google hlásí podezřelá aktivita - preventivka
Napsal: 15 říj 2013 08:38
Dobrý den ,
Po změně internetového providera mě na několika nezávisle PC vyskočila hláška ( Google detekoval podezřelé chování ve Vaší síti ... atd ) . Mám zažádáno o veřejnou IP ( což bz mohlo pomoct ) . Ale pro jistotu poprosím o kontrolu PC , děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-10-2013
Ran by user (administrator) on VERONIKA on 15-10-2013 09:32:23
Running from C:\Documents and Settings\user\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgwdsvc.exe
(CobianSoft, Luis Cobian) C:\Program Files\Cobian Backup 10\cbVSCService.exe
(Microsoft Corporation) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Intel Corporation) C:\WINDOWS\system32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgui.exe
(Luis Cobian, CobianSoft) C:\Program Files\Cobian Backup 10\Cobian.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Skype Technologies S.A.) C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Luis Cobian, CobianSoft) C:\Program Files\Cobian Backup 10\cbInterface.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Documents and Settings\user\Plocha\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDCPL] - C:\Windows\RTHDCPL.EXE [18077696 2008-12-23] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] - C:\Windows\ALCMTR.EXE [57344 2008-06-19] (Realtek Semiconductor Corp.)
HKLM\...\Run: [HotKeysCmds] - C:\WINDOWS\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM\...\Run: [AVG_UI] - C:\Program Files\AVG\AVG2013\avgui.exe [4411440 2013-08-15] (AVG Technologies CZ, s.r.o.)
HKLM\...\Runonce: [AvgUninstallURL] - cmd.exe /c start http://www.avg.cz/cz.special-uninstalla ... =10.0.1432
HKCU\...\Run: [Cobian Backup 10] - C:\Program Files\Cobian Backup 10\Cobian.exe [421376 2010-09-23] (Luis Cobian, CobianSoft)
HKCU\...\Run: [MSMSGS] - C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20684656 2013-07-25] (Skype Technologies S.A.)
MountPoints2: {275acad4-6989-11e0-be3b-00270e142348} - E:\Startme.exe
MountPoints2: {486be286-3ef5-11df-a9df-806d6172696f} - D:\EIVCD.exe
Startup: C:\Documents and Settings\user\Nabídka Start\Programy\Po spuštění\Internetagent Buma Update.lnk
ShortcutTarget: Internetagent Buma Update.lnk -> C:\LMPLUS\LMIAGENT.EXE ()
BootExecute: autocheck autochk * C:\PROGRA~1\AVG\AVG2013\avgrsx.exe /sync /restart
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKCU - {0e72e621-2088-4da3-b853-0a0d526f3125} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... Listicka_1
SearchScopes: HKCU - {2e424b4e-ff98-4f0b-8c69-d30b1f20d5cd} URL = http://search.seznam.cz/?q={searchTerms ... Listicka_1
SearchScopes: HKCU - {A2C458C2-B8C6-413A-B6E8-A938E1A55CE9} URL = http://websearch.ask.com/redirect?clien ... 8C391ABB9B
SearchScopes: HKCU - {d6ba370a-a9c9-4870-8a40-8163434c4edc} URL = http://www.firmy.cz/phr/{searchTerms}?s ... Listicka_1
SearchScopes: HKCU - {dbd8283b-b903-4d24-b455-2be84f9d94db} URL = http://www.mapy.cz/?query={searchTerms} ... Listicka_1
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: Lištička - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\listicka.dll ()
Toolbar: HKLM - Nástroje Lištičky - {1EA00BE1-6E54-4E2A-8099-680300BF23E1} - C:\Program Files\Seznam.cz\toolbar\toolbar.dll ()
Toolbar: HKCU -&Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU -&Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\Windows\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU -Nástroje Lištičky - {34AB3C4C-DA1A-4067-96F4-31452C7CFE65} - C:\Program Files\Seznam.cz\listicka.dll ()
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 0284431640
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.110
FireFox:
========
FF ProfilePath: C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\hqvifz2u.default
FF DefaultSearchEngine: Ask.com
FF SearchEngineOrder.1: Ask.com
FF SelectedSearchEngine: Ask.com
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\hqvifz2u.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\hqvifz2u.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF Extension: personas - C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\hqvifz2u.default\Extensions\personas@christopher.beard.xpi
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR DefaultSearchURL: (Ask) - http://websearch.ask.com/redirect?clien ... earchTerms}
CHR DefaultSuggestURL: (Ask) - http://ss.websearch.ask.com/query?qsrc= ... earchTerms}
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\30.0.1599.69\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\30.0.1599.69\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\30.0.1599.69\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (AVG Internet Security) - C:\Documents and Settings\user\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll No File
CHR Plugin: (Skype Toolbars) - C:\Documents and Settings\user\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.8.0.8855_0\npSkypeChromePlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2003) - C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (YouTube) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Skype Click to Call) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.12.0.13601_0
CHR Extension: (Chrome In-App Payments service) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Gmail) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
========================== Services (Whitelisted) =================
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.)
R2 cbVSCService; C:\Program Files\Cobian Backup 10\cbVSCService.exe [67584 2010-09-23] (CobianSoft, Luis Cobian)
R2 Skype C2C Service; C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3273088 2013-09-16] (Skype Technologies S.A.)
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf"
==================== Drivers (Whitelisted) ====================
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [208184 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [60216 2013-07-20] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22328 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [171320 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [96568 2013-07-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [39224 2013-09-05] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [182072 2013-03-21] (AVG Technologies CZ, s.r.o.)
R3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2004-08-03] (Realtek Semiconductor Corporation)
S4 IntelIde; No ImagePath
U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U1 WS2IFSL;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-15 09:32 - 2013-10-15 09:32 - 00000000 ____D C:\FRST
2013-10-15 09:31 - 2013-10-15 09:30 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\user\Plocha\FRSTLauncher (1).exe
2013-10-15 09:31 - 2013-10-15 09:29 - 01087213 _____ (Farbar) C:\Documents and Settings\user\Plocha\FRST.exe
2013-10-09 17:10 - 2013-10-09 17:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$
2013-10-09 17:09 - 2013-10-09 17:10 - 00128947 _____ C:\WINDOWS\KB2862335.log
2013-10-09 17:09 - 2013-10-09 17:09 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$
2013-10-09 17:06 - 2013-10-09 17:06 - 00011458 _____ C:\WINDOWS\KB2868038.log
2013-10-09 17:06 - 2013-10-09 17:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$
2013-10-09 17:05 - 2013-10-09 17:05 - 00012453 _____ C:\WINDOWS\KB2879017-IE8.log
2013-10-09 17:05 - 2013-10-09 17:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$
2013-10-09 17:05 - 2013-10-09 17:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$
2013-10-09 09:22 - 2013-10-09 17:10 - 00132859 _____ C:\WINDOWS\KB2847311.log
2013-10-09 09:22 - 2013-07-17 02:58 - 00123008 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbvideo.sys
2013-10-09 09:22 - 2013-07-17 02:58 - 00060160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbaudio.sys
2013-10-09 09:22 - 2013-07-17 02:58 - 00046848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irbus.sys
2013-10-09 09:22 - 2013-07-03 04:12 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidparse.sys
2013-10-09 09:22 - 2013-07-03 03:59 - 00014976 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbscan.sys
2013-10-09 09:21 - 2013-08-09 02:55 - 00144128 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbport.sys
2013-10-09 09:21 - 2013-08-09 02:55 - 00005376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbd.sys
2013-10-09 09:21 - 2009-03-18 13:02 - 00030336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbehci.sys
2013-10-05 11:11 - 2013-10-08 11:07 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-09-30 13:16 - 2008-04-14 05:21 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpusd.dll
2013-09-30 13:16 - 2001-10-24 12:25 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpusb.dll
2013-09-27 11:07 - 2013-09-27 11:09 - 00000000 ____D C:\Documents and Settings\user\Plocha\nabídka p. Obolecký
==================== One Month Modified Files and Folders =======
2013-10-15 09:32 - 2013-10-15 09:32 - 00000000 ____D C:\FRST
2013-10-15 09:31 - 2010-04-03 15:45 - 00000000 ___HD C:\Documents and Settings\user\Local Settings\Data aplikací
2013-10-15 09:31 - 2010-04-03 15:45 - 00000000 ____D C:\Documents and Settings\user\Plocha
2013-10-15 09:30 - 2013-10-15 09:31 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\user\Plocha\FRSTLauncher (1).exe
2013-10-15 09:29 - 2013-10-15 09:31 - 01087213 _____ (Farbar) C:\Documents and Settings\user\Plocha\FRST.exe
2013-10-15 09:29 - 2010-04-03 15:45 - 00000000 ___RD C:\Documents and Settings\user\Dokumenty
2013-10-15 09:24 - 2012-07-04 08:59 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-10-15 09:15 - 2010-04-03 10:23 - 00000000 ____D C:\Documents and Settings\user\Data aplikací\Skype
2013-10-15 09:08 - 2011-03-03 09:58 - 00000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-15 09:06 - 2011-07-30 09:37 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\MFAData
2013-10-15 09:05 - 2010-04-03 15:42 - 01561192 _____ C:\WINDOWS\WindowsUpdate.log
2013-10-15 09:02 - 2011-11-08 10:42 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2013-10-15 09:01 - 2011-03-03 09:58 - 00000932 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-15 09:01 - 2010-04-03 17:38 - 00000159 _____ C:\WINDOWS\wiadebug.log
2013-10-15 09:01 - 2010-04-03 17:38 - 00000050 _____ C:\WINDOWS\wiaservc.log
2013-10-15 09:01 - 2004-08-18 14:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl
2013-10-15 09:00 - 2010-04-03 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-10-14 18:02 - 2010-04-03 15:45 - 00032520 _____ C:\WINDOWS\SchedLgU.Txt
2013-10-14 18:01 - 2010-04-03 15:45 - 00000272 ___SH C:\Documents and Settings\user\ntuser.ini
2013-10-14 14:51 - 2010-04-13 13:06 - 00000000 ____D C:\Documents and Settings\user\Local Settings\Data aplikací\CutePDF Writer
2013-10-14 13:38 - 2010-04-03 10:16 - 00002561 _____ C:\Documents and Settings\user\Plocha\Microsoft Office Word 2003.lnk
2013-10-14 10:58 - 2012-07-30 11:37 - 00000000 ____D C:\Documents and Settings\user\Dokumenty\Stažené soubory
2013-10-14 10:21 - 2012-10-13 10:41 - 00000000 ____D C:\Documents and Settings\user\irisplus-updates
2013-10-14 10:20 - 2012-10-13 10:40 - 00000000 ____D C:\Documents and Settings\user\irisplus-resources
2013-10-14 09:18 - 2010-07-28 10:04 - 00000012 _____ C:\Documents and Settings\user\intlname.ols
2013-10-10 18:00 - 2012-02-20 11:01 - 00065536 _____ C:\WINDOWS\system32\config\Cobian B.evt
2013-10-10 17:20 - 2013-07-15 15:33 - 00587264 _____ C:\Documents and Settings\user\Plocha\POJIŠTĚNÍ ŠABLONA.xls
2013-10-10 10:00 - 2010-04-03 17:31 - 00000000 ____D C:\WINDOWS\repair
2013-10-10 09:00 - 2010-04-03 15:41 - 00000000 ____D C:\WINDOWS\Registration
2013-10-10 08:58 - 2011-12-16 18:46 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-10 08:58 - 2010-04-03 17:36 - 00139648 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-10-09 17:12 - 2010-04-03 17:37 - 00988376 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-10-09 17:10 - 2013-10-09 17:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$
2013-10-09 17:10 - 2013-10-09 17:09 - 00128947 _____ C:\WINDOWS\KB2862335.log
2013-10-09 17:10 - 2013-10-09 09:22 - 00132859 _____ C:\WINDOWS\KB2847311.log
2013-10-09 17:10 - 2013-05-15 18:07 - 00018393 _____ C:\WINDOWS\updspapi.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00179633 _____ C:\WINDOWS\iis6.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00076167 _____ C:\WINDOWS\tsoc.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00054918 _____ C:\WINDOWS\comsetup.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00051966 _____ C:\WINDOWS\msmqinst.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00033296 _____ C:\WINDOWS\ntdtcsetup.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00029241 _____ C:\WINDOWS\netfxocm.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00011475 _____ C:\WINDOWS\MedCtrOC.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00010422 _____ C:\WINDOWS\ocmsn.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00008397 _____ C:\WINDOWS\tabletoc.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00008343 _____ C:\WINDOWS\msgsocm.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00001374 _____ C:\WINDOWS\imsins.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00001374 _____ C:\WINDOWS\imsins.BAK
2013-10-09 17:10 - 2013-05-15 18:05 - 00166931 _____ C:\WINDOWS\FaxSetup.log
2013-10-09 17:10 - 2013-05-15 18:05 - 00079812 _____ C:\WINDOWS\ocgen.log
2013-10-09 17:09 - 2013-10-09 17:09 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$
2013-10-09 17:09 - 2013-08-14 18:07 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-10-09 17:09 - 2013-07-24 09:22 - 00040186 _____ C:\WINDOWS\setupapi.log
2013-10-09 17:07 - 2011-12-16 18:46 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Silverlight
2013-10-09 17:07 - 2010-04-03 11:36 - 78106760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-10-09 17:06 - 2013-10-09 17:06 - 00011458 _____ C:\WINDOWS\KB2868038.log
2013-10-09 17:06 - 2013-10-09 17:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$
2013-10-09 17:05 - 2013-10-09 17:05 - 00012453 _____ C:\WINDOWS\KB2879017-IE8.log
2013-10-09 17:05 - 2013-10-09 17:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$
2013-10-09 17:05 - 2013-10-09 17:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$
2013-10-09 17:05 - 2010-04-03 11:37 - 00000000 ____D C:\WINDOWS\ie8updates
2013-10-09 14:24 - 2012-07-04 08:59 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-10-09 14:24 - 2011-07-30 09:32 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-10-09 09:08 - 2012-07-30 11:40 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-10-08 14:14 - 2011-03-03 10:00 - 00001813 _____ C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2013-10-08 11:07 - 2013-10-05 11:11 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-10-05 08:57 - 2010-07-07 13:16 - 00216576 _____ C:\Documents and Settings\user\Plocha\seznam agentur.xls
2013-09-30 11:10 - 2010-04-03 10:09 - 00000000 ____D C:\Documents and Settings\user\Dokumenty\Země světa
2013-09-27 15:41 - 2010-04-03 15:45 - 00000000 ___HD C:\Documents and Settings\user\Okolní síť
2013-09-27 11:09 - 2013-09-27 11:07 - 00000000 ____D C:\Documents and Settings\user\Plocha\nabídka p. Obolecký
2013-09-27 09:00 - 2011-06-02 16:11 - 00000000 ___RD C:\Program Files\Skype
2013-09-27 09:00 - 2010-04-03 10:11 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Skype
2013-09-26 15:52 - 2010-04-03 10:09 - 00000000 ____D C:\Documents and Settings\user\Dokumenty\Česká pojišťovna
2013-09-26 10:57 - 2011-02-18 14:11 - 00000000 ____D C:\Documents and Settings\user\Plocha\Eva
2013-09-25 16:21 - 2010-04-03 15:45 - 00000000 ___RD C:\Documents and Settings\user\Dokumenty\Obrázky
2013-09-25 16:12 - 2012-11-27 12:29 - 00000000 ____D C:\Documents and Settings\user\Dokumenty\Inforeise Eva
2013-09-23 23:55 - 2010-04-03 11:38 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll
2013-09-23 23:55 - 2009-03-08 04:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-09-23 20:25 - 2012-06-13 08:51 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll
2013-09-23 20:25 - 2010-06-11 11:21 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll
2013-09-23 20:25 - 2009-03-08 14:09 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll
2013-09-23 20:25 - 2009-03-08 04:41 - 06017536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl
2013-09-23 20:25 - 2009-03-08 04:34 - 01215488 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll
2013-09-23 20:25 - 2009-03-08 04:33 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll
2013-09-23 20:25 - 2009-03-08 04:33 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll
2013-09-23 20:25 - 2009-03-08 04:33 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll
2013-09-23 20:25 - 2009-03-08 04:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-09-23 20:25 - 2009-03-08 04:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2013-09-23 20:25 - 2009-03-08 04:32 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll
2013-09-23 20:25 - 2009-03-08 04:31 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll
2013-09-23 20:25 - 2009-03-08 04:31 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll
2013-09-23 20:25 - 2009-03-08 04:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 06017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-09-23 20:25 - 2004-08-18 14:00 - 01215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll
2013-09-23 20:06 - 2009-03-08 04:32 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe
2013-09-23 20:06 - 2004-08-18 14:00 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2013-09-23 20:06 - 2004-08-18 14:00 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
Some content of TEMP:
====================
C:\Documents and Settings\user\Local Settings\Temp\APNStub.exe
C:\Documents and Settings\user\Local Settings\Temp\GoogleChromeInstaller.exe
C:\Documents and Settings\user\Local Settings\Temp\jre-7u15-windows-i586-iftw.exe
C:\Documents and Settings\user\Local Settings\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2004-08-18 14:00] - [2008-04-14 05:22] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\Windows\System32\winlogon.exe
[2004-08-18 14:00] - [2008-04-14 05:22] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\Windows\System32\svchost.exe
[2004-08-18 14:00] - [2008-04-14 05:22] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\Windows\System32\services.exe
[2004-08-18 14:00] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\Windows\System32\User32.dll
[2004-08-18 14:00] - [2008-04-14 05:22] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\Windows\System32\userinit.exe
[2004-08-18 14:00] - [2008-04-14 05:22] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\Windows\System32\Drivers\volsnap.sys
[2004-08-18 14:00] - [2008-04-14 04:12] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:298.08 GB) (Free:264.15 GB) NTFS ==>[Drive with boot components (Windows XP)]
Available physical RAM: 1211.79 MB
Total physical RAM: 2009.74 MB
Percentage of memory in use: 39%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 298 GB) (Disk ID: 8380E919)
Partition 1: (Active) - (Size=298 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG AntiVirus 2013 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\user\Plocha" je 7266 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApnUpdater
"C:\Program Files\Ask.com\Updater\Updater.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP10_EnsureFileVer
C:\WINDOWS\inf\unregmp2.exe /EnsureFileVersions [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS
"C:\Program Files\Messenger\msmsgs.exe" /background [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe"="C:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\\Program Files\\Maxtor\\ManagerApp\\MaxUtilities.exe"="C:\\Program Files\\Maxtor\\ManagerApp\\MaxUtilities.exe:*:Enabled:Maxtor EasyManaget"
"C:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"="C:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe:*:Enabled:Google Earth"
"C:\\Program Files\\AVG\\AVG10\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG10\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"C:\\Program Files\\AVG\\AVG2013\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2013\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"C:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe"="C:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe:*:Enabled:Google Earth"
"C:\\Program Files\\AVG\\AVG2013\\avgnsx.exe"="C:\\Program Files\\AVG\\AVG2013\\avgnsx.exe:*:Enabled:Webov tt"
"C:\\Program Files\\AVG\\AVG2013\\avgdiagex.exe"="C:\\Program Files\\AVG\\AVG2013\\avgdiagex.exe:*:Enabled:AVG Diagnostika 2013"
"C:\\Program Files\\AVG\\AVG2013\\avgemcx.exe"="C:\\Program Files\\AVG\\AVG2013\\avgemcx.exe:*:Enabled:Obecn kontrola poty"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP"="139:TCP:*:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:*:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:*:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:*:Enabled:@xpsp2res.dll,-22002"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP"="139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
Po změně internetového providera mě na několika nezávisle PC vyskočila hláška ( Google detekoval podezřelé chování ve Vaší síti ... atd ) . Mám zažádáno o veřejnou IP ( což bz mohlo pomoct ) . Ale pro jistotu poprosím o kontrolu PC , děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-10-2013
Ran by user (administrator) on VERONIKA on 15-10-2013 09:32:23
Running from C:\Documents and Settings\user\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgwdsvc.exe
(CobianSoft, Luis Cobian) C:\Program Files\Cobian Backup 10\cbVSCService.exe
(Microsoft Corporation) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Intel Corporation) C:\WINDOWS\system32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgui.exe
(Luis Cobian, CobianSoft) C:\Program Files\Cobian Backup 10\Cobian.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Skype Technologies S.A.) C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Luis Cobian, CobianSoft) C:\Program Files\Cobian Backup 10\cbInterface.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Documents and Settings\user\Plocha\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDCPL] - C:\Windows\RTHDCPL.EXE [18077696 2008-12-23] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] - C:\Windows\ALCMTR.EXE [57344 2008-06-19] (Realtek Semiconductor Corp.)
HKLM\...\Run: [HotKeysCmds] - C:\WINDOWS\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM\...\Run: [AVG_UI] - C:\Program Files\AVG\AVG2013\avgui.exe [4411440 2013-08-15] (AVG Technologies CZ, s.r.o.)
HKLM\...\Runonce: [AvgUninstallURL] - cmd.exe /c start http://www.avg.cz/cz.special-uninstalla ... =10.0.1432
HKCU\...\Run: [Cobian Backup 10] - C:\Program Files\Cobian Backup 10\Cobian.exe [421376 2010-09-23] (Luis Cobian, CobianSoft)
HKCU\...\Run: [MSMSGS] - C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20684656 2013-07-25] (Skype Technologies S.A.)
MountPoints2: {275acad4-6989-11e0-be3b-00270e142348} - E:\Startme.exe
MountPoints2: {486be286-3ef5-11df-a9df-806d6172696f} - D:\EIVCD.exe
Startup: C:\Documents and Settings\user\Nabídka Start\Programy\Po spuštění\Internetagent Buma Update.lnk
ShortcutTarget: Internetagent Buma Update.lnk -> C:\LMPLUS\LMIAGENT.EXE ()
BootExecute: autocheck autochk * C:\PROGRA~1\AVG\AVG2013\avgrsx.exe /sync /restart
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKCU - {0e72e621-2088-4da3-b853-0a0d526f3125} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... Listicka_1
SearchScopes: HKCU - {2e424b4e-ff98-4f0b-8c69-d30b1f20d5cd} URL = http://search.seznam.cz/?q={searchTerms ... Listicka_1
SearchScopes: HKCU - {A2C458C2-B8C6-413A-B6E8-A938E1A55CE9} URL = http://websearch.ask.com/redirect?clien ... 8C391ABB9B
SearchScopes: HKCU - {d6ba370a-a9c9-4870-8a40-8163434c4edc} URL = http://www.firmy.cz/phr/{searchTerms}?s ... Listicka_1
SearchScopes: HKCU - {dbd8283b-b903-4d24-b455-2be84f9d94db} URL = http://www.mapy.cz/?query={searchTerms} ... Listicka_1
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: Lištička - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\listicka.dll ()
Toolbar: HKLM - Nástroje Lištičky - {1EA00BE1-6E54-4E2A-8099-680300BF23E1} - C:\Program Files\Seznam.cz\toolbar\toolbar.dll ()
Toolbar: HKCU -&Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU -&Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\Windows\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU -Nástroje Lištičky - {34AB3C4C-DA1A-4067-96F4-31452C7CFE65} - C:\Program Files\Seznam.cz\listicka.dll ()
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 0284431640
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.110
FireFox:
========
FF ProfilePath: C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\hqvifz2u.default
FF DefaultSearchEngine: Ask.com
FF SearchEngineOrder.1: Ask.com
FF SelectedSearchEngine: Ask.com
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\hqvifz2u.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\hqvifz2u.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF Extension: personas - C:\Documents and Settings\user\Data aplikací\Mozilla\Firefox\Profiles\hqvifz2u.default\Extensions\personas@christopher.beard.xpi
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR DefaultSearchURL: (Ask) - http://websearch.ask.com/redirect?clien ... earchTerms}
CHR DefaultSuggestURL: (Ask) - http://ss.websearch.ask.com/query?qsrc= ... earchTerms}
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\30.0.1599.69\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\30.0.1599.69\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\30.0.1599.69\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (AVG Internet Security) - C:\Documents and Settings\user\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll No File
CHR Plugin: (Skype Toolbars) - C:\Documents and Settings\user\Local Settings\Data aplikac\u00ED\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.8.0.8855_0\npSkypeChromePlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2003) - C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (YouTube) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Skype Click to Call) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.12.0.13601_0
CHR Extension: (Chrome In-App Payments service) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Gmail) - C:\DOCUME~1\user\LOCALS~1\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
========================== Services (Whitelisted) =================
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.)
R2 cbVSCService; C:\Program Files\Cobian Backup 10\cbVSCService.exe [67584 2010-09-23] (CobianSoft, Luis Cobian)
R2 Skype C2C Service; C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3273088 2013-09-16] (Skype Technologies S.A.)
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf"
==================== Drivers (Whitelisted) ====================
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [208184 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [60216 2013-07-20] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22328 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [171320 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [96568 2013-07-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [39224 2013-09-05] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [182072 2013-03-21] (AVG Technologies CZ, s.r.o.)
R3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2004-08-03] (Realtek Semiconductor Corporation)
S4 IntelIde; No ImagePath
U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U1 WS2IFSL;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-15 09:32 - 2013-10-15 09:32 - 00000000 ____D C:\FRST
2013-10-15 09:31 - 2013-10-15 09:30 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\user\Plocha\FRSTLauncher (1).exe
2013-10-15 09:31 - 2013-10-15 09:29 - 01087213 _____ (Farbar) C:\Documents and Settings\user\Plocha\FRST.exe
2013-10-09 17:10 - 2013-10-09 17:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$
2013-10-09 17:09 - 2013-10-09 17:10 - 00128947 _____ C:\WINDOWS\KB2862335.log
2013-10-09 17:09 - 2013-10-09 17:09 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$
2013-10-09 17:06 - 2013-10-09 17:06 - 00011458 _____ C:\WINDOWS\KB2868038.log
2013-10-09 17:06 - 2013-10-09 17:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$
2013-10-09 17:05 - 2013-10-09 17:05 - 00012453 _____ C:\WINDOWS\KB2879017-IE8.log
2013-10-09 17:05 - 2013-10-09 17:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$
2013-10-09 17:05 - 2013-10-09 17:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$
2013-10-09 09:22 - 2013-10-09 17:10 - 00132859 _____ C:\WINDOWS\KB2847311.log
2013-10-09 09:22 - 2013-07-17 02:58 - 00123008 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbvideo.sys
2013-10-09 09:22 - 2013-07-17 02:58 - 00060160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbaudio.sys
2013-10-09 09:22 - 2013-07-17 02:58 - 00046848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irbus.sys
2013-10-09 09:22 - 2013-07-03 04:12 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidparse.sys
2013-10-09 09:22 - 2013-07-03 03:59 - 00014976 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbscan.sys
2013-10-09 09:21 - 2013-08-09 02:55 - 00144128 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbport.sys
2013-10-09 09:21 - 2013-08-09 02:55 - 00005376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbd.sys
2013-10-09 09:21 - 2009-03-18 13:02 - 00030336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbehci.sys
2013-10-05 11:11 - 2013-10-08 11:07 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-09-30 13:16 - 2008-04-14 05:21 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpusd.dll
2013-09-30 13:16 - 2001-10-24 12:25 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ptpusb.dll
2013-09-27 11:07 - 2013-09-27 11:09 - 00000000 ____D C:\Documents and Settings\user\Plocha\nabídka p. Obolecký
==================== One Month Modified Files and Folders =======
2013-10-15 09:32 - 2013-10-15 09:32 - 00000000 ____D C:\FRST
2013-10-15 09:31 - 2010-04-03 15:45 - 00000000 ___HD C:\Documents and Settings\user\Local Settings\Data aplikací
2013-10-15 09:31 - 2010-04-03 15:45 - 00000000 ____D C:\Documents and Settings\user\Plocha
2013-10-15 09:30 - 2013-10-15 09:31 - 00112128 _____ (forum.viry.cz) C:\Documents and Settings\user\Plocha\FRSTLauncher (1).exe
2013-10-15 09:29 - 2013-10-15 09:31 - 01087213 _____ (Farbar) C:\Documents and Settings\user\Plocha\FRST.exe
2013-10-15 09:29 - 2010-04-03 15:45 - 00000000 ___RD C:\Documents and Settings\user\Dokumenty
2013-10-15 09:24 - 2012-07-04 08:59 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-10-15 09:15 - 2010-04-03 10:23 - 00000000 ____D C:\Documents and Settings\user\Data aplikací\Skype
2013-10-15 09:08 - 2011-03-03 09:58 - 00000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-15 09:06 - 2011-07-30 09:37 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\MFAData
2013-10-15 09:05 - 2010-04-03 15:42 - 01561192 _____ C:\WINDOWS\WindowsUpdate.log
2013-10-15 09:02 - 2011-11-08 10:42 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2013-10-15 09:01 - 2011-03-03 09:58 - 00000932 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-15 09:01 - 2010-04-03 17:38 - 00000159 _____ C:\WINDOWS\wiadebug.log
2013-10-15 09:01 - 2010-04-03 17:38 - 00000050 _____ C:\WINDOWS\wiaservc.log
2013-10-15 09:01 - 2004-08-18 14:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl
2013-10-15 09:00 - 2010-04-03 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-10-14 18:02 - 2010-04-03 15:45 - 00032520 _____ C:\WINDOWS\SchedLgU.Txt
2013-10-14 18:01 - 2010-04-03 15:45 - 00000272 ___SH C:\Documents and Settings\user\ntuser.ini
2013-10-14 14:51 - 2010-04-13 13:06 - 00000000 ____D C:\Documents and Settings\user\Local Settings\Data aplikací\CutePDF Writer
2013-10-14 13:38 - 2010-04-03 10:16 - 00002561 _____ C:\Documents and Settings\user\Plocha\Microsoft Office Word 2003.lnk
2013-10-14 10:58 - 2012-07-30 11:37 - 00000000 ____D C:\Documents and Settings\user\Dokumenty\Stažené soubory
2013-10-14 10:21 - 2012-10-13 10:41 - 00000000 ____D C:\Documents and Settings\user\irisplus-updates
2013-10-14 10:20 - 2012-10-13 10:40 - 00000000 ____D C:\Documents and Settings\user\irisplus-resources
2013-10-14 09:18 - 2010-07-28 10:04 - 00000012 _____ C:\Documents and Settings\user\intlname.ols
2013-10-10 18:00 - 2012-02-20 11:01 - 00065536 _____ C:\WINDOWS\system32\config\Cobian B.evt
2013-10-10 17:20 - 2013-07-15 15:33 - 00587264 _____ C:\Documents and Settings\user\Plocha\POJIŠTĚNÍ ŠABLONA.xls
2013-10-10 10:00 - 2010-04-03 17:31 - 00000000 ____D C:\WINDOWS\repair
2013-10-10 09:00 - 2010-04-03 15:41 - 00000000 ____D C:\WINDOWS\Registration
2013-10-10 08:58 - 2011-12-16 18:46 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-10 08:58 - 2010-04-03 17:36 - 00139648 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-10-09 17:12 - 2010-04-03 17:37 - 00988376 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-10-09 17:10 - 2013-10-09 17:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$
2013-10-09 17:10 - 2013-10-09 17:09 - 00128947 _____ C:\WINDOWS\KB2862335.log
2013-10-09 17:10 - 2013-10-09 09:22 - 00132859 _____ C:\WINDOWS\KB2847311.log
2013-10-09 17:10 - 2013-05-15 18:07 - 00018393 _____ C:\WINDOWS\updspapi.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00179633 _____ C:\WINDOWS\iis6.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00076167 _____ C:\WINDOWS\tsoc.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00054918 _____ C:\WINDOWS\comsetup.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00051966 _____ C:\WINDOWS\msmqinst.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00033296 _____ C:\WINDOWS\ntdtcsetup.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00029241 _____ C:\WINDOWS\netfxocm.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00011475 _____ C:\WINDOWS\MedCtrOC.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00010422 _____ C:\WINDOWS\ocmsn.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00008397 _____ C:\WINDOWS\tabletoc.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00008343 _____ C:\WINDOWS\msgsocm.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00001374 _____ C:\WINDOWS\imsins.log
2013-10-09 17:10 - 2013-05-15 18:06 - 00001374 _____ C:\WINDOWS\imsins.BAK
2013-10-09 17:10 - 2013-05-15 18:05 - 00166931 _____ C:\WINDOWS\FaxSetup.log
2013-10-09 17:10 - 2013-05-15 18:05 - 00079812 _____ C:\WINDOWS\ocgen.log
2013-10-09 17:09 - 2013-10-09 17:09 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$
2013-10-09 17:09 - 2013-08-14 18:07 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-10-09 17:09 - 2013-07-24 09:22 - 00040186 _____ C:\WINDOWS\setupapi.log
2013-10-09 17:07 - 2011-12-16 18:46 - 00000000 ____D C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Silverlight
2013-10-09 17:07 - 2010-04-03 11:36 - 78106760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-10-09 17:06 - 2013-10-09 17:06 - 00011458 _____ C:\WINDOWS\KB2868038.log
2013-10-09 17:06 - 2013-10-09 17:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$
2013-10-09 17:05 - 2013-10-09 17:05 - 00012453 _____ C:\WINDOWS\KB2879017-IE8.log
2013-10-09 17:05 - 2013-10-09 17:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$
2013-10-09 17:05 - 2013-10-09 17:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$
2013-10-09 17:05 - 2010-04-03 11:37 - 00000000 ____D C:\WINDOWS\ie8updates
2013-10-09 14:24 - 2012-07-04 08:59 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-10-09 14:24 - 2011-07-30 09:32 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-10-09 09:08 - 2012-07-30 11:40 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-10-08 14:14 - 2011-03-03 10:00 - 00001813 _____ C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2013-10-08 11:07 - 2013-10-05 11:11 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-10-05 08:57 - 2010-07-07 13:16 - 00216576 _____ C:\Documents and Settings\user\Plocha\seznam agentur.xls
2013-09-30 11:10 - 2010-04-03 10:09 - 00000000 ____D C:\Documents and Settings\user\Dokumenty\Země světa
2013-09-27 15:41 - 2010-04-03 15:45 - 00000000 ___HD C:\Documents and Settings\user\Okolní síť
2013-09-27 11:09 - 2013-09-27 11:07 - 00000000 ____D C:\Documents and Settings\user\Plocha\nabídka p. Obolecký
2013-09-27 09:00 - 2011-06-02 16:11 - 00000000 ___RD C:\Program Files\Skype
2013-09-27 09:00 - 2010-04-03 10:11 - 00000000 ____D C:\Documents and Settings\All Users\Data aplikací\Skype
2013-09-26 15:52 - 2010-04-03 10:09 - 00000000 ____D C:\Documents and Settings\user\Dokumenty\Česká pojišťovna
2013-09-26 10:57 - 2011-02-18 14:11 - 00000000 ____D C:\Documents and Settings\user\Plocha\Eva
2013-09-25 16:21 - 2010-04-03 15:45 - 00000000 ___RD C:\Documents and Settings\user\Dokumenty\Obrázky
2013-09-25 16:12 - 2012-11-27 12:29 - 00000000 ____D C:\Documents and Settings\user\Dokumenty\Inforeise Eva
2013-09-23 23:55 - 2010-04-03 11:38 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll
2013-09-23 23:55 - 2009-03-08 04:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-09-23 20:25 - 2012-06-13 08:51 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll
2013-09-23 20:25 - 2010-06-11 11:21 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll
2013-09-23 20:25 - 2010-04-03 11:38 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll
2013-09-23 20:25 - 2009-03-08 14:09 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll
2013-09-23 20:25 - 2009-03-08 04:41 - 06017536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl
2013-09-23 20:25 - 2009-03-08 04:34 - 01215488 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll
2013-09-23 20:25 - 2009-03-08 04:34 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll
2013-09-23 20:25 - 2009-03-08 04:33 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll
2013-09-23 20:25 - 2009-03-08 04:33 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll
2013-09-23 20:25 - 2009-03-08 04:33 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll
2013-09-23 20:25 - 2009-03-08 04:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-09-23 20:25 - 2009-03-08 04:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2013-09-23 20:25 - 2009-03-08 04:32 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll
2013-09-23 20:25 - 2009-03-08 04:31 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll
2013-09-23 20:25 - 2009-03-08 04:31 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll
2013-09-23 20:25 - 2009-03-08 04:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 06017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-09-23 20:25 - 2004-08-18 14:00 - 01215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2013-09-23 20:25 - 2004-08-18 14:00 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll
2013-09-23 20:06 - 2009-03-08 04:32 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe
2013-09-23 20:06 - 2004-08-18 14:00 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2013-09-23 20:06 - 2004-08-18 14:00 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
Some content of TEMP:
====================
C:\Documents and Settings\user\Local Settings\Temp\APNStub.exe
C:\Documents and Settings\user\Local Settings\Temp\GoogleChromeInstaller.exe
C:\Documents and Settings\user\Local Settings\Temp\jre-7u15-windows-i586-iftw.exe
C:\Documents and Settings\user\Local Settings\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2004-08-18 14:00] - [2008-04-14 05:22] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\Windows\System32\winlogon.exe
[2004-08-18 14:00] - [2008-04-14 05:22] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\Windows\System32\svchost.exe
[2004-08-18 14:00] - [2008-04-14 05:22] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\Windows\System32\services.exe
[2004-08-18 14:00] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\Windows\System32\User32.dll
[2004-08-18 14:00] - [2008-04-14 05:22] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\Windows\System32\userinit.exe
[2004-08-18 14:00] - [2008-04-14 05:22] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\Windows\System32\Drivers\volsnap.sys
[2004-08-18 14:00] - [2008-04-14 04:12] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:298.08 GB) (Free:264.15 GB) NTFS ==>[Drive with boot components (Windows XP)]
Available physical RAM: 1211.79 MB
Total physical RAM: 2009.74 MB
Percentage of memory in use: 39%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 298 GB) (Disk ID: 8380E919)
Partition 1: (Active) - (Size=298 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG AntiVirus 2013 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\user\Plocha" je 7266 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApnUpdater
"C:\Program Files\Ask.com\Updater\Updater.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP10_EnsureFileVer
C:\WINDOWS\inf\unregmp2.exe /EnsureFileVersions [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS
"C:\Program Files\Messenger\msmsgs.exe" /background [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe"="C:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\\Program Files\\Maxtor\\ManagerApp\\MaxUtilities.exe"="C:\\Program Files\\Maxtor\\ManagerApp\\MaxUtilities.exe:*:Enabled:Maxtor EasyManaget"
"C:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"="C:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe:*:Enabled:Google Earth"
"C:\\Program Files\\AVG\\AVG10\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG10\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"C:\\Program Files\\AVG\\AVG2013\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2013\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"C:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe"="C:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe:*:Enabled:Google Earth"
"C:\\Program Files\\AVG\\AVG2013\\avgnsx.exe"="C:\\Program Files\\AVG\\AVG2013\\avgnsx.exe:*:Enabled:Webov tt"
"C:\\Program Files\\AVG\\AVG2013\\avgdiagex.exe"="C:\\Program Files\\AVG\\AVG2013\\avgdiagex.exe:*:Enabled:AVG Diagnostika 2013"
"C:\\Program Files\\AVG\\AVG2013\\avgemcx.exe"="C:\\Program Files\\AVG\\AVG2013\\avgemcx.exe:*:Enabled:Obecn kontrola poty"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP"="139:TCP:*:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:*:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:*:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:*:Enabled:@xpsp2res.dll,-22002"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP"="139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================