prosím o kontrolu logu
Napsal: 29 bře 2014 22:19
Zdravím, padá mi pc, samovolný restart. prosím o kontrolu logu, děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-03-2014 01
Ran by Kristian (administrator) on KRISTIAN-A1AFAD on 29-03-2014 22:22:00
Running from C:\Documents and Settings\Kristian\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(COMODO) C:\Program Files\COMODO\COMODO livePCsupport\CLPSLS.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\SOUNDMAN.EXE
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Computer, Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
(Nalpeiron Ltd.) C:\WINDOWS\system32\nlssrv32.exe
() C:\Program Files\VIA\RAID\vialogsv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [ATIPTA] - C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [344064 2004-09-29] (ATI Technologies, Inc.)
HKLM\...\Run: [RAM Idle Professional] - C:\Program Files\RAM Idle LE\RAM_XP.exe [135168 2006-01-17] ()
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2010-02-10] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [ATICCC] - C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [28672 2004-09-29] (ATI Technologies Inc.)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.)
HKLM\...\Run: [COMODO Internet Security] - C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [6756048 2012-11-08] (COMODO)
HKLM\...\Run: [SoundMan] - C:\WINDOWS\SOUNDMAN.EXE [577536 2007-04-16] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Cmaudio] - RunDll32 cmicnfg.cpl,CMICtrlWnd
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [689744 2014-03-14] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [KernelFaultCheck] - %systemroot%\system32\dumprep 0 -k
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.)
HKU\.DEFAULT\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [437160 2007-02-26] (Microsoft Corporation)
HKU\.DEFAULT\...\Run: [ATICCC] - C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [28672 2004-09-29] (ATI Technologies Inc.)
HKU\S-1-5-21-343818398-746137067-1202660629-1003\...\Run: [Google Update] - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [116648 2013-10-05] (Google Inc.)
AppInit_DLLs: C:\WINDOWS\system32\guard32.dll => C:\WINDOWS\system32\guard32.dll [301264 2012-11-08] (COMODO)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\ATI CATALYST System Tray.lnk
ShortcutTarget: ATI CATALYST System Tray.lnk -> C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe (ATI Technologies Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 7380351495
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2012-04-08] (SuperAdBlocker.com)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.)
Tcpip\..\Interfaces\{558B4F89-C83F-4453-B47E-0DF2BC604045}: [NameServer]10.10.2.10,80.82.144.94
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Kristian\Data aplikací\Mozilla\Firefox\Profiles\yxcexmwv.default
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\Kristian\Data aplikací\Mozilla\Firefox\Profiles\yxcexmwv.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-07-25]
FF Extension: Seznam lištička - C:\Documents and Settings\Kristian\Data aplikací\Mozilla\Firefox\Profiles\yxcexmwv.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2012-02-18]
FF Extension: Casino Toolbar - C:\Documents and Settings\Kristian\Data aplikací\Mozilla\Firefox\Profiles\yxcexmwv.default\Extensions\wagerlogic.xpi [2011-11-21]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
Chrome:
=======
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-10-05]
CHR Extension: (Disk Google) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-10-05]
CHR Extension: (YouTube) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-10-05]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-10-05]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-05]
CHR Extension: (Gmail) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-10-05]
========================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2012-10-30] (SUPERAntiSpyware.com)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440400 2014-03-14] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440400 2014-03-14] (Avira Operations GmbH & Co. KG)
S2 ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [593920 2010-02-10] ()
R2 CLPSLS; C:\Program Files\COMODO\COMODO livePCsupport\CLPSLS.exe [148744 2010-02-19] (COMODO)
R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [1990464 2012-11-08] (COMODO)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182184 2013-07-10] (Oracle Corporation)
S2 StarWindServiceAE; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software)
R2 VRAID Log Service; C:\Program Files\VIA\RAID\vialogsv.exe [52888 2000-01-01] ()
==================== Drivers (Whitelisted) ====================
S3 ALCXWDM; C:\WINDOWS\System32\drivers\ALCXWDM.SYS [4122368 2008-09-24] (Realtek Semiconductor Corp.)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [90400 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\System32\DRIVERS\avipbb.sys [135648 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\System32\DRIVERS\avkmgr.sys [37352 2013-10-01] (Avira Operations GmbH & Co. KG)
R1 cmdGuard; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [497952 2012-11-08] (COMODO)
R1 cmdHlp; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [32640 2012-11-08] (COMODO)
R3 cmuda; C:\WINDOWS\System32\drivers\cmuda.sys [1368000 2005-12-15] (C-Media Inc)
R3 FET5X86V; C:\WINDOWS\System32\DRIVERS\fetnd5bv.sys [43520 2008-09-22] (VIA Technologies, Inc. )
S3 FETNDIS; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. )
R0 Inspect; C:\WINDOWS\System32\DRIVERS\inspect.sys [99080 2012-11-08] (COMODO)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2012-04-08] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2012-04-08] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R2 SetupNT; C:\WINDOWS\system32\SetupNT.sys [3000 2000-10-25] ()
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [717296 2011-01-08] ()
R1 ssmdrv; C:\WINDOWS\System32\DRIVERS\ssmdrv.sys [28520 2013-07-22] (Avira GmbH)
S3 SWDUMon; C:\WINDOWS\System32\DRIVERS\SWDUMon.sys [13024 2012-11-01] ()
R0 viaagp1; C:\WINDOWS\System32\DRIVERS\viaagp1.sys [27904 2003-07-02] (VIA Technologies, Inc.)
R0 viamraid; C:\WINDOWS\System32\drivers\viamraid.sys [117248 2008-07-09] (VIA Technologies inc,.ltd)
R0 videX32; C:\WINDOWS\System32\DRIVERS\videX32.sys [13976 2000-01-01] (VIA Technologies, Inc.)
U3 am2ebdgw; C:\WINDOWS\system32\Drivers\am2ebdgw.sys [0 ] (Microsoft Corporation)
S4 IntelIde; No ImagePath
S3 TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-29 22:22 - 2014-03-29 22:22 - 00013882 _____ () C:\Documents and Settings\Kristian\Plocha\FRST.txt
2014-03-29 22:21 - 2014-03-29 22:22 - 00000000 ____D () C:\FRST
2014-03-29 22:19 - 2014-03-29 22:19 - 01145856 _____ (Farbar) C:\Documents and Settings\Kristian\Plocha\FRST.exe
2014-03-29 22:09 - 2014-03-29 22:09 - 00102400 _____ () C:\WINDOWS\Minidump\Mini032914-01.dmp
2014-03-08 19:08 - 2014-03-08 19:08 - 00000000 ____D () C:\WINDOWS\27AEILPSWZ37AEHL
2014-02-27 10:27 - 2014-02-27 10:33 - 00000000 ____D () C:\Documents and Settings\Kristian\Plocha\Zoner Photo Studio Professional v15.0.1.3 Portable
==================== One Month Modified Files and Folders =======
2014-03-29 22:22 - 2014-03-29 22:22 - 00013882 _____ () C:\Documents and Settings\Kristian\Plocha\FRST.txt
2014-03-29 22:22 - 2014-03-29 22:21 - 00000000 ____D () C:\FRST
2014-03-29 22:22 - 2010-06-24 12:31 - 00000000 ____D () C:\Documents and Settings\Kristian\Plocha
2014-03-29 22:19 - 2014-03-29 22:19 - 01145856 _____ (Farbar) C:\Documents and Settings\Kristian\Plocha\FRST.exe
2014-03-29 22:19 - 2012-06-23 22:19 - 00000944 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-29 22:17 - 2012-04-10 17:43 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-03-29 22:11 - 2010-06-24 12:25 - 01419562 _____ () C:\WINDOWS\WindowsUpdate.log
2014-03-29 22:11 - 2001-10-25 13:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2014-03-29 22:10 - 2012-09-29 21:53 - 00000320 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-03-29 22:10 - 2012-06-23 22:19 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-29 22:10 - 2010-07-13 11:05 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-03-29 22:10 - 2010-07-13 11:05 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-03-29 22:09 - 2014-03-29 22:09 - 00102400 _____ () C:\WINDOWS\Minidump\Mini032914-01.dmp
2014-03-29 22:09 - 2010-08-03 14:16 - 00000000 ____D () C:\WINDOWS\Minidump
2014-03-29 22:09 - 2010-06-24 12:30 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-03-29 22:02 - 2013-10-05 16:29 - 00001038 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-343818398-746137067-1202660629-1003UA.job
2014-03-29 20:33 - 2010-06-24 12:52 - 00000000 __SHD () C:\Documents and Settings\Kristian\UserData
2014-03-29 20:33 - 2010-06-24 12:31 - 00000000 ____D () C:\Documents and Settings\Kristian
2014-03-29 18:57 - 2010-06-25 08:40 - 00000000 ____D () C:\Documents and Settings\Kristian\Data aplikací\Adobe
2014-03-29 13:32 - 2013-11-01 08:31 - 00000000 ____D () C:\Documents and Settings\Kristian\Plocha\irena
2014-03-29 11:17 - 2010-06-24 12:30 - 00032390 ____N () C:\WINDOWS\SchedLgU.Txt
2014-03-29 01:12 - 2010-06-24 13:23 - 00524288 _____ () C:\WINDOWS\system32\config\ACEEvent.evt
2014-03-29 01:12 - 2010-06-24 12:31 - 00000178 ___SH () C:\Documents and Settings\Kristian\ntuser.ini
2014-03-28 14:18 - 2013-09-23 10:56 - 00000429 _____ () C:\Documents and Settings\Kristian\Plocha\Nový objekt - Textový dokument (2).txt
2014-03-28 05:02 - 2013-10-05 16:29 - 00000986 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-343818398-746137067-1202660629-1003Core.job
2014-03-22 05:38 - 2013-07-22 21:35 - 00000000 ____D () C:\WINDOWS\system32\NtmsData
2014-03-22 05:37 - 2010-06-24 12:24 - 00000000 ____D () C:\WINDOWS\Registration
2014-03-19 23:55 - 2010-06-29 22:41 - 00000000 ____D () C:\Documents and Settings\Kristian\Data aplikací\dvdcss
2014-03-19 23:55 - 2010-06-26 23:07 - 00000000 ____D () C:\Documents and Settings\Kristian\Data aplikací\vlc
2014-03-16 08:58 - 2013-10-05 16:30 - 00002288 _____ () C:\Documents and Settings\Kristian\Plocha\Google Chrome.lnk
2014-03-11 21:17 - 2012-04-10 17:43 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-03-11 21:17 - 2011-07-24 09:19 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-03-09 23:53 - 2010-06-24 14:17 - 01494608 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-03-09 23:07 - 2010-06-24 12:31 - 00054456 _____ () C:\Documents and Settings\Kristian\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
2014-03-08 19:08 - 2014-03-08 19:08 - 00000000 ____D () C:\WINDOWS\27AEILPSWZ37AEHL
2014-02-27 10:33 - 2014-02-27 10:27 - 00000000 ____D () C:\Documents and Settings\Kristian\Plocha\Zoner Photo Studio Professional v15.0.1.3 Portable
Some content of TEMP:
====================
C:\Documents and Settings\Kristian\Local Settings\temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\WINDOWS\explorer.exe
[2008-04-14 07:52] - [2008-04-14 07:52] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\WINDOWS\system32\winlogon.exe
[2008-04-14 07:52] - [2008-04-14 07:52] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\WINDOWS\system32\svchost.exe
[2008-04-14 07:52] - [2008-04-14 07:52] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\WINDOWS\system32\services.exe
[2008-04-14 07:52] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\WINDOWS\system32\User32.dll
[2008-04-14 07:52] - [2008-04-14 07:52] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\WINDOWS\system32\userinit.exe
[2008-04-14 07:52] - [2008-04-14 07:52] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys
[2008-04-14 06:42] - [2008-04-14 06:42] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-03-2014 01
Ran by Kristian (administrator) on KRISTIAN-A1AFAD on 29-03-2014 22:22:00
Running from C:\Documents and Settings\Kristian\Plocha
Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(COMODO) C:\Program Files\COMODO\COMODO livePCsupport\CLPSLS.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\Ati2evxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\SOUNDMAN.EXE
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Computer, Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
(Nalpeiron Ltd.) C:\WINDOWS\system32\nlssrv32.exe
() C:\Program Files\VIA\RAID\vialogsv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [ATIPTA] - C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [344064 2004-09-29] (ATI Technologies, Inc.)
HKLM\...\Run: [RAM Idle Professional] - C:\Program Files\RAM Idle LE\RAM_XP.exe [135168 2006-01-17] ()
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2010-02-10] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [ATICCC] - C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [28672 2004-09-29] (ATI Technologies Inc.)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.)
HKLM\...\Run: [COMODO Internet Security] - C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [6756048 2012-11-08] (COMODO)
HKLM\...\Run: [SoundMan] - C:\WINDOWS\SOUNDMAN.EXE [577536 2007-04-16] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Cmaudio] - RunDll32 cmicnfg.cpl,CMICtrlWnd
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [689744 2014-03-14] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [KernelFaultCheck] - %systemroot%\system32\dumprep 0 -k
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.)
HKU\.DEFAULT\...\Run: [DWQueuedReporting] - C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [437160 2007-02-26] (Microsoft Corporation)
HKU\.DEFAULT\...\Run: [ATICCC] - C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [28672 2004-09-29] (ATI Technologies Inc.)
HKU\S-1-5-21-343818398-746137067-1202660629-1003\...\Run: [Google Update] - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [116648 2013-10-05] (Google Inc.)
AppInit_DLLs: C:\WINDOWS\system32\guard32.dll => C:\WINDOWS\system32\guard32.dll [301264 2012-11-08] (COMODO)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\ATI CATALYST System Tray.lnk
ShortcutTarget: ATI CATALYST System Tray.lnk -> C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe (ATI Technologies Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 7380351495
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2012-04-08] (SuperAdBlocker.com)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.)
Tcpip\..\Interfaces\{558B4F89-C83F-4453-B47E-0DF2BC604045}: [NameServer]10.10.2.10,80.82.144.94
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Kristian\Data aplikací\Mozilla\Firefox\Profiles\yxcexmwv.default
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\Kristian\Data aplikací\Mozilla\Firefox\Profiles\yxcexmwv.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-07-25]
FF Extension: Seznam lištička - C:\Documents and Settings\Kristian\Data aplikací\Mozilla\Firefox\Profiles\yxcexmwv.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2012-02-18]
FF Extension: Casino Toolbar - C:\Documents and Settings\Kristian\Data aplikací\Mozilla\Firefox\Profiles\yxcexmwv.default\Extensions\wagerlogic.xpi [2011-11-21]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
Chrome:
=======
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-10-05]
CHR Extension: (Disk Google) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-10-05]
CHR Extension: (YouTube) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-10-05]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-10-05]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-05]
CHR Extension: (Gmail) - C:\Documents and Settings\Kristian\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-10-05]
========================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2012-10-30] (SUPERAntiSpyware.com)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440400 2014-03-14] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440400 2014-03-14] (Avira Operations GmbH & Co. KG)
S2 ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [593920 2010-02-10] ()
R2 CLPSLS; C:\Program Files\COMODO\COMODO livePCsupport\CLPSLS.exe [148744 2010-02-19] (COMODO)
R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [1990464 2012-11-08] (COMODO)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182184 2013-07-10] (Oracle Corporation)
S2 StarWindServiceAE; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [275968 2007-05-28] (Rocket Division Software)
R2 VRAID Log Service; C:\Program Files\VIA\RAID\vialogsv.exe [52888 2000-01-01] ()
==================== Drivers (Whitelisted) ====================
S3 ALCXWDM; C:\WINDOWS\System32\drivers\ALCXWDM.SYS [4122368 2008-09-24] (Realtek Semiconductor Corp.)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [90400 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\System32\DRIVERS\avipbb.sys [135648 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\System32\DRIVERS\avkmgr.sys [37352 2013-10-01] (Avira Operations GmbH & Co. KG)
R1 cmdGuard; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [497952 2012-11-08] (COMODO)
R1 cmdHlp; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [32640 2012-11-08] (COMODO)
R3 cmuda; C:\WINDOWS\System32\drivers\cmuda.sys [1368000 2005-12-15] (C-Media Inc)
R3 FET5X86V; C:\WINDOWS\System32\DRIVERS\fetnd5bv.sys [43520 2008-09-22] (VIA Technologies, Inc. )
S3 FETNDIS; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. )
R0 Inspect; C:\WINDOWS\System32\DRIVERS\inspect.sys [99080 2012-11-08] (COMODO)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2012-04-08] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2012-04-08] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R2 SetupNT; C:\WINDOWS\system32\SetupNT.sys [3000 2000-10-25] ()
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [717296 2011-01-08] ()
R1 ssmdrv; C:\WINDOWS\System32\DRIVERS\ssmdrv.sys [28520 2013-07-22] (Avira GmbH)
S3 SWDUMon; C:\WINDOWS\System32\DRIVERS\SWDUMon.sys [13024 2012-11-01] ()
R0 viaagp1; C:\WINDOWS\System32\DRIVERS\viaagp1.sys [27904 2003-07-02] (VIA Technologies, Inc.)
R0 viamraid; C:\WINDOWS\System32\drivers\viamraid.sys [117248 2008-07-09] (VIA Technologies inc,.ltd)
R0 videX32; C:\WINDOWS\System32\DRIVERS\videX32.sys [13976 2000-01-01] (VIA Technologies, Inc.)
U3 am2ebdgw; C:\WINDOWS\system32\Drivers\am2ebdgw.sys [0 ] (Microsoft Corporation)
S4 IntelIde; No ImagePath
S3 TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-29 22:22 - 2014-03-29 22:22 - 00013882 _____ () C:\Documents and Settings\Kristian\Plocha\FRST.txt
2014-03-29 22:21 - 2014-03-29 22:22 - 00000000 ____D () C:\FRST
2014-03-29 22:19 - 2014-03-29 22:19 - 01145856 _____ (Farbar) C:\Documents and Settings\Kristian\Plocha\FRST.exe
2014-03-29 22:09 - 2014-03-29 22:09 - 00102400 _____ () C:\WINDOWS\Minidump\Mini032914-01.dmp
2014-03-08 19:08 - 2014-03-08 19:08 - 00000000 ____D () C:\WINDOWS\27AEILPSWZ37AEHL
2014-02-27 10:27 - 2014-02-27 10:33 - 00000000 ____D () C:\Documents and Settings\Kristian\Plocha\Zoner Photo Studio Professional v15.0.1.3 Portable
==================== One Month Modified Files and Folders =======
2014-03-29 22:22 - 2014-03-29 22:22 - 00013882 _____ () C:\Documents and Settings\Kristian\Plocha\FRST.txt
2014-03-29 22:22 - 2014-03-29 22:21 - 00000000 ____D () C:\FRST
2014-03-29 22:22 - 2010-06-24 12:31 - 00000000 ____D () C:\Documents and Settings\Kristian\Plocha
2014-03-29 22:19 - 2014-03-29 22:19 - 01145856 _____ (Farbar) C:\Documents and Settings\Kristian\Plocha\FRST.exe
2014-03-29 22:19 - 2012-06-23 22:19 - 00000944 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-29 22:17 - 2012-04-10 17:43 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-03-29 22:11 - 2010-06-24 12:25 - 01419562 _____ () C:\WINDOWS\WindowsUpdate.log
2014-03-29 22:11 - 2001-10-25 13:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2014-03-29 22:10 - 2012-09-29 21:53 - 00000320 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-03-29 22:10 - 2012-06-23 22:19 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-29 22:10 - 2010-07-13 11:05 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-03-29 22:10 - 2010-07-13 11:05 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-03-29 22:09 - 2014-03-29 22:09 - 00102400 _____ () C:\WINDOWS\Minidump\Mini032914-01.dmp
2014-03-29 22:09 - 2010-08-03 14:16 - 00000000 ____D () C:\WINDOWS\Minidump
2014-03-29 22:09 - 2010-06-24 12:30 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-03-29 22:02 - 2013-10-05 16:29 - 00001038 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-343818398-746137067-1202660629-1003UA.job
2014-03-29 20:33 - 2010-06-24 12:52 - 00000000 __SHD () C:\Documents and Settings\Kristian\UserData
2014-03-29 20:33 - 2010-06-24 12:31 - 00000000 ____D () C:\Documents and Settings\Kristian
2014-03-29 18:57 - 2010-06-25 08:40 - 00000000 ____D () C:\Documents and Settings\Kristian\Data aplikací\Adobe
2014-03-29 13:32 - 2013-11-01 08:31 - 00000000 ____D () C:\Documents and Settings\Kristian\Plocha\irena
2014-03-29 11:17 - 2010-06-24 12:30 - 00032390 ____N () C:\WINDOWS\SchedLgU.Txt
2014-03-29 01:12 - 2010-06-24 13:23 - 00524288 _____ () C:\WINDOWS\system32\config\ACEEvent.evt
2014-03-29 01:12 - 2010-06-24 12:31 - 00000178 ___SH () C:\Documents and Settings\Kristian\ntuser.ini
2014-03-28 14:18 - 2013-09-23 10:56 - 00000429 _____ () C:\Documents and Settings\Kristian\Plocha\Nový objekt - Textový dokument (2).txt
2014-03-28 05:02 - 2013-10-05 16:29 - 00000986 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-343818398-746137067-1202660629-1003Core.job
2014-03-22 05:38 - 2013-07-22 21:35 - 00000000 ____D () C:\WINDOWS\system32\NtmsData
2014-03-22 05:37 - 2010-06-24 12:24 - 00000000 ____D () C:\WINDOWS\Registration
2014-03-19 23:55 - 2010-06-29 22:41 - 00000000 ____D () C:\Documents and Settings\Kristian\Data aplikací\dvdcss
2014-03-19 23:55 - 2010-06-26 23:07 - 00000000 ____D () C:\Documents and Settings\Kristian\Data aplikací\vlc
2014-03-16 08:58 - 2013-10-05 16:30 - 00002288 _____ () C:\Documents and Settings\Kristian\Plocha\Google Chrome.lnk
2014-03-11 21:17 - 2012-04-10 17:43 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-03-11 21:17 - 2011-07-24 09:19 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-03-09 23:53 - 2010-06-24 14:17 - 01494608 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-03-09 23:07 - 2010-06-24 12:31 - 00054456 _____ () C:\Documents and Settings\Kristian\Local Settings\Data aplikací\GDIPFONTCACHEV1.DAT
2014-03-08 19:08 - 2014-03-08 19:08 - 00000000 ____D () C:\WINDOWS\27AEILPSWZ37AEHL
2014-02-27 10:33 - 2014-02-27 10:27 - 00000000 ____D () C:\Documents and Settings\Kristian\Plocha\Zoner Photo Studio Professional v15.0.1.3 Portable
Some content of TEMP:
====================
C:\Documents and Settings\Kristian\Local Settings\temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\WINDOWS\explorer.exe
[2008-04-14 07:52] - [2008-04-14 07:52] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\WINDOWS\system32\winlogon.exe
[2008-04-14 07:52] - [2008-04-14 07:52] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\WINDOWS\system32\svchost.exe
[2008-04-14 07:52] - [2008-04-14 07:52] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\WINDOWS\system32\services.exe
[2008-04-14 07:52] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\WINDOWS\system32\User32.dll
[2008-04-14 07:52] - [2008-04-14 07:52] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\WINDOWS\system32\userinit.exe
[2008-04-14 07:52] - [2008-04-14 07:52] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys
[2008-04-14 06:42] - [2008-04-14 06:42] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
==================== End Of Log ============================