Prosím o kontrolu logu
Napsal: 25 dub 2014 20:21
Dobrý den, v poslední době došlo k zpomalení PC. Můžete mi prosím zkontrolovat log? Děkuji.
FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 25-04-2014 03
Ran by Petrákovi (administrator) on B7099E6E73 on 25-04-2014 21:15:10
Running from C:\Documents and Settings\Petrákovi\Plocha
Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe
(Apple Computer, Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(IObit) C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 7\DiskDefrag.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5180432 2014-04-06] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [Printsrv] => c:\Windows\System32\Printing_Admin_Scripts\en-US\driverupd.vbs [559 2013-12-04] ()
HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [15678752 2013-10-29] (NVIDIA Corporation)
HKLM\...\Run: [NvMediaCenter] => C:\WINDOWS\system32\NvMcTray.dll [223008 2013-10-29] (NVIDIA Corporation)
HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k
HKLM\...\Run: [IObit Malware Fighter] => C:\Program Files\IObit\IObit Malware Fighter\IMF.exe [1596224 2014-04-17] (IObit)
HKU\.DEFAULT\...\Run: [Advanced SystemCare 6] => "C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart
HKU\.DEFAULT\...\Run: [Advanced SystemCare 7] => "C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
HKU\S-1-5-21-1214440339-616249376-1801674531-1004\...\Run: [AVG-Secure-Search-Update_0214c] => C:\Documents and Settings\Petrákovi\Data aplikací\AVG 0214c Campaign\AVG-Secure-Search-Update-0214c.exe /PROMPT /mid=bd76b91e008647d39002746fc4b9ae8b-ad1491be2ce6c122f6b66faa90e70c2decf7d34c /CMPID=0214c
HKU\S-1-5-21-1214440339-616249376-1801674531-1004\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2014-03-27] (Google Inc.)
HKU\S-1-5-21-1214440339-616249376-1801674531-1004\...\Run: [Akamai NetSession Interface] => "C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Akamai\netsession_win.exe"
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll (IObit)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM - ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll (IObit)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.100.254
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Petrákovi\Data aplikací\Mozilla\Firefox\Profiles\j4n5lkfn.default
FF SelectedSearchEngine: AVG Secure Search
FF Homepage: hxxp://www.seznam.cz/
FF Keyword.URL: user_pref("keyword.URL", "");
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @garmin.com/GpsControl - C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: WinToFlash Suggestor - C:\Documents and Settings\Petrákovi\Data aplikací\Mozilla\Firefox\Profiles\j4n5lkfn.default\Extensions\{285ACFBB-8E53-4feb-90E6-F02A128927F3}.xpi [2012-04-09]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-03-01]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-03-01]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKCU\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Documents and Settings\Petrákovi\Data aplikací\IDM\idmmzcc5
FF Extension: IDM CC - C:\Documents and Settings\Petrákovi\Data aplikací\IDM\idmmzcc5 [2013-11-15]
FF HKCU\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Documents and Settings\Petrákovi\Data aplikací\IDM\idmmzcc5
FF Extension: IDM CC - C:\Documents and Settings\Petrákovi\Data aplikací\IDM\idmmzcc5 [2013-11-15]
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR StartupUrls: "hxxp://www.seznam.cz/", "hxxp://www.evropa2.cz/"
CHR Extension: (Disk Google) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-23]
CHR Extension: (YouTube) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-23]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-23]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-23]
CHR Extension: (Gmail) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-23]
CHR HKLM\...\Chrome\Extension: [acaoakiamfeidcmgooclgeleejkbaecf] - C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.crx [2013-11-23]
CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2013-10-04]
CHR HKLM\...\Chrome\Extension: [jmolcgpienlcieaajfkkdamlngancncm] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2013-10-04]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-04]
========================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2013-01-25] (SUPERAntiSpyware.com)
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3645456 2014-04-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [291912 2014-03-27] (AVG Technologies CZ, s.r.o.)
S3 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [99936 2006-11-10] ()
R2 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [342336 2014-01-24] (IObit)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2013-10-08] (Oracle Corporation)
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit)
R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1386792 2013-12-16] (O&O Software GmbH)
S2 VIAKaraokeService; C:\WINDOWS\system32\viakaraokesrv.exe [27760 2011-06-14] (VIA Technologies, Inc.)
S3 WPFFontCache_v0400; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [X]
==================== Drivers (Whitelisted) ====================
R1 AmdK8; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [43008 2006-06-19] (Advanced Micro Devices)
R1 Avgdiskx; C:\WINDOWS\System32\DRIVERS\avgdiskx.sys [123160 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\WINDOWS\System32\DRIVERS\avgidsdriverx.sys [199960 2014-04-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\WINDOWS\System32\DRIVERS\avgidshx.sys [150296 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\WINDOWS\System32\DRIVERS\avgidsshimx.sys [22296 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\WINDOWS\System32\DRIVERS\avgldx86.sys [193304 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\WINDOWS\System32\DRIVERS\avglogx.sys [238872 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\WINDOWS\System32\DRIVERS\avgmfx86.sys [108312 2014-03-31] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\WINDOWS\System32\DRIVERS\avgrkx86.sys [28440 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\WINDOWS\System32\DRIVERS\avgtdix.sys [211224 2014-03-31] (AVG Technologies CZ, s.r.o.)
R3 cmuda3; C:\WINDOWS\System32\drivers\cmudax3.sys [1872192 2009-05-20] (C-Media Inc)
S4 FileMonitor; C:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys [247968 2013-03-23] (IObit)
S3 gdrv; C:\WINDOWS\gdrv.sys [15600 2013-11-16] (Windows (R) 2000 DDK provider)
S3 IDMTDI; C:\WINDOWS\System32\DRIVERS\idmtdi.sys [120800 2013-10-02] (Tonec Inc.)
S3 MagicTune; C:\WINDOWS\System32\drivers\MTiCtwl.sys [13396 2005-10-21] ()
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [70912 2013-11-29] (NVIDIA Corporation)
R0 nvgts; C:\WINDOWS\System32\DRIVERS\nvgts.sys [168040 2013-11-29] (NVIDIA Corporation)
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [13824 2013-11-29] (NVIDIA Corporation)
R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [9856 2009-01-16] (Padus, Inc.)
R3 RegFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\wxp_x86\regfilter.sys [31776 2013-11-19] (IObit.com)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [14776 2013-05-22] ()
S3 tap0901; C:\WINDOWS\System32\DRIVERS\tap0901.sys [35088 2013-04-30] (The OpenVPN Project)
R1 tStLib; C:\WINDOWS\System32\drivers\tStLib.sys [55224 2014-04-10] (StdLib)
R3 UrlFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\wxp_x86\UrlFilter.sys [17360 2013-11-19] (IObit.com)
S3 VIAHdAudAddService; C:\WINDOWS\System32\drivers\viahduaa.sys [1806448 2011-06-14] (VIA Technologies, Inc.)
S3 IntcAzAudAddService; system32\drivers\RtkHDAud.sys [X]
S4 IntelIde; No ImagePath
S3 massfilter; system32\drivers\massfilter.sys [X]
U3 TlntSvr;
S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X]
S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X]
S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-25 21:15 - 2014-04-25 21:15 - 00015602 _____ () C:\Documents and Settings\Petrákovi\Plocha\FRST.txt
2014-04-25 21:14 - 2014-04-25 21:15 - 00000000 ____D () C:\FRST
2014-04-25 21:14 - 2014-04-25 21:14 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\FRSTLauncher.exe
2014-04-25 21:13 - 2014-04-25 21:14 - 01049088 _____ (Farbar) C:\Documents and Settings\Petrákovi\Plocha\FRST.exe
2014-04-25 21:12 - 2014-04-25 21:12 - 00000487 _____ () C:\ASCInit.log
2014-04-25 21:09 - 2014-04-25 21:09 - 00112107 _____ (forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\VerzeOS.exe
2014-04-21 15:45 - 2014-04-21 15:46 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\DAEMON Tools Lite
2014-04-21 15:44 - 2014-04-21 15:44 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2014-04-21 14:32 - 2014-04-21 14:32 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-03.dmp
2014-04-21 09:41 - 2014-04-21 09:41 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-02.dmp
2014-04-21 08:03 - 2014-04-21 08:03 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-01.dmp
2014-04-17 07:25 - 2014-04-21 09:47 - 00000000 ____D () C:\Program Files\AVG SafeGuard toolbar
2014-04-17 07:25 - 2014-04-17 07:25 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVG Secure Search
2014-04-16 18:13 - 2014-04-16 18:13 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\.mono
2014-04-16 17:49 - 2014-04-16 17:49 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\Unity
2014-04-16 17:48 - 2014-04-16 17:48 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Unity
2014-04-13 15:59 - 2014-04-13 15:59 - 00001607 _____ () C:\Documents and Settings\All Users\Plocha\Call of Duty 2.lnk
2014-04-13 15:59 - 2014-04-13 15:59 - 00000285 _____ () C:\WINDOWS\cod2demo.ini
2014-04-13 15:59 - 2014-04-13 15:59 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Activision
2014-04-13 14:34 - 2014-04-13 15:57 - 00000000 ____D () C:\Program Files\Activision
2014-04-13 11:31 - 2014-04-13 11:31 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\Media Player Classic
2014-04-13 11:27 - 2014-04-13 11:27 - 00001329 _____ () C:\Documents and Settings\Petrákovi\Plocha\Nero StartSmart.lnk
2014-04-11 20:02 - 2014-04-11 20:02 - 00090112 _____ () C:\WINDOWS\Minidump\Mini041114-02.dmp
2014-04-11 18:30 - 2014-04-11 18:30 - 00090112 _____ () C:\WINDOWS\Minidump\Mini041114-01.dmp
2014-04-11 15:47 - 2014-04-11 15:47 - 00000000 __SHD () C:\Documents and Settings\UpdatusUser\IETldCache
2014-04-10 20:22 - 2014-04-10 20:22 - 00055224 _____ (StdLib) C:\WINDOWS\system32\Drivers\tStLib.sys
2014-04-10 20:22 - 2014-04-10 20:22 - 00000000 ___RD () C:\Documents and Settings\LocalService\Oblíbené položky
2014-04-10 16:34 - 2014-04-11 18:30 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-10 16:34 - 2014-04-11 16:02 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Silverlight
2014-04-10 16:17 - 2014-04-10 16:17 - 00000000 ___HD () C:\WINDOWS\PIF
2014-04-09 18:36 - 2014-04-09 18:36 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2922229$
2014-04-09 18:32 - 2014-04-09 18:33 - 00011609 _____ () C:\WINDOWS\KB2936068-IE8.log
2014-04-09 16:55 - 2014-04-09 18:36 - 00013075 _____ () C:\WINDOWS\KB2922229.log
2014-04-04 20:18 - 2014-04-04 20:18 - 00090112 _____ () C:\WINDOWS\Minidump\Mini040414-01.dmp.old
2014-03-31 15:46 - 2014-04-25 18:07 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVG
==================== One Month Modified Files and Folders =======
2014-04-25 21:15 - 2014-04-25 21:15 - 00015602 _____ () C:\Documents and Settings\Petrákovi\Plocha\FRST.txt
2014-04-25 21:15 - 2014-04-25 21:14 - 00000000 ____D () C:\FRST
2014-04-25 21:15 - 2008-11-29 16:43 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Plocha
2014-04-25 21:14 - 2014-04-25 21:14 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\FRSTLauncher.exe
2014-04-25 21:14 - 2014-04-25 21:13 - 01049088 _____ (Farbar) C:\Documents and Settings\Petrákovi\Plocha\FRST.exe
2014-04-25 21:14 - 2013-11-15 19:20 - 02082621 _____ () C:\WINDOWS\WindowsUpdate.log
2014-04-25 21:14 - 2008-11-29 16:43 - 00000000 ___HD () C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací
2014-04-25 21:13 - 2008-11-29 17:32 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-04-25 21:12 - 2014-04-25 21:12 - 00000487 _____ () C:\ASCInit.log
2014-04-25 21:12 - 2008-11-29 17:32 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-04-25 21:11 - 2008-11-29 16:43 - 00000000 ____D () C:\Documents and Settings\Petrákovi
2014-04-25 21:09 - 2014-04-25 21:09 - 00112107 _____ (forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\VerzeOS.exe
2014-04-25 21:04 - 2013-12-01 15:07 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-04-25 21:02 - 2014-02-19 17:52 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-25 21:00 - 2013-11-12 19:29 - 00000000 ___RD () C:\Documents and Settings\Petrákovi\Dokumenty
2014-04-25 20:51 - 2011-12-04 18:36 - 00002563 _____ () C:\Documents and Settings\Petrákovi\Plocha\Microsoft Word.lnk
2014-04-25 19:45 - 2008-11-29 17:32 - 01004180 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-04-25 19:44 - 2013-12-20 20:44 - 00000157 _____ () C:\WINDOWS\wiadebug.log
2014-04-25 19:44 - 2013-12-20 20:44 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-04-25 19:43 - 2014-03-15 13:03 - 00000230 _____ () C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2014-04-25 19:43 - 2014-02-19 17:52 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-25 19:43 - 2013-11-16 14:31 - 00000280 _____ () C:\WINDOWS\Tasks\Driver Booster Update.job
2014-04-25 19:43 - 2013-11-16 14:31 - 00000278 _____ () C:\WINDOWS\Tasks\Driver Booster Scan.job
2014-04-25 19:43 - 2013-08-26 20:14 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\MFAData
2014-04-25 19:43 - 2008-11-29 16:42 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-04-25 18:30 - 2013-12-13 15:31 - 00032494 _____ () C:\WINDOWS\SchedLgU.Txt
2014-04-25 18:30 - 2008-11-29 16:43 - 00000272 ___SH () C:\Documents and Settings\Petrákovi\ntuser.ini
2014-04-25 18:07 - 2014-03-31 15:46 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVG
2014-04-25 18:07 - 2014-02-12 18:16 - 00049891 _____ () C:\WINDOWS\setupapi.log
2014-04-25 18:07 - 2013-09-29 20:20 - 00000725 _____ () C:\Documents and Settings\All Users\Plocha\AVG 2014.lnk
2014-04-25 15:40 - 2008-04-14 14:00 - 00012598 _____ () C:\WINDOWS\system32\wpa.dbl
2014-04-23 09:36 - 2013-11-29 17:50 - 00010030 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-04-22 17:49 - 2013-11-23 10:57 - 00000000 ____D () C:\Program Files\World of Warcraft Wrath of the Lich King
2014-04-22 17:26 - 2014-02-27 18:28 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Battle.net
2014-04-21 17:25 - 2008-11-29 16:43 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací
2014-04-21 15:46 - 2014-04-21 15:45 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\DAEMON Tools Lite
2014-04-21 15:44 - 2014-04-21 15:44 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2014-04-21 15:44 - 2008-11-29 17:31 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2014-04-21 14:32 - 2014-04-21 14:32 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-03.dmp
2014-04-21 14:32 - 2009-03-29 17:39 - 00000000 ____D () C:\WINDOWS\Minidump
2014-04-21 09:47 - 2014-04-17 07:25 - 00000000 ____D () C:\Program Files\AVG SafeGuard toolbar
2014-04-21 09:41 - 2014-04-21 09:41 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-02.dmp
2014-04-21 08:03 - 2014-04-21 08:03 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-01.dmp
2014-04-19 08:24 - 2013-11-15 20:55 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\ProductData
2014-04-18 15:02 - 2013-07-20 01:50 - 00199960 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsdriverx.sys
2014-04-17 09:52 - 2013-12-18 17:55 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVG Security Toolbar
2014-04-17 07:25 - 2014-04-17 07:25 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVG Secure Search
2014-04-17 07:25 - 2013-12-18 17:55 - 00000000 ____D () C:\WINDOWS\system32\cache
2014-04-16 18:13 - 2014-04-16 18:13 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\.mono
2014-04-16 17:49 - 2014-04-16 17:49 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\Unity
2014-04-16 17:48 - 2014-04-16 17:48 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Unity
2014-04-13 15:59 - 2014-04-13 15:59 - 00001607 _____ () C:\Documents and Settings\All Users\Plocha\Call of Duty 2.lnk
2014-04-13 15:59 - 2014-04-13 15:59 - 00000285 _____ () C:\WINDOWS\cod2demo.ini
2014-04-13 15:59 - 2014-04-13 15:59 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Activision
2014-04-13 15:59 - 2008-11-29 16:46 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-04-13 15:57 - 2014-04-13 14:34 - 00000000 ____D () C:\Program Files\Activision
2014-04-13 15:06 - 2008-04-14 14:00 - 00000227 _____ () C:\WINDOWS\system.ini
2014-04-13 11:31 - 2014-04-13 11:31 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\Media Player Classic
2014-04-13 11:31 - 2013-11-03 21:34 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\K-Lite Codec Pack
2014-04-13 11:31 - 2013-10-05 07:50 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
2014-04-13 11:29 - 2013-12-14 16:30 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CrystalDiskInfo
2014-04-13 11:27 - 2014-04-13 11:27 - 00001329 _____ () C:\Documents and Settings\Petrákovi\Plocha\Nero StartSmart.lnk
2014-04-13 11:27 - 2008-11-29 17:01 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Nero
2014-04-11 20:02 - 2014-04-11 20:02 - 00090112 _____ () C:\WINDOWS\Minidump\Mini041114-02.dmp
2014-04-11 18:30 - 2014-04-11 18:30 - 00090112 _____ () C:\WINDOWS\Minidump\Mini041114-01.dmp
2014-04-11 18:30 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-11 16:58 - 2014-02-27 19:10 - 00000000 ____D () C:\Program Files\Hearthstone
2014-04-11 16:57 - 2014-02-27 18:28 - 00000000 ____D () C:\Program Files\Battle.net
2014-04-11 16:02 - 2014-04-10 16:34 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Silverlight
2014-04-11 15:47 - 2014-04-11 15:47 - 00000000 __SHD () C:\Documents and Settings\UpdatusUser\IETldCache
2014-04-10 20:22 - 2014-04-10 20:22 - 00055224 _____ (StdLib) C:\WINDOWS\system32\Drivers\tStLib.sys
2014-04-10 20:22 - 2014-04-10 20:22 - 00000000 ___RD () C:\Documents and Settings\LocalService\Oblíbené položky
2014-04-10 20:22 - 2008-11-29 16:42 - 00000000 __SHD () C:\Documents and Settings\LocalService
2014-04-10 17:05 - 2008-11-29 16:43 - 00000000 ___RD () C:\Documents and Settings\Petrákovi\Nabídka Start\Programy\Po spuštění
2014-04-10 17:05 - 2008-11-29 16:43 - 00000000 ___RD () C:\Documents and Settings\Petrákovi\Nabídka Start\Programy
2014-04-10 17:02 - 2013-12-20 12:13 - 00131072 _____ () C:\WINDOWS\system32\config\WindowsPowerShell.evt
2014-04-10 16:17 - 2014-04-10 16:17 - 00000000 ___HD () C:\WINDOWS\PIF
2014-04-09 18:37 - 2011-12-04 18:31 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2014-04-09 18:36 - 2014-04-09 18:36 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2922229$
2014-04-09 18:36 - 2014-04-09 16:55 - 00013075 _____ () C:\WINDOWS\KB2922229.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00055647 _____ () C:\WINDOWS\FaxSetup.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00028314 _____ () C:\WINDOWS\ocgen.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00021231 _____ () C:\WINDOWS\tsoc.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00018461 _____ () C:\WINDOWS\comsetup.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00011187 _____ () C:\WINDOWS\ntdtcsetup.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00008866 _____ () C:\WINDOWS\iis6.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00003474 _____ () C:\WINDOWS\ocmsn.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00002781 _____ () C:\WINDOWS\msgsocm.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00001355 _____ () C:\WINDOWS\imsins.log
2014-04-09 18:35 - 2013-08-15 11:47 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-04-09 18:33 - 2014-04-09 18:32 - 00011609 _____ () C:\WINDOWS\KB2936068-IE8.log
2014-04-09 18:33 - 2014-02-14 17:53 - 00008912 _____ () C:\WINDOWS\updspapi.log
2014-04-09 18:33 - 2014-02-14 17:52 - 00001355 _____ () C:\WINDOWS\imsins.BAK
2014-04-09 18:33 - 2010-09-23 17:33 - 00000000 ____D () C:\WINDOWS\ie8updates
2014-04-09 18:33 - 2010-09-23 15:03 - 88028728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-04-06 15:38 - 2013-01-25 17:35 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-04-04 20:18 - 2014-04-04 20:18 - 00090112 _____ () C:\WINDOWS\Minidump\Mini040414-01.dmp.old
2014-03-31 16:11 - 2013-07-01 01:45 - 00108312 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgmfx86.sys
2014-03-31 16:11 - 2013-03-21 03:08 - 00211224 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgtdix.sys
2014-03-27 22:15 - 2013-07-20 01:50 - 00193304 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgldx86.sys
2014-03-27 22:14 - 2013-08-01 16:06 - 00123160 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgdiskx.sys
2014-03-27 22:04 - 2013-07-20 01:51 - 00238872 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avglogx.sys
2014-03-27 22:04 - 2013-07-20 01:50 - 00150296 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidshx.sys
2014-03-27 22:03 - 2013-07-10 01:32 - 00028440 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgrkx86.sys
2014-03-27 22:03 - 2013-03-01 10:32 - 00022296 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsshimx.sys
2014-03-27 16:59 - 2011-01-15 11:23 - 00000000 ____D () C:\Program Files\Google
Some content of TEMP:
====================
C:\Documents and Settings\Petrákovi\Local Settings\temp\promote-upx.exe
C:\Documents and Settings\Petrákovi\Local Settings\temp\SkypeSetup.exe
C:\Documents and Settings\Petrákovi\Local Settings\temp\UNINSTALL.EXE
==================== Bamital & volsnap Check =================
C:\WINDOWS\explorer.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\WINDOWS\system32\winlogon.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\WINDOWS\system32\svchost.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\WINDOWS\system32\services.exe
[2008-04-14 14:00] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\WINDOWS\system32\User32.dll
[2008-04-14 14:00] - [2008-04-14 14:00] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\WINDOWS\system32\userinit.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys
[2008-04-14 14:00] - [2008-04-14 14:00] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\Driver Booster Scan.job => C:\Program Files\IObit\Driver Booster\Scheduler.exe
Task: C:\WINDOWS\Tasks\Driver Booster Update.job => C:\Program Files\IObit\Driver Booster\AutoUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\WINDOWS\system32\dfrg.msc:SummaryInformation
AlternateDataStreams: C:\WINDOWS\system32\dfrg.msc:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
==================== Security Center ==================
AV: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Petrkovi\Plocha" je 1 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\FlatOut2\\FlatOut2.exe"="C:\\Program Files\\FlatOut2\\FlatOut2.exe:*:Enabled:FlatOut2"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\WINDOWS\\system32\\dplaysvr.exe"="C:\\WINDOWS\\system32\\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"="C:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\\Program Files\\Java\\jre7\\bin\\javaw.exe"="C:\\Program Files\\Java\\jre7\\bin\\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"="C:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"="C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\AVG\\AVG2014\\avgnsx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgnsx.exe:*:Enabled:Webov tt"
"C:\\Program Files\\AVG\\AVG2014\\avgdiagex.exe"="C:\\Program Files\\AVG\\AVG2014\\avgdiagex.exe:*:Enabled:AVG Diagnostika 2014"
"C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"C:\\Program Files\\AVG\\AVG2014\\avgemcx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgemcx.exe:*:Enabled:Obecn kontrola poty"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
"8317:TCP"="8317:TCP:*:Enabled:TechSmith Camtasia Studio"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 25-04-2014 03
Ran by Petrákovi (administrator) on B7099E6E73 on 25-04-2014 21:15:10
Running from C:\Documents and Settings\Petrákovi\Plocha
Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe
(Apple Computer, Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(IObit) C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 7\DiskDefrag.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5180432 2014-04-06] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [Printsrv] => c:\Windows\System32\Printing_Admin_Scripts\en-US\driverupd.vbs [559 2013-12-04] ()
HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [15678752 2013-10-29] (NVIDIA Corporation)
HKLM\...\Run: [NvMediaCenter] => C:\WINDOWS\system32\NvMcTray.dll [223008 2013-10-29] (NVIDIA Corporation)
HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k
HKLM\...\Run: [IObit Malware Fighter] => C:\Program Files\IObit\IObit Malware Fighter\IMF.exe [1596224 2014-04-17] (IObit)
HKU\.DEFAULT\...\Run: [Advanced SystemCare 6] => "C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart
HKU\.DEFAULT\...\Run: [Advanced SystemCare 7] => "C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
HKU\S-1-5-21-1214440339-616249376-1801674531-1004\...\Run: [AVG-Secure-Search-Update_0214c] => C:\Documents and Settings\Petrákovi\Data aplikací\AVG 0214c Campaign\AVG-Secure-Search-Update-0214c.exe /PROMPT /mid=bd76b91e008647d39002746fc4b9ae8b-ad1491be2ce6c122f6b66faa90e70c2decf7d34c /CMPID=0214c
HKU\S-1-5-21-1214440339-616249376-1801674531-1004\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2014-03-27] (Google Inc.)
HKU\S-1-5-21-1214440339-616249376-1801674531-1004\...\Run: [Akamai NetSession Interface] => "C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Akamai\netsession_win.exe"
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll (IObit)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM - ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll (IObit)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.100.254
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Petrákovi\Data aplikací\Mozilla\Firefox\Profiles\j4n5lkfn.default
FF SelectedSearchEngine: AVG Secure Search
FF Homepage: hxxp://www.seznam.cz/
FF Keyword.URL: user_pref("keyword.URL", "");
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @garmin.com/GpsControl - C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: WinToFlash Suggestor - C:\Documents and Settings\Petrákovi\Data aplikací\Mozilla\Firefox\Profiles\j4n5lkfn.default\Extensions\{285ACFBB-8E53-4feb-90E6-F02A128927F3}.xpi [2012-04-09]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-03-01]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-03-01]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKCU\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Documents and Settings\Petrákovi\Data aplikací\IDM\idmmzcc5
FF Extension: IDM CC - C:\Documents and Settings\Petrákovi\Data aplikací\IDM\idmmzcc5 [2013-11-15]
FF HKCU\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Documents and Settings\Petrákovi\Data aplikací\IDM\idmmzcc5
FF Extension: IDM CC - C:\Documents and Settings\Petrákovi\Data aplikací\IDM\idmmzcc5 [2013-11-15]
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR StartupUrls: "hxxp://www.seznam.cz/", "hxxp://www.evropa2.cz/"
CHR Extension: (Disk Google) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-23]
CHR Extension: (YouTube) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-23]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-23]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-23]
CHR Extension: (Gmail) - C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-23]
CHR HKLM\...\Chrome\Extension: [acaoakiamfeidcmgooclgeleejkbaecf] - C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.crx [2013-11-23]
CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2013-10-04]
CHR HKLM\...\Chrome\Extension: [jmolcgpienlcieaajfkkdamlngancncm] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2013-10-04]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-04]
========================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2013-01-25] (SUPERAntiSpyware.com)
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3645456 2014-04-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [291912 2014-03-27] (AVG Technologies CZ, s.r.o.)
S3 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [99936 2006-11-10] ()
R2 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [342336 2014-01-24] (IObit)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2013-10-08] (Oracle Corporation)
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit)
R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1386792 2013-12-16] (O&O Software GmbH)
S2 VIAKaraokeService; C:\WINDOWS\system32\viakaraokesrv.exe [27760 2011-06-14] (VIA Technologies, Inc.)
S3 WPFFontCache_v0400; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [X]
==================== Drivers (Whitelisted) ====================
R1 AmdK8; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [43008 2006-06-19] (Advanced Micro Devices)
R1 Avgdiskx; C:\WINDOWS\System32\DRIVERS\avgdiskx.sys [123160 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\WINDOWS\System32\DRIVERS\avgidsdriverx.sys [199960 2014-04-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\WINDOWS\System32\DRIVERS\avgidshx.sys [150296 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\WINDOWS\System32\DRIVERS\avgidsshimx.sys [22296 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\WINDOWS\System32\DRIVERS\avgldx86.sys [193304 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\WINDOWS\System32\DRIVERS\avglogx.sys [238872 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\WINDOWS\System32\DRIVERS\avgmfx86.sys [108312 2014-03-31] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\WINDOWS\System32\DRIVERS\avgrkx86.sys [28440 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\WINDOWS\System32\DRIVERS\avgtdix.sys [211224 2014-03-31] (AVG Technologies CZ, s.r.o.)
R3 cmuda3; C:\WINDOWS\System32\drivers\cmudax3.sys [1872192 2009-05-20] (C-Media Inc)
S4 FileMonitor; C:\Program Files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys [247968 2013-03-23] (IObit)
S3 gdrv; C:\WINDOWS\gdrv.sys [15600 2013-11-16] (Windows (R) 2000 DDK provider)
S3 IDMTDI; C:\WINDOWS\System32\DRIVERS\idmtdi.sys [120800 2013-10-02] (Tonec Inc.)
S3 MagicTune; C:\WINDOWS\System32\drivers\MTiCtwl.sys [13396 2005-10-21] ()
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [70912 2013-11-29] (NVIDIA Corporation)
R0 nvgts; C:\WINDOWS\System32\DRIVERS\nvgts.sys [168040 2013-11-29] (NVIDIA Corporation)
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [13824 2013-11-29] (NVIDIA Corporation)
R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [9856 2009-01-16] (Padus, Inc.)
R3 RegFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\wxp_x86\regfilter.sys [31776 2013-11-19] (IObit.com)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [14776 2013-05-22] ()
S3 tap0901; C:\WINDOWS\System32\DRIVERS\tap0901.sys [35088 2013-04-30] (The OpenVPN Project)
R1 tStLib; C:\WINDOWS\System32\drivers\tStLib.sys [55224 2014-04-10] (StdLib)
R3 UrlFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\wxp_x86\UrlFilter.sys [17360 2013-11-19] (IObit.com)
S3 VIAHdAudAddService; C:\WINDOWS\System32\drivers\viahduaa.sys [1806448 2011-06-14] (VIA Technologies, Inc.)
S3 IntcAzAudAddService; system32\drivers\RtkHDAud.sys [X]
S4 IntelIde; No ImagePath
S3 massfilter; system32\drivers\massfilter.sys [X]
U3 TlntSvr;
S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X]
S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X]
S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-25 21:15 - 2014-04-25 21:15 - 00015602 _____ () C:\Documents and Settings\Petrákovi\Plocha\FRST.txt
2014-04-25 21:14 - 2014-04-25 21:15 - 00000000 ____D () C:\FRST
2014-04-25 21:14 - 2014-04-25 21:14 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\FRSTLauncher.exe
2014-04-25 21:13 - 2014-04-25 21:14 - 01049088 _____ (Farbar) C:\Documents and Settings\Petrákovi\Plocha\FRST.exe
2014-04-25 21:12 - 2014-04-25 21:12 - 00000487 _____ () C:\ASCInit.log
2014-04-25 21:09 - 2014-04-25 21:09 - 00112107 _____ (forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\VerzeOS.exe
2014-04-21 15:45 - 2014-04-21 15:46 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\DAEMON Tools Lite
2014-04-21 15:44 - 2014-04-21 15:44 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2014-04-21 14:32 - 2014-04-21 14:32 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-03.dmp
2014-04-21 09:41 - 2014-04-21 09:41 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-02.dmp
2014-04-21 08:03 - 2014-04-21 08:03 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-01.dmp
2014-04-17 07:25 - 2014-04-21 09:47 - 00000000 ____D () C:\Program Files\AVG SafeGuard toolbar
2014-04-17 07:25 - 2014-04-17 07:25 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVG Secure Search
2014-04-16 18:13 - 2014-04-16 18:13 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\.mono
2014-04-16 17:49 - 2014-04-16 17:49 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\Unity
2014-04-16 17:48 - 2014-04-16 17:48 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Unity
2014-04-13 15:59 - 2014-04-13 15:59 - 00001607 _____ () C:\Documents and Settings\All Users\Plocha\Call of Duty 2.lnk
2014-04-13 15:59 - 2014-04-13 15:59 - 00000285 _____ () C:\WINDOWS\cod2demo.ini
2014-04-13 15:59 - 2014-04-13 15:59 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Activision
2014-04-13 14:34 - 2014-04-13 15:57 - 00000000 ____D () C:\Program Files\Activision
2014-04-13 11:31 - 2014-04-13 11:31 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\Media Player Classic
2014-04-13 11:27 - 2014-04-13 11:27 - 00001329 _____ () C:\Documents and Settings\Petrákovi\Plocha\Nero StartSmart.lnk
2014-04-11 20:02 - 2014-04-11 20:02 - 00090112 _____ () C:\WINDOWS\Minidump\Mini041114-02.dmp
2014-04-11 18:30 - 2014-04-11 18:30 - 00090112 _____ () C:\WINDOWS\Minidump\Mini041114-01.dmp
2014-04-11 15:47 - 2014-04-11 15:47 - 00000000 __SHD () C:\Documents and Settings\UpdatusUser\IETldCache
2014-04-10 20:22 - 2014-04-10 20:22 - 00055224 _____ (StdLib) C:\WINDOWS\system32\Drivers\tStLib.sys
2014-04-10 20:22 - 2014-04-10 20:22 - 00000000 ___RD () C:\Documents and Settings\LocalService\Oblíbené položky
2014-04-10 16:34 - 2014-04-11 18:30 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-10 16:34 - 2014-04-11 16:02 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Silverlight
2014-04-10 16:17 - 2014-04-10 16:17 - 00000000 ___HD () C:\WINDOWS\PIF
2014-04-09 18:36 - 2014-04-09 18:36 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2922229$
2014-04-09 18:32 - 2014-04-09 18:33 - 00011609 _____ () C:\WINDOWS\KB2936068-IE8.log
2014-04-09 16:55 - 2014-04-09 18:36 - 00013075 _____ () C:\WINDOWS\KB2922229.log
2014-04-04 20:18 - 2014-04-04 20:18 - 00090112 _____ () C:\WINDOWS\Minidump\Mini040414-01.dmp.old
2014-03-31 15:46 - 2014-04-25 18:07 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVG
==================== One Month Modified Files and Folders =======
2014-04-25 21:15 - 2014-04-25 21:15 - 00015602 _____ () C:\Documents and Settings\Petrákovi\Plocha\FRST.txt
2014-04-25 21:15 - 2014-04-25 21:14 - 00000000 ____D () C:\FRST
2014-04-25 21:15 - 2008-11-29 16:43 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Plocha
2014-04-25 21:14 - 2014-04-25 21:14 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\FRSTLauncher.exe
2014-04-25 21:14 - 2014-04-25 21:13 - 01049088 _____ (Farbar) C:\Documents and Settings\Petrákovi\Plocha\FRST.exe
2014-04-25 21:14 - 2013-11-15 19:20 - 02082621 _____ () C:\WINDOWS\WindowsUpdate.log
2014-04-25 21:14 - 2008-11-29 16:43 - 00000000 ___HD () C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací
2014-04-25 21:13 - 2008-11-29 17:32 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-04-25 21:12 - 2014-04-25 21:12 - 00000487 _____ () C:\ASCInit.log
2014-04-25 21:12 - 2008-11-29 17:32 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-04-25 21:11 - 2008-11-29 16:43 - 00000000 ____D () C:\Documents and Settings\Petrákovi
2014-04-25 21:09 - 2014-04-25 21:09 - 00112107 _____ (forum.viry.cz) C:\Documents and Settings\Petrákovi\Plocha\VerzeOS.exe
2014-04-25 21:04 - 2013-12-01 15:07 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-04-25 21:02 - 2014-02-19 17:52 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-25 21:00 - 2013-11-12 19:29 - 00000000 ___RD () C:\Documents and Settings\Petrákovi\Dokumenty
2014-04-25 20:51 - 2011-12-04 18:36 - 00002563 _____ () C:\Documents and Settings\Petrákovi\Plocha\Microsoft Word.lnk
2014-04-25 19:45 - 2008-11-29 17:32 - 01004180 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-04-25 19:44 - 2013-12-20 20:44 - 00000157 _____ () C:\WINDOWS\wiadebug.log
2014-04-25 19:44 - 2013-12-20 20:44 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-04-25 19:43 - 2014-03-15 13:03 - 00000230 _____ () C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2014-04-25 19:43 - 2014-02-19 17:52 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-25 19:43 - 2013-11-16 14:31 - 00000280 _____ () C:\WINDOWS\Tasks\Driver Booster Update.job
2014-04-25 19:43 - 2013-11-16 14:31 - 00000278 _____ () C:\WINDOWS\Tasks\Driver Booster Scan.job
2014-04-25 19:43 - 2013-08-26 20:14 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\MFAData
2014-04-25 19:43 - 2008-11-29 16:42 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-04-25 18:30 - 2013-12-13 15:31 - 00032494 _____ () C:\WINDOWS\SchedLgU.Txt
2014-04-25 18:30 - 2008-11-29 16:43 - 00000272 ___SH () C:\Documents and Settings\Petrákovi\ntuser.ini
2014-04-25 18:07 - 2014-03-31 15:46 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVG
2014-04-25 18:07 - 2014-02-12 18:16 - 00049891 _____ () C:\WINDOWS\setupapi.log
2014-04-25 18:07 - 2013-09-29 20:20 - 00000725 _____ () C:\Documents and Settings\All Users\Plocha\AVG 2014.lnk
2014-04-25 15:40 - 2008-04-14 14:00 - 00012598 _____ () C:\WINDOWS\system32\wpa.dbl
2014-04-23 09:36 - 2013-11-29 17:50 - 00010030 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-04-22 17:49 - 2013-11-23 10:57 - 00000000 ____D () C:\Program Files\World of Warcraft Wrath of the Lich King
2014-04-22 17:26 - 2014-02-27 18:28 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Battle.net
2014-04-21 17:25 - 2008-11-29 16:43 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací
2014-04-21 15:46 - 2014-04-21 15:45 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\DAEMON Tools Lite
2014-04-21 15:44 - 2014-04-21 15:44 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2014-04-21 15:44 - 2008-11-29 17:31 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2014-04-21 14:32 - 2014-04-21 14:32 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-03.dmp
2014-04-21 14:32 - 2009-03-29 17:39 - 00000000 ____D () C:\WINDOWS\Minidump
2014-04-21 09:47 - 2014-04-17 07:25 - 00000000 ____D () C:\Program Files\AVG SafeGuard toolbar
2014-04-21 09:41 - 2014-04-21 09:41 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-02.dmp
2014-04-21 08:03 - 2014-04-21 08:03 - 00090112 _____ () C:\WINDOWS\Minidump\Mini042114-01.dmp
2014-04-19 08:24 - 2013-11-15 20:55 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\ProductData
2014-04-18 15:02 - 2013-07-20 01:50 - 00199960 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsdriverx.sys
2014-04-17 09:52 - 2013-12-18 17:55 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVG Security Toolbar
2014-04-17 07:25 - 2014-04-17 07:25 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVG Secure Search
2014-04-17 07:25 - 2013-12-18 17:55 - 00000000 ____D () C:\WINDOWS\system32\cache
2014-04-16 18:13 - 2014-04-16 18:13 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\.mono
2014-04-16 17:49 - 2014-04-16 17:49 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\Unity
2014-04-16 17:48 - 2014-04-16 17:48 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Local Settings\Data aplikací\Unity
2014-04-13 15:59 - 2014-04-13 15:59 - 00001607 _____ () C:\Documents and Settings\All Users\Plocha\Call of Duty 2.lnk
2014-04-13 15:59 - 2014-04-13 15:59 - 00000285 _____ () C:\WINDOWS\cod2demo.ini
2014-04-13 15:59 - 2014-04-13 15:59 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Activision
2014-04-13 15:59 - 2008-11-29 16:46 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-04-13 15:57 - 2014-04-13 14:34 - 00000000 ____D () C:\Program Files\Activision
2014-04-13 15:06 - 2008-04-14 14:00 - 00000227 _____ () C:\WINDOWS\system.ini
2014-04-13 11:31 - 2014-04-13 11:31 - 00000000 ____D () C:\Documents and Settings\Petrákovi\Data aplikací\Media Player Classic
2014-04-13 11:31 - 2013-11-03 21:34 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\K-Lite Codec Pack
2014-04-13 11:31 - 2013-10-05 07:50 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
2014-04-13 11:29 - 2013-12-14 16:30 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CrystalDiskInfo
2014-04-13 11:27 - 2014-04-13 11:27 - 00001329 _____ () C:\Documents and Settings\Petrákovi\Plocha\Nero StartSmart.lnk
2014-04-13 11:27 - 2008-11-29 17:01 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Nero
2014-04-11 20:02 - 2014-04-11 20:02 - 00090112 _____ () C:\WINDOWS\Minidump\Mini041114-02.dmp
2014-04-11 18:30 - 2014-04-11 18:30 - 00090112 _____ () C:\WINDOWS\Minidump\Mini041114-01.dmp
2014-04-11 18:30 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-11 16:58 - 2014-02-27 19:10 - 00000000 ____D () C:\Program Files\Hearthstone
2014-04-11 16:57 - 2014-02-27 18:28 - 00000000 ____D () C:\Program Files\Battle.net
2014-04-11 16:02 - 2014-04-10 16:34 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Silverlight
2014-04-11 15:47 - 2014-04-11 15:47 - 00000000 __SHD () C:\Documents and Settings\UpdatusUser\IETldCache
2014-04-10 20:22 - 2014-04-10 20:22 - 00055224 _____ (StdLib) C:\WINDOWS\system32\Drivers\tStLib.sys
2014-04-10 20:22 - 2014-04-10 20:22 - 00000000 ___RD () C:\Documents and Settings\LocalService\Oblíbené položky
2014-04-10 20:22 - 2008-11-29 16:42 - 00000000 __SHD () C:\Documents and Settings\LocalService
2014-04-10 17:05 - 2008-11-29 16:43 - 00000000 ___RD () C:\Documents and Settings\Petrákovi\Nabídka Start\Programy\Po spuštění
2014-04-10 17:05 - 2008-11-29 16:43 - 00000000 ___RD () C:\Documents and Settings\Petrákovi\Nabídka Start\Programy
2014-04-10 17:02 - 2013-12-20 12:13 - 00131072 _____ () C:\WINDOWS\system32\config\WindowsPowerShell.evt
2014-04-10 16:17 - 2014-04-10 16:17 - 00000000 ___HD () C:\WINDOWS\PIF
2014-04-09 18:37 - 2011-12-04 18:31 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2014-04-09 18:36 - 2014-04-09 18:36 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2922229$
2014-04-09 18:36 - 2014-04-09 16:55 - 00013075 _____ () C:\WINDOWS\KB2922229.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00055647 _____ () C:\WINDOWS\FaxSetup.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00028314 _____ () C:\WINDOWS\ocgen.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00021231 _____ () C:\WINDOWS\tsoc.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00018461 _____ () C:\WINDOWS\comsetup.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00011187 _____ () C:\WINDOWS\ntdtcsetup.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00008866 _____ () C:\WINDOWS\iis6.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00003474 _____ () C:\WINDOWS\ocmsn.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00002781 _____ () C:\WINDOWS\msgsocm.log
2014-04-09 18:36 - 2014-02-14 17:52 - 00001355 _____ () C:\WINDOWS\imsins.log
2014-04-09 18:35 - 2013-08-15 11:47 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-04-09 18:33 - 2014-04-09 18:32 - 00011609 _____ () C:\WINDOWS\KB2936068-IE8.log
2014-04-09 18:33 - 2014-02-14 17:53 - 00008912 _____ () C:\WINDOWS\updspapi.log
2014-04-09 18:33 - 2014-02-14 17:52 - 00001355 _____ () C:\WINDOWS\imsins.BAK
2014-04-09 18:33 - 2010-09-23 17:33 - 00000000 ____D () C:\WINDOWS\ie8updates
2014-04-09 18:33 - 2010-09-23 15:03 - 88028728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-04-06 15:38 - 2013-01-25 17:35 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-04-04 20:18 - 2014-04-04 20:18 - 00090112 _____ () C:\WINDOWS\Minidump\Mini040414-01.dmp.old
2014-03-31 16:11 - 2013-07-01 01:45 - 00108312 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgmfx86.sys
2014-03-31 16:11 - 2013-03-21 03:08 - 00211224 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgtdix.sys
2014-03-27 22:15 - 2013-07-20 01:50 - 00193304 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgldx86.sys
2014-03-27 22:14 - 2013-08-01 16:06 - 00123160 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgdiskx.sys
2014-03-27 22:04 - 2013-07-20 01:51 - 00238872 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avglogx.sys
2014-03-27 22:04 - 2013-07-20 01:50 - 00150296 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidshx.sys
2014-03-27 22:03 - 2013-07-10 01:32 - 00028440 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgrkx86.sys
2014-03-27 22:03 - 2013-03-01 10:32 - 00022296 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsshimx.sys
2014-03-27 16:59 - 2011-01-15 11:23 - 00000000 ____D () C:\Program Files\Google
Some content of TEMP:
====================
C:\Documents and Settings\Petrákovi\Local Settings\temp\promote-upx.exe
C:\Documents and Settings\Petrákovi\Local Settings\temp\SkypeSetup.exe
C:\Documents and Settings\Petrákovi\Local Settings\temp\UNINSTALL.EXE
==================== Bamital & volsnap Check =================
C:\WINDOWS\explorer.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 1034240 ____A (Microsoft Corporation) 27afd587c462e280ee046b8cca3c2cd1
C:\WINDOWS\system32\winlogon.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0507904 ____A (Microsoft Corporation) cddb1f8e1aea356f3ad106f2cf9b7fea
C:\WINDOWS\system32\svchost.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0014336 ____A (Microsoft Corporation) be4a520e29b6391f49e79ccc52044d93
C:\WINDOWS\system32\services.exe
[2008-04-14 14:00] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 9ef697af07bb8dd82c3b02ca953a95b7
C:\WINDOWS\system32\User32.dll
[2008-04-14 14:00] - [2008-04-14 14:00] - 0578560 ____A (Microsoft Corporation) e16e0990967374e76f3e40cacafd3d53
C:\WINDOWS\system32\userinit.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0026112 ____A (Microsoft Corporation) 7dc1830f22e7d275b438127b68030239
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys
[2008-04-14 14:00] - [2008-04-14 14:00] - 0052480 ____A (Microsoft Corporation) 28a4b296b47782173c346e376cb374d1
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\Driver Booster Scan.job => C:\Program Files\IObit\Driver Booster\Scheduler.exe
Task: C:\WINDOWS\Tasks\Driver Booster Update.job => C:\Program Files\IObit\Driver Booster\AutoUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\WINDOWS\system32\dfrg.msc:SummaryInformation
AlternateDataStreams: C:\WINDOWS\system32\dfrg.msc:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
==================== Security Center ==================
AV: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Petrkovi\Plocha" je 1 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\FlatOut2\\FlatOut2.exe"="C:\\Program Files\\FlatOut2\\FlatOut2.exe:*:Enabled:FlatOut2"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\WINDOWS\\system32\\dplaysvr.exe"="C:\\WINDOWS\\system32\\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"="C:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\\Program Files\\Java\\jre7\\bin\\javaw.exe"="C:\\Program Files\\Java\\jre7\\bin\\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"="C:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"="C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\AVG\\AVG2014\\avgnsx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgnsx.exe:*:Enabled:Webov tt"
"C:\\Program Files\\AVG\\AVG2014\\avgdiagex.exe"="C:\\Program Files\\AVG\\AVG2014\\avgdiagex.exe:*:Enabled:AVG Diagnostika 2014"
"C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"C:\\Program Files\\AVG\\AVG2014\\avgemcx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgemcx.exe:*:Enabled:Obecn kontrola poty"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
"8317:TCP"="8317:TCP:*:Enabled:TechSmith Camtasia Studio"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================