Prosím kontrola logu
Napsal: 14 srp 2014 19:22
Zdravím,
přítelkyně odjela do Paříže tak jsem dostal svolení vyčistit s vaší pomocí její notebook.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:14-08-2014 01
Ran by martina (administrator) on MARTINA-NOTAS on 14-08-2014 20:19:52
Running from C:\Documents and Settings\martina\Plocha
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Cisco Systems, Inc.) C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANOTIF.EXE
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Google) C:\Program Files\Google\Google Talk\googletalk.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(VŠB-TU Ostrava) C:\Program Files\SafeQ\SafeQ_cli.exe
(Cisco Systems, Inc.) C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Dropbox, Inc.) C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\Dropbox.exe
(Agere Systems) C:\WINDOWS\system32\agrsmsvc.exe
() C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe
(C-Dilla Ltd) C:\WINDOWS\system32\drivers\CDANTSRV.EXE
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMON.EXE
(Macrovision Corporation) C:\Program Files\SCIA\crack\Flexlm\Lmgrd.exe
(Macrovision Corporation) C:\Program Files\SCIA\crack\Flexlm\Lmgrd.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
() C:\Program Files\SCIA\crack\Flexlm\Scia.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\tv_w32.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Microsoft Corporation) C:\WINDOWS\system32\ntvdm.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\dfsvc.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(forum.viry.cz) C:\Documents and Settings\martina\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
Winlogon\Notify\avgrsstarter: C:\WINDOWS\system32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\Run: [Google Update] => C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [136176 2011-10-27] (Google Inc.)
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [17148552 2012-02-29] (Skype Technologies S.A.)
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\MountPoints2: {22aedc18-6290-11e0-b980-00248167d4db} - I:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\MountPoints2: {3528fea7-0409-11df-b71c-00248167d4db} - G:\Toshiba\Launcher\start.exe
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\MountPoints2: {41af6ca6-61bd-11e0-b97f-000000000000} - I:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\MountPoints2: {a7f144fc-cf10-11df-b84f-00248167d4db} - H:\setup_vmc_lite.exe /checkApplicationPresence
Startup: C:\Documents and Settings\martina\Nabídka Start\Programy\Po spuštění\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt1" -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt2" -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt3" -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt4" -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt5" -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt6" -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt7" -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt8" -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: Správa překryvné ikony digitálních podpisů AutoCADu -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll (Autodesk, Inc.)
BootExecute: autocheck autochk * C:\PROGRA~1\AVG\AVG2014\avgrsx.exe /sync /restart
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/?rlz=1W4CHBA_csCZ566
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... &ch_id=osd
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?ocid=OIE8HP&PC=B8MC
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
SearchScopes: HKLM - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL = http://us.yhs.search.yahoo.com/avg/sear ... earchTerms}
SearchScopes: HKCU - {4F11ACBB-393F-4c86-A214-FF3D0D155CC3} URL = http://search.burn4free-toolbar.com/sea ... arch-field
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKCU - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL = http://search.avg.com/route/?d=4b3d2cf0 ... te=us&nt=1
BHO: AVG Safe Search -> {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} -> C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: JQSIEStartDetectorImpl Class -> {E7E6F031-17CE-4C07-BC86-EABFE594F69C} -> C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKCU - No Name - {4F11ACBB-393F-4C86-A214-FF3D0D155CC3} - No File
Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.136
FireFox:
========
FF ProfilePath: C:\Documents and Settings\martina\Data aplikací\Mozilla\Firefox\Profiles\n6t5a4n4.default
FF Homepage: chrome://speeddial/content/speeddial.xul
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin -> C:\Documents and Settings\martina\Data aplikací\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin -> C:\Documents and Settings\martina\Data aplikací\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Documents and Settings\martina\Data aplikací\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Documents and Settings\martina\Data aplikací\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Speed Dial - C:\Documents and Settings\martina\Data aplikací\Mozilla\Firefox\Profiles\n6t5a4n4.default\Extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi [2014-03-06]
FF Extension: Adblock Plus - C:\Documents and Settings\martina\Data aplikací\Mozilla\Firefox\Profiles\n6t5a4n4.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-04]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-09-22]
FF HKLM\...\Firefox\Extensions: [jqs@sun.com] - C:\Program Files\Java\jre6\lib\deploy\jqs\ff
FF Extension: Java Quick Starter - C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2010-04-11]
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR StartupUrls: "chrome://newtab/"
CHR Extension: (HD for YouTube™) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\akjbfncbadcmnkopckegnmjgihagponf [2014-01-16]
CHR Extension: (Angry Birds) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2013-12-10]
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-10]
CHR Extension: (Disk Google) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-10]
CHR Extension: (YouTube) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-10]
CHR Extension: (Bounceball) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bnonnffemhpfblohaicmfmofbfaaoobf [2013-12-10]
CHR Extension: (Adblock Plus) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-12-10]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-10]
CHR Extension: (Balloono) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fmggmlpijnjmhdekfigfbkookpdfodhf [2013-12-10]
CHR Extension: (Mail Checker Plus for Google Mail™) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\gffjhibehnempbkeheiccaincokdjbfe [2013-12-10]
CHR Extension: (Grass) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\mmiboiefncpfjihjdedpaoammipkilla [2013-12-10]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-10]
CHR Extension: (Short url using official goo.gl api) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\phncbknmjfhhegegchdflhepkoibbbie [2013-12-10]
CHR Extension: (Gmail) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-10]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] ()
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3241488 2014-06-27] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-06-17] (AVG Technologies CZ, s.r.o.)
R2 C-DillaSrv; C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE [32256 2001-04-06] (C-Dilla Ltd) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1044816 2013-09-27] (Flexera Software, Inc.)
S2 gupdate1ca411a4416cfc2; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-09-29] (Google Inc.)
R2 Nexis 3.5 license server - dT 2004; C:\Program Files\SCIA\crack\Flexlm\Lmgrd.exe [974848 2008-04-02] (Macrovision Corporation) [File not signed]
R2 vpnagent; C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe [560528 2013-12-13] (Cisco Systems, Inc.)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 acsint; C:\WINDOWS\System32\DRIVERS\acsint.sys [40304 2013-12-13] (Cisco Systems, Inc.)
S3 acsmux; C:\WINDOWS\System32\DRIVERS\acsmux.sys [58736 2013-12-13] (Cisco Systems, Inc.)
R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [165376 2012-02-29] () [File not signed]
R1 Avgdiskx; C:\WINDOWS\System32\DRIVERS\avgdiskx.sys [121624 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriverl; C:\WINDOWS\System32\DRIVERS\avgidsdriverlx.sys [190232 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\WINDOWS\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\WINDOWS\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AvgLdx86; C:\WINDOWS\System32\DRIVERS\avgldx86.sys [188696 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\WINDOWS\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 AvgMfx86; C:\WINDOWS\System32\DRIVERS\avgmfx86.sys [98584 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AvgTdiX; C:\WINDOWS\System32\DRIVERS\avgtdix.sys [197400 2014-06-17] (AVG Technologies CZ, s.r.o.)
R3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [74688 2008-04-03] (Broadcom Corporation.)
S3 C-Dilla; C:\WINDOWS\system32\drivers\CDANT.SYS [56592 2001-04-06] (Macrovision) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 eabfiltr; C:\WINDOWS\System32\DRIVERS\eabfiltr.sys [7808 2005-09-19] (Hewlett-Packard Development Company, L.P.)
S3 eabusb; C:\WINDOWS\System32\DRIVERS\eabusb.sys [5760 2005-09-19] (Hewlett-Packard Development Company, L.P.)
S3 hwusbfake; C:\WINDOWS\System32\DRIVERS\ewusbfake.sys [100480 2009-07-23] (Huawei Technologies Co., Ltd.)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [18048 2012-02-29] () [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NETw5x32; C:\WINDOWS\System32\DRIVERS\NETw5x32.sys [3626112 2008-04-28] (Intel Corporation)
S3 SCR3XX2K; C:\WINDOWS\System32\DRIVERS\SCR3XX2K.sys [56448 2007-06-21] (SCM Microsystems Inc.)
R0 SFAUDIO; C:\WINDOWS\System32\drivers\sfaudio.sys [24064 2008-03-28] (Sonic Focus, Inc)
R3 SNP2UVC; C:\WINDOWS\System32\DRIVERS\snp2uvc.sys [1804160 2008-04-10] ()
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [691696 2009-12-12] () [File not signed]
R3 yukonwxp; C:\WINDOWS\System32\DRIVERS\yk51x86.sys [296320 2008-04-04] (Marvell)
U3 ajbbjfed; C:\WINDOWS\system32\Drivers\ajbbjfed.sys [0 ] (Microsoft Corporation)
S2 adfs; No ImagePath
U2 CertPropSvc;
S4 IntelIde; No ImagePath
S3 PCASp50; System32\Drivers\PCASp50.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U2 Sentinel; \SystemRoot\System32\Drivers\SENTINEL.SYS
S3 SNPSTD3; system32\DRIVERS\snpstd3.sys [X]
U1 WS2IFSL;
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-14 20:19 - 2014-08-14 20:20 - 00021268 _____ () C:\Documents and Settings\martina\Plocha\FRST.txt
2014-08-14 20:19 - 2014-08-14 20:19 - 00000000 ____D () C:\FRST
2014-08-14 20:17 - 2014-08-14 20:17 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\martina\Plocha\FRSTLauncher.exe
2014-08-14 20:16 - 2014-08-14 20:16 - 01092096 _____ (Farbar) C:\Documents and Settings\martina\Plocha\FRST.exe
2014-08-14 20:06 - 2014-08-14 20:06 - 00000788 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200608.reg
2014-08-14 20:06 - 2014-08-14 20:06 - 00000290 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200621.reg
2014-08-14 20:05 - 2014-08-14 20:05 - 00083942 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200525.reg
2014-08-14 20:05 - 2014-08-14 20:05 - 00001710 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200543.reg
2014-08-14 19:55 - 2014-08-14 19:55 - 00000000 ____D () C:\WINDOWS\LastGood
2014-08-07 19:18 - 2014-08-07 21:11 - 00004383 _____ () C:\Documents and Settings\martina\Plocha\PAŘÍŽ.txt
2014-08-06 15:37 - 2014-08-06 15:37 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-25 16:50 - 2014-07-25 15:47 - 08143775 _____ () C:\Documents and Settings\martina\Plocha\MOVIE.mpeg
2014-07-19 21:35 - 2014-07-19 21:37 - 00000000 ____D () C:\Documents and Settings\martina\Plocha\mpp
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-14 20:20 - 2014-08-14 20:19 - 00021268 _____ () C:\Documents and Settings\martina\Plocha\FRST.txt
2014-08-14 20:20 - 2009-08-29 10:23 - 00000000 ____D () C:\Documents and Settings\martina\Local Settings\Temp
2014-08-14 20:19 - 2014-08-14 20:19 - 00000000 ____D () C:\FRST
2014-08-14 20:19 - 2009-08-29 10:23 - 00000000 ___HD () C:\Documents and Settings\martina\Local Settings\Data aplikací
2014-08-14 20:19 - 2009-08-29 10:23 - 00000000 ____D () C:\Documents and Settings\martina\Plocha
2014-08-14 20:17 - 2014-08-14 20:17 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\martina\Plocha\FRSTLauncher.exe
2014-08-14 20:16 - 2014-08-14 20:16 - 01092096 _____ (Farbar) C:\Documents and Settings\martina\Plocha\FRST.exe
2014-08-14 20:13 - 2009-09-29 17:34 - 00000000 ____D () C:\Documents and Settings\martina\Data aplikací\Skype
2014-08-14 20:13 - 2009-08-29 10:23 - 00000000 ___RD () C:\Documents and Settings\martina\Nabídka Start\Programy
2014-08-14 20:13 - 2009-08-29 10:23 - 00000000 ____D () C:\Documents and Settings\martina
2014-08-14 20:06 - 2014-08-14 20:06 - 00000788 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200608.reg
2014-08-14 20:06 - 2014-08-14 20:06 - 00000290 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200621.reg
2014-08-14 20:06 - 2009-08-29 10:23 - 00000000 ___RD () C:\Documents and Settings\martina\Dokumenty
2014-08-14 20:05 - 2014-08-14 20:05 - 00083942 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200525.reg
2014-08-14 20:05 - 2014-08-14 20:05 - 00001710 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200543.reg
2014-08-14 20:01 - 2011-12-13 14:39 - 00000000 ____D () C:\Documents and Settings\martina\Local Settings\Data aplikací\Deployment
2014-08-14 20:00 - 2011-04-06 16:32 - 00000000 ____D () C:\Program Files\Yawcam
2014-08-14 20:00 - 2009-08-29 12:08 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-08-14 20:00 - 2009-08-29 12:08 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-08-14 20:00 - 2009-08-29 12:01 - 00000000 ____D () C:\WINDOWS\twain_32
2014-08-14 20:00 - 2009-08-29 10:28 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-08-14 20:00 - 2006-03-02 14:00 - 00001115 _____ () C:\WINDOWS\win.ini
2014-08-14 19:59 - 2012-12-18 22:09 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\KB Piano
2014-08-14 19:59 - 2009-08-29 12:10 - 00000325 ____N () C:\WINDOWS\wiadebug.log
2014-08-14 19:58 - 2013-12-10 17:16 - 00001813 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-08-14 19:58 - 2012-11-17 13:22 - 00000000 ____D () C:\NEXIS32
2014-08-14 19:58 - 2012-08-24 18:52 - 00000942 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-14 19:56 - 2009-08-29 10:30 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups
2014-08-14 19:56 - 2009-08-29 10:28 - 00000000 ____D () C:\Program Files\Hewlett-Packard
2014-08-14 19:55 - 2014-08-14 19:55 - 00000000 ____D () C:\WINDOWS\LastGood
2014-08-14 19:54 - 2010-03-29 13:35 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Google
2014-08-14 19:54 - 2009-09-08 08:56 - 00000000 ____D () C:\Program Files\Google
2014-08-14 19:54 - 2009-08-29 10:22 - 00032504 ____N () C:\WINDOWS\SchedLgU.Txt
2014-08-14 19:53 - 2013-06-07 12:53 - 00000000 ____D () C:\Documents and Settings\martina\Local Settings\Data aplikací\Flvto Youtube Downloader
2014-08-14 19:49 - 2013-11-19 14:44 - 00000000 ____D () C:\Documents and Settings\All Users\Dokumenty\ArcPad
2014-08-14 19:47 - 2009-11-18 21:49 - 00000000 ____D () C:\Program Files\DivX
2014-08-14 19:46 - 2011-12-23 14:42 - 00000000 ____D () C:\Program Files\CdCoverCreator
2014-08-14 19:45 - 2011-11-07 20:12 - 00000000 ____D () C:\WINDOWS\pss
2014-08-14 19:45 - 2009-08-29 10:59 - 00000000 ____D () C:\Program Files\Common Files\Autodesk Shared
2014-08-14 19:45 - 2009-08-29 10:23 - 00000000 ___RD () C:\Documents and Settings\martina\Nabídka Start\Programy\Po spuštění
2014-08-14 19:39 - 2009-08-29 10:18 - 01059633 ____N () C:\WINDOWS\WindowsUpdate.log
2014-08-14 19:38 - 2013-03-26 20:19 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\MFAData
2014-08-14 19:37 - 2012-02-28 19:00 - 00001034 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-2077806209-839522115-1003UA.job
2014-08-14 19:35 - 2012-02-13 11:02 - 00000000 ___RD () C:\Documents and Settings\martina\Dokumenty\Dropbox
2014-08-14 19:35 - 2012-02-13 11:01 - 00000000 ____D () C:\Documents and Settings\martina\Data aplikací\Dropbox
2014-08-14 19:35 - 2006-03-02 14:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2014-08-14 19:33 - 2009-08-29 12:10 - 00000049 ____N () C:\WINDOWS\wiaservc.log
2014-08-14 19:32 - 2014-03-27 19:34 - 00000226 _____ () C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2014-08-14 19:32 - 2012-08-24 18:52 - 00000938 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-14 19:32 - 2009-08-29 10:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-08-11 16:00 - 2012-03-22 21:03 - 03997696 _____ () C:\WINDOWS\system32\config\ACVPN.evt
2014-08-11 16:00 - 2009-08-29 10:23 - 00000178 ___SH () C:\Documents and Settings\martina\ntuser.ini
2014-08-11 15:52 - 2012-01-28 15:58 - 00008192 ___SH () C:\WINDOWS\Thumbs.db
2014-08-10 22:00 - 2009-11-01 23:32 - 00000008 _____ () C:\debugoutput.txt
2014-08-10 19:06 - 2010-02-11 20:11 - 00395776 ___SH () C:\Documents and Settings\martina\Plocha\Thumbs.db
2014-08-10 18:57 - 2014-06-17 15:47 - 00000000 ____D () C:\Documents and Settings\martina\Plocha\PAŘÍŽ
2014-08-08 15:00 - 2014-03-27 19:34 - 00000220 _____ () C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
2014-08-07 21:11 - 2014-08-07 19:18 - 00004383 _____ () C:\Documents and Settings\martina\Plocha\PAŘÍŽ.txt
2014-08-07 18:56 - 2014-01-30 12:19 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-08-07 10:02 - 2014-04-01 11:53 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVG
2014-08-07 10:02 - 2013-09-29 19:53 - 00000702 _____ () C:\Documents and Settings\All Users\Plocha\AVG 2014.lnk
2014-08-07 08:39 - 2013-08-15 18:21 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-08-07 08:37 - 2012-02-28 19:00 - 00000982 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-2077806209-839522115-1003Core.job
2014-08-07 08:33 - 2009-09-24 16:56 - 93585272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-08-06 15:37 - 2014-08-06 15:37 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-08-06 14:37 - 2009-08-29 10:23 - 00000000 __RHD () C:\Documents and Settings\martina\Data aplikací
2014-08-06 14:36 - 2012-02-13 11:02 - 00000999 _____ () C:\Documents and Settings\martina\Plocha\Dropbox.lnk
2014-08-06 14:36 - 2012-02-13 11:01 - 00000000 ____D () C:\Documents and Settings\martina\Nabídka Start\Programy\Dropbox
2014-08-01 18:44 - 2009-09-08 09:04 - 00000000 ____D () C:\Documents and Settings\martina\Data aplikací\XnView
2014-08-01 18:37 - 2009-09-22 11:31 - 00000000 ____D () C:\Documents and Settings\martina\Data aplikací\vlc
2014-07-25 15:47 - 2014-07-25 16:50 - 08143775 _____ () C:\Documents and Settings\martina\Plocha\MOVIE.mpeg
2014-07-24 18:48 - 2009-08-30 07:12 - 00132608 _____ () C:\Documents and Settings\martina\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-07-23 22:14 - 2009-08-31 18:25 - 00000000 ___RD () C:\Documents and Settings\martina\Dokumenty\Filmy
2014-07-19 21:37 - 2014-07-19 21:35 - 00000000 ____D () C:\Documents and Settings\martina\Plocha\mpp
Some content of TEMP:
====================
C:\Documents and Settings\martina\Local Settings\Temp\6_Offer_3.exe
C:\Documents and Settings\martina\Local Settings\Temp\A~NSISu_.exe
C:\Documents and Settings\martina\Local Settings\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpflaol_.dll
C:\Documents and Settings\martina\Local Settings\Temp\GLB1A2B.EXE
C:\Documents and Settings\martina\Local Settings\Temp\Mobogenie_INT.exe
C:\Documents and Settings\martina\Local Settings\Temp\UNINSTALL.EXE
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:222.88 GB) (Free:50.31 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (HP_TOOLS) (Fixed) (Total:1 GB) (Free:0.99 GB) FAT32
Drive e: (HP_RECOVERY) (Fixed) (Total:9 GB) (Free:2.25 GB) NTFS
Available physical RAM: 847.09 MB
Total physical RAM: 1976.19 MB
Percentage of memory in use: 57%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 233 GB) (Disk ID: 80D2F3EE)
Partition 1: (Active) - (Size=223 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1 GB) - (Type=0C)
Partition 3: (Not Active) - (Size=9 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-2077806209-839522115-1003Core.job => C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-2077806209-839522115-1003UA.job => C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:3D36932D
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:8DD36B71
==================== Security Center ==================
AV: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\martina\Plocha" je 3012 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabdka Start^Programy^Po sputn^Bitmeter2.lnk
C:\DOCUME~1\martina\DOKUME~1\PROGRA~1\BitMeter\BITMET~1.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^martina^Nabdka Start^Programy^Po sputn^Vezy obrazovky a sputn aplikace OneNote 2007.lnk
C:\PROGRA~1\MICROS~2\Office12\ONENOTEM.EXE
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\\Program Files\\ICQ6.5\\ICQ.exe"="C:\\Program Files\\ICQ6.5\\ICQ.exe:*:Enabled:ICQ6"
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"="C:\\Program Files\\AVG\\AVG8\\avgupd.exe:*:Enabled:avgupd.exe"
"C:\\Program Files\\AVG\\AVG8\\avgnsx.exe"="C:\\Program Files\\AVG\\AVG8\\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\\Program Files\\VideoLAN\\VLC\\vlc.exe"="C:\\Program Files\\VideoLAN\\VLC\\vlc.exe:*:Enabled:VLC media player"
"C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"="C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe:*:Enabled:Skype Extras Manager"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Counter-Strike Source\\hl2.exe"="C:\\Program Files\\Counter-Strike Source\\hl2.exe:*:Enabled:hl2"
"C:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe"="C:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\\Program Files\\GetWare\\WebCam Live\\WebCam.exe"="C:\\Program Files\\GetWare\\WebCam Live\\WebCam.exe:*:Enabled:WebCam Live"
"C:\\Documents and Settings\\martina\\Data aplikac\\Dropbox\\bin\\Dropbox.exe"="C:\\Documents and Settings\\martina\\Data aplikac\\Dropbox\\bin\\Dropbox.exe:*:Enabled:Dropbox"
"C:\\Documents and Settings\\martina\\Local Settings\\Data aplikac\\Google\\Google Talk Plugin\\googletalkplugin.exe"="C:\\Documents and Settings\\martina\\Local Settings\\Data aplikac\\Google\\Google Talk Plugin\\googletalkplugin.exe:*:Enabled:Google Talk Plugin"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\Google\\Google Talk\\googletalk.exe"="C:\\Program Files\\Google\\Google Talk\\googletalk.exe:*:Enabled:Google Talk"
"C:\\flexlm\\nexis\\lmgrd.exe"="C:\\flexlm\\nexis\\lmgrd.exe:*:Enabled:lmgrd"
"C:\\flexlm\\nexis\\scia.exe"="C:\\flexlm\\nexis\\scia.exe:*:Enabled:scia"
"C:\\WINDOWS\\system32\\dpvsetup.exe"="C:\\WINDOWS\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\zunt..tion_bbfc02ea80687e07_0001.0002_92c6ed94d8eb2a07\\ZunTzu.exe"="C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\zunt..tion_bbfc02ea80687e07_0001.0002_92c6ed94d8eb2a07\\ZunTzu.exe:*:Enabled:ZunTzu"
"C:\\WINDOWS\\system32\\dplaysvr.exe"="C:\\WINDOWS\\system32\\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"C:\\Program Files\\Codemasters\\Colin McRae Rally 2\\CMR2.exe"="C:\\Program Files\\Codemasters\\Colin McRae Rally 2\\CMR2.exe:*:Enabled:Colin McRae Rally 2"
"C:\\Program Files\\Codemasters\\Colin McRae Rally 04\\cmr4.exe"="C:\\Program Files\\Codemasters\\Colin McRae Rally 04\\cmr4.exe:*:Enabled:Colin McRae Rally 04 Application"
"C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\tvon..tion_14272230c518e5a3_0001.0001_81871b05049e721a\\TV Online.exe"="C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\tvon..tion_14272230c518e5a3_0001.0001_81871b05049e721a\\TV Online.exe:*:Enabled:TV Online"
"C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"="C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe:*:Enabled:Google Chrome"
"C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\tvon..tion_60cc721e402aeb26_0001.0002_c9ff8f75fb809c21\\TV Online.exe"="C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\tvon..tion_60cc721e402aeb26_0001.0002_c9ff8f75fb809c21\\TV Online.exe:*:Enabled:TV Online"
"C:\\Program Files\\AVG\\AVG2013\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2013\\avgmfapx.exe:*:Enabled:AVG Installer"
"C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe:*:Enabled:AVG Installer"
"C:\\Documents and Settings\\martina\\Plocha\\red-alert2-portable\\red-alert2-portable\\GAME.EXE"="C:\\Documents and Settings\\martina\\Plocha\\red-alert2-portable\\red-alert2-portable\\GAME.EXE:*:Enabled:Main executable for Red Alert 2"
"I:\\UnrealTournament\\System\\UnrealTournament.exe"="I:\\UnrealTournament\\System\\UnrealTournament.exe:*:Enabled:UnrealTournament"
"C:\\Program Files\\TeamViewer\\Version9\\TeamViewer.exe"="C:\\Program Files\\TeamViewer\\Version9\\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\\Program Files\\TeamViewer\\Version9\\TeamViewer_Service.exe"="C:\\Program Files\\TeamViewer\\Version9\\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\\Program Files\\AVG\\AVG2014\\avgnsx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgnsx.exe:*:Enabled:Online Shield"
"C:\\Program Files\\AVG\\AVG2014\\avgdiagex.exe"="C:\\Program Files\\AVG\\AVG2014\\avgdiagex.exe:*:Enabled:AVG Diagnostics 2014"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
přítelkyně odjela do Paříže tak jsem dostal svolení vyčistit s vaší pomocí její notebook.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:14-08-2014 01
Ran by martina (administrator) on MARTINA-NOTAS on 14-08-2014 20:19:52
Running from C:\Documents and Settings\martina\Plocha
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Cisco Systems, Inc.) C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANOTIF.EXE
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Google) C:\Program Files\Google\Google Talk\googletalk.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(VŠB-TU Ostrava) C:\Program Files\SafeQ\SafeQ_cli.exe
(Cisco Systems, Inc.) C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Dropbox, Inc.) C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\Dropbox.exe
(Agere Systems) C:\WINDOWS\system32\agrsmsvc.exe
() C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe
(C-Dilla Ltd) C:\WINDOWS\system32\drivers\CDANTSRV.EXE
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMON.EXE
(Macrovision Corporation) C:\Program Files\SCIA\crack\Flexlm\Lmgrd.exe
(Macrovision Corporation) C:\Program Files\SCIA\crack\Flexlm\Lmgrd.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
() C:\Program Files\SCIA\crack\Flexlm\Scia.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\tv_w32.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Microsoft Corporation) C:\WINDOWS\system32\ntvdm.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\dfsvc.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(forum.viry.cz) C:\Documents and Settings\martina\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
Winlogon\Notify\avgrsstarter: C:\WINDOWS\system32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\Run: [Google Update] => C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [136176 2011-10-27] (Google Inc.)
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [17148552 2012-02-29] (Skype Technologies S.A.)
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\MountPoints2: {22aedc18-6290-11e0-b980-00248167d4db} - I:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\MountPoints2: {3528fea7-0409-11df-b71c-00248167d4db} - G:\Toshiba\Launcher\start.exe
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\MountPoints2: {41af6ca6-61bd-11e0-b97f-000000000000} - I:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-1844237615-2077806209-839522115-1003\...\MountPoints2: {a7f144fc-cf10-11df-b84f-00248167d4db} - H:\setup_vmc_lite.exe /checkApplicationPresence
Startup: C:\Documents and Settings\martina\Nabídka Start\Programy\Po spuštění\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt1" -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt2" -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt3" -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt4" -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt5" -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt6" -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt7" -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: "DropboxExt8" -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\martina\Data aplikací\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: Správa překryvné ikony digitálních podpisů AutoCADu -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll (Autodesk, Inc.)
BootExecute: autocheck autochk * C:\PROGRA~1\AVG\AVG2014\avgrsx.exe /sync /restart
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/?rlz=1W4CHBA_csCZ566
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... &ch_id=osd
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?ocid=OIE8HP&PC=B8MC
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
SearchScopes: HKLM - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL = http://us.yhs.search.yahoo.com/avg/sear ... earchTerms}
SearchScopes: HKCU - {4F11ACBB-393F-4c86-A214-FF3D0D155CC3} URL = http://search.burn4free-toolbar.com/sea ... arch-field
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKCU - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} URL = http://search.avg.com/route/?d=4b3d2cf0 ... te=us&nt=1
BHO: AVG Safe Search -> {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} -> C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: JQSIEStartDetectorImpl Class -> {E7E6F031-17CE-4C07-BC86-EABFE594F69C} -> C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
Toolbar: HKCU - No Name - {4F11ACBB-393F-4C86-A214-FF3D0D155CC3} - No File
Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.136
FireFox:
========
FF ProfilePath: C:\Documents and Settings\martina\Data aplikací\Mozilla\Firefox\Profiles\n6t5a4n4.default
FF Homepage: chrome://speeddial/content/speeddial.xul
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin -> C:\Documents and Settings\martina\Data aplikací\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin -> C:\Documents and Settings\martina\Data aplikací\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Documents and Settings\martina\Data aplikací\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Documents and Settings\martina\Data aplikací\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Speed Dial - C:\Documents and Settings\martina\Data aplikací\Mozilla\Firefox\Profiles\n6t5a4n4.default\Extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi [2014-03-06]
FF Extension: Adblock Plus - C:\Documents and Settings\martina\Data aplikací\Mozilla\Firefox\Profiles\n6t5a4n4.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-04]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-09-22]
FF HKLM\...\Firefox\Extensions: [jqs@sun.com] - C:\Program Files\Java\jre6\lib\deploy\jqs\ff
FF Extension: Java Quick Starter - C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2010-04-11]
Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR StartupUrls: "chrome://newtab/"
CHR Extension: (HD for YouTube™) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\akjbfncbadcmnkopckegnmjgihagponf [2014-01-16]
CHR Extension: (Angry Birds) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2013-12-10]
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-10]
CHR Extension: (Disk Google) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-10]
CHR Extension: (YouTube) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-10]
CHR Extension: (Bounceball) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bnonnffemhpfblohaicmfmofbfaaoobf [2013-12-10]
CHR Extension: (Adblock Plus) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-12-10]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-10]
CHR Extension: (Balloono) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fmggmlpijnjmhdekfigfbkookpdfodhf [2013-12-10]
CHR Extension: (Mail Checker Plus for Google Mail™) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\gffjhibehnempbkeheiccaincokdjbfe [2013-12-10]
CHR Extension: (Grass) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\mmiboiefncpfjihjdedpaoammipkilla [2013-12-10]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-10]
CHR Extension: (Short url using official goo.gl api) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\phncbknmjfhhegegchdflhepkoibbbie [2013-12-10]
CHR Extension: (Gmail) - C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-10]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] ()
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3241488 2014-06-27] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-06-17] (AVG Technologies CZ, s.r.o.)
R2 C-DillaSrv; C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE [32256 2001-04-06] (C-Dilla Ltd) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1044816 2013-09-27] (Flexera Software, Inc.)
S2 gupdate1ca411a4416cfc2; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-09-29] (Google Inc.)
R2 Nexis 3.5 license server - dT 2004; C:\Program Files\SCIA\crack\Flexlm\Lmgrd.exe [974848 2008-04-02] (Macrovision Corporation) [File not signed]
R2 vpnagent; C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe [560528 2013-12-13] (Cisco Systems, Inc.)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 acsint; C:\WINDOWS\System32\DRIVERS\acsint.sys [40304 2013-12-13] (Cisco Systems, Inc.)
S3 acsmux; C:\WINDOWS\System32\DRIVERS\acsmux.sys [58736 2013-12-13] (Cisco Systems, Inc.)
R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [165376 2012-02-29] () [File not signed]
R1 Avgdiskx; C:\WINDOWS\System32\DRIVERS\avgdiskx.sys [121624 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriverl; C:\WINDOWS\System32\DRIVERS\avgidsdriverlx.sys [190232 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\WINDOWS\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\WINDOWS\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AvgLdx86; C:\WINDOWS\System32\DRIVERS\avgldx86.sys [188696 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\WINDOWS\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 AvgMfx86; C:\WINDOWS\System32\DRIVERS\avgmfx86.sys [98584 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AvgTdiX; C:\WINDOWS\System32\DRIVERS\avgtdix.sys [197400 2014-06-17] (AVG Technologies CZ, s.r.o.)
R3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [74688 2008-04-03] (Broadcom Corporation.)
S3 C-Dilla; C:\WINDOWS\system32\drivers\CDANT.SYS [56592 2001-04-06] (Macrovision) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 eabfiltr; C:\WINDOWS\System32\DRIVERS\eabfiltr.sys [7808 2005-09-19] (Hewlett-Packard Development Company, L.P.)
S3 eabusb; C:\WINDOWS\System32\DRIVERS\eabusb.sys [5760 2005-09-19] (Hewlett-Packard Development Company, L.P.)
S3 hwusbfake; C:\WINDOWS\System32\DRIVERS\ewusbfake.sys [100480 2009-07-23] (Huawei Technologies Co., Ltd.)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [18048 2012-02-29] () [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NETw5x32; C:\WINDOWS\System32\DRIVERS\NETw5x32.sys [3626112 2008-04-28] (Intel Corporation)
S3 SCR3XX2K; C:\WINDOWS\System32\DRIVERS\SCR3XX2K.sys [56448 2007-06-21] (SCM Microsystems Inc.)
R0 SFAUDIO; C:\WINDOWS\System32\drivers\sfaudio.sys [24064 2008-03-28] (Sonic Focus, Inc)
R3 SNP2UVC; C:\WINDOWS\System32\DRIVERS\snp2uvc.sys [1804160 2008-04-10] ()
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [691696 2009-12-12] () [File not signed]
R3 yukonwxp; C:\WINDOWS\System32\DRIVERS\yk51x86.sys [296320 2008-04-04] (Marvell)
U3 ajbbjfed; C:\WINDOWS\system32\Drivers\ajbbjfed.sys [0 ] (Microsoft Corporation)
S2 adfs; No ImagePath
U2 CertPropSvc;
S4 IntelIde; No ImagePath
S3 PCASp50; System32\Drivers\PCASp50.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U2 Sentinel; \SystemRoot\System32\Drivers\SENTINEL.SYS
S3 SNPSTD3; system32\DRIVERS\snpstd3.sys [X]
U1 WS2IFSL;
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-14 20:19 - 2014-08-14 20:20 - 00021268 _____ () C:\Documents and Settings\martina\Plocha\FRST.txt
2014-08-14 20:19 - 2014-08-14 20:19 - 00000000 ____D () C:\FRST
2014-08-14 20:17 - 2014-08-14 20:17 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\martina\Plocha\FRSTLauncher.exe
2014-08-14 20:16 - 2014-08-14 20:16 - 01092096 _____ (Farbar) C:\Documents and Settings\martina\Plocha\FRST.exe
2014-08-14 20:06 - 2014-08-14 20:06 - 00000788 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200608.reg
2014-08-14 20:06 - 2014-08-14 20:06 - 00000290 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200621.reg
2014-08-14 20:05 - 2014-08-14 20:05 - 00083942 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200525.reg
2014-08-14 20:05 - 2014-08-14 20:05 - 00001710 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200543.reg
2014-08-14 19:55 - 2014-08-14 19:55 - 00000000 ____D () C:\WINDOWS\LastGood
2014-08-07 19:18 - 2014-08-07 21:11 - 00004383 _____ () C:\Documents and Settings\martina\Plocha\PAŘÍŽ.txt
2014-08-06 15:37 - 2014-08-06 15:37 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-25 16:50 - 2014-07-25 15:47 - 08143775 _____ () C:\Documents and Settings\martina\Plocha\MOVIE.mpeg
2014-07-19 21:35 - 2014-07-19 21:37 - 00000000 ____D () C:\Documents and Settings\martina\Plocha\mpp
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-14 20:20 - 2014-08-14 20:19 - 00021268 _____ () C:\Documents and Settings\martina\Plocha\FRST.txt
2014-08-14 20:20 - 2009-08-29 10:23 - 00000000 ____D () C:\Documents and Settings\martina\Local Settings\Temp
2014-08-14 20:19 - 2014-08-14 20:19 - 00000000 ____D () C:\FRST
2014-08-14 20:19 - 2009-08-29 10:23 - 00000000 ___HD () C:\Documents and Settings\martina\Local Settings\Data aplikací
2014-08-14 20:19 - 2009-08-29 10:23 - 00000000 ____D () C:\Documents and Settings\martina\Plocha
2014-08-14 20:17 - 2014-08-14 20:17 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\martina\Plocha\FRSTLauncher.exe
2014-08-14 20:16 - 2014-08-14 20:16 - 01092096 _____ (Farbar) C:\Documents and Settings\martina\Plocha\FRST.exe
2014-08-14 20:13 - 2009-09-29 17:34 - 00000000 ____D () C:\Documents and Settings\martina\Data aplikací\Skype
2014-08-14 20:13 - 2009-08-29 10:23 - 00000000 ___RD () C:\Documents and Settings\martina\Nabídka Start\Programy
2014-08-14 20:13 - 2009-08-29 10:23 - 00000000 ____D () C:\Documents and Settings\martina
2014-08-14 20:06 - 2014-08-14 20:06 - 00000788 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200608.reg
2014-08-14 20:06 - 2014-08-14 20:06 - 00000290 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200621.reg
2014-08-14 20:06 - 2009-08-29 10:23 - 00000000 ___RD () C:\Documents and Settings\martina\Dokumenty
2014-08-14 20:05 - 2014-08-14 20:05 - 00083942 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200525.reg
2014-08-14 20:05 - 2014-08-14 20:05 - 00001710 _____ () C:\Documents and Settings\martina\Dokumenty\cc_20140814_200543.reg
2014-08-14 20:01 - 2011-12-13 14:39 - 00000000 ____D () C:\Documents and Settings\martina\Local Settings\Data aplikací\Deployment
2014-08-14 20:00 - 2011-04-06 16:32 - 00000000 ____D () C:\Program Files\Yawcam
2014-08-14 20:00 - 2009-08-29 12:08 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-08-14 20:00 - 2009-08-29 12:08 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-08-14 20:00 - 2009-08-29 12:01 - 00000000 ____D () C:\WINDOWS\twain_32
2014-08-14 20:00 - 2009-08-29 10:28 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-08-14 20:00 - 2006-03-02 14:00 - 00001115 _____ () C:\WINDOWS\win.ini
2014-08-14 19:59 - 2012-12-18 22:09 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\KB Piano
2014-08-14 19:59 - 2009-08-29 12:10 - 00000325 ____N () C:\WINDOWS\wiadebug.log
2014-08-14 19:58 - 2013-12-10 17:16 - 00001813 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-08-14 19:58 - 2012-11-17 13:22 - 00000000 ____D () C:\NEXIS32
2014-08-14 19:58 - 2012-08-24 18:52 - 00000942 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-14 19:56 - 2009-08-29 10:30 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups
2014-08-14 19:56 - 2009-08-29 10:28 - 00000000 ____D () C:\Program Files\Hewlett-Packard
2014-08-14 19:55 - 2014-08-14 19:55 - 00000000 ____D () C:\WINDOWS\LastGood
2014-08-14 19:54 - 2010-03-29 13:35 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Google
2014-08-14 19:54 - 2009-09-08 08:56 - 00000000 ____D () C:\Program Files\Google
2014-08-14 19:54 - 2009-08-29 10:22 - 00032504 ____N () C:\WINDOWS\SchedLgU.Txt
2014-08-14 19:53 - 2013-06-07 12:53 - 00000000 ____D () C:\Documents and Settings\martina\Local Settings\Data aplikací\Flvto Youtube Downloader
2014-08-14 19:49 - 2013-11-19 14:44 - 00000000 ____D () C:\Documents and Settings\All Users\Dokumenty\ArcPad
2014-08-14 19:47 - 2009-11-18 21:49 - 00000000 ____D () C:\Program Files\DivX
2014-08-14 19:46 - 2011-12-23 14:42 - 00000000 ____D () C:\Program Files\CdCoverCreator
2014-08-14 19:45 - 2011-11-07 20:12 - 00000000 ____D () C:\WINDOWS\pss
2014-08-14 19:45 - 2009-08-29 10:59 - 00000000 ____D () C:\Program Files\Common Files\Autodesk Shared
2014-08-14 19:45 - 2009-08-29 10:23 - 00000000 ___RD () C:\Documents and Settings\martina\Nabídka Start\Programy\Po spuštění
2014-08-14 19:39 - 2009-08-29 10:18 - 01059633 ____N () C:\WINDOWS\WindowsUpdate.log
2014-08-14 19:38 - 2013-03-26 20:19 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\MFAData
2014-08-14 19:37 - 2012-02-28 19:00 - 00001034 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-2077806209-839522115-1003UA.job
2014-08-14 19:35 - 2012-02-13 11:02 - 00000000 ___RD () C:\Documents and Settings\martina\Dokumenty\Dropbox
2014-08-14 19:35 - 2012-02-13 11:01 - 00000000 ____D () C:\Documents and Settings\martina\Data aplikací\Dropbox
2014-08-14 19:35 - 2006-03-02 14:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2014-08-14 19:33 - 2009-08-29 12:10 - 00000049 ____N () C:\WINDOWS\wiaservc.log
2014-08-14 19:32 - 2014-03-27 19:34 - 00000226 _____ () C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2014-08-14 19:32 - 2012-08-24 18:52 - 00000938 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-14 19:32 - 2009-08-29 10:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-08-11 16:00 - 2012-03-22 21:03 - 03997696 _____ () C:\WINDOWS\system32\config\ACVPN.evt
2014-08-11 16:00 - 2009-08-29 10:23 - 00000178 ___SH () C:\Documents and Settings\martina\ntuser.ini
2014-08-11 15:52 - 2012-01-28 15:58 - 00008192 ___SH () C:\WINDOWS\Thumbs.db
2014-08-10 22:00 - 2009-11-01 23:32 - 00000008 _____ () C:\debugoutput.txt
2014-08-10 19:06 - 2010-02-11 20:11 - 00395776 ___SH () C:\Documents and Settings\martina\Plocha\Thumbs.db
2014-08-10 18:57 - 2014-06-17 15:47 - 00000000 ____D () C:\Documents and Settings\martina\Plocha\PAŘÍŽ
2014-08-08 15:00 - 2014-03-27 19:34 - 00000220 _____ () C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
2014-08-07 21:11 - 2014-08-07 19:18 - 00004383 _____ () C:\Documents and Settings\martina\Plocha\PAŘÍŽ.txt
2014-08-07 18:56 - 2014-01-30 12:19 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-08-07 10:02 - 2014-04-01 11:53 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVG
2014-08-07 10:02 - 2013-09-29 19:53 - 00000702 _____ () C:\Documents and Settings\All Users\Plocha\AVG 2014.lnk
2014-08-07 08:39 - 2013-08-15 18:21 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-08-07 08:37 - 2012-02-28 19:00 - 00000982 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-2077806209-839522115-1003Core.job
2014-08-07 08:33 - 2009-09-24 16:56 - 93585272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-08-06 15:37 - 2014-08-06 15:37 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-08-06 14:37 - 2009-08-29 10:23 - 00000000 __RHD () C:\Documents and Settings\martina\Data aplikací
2014-08-06 14:36 - 2012-02-13 11:02 - 00000999 _____ () C:\Documents and Settings\martina\Plocha\Dropbox.lnk
2014-08-06 14:36 - 2012-02-13 11:01 - 00000000 ____D () C:\Documents and Settings\martina\Nabídka Start\Programy\Dropbox
2014-08-01 18:44 - 2009-09-08 09:04 - 00000000 ____D () C:\Documents and Settings\martina\Data aplikací\XnView
2014-08-01 18:37 - 2009-09-22 11:31 - 00000000 ____D () C:\Documents and Settings\martina\Data aplikací\vlc
2014-07-25 15:47 - 2014-07-25 16:50 - 08143775 _____ () C:\Documents and Settings\martina\Plocha\MOVIE.mpeg
2014-07-24 18:48 - 2009-08-30 07:12 - 00132608 _____ () C:\Documents and Settings\martina\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-07-23 22:14 - 2009-08-31 18:25 - 00000000 ___RD () C:\Documents and Settings\martina\Dokumenty\Filmy
2014-07-19 21:37 - 2014-07-19 21:35 - 00000000 ____D () C:\Documents and Settings\martina\Plocha\mpp
Some content of TEMP:
====================
C:\Documents and Settings\martina\Local Settings\Temp\6_Offer_3.exe
C:\Documents and Settings\martina\Local Settings\Temp\A~NSISu_.exe
C:\Documents and Settings\martina\Local Settings\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpflaol_.dll
C:\Documents and Settings\martina\Local Settings\Temp\GLB1A2B.EXE
C:\Documents and Settings\martina\Local Settings\Temp\Mobogenie_INT.exe
C:\Documents and Settings\martina\Local Settings\Temp\UNINSTALL.EXE
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:222.88 GB) (Free:50.31 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (HP_TOOLS) (Fixed) (Total:1 GB) (Free:0.99 GB) FAT32
Drive e: (HP_RECOVERY) (Fixed) (Total:9 GB) (Free:2.25 GB) NTFS
Available physical RAM: 847.09 MB
Total physical RAM: 1976.19 MB
Percentage of memory in use: 57%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 233 GB) (Disk ID: 80D2F3EE)
Partition 1: (Active) - (Size=223 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1 GB) - (Type=0C)
Partition 3: (Not Active) - (Size=9 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-2077806209-839522115-1003Core.job => C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-2077806209-839522115-1003UA.job => C:\Documents and Settings\martina\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job => C:\WINDOWS\system32\xp_eos.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:3D36932D
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:8DD36B71
==================== Security Center ==================
AV: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\martina\Plocha" je 3012 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabdka Start^Programy^Po sputn^Bitmeter2.lnk
C:\DOCUME~1\martina\DOKUME~1\PROGRA~1\BitMeter\BITMET~1.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^martina^Nabdka Start^Programy^Po sputn^Vezy obrazovky a sputn aplikace OneNote 2007.lnk
C:\PROGRA~1\MICROS~2\Office12\ONENOTEM.EXE
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\\Program Files\\ICQ6.5\\ICQ.exe"="C:\\Program Files\\ICQ6.5\\ICQ.exe:*:Enabled:ICQ6"
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"="C:\\Program Files\\AVG\\AVG8\\avgupd.exe:*:Enabled:avgupd.exe"
"C:\\Program Files\\AVG\\AVG8\\avgnsx.exe"="C:\\Program Files\\AVG\\AVG8\\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\\Program Files\\VideoLAN\\VLC\\vlc.exe"="C:\\Program Files\\VideoLAN\\VLC\\vlc.exe:*:Enabled:VLC media player"
"C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"="C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe:*:Enabled:Skype Extras Manager"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Counter-Strike Source\\hl2.exe"="C:\\Program Files\\Counter-Strike Source\\hl2.exe:*:Enabled:hl2"
"C:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe"="C:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\\Program Files\\GetWare\\WebCam Live\\WebCam.exe"="C:\\Program Files\\GetWare\\WebCam Live\\WebCam.exe:*:Enabled:WebCam Live"
"C:\\Documents and Settings\\martina\\Data aplikac\\Dropbox\\bin\\Dropbox.exe"="C:\\Documents and Settings\\martina\\Data aplikac\\Dropbox\\bin\\Dropbox.exe:*:Enabled:Dropbox"
"C:\\Documents and Settings\\martina\\Local Settings\\Data aplikac\\Google\\Google Talk Plugin\\googletalkplugin.exe"="C:\\Documents and Settings\\martina\\Local Settings\\Data aplikac\\Google\\Google Talk Plugin\\googletalkplugin.exe:*:Enabled:Google Talk Plugin"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\Google\\Google Talk\\googletalk.exe"="C:\\Program Files\\Google\\Google Talk\\googletalk.exe:*:Enabled:Google Talk"
"C:\\flexlm\\nexis\\lmgrd.exe"="C:\\flexlm\\nexis\\lmgrd.exe:*:Enabled:lmgrd"
"C:\\flexlm\\nexis\\scia.exe"="C:\\flexlm\\nexis\\scia.exe:*:Enabled:scia"
"C:\\WINDOWS\\system32\\dpvsetup.exe"="C:\\WINDOWS\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\zunt..tion_bbfc02ea80687e07_0001.0002_92c6ed94d8eb2a07\\ZunTzu.exe"="C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\zunt..tion_bbfc02ea80687e07_0001.0002_92c6ed94d8eb2a07\\ZunTzu.exe:*:Enabled:ZunTzu"
"C:\\WINDOWS\\system32\\dplaysvr.exe"="C:\\WINDOWS\\system32\\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"C:\\Program Files\\Codemasters\\Colin McRae Rally 2\\CMR2.exe"="C:\\Program Files\\Codemasters\\Colin McRae Rally 2\\CMR2.exe:*:Enabled:Colin McRae Rally 2"
"C:\\Program Files\\Codemasters\\Colin McRae Rally 04\\cmr4.exe"="C:\\Program Files\\Codemasters\\Colin McRae Rally 04\\cmr4.exe:*:Enabled:Colin McRae Rally 04 Application"
"C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\tvon..tion_14272230c518e5a3_0001.0001_81871b05049e721a\\TV Online.exe"="C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\tvon..tion_14272230c518e5a3_0001.0001_81871b05049e721a\\TV Online.exe:*:Enabled:TV Online"
"C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"="C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe:*:Enabled:Google Chrome"
"C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\tvon..tion_60cc721e402aeb26_0001.0002_c9ff8f75fb809c21\\TV Online.exe"="C:\\Documents and Settings\\martina\\Local Settings\\Apps\\2.0\\VOL85ATY.JCN\\V33AM0EM.DT8\\tvon..tion_60cc721e402aeb26_0001.0002_c9ff8f75fb809c21\\TV Online.exe:*:Enabled:TV Online"
"C:\\Program Files\\AVG\\AVG2013\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2013\\avgmfapx.exe:*:Enabled:AVG Installer"
"C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgmfapx.exe:*:Enabled:AVG Installer"
"C:\\Documents and Settings\\martina\\Plocha\\red-alert2-portable\\red-alert2-portable\\GAME.EXE"="C:\\Documents and Settings\\martina\\Plocha\\red-alert2-portable\\red-alert2-portable\\GAME.EXE:*:Enabled:Main executable for Red Alert 2"
"I:\\UnrealTournament\\System\\UnrealTournament.exe"="I:\\UnrealTournament\\System\\UnrealTournament.exe:*:Enabled:UnrealTournament"
"C:\\Program Files\\TeamViewer\\Version9\\TeamViewer.exe"="C:\\Program Files\\TeamViewer\\Version9\\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\\Program Files\\TeamViewer\\Version9\\TeamViewer_Service.exe"="C:\\Program Files\\TeamViewer\\Version9\\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\\Program Files\\AVG\\AVG2014\\avgnsx.exe"="C:\\Program Files\\AVG\\AVG2014\\avgnsx.exe:*:Enabled:Online Shield"
"C:\\Program Files\\AVG\\AVG2014\\avgdiagex.exe"="C:\\Program Files\\AVG\\AVG2014\\avgdiagex.exe:*:Enabled:AVG Diagnostics 2014"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================