Stránka 1 z 1

Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 16:38
od pepaa
Zdravím, mám problém, když zadám www.google.cz, tak mi to napíše, že ke skutečným stránkám se nelze připojit a je tam nějaký zámeček s přeškrtlé https...
zde přikládám log z RSIT:

Logfile of random's system information tool 1.09 (written by random/random)
Run by Sáňa at 2014-01-05 16:31:09
WIN_XP Service Pack 3
System drive C: has 41 GB (27%) free of 153 GB
Total RAM: 1015 MB (11% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:31:52, on 5.1.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.21364)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Roxio\BackOnTrack\Instant Restore\BOTService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
c:\program files\idt\wdm\STacSV.exe
C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\AESTFltr.exe
C:\Program Files\HP\HPBTWD.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\syncables\syncables desktop\Syncables.exe
C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\syncables\syncables desktop\jre\bin\javaw.exe
C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe
C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Samsung\Kies\Kies.exe
C:\Program Files\syncables\syncables desktop\MigoMapi.exe
C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\WebcamMax\wcmmon.exe
C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Update\1.3.22.3\GoogleCrashHandler.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Sáňa\Plocha\RSIT.exe
C:\Program Files\trend micro\Sáňa.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Microsoft Live Search Toolbar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Microsoft Live Search Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [AESTFltr] %SystemRoot%\system32\AESTFltr.exe /NoDlg
O4 - HKLM\..\Run: [HP BTW Detect Program] C:\Program Files\HP\HPBTWD.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Syncables] C:\Program Files\syncables\syncables desktop\Syncables.exe
O4 - HKLM\..\Run: [Microsoft Default Manager] "c:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe /preload
O4 - HKCU\..\Run: [] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe Run
O4 - HKCU\..\Run: [Facebook Update] "C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Google+ Auto Backup] "C:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [WebcamMaxAutoRun] "C:\Program Files\WebcamMax\wcmmon.exe" -a
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\S-1-5-21-541139503-1732111387-2156511478-1006\..\Run: [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe /preload (User '?')
O4 - HKUS\S-1-5-21-541139503-1732111387-2156511478-1006\..\Run: [Google+ Auto Backup] "C:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart (User '?')
O4 - HKUS\S-1-5-21-541139503-1732111387-2156511478-1006\..\Run: [Google Update] "C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User '?')
O4 - HKUS\S-1-5-21-541139503-1732111387-2156511478-1006\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun (User '?')
O4 - HKUS\S-1-5-21-541139503-1732111387-2156511478-1006\..\Run: [WebcamMaxAutoRun] "C:\Program Files\WebcamMax\wcmmon.exe" -a (User '?')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send To Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe (file missing)
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Roxio SAIB Service (9734BF6A-2DCD-40f0-BAB0-5AAFEEBE1269) - Unknown owner - C:\Program Files\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BOTService - Sonic Solutions - C:\Program Files\Roxio\BackOnTrack\Instant Restore\BOTService.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - c:\program files\idt\wdm\STacSV.exe

--
End of file - 12300 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\BackOnTrack Instant Restore Idle.job
C:\WINDOWS\tasks\DriverDoc_UPDATES.job
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-541139503-1732111387-2156511478-1006Core.job
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-541139503-1732111387-2156511478-1006UA.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-541139503-1732111387-2156511478-1006Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-541139503-1732111387-2156511478-1006UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-18 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-03 1143168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-10-09 4502400]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Microsoft Live Search Toolbar Helper - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll [2009-03-25 82784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-18 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - Microsoft Live Search Toolbar - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll [2009-03-25 82784]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-03 1143168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2008-02-15 135168]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2008-02-15 159744]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2008-02-15 131072]
"AESTFltr"=C:\WINDOWS\system32\AESTFltr.exe [2009-02-18 737280]
"HP BTW Detect Program"=C:\Program Files\HP\HPBTWD.exe [2009-03-30 319488]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-01-16 1418536]
"Syncables"=C:\Program Files\syncables\syncables desktop\Syncables.exe [2009-04-02 173360]
"Microsoft Default Manager"=c:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [2009-02-06 224616]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2008-04-15 488752]
"KiesTrayAgent"=C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2013-12-11 311152]
"ApnTBMon"=C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2014-01-11 1778640]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2011-09-27 59240]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2011-10-24 421888]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11 958576]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-03 3767096]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"KiesPreload"=C:\Program Files\Samsung\Kies\Kies.exe [2013-12-11 1564528]
""=C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2013-12-11 845168]
"Facebook Update"=C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe [2013-12-15 138096]
"Google+ Auto Backup"=C:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe [2013-12-23 3622864]
"Google Update"=C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2014-01-15 116648]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2013-11-14 20584608]
"WebcamMaxAutoRun"=C:\Program Files\WebcamMax\wcmmon.exe [2011-07-17 1038848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccleaner]
C:\Program Files\CCleaner\CCleaner.exe [2011-05-25 2301752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MDS_Menu]
C:\Program Files\Olympus\ib\MUITransfer\MUIStartMenu.exe C:\Program Files\Olympus\ib UpdateWithCreateOnce Software\OLYMPUS\ib\1.0 []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Olympus ib]
C:\Program Files\Olympus\ib\olycamdetect.exe /Startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2013-11-14 20584608]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion]
C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe /Background []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp]
C:\Program Files\IDT\WDM\sttray.exe [2009-03-30 483428]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~3\Office10\OSA.EXE [2001-02-13 83360]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2008-02-15 208896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-19 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-15 239616]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\syncables\syncables desktop\jre\bin\javaw.exe"="C:\Program Files\syncables\syncables desktop\jre\bin\javaw.exe:*:Disabled:Java(TM) Platform SE binary"
"C:\Documents and Settings\Sáňa\Dokumenty\Stažené soubory\IMAGE53892731.JPG-www.facebook.exe"="c:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe"="C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe:*:Enabled:Update Engine"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll
"VIDC.FMVC"=fmcodec.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 1 month======

2014-01-22 07:58:02 ----D---- C:\Documents and Settings\Sáňa\Data aplikací\WebcamMax
2014-01-22 07:58:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\WebcamMax
2014-01-22 07:56:42 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2014-01-22 07:56:33 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2014-01-22 07:55:20 ----D---- C:\Program Files\WebcamMax
2014-01-22 06:19:48 ----D---- C:\Program Files\Common Files\Skype
2014-01-20 02:42:05 ----D---- C:\Documents and Settings\Sáňa\Data aplikací\Dropbox
2014-01-19 23:46:53 ----A---- C:\WINDOWS\system32\javaws.exe
2014-01-19 23:46:24 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-01-19 23:46:24 ----A---- C:\WINDOWS\system32\javaw.exe
2014-01-19 23:46:24 ----A---- C:\WINDOWS\system32\java.exe
2014-01-15 21:52:19 ----D---- C:\Program Files\GUM1E.tmp
2014-01-15 04:13:04 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2014-01-07 19:48:17 ----D---- C:\Program Files\Common Files\Adobe
2014-01-07 19:48:17 ----D---- C:\Program Files\Adobe
2014-01-05 16:31:12 ----D---- C:\Program Files\trend micro
2014-01-05 16:31:09 ----D---- C:\rsit
2014-01-03 11:05:56 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2014-01-03 11:05:56 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2014-01-03 11:05:55 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2014-01-03 11:05:55 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2014-01-03 11:05:54 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2014-01-03 11:05:54 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2014-01-03 11:05:54 ----A---- C:\WINDOWS\system32\drivers\aswmonflt.sys
2014-01-03 11:04:55 ----A---- C:\WINDOWS\avastSS.scr
2014-01-03 11:02:58 ----D---- C:\Program Files\AVAST Software
2013-12-27 04:27:49 ----D---- C:\Program Files\VirtualDJ
2013-12-27 04:15:25 ----D---- C:\Documents and Settings\Sáňa\Data aplikací\Apple Computer
2013-12-27 03:46:56 ----D---- C:\Documents and Settings\Sáňa\Data aplikací\avidemux
2013-12-26 23:32:30 ----D---- C:\Program Files\QuickTime
2013-12-26 23:32:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2013-12-26 23:31:35 ----D---- C:\Program Files\Common Files\Apple
2013-12-26 23:31:03 ----D---- C:\Program Files\Apple Software Update
2013-12-26 23:31:03 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple
2013-12-26 04:43:17 ----D---- C:\WINDOWS\system32\NtmsData
2013-12-26 04:29:17 ----A---- C:\WINDOWS\AviSplitter.INI
2013-12-26 00:06:39 ----D---- C:\Documents and Settings\Sáňa\Data aplikací\Mediatronic
2013-12-23 20:32:50 ----A---- C:\WINDOWS\system32\GPhotos.scr
2013-12-23 18:42:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Optimizer Pro
2013-12-23 18:13:00 ----D---- C:\Program Files (x86)
2013-12-23 18:12:53 ----D---- C:\Program Files\MyPC Backup
2013-12-23 18:12:49 ----D---- C:\Program Files\PC Optimizer Pro
2013-12-23 13:00:06 ----D---- C:\FFOutput
2013-12-23 12:59:45 ----A---- C:\Documents and Settings\All Users\Data aplikací\spds90.txt
2013-12-23 12:59:30 ----D---- C:\Program Files\SpeedItup Free
2013-12-23 12:56:29 ----D---- C:\Program Files\FreeTime
2013-12-22 06:21:34 ----D---- C:\Program Files\HP RecordNow
2013-12-22 06:21:02 ----D---- C:\HP_USB_CD-RW_drivers
2013-12-21 19:53:38 ----D---- C:\WINDOWS\Minidump
2013-12-15 20:08:52 ----D---- C:\Program Files\MarkAny
2013-12-14 12:20:05 ----D---- C:\Documents and Settings\Sáňa\Data aplikací\vlc
2013-12-14 12:17:07 ----D---- C:\Program Files\VideoLAN
2013-12-14 12:14:48 ----D---- C:\Program Files\AskPartnerNetwork
2013-12-14 12:14:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
2013-12-14 12:14:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\APN
2013-12-12 21:52:05 ----D---- C:\Program Files\DsNET Corp
2013-12-12 21:28:36 ----D---- C:\Documents and Settings\Sáňa\Data aplikací\AVAST Software
2013-12-12 20:47:36 ----A---- C:\WINDOWS\system32\drivers\aswFW.sys
2013-12-12 20:37:17 ----A---- C:\WINDOWS\system32\tzchange.exe

======List of files/folders modified in the last 1 month======

2014-02-28 09:29:48 ----SHD---- C:\System Volume Information
2014-02-28 09:29:30 ----D---- C:\WINDOWS\Registration
2014-01-22 09:36:21 ----HD---- C:\WINDOWS\inf
2014-01-22 07:56:49 ----RSHD---- C:\WINDOWS\system32\dllcache
2014-01-22 07:56:44 ----D---- C:\WINDOWS\system32
2014-01-22 06:20:56 ----SHD---- C:\Config.Msi
2014-01-22 06:20:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2014-01-22 06:19:49 ----RD---- C:\Program Files\Skype
2014-01-22 06:19:48 ----D---- C:\Program Files\Common Files
2014-01-19 23:46:24 ----D---- C:\Program Files\Java
2014-01-15 05:35:14 ----D---- C:\WINDOWS\system32\MRT
2014-01-15 05:30:05 ----A---- C:\WINDOWS\system32\MRT.exe
2014-01-13 05:52:59 ----D---- C:\WINDOWS\system32\LogFiles
2014-01-07 19:48:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2014-01-05 16:31:12 ----RD---- C:\Program Files
2014-01-05 16:31:11 ----D---- C:\WINDOWS\Prefetch
2014-01-05 15:12:31 ----D---- C:\WINDOWS
2014-01-05 15:12:30 ----D---- C:\WINDOWS\temp
2014-01-05 15:12:29 ----D---- C:\Documents and Settings\Sáňa\Data aplikací\Skype
2014-01-05 15:11:04 ----D---- C:\WINDOWS\system32\drivers
2014-01-05 15:10:15 ----SD---- C:\WINDOWS\Tasks
2014-01-05 13:17:02 ----N---- C:\WINDOWS\SchedLgU.Txt
2014-01-03 11:04:55 ----A---- C:\WINDOWS\system32\aswBoot.exe
2014-01-03 11:01:40 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2014-01-03 10:45:05 ----SHD---- C:\WINDOWS\Installer
2014-01-03 10:40:59 ----D---- C:\Program Files\Google
2014-01-03 10:09:10 ----D---- C:\WINDOWS\Debug
2014-01-02 23:21:30 ----D---- C:\WINDOWS\system32\CatRoot2
2013-12-27 04:27:52 ----RSD---- C:\WINDOWS\Fonts
2013-12-26 23:34:00 ----D---- C:\Program Files\Internet Explorer
2013-12-26 23:31:50 ----D---- C:\WINDOWS\WinSxS
2013-12-26 04:43:16 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2013-12-26 04:34:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sony Ericsson
2013-12-26 04:34:46 ----D---- C:\Program Files\Sony Ericsson
2013-12-22 06:48:33 ----SD---- C:\Documents and Settings\Sáňa\Data aplikací\Microsoft
2013-12-15 15:31:00 ----D---- C:\Documents and Settings\Sáňa\Data aplikací\Samsung
2013-12-12 21:11:58 ----D---- C:\WINDOWS\system32\cs-cz
2013-12-12 21:11:24 ----D---- C:\WINDOWS\ie7updates
2013-12-11 09:39:52 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-01-03 49944]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-01-03 180248]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-15 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2008-06-16 44944]
R0 SahdIa32;HDD Filter Driver; C:\WINDOWS\System32\Drivers\SahdIa32.sys [2008-12-11 21488]
R0 SaibIa32;Volume Filter Driver; C:\WINDOWS\System32\Drivers\SaibIa32.sys [2008-12-11 15856]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-09-23 721904]
R0 SysCow;SysCow; C:\WINDOWS\system32\drivers\syscow32x.sys [2008-09-24 103792]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-29 77568]
R1 aswRdr;aswRdr; \??\C:\WINDOWS\system32\drivers\aswRdr.sys []
R1 aswSnx;aswSnx; \??\C:\WINDOWS\system32\drivers\aswSnx.sys []
R1 aswSP;aswSP; \??\C:\WINDOWS\system32\drivers\aswSP.sys []
R1 aswTdi;aswTdi; \??\C:\WINDOWS\system32\drivers\aswTdi.sys []
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-15 40192]
R1 SaibVd32;Virtual Disk Driver; C:\WINDOWS\System32\Drivers\SaibVd32.sys [2008-12-11 25584]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R2 WCMVCAM;WebcamMax, WDM Video Capture; C:\WINDOWS\system32\DRIVERS\wcmvcam.sys [2012-04-15 1068216]
R3 AESTAud;AE Audio Service; C:\WINDOWS\system32\drivers\AESTAud.sys [2009-03-19 113664]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2009-05-10 1735040]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-15 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 huawei_enumerator;huawei_enumerator; C:\WINDOWS\system32\DRIVERS\ew_jubusenum.sys [2012-09-06 76544]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2008-02-15 5854752]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 STHDA;IDT High Definition Audio CODEC; C:\WINDOWS\system32\drivers\sthda.sys [2009-03-30 1550891]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-01-16 206512]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-07-17 123008]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 a27yz4nr;a27yz4nr; C:\WINDOWS\system32\drivers\a27yz4nr.sys []
S3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-15 60800]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2008-07-25 47272]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys []
S3 dgderdrv;dgderdrv; C:\WINDOWS\System32\drivers\dgderdrv.sys [2013-10-30 20032]
S3 ggflt;SEMC USB Flash Driver Filter; C:\WINDOWS\system32\DRIVERS\ggflt.sys [2012-12-26 12400]
S3 ggsemc;SEMC USB Flash Driver; C:\WINDOWS\system32\DRIVERS\ggsemc.sys [2012-12-26 25200]
S3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader; C:\WINDOWS\system32\DRIVERS\ewdcsc.sys []
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys []
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\WINDOWS\system32\DRIVERS\ewusbdev.sys []
S3 L1c;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller; C:\WINDOWS\system32\DRIVERS\l1c51x86.sys [2009-03-02 38912]
S3 massfilter;MBB Mass Storage Filter Driver; C:\WINDOWS\system32\drivers\massfilter.sys [2009-01-17 7680]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-15 61824]
S3 PCASp50;PCASp50 NDIS Protocol Driver; C:\WINDOWS\System32\Drivers\PCASp50.sys []
S3 RSUSBSTOR;RTS5121.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RTS5121.sys [2008-11-22 160256]
S3 Rts516xIR;Realtek IR Driver; C:\WINDOWS\system32\DRIVERS\Rts516xIR.sys []
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-15 79232]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2013-07-17 60160]
S3 USBCCID;Realtek Smartcard Reader Driver; C:\WINDOWS\system32\DRIVERS\Rts5161ccid.sys []
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-19 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-29 82944]
S3 ZTEusbmdm6k;ZTE Proprietary USB Driver; C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys [2012-09-06 107392]
S3 ZTEusbnmea;ZTE NMEA Port; C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys [2012-09-06 107392]
S3 ZTEusbser6k;ZTE Diagnostic Port; C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys [2012-09-06 107392]
S4 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-14 42368]
S4 agpCPQ;Filtr Compaq sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-14 44928]
S4 alim1541;Filtr ALI sběrnice AGP; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-14 42752]
S4 amdagp;Ovladač filtru AMD portu AGP; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-14 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-18 13952]
S4 iaStor;Intel AHCI Controller; C:\WINDOWS\system32\drivers\iaStor.sys [2008-09-13 327192]
S4 sisagp;Filtr SIS sběrnice AGP ; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-14 40960]
S4 viaagp;Filtr VIA sběrnice AGP ; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-14 42240]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 9734BF6A-2DCD-40f0-BAB0-5AAFEEBE1269;Roxio SAIB Service; C:\Program Files\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe [2008-12-11 125424]
R2 APNMCP;Ask Update Service; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [2014-01-11 166352]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-03 50344]
R2 BOTService;BOTService; C:\Program Files\Roxio\BackOnTrack\Instant Restore\BOTService.exe [2009-03-19 203248]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-07-07 346720]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-12-18 182696]
R2 Skype C2C Service;Skype C2C Service; C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
R2 STacSV;Audio Service; c:\program files\idt\wdm\STacSV.exe [2009-03-30 254042]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-15 14336]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-04-16 165192]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-15 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-15 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120]
S3 IDriverT;InstallDriver Table Manager; c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 LPDSVC;Tiskový server TCP/IP; C:\WINDOWS\system32\tcpsvcs.exe [2008-04-15 19456]
S3 usnjsvc;Služba Čtení deníku USN sdílených složek programu Messenger; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-06 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 16:58
od vyosek
Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
  • Ukoncete vsechny programy
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pockejte na dokonceni PreScanu
  • Zvolte moznost Prohledat (scan)
  • Po dokonceni skenu kliknete na Zpráva (Report)- otevre se log, ten sem vlozte
  • Detailni postup vc. obrazku mate zde http://forum.viry.cz/viewtopic.php?f=24&t=120452

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 19:51
od pepaa
zde log z RogueKiller: RogueKiller V8.8.5 [Feb 3 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : hxxp://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Sáňa [Práva správce]
Mód : Kontrola -- Datum : 01/05/2014 19:47:54
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowRecentDocs (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 4 ¤¤¤
[Administrator][Rans.Gendarm] msconfig.lnk : C:\Documents and Settings\Administrator\Nabídka Start\Programy\Po spuštění\msconfig.lnk [-] -> NALEZENO
[Administrator.PC192104165233.000][Rans.Gendarm] msconfig.lnk : C:\Documents and Settings\Administrator.PC192104165233.000\Nabídka Start\Programy\Po spuštění\msconfig.lnk [-] -> NALEZENO
[Administrator.PC192104165233.001][Rans.Gendarm] msconfig.lnk : C:\Documents and Settings\Administrator.PC192104165233.001\Nabídka Start\Programy\Po spuštění\msconfig.lnk [-] -> NALEZENO
[All Users][SUSP UNIC] Bluetooth.lnk : C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Bluetooth.lnk [-] -> NALEZENO

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : Rans.Gendarm ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ( @ ) +++++
--- User ---
[MBR] d2c82ccbdf60745d34173bf45080366f
[BSP] 0c270ebad626c04fc12d251bd1411199 : Windows Vista MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 152616 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_01052014_194754.txt >>

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 20:06
od pepaa
zde druhý
# AdwCleaner v3.018 - Report created 05/01/2014 at 19:53:51
# Updated 28/01/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Sáňa - PC192104165233
# Running from : C:\Documents and Settings\Sáňa\Plocha\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : APNMCP

***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\apn
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\PC Optimizer Pro
Folder Deleted : C:\Documents and Settings\All Users\Nabídka Start\Programy\myfree codec
Folder Deleted : C:\Program Files\AskPartnerNetwork
Folder Deleted : C:\Program Files\DAEMON Tools Toolbar
Folder Deleted : C:\Program Files\ICQ6Toolbar
Folder Deleted : C:\Program Files\myfree codec
Folder Deleted : C:\Program Files\MyPC Backup
Folder Deleted : C:\Program Files\PC Optimizer Pro
Folder Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\Conduit
Folder Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\ICQToolbarData
Folder Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\CT1750559
Folder Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}
Folder Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\Extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
File Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\searchplugins\Conduit.xml
File Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\searchplugins\daemon-search.xml
File Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\searchplugins\icqplugin.xml
File Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\searchplugins\icqplugin-2.xml
File Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\searchplugins\icqplugin-3.xml
File Deleted : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\searchplugins\icqplugin-4.xml

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4FC7-90CC-5EA0ABBE9EB8}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKCU\Software\pc optimizer pro
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKLM\Software\AskPartnerNetwork
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\ICQ\ICQToolbar
Key Deleted : HKLM\Software\Myfree Codec
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyFreeCodec
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}

***** [ Browsers ] *****

-\\ Internet Explorer v7.0.6000.21364

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]

-\\ Mozilla Firefox v

[ File : C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\prefs.js ]

Line Deleted : user_pref("CT1750559..clientLogIsEnabled", true);
Line Deleted : user_pref("CT1750559..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Line Deleted : user_pref("CT1750559..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Line Deleted : user_pref("CT1750559.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Line Deleted : user_pref("CT1750559.CTID", "CT1750559");
Line Deleted : user_pref("CT1750559.CurrentServerDate", "15-6-2011");
Line Deleted : user_pref("CT1750559.DialogsAlignMode", "LTR");
Line Deleted : user_pref("CT1750559.DownloadReferralCookieData", "");
Line Deleted : user_pref("CT1750559.FirstServerDate", "15-6-2011");
Line Deleted : user_pref("CT1750559.FirstTime", true);
Line Deleted : user_pref("CT1750559.FirstTimeFF3", true);
Line Deleted : user_pref("CT1750559.FixPageNotFoundErrors", true);
Line Deleted : user_pref("CT1750559.GroupingServerCheckInterval", 1440);
Line Deleted : user_pref("CT1750559.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Line Deleted : user_pref("CT1750559.HasUserGlobalKeys", true);
Line Deleted : user_pref("CT1750559.Initialize", true);
Line Deleted : user_pref("CT1750559.InitializeCommonPrefs", true);
Line Deleted : user_pref("CT1750559.InstallationAndCookieDataSentCount", 1);
Line Deleted : user_pref("CT1750559.InstallationType", "UnknownIntegration");
Line Deleted : user_pref("CT1750559.InstalledDate", "Wed Jun 15 2011 16:39:44 GMT+0200");
Line Deleted : user_pref("CT1750559.InvalidateCache", false);
Line Deleted : user_pref("CT1750559.IsGrouping", false);
Line Deleted : user_pref("CT1750559.IsMulticommunity", false);
Line Deleted : user_pref("CT1750559.IsOpenThankYouPage", true);
Line Deleted : user_pref("CT1750559.IsOpenUninstallPage", true);
Line Deleted : user_pref("CT1750559.LanguagePackLastCheckTime", "Wed Jun 15 2011 16:39:46 GMT+0200");
Line Deleted : user_pref("CT1750559.LanguagePackReloadIntervalMM", 1440);
Line Deleted : user_pref("CT1750559.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
Line Deleted : user_pref("CT1750559.LastLogin_3.2.5.2", "Wed Jun 15 2011 16:39:45 GMT+0200");
Line Deleted : user_pref("CT1750559.LatestVersion", "3.3.3.2");
Line Deleted : user_pref("CT1750559.Locale", "en-us");
Line Deleted : user_pref("CT1750559.MCDetectTooltipHeight", "83");
Line Deleted : user_pref("CT1750559.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Line Deleted : user_pref("CT1750559.MCDetectTooltipWidth", "295");
Line Deleted : user_pref("CT1750559.RadioIsPodcast", false);
Line Deleted : user_pref("CT1750559.RadioLastCheckTime", "Wed Jun 15 2011 16:39:50 GMT+0200");
Line Deleted : user_pref("CT1750559.RadioLastUpdateIPServer", "3");
Line Deleted : user_pref("CT1750559.RadioLastUpdateServer", "128929877726170000");
Line Deleted : user_pref("CT1750559.RadioMediaID", "11237206");
Line Deleted : user_pref("CT1750559.RadioMediaType", "Media Player");
Line Deleted : user_pref("CT1750559.RadioMenuSelectedID", "EBRadioMenu_CT175055911237206");
Line Deleted : user_pref("CT1750559.RadioStationName", "1.FM%20Dance");
Line Deleted : user_pref("CT1750559.RadioStationURL", "hxxp://dance.1.fm/energydance128k?MSWMExt=.asf");
Line Deleted : user_pref("CT1750559.SavedHomepage", "hxxp://www.seznam.cz/");
Line Deleted : user_pref("CT1750559.SearchFromAddressBarIsInit", true);
Line Deleted : user_pref("CT1750559.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&q=");
Line Deleted : user_pref("CT1750559.SearchInNewTabEnabled", true);
Line Deleted : user_pref("CT1750559.SearchInNewTabIntervalMM", 1440);
Line Deleted : user_pref("CT1750559.SearchInNewTabLastCheckTime", "Wed Jun 15 2011 16:39:46 GMT+0200");
Line Deleted : user_pref("CT1750559.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT1750559.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID");
Line Deleted : user_pref("CT1750559.ServiceMapLastCheckTime", "Wed Jun 15 2011 16:39:39 GMT+0200");
Line Deleted : user_pref("CT1750559.SettingsLastCheckTime", "Wed Jun 15 2011 16:39:40 GMT+0200");
Line Deleted : user_pref("CT1750559.SettingsLastUpdate", "1307979098");
Line Deleted : user_pref("CT1750559.ThirdPartyComponentsInterval", 504);
Line Deleted : user_pref("CT1750559.ThirdPartyComponentsLastCheck", "Wed Jun 15 2011 16:39:39 GMT+0200");
Line Deleted : user_pref("CT1750559.ThirdPartyComponentsLastUpdate", "1246786978");
Line Deleted : user_pref("CT1750559.TrusteLinkUrl", "hxxp://trust.conduit.com/EB_ORIGINAL_CTID");
Line Deleted : user_pref("CT1750559.UserID", "UN47093896114176337");
Line Deleted : user_pref("CT1750559.WeatherNetwork", "");
Line Deleted : user_pref("CT1750559.WeatherPollDate", "Wed Jun 15 2011 17:10:27 GMT+0200");
Line Deleted : user_pref("CT1750559.WeatherUnit", "C");
Line Deleted : user_pref("CT1750559.alertChannelId", "31130");
Line Deleted : user_pref("CT1750559.backendstorage.amazonnew_all", "313136373635312C313233313235312C313232393630312C313234313632312C313233353533312C313233393631312C313233393630312C313233353537312C313232393638312C313[...]
Line Deleted : user_pref("CT1750559.backendstorage.appbuttondisablenull", "30");
Line Deleted : user_pref("CT1750559.myStuffEnabled", true);
Line Deleted : user_pref("CT1750559.myStuffPublihserMinWidth", 400);
Line Deleted : user_pref("CT1750559.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
Line Deleted : user_pref("CT1750559.myStuffServiceIntervalMM", 1440);
Line Deleted : user_pref("CT1750559.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
Line Deleted : user_pref("CT1750559.testingCtid", "");
Line Deleted : user_pref("CT1750559.toolbarAppMetaDataLastCheckTime", "Wed Jun 15 2011 16:39:45 GMT+0200");
Line Deleted : user_pref("CT1750559.toolbarContextMenuLastCheckTime", "Wed Jun 15 2011 16:39:47 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/31130/30609/CZ", "\"0\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT1750559", "\"1305797704\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en-us", "wVmmvqqOMqrv5xct1cJIHg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en-us", "0uSPYx+Kl2jpu8sJZMeHjw==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en-us", "Dclc8oo4TTv7+mAkSlUSWg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en-us", "K4Vqu91uAzWURlxJRdXJOg==");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/toolbar/", "\"634434930587600000\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/CT1750559/CT1750559", "\"1307979098\"");
Line Deleted : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en-us", "\"634432176643630000\"");
Line Deleted : user_pref("CommunityToolbar.EngineOwner", "CT1750559");
Line Deleted : user_pref("CommunityToolbar.EngineOwnerGuid", "{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}");
Line Deleted : user_pref("CommunityToolbar.EngineOwnerToolbarId", "bs_player");
Line Deleted : user_pref("CommunityToolbar.OriginalEngineOwner", "CT1750559");
Line Deleted : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}");
Line Deleted : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "bs_player");
Line Deleted : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://search.icq.com/search/afe_results.php?ch_id=sm&tb_ver=1.1.6&q=");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList", "CT1750559");
Line Deleted : user_pref("CommunityToolbar.ToolbarsList2", "CT1750559");
Line Deleted : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
Line Deleted : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Wed Jun 15 2011 17:52:34 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Line Deleted : user_pref("CommunityToolbar.alert.locale", "en");
Line Deleted : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Line Deleted : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Wed Jun 15 2011 16:39:39 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559");
Line Deleted : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Line Deleted : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Line Deleted : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Line Deleted : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Line Deleted : user_pref("CommunityToolbar.alert.userId", "87dcf834-3962-4427-90c9-81c629186ca9");
Line Deleted : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Wed Jun 15 2011 16:39:49 GMT+0200");
Line Deleted : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT1750559");
Line Deleted : user_pref("browser.search.defaultthis.engineName", "BS Player Customized Web Search");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}");
Line Deleted : user_pref("browser.search.selectedEngine", "BS Player Customized Web Search");
Line Deleted : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"I[...]
Line Deleted : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
Line Deleted : user_pref("extensions.wrc.SearchRules.rambler.ru.style", ".WRCN {display:none} .search-results .title + .WRCN {display:inline !important; background: url(\"IMAGE\") right no-repeat}");
Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
Line Deleted : user_pref("icqtoolbar.engineVerified", false);
Line Deleted : user_pref("icqtoolbar.hiddenElements", "itb_options");
Line Deleted : user_pref("icqtoolbar.history", "opera||bs%20player||gmail||serval||novofundlandsk%C3%BD%20n%C3%A1horn%C3%AD%20skot||novofundlansk%C3%BD%20n%C3%A1horn%C3%AD%20skot||www.radiocom.cz||radiocom.cz||radio[...]
Line Deleted : user_pref("icqtoolbar.installTime", "1292235583");
Line Deleted : user_pref("icqtoolbar.installsource", "1");
Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
Line Deleted : user_pref("icqtoolbar.previousFFVersion", "3.6.17");
Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
Line Deleted : user_pref("icqtoolbar.suggestions", false);
Line Deleted : user_pref("icqtoolbar.uniqueID", "129214672312921467221292235583907");
Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1308131076);
Line Deleted : user_pref("icqtoolbar.version", "1.1.6");
Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");

-\\ Google Chrome v32.0.1700.107

[ File : C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [17552 octets] - [05/01/2014 19:52:03]
AdwCleaner[S0].txt - [17676 octets] - [05/01/2014 19:53:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [17737 octets] ##########

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 20:06
od vyosek
:arrow: Spustte znovu RogueKiller
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Zvolte moznost Prohledat a pote Smazat a nasledne Zprava - otevre se log, ten sem vlozte
  • Pak kliknete na Oprava Host a Zprava - otevre se log, ten sem vlozte

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 20:15
od pepaa
vyosek píše::arrow: Spustte znovu RogueKiller
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Zvolte moznost Prohledat a pote Smazat a nasledne Zprava - otevre se log, ten sem vlozte
  • Pak kliknete na Oprava Host a Zprava - otevre se log, ten sem vlozte

zde log pred OPRAVA HOST:

RogueKiller V8.8.5 [Feb 3 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : hxxp://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Sáňa [Práva správce]
Mód : Odebrat -- Datum : 01/05/2014 20:13:32
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 3 ¤¤¤
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowRecentDocs (0) -> NAHRAZENO (1)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 4 ¤¤¤
[Administrator][Rans.Gendarm] msconfig.lnk : C:\Documents and Settings\Administrator\Nabídka Start\Programy\Po spuštění\msconfig.lnk [-] -> VYMAZÁNO
[Administrator.PC192104165233.000][Rans.Gendarm] msconfig.lnk : C:\Documents and Settings\Administrator.PC192104165233.000\Nabídka Start\Programy\Po spuštění\msconfig.lnk [-] -> VYMAZÁNO
[Administrator.PC192104165233.001][Rans.Gendarm] msconfig.lnk : C:\Documents and Settings\Administrator.PC192104165233.001\Nabídka Start\Programy\Po spuštění\msconfig.lnk [-] -> VYMAZÁNO
[All Users][SUSP UNIC] Bluetooth.lnk : C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Bluetooth.lnk [-] -> VYMAZÁNO

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : Rans.Gendarm ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9160827AS +++++
--- User ---
[MBR] d2c82ccbdf60745d34173bf45080366f
[BSP] 0c270ebad626c04fc12d251bd1411199 : Windows Vista MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 152616 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_01052014_201332.txt >>
RKreport[0]_S_01052014_194754.txt;RKreport[0]_S_01052014_201316.txt

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 20:18
od pepaa
zde log po opravě

RogueKiller V8.8.5 [Feb 3 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : hxxp://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows XP (5.1.2600 Service Pack 3) 32 bits version
Spuštěno v : Normální režim
Uživatel : Sáňa [Práva správce]
Mód : Oprava HOSTS -- Datum : 01/05/2014 20:16:13
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : Rans.Gendarm ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost


Dokončeno : << RKreport[0]_H_01052014_201613.txt >>
RKreport[0]_D_01052014_201332.txt;RKreport[0]_S_01052014_194754.txt;RKreport[0]_S_01052014_201316.txt

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 20:20
od vyosek
Poprosim o lgo dle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 20:30
od pepaa
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 05-02-2014
Ran by Sáňa at 2014-01-05 20:27:56
Running from C:\Documents and Settings\Sáňa\Plocha
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}

==================== Installed Programs ======================

Adobe Flash Player 10 ActiveX (Version: 10.0.22.87 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.03) - Czech (Version: 11.0.03 - Adobe Systems Incorporated)
Aktualizace systému Windows Internet Explorer 7 (KB976749) (Version: 1 - Microsoft Corporation)
Aktualizace systému Windows Internet Explorer 7 (KB980182) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2183461) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2360131) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2497640) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2530548) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2544521) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2559049) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2586448) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2618444) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2647516) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2675157) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2699988) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2722913) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2744842) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2761465) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2792100) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2797052) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2799329) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2809289) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2817183) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2829530) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2888505) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB2898785) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB938127-v2) (Version: 2 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB974455) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB976325) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB978207) (Version: 1 - Microsoft Corporation)
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB982381) (Version: 1 - Microsoft Corporation)
Apple Application Support (Version: 2.1.5 - Apple Inc.)
Apple Software Update (Version: 2.1.3.127 - Apple Inc.)
Ask Toolbar (Version: 12.10.0.19 - APN, LLC) <==== ATTENTION
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (Version: 1.0.0.16 - Atheros Communications Inc.)
aTube Catcher (Version: 3.8.5187 - DsNET Corp)
avast! Free Antivirus (Version: 9.0.2013 - Avast Software)
Balíček ovladače systému Windows - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.)
Bezdrátový adaptér Broadcom 802.11 LAN (Version: 5.10.91.4 - Broadcom Corporation)
CCleaner (Version: 3.07 - Piriform)
Default Manager (Version: 1.0.105.0 - Microsoft Corporation) Hidden
Dropbox (HKCU Version: 2.6.2 - Dropbox, Inc.)
Facebook Video Calling 2.0.0.447 (Version: 2.0.447 - Skype Limited)
Google Chrome (Version: 32.0.1700.107 - Google Inc.)
Google Update Helper (Version: 1.3.22.3 - Google Inc.) Hidden
Google+ Auto Backup (Version: 1.0.19.76 - Google)
HP BatteryCheck 2.10 A2 (Version: 2.10 A2 - Hewlett-Packard Company)
HP Doc Viewer (Version: 1.01.0005 - Hewlett-Packard)
HP Help and Support (Version: 4.4.0003 - HPQ)
HP RecordNow (Version: 3.50 - HP)
HP User Guides 0139 (Version: 1.01.0000 - Hewlett-Packard)
HP Wireless Assistant (Version: 3.00 K2 - Hewlett-Packard)
HpSdpAppCoreApp (Version: 3.00.0000 - Hewlett-Packard) Hidden
IDT Audio (Version: 1.0.6162.12 - IDT)
Intel(R) Graphics Media Accelerator Driver (Version: - )
Java 7 Update 51 (Version: 7.0.510 - Oracle)
Java Auto Updater (Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 24 (Version: 6.0.240 - Sun Microsystems, Inc.)
Microsoft .NET Framework 1.1 (Version: - )
Microsoft .NET Framework 1.1 (Version: 1.1.4322 - Microsoft) Hidden
Microsoft .NET Framework 1.1 Czech Language Pack (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2698023) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (Version: - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (Version: - )
Microsoft .NET Framework 2.0 Language Pack - CSY (Version: - Microsoft Corporation)
Microsoft .NET Framework 2.0 Language Pack - CSY (Version: 1.1.50727.42 - Microsoft Corporation) Hidden
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft Internationalized Domain Names Mitigation APIs (Version: - Microsoft Corporation) Hidden
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 (Version: - Microsoft Corporation) Hidden
Microsoft Live Search Toolbar (Version: 3.0.559.0 - Microsoft Corporation) Hidden
Microsoft Live Search Toolbar (Version: 3.0.559.0 - Microsoft Live Search Toolbar)
Microsoft National Language Support Downlevel APIs (Version: - Microsoft Corporation) Hidden
Microsoft Office XP Standard (Version: 10.0.2627.01 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Works (Version: 08.05.0822 - Microsoft Corporation)
MSXML 6.0 Parser (Version: 6.10.1129.0 - Microsoft Corporation) Hidden
Nástroj pro zálohování systému Windows (Version: 5.1 - Microsoft Corporation)
NeonClock screensaver 1.2 (Version: - )
Network Play System (Patching) (Version: - )
Oprava Hotfix systému Windows Internet Explorer 7 (KB947864) (Version: 1 - Microsoft Corporation)
Picasa 3 (Version: 3.9 - Google, Inc.)
QuickTime (Version: 7.71.80.42 - Apple Inc.)
Roxio BackOnTrack (Version: 1.3.0 - Roxio)
Roxio BackOnTrack (Version: 1.3.0 - Roxio) Hidden
Roxio Disaster Recovery (Version: 1.3.0 - Roxio) Hidden
Roxio Instant Restore (Version: 3.8.0 - Roxio) Hidden
Roxio Instant Restore Recovery Disk (Version: 3.8.0 - Roxio) Hidden
Roxio Update Manager (Version: 6.0.0 - Roxio) Hidden
Samsung Kies (Version: 2.6.1.13105_6 - Samsung Electronics Co., Ltd.)
Samsung Kies (Version: 2.6.1.13105_6 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (Version: 1.5.29.0 - SAMSUNG Electronics Co., Ltd.)
Skype Click to Call (Version: 6.13.13771 - Skype Technologies S.A.)
Skype™ 6.11 (Version: 6.11.102 - Skype Technologies S.A.)
Synaptics Pointing Device Driver (Version: 12.1.5.0 - Synaptics)
syncables desktop (Version: 5.0.111 - syncables)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1 - Microsoft Corporation)
USB2.0 Card Reader Software (Version: 6.0.6000.75 - Realtek)
VirtualDJ Home FREE (Version: 7.4.1 - Atomix Productions)
VLC media player 2.1.2 (Version: 2.1.2 - VideoLAN)
WebcamMax (Version: 7.8.0.8.MultiLanguage - )
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
WIDCOMM Bluetooth Software (Version: 5.5.0.3900 - )
Windows Internet Explorer 7 (Version: 20070813.185237 - Microsoft Corporation)
Windows Live Messenger (Version: 8.1.0178.00 - Microsoft Corporation)
Windows Media Format 11 runtime (Version: - )
Windows Media Player 11 (Version: - )
WinRAR (Version: - )
ZTE Drivers 1.2050.0.11 (Version: - )

==================== Restore Points =========================

05-01-2014 18:59:16 Kontrolní bod systému

==================== Hosts content: ==========================

2008-04-15 13:00 - 2014-01-05 20:16 - 00000741 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\AppleSoftwareUpdate.job => C:\Program Files\Apple Software Update\SoftwareUpdate.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\BackOnTrack Instant Restore Idle.job => C:\Program Files\Roxio\BackOnTrack\Instant Restore\RstIdle.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2014-01-05 13:37 - 2014-02-05 10:22 - 02168320 _____ () C:\Program Files\AVAST Software\Avast\defs\14020500\algo.dll
2014-01-03 11:04 - 2014-01-03 11:04 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2013-10-30 13:28 - 2013-10-30 13:28 - 00036864 _____ () C:\Program Files\Samsung\Kies\Common\Kies.Common.DeviceServiceLib.Interface.dll
2013-11-06 09:16 - 2013-11-06 09:16 - 14915584 _____ () C:\Program Files\Samsung\Kies\Theme\Kies.Theme.dll
2013-11-06 09:15 - 2013-11-06 09:15 - 00584192 _____ () C:\Program Files\Samsung\Kies\Common\Kies.UI.dll
2013-10-30 13:28 - 2013-10-30 13:28 - 00023040 _____ () C:\Program Files\Samsung\Kies\MVVM\Kies.MVVM.dll
2013-10-30 12:17 - 2013-10-30 12:17 - 00057856 _____ () C:\Program Files\Samsung\Kies\External\MediaModules\ASF_cSharpAPI.dll
2008-04-15 13:00 - 2008-04-15 13:00 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2008-07-07 15:11 - 2008-07-07 15:11 - 02854912 _____ () C:\WINDOWS\system32\btwicons.dll
2008-07-07 15:08 - 2008-07-07 15:08 - 00040960 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2014-01-05 05:54 - 2014-02-02 00:42 - 04055368 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.107\pdf.dll
2014-01-05 05:55 - 2014-02-02 00:42 - 00399688 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll
2014-01-05 05:54 - 2014-02-02 00:41 - 01634632 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.107\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================


==================== Faulty Device Manager Devices =============

Name: Atheros AR8132 PCI-E Fast Ethernet Controller
Description: Atheros AR8132 PCI-E Fast Ethernet Controller
Class Guid: {4D36E972-E325-11CE-BFC1-08002BE10318}
Manufacturer: Atheros
Service: L1c
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Serial
Description: Serial
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: Serial
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/05/2014 07:51:50 PM) (Source: Application Error) (User: )
Description: Chybující aplikace roguekiller.exe, verze 8.8.5.0, chybující modul roguekiller.exe, verze 8.8.5.0, adresa chyby 0x00003ef7.
Zpracování události, specifické pro médium ([roguekiller.exe!ws!])

Error: (01/05/2014 07:47:22 PM) (Source: RstIdle) (User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 06:37:45 PM) (Source: RstIdle) (User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 05:44:05 PM) (Source: RstIdle) (User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 04:00:54 PM) (Source: RstIdle) (User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 03:53:12 PM) (Source: RstIdle) (User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 02:20:57 PM) (Source: RstIdle) (User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 01:47:41 PM) (Source: RstIdle) (User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 01:36:17 PM) (Source: RstIdle) (User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 01:29:33 PM) (Source: RstIdle) (User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.


System errors:
=============
Error: (01/02/2014 04:57:27 PM) (Source: W32Time) (User: )
Description: Služba Systémový čas zjistila, že je nutné změnit
systémový čas o +2678399 sekund. Služba Systémový čas nemění systémový
čas o více než +54000 sekund. Ověřte správnost času a časového pásma, a zda zdroj času time.windows.com (ntp.m|0x1|10.0.0.4:123->64.4.10.33:123) pracuje správně.

Error: (01/02/2014 04:57:07 PM) (Source: Dhcp) (User: )
Description: Zapůjčení adresy IP 192.168.178.100 pro síťovou kartu s adresou 002556A3719F byla
serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error: (02/28/2014 00:41:27 PM) (Source: W32Time) (User: )
Description: Služba Systémový čas zjistila, že je nutné změnit
systémový čas o -2591994 sekund. Služba Systémový čas nemění systémový
čas o více než -54000 sekund. Ověřte správnost času a časového pásma, a zda zdroj času time.windows.com (ntp.m|0x1|192.168.178.100:123->64.4.10.33:123) pracuje správně.

Error: (02/28/2014 00:40:59 PM) (Source: Dhcp) (User: )
Description: Zapůjčení adresy IP počítače 192.168.178.100 pro
síťovou kartu se síťovou adresou 002556A3719F byla ukončena.

Error: (01/23/2014 00:52:17 AM) (Source: PlugPlayManager) (User: )
Description: Zařízení Obecný svazek (STORAGE\RemovableMedia\7&d7f206a&0&RM) se již v systému nenachází, aniž by bylo nejdříve připraveno k odstranění.

Error: (01/23/2014 00:52:17 AM) (Source: PlugPlayManager) (User: )
Description: Zařízení Generic- Multi-Card USB Device (USBSTOR\Disk&Ven_Generic-&Prod_Multi-Card&Rev_1.00\00000) se již v systému nenachází, aniž by bylo nejdříve připraveno k odstranění.

Error: (01/21/2014 01:17:41 AM) (Source: PlugPlayManager) (User: )
Description: Zařízení Obecný svazek (STORAGE\RemovableMedia\7&d7f206a&0&RM) se již v systému nenachází, aniž by bylo nejdříve připraveno k odstranění.

Error: (01/21/2014 01:17:41 AM) (Source: PlugPlayManager) (User: )
Description: Zařízení Generic- Multi-Card USB Device (USBSTOR\Disk&Ven_Generic-&Prod_Multi-Card&Rev_1.00\00000) se již v systému nenachází, aniž by bylo nejdříve připraveno k odstranění.

Error: (01/21/2014 01:17:05 AM) (Source: PlugPlayManager) (User: )
Description: Zařízení Obecný svazek (STORAGE\RemovableMedia\7&d7f206a&0&RM) se již v systému nenachází, aniž by bylo nejdříve připraveno k odstranění.

Error: (01/21/2014 01:17:04 AM) (Source: PlugPlayManager) (User: )
Description: Zařízení Generic- Multi-Card USB Device (USBSTOR\Disk&Ven_Generic-&Prod_Multi-Card&Rev_1.00\00000) se již v systému nenachází, aniž by bylo nejdříve připraveno k odstranění.


Microsoft Office Sessions:
=========================
Error: (01/05/2014 07:51:50 PM) (Source: Application Error)(User: )
Description: roguekiller.exe8.8.5.0roguekiller.exe8.8.5.000003ef7

Error: (01/05/2014 07:47:22 PM) (Source: RstIdle)(User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 06:37:45 PM) (Source: RstIdle)(User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 05:44:05 PM) (Source: RstIdle)(User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 04:00:54 PM) (Source: RstIdle)(User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 03:53:12 PM) (Source: RstIdle)(User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 02:20:57 PM) (Source: RstIdle)(User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 01:47:41 PM) (Source: RstIdle)(User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 01:36:17 PM) (Source: RstIdle)(User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.

Error: (01/05/2014 01:29:33 PM) (Source: RstIdle)(User: )
Description: checksystemrestore(...) failed
Zadaná služba není nainstalovaná služba.


==================== Memory info ===========================

Percentage of memory in use: 72%
Total physical RAM: 1015.23 MB
Available physical RAM: 282.27 MB
Total Pagefile: 2441.58 MB
Available Pagefile: 1646.18 MB
Total Virtual: 2047.88 MB
Available Virtual: 1943.64 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:149.04 GB) (Free:40.66 GB) NTFS ==>[Drive with boot components (Windows XP)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 149 GB) (Disk ID: 5D5A5D5A)
Partition 1: (Active) - (Size=149 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 20:43
od vyosek
Jeste poprosi o log FRST.txt

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 05 úno 2014 20:47
od pepaa
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 05-02-2014
Ran by Sáňa (administrator) on PC192104165233 on 05-01-2014 20:45:36
Running from C:\Documents and Settings\Sáňa\Plocha
Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 7
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) ===================

(Sonic Solutions) C:\Program Files\Roxio\BackOnTrack\Instant Restore\BOTService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv.exe
() C:\Program Files\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler.exe
(Intel Corporation) C:\WINDOWS\system32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Andrea Electronics Corporation) C:\WINDOWS\system32\AESTFltr.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(syncables, LLC) C:\Program Files\syncables\syncables desktop\Syncables.exe
(Microsoft Corp.) C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
(Skype Technologies S.A.) C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Sun Microsystems, Inc.) C:\Program Files\syncables\syncables desktop\jre\bin\javaw.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Samsung) C:\Program Files\Samsung\Kies\Kies.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
() C:\Program Files\WebcamMax\wcmmon.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(syncables, LLC) C:\Program Files\syncables\syncables desktop\MigoMapi.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [AESTFltr] - C:\WINDOWS\system32\AESTFltr.exe [737280 2009-02-18] (Andrea Electronics Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1418536 2009-01-16] (Synaptics, Inc.)
HKLM\...\Run: [Syncables] - C:\Program Files\syncables\syncables desktop\Syncables.exe [173360 2009-04-02] (syncables, LLC)
HKLM\...\Run: [Microsoft Default Manager] - c:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [224616 2009-02-06] (Microsoft Corp.)
HKLM\...\Run: [hpWirelessAssistant] - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [488752 2008-04-15] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-12-11] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2011-10-24] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-01-03] (AVAST Software)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1564528 2013-12-11] (Samsung)
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [Google+ Auto Backup] - C:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe [3622864 2013-12-23] (Google Inc.)
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [WebcamMaxAutoRun] - C:\Program Files\WebcamMax\wcmmon.exe [1038848 2011-07-17] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=UP97&ocid=UP97DHP
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {7151397B-D4AA-4356-92FB-265F712B8EDA} URL = http://slirsredirect.search.aol.com/sli ... bie7-cs-cz
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {7151397B-D4AA-4356-92FB-265F712B8EDA} URL = http://slirsredirect.search.aol.com/sli ... bie7-cs-cz
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: No Name - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Microsoft Live Search Toolbar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Microsoft Live Search Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll (Microsoft Corp.)
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: 127.0.0.1 localhost
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default
FF DefaultSearchEngine: ICQ Search
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
FF SearchPlugin: C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\searchplugins\searchplugins-backup
FF Extension: Personas - C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\Extensions\personas@christopher.beard [2010-11-21]
FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\Sáňa\Data aplikací\Mozilla\Firefox\Profiles\cvtd9ybc.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-08-27]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2011-06-06]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} [2011-03-11]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Firefox\Extensions: [{7BA52691-1876-45ce-9EE6-54BCB3B04BBC}] - C:\Documents and Settings\All Users\Data aplikací\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn\
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-01-03]

Chrome:
=======
CHR Extension: (Disk Google) - C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-03]
CHR Extension: (YouTube) - C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-03]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-03]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-01]
CHR Extension: (Gmail) - C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-03]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-01-03]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-09]
CHR HKLM\...\Chrome\Extension: [pljcgbedjplidkdjahbaalanadmjfgop] - C:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork\Toolbar\ORJ-V7C\CRX\ToolbarCR.crx [2013-10-09]

========================== Services (Whitelisted) =================

R2 9734BF6A-2DCD-40f0-BAB0-5AAFEEBE1269; C:\Program Files\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe [125424 2008-12-11] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-03] (AVAST Software)
R2 BOTService; C:\Program Files\Roxio\BackOnTrack\Instant Restore\BOTService.exe [203248 2009-03-19] (Sonic Solutions)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2013-12-18] (Oracle Corporation)
S3 LPDSVC; C:\WINDOWS\system32\tcpsvcs.exe [19456 2008-04-15] (Microsoft Corporation)
R2 Skype C2C Service; C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3275136 2013-10-09] (Skype Technologies S.A.)
R2 STacSV; c:\program files\idt\wdm\STacSV.exe [254042 2009-03-30] (IDT, Inc.)
S3 usnjsvc; C:\Program Files\MSN Messenger\usnsvc.exe [97136 2007-01-19] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

S4 abp480n5; C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS [23552 2001-08-18] (Microsoft Corporation)
R3 AESTAud; C:\WINDOWS\System32\drivers\AESTAud.sys [113664 2009-03-19] (Andrea Electronics Corporation)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2014-01-05] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [54832 2014-01-03] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-01-03] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [775952 2014-01-03] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [410784 2014-01-03] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57672 2014-01-03] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [180248 2014-01-03] ()
R3 BCM43XX; C:\WINDOWS\System32\DRIVERS\bcmwl5.sys [1735040 2009-05-10] (Broadcom Corporation)
S3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [47272 2008-07-25] (Broadcom Corporation.)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 L1c; C:\WINDOWS\System32\DRIVERS\l1c51x86.sys [38912 2009-03-02] (Atheros Communications, Inc.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
S3 RSUSBSTOR; C:\WINDOWS\System32\Drivers\RTS5121.sys [160256 2008-11-22] (Realtek Semiconductor Corp.)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [721904 2010-09-23] ()
R3 STHDA; C:\WINDOWS\System32\drivers\sthda.sys [1550891 2009-03-30] (IDT, Inc.)
R0 SysCow; C:\WINDOWS\System32\drivers\syscow32x.sys [103792 2008-09-24] (Sonic Solutions)
R2 WCMVCAM; C:\WINDOWS\System32\DRIVERS\wcmvcam.sys [1068216 2012-04-15] (Windows (R) Win 7 DDK provider)
U3 ap7yne6t; C:\WINDOWS\system32\Drivers\ap7yne6t.sys [0 ] (Microsoft Corporation)
U5 BTKRNL; C:\Windows\System32\Drivers\BTKRNL.sys [991400 2008-06-24] (Broadcom Corporation.)
S3 catchme; \??\C:\DOCUME~1\SA152F~1\LOCALS~1\Temp\catchme.sys [X]
S3 CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys [X]
S3 Huawei; system32\DRIVERS\ewdcsc.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X]
S3 PCASp50; System32\Drivers\PCASp50.sys [X]
U4 RemoteRegistry;
S3 Rts516xIR; system32\DRIVERS\Rts516xIR.sys [X]
U3 TlntSvr;
S3 USBCCID; system32\DRIVERS\Rts5161ccid.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-22 07:58 - 2014-01-22 08:56 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\WebcamMax
2014-01-22 07:58 - 2014-01-22 07:58 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\WebcamMax
2014-01-22 07:56 - 2014-01-22 07:56 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\WebcamMax
2014-01-22 07:56 - 2008-04-14 08:53 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msh263.drv
2014-01-22 07:56 - 2008-04-14 08:52 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\kstvtune.ax
2014-01-22 07:56 - 2008-04-14 08:52 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\vfwwdm32.dll
2014-01-22 07:56 - 2008-04-14 08:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksxbar.ax
2014-01-22 07:56 - 2008-04-14 00:46 - 00141056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2014-01-22 07:55 - 2014-01-22 07:56 - 00000000 ____D () C:\Program Files\WebcamMax
2014-01-22 06:19 - 2014-01-22 06:19 - 00001896 _____ () C:\Documents and Settings\All Users\Plocha\Skype.lnk
2014-01-22 06:19 - 2014-01-22 06:19 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-01-22 06:19 - 2014-01-22 06:19 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Skype
2014-01-20 02:49 - 2014-01-20 02:49 - 00000000 ____D () C:\Documents and Settings\Sáňa\Nabídka Start\Programy\Dropbox
2014-01-20 02:42 - 2014-01-20 02:48 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\Dropbox
2014-01-20 02:35 - 2014-01-20 02:36 - 37660568 _____ (Dropbox, Inc.) C:\Documents and Settings\Sáňa\Plocha\Dropbox 2.6.2.exe
2014-01-19 23:46 - 2013-12-18 21:10 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-01-19 23:46 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2014-01-19 23:46 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2014-01-19 23:46 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2014-01-19 23:45 - 2014-01-19 23:46 - 00005134 _____ () C:\WINDOWS\system32\jupdate-1.7.0_51-b13.log
2014-01-18 20:13 - 2014-01-20 15:07 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\atelier house
2014-01-16 19:53 - 2014-01-15 20:48 - 1646665416 _____ () C:\Documents and Settings\Sáňa\Plocha\mvrzm.avi
2014-01-16 19:52 - 2014-01-15 21:18 - 908670976 _____ () C:\Documents and Settings\Sáňa\Plocha\Lásky čas.avi
2014-01-15 21:52 - 2014-01-15 21:52 - 00000000 ____D () C:\Program Files\GUM1E.tmp
2014-01-15 04:13 - 2013-11-27 21:21 - 00040960 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ndproxy.sys
2014-01-15 04:13 - 2013-11-27 21:21 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2014-01-12 14:32 - 2014-01-20 12:21 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\Domča sety
2014-01-11 20:10 - 2014-01-24 19:47 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Plocha\dominik atelier HOUSE 3.1.2014
2014-01-10 01:35 - 2013-12-27 04:27 - 00000733 _____ () C:\Documents and Settings\Sáňa\Plocha\VirtualDJ Home FREE.lnk
2014-01-08 11:02 - 2014-01-08 11:02 - 00000000 ____D () C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Apple
2014-01-07 19:48 - 2014-01-07 19:51 - 00002347 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader XI.lnk
2014-01-07 19:48 - 2014-01-07 19:50 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-01-07 19:48 - 2014-01-07 19:48 - 00001734 _____ () C:\Documents and Settings\All Users\Plocha\Adobe Reader XI.lnk
2014-01-07 19:48 - 2014-01-07 19:48 - 00000000 ____D () C:\Program Files\Adobe
2014-01-07 17:47 - 2014-01-29 01:37 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Dokumenty\Obrázky
2014-01-05 20:27 - 2014-01-05 20:30 - 00020048 _____ () C:\Documents and Settings\Sáňa\Plocha\Addition.txt
2014-01-05 20:26 - 2014-01-05 20:45 - 00016953 _____ () C:\Documents and Settings\Sáňa\Plocha\FRST.txt
2014-01-05 20:26 - 2014-01-05 20:45 - 00000000 ____D () C:\FRST
2014-01-05 20:25 - 2014-01-05 20:25 - 01139200 _____ (Farbar) C:\Documents and Settings\Sáňa\Plocha\FRST.exe
2014-01-05 20:16 - 2014-01-05 20:16 - 00000971 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_H_01052014_201613.txt
2014-01-05 20:13 - 2014-01-05 20:13 - 00002381 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_D_01052014_201332.txt
2014-01-05 20:13 - 2014-01-05 20:13 - 00002333 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_201316.txt
2014-01-05 19:50 - 2014-01-05 19:50 - 01166132 _____ () C:\Documents and Settings\Sáňa\Plocha\adwcleaner.exe
2014-01-05 19:47 - 2014-01-05 19:47 - 00002268 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_194754.txt
2014-01-05 19:44 - 2014-01-05 20:13 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\RK_Quarantine
2014-01-05 19:39 - 2014-01-05 19:54 - 00000000 ____D () C:\AdwCleaner
2014-01-05 19:39 - 2014-01-05 19:39 - 03796480 _____ () C:\Documents and Settings\Sáňa\Plocha\RogueKiller.exe
2014-01-05 17:40 - 2014-01-05 17:40 - 00021774 _____ () C:\ComboFix.txt
2014-01-05 17:36 - 2014-01-05 17:36 - 00000227 _____ () C:\WINDOWS\system.ini
2014-01-05 17:09 - 2009-11-08 18:40 - 00000211 _____ () C:\Boot.bak
2014-01-05 17:08 - 2014-01-05 17:09 - 00000000 _RSHD () C:\cmdcons
2014-01-05 17:08 - 2004-08-03 23:00 - 00261312 __RSH () C:\cmldr
2014-01-05 17:03 - 2014-01-05 17:40 - 00000000 ____D () C:\Qoobox
2014-01-05 17:03 - 2011-06-26 07:45 - 00256000 _____ () C:\WINDOWS\PEV.exe
2014-01-05 17:03 - 2010-11-07 18:20 - 00208896 _____ () C:\WINDOWS\MBR.exe
2014-01-05 17:03 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe
2014-01-05 17:03 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe
2014-01-05 17:03 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe
2014-01-05 17:03 - 2000-08-31 01:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe
2014-01-05 17:03 - 2000-08-31 01:00 - 00098816 _____ () C:\WINDOWS\sed.exe
2014-01-05 17:03 - 2000-08-31 01:00 - 00080412 _____ () C:\WINDOWS\grep.exe
2014-01-05 17:03 - 2000-08-31 01:00 - 00068096 _____ () C:\WINDOWS\zip.exe
2014-01-05 17:02 - 2014-01-05 17:02 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Dokumenty\Filmy
2014-01-05 17:01 - 2014-01-05 17:38 - 00000000 ____D () C:\WINDOWS\erdnt
2014-01-05 16:49 - 2014-01-05 16:50 - 05180173 ____R (Swearware) C:\Documents and Settings\Sáňa\Plocha\ComboFix.exe
2014-01-05 16:31 - 2014-01-05 16:32 - 00000000 ____D () C:\rsit
2014-01-05 16:31 - 2014-01-05 16:31 - 00000000 ____D () C:\Program Files\trend micro
2014-01-05 16:30 - 2014-01-05 16:30 - 00781383 _____ () C:\Documents and Settings\Sáňa\Plocha\RSIT.exe
2014-01-05 15:27 - 2014-01-05 15:34 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\PECKY
2014-01-03 11:06 - 2014-01-05 20:04 - 00000360 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-01-03 11:06 - 2014-01-03 11:06 - 00001733 _____ () C:\Documents and Settings\All Users\Plocha\avast! Free Antivirus.lnk
2014-01-03 11:06 - 2014-01-03 11:06 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Avast
2014-01-03 11:05 - 2014-01-05 15:11 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswmonflt.sys
2014-01-03 11:05 - 2014-01-03 11:04 - 00775952 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2014-01-03 11:05 - 2014-01-03 11:04 - 00410784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2014-01-03 11:05 - 2014-01-03 11:04 - 00180248 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-01-03 11:05 - 2014-01-03 11:04 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2014-01-03 11:05 - 2014-01-03 11:04 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys
2014-01-03 11:05 - 2014-01-03 11:04 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-01-03 11:04 - 2014-01-03 11:04 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-01-03 11:02 - 2014-01-03 11:02 - 00000000 ____D () C:\Program Files\AVAST Software
2014-01-03 10:41 - 2014-01-05 05:55 - 00001813 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-01-03 10:41 - 2014-01-03 10:41 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome
2014-01-03 10:40 - 2014-01-05 20:45 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-03 10:40 - 2014-01-05 19:59 - 00000932 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-03 10:17 - 2014-01-03 10:30 - 00001270 _____ () C:\Documents and Settings\Sáňa\Plocha\Nový objekt - Textový dokument.txt
2014-01-02 15:53 - 2014-01-02 15:53 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Google+ Auto Backup
2013-12-27 04:27 - 2013-12-27 04:27 - 00000000 ____D () C:\Program Files\VirtualDJ
2013-12-27 04:27 - 2013-12-27 04:27 - 00000000 ____D () C:\Documents and Settings\Sáňa\Nabídka Start\Programy\VirtualDJ
2013-12-27 04:15 - 2014-01-03 19:41 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\Apple Computer
2013-12-27 03:46 - 2013-12-27 04:02 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\avidemux
2013-12-26 23:33 - 2013-12-26 23:33 - 00001604 _____ () C:\Documents and Settings\All Users\Plocha\QuickTime Player.lnk
2013-12-26 23:33 - 2013-12-26 23:33 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\QuickTime
2013-12-26 23:32 - 2014-01-08 10:22 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2013-12-26 23:32 - 2013-12-26 23:33 - 00000000 ____D () C:\Program Files\QuickTime
2013-12-26 23:31 - 2014-01-22 11:02 - 00000284 _____ () C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2013-12-26 23:31 - 2013-12-26 23:31 - 00001830 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Apple Software Update.lnk
2013-12-26 23:31 - 2013-12-26 23:31 - 00000000 ____D () C:\Program Files\Common Files\Apple
2013-12-26 23:31 - 2013-12-26 23:31 - 00000000 ____D () C:\Program Files\Apple Software Update
2013-12-26 23:31 - 2013-12-26 23:31 - 00000000 ____D () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Apple
2013-12-26 23:31 - 2013-12-26 23:31 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Apple
2013-12-26 23:30 - 2013-12-26 23:30 - 00000000 ____D () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Apple Computer
2013-12-26 04:43 - 2013-12-26 05:29 - 00000000 ____D () C:\WINDOWS\system32\NtmsData
2013-12-26 04:29 - 2013-12-26 04:29 - 00000038 _____ () C:\WINDOWS\AviSplitter.INI
2013-12-26 04:20 - 2013-12-26 04:20 - 00000759 _____ () C:\Documents and Settings\All Users\Plocha\Picasa 3.lnk
2013-12-26 04:20 - 2013-12-26 04:20 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Picasa 3
2013-12-26 00:06 - 2013-12-27 04:03 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\Mediatronic
2013-12-23 20:32 - 2013-12-23 20:32 - 04558848 _____ (Google Inc.) C:\WINDOWS\system32\GPhotos.scr
2013-12-23 18:13 - 2013-12-23 18:13 - 00000000 ____D () C:\Program Files (x86)
2013-12-23 13:00 - 2013-12-23 13:00 - 00000000 ____D () C:\FFOutput
2013-12-23 12:59 - 2013-12-26 04:30 - 00000000 ____D () C:\Program Files\SpeedItup Free
2013-12-23 12:59 - 2013-12-23 12:59 - 00000000 _____ () C:\Documents and Settings\All Users\Data aplikací\spds90.txt
2013-12-23 12:56 - 2013-12-26 04:38 - 00000000 ____D () C:\Program Files\FreeTime
2013-12-22 06:21 - 2013-12-26 05:18 - 00000000 ____D () C:\Program Files\HP RecordNow
2013-12-22 06:21 - 2013-12-26 05:18 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\HP RecordNow
2013-12-21 19:53 - 2014-01-06 09:26 - 00000000 ____D () C:\WINDOWS\Minidump
2013-12-15 21:44 - 2013-12-15 21:45 - 00000000 ____D () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Facebook
2013-12-15 20:08 - 2013-12-15 20:08 - 00000000 ____D () C:\Program Files\MarkAny
2013-12-15 20:01 - 2014-01-21 01:39 - 00000000 ____D () C:\Documents and Settings\Sáňa\Dokumenty\videjka
2013-12-14 12:20 - 2014-01-05 05:31 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\vlc
2013-12-14 12:17 - 2013-12-14 12:17 - 00000000 ____D () C:\Program Files\VideoLAN
2013-12-14 12:17 - 2013-12-14 12:17 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\VideoLAN
2013-12-12 22:58 - 2013-12-12 22:58 - 00000000 ____D () C:\Documents and Settings\Sáňa\aTubeCatcher
2013-12-12 21:52 - 2013-12-12 21:52 - 00000839 _____ () C:\Documents and Settings\All Users\Plocha\aTube Catcher.lnk
2013-12-12 21:52 - 2013-12-12 21:52 - 00000000 ____D () C:\Program Files\DsNET Corp
2013-12-12 21:52 - 2013-12-12 21:52 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\aTube Catcher
2013-12-12 21:41 - 2014-01-25 14:07 - 00000000 ____D () C:\Documents and Settings\Sáňa\Dokumenty\VirtualDJ
2013-12-12 21:28 - 2013-12-12 21:28 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\AVAST Software
2013-12-12 20:47 - 2013-12-12 20:55 - 00247192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswndis2.sys.1386881812
2013-12-12 20:47 - 2013-10-31 07:46 - 00104752 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswFW.sys
2013-12-12 20:37 - 2013-11-13 02:13 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzchange.exe

==================== One Month Modified Files and Folders =======

2014-02-28 09:29 - 2009-11-09 03:33 - 00000000 ____D () C:\WINDOWS\Registration
2014-01-29 01:37 - 2014-01-07 17:47 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Dokumenty\Obrázky
2014-01-27 01:06 - 2009-11-13 08:13 - 00094720 _____ () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-01-25 14:07 - 2013-12-12 21:41 - 00000000 ____D () C:\Documents and Settings\Sáňa\Dokumenty\VirtualDJ
2014-01-24 19:47 - 2014-01-11 20:10 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Plocha\dominik atelier HOUSE 3.1.2014
2014-01-22 11:02 - 2013-12-26 23:31 - 00000284 _____ () C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2014-01-22 08:56 - 2014-01-22 07:58 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\WebcamMax
2014-01-22 07:58 - 2014-01-22 07:58 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\WebcamMax
2014-01-22 07:56 - 2014-01-22 07:56 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\WebcamMax
2014-01-22 07:56 - 2014-01-22 07:55 - 00000000 ____D () C:\Program Files\WebcamMax
2014-01-22 06:20 - 2011-01-14 21:49 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Skype
2014-01-22 06:19 - 2014-01-22 06:19 - 00001896 _____ () C:\Documents and Settings\All Users\Plocha\Skype.lnk
2014-01-22 06:19 - 2014-01-22 06:19 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-01-22 06:19 - 2014-01-22 06:19 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Skype
2014-01-22 06:19 - 2011-01-14 21:58 - 00000000 ___RD () C:\Program Files\Skype
2014-01-21 01:39 - 2013-12-15 20:01 - 00000000 ____D () C:\Documents and Settings\Sáňa\Dokumenty\videjka
2014-01-21 00:53 - 2013-12-04 20:54 - 00000000 ____D () C:\Documents and Settings\Sáňa\Dokumenty\Fotečky
2014-01-20 18:14 - 2013-12-04 20:12 - 00000000 ____D () C:\Documents and Settings\Sáňa\Dokumenty\Hudba
2014-01-20 15:07 - 2014-01-18 20:13 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\atelier house
2014-01-20 12:21 - 2014-01-12 14:32 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\Domča sety
2014-01-20 02:49 - 2014-01-20 02:49 - 00000000 ____D () C:\Documents and Settings\Sáňa\Nabídka Start\Programy\Dropbox
2014-01-20 02:48 - 2014-01-20 02:42 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\Dropbox
2014-01-20 02:36 - 2014-01-20 02:35 - 37660568 _____ (Dropbox, Inc.) C:\Documents and Settings\Sáňa\Plocha\Dropbox 2.6.2.exe
2014-01-19 23:46 - 2014-01-19 23:45 - 00005134 _____ () C:\WINDOWS\system32\jupdate-1.7.0_51-b13.log
2014-01-19 23:46 - 2009-11-09 03:32 - 00000000 ____D () C:\Program Files\Java
2014-01-15 21:52 - 2014-01-15 21:52 - 00000000 ____D () C:\Program Files\GUM1E.tmp
2014-01-15 21:18 - 2014-01-16 19:52 - 908670976 _____ () C:\Documents and Settings\Sáňa\Plocha\Lásky čas.avi
2014-01-15 20:48 - 2014-01-16 19:53 - 1646665416 _____ () C:\Documents and Settings\Sáňa\Plocha\mvrzm.avi
2014-01-15 05:35 - 2013-12-03 01:31 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-01-15 05:30 - 2011-06-10 16:11 - 83425928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-01-13 05:52 - 2009-11-09 03:33 - 00000000 ____D () C:\WINDOWS\system32\LogFiles
2014-01-08 11:02 - 2014-01-08 11:02 - 00000000 ____D () C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Apple
2014-01-08 11:02 - 2009-11-09 03:32 - 00000000 ___HD () C:\Documents and Settings\NetworkService\Local Settings\Data aplikací
2014-01-08 10:22 - 2013-12-26 23:32 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2014-01-07 19:51 - 2014-01-07 19:48 - 00002347 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader XI.lnk
2014-01-07 19:50 - 2014-01-07 19:48 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-01-07 19:48 - 2014-01-07 19:48 - 00001734 _____ () C:\Documents and Settings\All Users\Plocha\Adobe Reader XI.lnk
2014-01-07 19:48 - 2014-01-07 19:48 - 00000000 ____D () C:\Program Files\Adobe
2014-01-07 19:48 - 2009-11-09 03:32 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Adobe
2014-01-07 19:47 - 2009-11-14 14:32 - 00000000 ____D () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Adobe
2014-01-06 09:26 - 2013-12-21 19:53 - 00000000 ____D () C:\WINDOWS\Minidump
2014-01-05 20:45 - 2014-01-05 20:26 - 00016953 _____ () C:\Documents and Settings\Sáňa\Plocha\FRST.txt
2014-01-05 20:45 - 2014-01-05 20:26 - 00000000 ____D () C:\FRST
2014-01-05 20:45 - 2014-01-03 10:40 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-05 20:45 - 2009-11-08 18:42 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha
2014-01-05 20:42 - 2009-11-08 18:43 - 00000282 _____ () C:\WINDOWS\Tasks\BackOnTrack Instant Restore Idle.job
2014-01-05 20:39 - 2013-05-01 20:18 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-01-05 20:30 - 2014-01-05 20:27 - 00020048 _____ () C:\Documents and Settings\Sáňa\Plocha\Addition.txt
2014-01-05 20:25 - 2014-01-05 20:25 - 01139200 _____ (Farbar) C:\Documents and Settings\Sáňa\Plocha\FRST.exe
2014-01-05 20:19 - 2009-11-08 18:42 - 00000000 ____D () C:\Documents and Settings\Sáňa
2014-01-05 20:16 - 2014-01-05 20:16 - 00000971 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_H_01052014_201613.txt
2014-01-05 20:13 - 2014-01-05 20:13 - 00002381 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_D_01052014_201332.txt
2014-01-05 20:13 - 2014-01-05 20:13 - 00002333 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_201316.txt
2014-01-05 20:13 - 2014-01-05 19:44 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\RK_Quarantine
2014-01-05 20:13 - 2013-05-01 14:27 - 00000000 ___RD () C:\Documents and Settings\Administrator.PC192104165233.001\Nabídka Start\Programy\Po spuštění
2014-01-05 20:13 - 2013-05-01 14:24 - 00000000 ___RD () C:\Documents and Settings\Administrator.PC192104165233.000\Nabídka Start\Programy\Po spuštění
2014-01-05 20:13 - 2013-05-01 14:16 - 00000000 ___RD () C:\Documents and Settings\Administrator\Nabídka Start\Programy\Po spuštění
2014-01-05 20:13 - 2009-11-09 03:32 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
2014-01-05 20:07 - 2013-05-01 15:28 - 00001154 ____N () C:\WINDOWS\wiadebug.log
2014-01-05 20:04 - 2014-01-03 11:06 - 00000360 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-01-05 20:01 - 2013-05-01 15:27 - 01193372 ____N () C:\WINDOWS\WindowsUpdate.log
2014-01-05 20:01 - 2008-12-01 23:03 - 01048670 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-01-05 19:59 - 2014-01-03 10:40 - 00000932 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-05 19:59 - 2013-05-01 15:28 - 00000048 ____N () C:\WINDOWS\wiaservc.log
2014-01-05 19:59 - 2011-01-14 21:58 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\Skype
2014-01-05 19:58 - 2009-11-09 03:33 - 00000000 ____D () C:\WINDOWS\system32\Restore
2014-01-05 19:58 - 2009-11-09 03:32 - 00000000 __SHD () C:\Documents and Settings\LocalService
2014-01-05 19:58 - 2008-12-01 23:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-01-05 19:57 - 2013-05-01 15:28 - 00032384 ____N () C:\WINDOWS\SchedLgU.Txt
2014-01-05 19:57 - 2009-11-08 18:42 - 00000272 ___SH () C:\Documents and Settings\Sáňa\ntuser.ini
2014-01-05 19:54 - 2014-01-05 19:39 - 00000000 ____D () C:\AdwCleaner
2014-01-05 19:53 - 2010-12-13 11:19 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\ICQ
2014-01-05 19:53 - 2009-12-26 14:43 - 00000000 ____D () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Google
2014-01-05 19:53 - 2009-11-09 03:32 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2014-01-05 19:53 - 2009-11-09 03:32 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-01-05 19:50 - 2014-01-05 19:50 - 01166132 _____ () C:\Documents and Settings\Sáňa\Plocha\adwcleaner.exe
2014-01-05 19:47 - 2014-01-05 19:47 - 00002268 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_194754.txt
2014-01-05 19:39 - 2014-01-05 19:39 - 03796480 _____ () C:\Documents and Settings\Sáňa\Plocha\RogueKiller.exe
2014-01-05 17:40 - 2014-01-05 17:40 - 00021774 _____ () C:\ComboFix.txt
2014-01-05 17:40 - 2014-01-05 17:03 - 00000000 ____D () C:\Qoobox
2014-01-05 17:38 - 2014-01-05 17:01 - 00000000 ____D () C:\WINDOWS\erdnt
2014-01-05 17:36 - 2014-01-05 17:36 - 00000227 _____ () C:\WINDOWS\system.ini
2014-01-05 17:35 - 2009-11-09 03:32 - 00000000 ____D () C:\Program Files\HP
2014-01-05 17:23 - 2009-11-08 18:42 - 00000000 __RHD () C:\Documents and Settings\Sáňa\Data aplikací
2014-01-05 17:09 - 2014-01-05 17:08 - 00000000 _RSHD () C:\cmdcons
2014-01-05 17:09 - 2008-12-01 22:46 - 00000327 __RSH () C:\boot.ini
2014-01-05 17:02 - 2014-01-05 17:02 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Dokumenty\Filmy
2014-01-05 17:02 - 2009-11-08 18:42 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Dokumenty
2014-01-05 16:50 - 2014-01-05 16:49 - 05180173 ____R (Swearware) C:\Documents and Settings\Sáňa\Plocha\ComboFix.exe
2014-01-05 16:32 - 2014-01-05 16:31 - 00000000 ____D () C:\rsit
2014-01-05 16:31 - 2014-01-05 16:31 - 00000000 ____D () C:\Program Files\trend micro
2014-01-05 16:30 - 2014-01-05 16:30 - 00781383 _____ () C:\Documents and Settings\Sáňa\Plocha\RSIT.exe
2014-01-05 15:34 - 2014-01-05 15:27 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\PECKY
2014-01-05 15:11 - 2014-01-03 11:05 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswmonflt.sys
2014-01-05 05:55 - 2014-01-03 10:41 - 00001813 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-01-05 05:31 - 2013-12-14 12:20 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\vlc
2014-01-05 05:25 - 2008-12-01 23:22 - 00001158 _____ () C:\WINDOWS\system32\wpa.dbl
2014-01-03 20:41 - 2013-12-04 20:01 - 00000000 ____D () C:\Documents and Settings\Sáňa\Dokumenty\Filmečky
2014-01-03 19:41 - 2013-12-27 04:15 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\Apple Computer
2014-01-03 15:40 - 2009-11-08 18:45 - 00035296 _____ () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
2014-01-03 11:06 - 2014-01-03 11:06 - 00001733 _____ () C:\Documents and Settings\All Users\Plocha\avast! Free Antivirus.lnk
2014-01-03 11:06 - 2014-01-03 11:06 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Avast
2014-01-03 11:06 - 2009-11-09 03:32 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-01-03 11:04 - 2014-01-03 11:05 - 00775952 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2014-01-03 11:04 - 2014-01-03 11:05 - 00410784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2014-01-03 11:04 - 2014-01-03 11:05 - 00180248 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-01-03 11:04 - 2014-01-03 11:05 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2014-01-03 11:04 - 2014-01-03 11:05 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys
2014-01-03 11:04 - 2014-01-03 11:05 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-01-03 11:04 - 2014-01-03 11:04 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-01-03 11:04 - 2011-05-13 07:58 - 00270240 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-01-03 11:02 - 2014-01-03 11:02 - 00000000 ____D () C:\Program Files\AVAST Software
2014-01-03 11:01 - 2011-05-13 07:58 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2014-01-03 10:45 - 2009-11-08 18:42 - 00000000 ___HD () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací
2014-01-03 10:41 - 2014-01-03 10:41 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome
2014-01-03 10:40 - 2009-12-26 14:43 - 00000000 ____D () C:\Program Files\Google
2014-01-03 10:33 - 2009-11-08 18:42 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Nabídka Start\Programy
2014-01-03 10:30 - 2014-01-03 10:17 - 00001270 _____ () C:\Documents and Settings\Sáňa\Plocha\Nový objekt - Textový dokument.txt
2014-01-02 17:06 - 2013-12-04 20:47 - 00000000 ____D () C:\Documents and Settings\Sáňa\Dokumenty\programy, instalačky nevim
2014-01-02 15:53 - 2014-01-02 15:53 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Google+ Auto Backup
2014-01-02 15:53 - 2009-12-26 14:43 - 00000000 ____D () C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Google
2013-12-27 06:50 - 2008-12-01 22:53 - 00169096 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2013-12-27 04:27 - 2014-01-10 01:35 - 00000733 _____ () C:\Documents and Settings\Sáňa\Plocha\VirtualDJ Home FREE.lnk
2013-12-27 04:27 - 2013-12-27 04:27 - 00000000 ____D () C:\Program Files\VirtualDJ
2013-12-27 04:27 - 2013-12-27 04:27 - 00000000 ____D () C:\Documents and Settings\Sáňa\Nabídka Start\Programy\VirtualDJ
2013-12-27 04:03 - 2013-12-26 00:06 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\Mediatronic
2013-12-27 04:02 - 2013-12-27 03:46 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\avidemux
2013-12-26 23:33 - 2013-12-26 23:33 - 00001604 _____ () C:\Documents and Settings\All Users\Plocha\QuickTime Player.lnk
2013-12-26 23:33 - 2013-12-26 23:33 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\QuickTime
2013-12-26 23:33 - 2013-12-26 23:32 - 00000000 ____D () C:\Program Files\QuickTime
2013-12-26 23:31 - 2013-12-26 23:31 - 00001830 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Apple Software Update.lnk
2013-12-26 23:31 - 2013-12-26 23:31 - 00000000 ____D () C:\Program Files\Common Files\Apple
2013-12-26 23:31 - 2013-12-26 23:31 - 00000000 ____D () C:\Program Files\Apple Software Update
2013-12-26 23:31 - 2013-12-26 23:31 - 00000000 ____D () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Apple
2013-12-26 23:31 - 2013-12-26 23:31 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Apple
2013-12-26 23:30 - 2013-12-26 23:30 - 00000000 ____D () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Apple Computer
2013-12-26 05:29 - 2013-12-26 04:43 - 00000000 ____D () C:\WINDOWS\system32\NtmsData
2013-12-26 05:18 - 2013-12-22 06:21 - 00000000 ____D () C:\Program Files\HP RecordNow
2013-12-26 05:18 - 2013-12-22 06:21 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\HP RecordNow
2013-12-26 05:18 - 2009-11-08 18:42 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Nabídka Start\Programy\Po spuštění
2013-12-26 04:38 - 2013-12-23 12:56 - 00000000 ____D () C:\Program Files\FreeTime
2013-12-26 04:34 - 2012-12-26 16:54 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Sony Ericsson
2013-12-26 04:34 - 2012-12-26 16:52 - 00000000 ____D () C:\Program Files\Sony Ericsson
2013-12-26 04:30 - 2013-12-23 12:59 - 00000000 ____D () C:\Program Files\SpeedItup Free
2013-12-26 04:30 - 2009-11-09 03:32 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start
2013-12-26 04:29 - 2013-12-26 04:29 - 00000038 _____ () C:\WINDOWS\AviSplitter.INI
2013-12-26 04:20 - 2013-12-26 04:20 - 00000759 _____ () C:\Documents and Settings\All Users\Plocha\Picasa 3.lnk
2013-12-26 04:20 - 2013-12-26 04:20 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Picasa 3
2013-12-23 20:32 - 2013-12-23 20:32 - 04558848 _____ (Google Inc.) C:\WINDOWS\system32\GPhotos.scr
2013-12-23 18:44 - 2013-05-01 14:27 - 00001599 _____ () C:\Documents and Settings\Administrator.PC192104165233.001\Nabídka Start\Programy\Vzdálená pomoc.lnk
2013-12-23 18:44 - 2013-05-01 14:24 - 00001599 _____ () C:\Documents and Settings\Administrator.PC192104165233.000\Nabídka Start\Programy\Vzdálená pomoc.lnk
2013-12-23 18:44 - 2013-05-01 14:22 - 00001599 _____ () C:\Documents and Settings\Administrator.PC192104165233\Nabídka Start\Programy\Vzdálená pomoc.lnk
2013-12-23 18:44 - 2013-05-01 14:16 - 00001599 _____ () C:\Documents and Settings\Administrator\Nabídka Start\Programy\Vzdálená pomoc.lnk
2013-12-23 18:44 - 2008-12-01 22:49 - 00001599 _____ () C:\Documents and Settings\Default User\Nabídka Start\Programy\Vzdálená pomoc.lnk
2013-12-23 18:44 - 2008-12-01 22:49 - 00001507 _____ () C:\Documents and Settings\All Users\Nabídka Start\Windows Update.lnk
2013-12-23 18:13 - 2013-12-23 18:13 - 00000000 ____D () C:\Program Files (x86)
2013-12-23 13:00 - 2013-12-23 13:00 - 00000000 ____D () C:\FFOutput
2013-12-23 12:59 - 2013-12-23 12:59 - 00000000 _____ () C:\Documents and Settings\All Users\Data aplikací\spds90.txt
2013-12-22 07:32 - 2013-05-01 14:27 - 00000000 ___RD () C:\Documents and Settings\Administrator.PC192104165233.001\Nabídka Start\Programy
2013-12-22 07:32 - 2013-05-01 14:27 - 00000000 ____D () C:\Documents and Settings\Administrator.PC192104165233.001\Plocha
2013-12-22 07:32 - 2013-05-01 14:24 - 00000000 ___RD () C:\Documents and Settings\Administrator.PC192104165233.000\Nabídka Start\Programy
2013-12-22 07:32 - 2013-05-01 14:24 - 00000000 ____D () C:\Documents and Settings\Administrator.PC192104165233.000\Plocha
2013-12-22 07:32 - 2013-05-01 14:22 - 00000000 ___RD () C:\Documents and Settings\Administrator.PC192104165233\Nabídka Start\Programy
2013-12-22 07:32 - 2013-05-01 14:22 - 00000000 ____D () C:\Documents and Settings\Administrator.PC192104165233\Plocha
2013-12-22 07:32 - 2013-05-01 14:16 - 00000000 ___RD () C:\Documents and Settings\Administrator\Nabídka Start\Programy
2013-12-22 07:32 - 2013-05-01 14:16 - 00000000 ____D () C:\Documents and Settings\Administrator\Plocha
2013-12-22 07:32 - 2009-11-09 03:32 - 00000000 ___RD () C:\Documents and Settings\Default User\Nabídka Start\Programy
2013-12-22 07:32 - 2009-11-09 03:32 - 00000000 ____D () C:\Documents and Settings\Default User\Plocha
2013-12-18 21:10 - 2014-01-19 23:46 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-12-18 21:04 - 2014-01-19 23:46 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2013-12-18 21:04 - 2014-01-19 23:46 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2013-12-18 21:03 - 2014-01-19 23:46 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2013-12-18 20:46 - 2009-05-10 10:23 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2013-12-15 21:45 - 2013-12-15 21:44 - 00000000 ____D () C:\Documents and Settings\Sáňa\Local Settings\Data aplikací\Facebook
2013-12-15 20:08 - 2013-12-15 20:08 - 00000000 ____D () C:\Program Files\MarkAny
2013-12-15 15:31 - 2013-12-01 06:51 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\Samsung
2013-12-14 12:17 - 2013-12-14 12:17 - 00000000 ____D () C:\Program Files\VideoLAN
2013-12-14 12:17 - 2013-12-14 12:17 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\VideoLAN
2013-12-12 23:22 - 2009-11-08 18:42 - 00000000 ___RD () C:\Documents and Settings\Sáňa\Nabídka Start
2013-12-12 22:58 - 2013-12-12 22:58 - 00000000 ____D () C:\Documents and Settings\Sáňa\aTubeCatcher
2013-12-12 21:52 - 2013-12-12 21:52 - 00000839 _____ () C:\Documents and Settings\All Users\Plocha\aTube Catcher.lnk
2013-12-12 21:52 - 2013-12-12 21:52 - 00000000 ____D () C:\Program Files\DsNET Corp
2013-12-12 21:52 - 2013-12-12 21:52 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\aTube Catcher
2013-12-12 21:28 - 2013-12-12 21:28 - 00000000 ____D () C:\Documents and Settings\Sáňa\Data aplikací\AVAST Software
2013-12-12 21:11 - 2009-11-13 08:11 - 00000000 ____D () C:\WINDOWS\ie7updates
2013-12-12 20:55 - 2013-12-12 20:47 - 00247192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswndis2.sys.1386881812
2013-12-12 20:47 - 2008-12-01 22:49 - 00002504 _____ () C:\WINDOWS\system32\CONFIG.NT
2013-12-11 09:39 - 2013-05-01 20:18 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-12-11 09:39 - 2013-05-01 20:18 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-12-08 18:37 - 2013-12-01 06:51 - 00000000 ____D () C:\Documents and Settings\All Users\Dokumenty\NativeFus_Log

Some content of TEMP:
====================
C:\Documents and Settings\Sáňa\Local Settings\Temp\ntdll_dump.dll
C:\Documents and Settings\Sáňa\Local Settings\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\WINDOWS\explorer.exe
[2008-04-15 13:00] - [2008-04-15 13:00] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1

C:\WINDOWS\system32\winlogon.exe
[2008-04-15 13:00] - [2008-04-15 13:00] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea

C:\WINDOWS\system32\svchost.exe
[2008-04-15 13:00] - [2008-04-15 13:00] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93

C:\WINDOWS\system32\services.exe
[2009-11-12 19:44] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7

C:\WINDOWS\system32\User32.dll
[2008-04-15 13:00] - [2008-04-15 13:00] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53

C:\WINDOWS\system32\userinit.exe
[2008-04-15 13:00] - [2008-04-15 13:00] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239

C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys
[2008-04-15 13:00] - [2008-04-15 13:00] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1


==================== End Of Log ============================

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 06 úno 2014 08:38
od vyosek
:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-12-11] (Samsung Electronics Co., Ltd.)
    HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
    HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.)
    HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2011-10-24] (Apple Inc.)
    HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
    HKLM\...\Policies\Explorer: [NoCDBurning] 0
    HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1564528 2013-12-11] (Samsung)
    HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [Google+ Auto Backup] - C:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe [3622864 2013-12-23] (Google Inc.)
    HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
    HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [WebcamMaxAutoRun] - C:\Program Files\WebcamMax\wcmmon.exe [1038848 2011-07-17] ()
    
    HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
    HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=UP97&ocid=UP97DHP
    HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
    HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
    SearchScopes: HKLM - DefaultScope value is missing.
    SearchScopes: HKLM - {7151397B-D4AA-4356-92FB-265F712B8EDA} URL = http://slirsredirect.search.aol.com/sli ... 632&query={searchTerms}&invocationType=tb50hpcnnbie7-cs-cz
    SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
    SearchScopes: HKCU - {7151397B-D4AA-4356-92FB-265F712B8EDA} URL = http://slirsredirect.search.aol.com/sli ... 632&query={searchTerms}&invocationType=tb50hpcnnbie7-cs-cz
    BHO: No Name - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
    
    
    FF DefaultSearchEngine: ICQ Search
    
    CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-09]
    
    2014-01-05 20:16 - 2014-01-05 20:16 - 00000971 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_H_01052014_201613.txt
    2014-01-05 20:13 - 2014-01-05 20:13 - 00002381 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_D_01052014_201332.txt
    2014-01-05 20:13 - 2014-01-05 20:13 - 00002333 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_201316.txt
    2014-01-05 19:50 - 2014-01-05 19:50 - 01166132 _____ () C:\Documents and Settings\Sáňa\Plocha\adwcleaner.exe
    2014-01-05 19:47 - 2014-01-05 19:47 - 00002268 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_194754.txt
    2014-01-05 19:44 - 2014-01-05 20:13 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\RK_Quarantine
    2014-01-05 19:39 - 2014-01-05 19:39 - 03796480 _____ () C:\Documents and Settings\Sáňa\Plocha\RogueKiller.exe
    2014-01-05 16:49 - 2014-01-05 16:50 - 05180173 ____R (Swearware) C:\Documents and Settings\Sáňa\Plocha\ComboFix.exe
    
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccleaner" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MDS_Menu" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Olympus ib" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f
    
    Hosts:
    CMD: shutdown /r /f /t 2
    
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 06 úno 2014 13:00
od pepaa
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 05-02-2014
Ran by Sáňa at 2014-01-06 12:43:17 Run:2
Running from C:\Documents and Settings\Sáňa\Plocha
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-12-11] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2011-10-24] (Apple Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1564528 2013-12-11] (Samsung)
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [Google+ Auto Backup] - C:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe [3622864 2013-12-23] (Google Inc.)
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\...\Run: [WebcamMaxAutoRun] - C:\Program Files\WebcamMax\wcmmon.exe [1038848 2011-07-17] ()

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=UP97&ocid=UP97DHP
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {7151397B-D4AA-4356-92FB-265F712B8EDA} URL = http://slirsredirect.search.aol.com/sli ... 632&query={searchTerms}&invocationType=tb50hpcnnbie7-cs-cz
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {7151397B-D4AA-4356-92FB-265F712B8EDA} URL = http://slirsredirect.search.aol.com/sli ... 632&query={searchTerms}&invocationType=tb50hpcnnbie7-cs-cz
BHO: No Name - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File


FF DefaultSearchEngine: ICQ Search

CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-09]

2014-01-05 20:16 - 2014-01-05 20:16 - 00000971 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_H_01052014_201613.txt
2014-01-05 20:13 - 2014-01-05 20:13 - 00002381 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_D_01052014_201332.txt
2014-01-05 20:13 - 2014-01-05 20:13 - 00002333 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_201316.txt
2014-01-05 19:50 - 2014-01-05 19:50 - 01166132 _____ () C:\Documents and Settings\Sáňa\Plocha\adwcleaner.exe
2014-01-05 19:47 - 2014-01-05 19:47 - 00002268 _____ () C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_194754.txt
2014-01-05 19:44 - 2014-01-05 20:13 - 00000000 ____D () C:\Documents and Settings\Sáňa\Plocha\RK_Quarantine
2014-01-05 19:39 - 2014-01-05 19:39 - 03796480 _____ () C:\Documents and Settings\Sáňa\Plocha\RogueKiller.exe
2014-01-05 16:49 - 2014-01-05 16:50 - 05180173 ____R (Swearware) C:\Documents and Settings\Sáňa\Plocha\ComboFix.exe

REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccleaner" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MDS_Menu" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Olympus ib" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f

Hosts:
CMD: shutdown /r /f /t 2

End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\KiesTrayAgent => Value not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\APSDaemon => Value not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => Value not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoCDBurning => Value not found.
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\Software\Microsoft\Windows\CurrentVersion\Run\\KiesPreload => Value not found.
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\Software\Microsoft\Windows\CurrentVersion\Run\\Google+ Auto Backup => Value not found.
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value not found.
HKU\S-1-5-21-541139503-1732111387-2156511478-1006\Software\Microsoft\Windows\CurrentVersion\Run\\WebcamMaxAutoRun => Value not found.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7151397B-D4AA-4356-92FB-265F712B8EDA} => Key not found.
HKCR\Wow6432Node\CLSID\{7151397B-D4AA-4356-92FB-265F712B8EDA} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key not found.
HKCR\Wow6432Node\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7151397B-D4AA-4356-92FB-265F712B8EDA} => Key not found.
HKCR\Wow6432Node\CLSID\{7151397B-D4AA-4356-92FB-265F712B8EDA} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045} => Key not found.
HKCR\CLSID\{7E853D72-626A-48EC-A868-BA8D5E23E045} => Key not found.
Firefox DefaultSearchEngine deleted successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl => Key not found.
"C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx" => File/Directory not found.
"C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_H_01052014_201613.txt" => File/Directory not found.
"C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_D_01052014_201332.txt" => File/Directory not found.
"C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_201316.txt" => File/Directory not found.
"C:\Documents and Settings\Sáňa\Plocha\adwcleaner.exe" => File/Directory not found.
"C:\Documents and Settings\Sáňa\Plocha\RKreport[0]_S_01052014_194754.txt" => File/Directory not found.
"C:\Documents and Settings\Sáňa\Plocha\RK_Quarantine" => File/Directory not found.
"C:\Documents and Settings\Sáňa\Plocha\RogueKiller.exe" => File/Directory not found.
"C:\Documents and Settings\Sáňa\Plocha\ComboFix.exe" => File/Directory not found.

========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccleaner" /f =========


Chyba: Systém nenalezl zadaný klíč registru nebo požadovanou hodnotu.


========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MDS_Menu" /f =========


Chyba: Systém nenalezl zadaný klíč registru nebo požadovanou hodnotu.


========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Olympus ib" /f =========


Chyba: Systém nenalezl zadaný klíč registru nebo požadovanou hodnotu.


========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype" /f =========


Chyba: Systém nenalezl zadaný klíč registru nebo požadovanou hodnotu.


========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion" /f =========


Chyba: Systém nenalezl zadaný klíč registru nebo požadovanou hodnotu.


========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f =========


Chyba: Systém nenalezl zadaný klíč registru nebo požadovanou hodnotu.


========= End of Reg: =========

C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

========= shutdown /r /f /t 2 =========


========= End of CMD: =========


==== End of Fixlog ====

Re: Problém se stránkami GOOGLE, vložen log z RSIT

Napsal: 06 úno 2014 22:20
od vyosek
Jak se chova PC??