang\mini folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\lang folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes\village\seasons folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes\village folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes\simple folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes\seaside\seasons folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes\seaside folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes\oriental\seasons folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes\oriental folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes\airport\seasons folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes\airport folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget\landscapes folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yowidget folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yojs\locales folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\yojs folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\lib folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\js folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\img\weather folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\img folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\debug folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\css folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0 folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\plugins folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Options folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\rssItem folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\popup folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\icons\useful_components folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\icons\urlGadget folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\icons folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\base64\searchBox folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\base64\rssItem folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\base64\ifarme folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\base64\icons folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\base64\dyamincMenu folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media\base64 folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Media folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\utils\interface folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\utils folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\usage folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\translation folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\toolbarsManager folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\toolbarInfo folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\settings folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\serviceMap folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\login folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\jsonData folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\feed folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\cookieMonster folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\ContextMenuService folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\aliasReplace folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\alerts folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services\404 folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\services folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\popup\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\popup\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\popup folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\lib folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\xmlMenu\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\xmlMenu\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\xmlMenu\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\xmlMenu folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\urlGadget\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\urlGadget\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\urlGadget\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\urlGadget folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\multiRssItem\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\multiRssItem\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\multiRssItem\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\multiRssItem folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\menuPanel\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\menuPanel\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\menuPanel\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\menuPanel folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\gadgets\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\gadgets\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\gadgets folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\factories\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\factories\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\factories folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\dynamicMenu\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\dynamicMenu\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\dynamicMenu\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\dynamicMenu\consts folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\dynamicMenu folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\contextMenu\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\contextMenu\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\contextMenu\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\contextMenu folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\container folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\components\view\InjectScript folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\components\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\components\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\components\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\components folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items\about folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\items folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\css folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\compatibility folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\API\Toolbar folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\API\Component\view folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\API\Component\model folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\API\Component\controller folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\API\Component folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js\API folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\js folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0\Css folder moved successfully.
C:\Documents and Settings\x\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc\2.3.15.10_0 folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}\x86\x86 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}\x86 folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} folder moved successfully.
C:\Documents and Settings\All Users.WINDOWS.0\Data aplikací\Babylon folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\Rescue\Tweak Manager folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\Rescue\ServiceManager folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\Rescue\Program Manager folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\Rescue\PC Tuneup 2011 folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\Rescue folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\PC Tuneup 2011\User Reports folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\PC Tuneup 2011\Logs folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\PC Tuneup 2011 folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\Disk Defrag\Reports folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG\Disk Defrag folder moved successfully.
C:\Documents and Settings\PC\Data aplikací\AVG folder moved successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1B9.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1D7.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP297.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2AB.tmp\mscorlib.dll deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2AB.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2B7.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2D3.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2F8.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP347.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP3D1.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5D4.tmp folder deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5E1.tmp\mscorlib.dll deleted successfully.
C:\WINDOWS.0\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5E1.tmp folder deleted successfully.
C:\WINDOWS.0\CSC\csc1.tmp deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\system folder deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\sysbckup folder deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\inf folder deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\help folder deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\drivers folder deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\directx folder deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\dxbda.inf deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\dxnt.inf deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\dxntunp.inf deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp\dxver.inf deleted successfully.
C:\WINDOWS.0\system32\DirectX\DXD.tmp folder deleted successfully.
C:\WINDOWS.0\temp\ZLT06c5a.TMP deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:0B4227B4 deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:DFC5A2B2 deleted successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ISW deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\uTorrent deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ctfmon.exe deleted successfully.
========== FILES ==========
File/Folder C:\WINDOWS.0\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS.0\system32\SET*.tmp not found.
File/Folder C:\WINDOWS.0\*.tmp not found.
========== COMMANDS ==========
File move failed. C:\WINDOWS.0\System32\drivers\etc\Hosts scheduled to be moved on reboot.
Error: Unble to create default HOSTS file!

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Opera cache emptied: 0 bytes

User: All Users

User: All Users.WINDOWS.0

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User.WINDOWS.0
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LocalService.NT AUTHORITY
->Temp folder emptied: 988616 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: NetworkService.NT AUTHORITY
->Temp folder emptied: 1979256 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: PC
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Apple Safari cache emptied: 0 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: x
->Temp folder emptied: 65769712 bytes
->Temporary Internet Files folder emptied: 88178856 bytes
->Google Chrome cache emptied: 395722126 bytes
->Opera cache emptied: 7242676 bytes
->Flash cache emptied: 506 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1095416 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 2896237662 bytes

Total Files Cleaned = 3 297,00 mb


[EMPTYFLASH]

User: Administrator

User: All Users

User: All Users.WINDOWS.0

User: Default User
->Flash cache emptied: 0 bytes

User: Default User.WINDOWS.0

User: LocalService

User: LocalService.NT AUTHORITY

User: NetworkService
->Flash cache emptied: 0 bytes

User: NetworkService.NT AUTHORITY

User: PC
->Flash cache emptied: 0 bytes

User: x
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


[EMPTYJAVA]

User: Administrator

User: All Users

User: All Users.WINDOWS.0

User: Default User

User: Default User.WINDOWS.0

User: LocalService

User: LocalService.NT AUTHORITY

User: NetworkService

User: NetworkService.NT AUTHORITY

User: PC
->Java cache emptied: 0 bytes

User: x

Total Java Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.68.0 log created on 10022012_130230

Files\Folders moved on Reboot...
File move failed. C:\WINDOWS.0\System32\drivers\etc\Hosts scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...